Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o preventivní kontrolu

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
bigmuff
Návštěvník
Návštěvník
Příspěvky: 298
Registrován: 12 lis 2009 20:09

Prosím o preventivní kontrolu

#1 Příspěvek od bigmuff »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-10-2019 02
Ran by rossu (administrator) on DESKTOP-HONRFIH (Acer Aspire ES1-731G) (15-10-2019 16:29:55)
Running from C:\Users\rossu\Desktop
Loaded Profiles: rossu (Available Profiles: rossu)
Platform: Windows 10 Home Version 1903 18362.418 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SoftwareDistribution\Download\Install\AM_Delta.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\MpSigStub.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_3.7.71.0_x64__8wekyb3d8bbwe\Microsoft.Notes.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19091.313.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DeviceCensus.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MpCmdRun.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MpCmdRun.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\NisSrv.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\Defraggler\df64.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\Defraggler\df64.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\Defraggler\df64.exe
(Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.85.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.85.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18390912 2019-09-25] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\Run: [CCleaner Smart Cleaning] => F:\program\ccleaner\CCleaner64.exe [24916512 2019-10-01] (Piriform Software Ltd -> Piriform Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.90\Installer\chrmstp.exe [2019-09-19] (Google LLC -> Google LLC)
BootExecute:
GroupPolicy: Restriction ? <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0312AFB5-A175-4D34-BCAB-DEB53C4B9314} - System32\Tasks\HDCleanerSkipUAC => C:\USERS\ROSSU\DESKTOP\HDCLEANERX64\HDCleaner.exe
Task: {1B28AEAC-91AF-4177-8C8F-3CB17B2CA6EC} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
Task: {2EAB0A5A-E5F8-48FB-9DEB-D6883D3B0024} - System32\Tasks\CCleaner Update => F:\program\ccleaner\CCUpdate.exe [619416 2019-10-01] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {3F2C0504-AB60-42B3-8704-CF53E6E400B4} - System32\Tasks\Defraggler Volume C Task => C:\Program Files\Defraggler\df64.exe [1624120 2018-05-02] (Piriform Ltd -> Piriform Ltd)
Task: {5B45F462-B401-4006-AD6F-27E428528C22} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {67D532DF-D5CD-4D9C-8975-6D846F765EE7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {86790561-FDBD-4435-9813-E911E0EBB6B0} - System32\Tasks\Defraggler Volume D Task => C:\Program Files\Defraggler\df64.exe [1624120 2018-05-02] (Piriform Ltd -> Piriform Ltd)
Task: {8DCB0963-C38B-42FF-84AC-544097BD1107} - System32\Tasks\Defraggler Volume F Task => C:\Program Files\Defraggler\df64.exe [1624120 2018-05-02] (Piriform Ltd -> Piriform Ltd)
Task: {8E1B91F2-4A2C-4FA3-94F2-61CB993B2975} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B11A6E73-B90E-4AE4-AAA1-1CBD65F341C2} - System32\Tasks\Defraggler Volume E Task => C:\Program Files\Defraggler\df64.exe [1624120 2018-05-02] (Piriform Ltd -> Piriform Ltd)
Task: {C241ABCA-A2F9-44E4-BBAD-A0909FE08D7F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DF2192C6-BE19-4D03-A899-5B636468562A} - System32\Tasks\CCleanerSkipUAC => F:\program\ccleaner\CCleaner.exe [18732320 2019-10-01] (Piriform Software Ltd -> Piriform Ltd)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Defraggler Volume C Task.job => C:\Program Files\Defraggler\df64.exe
Task: C:\WINDOWS\Tasks\Defraggler Volume D Task.job => C:\Program Files\Defraggler\df64.exe
Task: C:\WINDOWS\Tasks\Defraggler Volume E Task.job => C:\Program Files\Defraggler\df64.exe
Task: C:\WINDOWS\Tasks\Defraggler Volume F Task.job => C:\Program Files\Defraggler\df64.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 08 C:\WINDOWS\SysWOW64\wlidNSP.dll [41472 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5 09 C:\WINDOWS\SysWOW64\wlidNSP.dll [41472 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5-x64 08 C:\WINDOWS\system32\wlidnsp.dll [66048 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5-x64 09 C:\WINDOWS\system32\wlidnsp.dll [66048 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{5673707c-6e6b-4bed-88a8-2addce076092}: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{90ade671-655b-4ef5-84a6-e0d9946ad7a7}: [DhcpNameServer] 192.168.0.1 0.0.0.0

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-677340807-1562095438-3412084234-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/

Edge:
======
DownloadDir: C:\Users\rossu\Downloads
Edge HomeButtonPage: HKU\S-1-5-21-677340807-1562095438-3412084234-1001 -> hxxp://www.seznam.cz/

FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-28] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-28] (Google Inc -> Google LLC)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxps://www.seznam.cz/"
CHR Profile: C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default [2019-10-15]
CHR Extension: (Překladač Google) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2019-03-07]
CHR Extension: (Prezentace) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-03-07]
CHR Extension: (Dokumenty) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-03-07]
CHR Extension: (Disk Google) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-03-07]
CHR Extension: (YouTube) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-03-07]
CHR Extension: (Tabulky) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-03-07]
CHR Extension: (AddToAny: Share Anywhere) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffpgijchhhkhnokafdeklpllijgnbche [2019-03-07]
CHR Extension: (Vzdálená plocha Chrome) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2019-07-20]
CHR Extension: (Dokumenty Google offline) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-03-08]
CHR Extension: (AdBlock) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-10-13]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Gmail) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-23]
CHR Extension: (Chrome Media Router) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-09-11]
CHR Profile: C:\Users\rossu\AppData\Local\Google\Chrome\User Data\System Profile [2019-09-07]
CHR HKLM-x32\...\Chrome\Extension: [nladljmabboanhihfkjacnnkgjhnokhj] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtherosSvc; C:\WINDOWS\System32\drivers\AdminService.exe [415992 2019-07-21] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider)
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed]
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [355872 2019-04-25] (Intel(R) pGFX -> Intel Corporation)
R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\NisSrv.exe [3004048 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MsMpEng.exe [103384 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\WINDOWS\System32\drivers\athw10x.sys [4322672 2019-07-21] (Qualcomm Atheros -> Qualcomm Atheros Communications, Inc.)
S3 dot4; C:\WINDOWS\system32\DRIVERS\Dot4.sys [151968 2012-10-18] (Hewlett-Packard Company -> Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\WINDOWS\System32\drivers\Dot4Prt.sys [27040 2012-10-18] (Hewlett-Packard Company -> Windows (R) Win 7 DDK provider)
S3 dot4usb; C:\WINDOWS\system32\DRIVERS\dot4usb.sys [49056 2012-10-18] (Hewlett-Packard Company -> Microsoft Corporation)
R3 ETDI2C; C:\WINDOWS\System32\drivers\ETDI2C.sys [218264 2019-08-26] (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronic Corp.)
R3 igfxLP; C:\WINDOWS\system32\DRIVERS\igdkmd64lp.sys [7399984 2019-04-25] (Intel Corporation -> Intel Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_3a28859ceb44fcc2\nvlddmkm.sys [20747736 2019-04-25] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1158944 2019-08-19] (Realtek Semiconductor Corp. -> Realtek )
R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [451792 2019-09-25] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 TXEIx64; C:\WINDOWS\System32\drivers\TXEIx64.sys [146200 2015-10-14] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R3 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [237584 2019-07-12] (Oracle Corporation -> Oracle Corporation)
R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [248464 2019-07-12] (Oracle Corporation -> Oracle Corporation)
S3 VBoxUSB; C:\WINDOWS\System32\Drivers\VBoxUSB.sys [175248 2019-07-12] (Oracle Corporation -> Oracle Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46688 2019-10-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [350136 2019-10-02] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54200 2019-10-02] (Microsoft Windows -> Microsoft Corporation)
S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-10-15 16:29 - 2019-10-15 16:34 - 000018135 _____ C:\Users\rossu\Desktop\FRST.txt
2019-10-15 16:29 - 2019-10-15 16:32 - 000000000 ____D C:\FRST
2019-10-15 16:26 - 2019-10-15 16:27 - 001616384 _____ (Farbar) C:\Users\rossu\Desktop\FRST64.exe
2019-10-15 16:24 - 2019-10-15 16:24 - 000228880 _____ (Translucency (hxxps://translucency.azurewebsites.net)) C:\Users\rossu\Downloads\empty-folder-finder_1.4.0.0.exe
2019-10-15 16:20 - 2019-10-15 16:21 - 000738001 _____ (FileManagerSoft Ltd. ) C:\Users\rossu\Downloads\EmptyFolderRemoverSetup.exe
2019-10-15 16:11 - 2019-10-15 16:11 - 000000000 ____D C:\Users\rossu\AppData\Local\GHISLER
2019-10-15 15:55 - 2019-10-15 16:33 - 000000000 ____D C:\Users\rossu\Desktop\Total Commander 9.22a Portable
2019-10-15 15:53 - 2019-10-15 16:21 - 000000000 ____D C:\Users\rossu\AppData\LocalLow\uTorrent
2019-10-15 15:53 - 2019-10-15 15:53 - 000005471 _____ C:\Users\rossu\Downloads\[CzT]Total_Commander_9_22a_Final_Portable_x86_x64_CZ_SK_.torrent
2019-10-14 20:15 - 2019-10-14 20:15 - 000000000 ____D C:\Users\rossu\Downloads\advanced_renamer_portable
2019-10-14 20:13 - 2019-10-14 20:14 - 015270215 _____ C:\Users\rossu\Downloads\advanced_renamer_portable.zip
2019-10-14 19:14 - 2019-10-14 19:16 - 122392419 _____ C:\Users\rossu\Downloads\popky.rar
2019-10-14 17:45 - 2019-10-14 17:45 - 000733500 _____ C:\Users\rossu\Downloads\[CzT]Annabelle_3_Annabelle_Comes_Home_2019_CZ_EN_HEVC_1080pHD_.torrent
2019-10-13 16:43 - 2019-10-13 16:44 - 030104352 _____ (2BrightSparks Pte Ltd ) C:\Users\rossu\Downloads\SyncBack_Setup.exe
2019-10-13 16:33 - 2019-10-13 16:33 - 000068227 _____ C:\Users\rossu\Downloads\[CzT]Shaft_2019_CZ_EN_1080pHD_.torrent
2019-10-13 16:24 - 2019-10-13 16:58 - 2810387908 ____R C:\Users\rossu\Downloads\The Cure - Flow Festival 2019.mkv
2019-10-13 16:21 - 2019-10-13 16:21 - 000017423 _____ C:\Users\rossu\Downloads\The Cure • Flow Festival [2019, Post - Punk, Gothic, HDTV, 1080i] [rutracker-5787120].torrent
2019-10-13 16:19 - 2019-10-13 16:20 - 000000000 ____D C:\Users\rossu\Downloads\GOTT KAREL - 80-80 Největší hity 1964-2019 (CZ 4CD 2019)[MP3.CBR.320](CzT)
2019-10-13 16:18 - 2019-10-13 16:18 - 000018271 _____ C:\Users\rossu\Downloads\[CzT]Karel_Gott_80_80_Nejvetsi_hity_1964_2019_2019_ (1).torrent
2019-10-13 16:17 - 2019-10-13 16:17 - 000018271 _____ C:\Users\rossu\Downloads\[CzT]Karel_Gott_80_80_Nejvetsi_hity_1964_2019_2019_.torrent
2019-10-09 20:55 - 2019-10-09 20:55 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 002314648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 002138472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2019-10-09 20:55 - 2019-10-09 20:55 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 001273392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 001098712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 000537600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 025900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 025443840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 022628352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 019811840 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 018019840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 008010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 007195648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 007015936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 006517640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 006232064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 005915648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 004538880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 004129616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2019-10-09 20:54 - 2019-10-09 20:54 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2019-10-09 20:54 - 2019-10-09 20:54 - 002494440 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 002422592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2019-10-09 20:54 - 2019-10-09 20:54 - 002236144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001847808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001664928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001563648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001562424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001394488 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001283072 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001217904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001152016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000829536 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000774672 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000690176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000679880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000598024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000452408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000422008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000404392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000380216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000300184 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-10-09 20:54 - 2019-10-09 20:54 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-10-09 20:54 - 2019-10-09 20:54 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000150328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000033048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NtlmShared.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2019-10-09 20:54 - 2019-10-09 20:54 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 017787392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 009928504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 007600664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 005041664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 004562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 004012544 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 003771392 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 003701760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002861568 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002762504 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002723328 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 002703360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002456064 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002448712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002114048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002095104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002000168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001952360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001743672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001730560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001721144 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001687040 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001656392 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001439744 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 001084432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000904208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000890472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000880088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000856576 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2019-10-09 20:53 - 2019-10-09 20:53 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000818688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000758584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mousocoreworker.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000516408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000515896 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000466416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000462136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000456504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000436536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000412152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000225080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000220472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000202040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000165832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000039304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NtlmShared.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000037176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2019-10-09 20:14 - 2019-09-20 06:36 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2019-10-09 20:14 - 2019-09-20 06:14 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2019-10-07 21:50 - 2019-10-07 21:50 - 000006033 _____ C:\Users\rossu\Downloads\[CzT]Revo_Uninstaller_Pro_v_4_2_0_CZ_SK_.torrent
2019-10-07 18:15 - 2019-10-07 18:20 - 000296316 _____ C:\TDSSKiller.3.1.0.28_07.10.2019_18.15.05_log.txt
2019-10-07 17:33 - 2019-10-07 17:34 - 000011916 _____ C:\TDSSKiller.3.1.0.28_07.10.2019_17.33.17_log.txt
2019-10-05 19:55 - 2019-10-05 19:56 - 000001409 _____ C:\Users\rossu\Desktop\shutdown.lnk
2019-10-05 19:51 - 2019-05-12 14:03 - 000884363 _____ C:\Users\rossu\Desktop\AntiTwin.exe
2019-10-05 19:50 - 2019-07-05 13:33 - 003617760 _____ (Easeware) C:\Users\rossu\Desktop\DriverEasy.exe
2019-10-05 19:49 - 2017-04-09 11:06 - 004476928 _____ (Pablo Software Solutions) C:\Users\rossu\Desktop\WebBuilder.exe
2019-10-05 19:49 - 2008-08-27 17:21 - 000821760 _____ C:\Users\rossu\Desktop\CUE_Splitter.exe
2019-10-05 19:48 - 2014-06-29 23:08 - 001807888 _____ (rajce.net) C:\Users\rossu\Desktop\rajce.exe
2019-10-05 19:43 - 2019-04-16 10:30 - 004081664 _____ C:\Users\rossu\Desktop\ROSSMANN CEWE fotosvet.exe
2019-10-05 18:45 - 2019-10-05 18:45 - 000039897 _____ C:\Users\rossu\Downloads\[CzT]Upgrade_2018_CZ_EN_HEVC_1080pHD_.torrent
2019-10-05 18:40 - 2019-10-05 18:40 - 000000000 ____D C:\Users\rossu\Downloads\tweaking.com_windows_repair_aio (1)
2019-10-05 18:34 - 2019-10-05 18:34 - 000000000 ____D C:\Users\rossu\Downloads\tweaking.com_windows_repair_aio
2019-10-05 16:37 - 2019-10-05 16:37 - 000003924 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2019-10-05 15:40 - 2019-10-05 15:40 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2019-10-05 15:40 - 2019-10-05 15:40 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secproc.dll
2019-10-05 14:12 - 2019-10-05 14:13 - 000003656 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask
2019-10-04 16:14 - 2019-10-04 16:14 - 000015848 _____ C:\Users\rossu\Downloads\(Indie) [WEB] Nick Cave And The Bad Seeds - Ghosteen - 2019, FLAC (tracks), lossless [rutracker-5786548].torrent
2019-10-01 18:52 - 2019-10-01 18:52 - 000939008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000742912 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000722944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000387832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeUISrv.exe
2019-10-01 18:51 - 2019-10-01 18:51 - 004481536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2019-10-01 18:51 - 2019-10-01 18:51 - 001244944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 002132280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001788728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001510752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001505320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001297936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001263616 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000904704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2019-10-01 18:50 - 2019-10-01 18:50 - 000802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000421376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-10-01 18:50 - 2019-10-01 18:50 - 000417280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiag.exe
2019-10-01 18:50 - 2019-10-01 18:50 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glu32.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000158208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2019-10-01 18:50 - 2019-10-01 18:50 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000100664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
2019-10-01 18:50 - 2019-10-01 18:50 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvvmtransport.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvvmtransport.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 005764872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 002799616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-10-01 18:49 - 2019-10-01 18:49 - 002258856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001692160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001616784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001473488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001178816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000772656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000652800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000568336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourceMapper.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000510464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000501232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000500736 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-10-01 18:49 - 2019-10-01 18:49 - 000487576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000463272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2019-10-01 18:49 - 2019-10-01 18:49 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000236520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgmgr32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000143808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000139264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prntvpt.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000137864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devobj.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000116904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000110080 _____ C:\WINDOWS\system32\ResBParser.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000093712 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000089544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000084496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-10-01 18:49 - 2019-10-01 18:49 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devrtl.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollCtrl.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000021544 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2019-10-01 18:48 - 2019-10-01 18:49 - 002821120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 006084048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 005865272 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizimg.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 005105152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 003964056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 003742032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 002772032 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 002160640 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001957008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001913296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001857024 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001845408 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001664376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001412096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001334064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdrecordcpu.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001154656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001054872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001047968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000792296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000784384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000673080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000629248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000599040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000539648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000507704 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000507152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000450360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11on12.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000383984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000379840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000375720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000285256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000283688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdwriter.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000278080 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2019-10-01 18:48 - 2019-10-01 18:48 - 000243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000176440 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlib.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComposableShellProxyStub.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ForceSync.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000125232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2019-10-01 18:48 - 2019-10-01 18:48 - 000073024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000066832 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnppolicy.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AssignedAccessRuntime.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2019-10-01 18:48 - 2019-10-01 18:48 - 000016696 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizres.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000011576 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlibres.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 001819136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 001482040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-10-01 18:47 - 2019-10-01 18:47 - 001023128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000984376 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000674072 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2019-10-01 18:47 - 2019-10-01 18:47 - 000639400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000617784 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000612864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-10-01 18:47 - 2019-10-01 18:47 - 000541480 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000442704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000398728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2019-10-01 18:47 - 2019-10-01 18:47 - 000334936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposableShellProxyStub.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000293344 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgmgr32.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000179512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2019-10-01 18:47 - 2019-10-01 18:47 - 000176152 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000159112 _____ (Microsoft Corporation) C:\WINDOWS\system32\devobj.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000140496 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000132408 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellExtFramework.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\devrtl.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2019-10-01 18:47 - 2019-10-01 18:47 - 000020944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmsgapi.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2019-10-01 18:46 - 2019-10-01 18:47 - 006425600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 007905000 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 006164480 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 004046336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 003727360 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-10-01 18:46 - 2019-10-01 18:46 - 003553280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 003386880 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 002590208 _____ C:\WINDOWS\system32\dwmscene.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001940952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-10-01 18:46 - 2019-10-01 18:46 - 001607680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001543168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001512320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 001372160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-10-01 18:46 - 2019-10-01 18:46 - 001261800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001182240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000975872 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000759488 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-10-01 18:46 - 2019-10-01 18:46 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-10-01 18:46 - 2019-10-01 18:46 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000363624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000342896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdwriter.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000152408 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000119840 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000105272 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000092624 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000053248 _____ C:\WINDOWS\system32\Drivers\UsbPmApi.sys
2019-10-01 18:46 - 2019-10-01 18:46 - 000047616 _____ C:\WINDOWS\system32\UsbPmApi.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 007848192 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 006227624 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 004612520 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 003590968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 003184128 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 003105280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 002552120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 002466304 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 002120704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 002069504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001616608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdrecordcpu.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001383856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001150240 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001036800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001029432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000944664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000931840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000833312 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000732176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000656960 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11on12.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000589384 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000449888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000415808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessRuntime.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32_DeviceGuard.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2019-10-01 18:44 - 2019-10-01 18:45 - 000735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 002120272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 001413704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000551952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000355000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ManageCI.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000223032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000208184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000201016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-10-01 18:44 - 2019-10-01 18:44 - 000151568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000088352 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000079376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uaspstor.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidspi.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000052752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmstorfl.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000043536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storvsc.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2019-10-01 18:44 - 2019-10-01 18:44 - 000028936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2019-09-28 20:44 - 2019-09-28 20:44 - 000002876 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2019-09-28 16:54 - 2019-09-28 16:54 - 000097681 _____ C:\Users\rossu\Downloads\Pojisteni majetku a odpovednosti BH.PDF
2019-09-25 19:13 - 2019-09-25 19:16 - 009908792 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll
2019-09-25 19:08 - 2019-09-25 19:08 - 001596088 _____ (Harman International Industries, Incorporated.) C:\WINDOWS\system32\HarmanAPO64.dll
2019-09-25 19:08 - 2019-09-25 19:08 - 000487360 _____ (Harman International Industries, Incorporated.) C:\WINDOWS\system32\HarmanAPOUI64.dll
2019-09-25 19:07 - 2019-09-25 19:08 - 001287488 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyAPOvlldpgm.dll
2019-09-25 19:07 - 2019-09-25 19:07 - 001610848 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyAPOv251gm.dll
2019-09-25 19:04 - 2019-09-25 19:04 - 000406344 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2APIPCLL.dll
2019-09-25 19:03 - 2019-09-25 19:04 - 001544144 _____ (Dolby Laboratories) C:\WINDOWS\system32\DAX3APOProp.dll
2019-09-25 19:03 - 2019-09-25 19:03 - 001259616 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOvlldp.dll
2019-09-25 19:02 - 2019-09-25 19:03 - 001372280 _____ (Dolby Laboratories) C:\WINDOWS\system32\DAX3APOv251.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000416400 _____ (Harman) C:\WINDOWS\system32\HMUI.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000366016 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\HMAPO.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000360240 _____ (Harman) C:\WINDOWS\system32\HMClariFi.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000203736 _____ (Harman) C:\WINDOWS\system32\HMHVS.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000190824 _____ (Harman) C:\WINDOWS\system32\HMEQ_Voice.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000190824 _____ (Harman) C:\WINDOWS\system32\HMEQ.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000179488 _____ (Harman) C:\WINDOWS\system32\HMLimiter.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000154256 _____ (Harman) C:\WINDOWS\system32\HarmanAudioInterface.dll
2019-09-25 18:58 - 2019-09-25 18:58 - 000378280 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2API.dll
2019-09-25 18:57 - 2019-09-25 18:58 - 001159080 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2019-09-25 18:56 - 2019-09-25 18:57 - 005346888 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2019-09-25 18:55 - 2019-09-25 18:56 - 002444576 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv201.dll
2019-09-25 18:55 - 2019-09-25 18:55 - 001078576 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SEHDHF32.dll
2019-09-25 18:54 - 2019-09-25 18:55 - 001061464 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SECOMN32.dll
2019-09-25 18:54 - 2019-09-25 18:54 - 001386680 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDHF64.dll
2019-09-25 18:54 - 2019-09-25 18:54 - 001180792 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDRA64.dll
2019-09-25 18:53 - 2019-09-25 18:54 - 001396840 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SECOMN64.dll
2019-09-25 18:53 - 2019-09-25 18:53 - 001294192 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEAPO64.dll
2019-09-25 18:53 - 2019-09-25 18:53 - 000604688 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaemaxapo64.dll
2019-09-25 18:51 - 2019-09-25 18:53 - 006270088 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64AF3.dll
2019-09-25 18:51 - 2019-09-25 18:51 - 000367504 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64AF3.dll
2019-09-25 18:50 - 2019-09-25 18:51 - 001965048 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64AF3.dll
2019-09-25 18:50 - 2019-09-25 18:50 - 000315872 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64F3.dll
2019-09-25 18:49 - 2019-09-25 18:50 - 003267496 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RltkAPO.dll
2019-09-25 18:49 - 2019-09-25 18:49 - 000341040 _____ (Synopsys, Inc.) C:\WINDOWS\SysWOW64\SRCOM.dll
2019-09-25 18:49 - 2019-09-25 18:49 - 000341040 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM.dll
2019-09-25 18:48 - 2019-09-25 18:49 - 001435032 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRRPTR64.dll
2019-09-25 18:48 - 2019-09-25 18:48 - 000467048 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRAPO64.dll
2019-09-25 18:48 - 2019-09-25 18:48 - 000381304 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM64.dll
2019-09-25 18:47 - 2019-09-25 18:48 - 003306704 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE2.dll
2019-09-25 18:46 - 2019-09-25 18:47 - 002197872 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE.dll
2019-09-25 18:44 - 2019-09-25 18:46 - 007101640 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2019-09-25 18:44 - 2019-09-25 18:44 - 000332904 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2019-09-25 18:43 - 2019-09-25 18:44 - 001971256 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2019-09-25 18:43 - 2019-09-25 18:43 - 000692056 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2019-09-25 18:43 - 2019-09-25 18:43 - 000278160 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2019-09-25 18:43 - 2019-09-25 18:43 - 000118488 _____ C:\WINDOWS\system32\AcpiServiceVnA64.dll
2019-09-25 18:43 - 2019-09-25 18:43 - 000105200 _____ C:\WINDOWS\system32\audioLibVc.dll
2019-09-25 18:42 - 2019-09-25 18:43 - 001337536 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaeapo64.dll
2019-09-25 18:42 - 2019-09-25 18:42 - 000852032 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tosasfapo64.dll
2019-09-25 18:42 - 2019-09-25 18:42 - 000447072 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\toseaeapo64.dll
2019-09-25 18:42 - 2019-09-25 18:42 - 000122208 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2019-09-25 18:39 - 2019-09-25 18:40 - 003168280 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll
2019-09-25 18:38 - 2019-09-25 18:39 - 003445640 _____ (DTS, Inc.) C:\WINDOWS\system32\slcnt64.dll
2019-09-25 18:38 - 2019-09-25 18:38 - 000266448 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll
2019-09-25 18:37 - 2019-09-25 18:38 - 001110072 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll
2019-09-25 18:27 - 2019-09-25 18:37 - 034637796 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2019-09-25 18:27 - 2019-09-25 18:27 - 000873352 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo264.dll
2019-09-25 18:27 - 2019-09-25 18:27 - 000158592 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo.dll
2019-09-25 18:27 - 2019-09-25 18:27 - 000075432 _____ (TOSHIBA CORPORATION.) C:\WINDOWS\system32\tepeqapo64.dll
2019-09-25 18:26 - 2019-09-25 18:27 - 001382128 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosade.dll
2019-09-25 18:19 - 2019-09-25 18:19 - 000139648 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2019-09-25 18:16 - 2019-09-25 18:19 - 007178360 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000964920 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000734664 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000453168 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000157240 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000090064 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2019-09-25 18:15 - 2019-09-25 18:16 - 000448496 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2019-09-25 18:15 - 2019-09-25 18:15 - 001516160 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2019-09-25 18:15 - 2019-09-25 18:15 - 000751192 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2019-09-25 18:15 - 2019-09-25 18:15 - 000452624 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2019-09-25 18:14 - 2019-09-25 18:15 - 001598288 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2019-09-25 18:14 - 2019-09-25 18:14 - 001787848 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2019-09-25 18:13 - 2019-09-25 18:14 - 000715544 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000511536 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000392768 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000261128 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000261088 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000260104 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000220280 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000116432 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000093800 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000343600 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000327168 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000327168 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000231808 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000192872 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000090808 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000088216 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000083520 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2019-09-25 18:11 - 2019-09-25 18:12 - 001353216 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2019-09-25 18:10 - 2019-09-25 18:11 - 003353720 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2019-09-25 18:10 - 2019-09-25 18:10 - 000541008 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2019-09-25 18:10 - 2019-09-25 18:10 - 000230600 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2019-09-25 18:10 - 2019-09-25 18:10 - 000218168 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2019-09-25 18:10 - 2019-09-25 18:10 - 000174832 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2019-09-25 17:49 - 2019-09-25 18:10 - 072520608 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2019-09-25 17:48 - 2019-09-25 17:49 - 002930048 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2019-09-25 17:47 - 2019-09-25 17:48 - 003159672 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2019-09-25 17:38 - 2019-09-25 17:39 - 003676960 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2019-09-24 17:14 - 2019-09-24 17:15 - 000000000 ____D C:\Users\rossu\Downloads\Argo
2019-09-24 17:11 - 2019-09-24 18:05 - 2197701283 _____ C:\Users\rossu\Downloads\Babel 2006 CZ-ENG 1080p Marambak.mkv
2019-09-17 16:26 - 2019-09-17 20:13 - 000000000 _____ C:\Recovery.txt
2019-09-15 22:00 - 2019-09-15 22:07 - 000000000 ___HD C:\$WINDOWS.~BT

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-10-15 16:32 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-10-15 16:28 - 2019-03-13 17:10 - 000000000 ____D C:\Users\rossu\Desktop\Jednorázové bezpečnostní utility pro Windows ( 3-2019 )
2019-10-15 16:22 - 2019-03-07 21:43 - 000000000 ____D C:\Users\rossu\AppData\Roaming\uTorrent
2019-10-15 16:00 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-10-15 15:54 - 2019-06-05 15:38 - 000000000 ____D C:\Users\rossu\AppData\Local\BitTorrentHelper
2019-10-15 15:49 - 2019-03-07 21:17 - 000000000 __SHD C:\Users\rossu\IntelGraphicsProfiles
2019-10-15 15:49 - 2019-03-07 20:58 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-10-15 15:47 - 2019-06-02 21:44 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-10-15 15:47 - 2019-03-07 21:05 - 000000000 ____D C:\ProgramData\NVIDIA
2019-10-14 20:20 - 2019-03-19 06:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-10-14 19:56 - 2019-06-02 21:11 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-10-13 18:51 - 2019-06-02 21:32 - 001693636 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-10-13 18:51 - 2019-03-19 13:55 - 000718018 _____ C:\WINDOWS\system32\perfh005.dat
2019-10-13 18:51 - 2019-03-19 13:55 - 000145062 _____ C:\WINDOWS\system32\perfc005.dat
2019-10-13 18:51 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF
2019-10-13 15:49 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Dism
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-10-09 21:13 - 2019-03-08 18:49 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-10-09 21:06 - 2019-03-08 18:49 - 127230528 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-10-09 21:05 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-10-07 17:40 - 2019-05-15 17:18 - 000000000 ____D C:\KVRT_Data
2019-10-07 17:35 - 2019-03-11 16:54 - 000000000 ____D C:\Users\rossu\AppData\Local\CrashDumps
2019-10-05 19:47 - 2019-06-01 19:28 - 000000000 ____D C:\Program Files\Defraggler
2019-10-05 19:45 - 2019-03-13 16:59 - 000000877 _____ C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
2019-10-05 16:02 - 2019-09-07 19:26 - 000489072 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-10-04 16:37 - 2019-06-02 20:37 - 000000000 ____D C:\Users\rossu
2019-10-04 16:36 - 2019-03-19 06:37 - 083099648 _____ C:\WINDOWS\system32\config\software.rcbak
2019-10-04 16:36 - 2019-03-19 06:37 - 020971520 _____ C:\WINDOWS\system32\config\system.rcbak
2019-10-04 16:36 - 2019-03-19 06:37 - 000524288 _____ C:\WINDOWS\system32\config\default.rcbak
2019-10-04 16:36 - 2019-03-19 06:37 - 000065536 _____ C:\WINDOWS\system32\config\sam.rcbak
2019-10-04 16:36 - 2019-03-19 06:37 - 000057344 _____ C:\WINDOWS\system32\config\security.rcbak
2019-10-02 17:01 - 2019-03-07 21:17 - 000000000 ____D C:\Users\rossu\AppData\Local\Packages
2019-10-02 16:59 - 2019-03-07 20:42 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-10-01 22:55 - 2019-03-14 17:35 - 000000000 ____D C:\Users\rossu\AppData\Roaming\MyPhoneExplorer
2019-10-01 19:37 - 2019-03-07 21:17 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-10-01 19:36 - 2019-03-07 21:17 - 000000000 ___RD C:\Users\rossu\3D Objects
2019-10-01 19:25 - 2019-03-19 06:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-10-01 19:25 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2019-10-01 19:25 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
2019-10-01 19:25 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-09-30 15:34 - 2019-08-12 16:28 - 000000000 ____D C:\Users\rossu\AppData\Local\TeamViewer
2019-09-28 20:54 - 2019-06-02 18:58 - 000000000 ___DC C:\WINDOWS\Panther
2019-09-28 17:16 - 2019-09-06 15:33 - 000000000 ____D C:\Users\rossu\Desktop\Nová složka (2)
2019-09-25 19:13 - 2019-04-25 23:21 - 000451792 _____ (Realsil Semiconductor Corporation) C:\WINDOWS\system32\Drivers\RtsUer.sys
2019-09-25 19:12 - 2019-03-07 21:01 - 002035889 _____ C:\WINDOWS\system32\Drivers\rtkhdasetting.zip
2019-09-25 19:11 - 2019-04-25 23:20 - 000000000 _____ C:\WINDOWS\system32\fpfftResultsFile.txt
2019-09-25 19:10 - 2019-03-07 21:00 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2019-09-25 17:48 - 2019-08-19 18:24 - 000023584 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2019-09-25 17:47 - 2019-04-25 21:58 - 003751488 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll
2019-09-25 17:37 - 2019-04-25 21:47 - 006970456 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2019-09-24 18:18 - 2019-06-15 08:18 - 000000000 ____D C:\Users\rossu\AppData\Local\ElevatedDiagnostics
2019-09-19 16:45 - 2019-05-28 19:35 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-09-15 22:07 - 2019-06-02 21:43 - 000001908 _____ C:\WINDOWS\diagwrn.xml
2019-09-15 22:07 - 2019-06-02 21:43 - 000001908 _____ C:\WINDOWS\diagerr.xml

==================== Files in the root of some directories ================

2019-08-22 17:53 - 2019-08-22 17:53 - 000000000 _____ () C:\Users\rossu\AppData\Local\{F0F00A64-F90E-4776-B475-DE76BB356B29}

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================




Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-10-2019 02
Ran by rossu (15-10-2019 16:39:35)
Running from C:\Users\rossu\Desktop
Windows 10 Home Version 1903 18362.418 (X64) (2019-06-02 19:48:02)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-677340807-1562095438-3412084234-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-677340807-1562095438-3412084234-503 - Limited - Disabled)
Guest (S-1-5-21-677340807-1562095438-3412084234-501 - Limited - Disabled)
rossu (S-1-5-21-677340807-1562095438-3412084234-1001 - Administrator - Enabled) => C:\Users\rossu
WDAGUtilityAccount (S-1-5-21-677340807-1562095438-3412084234-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\uTorrent) (Version: 3.5.5.45365 - BitTorrent Inc.)
1310 (HKLM-x32\...\{76A9FB3A-D7AB-4C8C-8C49-3CFDBF2D6C2D}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden
1310_Help (HKLM-x32\...\{6D4553DF-2095-4D10-92C0-17934733B51D}) (Version: 82.0.58.000 - Hewlett-Packard) Hidden
1310Trb (HKLM-x32\...\{6D7E031C-4C05-4265-854A-FE9FDEA9984D}) (Version: 82.0.242.000 - Hewlett-Packard) Hidden
64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden
AIO_CDB_ProductContext (HKLM-x32\...\{D5045A94-1D46-44A7-9C4F-7D05B40D82EC}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden
AIO_CDB_Software (HKLM-x32\...\{2DFDE21D-AFFE-4CDD-BBD4-3B7832BEC036}) (Version: 140.0.428.000 - Hewlett-Packard) Hidden
AIO_Scan (HKLM-x32\...\{104066F4-5897-4067-85D3-4C88B67CCF75}) (Version: 130.0.421.000 - Hewlett-Packard) Hidden
BufferChm (HKLM-x32\...\{FA0FF682-CC70-4C57-93CD-E276F3E7537E}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.62 - Piriform)
Copy (HKLM-x32\...\{9BE466FF-70B7-4DA8-807C-DB4C3610FDAA}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
Defraggler (HKLM\...\Defraggler) (Version: 2.22 - Piriform)
Destinations (HKLM-x32\...\{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
DeviceDiscovery (HKLM-x32\...\{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
DocProc (HKLM-x32\...\{9B362566-EC1B-4700-BB9C-EC661BDE2175}) (Version: 140.0.185.000 - Hewlett-Packard) Hidden
Driver Easy 5.6.12 (HKLM\...\DriverEasy_is1) (Version: 5.6.12 - Easeware)
Fax (HKLM-x32\...\{9294F169-72EE-4D74-AE92-CA25F64B4FF8}) (Version: 140.0.307.000 - Hewlett-Packard) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 77.0.3865.90 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
GPBaseService2 (HKLM-x32\...\{BB3447F6-9553-4AA9-960E-0DB5310C5779}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Photosmart Officejet and Deskjet All-In-One Driver Software (HKLM\...\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}) (Version: 14.0 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPPhotoGadget (HKLM-x32\...\{CAE4213F-F797-439D-BD9E-79B71D115BE3}) (Version: 140.0.524.000 - Hewlett-Packard) Hidden
HPProductAssistant (HKLM-x32\...\{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.15.4248 - Intel Corporation)
LibreOffice 6.2.2.2 (HKLM\...\{7B486711-D8E3-41F4-A518-D709CD62C3D1}) (Version: 6.2.2.2 - The Document Foundation)
MarketResearch (HKLM-x32\...\{D360FA88-17C8-4F14-B67F-13AAF9607B12}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden
Microsoft Access database engine 2010 (English) (HKLM-x32\...\{90140000-00D1-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\OneDriveSetup.exe) (Version: 19.012.0121.0011 - Microsoft Corporation)
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.12 - F.J. Wechselberger)
Network64 (HKLM\...\{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}) (Version: 140.0.306.000 - Hewlett-Packard) Hidden
OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP)
Ovládací panel NVIDIA 425.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 425.31 - NVIDIA Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8781.1 - Realtek Semiconductor Corp.)
Revo Uninstaller Pro 4.1.5 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 4.1.5 - VS Revo Group, Ltd.)
ROSSMANN CEWE fotosvet (HKLM-x32\...\ROSSMANN CEWE fotosvet) (Version: 6.4.3 - CEWE Stiftung u Co. KGaA)
Scan (HKLM-x32\...\{06A1D88C-E102-4527-AF70-29FFD7AF215A}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
SolutionCenter (HKLM-x32\...\{BC5DD87B-0143-4D14-AAE6-97109614DC6B}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden
Status (HKLM-x32\...\{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}) (Version: 140.0.342.000 - Hewlett-Packard) Hidden
SyncBackFree (HKLM-x32\...\SyncBackFree_is1) (Version: 9.1.12.0 - 2BrightSparks)
Toolbox (HKLM-x32\...\{292F0F52-B62D-4E71-921B-89A682402201}) (Version: 140.0.596.000 - Hewlett-Packard) Hidden
TrayApp (HKLM-x32\...\{CD31E63D-47FD-491C-8117-CF201D0AFAB5}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{C3ACFCEA-240F-4DCC-A0C3-DD55FEE6C3C2}) (Version: 2.58.0.0 - Microsoft Corporation)
USB Bridge Installer (HKLM\...\USB Bridge Installer_is1) (Version: - )
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
WebReg (HKLM-x32\...\{8EE94FD8-5F52-4463-A340-185D16328158}) (Version: 140.0.297.017 - Hewlett-Packard) Hidden
WinRAR 5.61 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.61.0 - win.rar GmbH)
Zoner Photo Studio 18 (HKLM\...\ZonerPhotoStudio18_CZ_is1) (Version: 18.0.1.1 - ZONER software)

Packages:
=========
Cooking Fever -> C:\Program Files\WindowsApps\NORDCURRENT.COOKINGFEVER_6.0.0.3_x86__m9bz608c1b9ra [2019-10-13] (Nordcurrent)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.0.3587.0_x64__rz1tebttyb220 [2019-10-13] (Dolby Laboratories)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-03-07] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-03-07] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-14] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.10022.0_x64__8wekyb3d8bbwe [2019-10-13] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-14] (Microsoft Corporation) [MS Ad]
Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_2.2.16.0_x64__nfy108tqq3p12 [2019-09-28] (Thumbmunkeys Ltd) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe [2019-09-28] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll (Microsoft Windows -> Microsoft Corporation)
ContextMenuHandlers1: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers1-x32: [MyPhoneExplorer] -> {A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} => C:\Program Files (x86)\MyPhoneExplorer\DLL\ShellMgr.dll [2010-03-30] (F.J. Wechselberger) [File not signed]
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2019-04-25] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [RUShellExt] -> {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} => F:\program\Revo Uninstaller Pro\RUExt.dll [2019-03-29] (VS Revo Group Ltd. -> VS Revo Group)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ==================


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2011-08-18 01:29 - 2011-08-18 01:29 - 001039360 _____ (Hewlett-Packard Co.) [File not signed] c:\program files (x86)\hp\digital imaging\bin\hpslpsvc64.dll
2010-08-06 11:15 - 2010-08-06 11:15 - 000071680 _____ (Hewlett-Packard) [File not signed] c:\windows\system32\hpzinw12.dll
2010-08-06 11:15 - 2010-08-06 11:15 - 000089600 _____ (Hewlett-Packard) [File not signed] c:\windows\system32\hpzipm12.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\localhost -> localhost

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-06-16 17:59 - 2019-09-14 16:23 - 000000917 _____ C:\WINDOWS\system32\drivers\etc\hosts

0.0.0.0 account.zoner.com
0.0.0.0 http://www.google-analytics.com

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> %SystemRoot%\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;C:\Users\rossu\AppData\Local\Microsoft\WindowsApps;
HKU\S-1-5-21-677340807-1562095438-3412084234-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\rossu\Desktop\242.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

HKLM\...\StartupApproved\StartupFolder: => "HP Digital Imaging Monitor.lnk"
HKLM\...\StartupApproved\Run32: => "HP Software Update"
HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{7CD50AB5-7174-4E61-8068-59D9D48E3E16}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe (Hewlett-Packard Company -> Hewlett-Packard)
FirewallRules: [{1EA14F12-FEF0-4322-ACDA-D18241B0B3EF}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{B90250FD-1309-40E6-B0BA-9A93203A65EB}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{4D187A93-545A-41E8-A2C1-87F1F7F7FAF9}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe (Hewlett Packard -> Hewlett-Packard)
FirewallRules: [{80676541-E8B7-49C1-84E2-BA8420913541}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{2C83FDDD-0FEC-4980-9CBC-E38BB497144F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{1FCF8DF0-F8B8-4B65-ACA1-B28A1CE901B8}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{9D24D801-3989-4777-92A8-28FE6A838C4C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{AB2CFCAD-C35C-4FF9-8F34-B83883033B32}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe (Hewlett-Packard Co.) [File not signed]
FirewallRules: [{7CDC5136-9ECE-4A94-A397-61F973E8C3BA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{D5BCB6A4-986C-4D75-9BA8-DF3AF1416F91}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{E81AE930-30E8-4E3C-98A8-A3464435B62B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{BE0A1E35-FB3A-411A-B09E-4DE34EED4924}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{8921E3B9-9F5B-4C57-9239-71BF20BAF4D8}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{24CE10E1-2CBB-460C-ADEF-40263B51438B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{A8F68FCC-5EAE-4403-84E1-ECA6DDB783BA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{C219FC01-1687-470A-8B9B-43ECDCC9A405}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{982F682E-A67B-4C3A-9B21-5D98CFEADD9D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{7570B5BD-D000-4932-B706-DC0E741867E1}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [UDP Query User{6E2F9970-FF36-4A97-BFD5-887F1728A0D6}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe (Franz Josef Wechselberger -> F.J. Wechselberger)
FirewallRules: [TCP Query User{9C9FD61C-7E97-4AE9-A60B-21D5BD2E1512}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe (Franz Josef Wechselberger -> F.J. Wechselberger)
FirewallRules: [{B0E2E240-8573-470B-BD27-70C8A10D0C15}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{19836764-87C0-408A-B324-BAA89AF42127}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{9ACBD8C1-BF14-4CC4-B9D2-D01A7201ECDB}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{6DB19253-DDC2-43E9-BB37-06B44E402CEE}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{29496A8D-EE36-41ED-8393-FC885D2DFA22}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{C03B1736-B0EB-43DD-8D8C-2259CE1998E1}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{4D2FBD16-8481-4811-99F6-F34897551598}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (10/15/2019 04:38:39 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7696,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/15/2019 04:27:22 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (9220,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/15/2019 04:14:10 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (10988,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/15/2019 04:05:53 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4776,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/14/2019 08:20:26 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (10/14/2019 08:20:26 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (10/14/2019 08:04:08 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7808,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/14/2019 07:59:05 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Microsoft.Photos.exe verze 2019.19071.17920.0 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 28d0

Čas spuštění: 01d582b5397b8ed5

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe

ID hlášení: 65da0d7e-ecc9-49f1-91bd-164953b5db99

Úplný název balíčku s chybou: Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe

ID aplikace relativní podle balíčku s chybou: App

Typ zablokování: Quiesce


System errors:
=============
Error: (10/15/2019 03:49:17 PM) (Source: VBoxNetLwf) (EventID: 12) (User: )
Description: Ovladač zjistil interní chybu ovladače na \Device\VBoxNetLwf.

Error: (10/15/2019 03:47:31 PM) (Source: VBoxNetLwf) (EventID: 12) (User: )
Description: Ovladač zjistil interní chybu ovladače na \Device\VBoxNetLwf.

Error: (10/15/2019 03:47:28 PM) (Source: VBoxNetLwf) (EventID: 12) (User: )
Description: Ovladač zjistil interní chybu ovladače na \Device\VBoxNetLwf.

Error: (10/14/2019 08:20:03 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HONRFIH)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/14/2019 08:20:03 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HONRFIH)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/14/2019 08:20:03 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HONRFIH)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/14/2019 08:20:03 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HONRFIH)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/14/2019 08:20:03 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HONRFIH)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.


Windows Defender:
===================================
Date: 2019-10-15 16:28:35.254
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {7936A37E-FFDF-46F0-AB03-A0D4AAD90EFA}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Vlastní prohledávání
Uživatel: DESKTOP-HONRFIH\rossu

Date: 2019-10-01 17:00:33.933
Description:
Antivirová ochrana v programu Windows Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Ditertag.A
ID: 2147722997
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\rossu\Downloads\Windows 10 Manager 3.1.5\Windows 10 Manager 3.1.5\Keygen\Keygen.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-HONRFIH\rossu
Název procesu: C:\Windows\explorer.exe
Verze bezpečnostních informací: AV: 1.303.624.0, AS: 1.303.624.0, NIS: 1.303.624.0
Verze modulu: AM: 1.1.16400.2, NIS: 1.1.16400.2

Date: 2019-10-01 16:58:56.027
Description:
Antivirová ochrana v programu Windows Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Ditertag.A
ID: 2147722997
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\rossu\Downloads\Windows 10 Manager 3.1.5\Windows 10 Manager 3.1.5\Keygen\Keygen.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-HONRFIH\rossu
Název procesu: C:\Windows\explorer.exe
Verze bezpečnostních informací: AV: 1.303.624.0, AS: 1.303.624.0, NIS: 1.303.624.0
Verze modulu: AM: 1.1.16400.2, NIS: 1.1.16400.2

Date: 2019-10-01 16:58:46.658
Description:
Antivirová ochrana v programu Windows Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Ditertag.A
ID: 2147722997
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\rossu\Downloads\Windows 10 Manager 3.1.5\Windows 10 Manager 3.1.5\Keygen\Keygen.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.303.624.0, AS: 1.303.624.0, NIS: 1.303.624.0
Verze modulu: AM: 1.1.16400.2, NIS: 1.1.16400.2

Date: 2019-09-25 16:15:15.190
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {DF7051A3-C551-4C2B-A444-DBE6E8DF6447}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-06 19:35:34.323
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.303.963.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x80240016
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2019-10-05 17:17:57.694
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.303.944.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x8024001e
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2019-10-04 16:37:18.055
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o načtení bezpečnostních informací a pokusí se o obnovení poslední známé funkční verze.
Bezpečnostní informace, které se měly načíst: Aktuální
Kód chyby: 0x80070003
Popis chyby: Systém nemůže nalézt uvedenou cestu.
Verze bezpečnostních informací: 0.0.0.0;0.0.0.0
Verze modulu: 0.0.0.0

Date: 2019-09-22 21:42:35.719
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.301.2008.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.16300.1
Kód chyby: 0x80240022
Popis chyby: V daném programu nelze zkontrolovat aktualizace definic.

Date: 2019-09-04 18:15:13.873
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.301.518.0
Předchozí verze bezpečnostních informací: 1.301.513.0
Zdroj aktualizace: Uživatel
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.16300.1
Předchozí verze modulu: 1.1.16300.1
Kód chyby: 0x80509004
Popis chyby: Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.

CodeIntegrity:
===================================

Date: 2019-06-14 18:24:34.592
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\Windows\WinSxS\wow64_microsoft-windows-securitycenter-core_31bf3856ad364e35_10.0.17134.1_none_0a15945c4fa3fe26\wscadminui.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-14 18:24:34.577
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\Windows\WinSxS\wow64_microsoft-windows-securitycenter-core_31bf3856ad364e35_10.0.17134.1_none_0a15945c4fa3fe26\wscadminui.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-14 18:24:34.570
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\Windows\WinSxS\wow64_microsoft-windows-securitycenter-core_31bf3856ad364e35_10.0.17134.1_none_0a15945c4fa3fe26\wscadminui.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-14 18:24:34.534
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\Windows\WinSxS\wow64_microsoft-windows-securitycenter-core_31bf3856ad364e35_10.0.17134.1_none_0a15945c4fa3fe26\wscadminui.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

BIOS: Insyde Corp. V1.03 04/20/2015
Motherboard: Acer Tashigi_BA
Processor: Intel(R) Pentium(R) CPU N3700 @ 1.60GHz
Percentage of memory in use: 83%
Total physical RAM: 4009.76 MB
Available physical RAM: 668.03 MB
Total Virtual: 5993.76 MB
Available Virtual: 1534.96 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:193.9 GB) (Free:124.1 GB) NTFS
Drive d: (dokument) (Fixed) (Total:19.53 GB) (Free:19.14 GB) NTFS
Drive e: (miXa) (Fixed) (Total:292.97 GB) (Free:219.69 GB) NTFS
Drive f: (program) (Fixed) (Total:423.7 GB) (Free:383.8 GB) NTFS
Drive g: (usb 8) (Removable) (Total:7.46 GB) (Free:0.01 GB) NTFS
Drive i: (Verbatim HDD) (Fixed) (Total:465.76 GB) (Free:380.27 GB) NTFS

\\?\Volume{834b1fb5-6b69-4be2-bfbc-7d6e58f5c7e1}\ (Obnovení) (Fixed) (Total:0.49 GB) (Free:0.09 GB) NTFS
\\?\Volume{37f2efdb-8a87-4438-872f-dfbcb0d70c50}\ () (Fixed) (Total:0.81 GB) (Free:0.34 GB) NTFS
\\?\Volume{a53158e8-3458-4125-a82b-8058b68c7ffb}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 93A96FC2)

Partition: GPT.

========================================================
Disk: 2 (Size: 465.8 GB) (Disk ID: CCEAC4BE)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)

========================================================
Disk: 3 (Size: 7.5 GB) (Disk ID: 00077117)
Partition 1: (Active) - (Size=7.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivní kontrolu

#2 Příspěvek od Conder »

Ahoj :)

:arrow: Stiahni AdwCleaner: https://toolslib.net/downloads/finish/1/
  • Uloz na plochu a ukonci vsetky programy
  • Spusti AdwCleaner ako spravca
  • Odsuhlas licencne podmienky
  • Klikni na Skenovat nyni (Scan now) a pockaj na dokoncenie
  • Nechaj zaskrtnute vsetky nalezy
  • Klikni na Cisteni a opravy (Clean and Repair) a potvrd restart PC teraz
  • Po restartovani PC sa otvori AdwCleaner, klikni na Zobrazit soubor protokolu
  • Otvori sa log, jeho obsah sem skopiruj
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

bigmuff
Návštěvník
Návštěvník
Příspěvky: 298
Registrován: 12 lis 2009 20:09

Re: Prosím o preventivní kontrolu

#3 Příspěvek od bigmuff »

...tak jsem tady,a tady je log

# -------------------------------
# Malwarebytes AdwCleaner 7.4.1.0
# -------------------------------
# Build: 09-04-2019
# Database: 2019-10-14.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 10-16-2019
# Duration: 00:00:02
# OS: Windows 10 Home
# Cleaned: 1
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

Deleted nladljmabboanhihfkjacnnkgjhnokhj

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1603 octets] - [13/03/2019 16:47:15]
AdwCleaner[C00].txt - [1690 octets] - [13/03/2019 16:48:02]
AdwCleaner[S01].txt - [1662 octets] - [08/04/2019 17:41:49]
AdwCleaner[C01].txt - [1767 octets] - [08/04/2019 17:42:23]
AdwCleaner[S02].txt - [1610 octets] - [25/04/2019 16:21:33]
AdwCleaner[C02].txt - [1753 octets] - [25/04/2019 16:22:11]
AdwCleaner[S03].txt - [1636 octets] - [14/05/2019 18:22:58]
AdwCleaner[C03].txt - [1799 octets] - [14/05/2019 18:23:46]
AdwCleaner[S04].txt - [1758 octets] - [22/05/2019 17:37:05]
AdwCleaner[C04].txt - [1921 octets] - [22/05/2019 17:37:25]
AdwCleaner[S05].txt - [1880 octets] - [01/06/2019 17:58:34]
AdwCleaner[C05].txt - [2043 octets] - [01/06/2019 18:03:19]
AdwCleaner[S06].txt - [2002 octets] - [06/06/2019 19:50:58]
AdwCleaner[C06].txt - [2165 octets] - [06/06/2019 19:51:18]
AdwCleaner[S07].txt - [2124 octets] - [21/06/2019 17:35:30]
AdwCleaner[C07].txt - [2287 octets] - [21/06/2019 17:36:39]
AdwCleaner[S08].txt - [2264 octets] - [02/07/2019 19:46:15]
AdwCleaner[C08].txt - [2407 octets] - [02/07/2019 19:49:50]
AdwCleaner[S09].txt - [2368 octets] - [16/07/2019 19:25:46]
AdwCleaner[C09].txt - [2531 octets] - [16/07/2019 19:26:18]
AdwCleaner[S10].txt - [2490 octets] - [23/07/2019 21:14:22]
AdwCleaner[C10].txt - [2653 octets] - [23/07/2019 21:52:24]
AdwCleaner[S11].txt - [2612 octets] - [10/08/2019 18:42:02]
AdwCleaner[C11].txt - [2775 octets] - [10/08/2019 18:42:18]
AdwCleaner[S12].txt - [2810 octets] - [15/08/2019 22:16:51]
AdwCleaner[C12].txt - [2975 octets] - [15/08/2019 22:17:15]
AdwCleaner[S13].txt - [2932 octets] - [22/08/2019 18:56:45]
AdwCleaner[C13].txt - [3097 octets] - [22/08/2019 18:57:03]
AdwCleaner[S14].txt - [3054 octets] - [14/09/2019 10:44:27]
AdwCleaner[C14].txt - [3219 octets] - [14/09/2019 10:49:49]
AdwCleaner_Debug.log - [42419 octets] - [01/10/2019 20:10:00]
AdwCleaner[S15].txt - [3249 octets] - [01/10/2019 20:10:41]
AdwCleaner[C15].txt - [3414 octets] - [01/10/2019 20:11:29]
AdwCleaner[S16].txt - [3372 octets] - [06/10/2019 19:42:23]
AdwCleaner[C16].txt - [3537 octets] - [06/10/2019 19:44:37]
AdwCleaner[S17].txt - [3494 octets] - [13/10/2019 18:44:50]
AdwCleaner[C17].txt - [3659 octets] - [13/10/2019 18:45:17]
AdwCleaner[S18].txt - [3616 octets] - [16/10/2019 17:23:11]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C18].txt ##########

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivní kontrolu

#4 Příspěvek od Conder »

:arrow: Poprosim o obidva nove logy z FRST.
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

bigmuff
Návštěvník
Návštěvník
Příspěvky: 298
Registrován: 12 lis 2009 20:09

Re: Prosím o preventivní kontrolu

#5 Příspěvek od bigmuff »

OK tady

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-10-2019 02
Ran by rossu (administrator) on DESKTOP-HONRFIH (Acer Aspire ES1-731G) (16-10-2019 23:10:19)
Running from C:\Users\rossu\Desktop
Loaded Profiles: rossu (Available Profiles: rossu)
Platform: Windows 10 Home Version 1903 18362.418 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Malwarebytes Inc -> Malwarebytes) C:\Users\rossu\Desktop\adwcleaner_7.4.1.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19091.313.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\NisSrv.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\Defraggler\df64.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\Defraggler\df64.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\Defraggler\df64.exe
(Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.85.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18390912 2019-09-25] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\Run: [CCleaner Smart Cleaning] => F:\program\ccleaner\CCleaner64.exe [24552064 2019-10-15] (Piriform Software Ltd -> Piriform Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.90\Installer\chrmstp.exe [2019-09-19] (Google LLC -> Google LLC)
BootExecute:
GroupPolicy: Restriction ? <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0312AFB5-A175-4D34-BCAB-DEB53C4B9314} - System32\Tasks\HDCleanerSkipUAC => C:\USERS\ROSSU\DESKTOP\HDCLEANERX64\HDCleaner.exe
Task: {1B28AEAC-91AF-4177-8C8F-3CB17B2CA6EC} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
Task: {2EAB0A5A-E5F8-48FB-9DEB-D6883D3B0024} - System32\Tasks\CCleaner Update => F:\program\ccleaner\CCUpdate.exe [608384 2019-10-15] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {3F2C0504-AB60-42B3-8704-CF53E6E400B4} - System32\Tasks\Defraggler Volume C Task => C:\Program Files\Defraggler\df64.exe [1624120 2018-05-02] (Piriform Ltd -> Piriform Ltd)
Task: {5B45F462-B401-4006-AD6F-27E428528C22} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {67D532DF-D5CD-4D9C-8975-6D846F765EE7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {86790561-FDBD-4435-9813-E911E0EBB6B0} - System32\Tasks\Defraggler Volume D Task => C:\Program Files\Defraggler\df64.exe [1624120 2018-05-02] (Piriform Ltd -> Piriform Ltd)
Task: {8DCB0963-C38B-42FF-84AC-544097BD1107} - System32\Tasks\Defraggler Volume F Task => C:\Program Files\Defraggler\df64.exe [1624120 2018-05-02] (Piriform Ltd -> Piriform Ltd)
Task: {8E1B91F2-4A2C-4FA3-94F2-61CB993B2975} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B11A6E73-B90E-4AE4-AAA1-1CBD65F341C2} - System32\Tasks\Defraggler Volume E Task => C:\Program Files\Defraggler\df64.exe [1624120 2018-05-02] (Piriform Ltd -> Piriform Ltd)
Task: {C241ABCA-A2F9-44E4-BBAD-A0909FE08D7F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DF2192C6-BE19-4D03-A899-5B636468562A} - System32\Tasks\CCleanerSkipUAC => F:\program\ccleaner\CCleaner.exe [18458752 2019-10-15] (Piriform Software Ltd -> Piriform Ltd)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Defraggler Volume C Task.job => C:\Program Files\Defraggler\df64.exe
Task: C:\WINDOWS\Tasks\Defraggler Volume D Task.job => C:\Program Files\Defraggler\df64.exe
Task: C:\WINDOWS\Tasks\Defraggler Volume E Task.job => C:\Program Files\Defraggler\df64.exe
Task: C:\WINDOWS\Tasks\Defraggler Volume F Task.job => C:\Program Files\Defraggler\df64.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 08 C:\WINDOWS\SysWOW64\wlidNSP.dll [41472 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5 09 C:\WINDOWS\SysWOW64\wlidNSP.dll [41472 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5-x64 08 C:\WINDOWS\system32\wlidnsp.dll [66048 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5-x64 09 C:\WINDOWS\system32\wlidnsp.dll [66048 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{5673707c-6e6b-4bed-88a8-2addce076092}: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{90ade671-655b-4ef5-84a6-e0d9946ad7a7}: [DhcpNameServer] 192.168.0.1 0.0.0.0

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-677340807-1562095438-3412084234-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/

Edge:
======
DownloadDir: C:\Users\rossu\Downloads
Edge HomeButtonPage: HKU\S-1-5-21-677340807-1562095438-3412084234-1001 -> hxxp://www.seznam.cz/

FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-28] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-28] (Google Inc -> Google LLC)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxps://www.seznam.cz/"
CHR Profile: C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default [2019-10-16]
CHR Extension: (Překladač Google) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2019-03-07]
CHR Extension: (Prezentace) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-03-07]
CHR Extension: (Dokumenty) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-03-07]
CHR Extension: (Disk Google) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-03-07]
CHR Extension: (YouTube) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-03-07]
CHR Extension: (Tabulky) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-03-07]
CHR Extension: (AddToAny: Share Anywhere) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffpgijchhhkhnokafdeklpllijgnbche [2019-03-07]
CHR Extension: (Vzdálená plocha Chrome) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2019-07-20]
CHR Extension: (Dokumenty Google offline) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-03-08]
CHR Extension: (AdBlock) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-10-13]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Gmail) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-23]
CHR Extension: (Chrome Media Router) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-09-11]
CHR Profile: C:\Users\rossu\AppData\Local\Google\Chrome\User Data\System Profile [2019-09-07]
CHR HKLM-x32\...\Chrome\Extension: [nladljmabboanhihfkjacnnkgjhnokhj] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtherosSvc; C:\WINDOWS\System32\drivers\AdminService.exe [415992 2019-07-21] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider)
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed]
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [355872 2019-04-25] (Intel(R) pGFX -> Intel Corporation)
S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\NisSrv.exe [3004048 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MsMpEng.exe [103384 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\WINDOWS\System32\drivers\athw10x.sys [4322672 2019-07-21] (Qualcomm Atheros -> Qualcomm Atheros Communications, Inc.)
S3 dot4; C:\WINDOWS\system32\DRIVERS\Dot4.sys [151968 2012-10-18] (Hewlett-Packard Company -> Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\WINDOWS\System32\drivers\Dot4Prt.sys [27040 2012-10-18] (Hewlett-Packard Company -> Windows (R) Win 7 DDK provider)
S3 dot4usb; C:\WINDOWS\system32\DRIVERS\dot4usb.sys [49056 2012-10-18] (Hewlett-Packard Company -> Microsoft Corporation)
R3 ETDI2C; C:\WINDOWS\System32\drivers\ETDI2C.sys [218264 2019-08-26] (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronic Corp.)
R3 igfxLP; C:\WINDOWS\system32\DRIVERS\igdkmd64lp.sys [7399984 2019-04-25] (Intel Corporation -> Intel Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_3a28859ceb44fcc2\nvlddmkm.sys [20747736 2019-04-25] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1158944 2019-08-19] (Realtek Semiconductor Corp. -> Realtek )
R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [451792 2019-09-25] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 TXEIx64; C:\WINDOWS\System32\drivers\TXEIx64.sys [146200 2015-10-14] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R3 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [237584 2019-07-12] (Oracle Corporation -> Oracle Corporation)
R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [248464 2019-07-12] (Oracle Corporation -> Oracle Corporation)
S3 VBoxUSB; C:\WINDOWS\System32\Drivers\VBoxUSB.sys [175248 2019-07-12] (Oracle Corporation -> Oracle Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46688 2019-10-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [350136 2019-10-02] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54200 2019-10-02] (Microsoft Windows -> Microsoft Corporation)
S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-10-16 20:04 - 2019-10-16 20:04 - 049852405 _____ C:\Users\rossu\Downloads\xvideos.com_acba33f5e63b4221a9cc3b7ec2e99356.mp4
2019-10-16 20:03 - 2019-10-16 20:03 - 060046898 _____ C:\Users\rossu\Downloads\xvideos.com_de7c262ddd5f3e7b2adfd6e8b8b47b46.mp4
2019-10-16 20:02 - 2019-10-16 20:02 - 005380644 _____ C:\Users\rossu\Downloads\xvideos.com_6ee38db3254c03791271725a412fe893.mp4
2019-10-16 19:59 - 2019-10-16 19:59 - 041190127 _____ C:\Users\rossu\Downloads\xvideos.com_9141eefa845751e973f2b95d6688be7f.mp4
2019-10-16 19:55 - 2019-10-16 19:55 - 068865916 _____ C:\Users\rossu\Downloads\xvideos.com_60de1acaf31a58adc32f7caeb722a62d.mp4
2019-10-16 19:51 - 2019-10-16 19:52 - 006867748 _____ C:\Users\rossu\Downloads\xvideos.com_8cd3709007b345531046b1fb2bce302a.mp4
2019-10-16 19:51 - 2019-10-16 19:51 - 011534787 _____ C:\Users\rossu\Downloads\xvideos.com_220f5b111cba6c102a25361ec7934df2.mp4
2019-10-16 19:47 - 2019-10-16 19:47 - 026240846 _____ C:\Users\rossu\Downloads\xvideos.com_62f202a14359eb06a68763899da689cc.mp4
2019-10-16 19:46 - 2019-10-16 19:46 - 026324289 _____ C:\Users\rossu\Downloads\xvideos.com_214cd80b47e4b3913fbb254e8f13567d-1.mp4
2019-10-16 19:45 - 2019-10-16 19:45 - 033312946 _____ C:\Users\rossu\Downloads\xvideos.com_0585d633dee99017145117b1078d9e47.mp4
2019-10-16 19:37 - 2019-10-16 19:37 - 033084541 _____ C:\Users\rossu\Downloads\xvideos.com_13db15f2cb01331656f44226b61cf83c.mp4
2019-10-16 19:36 - 2019-10-16 19:36 - 039769414 _____ C:\Users\rossu\Downloads\xvideos.com_f71e40a58eeca5c0086ed9ee9df91d0e.mp4
2019-10-16 19:30 - 2019-10-16 19:31 - 034295276 _____ C:\Users\rossu\Downloads\xvideos.com_4f1d1bdd1e8154f4253d3deb5813b371.mp4
2019-10-16 19:25 - 2019-10-16 19:25 - 004852131 _____ C:\Users\rossu\Downloads\xvideos.com_7169716a62de4a6017ee8757ca538d75.mp4
2019-10-16 19:23 - 2019-10-16 19:23 - 017104026 _____ C:\Users\rossu\Downloads\xvideos.com_b92c66a610e056daaab0a34fda2125d4-1.mp4
2019-10-16 18:04 - 2019-10-16 18:04 - 000016155 _____ C:\Users\rossu\Downloads\[SkT]Czech_Mega_Swingers_100_Amateurs_Fucking_Together_XXX_DVDRip_x264.torrent
2019-10-16 18:00 - 2019-10-16 18:00 - 000015239 _____ C:\Users\rossu\Downloads\[CzT]Euro_Truck_Simulator_2_v_1_34_0_17s_65_DLCs_2019_CZ_.torrent
2019-10-16 17:56 - 2019-10-16 17:56 - 000533691 _____ C:\Users\rossu\Downloads\[CzT]Zeny_v_behu_2019_CZ_WebRip_1080pLQ_.torrent
2019-10-16 17:55 - 2019-10-16 17:56 - 000018677 _____ C:\Users\rossu\Downloads\[SkT]Teroristka (2019)(CZ)[WebRip][1080p] CSFD 70%.torrent
2019-10-16 17:55 - 2019-10-16 17:55 - 000019811 _____ C:\Users\rossu\Downloads\[SkT]Teroristka_(2019)(CZ)[WebRip]_=_CSFD_70%.torrent
2019-10-16 17:20 - 2019-10-16 17:20 - 007622344 _____ (Malwarebytes) C:\Users\rossu\Desktop\adwcleaner_7.4.1.exe
2019-10-15 22:31 - 2019-10-15 22:31 - 000054701 _____ C:\Users\rossu\Downloads\Sešit1-hudba-prodej-rici.xlsx
2019-10-15 21:45 - 2019-10-15 21:45 - 000014819 _____ C:\Users\rossu\Downloads\[CzT]CCleaner_Professional_Business_Edition_v_5_63_7540_2019_CZ_SK_ (1).torrent
2019-10-15 21:44 - 2019-10-15 21:44 - 000014818 _____ C:\Users\rossu\Downloads\[CzT]CCleaner_Professional_Business_Edition_v_5_63_7540_2019_CZ_SK_.torrent
2019-10-15 19:20 - 2019-10-15 19:21 - 018624905 _____ C:\Users\rossu\Downloads\maratice sklepy.mp4
2019-10-15 17:22 - 2019-10-15 19:25 - 000000000 ____D C:\Users\rossu\Desktop\tagscan-6.0.35
2019-10-15 17:20 - 2019-10-15 17:20 - 003162542 _____ C:\Users\rossu\Downloads\tagscan-6.0.35.zip
2019-10-15 16:29 - 2019-10-16 23:13 - 000017435 _____ C:\Users\rossu\Desktop\FRST.txt
2019-10-15 16:29 - 2019-10-16 23:12 - 000000000 ____D C:\FRST
2019-10-15 16:26 - 2019-10-15 16:27 - 001616384 _____ (Farbar) C:\Users\rossu\Desktop\FRST64.exe
2019-10-15 16:24 - 2019-10-15 16:24 - 000228880 _____ (Translucency (hxxps://translucency.azurewebsites.net)) C:\Users\rossu\Downloads\empty-folder-finder_1.4.0.0.exe
2019-10-15 16:20 - 2019-10-15 16:21 - 000738001 _____ (FileManagerSoft Ltd. ) C:\Users\rossu\Downloads\EmptyFolderRemoverSetup.exe
2019-10-15 16:11 - 2019-10-15 16:11 - 000000000 ____D C:\Users\rossu\AppData\Local\GHISLER
2019-10-14 19:14 - 2019-10-14 19:16 - 122392419 _____ C:\Users\rossu\Downloads\popky.rar
2019-10-13 16:24 - 2019-10-13 16:58 - 2810387908 ____R C:\Users\rossu\Downloads\The Cure - Flow Festival 2019.mkv
2019-10-09 20:55 - 2019-10-09 20:55 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 002314648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 002138472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2019-10-09 20:55 - 2019-10-09 20:55 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 001273392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 001098712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 000537600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 025900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 025443840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 022628352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 019811840 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 018019840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 008010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 007195648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 007015936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 006517640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 006232064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 005915648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 004538880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 004129616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2019-10-09 20:54 - 2019-10-09 20:54 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2019-10-09 20:54 - 2019-10-09 20:54 - 002494440 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 002422592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2019-10-09 20:54 - 2019-10-09 20:54 - 002236144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001847808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001664928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001563648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001562424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001394488 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001283072 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001217904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001152016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000829536 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000774672 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000690176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000679880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000598024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000452408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000422008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000404392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000380216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000300184 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-10-09 20:54 - 2019-10-09 20:54 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-10-09 20:54 - 2019-10-09 20:54 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000150328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000033048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NtlmShared.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2019-10-09 20:54 - 2019-10-09 20:54 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 017787392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 009928504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 007600664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 005041664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 004562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 004012544 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 003771392 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 003701760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002861568 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002762504 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002723328 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 002703360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002456064 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002448712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002114048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002095104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002000168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001952360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001743672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001730560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001721144 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001687040 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001656392 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001439744 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 001084432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000904208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000890472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000880088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000856576 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2019-10-09 20:53 - 2019-10-09 20:53 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000818688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000758584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mousocoreworker.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000516408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000515896 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000466416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000462136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000456504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000436536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000412152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000225080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000220472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000202040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000165832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000039304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NtlmShared.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000037176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2019-10-09 20:14 - 2019-09-20 06:36 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2019-10-09 20:14 - 2019-09-20 06:14 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2019-10-07 18:15 - 2019-10-07 18:20 - 000296316 _____ C:\TDSSKiller.3.1.0.28_07.10.2019_18.15.05_log.txt
2019-10-07 17:33 - 2019-10-07 17:34 - 000011916 _____ C:\TDSSKiller.3.1.0.28_07.10.2019_17.33.17_log.txt
2019-10-05 19:55 - 2019-10-05 19:56 - 000001409 _____ C:\Users\rossu\Desktop\shutdown.lnk
2019-10-05 19:51 - 2019-05-12 14:03 - 000884363 _____ C:\Users\rossu\Desktop\AntiTwin.exe
2019-10-05 19:50 - 2019-07-05 13:33 - 003617760 _____ (Easeware) C:\Users\rossu\Desktop\DriverEasy.exe
2019-10-05 19:49 - 2017-04-09 11:06 - 004476928 _____ (Pablo Software Solutions) C:\Users\rossu\Desktop\WebBuilder.exe
2019-10-05 19:49 - 2008-08-27 17:21 - 000821760 _____ C:\Users\rossu\Desktop\CUE_Splitter.exe
2019-10-05 19:48 - 2014-06-29 23:08 - 001807888 _____ (rajce.net) C:\Users\rossu\Desktop\rajce.exe
2019-10-05 19:43 - 2019-04-16 10:30 - 004081664 _____ C:\Users\rossu\Desktop\ROSSMANN CEWE fotosvet.exe
2019-10-05 16:37 - 2019-10-05 16:37 - 000003924 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2019-10-05 15:40 - 2019-10-05 15:40 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2019-10-05 15:40 - 2019-10-05 15:40 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secproc.dll
2019-10-05 14:12 - 2019-10-05 14:13 - 000003656 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask
2019-10-01 18:52 - 2019-10-01 18:52 - 000939008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000742912 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000722944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000387832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeUISrv.exe
2019-10-01 18:51 - 2019-10-01 18:51 - 004481536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2019-10-01 18:51 - 2019-10-01 18:51 - 001244944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 002132280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001788728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001510752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001505320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001297936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001263616 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000904704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2019-10-01 18:50 - 2019-10-01 18:50 - 000802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000421376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-10-01 18:50 - 2019-10-01 18:50 - 000417280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiag.exe
2019-10-01 18:50 - 2019-10-01 18:50 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glu32.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000158208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2019-10-01 18:50 - 2019-10-01 18:50 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000100664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
2019-10-01 18:50 - 2019-10-01 18:50 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvvmtransport.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvvmtransport.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 005764872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 002799616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-10-01 18:49 - 2019-10-01 18:49 - 002258856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001692160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001616784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001473488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001178816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000772656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000652800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000568336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourceMapper.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000510464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000501232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000500736 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-10-01 18:49 - 2019-10-01 18:49 - 000487576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000463272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2019-10-01 18:49 - 2019-10-01 18:49 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000236520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgmgr32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000143808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000139264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prntvpt.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000137864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devobj.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000116904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000110080 _____ C:\WINDOWS\system32\ResBParser.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000093712 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000089544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000084496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-10-01 18:49 - 2019-10-01 18:49 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devrtl.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollCtrl.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000021544 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2019-10-01 18:48 - 2019-10-01 18:49 - 002821120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 006084048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 005865272 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizimg.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 005105152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 003964056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 003742032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 002772032 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 002160640 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001957008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001913296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001857024 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001845408 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001664376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001412096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001334064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdrecordcpu.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001154656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001054872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001047968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000792296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000784384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000673080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000629248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000599040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000539648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000507704 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000507152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000450360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11on12.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000383984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000379840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000375720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000285256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000283688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdwriter.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000278080 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2019-10-01 18:48 - 2019-10-01 18:48 - 000243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000176440 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlib.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComposableShellProxyStub.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ForceSync.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000125232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2019-10-01 18:48 - 2019-10-01 18:48 - 000073024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000066832 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnppolicy.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AssignedAccessRuntime.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2019-10-01 18:48 - 2019-10-01 18:48 - 000016696 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizres.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000011576 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlibres.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 001819136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 001482040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-10-01 18:47 - 2019-10-01 18:47 - 001023128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000984376 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000674072 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2019-10-01 18:47 - 2019-10-01 18:47 - 000639400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000617784 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000612864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-10-01 18:47 - 2019-10-01 18:47 - 000541480 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000442704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000398728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2019-10-01 18:47 - 2019-10-01 18:47 - 000334936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposableShellProxyStub.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000293344 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgmgr32.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000179512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2019-10-01 18:47 - 2019-10-01 18:47 - 000176152 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000159112 _____ (Microsoft Corporation) C:\WINDOWS\system32\devobj.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000140496 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000132408 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellExtFramework.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\devrtl.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2019-10-01 18:47 - 2019-10-01 18:47 - 000020944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmsgapi.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2019-10-01 18:46 - 2019-10-01 18:47 - 006425600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 007905000 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 006164480 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 004046336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 003727360 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-10-01 18:46 - 2019-10-01 18:46 - 003553280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 003386880 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 002590208 _____ C:\WINDOWS\system32\dwmscene.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001940952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-10-01 18:46 - 2019-10-01 18:46 - 001607680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001543168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001512320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 001372160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-10-01 18:46 - 2019-10-01 18:46 - 001261800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001182240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000975872 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000759488 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-10-01 18:46 - 2019-10-01 18:46 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-10-01 18:46 - 2019-10-01 18:46 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000363624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000342896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdwriter.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000152408 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000119840 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000105272 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000092624 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000053248 _____ C:\WINDOWS\system32\Drivers\UsbPmApi.sys
2019-10-01 18:46 - 2019-10-01 18:46 - 000047616 _____ C:\WINDOWS\system32\UsbPmApi.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 007848192 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 006227624 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 004612520 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 003590968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 003184128 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 003105280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 002552120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 002466304 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 002120704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 002069504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001616608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdrecordcpu.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001383856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001150240 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001036800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001029432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000944664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000931840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000833312 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000732176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000656960 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11on12.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000589384 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000449888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000415808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessRuntime.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32_DeviceGuard.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2019-10-01 18:44 - 2019-10-01 18:45 - 000735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 002120272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 001413704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000551952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000355000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ManageCI.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000223032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000208184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000201016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-10-01 18:44 - 2019-10-01 18:44 - 000151568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000088352 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000079376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uaspstor.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidspi.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000052752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmstorfl.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000043536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storvsc.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2019-10-01 18:44 - 2019-10-01 18:44 - 000028936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2019-09-28 20:44 - 2019-09-28 20:44 - 000002876 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2019-09-28 16:54 - 2019-09-28 16:54 - 000097681 _____ C:\Users\rossu\Downloads\Pojisteni majetku a odpovednosti BH.PDF
2019-09-25 19:13 - 2019-09-25 19:16 - 009908792 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll
2019-09-25 19:08 - 2019-09-25 19:08 - 001596088 _____ (Harman International Industries, Incorporated.) C:\WINDOWS\system32\HarmanAPO64.dll
2019-09-25 19:08 - 2019-09-25 19:08 - 000487360 _____ (Harman International Industries, Incorporated.) C:\WINDOWS\system32\HarmanAPOUI64.dll
2019-09-25 19:07 - 2019-09-25 19:08 - 001287488 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyAPOvlldpgm.dll
2019-09-25 19:07 - 2019-09-25 19:07 - 001610848 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyAPOv251gm.dll
2019-09-25 19:04 - 2019-09-25 19:04 - 000406344 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2APIPCLL.dll
2019-09-25 19:03 - 2019-09-25 19:04 - 001544144 _____ (Dolby Laboratories) C:\WINDOWS\system32\DAX3APOProp.dll
2019-09-25 19:03 - 2019-09-25 19:03 - 001259616 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOvlldp.dll
2019-09-25 19:02 - 2019-09-25 19:03 - 001372280 _____ (Dolby Laboratories) C:\WINDOWS\system32\DAX3APOv251.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000416400 _____ (Harman) C:\WINDOWS\system32\HMUI.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000366016 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\HMAPO.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000360240 _____ (Harman) C:\WINDOWS\system32\HMClariFi.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000203736 _____ (Harman) C:\WINDOWS\system32\HMHVS.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000190824 _____ (Harman) C:\WINDOWS\system32\HMEQ_Voice.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000190824 _____ (Harman) C:\WINDOWS\system32\HMEQ.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000179488 _____ (Harman) C:\WINDOWS\system32\HMLimiter.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000154256 _____ (Harman) C:\WINDOWS\system32\HarmanAudioInterface.dll
2019-09-25 18:58 - 2019-09-25 18:58 - 000378280 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2API.dll
2019-09-25 18:57 - 2019-09-25 18:58 - 001159080 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2019-09-25 18:56 - 2019-09-25 18:57 - 005346888 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2019-09-25 18:55 - 2019-09-25 18:56 - 002444576 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv201.dll
2019-09-25 18:55 - 2019-09-25 18:55 - 001078576 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SEHDHF32.dll
2019-09-25 18:54 - 2019-09-25 18:55 - 001061464 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SECOMN32.dll
2019-09-25 18:54 - 2019-09-25 18:54 - 001386680 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDHF64.dll
2019-09-25 18:54 - 2019-09-25 18:54 - 001180792 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDRA64.dll
2019-09-25 18:53 - 2019-09-25 18:54 - 001396840 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SECOMN64.dll
2019-09-25 18:53 - 2019-09-25 18:53 - 001294192 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEAPO64.dll
2019-09-25 18:53 - 2019-09-25 18:53 - 000604688 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaemaxapo64.dll
2019-09-25 18:51 - 2019-09-25 18:53 - 006270088 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64AF3.dll
2019-09-25 18:51 - 2019-09-25 18:51 - 000367504 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64AF3.dll
2019-09-25 18:50 - 2019-09-25 18:51 - 001965048 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64AF3.dll
2019-09-25 18:50 - 2019-09-25 18:50 - 000315872 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64F3.dll
2019-09-25 18:49 - 2019-09-25 18:50 - 003267496 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RltkAPO.dll
2019-09-25 18:49 - 2019-09-25 18:49 - 000341040 _____ (Synopsys, Inc.) C:\WINDOWS\SysWOW64\SRCOM.dll
2019-09-25 18:49 - 2019-09-25 18:49 - 000341040 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM.dll
2019-09-25 18:48 - 2019-09-25 18:49 - 001435032 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRRPTR64.dll
2019-09-25 18:48 - 2019-09-25 18:48 - 000467048 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRAPO64.dll
2019-09-25 18:48 - 2019-09-25 18:48 - 000381304 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM64.dll
2019-09-25 18:47 - 2019-09-25 18:48 - 003306704 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE2.dll
2019-09-25 18:46 - 2019-09-25 18:47 - 002197872 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE.dll
2019-09-25 18:44 - 2019-09-25 18:46 - 007101640 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2019-09-25 18:44 - 2019-09-25 18:44 - 000332904 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2019-09-25 18:43 - 2019-09-25 18:44 - 001971256 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2019-09-25 18:43 - 2019-09-25 18:43 - 000692056 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2019-09-25 18:43 - 2019-09-25 18:43 - 000278160 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2019-09-25 18:43 - 2019-09-25 18:43 - 000118488 _____ C:\WINDOWS\system32\AcpiServiceVnA64.dll
2019-09-25 18:43 - 2019-09-25 18:43 - 000105200 _____ C:\WINDOWS\system32\audioLibVc.dll
2019-09-25 18:42 - 2019-09-25 18:43 - 001337536 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaeapo64.dll
2019-09-25 18:42 - 2019-09-25 18:42 - 000852032 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tosasfapo64.dll
2019-09-25 18:42 - 2019-09-25 18:42 - 000447072 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\toseaeapo64.dll
2019-09-25 18:42 - 2019-09-25 18:42 - 000122208 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2019-09-25 18:39 - 2019-09-25 18:40 - 003168280 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll
2019-09-25 18:38 - 2019-09-25 18:39 - 003445640 _____ (DTS, Inc.) C:\WINDOWS\system32\slcnt64.dll
2019-09-25 18:38 - 2019-09-25 18:38 - 000266448 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll
2019-09-25 18:37 - 2019-09-25 18:38 - 001110072 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll
2019-09-25 18:27 - 2019-09-25 18:37 - 034637796 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2019-09-25 18:27 - 2019-09-25 18:27 - 000873352 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo264.dll
2019-09-25 18:27 - 2019-09-25 18:27 - 000158592 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo.dll
2019-09-25 18:27 - 2019-09-25 18:27 - 000075432 _____ (TOSHIBA CORPORATION.) C:\WINDOWS\system32\tepeqapo64.dll
2019-09-25 18:26 - 2019-09-25 18:27 - 001382128 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosade.dll
2019-09-25 18:19 - 2019-09-25 18:19 - 000139648 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2019-09-25 18:16 - 2019-09-25 18:19 - 007178360 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000964920 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000734664 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000453168 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000157240 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000090064 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2019-09-25 18:15 - 2019-09-25 18:16 - 000448496 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2019-09-25 18:15 - 2019-09-25 18:15 - 001516160 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2019-09-25 18:15 - 2019-09-25 18:15 - 000751192 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2019-09-25 18:15 - 2019-09-25 18:15 - 000452624 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2019-09-25 18:14 - 2019-09-25 18:15 - 001598288 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2019-09-25 18:14 - 2019-09-25 18:14 - 001787848 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2019-09-25 18:13 - 2019-09-25 18:14 - 000715544 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000511536 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000392768 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000261128 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000261088 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000260104 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000220280 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000116432 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000093800 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000343600 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000327168 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000327168 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000231808 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000192872 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000090808 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000088216 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000083520 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2019-09-25 18:11 - 2019-09-25 18:12 - 001353216 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2019-09-25 18:10 - 2019-09-25 18:11 - 003353720 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2019-09-25 18:10 - 2019-09-25 18:10 - 000541008 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2019-09-25 18:10 - 2019-09-25 18:10 - 000230600 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2019-09-25 18:10 - 2019-09-25 18:10 - 000218168 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2019-09-25 18:10 - 2019-09-25 18:10 - 000174832 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2019-09-25 17:49 - 2019-09-25 18:10 - 072520608 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2019-09-25 17:48 - 2019-09-25 17:49 - 002930048 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2019-09-25 17:47 - 2019-09-25 17:48 - 003159672 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2019-09-25 17:38 - 2019-09-25 17:39 - 003676960 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2019-09-24 17:14 - 2019-09-24 17:15 - 000000000 ____D C:\Users\rossu\Downloads\Argo
2019-09-24 17:11 - 2019-09-24 18:05 - 2197701283 _____ C:\Users\rossu\Downloads\Babel 2006 CZ-ENG 1080p Marambak.mkv
2019-09-17 16:26 - 2019-09-17 20:13 - 000000000 _____ C:\Recovery.txt

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-10-16 23:10 - 2019-03-07 21:43 - 000000000 ____D C:\Users\rossu\AppData\Roaming\uTorrent
2019-10-16 23:08 - 2019-06-02 21:11 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-10-16 23:08 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-10-16 20:22 - 2019-03-14 17:35 - 000000000 ____D C:\Users\rossu\AppData\Roaming\MyPhoneExplorer
2019-10-16 18:53 - 2019-06-05 15:38 - 000000000 ____D C:\Users\rossu\AppData\Local\BitTorrentHelper
2019-10-16 17:29 - 2019-03-07 21:17 - 000000000 __SHD C:\Users\rossu\IntelGraphicsProfiles
2019-10-16 17:28 - 2019-03-07 20:58 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-10-16 17:25 - 2019-06-02 21:44 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-10-16 17:25 - 2019-03-07 21:05 - 000000000 ____D C:\ProgramData\NVIDIA
2019-10-16 17:23 - 2019-03-19 06:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-10-15 18:01 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-10-15 17:41 - 2019-06-02 21:32 - 001693636 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-10-15 17:41 - 2019-03-19 13:55 - 000718018 _____ C:\WINDOWS\system32\perfh005.dat
2019-10-15 17:41 - 2019-03-19 13:55 - 000145062 _____ C:\WINDOWS\system32\perfc005.dat
2019-10-15 17:41 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF
2019-10-15 16:28 - 2019-03-13 17:10 - 000000000 ____D C:\Users\rossu\Desktop\Jednorázové bezpečnostní utility pro Windows ( 3-2019 )
2019-10-13 15:49 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Dism
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-10-09 21:13 - 2019-03-08 18:49 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-10-09 21:06 - 2019-03-08 18:49 - 127230528 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-10-09 21:05 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-10-07 17:40 - 2019-05-15 17:18 - 000000000 ____D C:\KVRT_Data
2019-10-07 17:35 - 2019-03-11 16:54 - 000000000 ____D C:\Users\rossu\AppData\Local\CrashDumps
2019-10-05 19:47 - 2019-06-01 19:28 - 000000000 ____D C:\Program Files\Defraggler
2019-10-05 19:45 - 2019-03-13 16:59 - 000000877 _____ C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
2019-10-05 16:02 - 2019-09-07 19:26 - 000489072 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-10-04 16:37 - 2019-06-02 20:37 - 000000000 ____D C:\Users\rossu
2019-10-04 16:36 - 2019-03-19 06:37 - 083099648 _____ C:\WINDOWS\system32\config\software.rcbak
2019-10-04 16:36 - 2019-03-19 06:37 - 020971520 _____ C:\WINDOWS\system32\config\system.rcbak
2019-10-04 16:36 - 2019-03-19 06:37 - 000524288 _____ C:\WINDOWS\system32\config\default.rcbak
2019-10-04 16:36 - 2019-03-19 06:37 - 000065536 _____ C:\WINDOWS\system32\config\sam.rcbak
2019-10-04 16:36 - 2019-03-19 06:37 - 000057344 _____ C:\WINDOWS\system32\config\security.rcbak
2019-10-02 17:01 - 2019-03-07 21:17 - 000000000 ____D C:\Users\rossu\AppData\Local\Packages
2019-10-02 16:59 - 2019-03-07 20:42 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-10-01 19:37 - 2019-03-07 21:17 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-10-01 19:36 - 2019-03-07 21:17 - 000000000 ___RD C:\Users\rossu\3D Objects
2019-10-01 19:25 - 2019-03-19 06:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-10-01 19:25 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2019-10-01 19:25 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
2019-10-01 19:25 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-09-30 15:34 - 2019-08-12 16:28 - 000000000 ____D C:\Users\rossu\AppData\Local\TeamViewer
2019-09-28 20:54 - 2019-06-02 18:58 - 000000000 ___DC C:\WINDOWS\Panther
2019-09-28 17:16 - 2019-09-06 15:33 - 000000000 ____D C:\Users\rossu\Desktop\Nová složka (2)
2019-09-25 19:13 - 2019-04-25 23:21 - 000451792 _____ (Realsil Semiconductor Corporation) C:\WINDOWS\system32\Drivers\RtsUer.sys
2019-09-25 19:12 - 2019-03-07 21:01 - 002035889 _____ C:\WINDOWS\system32\Drivers\rtkhdasetting.zip
2019-09-25 19:11 - 2019-04-25 23:20 - 000000000 _____ C:\WINDOWS\system32\fpfftResultsFile.txt
2019-09-25 19:10 - 2019-03-07 21:00 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2019-09-25 17:48 - 2019-08-19 18:24 - 000023584 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2019-09-25 17:47 - 2019-04-25 21:58 - 003751488 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll
2019-09-25 17:37 - 2019-04-25 21:47 - 006970456 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2019-09-24 18:18 - 2019-06-15 08:18 - 000000000 ____D C:\Users\rossu\AppData\Local\ElevatedDiagnostics
2019-09-19 16:45 - 2019-05-28 19:35 - 000002301 _____ C:\Users\rossu\Desktop\Google Chrome.lnk

==================== Files in the root of some directories ================

2019-08-22 17:53 - 2019-08-22 17:53 - 000000000 _____ () C:\Users\rossu\AppData\Local\{F0F00A64-F90E-4776-B475-DE76BB356B29}

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================




a





Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-10-2019 02
Ran by rossu (16-10-2019 23:16:38)
Running from C:\Users\rossu\Desktop
Windows 10 Home Version 1903 18362.418 (X64) (2019-06-02 19:48:02)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-677340807-1562095438-3412084234-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-677340807-1562095438-3412084234-503 - Limited - Disabled)
Guest (S-1-5-21-677340807-1562095438-3412084234-501 - Limited - Disabled)
rossu (S-1-5-21-677340807-1562095438-3412084234-1001 - Administrator - Enabled) => C:\Users\rossu
WDAGUtilityAccount (S-1-5-21-677340807-1562095438-3412084234-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\uTorrent) (Version: 3.5.5.45365 - BitTorrent Inc.)
1310 (HKLM-x32\...\{76A9FB3A-D7AB-4C8C-8C49-3CFDBF2D6C2D}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden
1310_Help (HKLM-x32\...\{6D4553DF-2095-4D10-92C0-17934733B51D}) (Version: 82.0.58.000 - Hewlett-Packard) Hidden
1310Trb (HKLM-x32\...\{6D7E031C-4C05-4265-854A-FE9FDEA9984D}) (Version: 82.0.242.000 - Hewlett-Packard) Hidden
64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden
AIO_CDB_ProductContext (HKLM-x32\...\{D5045A94-1D46-44A7-9C4F-7D05B40D82EC}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden
AIO_CDB_Software (HKLM-x32\...\{2DFDE21D-AFFE-4CDD-BBD4-3B7832BEC036}) (Version: 140.0.428.000 - Hewlett-Packard) Hidden
AIO_Scan (HKLM-x32\...\{104066F4-5897-4067-85D3-4C88B67CCF75}) (Version: 130.0.421.000 - Hewlett-Packard) Hidden
BufferChm (HKLM-x32\...\{FA0FF682-CC70-4C57-93CD-E276F3E7537E}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.62 - Piriform)
Copy (HKLM-x32\...\{9BE466FF-70B7-4DA8-807C-DB4C3610FDAA}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
Defraggler (HKLM\...\Defraggler) (Version: 2.22 - Piriform)
Destinations (HKLM-x32\...\{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
DeviceDiscovery (HKLM-x32\...\{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
DocProc (HKLM-x32\...\{9B362566-EC1B-4700-BB9C-EC661BDE2175}) (Version: 140.0.185.000 - Hewlett-Packard) Hidden
Driver Easy 5.6.12 (HKLM\...\DriverEasy_is1) (Version: 5.6.12 - Easeware)
Fax (HKLM-x32\...\{9294F169-72EE-4D74-AE92-CA25F64B4FF8}) (Version: 140.0.307.000 - Hewlett-Packard) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 77.0.3865.90 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
GPBaseService2 (HKLM-x32\...\{BB3447F6-9553-4AA9-960E-0DB5310C5779}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Photosmart Officejet and Deskjet All-In-One Driver Software (HKLM\...\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}) (Version: 14.0 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPPhotoGadget (HKLM-x32\...\{CAE4213F-F797-439D-BD9E-79B71D115BE3}) (Version: 140.0.524.000 - Hewlett-Packard) Hidden
HPProductAssistant (HKLM-x32\...\{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.15.4248 - Intel Corporation)
LibreOffice 6.2.2.2 (HKLM\...\{7B486711-D8E3-41F4-A518-D709CD62C3D1}) (Version: 6.2.2.2 - The Document Foundation)
MarketResearch (HKLM-x32\...\{D360FA88-17C8-4F14-B67F-13AAF9607B12}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden
Microsoft Access database engine 2010 (English) (HKLM-x32\...\{90140000-00D1-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\OneDriveSetup.exe) (Version: 19.012.0121.0011 - Microsoft Corporation)
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.12 - F.J. Wechselberger)
Network64 (HKLM\...\{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}) (Version: 140.0.306.000 - Hewlett-Packard) Hidden
OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP)
Ovládací panel NVIDIA 425.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 425.31 - NVIDIA Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8781.1 - Realtek Semiconductor Corp.)
Revo Uninstaller Pro 4.1.5 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 4.1.5 - VS Revo Group, Ltd.)
ROSSMANN CEWE fotosvet (HKLM-x32\...\ROSSMANN CEWE fotosvet) (Version: 6.4.3 - CEWE Stiftung u Co. KGaA)
Scan (HKLM-x32\...\{06A1D88C-E102-4527-AF70-29FFD7AF215A}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
SolutionCenter (HKLM-x32\...\{BC5DD87B-0143-4D14-AAE6-97109614DC6B}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden
Status (HKLM-x32\...\{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}) (Version: 140.0.342.000 - Hewlett-Packard) Hidden
SyncBackFree (HKLM-x32\...\SyncBackFree_is1) (Version: 9.1.12.0 - 2BrightSparks)
Toolbox (HKLM-x32\...\{292F0F52-B62D-4E71-921B-89A682402201}) (Version: 140.0.596.000 - Hewlett-Packard) Hidden
TrayApp (HKLM-x32\...\{CD31E63D-47FD-491C-8117-CF201D0AFAB5}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{C3ACFCEA-240F-4DCC-A0C3-DD55FEE6C3C2}) (Version: 2.58.0.0 - Microsoft Corporation)
USB Bridge Installer (HKLM\...\USB Bridge Installer_is1) (Version: - )
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
WebReg (HKLM-x32\...\{8EE94FD8-5F52-4463-A340-185D16328158}) (Version: 140.0.297.017 - Hewlett-Packard) Hidden
WinRAR 5.61 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.61.0 - win.rar GmbH)
Zoner Photo Studio 18 (HKLM\...\ZonerPhotoStudio18_CZ_is1) (Version: 18.0.1.1 - ZONER software)

Packages:
=========
Cooking Fever -> C:\Program Files\WindowsApps\NORDCURRENT.COOKINGFEVER_6.0.0.3_x86__m9bz608c1b9ra [2019-10-13] (Nordcurrent)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.0.3587.0_x64__rz1tebttyb220 [2019-10-13] (Dolby Laboratories)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-03-07] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-03-07] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-14] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.10022.0_x64__8wekyb3d8bbwe [2019-10-13] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-14] (Microsoft Corporation) [MS Ad]
Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_2.2.16.0_x64__nfy108tqq3p12 [2019-09-28] (Thumbmunkeys Ltd) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe [2019-09-28] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll (Microsoft Windows -> Microsoft Corporation)
ContextMenuHandlers1: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers1-x32: [MyPhoneExplorer] -> {A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} => C:\Program Files (x86)\MyPhoneExplorer\DLL\ShellMgr.dll [2010-03-30] (F.J. Wechselberger) [File not signed]
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2019-04-25] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [RUShellExt] -> {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} => F:\program\Revo Uninstaller Pro\RUExt.dll [2019-03-29] (VS Revo Group Ltd. -> VS Revo Group)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ==================


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2011-08-18 01:29 - 2011-08-18 01:29 - 001039360 _____ (Hewlett-Packard Co.) [File not signed] c:\program files (x86)\hp\digital imaging\bin\hpslpsvc64.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\localhost -> localhost

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-06-16 17:59 - 2019-09-14 16:23 - 000000917 _____ C:\WINDOWS\system32\drivers\etc\hosts

0.0.0.0 account.zoner.com
0.0.0.0 www.google-analytics.com

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> %SystemRoot%\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;C:\Users\rossu\AppData\Local\Microsoft\WindowsApps;
HKU\S-1-5-21-677340807-1562095438-3412084234-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\rossu\Desktop\242.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

HKLM\...\StartupApproved\StartupFolder: => "HP Digital Imaging Monitor.lnk"
HKLM\...\StartupApproved\Run32: => "HP Software Update"
HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{7CD50AB5-7174-4E61-8068-59D9D48E3E16}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe (Hewlett-Packard Company -> Hewlett-Packard)
FirewallRules: [{1EA14F12-FEF0-4322-ACDA-D18241B0B3EF}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{B90250FD-1309-40E6-B0BA-9A93203A65EB}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{4D187A93-545A-41E8-A2C1-87F1F7F7FAF9}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe (Hewlett Packard -> Hewlett-Packard)
FirewallRules: [{80676541-E8B7-49C1-84E2-BA8420913541}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{2C83FDDD-0FEC-4980-9CBC-E38BB497144F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{1FCF8DF0-F8B8-4B65-ACA1-B28A1CE901B8}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{9D24D801-3989-4777-92A8-28FE6A838C4C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{AB2CFCAD-C35C-4FF9-8F34-B83883033B32}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe (Hewlett-Packard Co.) [File not signed]
FirewallRules: [{7CDC5136-9ECE-4A94-A397-61F973E8C3BA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{D5BCB6A4-986C-4D75-9BA8-DF3AF1416F91}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{E81AE930-30E8-4E3C-98A8-A3464435B62B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{BE0A1E35-FB3A-411A-B09E-4DE34EED4924}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{8921E3B9-9F5B-4C57-9239-71BF20BAF4D8}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{24CE10E1-2CBB-460C-ADEF-40263B51438B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{A8F68FCC-5EAE-4403-84E1-ECA6DDB783BA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{C219FC01-1687-470A-8B9B-43ECDCC9A405}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{982F682E-A67B-4C3A-9B21-5D98CFEADD9D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{7570B5BD-D000-4932-B706-DC0E741867E1}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [UDP Query User{6E2F9970-FF36-4A97-BFD5-887F1728A0D6}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe (Franz Josef Wechselberger -> F.J. Wechselberger)
FirewallRules: [TCP Query User{9C9FD61C-7E97-4AE9-A60B-21D5BD2E1512}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe (Franz Josef Wechselberger -> F.J. Wechselberger)
FirewallRules: [{B0E2E240-8573-470B-BD27-70C8A10D0C15}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{19836764-87C0-408A-B324-BAA89AF42127}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{9ACBD8C1-BF14-4CC4-B9D2-D01A7201ECDB}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{6DB19253-DDC2-43E9-BB37-06B44E402CEE}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{29496A8D-EE36-41ED-8393-FC885D2DFA22}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{C03B1736-B0EB-43DD-8D8C-2259CE1998E1}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{4D2FBD16-8481-4811-99F6-F34897551598}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (10/16/2019 11:14:51 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1840,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/16/2019 10:27:07 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (5668,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/16/2019 08:38:41 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (900,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/16/2019 08:15:19 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7888,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/16/2019 08:03:12 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7048,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/16/2019 07:19:21 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (6724,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/16/2019 06:46:34 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7512,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/16/2019 06:02:35 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (5104,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).


System errors:
=============
Error: (10/16/2019 11:09:28 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk1\DR1 má chybný blok.

Error: (10/16/2019 05:26:58 PM) (Source: VBoxNetLwf) (EventID: 12) (User: )
Description: Ovladač zjistil interní chybu ovladače na \Device\VBoxNetLwf.

Error: (10/16/2019 05:25:11 PM) (Source: VBoxNetLwf) (EventID: 12) (User: )
Description: Ovladač zjistil interní chybu ovladače na \Device\VBoxNetLwf.

Error: (10/16/2019 05:25:05 PM) (Source: VBoxNetLwf) (EventID: 12) (User: )
Description: Ovladač zjistil interní chybu ovladače na \Device\VBoxNetLwf.

Error: (10/16/2019 05:23:41 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Microsoft Passport Container neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (10/16/2019 05:23:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Presentation Foundation Font Cache 3.0.0.0 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.

Error: (10/16/2019 05:23:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA Display Container LS byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.

Error: (10/16/2019 05:23:27 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba AtherosSvc byla neočekávaně ukončena. Tento stav nastal již 1krát.


Windows Defender:
===================================
Date: 2019-10-15 16:28:35.254
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {7936A37E-FFDF-46F0-AB03-A0D4AAD90EFA}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Vlastní prohledávání
Uživatel: DESKTOP-HONRFIH\rossu

Date: 2019-10-01 17:00:33.933
Description:
Antivirová ochrana v programu Windows Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Ditertag.A
ID: 2147722997
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\rossu\Downloads\Windows 10 Manager 3.1.5\Windows 10 Manager 3.1.5\Keygen\Keygen.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-HONRFIH\rossu
Název procesu: C:\Windows\explorer.exe
Verze bezpečnostních informací: AV: 1.303.624.0, AS: 1.303.624.0, NIS: 1.303.624.0
Verze modulu: AM: 1.1.16400.2, NIS: 1.1.16400.2

Date: 2019-10-01 16:58:56.027
Description:
Antivirová ochrana v programu Windows Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Ditertag.A
ID: 2147722997
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\rossu\Downloads\Windows 10 Manager 3.1.5\Windows 10 Manager 3.1.5\Keygen\Keygen.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-HONRFIH\rossu
Název procesu: C:\Windows\explorer.exe
Verze bezpečnostních informací: AV: 1.303.624.0, AS: 1.303.624.0, NIS: 1.303.624.0
Verze modulu: AM: 1.1.16400.2, NIS: 1.1.16400.2

Date: 2019-10-01 16:58:46.658
Description:
Antivirová ochrana v programu Windows Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Ditertag.A
ID: 2147722997
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\rossu\Downloads\Windows 10 Manager 3.1.5\Windows 10 Manager 3.1.5\Keygen\Keygen.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.303.624.0, AS: 1.303.624.0, NIS: 1.303.624.0
Verze modulu: AM: 1.1.16400.2, NIS: 1.1.16400.2

Date: 2019-09-25 16:15:15.190
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {DF7051A3-C551-4C2B-A444-DBE6E8DF6447}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-06 19:35:34.323
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.303.963.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x80240016
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2019-10-05 17:17:57.694
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.303.944.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x8024001e
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2019-10-04 16:37:18.055
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o načtení bezpečnostních informací a pokusí se o obnovení poslední známé funkční verze.
Bezpečnostní informace, které se měly načíst: Aktuální
Kód chyby: 0x80070003
Popis chyby: Systém nemůže nalézt uvedenou cestu.
Verze bezpečnostních informací: 0.0.0.0;0.0.0.0
Verze modulu: 0.0.0.0

Date: 2019-09-22 21:42:35.719
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.301.2008.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.16300.1
Kód chyby: 0x80240022
Popis chyby: V daném programu nelze zkontrolovat aktualizace definic.

Date: 2019-09-04 18:15:13.873
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.301.518.0
Předchozí verze bezpečnostních informací: 1.301.513.0
Zdroj aktualizace: Uživatel
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.16300.1
Předchozí verze modulu: 1.1.16300.1
Kód chyby: 0x80509004
Popis chyby: Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.

CodeIntegrity:
===================================

Date: 2019-06-14 18:24:34.592
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\Windows\WinSxS\wow64_microsoft-windows-securitycenter-core_31bf3856ad364e35_10.0.17134.1_none_0a15945c4fa3fe26\wscadminui.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-14 18:24:34.577
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\Windows\WinSxS\wow64_microsoft-windows-securitycenter-core_31bf3856ad364e35_10.0.17134.1_none_0a15945c4fa3fe26\wscadminui.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-14 18:24:34.570
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\Windows\WinSxS\wow64_microsoft-windows-securitycenter-core_31bf3856ad364e35_10.0.17134.1_none_0a15945c4fa3fe26\wscadminui.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-14 18:24:34.534
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\Windows\WinSxS\wow64_microsoft-windows-securitycenter-core_31bf3856ad364e35_10.0.17134.1_none_0a15945c4fa3fe26\wscadminui.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

BIOS: Insyde Corp. V1.03 04/20/2015
Motherboard: Acer Tashigi_BA
Processor: Intel(R) Pentium(R) CPU N3700 @ 1.60GHz
Percentage of memory in use: 73%
Total physical RAM: 4009.76 MB
Available physical RAM: 1077.94 MB
Total Virtual: 5993.76 MB
Available Virtual: 1735.46 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:193.9 GB) (Free:134.4 GB) NTFS
Drive d: (dokument) (Fixed) (Total:19.53 GB) (Free:19.14 GB) NTFS
Drive e: (miXa) (Fixed) (Total:292.97 GB) (Free:219.69 GB) NTFS
Drive f: (program) (Fixed) (Total:423.7 GB) (Free:372.15 GB) NTFS
Drive g: (usb 8) (Removable) (Total:7.46 GB) (Free:0.01 GB) NTFS
Drive i: (Verbatim HDD) (Fixed) (Total:465.76 GB) (Free:380.27 GB) NTFS

\\?\Volume{834b1fb5-6b69-4be2-bfbc-7d6e58f5c7e1}\ (Obnovení) (Fixed) (Total:0.49 GB) (Free:0.09 GB) NTFS
\\?\Volume{37f2efdb-8a87-4438-872f-dfbcb0d70c50}\ () (Fixed) (Total:0.81 GB) (Free:0.34 GB) NTFS
\\?\Volume{a53158e8-3458-4125-a82b-8058b68c7ffb}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 93A96FC2)

Partition: GPT.

========================================================
Disk: 1 (Size: 465.8 GB) (Disk ID: CCEAC4BE)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (Size: 7.5 GB) (Disk ID: 00077117)
Partition 1: (Active) - (Size=7.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivní kontrolu

#6 Příspěvek od Conder »

:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    BootExecute: 
    GroupPolicy: Restriction ? <==== ATTENTION
    CHR HKLM-x32\...\Chrome\Extension: [nladljmabboanhihfkjacnnkgjhnokhj] - hxxps://clients2.google.com/service/update2/crx
    S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys [X]
    
    Hosts:
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

bigmuff
Návštěvník
Návštěvník
Příspěvky: 298
Registrován: 12 lis 2009 20:09

Re: Prosím o preventivní kontrolu

#7 Příspěvek od bigmuff »

..ok tady.....

Fix result of Farbar Recovery Scan Tool (x64) Version: 12-10-2019 02
Ran by rossu (17-10-2019 16:54:06) Run:1
Running from C:\Users\rossu\Desktop
Loaded Profiles: rossu (Available Profiles: rossu)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
BootExecute:
GroupPolicy: Restriction ? <==== ATTENTION
CHR HKLM-x32\...\Chrome\Extension: [nladljmabboanhihfkjacnnkgjhnokhj] - hxxps://clients2.google.com/service/update2/crx
S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys [X]

Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
Restore point was successfully created.

========= Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum =========



Count : 1262
Average :
Sum : 2628979992
Maximum :
Minimum :
Property : Length




========= End of Powershell: =========

HKLM\System\CurrentControlSet\Control\Session Manager\\BootExecute => value restored successfully
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\nladljmabboanhihfkjacnnkgjhnokhj => removed successfully
HKLM\System\CurrentControlSet\Services\cpuz148 => removed successfully
cpuz148 => service removed successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 7364608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 74077728 B
Java, Flash, Steam htmlcache => 1124 B
Windows/system/drivers => 360002 B
Edge => 6320107 B
Chrome => 439358239 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 74628 B
rossu => 53310708 B

RecycleBin => 131463 B
EmptyTemp: => 554.1 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 17:03:21 ====

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivní kontrolu

#8 Příspěvek od Conder »

:arrow: Ako to vyzera s PC? Su s PC nejake problemy?

:arrow: Plocha ma cca 2 GB, co je prilis vela. Presun vsetky subory a zlozky z plochy do dokumentov a na ploche nechaj iba odkazy/zastupcov. Prilis velka velkost plochy moze sposobit spomalenie systemu.
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

bigmuff
Návštěvník
Návštěvník
Příspěvky: 298
Registrován: 12 lis 2009 20:09

Re: Prosím o preventivní kontrolu

#9 Příspěvek od bigmuff »

ok plochu si uklidím,jinak asi OK
děkuju

romanS

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivní kontrolu

#10 Příspěvek od Conder »

:arrow: Tak este upraceme po pouzitych nastrojoch:
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

bigmuff
Návštěvník
Návštěvník
Příspěvky: 298
Registrován: 12 lis 2009 20:09

Re: Prosím o preventivní kontrolu

#11 Příspěvek od bigmuff »

ok dekuju

Conder
VIP
VIP
Příspěvky: 4399
Registrován: 30 pro 2013 22:29
Bydliště: Bratislava

Re: Prosím o preventivní kontrolu

#12 Příspěvek od Conder »

Nie je zaco, rad som pomohol :)
Absolvent skoly pre novacikov :)
E-mail: conder (zavinac) forum.viry.cz

Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).

Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.

V pripade spokojnosti je mozne podporit forum. Dakujeme!

Zamčeno