Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

preventivka

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Ervd
Návštěvník
Návštěvník
Příspěvky: 177
Registrován: 04 úno 2007 10:47

preventivka

#1 Příspěvek od Ervd »

prosím o "preventivku"

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 09-11-2019 01
Ran by Mýl_a_Páť (administrator) on DESKTOP-78RC28O (Gigabyte Technology Co., Ltd. B85M-D3H) (09-11-2019 23:22:00)
Running from C:\Users\Mýl_a_Páť\Desktop
Loaded Profiles: Mýl_a_Páť (Available Profiles: Mýl_a_Páť)
Platform: Windows 10 Home Version 1809 17763.805 (X64) Language: Čeština (Česko)
Default browser: Opera
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\appserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\dataloaderprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\filestoreprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\flowprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\logserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\studioprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\TCBServer.exe
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Windows Hardware Compatibility Publisher -> Brother Industries, Ltd.) C:\Windows\System32\BrmfRsmg.exe
(Microsoft Windows Hardware Compatibility Publisher -> Brother Industries, Ltd.) C:\Windows\System32\BrmfRsmg.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\NisSrv.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\EyeRest.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\TriggerModeMonitor.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\VideoCardMonitorII.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(MySQL AB -> ) C:\Program Files\nCode\nCode 11.1 64-bit\Automation\mysql\win\bin\mysqld.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Sun Microsystems, Inc. -> Sun Microsystems, Inc.) C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\bin\java.exe
(Sun Microsystems, Inc. -> Sun Microsystems, Inc.) C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\java.exe
(Tanuki Software, Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\bin\win\tanuki_wrapper_32bit.exe
(ZONER software, a.s. -> ZONER software) C:\Users\Mýl_a_Páť\AppData\Local\Programs\Zoner\ZPS X\binary\Program32\ZPSTray.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [298296 2018-03-25] (Apple Inc. -> Apple Inc.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3942864 2016-10-13] (Logitech -> Logitech, Inc.)
HKLM-x32\...\Run: [OV3_Monitor] => C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\FirstStart.exe [40400 2018-06-18] (OLYMPUS CORPORATION -> Olympus Corporation)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\Run: [OV3_Monitor] => C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OV3Monitor.exe [415696 2018-06-18] (OLYMPUS CORPORATION -> Olympus Corporation)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3278288 2019-10-30] (Valve -> Valve Corporation)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\Users\Mýl_a_Páť\AppData\Local\Programs\Zoner\ZPS X\binary\Program32\ZPSTRAY.EXE [749344 2019-10-22] (ZONER software, a.s. -> ZONER software)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\RunOnce: [Application Restart #3] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\MountPoints2: {ddf2d247-b165-11e9-8f0e-fcaa14227de4} - "E:\OnePlus_setup.exe" /s
GroupPolicy: Restriction ? <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {00193BE8-CC3A-41DE-8937-655C528CD05D} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {010112A6-B743-4238-AC8F-EA50749EB42C} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {08B85036-E815-4CB9-934E-44F821CB4D88} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653864 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1949BBEE-032B-4E65-8138-3B7A4A8C3B91} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {22ABA24E-E8B6-4390-B69C-E9A14CC96DEE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {232CA7C5-19F3-45AC-8666-2BA256A1A1D4} - System32\Tasks\MSIOSDx86_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe [38560 2017-09-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {2AB3B801-36A7-47DF-A02D-67AD16EA4906} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {372A3C07-5D24-4536-884F-F1BDD5831BB0} - System32\Tasks\MSIOSDx64_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe [37536 2017-09-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {3C3C3E1E-4C0A-4C67-8B64-D2B14FFF85DD} - System32\Tasks\MSIGH_Host => C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe [3352760 2017-11-01] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {44A9C6B7-E19B-4C52-B481-F0C5AC8C0143} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4B9B9FD0-6F98-4CB6-9F9D-0FF9D8F8BACF} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3310688 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4E0080B5-C17F-42A2-86A4-F1293B4C64D8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4E159CC2-46AE-49EE-8216-4023D8838A0A} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5A59AFCD-C51D-4928-AE3C-D124A0FB6A6F} - System32\Tasks\Opera scheduled Autoupdate 1513441278 => C:\Program Files\Opera\launcher.exe [1534488 2019-11-05] (Opera Software AS -> Opera Software)
Task: {7213B410-D1B3-4600-8803-DF6A7239480E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {72795558-A9A7-4216-9169-51BB6EE96D22} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {78E3A367-187C-4682-8E91-DB1CC4098A20} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8DB870B5-CF6A-4BC8-89C3-32DC74DE5EAD} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {BDA1BB0F-BEA4-4B22-B77B-5824AEDE7866} - System32\Tasks\Zoner.Updater.S-1-5-21-370975082-3115102142-3364293580-1001 => C:\ProgramData\Zoner\Zoner.Installer.Core\Updater.exe [2576448 2019-11-06] (ZONER software, a.s. -> ZONER software, a.s.)
Task: {C4027DD8-FAF7-41E7-A573-F7EBE051AC46} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {EE659DF6-155A-4A0B-8440-12F9897148A3} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F42CB072-A96B-4DB5-A58C-15DCB5293903} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.)
Task: {F8CB0B9C-EA8E-4B89-A3E8-B99ECBCF1149} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\MSISW_Host.job => C:\WINDOWS\SysWOW64\muachost.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.100.250
Tcpip\..\Interfaces\{e6795ea2-36ab-4f7c-8a7c-b76e62ec0e0a}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{ec890f28-0163-4f25-a22f-31f079ee0c8f}: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{ef968f1f-48c2-4f28-a94f-88098638aaa1}: [DhcpNameServer] 192.168.100.250

Internet Explorer:
==================
SearchScopes: HKU\S-1-5-21-370975082-3115102142-3364293580-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =

FireFox:
========
FF Plugin: @videolan.org/vlc,version=3.0.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-04-19] (VideoLAN -> VideoLAN)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-10-11] (Adobe Inc. -> Adobe Systems Inc.)

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-03-14] (Apple Inc. -> Apple Inc.)
R2 brmfrsmg; C:\WINDOWS\system32\BrmfRsmg.exe [52736 2011-07-18] (Microsoft Windows Hardware Compatibility Publisher -> Brother Industries, Ltd.)
R2 GamingApp_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe [48824 2017-10-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 GamingHotkey_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe [2021048 2017-11-01] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [365040 2017-10-20] (Intel(R) pGFX -> Intel Corporation)
R2 MSI_ActiveX_Service; C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe [83616 2017-11-21] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
R2 TCB Server; C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\TCBServer.exe [25088 2015-09-01] () [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\NisSrv.exe [3201616 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MsMpEng.exe [103168 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 nCodePE 11.1; "C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\bin\win\tanuki_wrapper_32bit.exe" -s "C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\conf\wrapper.conf" "wrapper.app.parameter.1=C:\Program Files\nCode\nCode 11.1 64-bit\Automation,C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks,ports_02,C:\Program Files\nCode\Automation_data111," "set.TEMP=C:\Program Files\nCode\Automation_data111\temp" "set.TMP=C:\Program Files\nCode\Automation_data111\temp"
S3 nCodePE 11.1 Demo; "C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\bin\win\tanuki_wrapper_32bit.exe" -s "C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\conf\wrapper_demo.conf" "wrapper.app.parameter.1=C:\Program Files\nCode\nCode 11.1 64-bit\Automation,C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks,ports_02,C:\Program Files\nCode\nCode 11.1 64-bit\Automation\demo\Demo1," "set.TEMP=C:\Program Files\nCode\Automation_data111\temp" "set.TMP=C:\Program Files\nCode\Automation_data111\temp"
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BrUsbScn; C:\WINDOWS\System32\Drivers\BrUsbScn.sys [14336 2011-07-18] (Microsoft Windows Hardware Compatibility Publisher -> Brother Industries Ltd.)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (Feature Integration Technology -> FINTEK Corp.)
S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [23040 2018-02-01] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_827405c7c65146ab\nvlddmkm.sys [22377352 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [711968 2019-06-04] (Realtek Semiconductor Corp. -> Realtek )
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2017-07-28] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2017-07-21] (Valve Corp. -> )
S3 trufos; C:\WINDOWS\System32\drivers\trufos.sys [485512 2017-12-28] (Bitdefender SRL -> BitDefender S.R.L.)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2018-02-01] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [24576 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46472 2019-10-28] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [351968 2019-10-28] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2019-10-28] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-11-09 23:22 - 2019-11-09 23:22 - 000021707 _____ C:\Users\Mýl_a_Páť\Desktop\FRST.txt
2019-11-09 23:20 - 2019-11-09 23:20 - 002259968 _____ (Farbar) C:\Users\Mýl_a_Páť\Desktop\FRST64 (1).exe
2019-11-08 22:21 - 2019-11-08 22:26 - 000002494 _____ C:\Users\Mýl_a_Páť\Downloads\20191108210922_IMG_3775.JPG.data-zps
2019-11-08 21:49 - 2019-11-08 21:49 - 000823903 _____ C:\Users\Mýl_a_Páť\Downloads\image (2).jpg.jfif
2019-11-08 21:46 - 2019-11-08 21:46 - 000823903 _____ C:\Users\Mýl_a_Páť\Downloads\image (1).jfif
2019-11-08 21:39 - 2019-11-08 21:43 - 000002283 _____ C:\Users\Mýl_a_Páť\Downloads\20191108192954_IMG_3753.JPG.data-zps
2019-11-06 23:57 - 2019-11-06 23:57 - 000122484 _____ C:\Users\Mýl_a_Páť\Downloads\TJ01000161-ZZ-2019-potvrzení_podání.pdf
2019-10-18 22:27 - 2019-10-18 22:27 - 000545578 _____ C:\Users\Mýl_a_Páť\Downloads\image.jfif
2019-10-14 21:25 - 2019-10-14 21:25 - 000356402 _____ C:\Users\Mýl_a_Páť\Downloads\etika.zip
2019-10-14 21:25 - 2019-10-14 21:25 - 000000000 ____D C:\Users\Mýl_a_Páť\Downloads\etika

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-11-09 23:22 - 2017-12-28 22:23 - 000000000 ____D C:\FRST
2019-11-09 22:47 - 2018-12-22 11:20 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-11-09 22:47 - 2018-09-15 08:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-11-09 12:27 - 2017-12-16 17:17 - 000000000 ____D C:\ProgramData\NVIDIA
2019-11-09 07:58 - 2018-09-15 08:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-11-09 07:58 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-11-09 07:52 - 2017-12-16 19:00 - 000000000 __SHD C:\Users\Mýl_a_Páť\IntelGraphicsProfiles
2019-11-09 07:52 - 2017-12-16 17:21 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-11-07 01:02 - 2017-12-19 17:39 - 000000000 ____D C:\Program Files (x86)\Steam
2019-11-06 18:12 - 2018-12-22 11:26 - 000003958 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1513441278
2019-11-06 18:12 - 2017-12-16 17:21 - 000001107 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2019-11-06 18:12 - 2017-12-16 17:20 - 000000000 ____D C:\Program Files\Opera
2019-11-06 16:07 - 2019-08-22 20:10 - 000000000 ____D C:\ProgramData\Zoner
2019-11-05 07:23 - 2018-12-22 11:30 - 001693636 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-11-05 07:23 - 2018-09-15 18:32 - 000716776 _____ C:\WINDOWS\system32\perfh005.dat
2019-11-05 07:23 - 2018-09-15 18:32 - 000144856 _____ C:\WINDOWS\system32\perfc005.dat
2019-11-05 07:23 - 2018-09-15 08:31 - 000000000 ____D C:\WINDOWS\INF
2019-11-05 07:22 - 2018-12-22 11:26 - 000003474 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-11-05 07:22 - 2018-12-22 11:26 - 000003350 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-11-05 07:22 - 2018-02-10 18:28 - 000000000 ____D C:\Program Files (x86)\Google
2019-11-04 23:35 - 2018-12-22 11:26 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-11-04 23:34 - 2018-09-15 07:09 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-11-04 22:31 - 2018-04-26 21:01 - 000000000 ____D C:\Users\Mýl_a_Páť\AppData\Roaming\vlc
2019-11-03 21:05 - 2017-12-16 17:42 - 000000000 ____D C:\MSI
2019-11-02 16:29 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-11-01 06:32 - 2018-06-20 13:55 - 000000000 ____D C:\ProgramData\Packages
2019-10-28 21:11 - 2018-02-22 22:54 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-10-25 06:23 - 2018-02-19 18:50 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-10-23 20:16 - 2019-08-22 20:13 - 000001563 _____ C:\Users\Mýl_a_Páť\AppData\Roaming\Microsoft\Windows\Start Menu\Zoner Photo Studio X.lnk
2019-10-23 20:16 - 2019-08-22 20:13 - 000001561 _____ C:\Users\Mýl_a_Páť\Desktop\Zoner Photo Studio X.lnk
2019-10-23 13:09 - 2018-09-15 08:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-10-15 20:13 - 2018-12-22 11:26 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2019-10-15 20:12 - 2018-02-19 18:48 - 000000000 ____D C:\Users\Mýl_a_Páť\AppData\Local\Adobe
2019-10-14 15:38 - 2018-03-16 14:53 - 000000027 _____ C:\WINDOWS\BRMFBIDI.INI
2019-10-10 22:02 - 2017-12-23 09:10 - 000000000 ____D C:\Program Files (x86)\SpeedFan

==================== Files in the root of some directories ========

2019-03-27 21:31 - 2019-03-27 21:31 - 000000730 _____ () C:\Users\Mýl_a_Páť\AppData\Local\recently-used.xbel
2018-01-16 19:35 - 2018-02-25 20:17 - 000007598 _____ () C:\Users\Mýl_a_Páť\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
Přílohy
Addition.zip
(10.43 KiB) Staženo 88 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118251
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: preventivka

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Ervd
Návštěvník
Návštěvník
Příspěvky: 177
Registrován: 04 úno 2007 10:47

Re: preventivka

#3 Příspěvek od Ervd »

# -------------------------------
# Malwarebytes AdwCleaner 7.4.2.0
# -------------------------------
# Build: 10-21-2019
# Database: 2019-10-21.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 11-12-2019
# Duration: 00:00:00
# OS: Windows 10 Home
# Cleaned: 2
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted HKCU\Software\Conduit
Deleted HKLM\Software\Wow6432Node\Conduit

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner_Debug.log - [9137 octets] - [12/11/2019 23:18:34]
AdwCleaner[S00].txt - [1472 octets] - [12/11/2019 23:19:00]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118251
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: preventivka

#4 Příspěvek od Rudy »

Dejte nové logy FRST+Addition.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Ervd
Návštěvník
Návštěvník
Příspěvky: 177
Registrován: 04 úno 2007 10:47

Re: preventivka

#5 Příspěvek od Ervd »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 13-11-2019
Ran by Mýl_a_Páť (administrator) on DESKTOP-78RC28O (Gigabyte Technology Co., Ltd. B85M-D3H) (13-11-2019 22:45:39)
Running from C:\Users\Mýl_a_Páť\Desktop
Loaded Profiles: Mýl_a_Páť (Available Profiles: Mýl_a_Páť)
Platform: Windows 10 Home Version 1809 17763.864 (X64) Language: Čeština (Česko)
Default browser: Opera
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\appserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cleanupprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\dataloaderprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\filestoreprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\flowprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\logserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\studioprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\TCBServer.exe
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.BingNews_4.33.13094.0_x64__8wekyb3d8bbwe\Microsoft.Msn.News.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Windows Hardware Compatibility Publisher -> Brother Industries, Ltd.) C:\Windows\System32\BrmfRsmg.exe
(Microsoft Windows Hardware Compatibility Publisher -> Brother Industries, Ltd.) C:\Windows\System32\BrmfRsmg.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\NisSrv.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\EyeRest.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\TriggerModeMonitor.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\VideoCardMonitorII.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(MySQL AB -> ) C:\Program Files\nCode\nCode 11.1 64-bit\Automation\mysql\win\bin\mysqld.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera_crashreporter.exe
(Sun Microsystems, Inc. -> Sun Microsystems, Inc.) C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\bin\java.exe
(Sun Microsystems, Inc. -> Sun Microsystems, Inc.) C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\java.exe
(Tanuki Software, Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\bin\win\tanuki_wrapper_32bit.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [298296 2018-03-25] (Apple Inc. -> Apple Inc.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3942864 2016-10-13] (Logitech -> Logitech, Inc.)
HKLM-x32\...\Run: [OV3_Monitor] => C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\FirstStart.exe [40400 2018-06-18] (OLYMPUS CORPORATION -> Olympus Corporation)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\Run: [OV3_Monitor] => C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OV3Monitor.exe [415696 2018-06-18] (OLYMPUS CORPORATION -> Olympus Corporation)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3278288 2019-11-06] (Valve -> Valve Corporation)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\Users\Mýl_a_Páť\AppData\Local\Programs\Zoner\ZPS X\binary\Program32\ZPSTRAY.EXE [749344 2019-10-22] (ZONER software, a.s. -> ZONER software)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\RunOnce: [Application Restart #2] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\MountPoints2: {ddf2d247-b165-11e9-8f0e-fcaa14227de4} - "E:\OnePlus_setup.exe" /s
GroupPolicy: Restriction ? <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {00193BE8-CC3A-41DE-8937-655C528CD05D} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {0368827F-BE2C-439D-9D7B-5A1575048E24} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1949BBEE-032B-4E65-8138-3B7A4A8C3B91} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {22ABA24E-E8B6-4390-B69C-E9A14CC96DEE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {232CA7C5-19F3-45AC-8666-2BA256A1A1D4} - System32\Tasks\MSIOSDx86_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe [38560 2017-09-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {32145FC2-4401-4776-AEBB-AC9C64EA5305} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {372A3C07-5D24-4536-884F-F1BDD5831BB0} - System32\Tasks\MSIOSDx64_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe [37536 2017-09-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {3C3C3E1E-4C0A-4C67-8B64-D2B14FFF85DD} - System32\Tasks\MSIGH_Host => C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe [3352760 2017-11-01] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {45AB331D-899B-47DF-A877-595A567875AF} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {48D4C5EA-736C-42A3-8425-9A3FED5CABD2} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4E0080B5-C17F-42A2-86A4-F1293B4C64D8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {55CC5FC4-35BE-4143-950D-C6E9DC6FD6A1} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913720 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5A59AFCD-C51D-4928-AE3C-D124A0FB6A6F} - System32\Tasks\Opera scheduled Autoupdate 1513441278 => C:\Program Files\Opera\launcher.exe [1534488 2019-11-05] (Opera Software AS -> Opera Software)
Task: {7213B410-D1B3-4600-8803-DF6A7239480E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {78E3A367-187C-4682-8E91-DB1CC4098A20} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {892F3F07-6E3B-4E16-B33E-E80EF025D42E} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [654456 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8BE72701-FC52-4F92-BC99-AEB5E90C6C9B} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3301928 2019-10-25] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9ECEA174-2C97-4EC2-9B15-44430F481308} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913720 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {BDA1BB0F-BEA4-4B22-B77B-5824AEDE7866} - System32\Tasks\Zoner.Updater.S-1-5-21-370975082-3115102142-3364293580-1001 => C:\ProgramData\Zoner\Zoner.Installer.Core\Updater.exe [2576448 2019-11-06] (ZONER software, a.s. -> ZONER software, a.s.)
Task: {CB2D0BA1-3444-44CA-BF8F-4CA1301AE0F3} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {DF24B147-EC1B-4F9B-A0A0-99961136D977} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F42CB072-A96B-4DB5-A58C-15DCB5293903} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.)
Task: {F8CB0B9C-EA8E-4B89-A3E8-B99ECBCF1149} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\MSISW_Host.job => C:\WINDOWS\SysWOW64\muachost.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.100.250
Tcpip\..\Interfaces\{e6795ea2-36ab-4f7c-8a7c-b76e62ec0e0a}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{ec890f28-0163-4f25-a22f-31f079ee0c8f}: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{ef968f1f-48c2-4f28-a94f-88098638aaa1}: [DhcpNameServer] 192.168.100.250

Internet Explorer:
==================

FireFox:
========
FF Plugin: @videolan.org/vlc,version=3.0.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-04-19] (VideoLAN -> VideoLAN)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-10-11] (Adobe Inc. -> Adobe Systems Inc.)

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-03-14] (Apple Inc. -> Apple Inc.)
R2 brmfrsmg; C:\WINDOWS\system32\BrmfRsmg.exe [52736 2011-07-18] (Microsoft Windows Hardware Compatibility Publisher -> Brother Industries, Ltd.)
R2 GamingApp_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe [48824 2017-10-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 GamingHotkey_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe [2021048 2017-11-01] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [365040 2017-10-20] (Intel(R) pGFX -> Intel Corporation)
R2 MSI_ActiveX_Service; C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe [83616 2017-11-21] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
R2 TCB Server; C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\TCBServer.exe [25088 2015-09-01] () [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12054872 2019-10-10] (TeamViewer GmbH -> TeamViewer GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\NisSrv.exe [3201616 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MsMpEng.exe [103168 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 nCodePE 11.1; "C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\bin\win\tanuki_wrapper_32bit.exe" -s "C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\conf\wrapper.conf" "wrapper.app.parameter.1=C:\Program Files\nCode\nCode 11.1 64-bit\Automation,C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks,ports_02,C:\Program Files\nCode\Automation_data111," "set.TEMP=C:\Program Files\nCode\Automation_data111\temp" "set.TMP=C:\Program Files\nCode\Automation_data111\temp"
S3 nCodePE 11.1 Demo; "C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\bin\win\tanuki_wrapper_32bit.exe" -s "C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\conf\wrapper_demo.conf" "wrapper.app.parameter.1=C:\Program Files\nCode\nCode 11.1 64-bit\Automation,C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks,ports_02,C:\Program Files\nCode\nCode 11.1 64-bit\Automation\demo\Demo1," "set.TEMP=C:\Program Files\nCode\Automation_data111\temp" "set.TMP=C:\Program Files\nCode\Automation_data111\temp"
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BrUsbScn; C:\WINDOWS\System32\Drivers\BrUsbScn.sys [14336 2011-07-18] (Microsoft Windows Hardware Compatibility Publisher -> Brother Industries Ltd.)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (Feature Integration Technology -> FINTEK Corp.)
S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [23040 2018-02-01] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_93eff437a314841a\nvlddmkm.sys [22739392 2019-10-25] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [711968 2019-06-04] (Realtek Semiconductor Corp. -> Realtek )
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2017-07-28] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2017-07-21] (Valve Corp. -> )
S3 trufos; C:\WINDOWS\System32\drivers\trufos.sys [485512 2017-12-28] (Bitdefender SRL -> BitDefender S.R.L.)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2018-02-01] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [24576 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46472 2019-10-28] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [351968 2019-10-28] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2019-10-28] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-11-13 22:45 - 2019-11-13 22:46 - 000024906 _____ C:\Users\Mýl_a_Páť\Desktop\FRST.txt
2019-11-13 22:45 - 2019-11-13 22:45 - 002260480 _____ (Farbar) C:\Users\Mýl_a_Páť\Desktop\FRST64 (1).exe
2019-11-13 13:23 - 2019-11-13 14:29 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2019-11-13 13:23 - 2019-11-13 13:23 - 000001112 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 14.lnk
2019-11-13 13:23 - 2019-11-13 13:23 - 000001100 _____ C:\Users\Public\Desktop\TeamViewer 14.lnk
2019-11-13 13:22 - 2019-11-13 13:22 - 025979792 _____ (TeamViewer GmbH) C:\Users\Mýl_a_Páť\Downloads\TeamViewer_Setup (1).exe
2019-11-13 07:22 - 2019-11-13 07:22 - 023455232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 022137120 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 019014144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 012960256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 012258816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 011724288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 009941504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 009667896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 007872000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 007700696 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 007656072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 007645392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 006934016 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 006547896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 006318328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 006065152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 005770240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 005608336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 005575168 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 005573232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 005436696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 004873216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 004866560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 004661760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 004413936 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 004303872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 004049920 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003906560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003872336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003656792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003637760 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 003576832 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003550384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003496448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003387392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003363640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 003333632 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003082752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002918200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 002871824 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 002848768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002765312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002707968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 002699976 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002698752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002645504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002628112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 002421248 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 002393600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002348544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002192384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002109960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002072176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002050560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001994976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001966096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 001933408 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001929728 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001918792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001904128 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001751432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001729024 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001726480 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001702600 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-11-13 07:22 - 2019-11-13 07:22 - 001677808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001674480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001668784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001668752 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001666440 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001644544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001608192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001538560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 001486472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001473296 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 001465472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001346216 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-11-13 07:22 - 2019-11-13 07:22 - 001331536 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001294792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001291264 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001267240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-11-13 07:22 - 2019-11-13 07:22 - 001262592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001258512 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 001200920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001183504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 001180248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001098136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001054712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 001054224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 001050112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 001049608 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 001024712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001022464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000981504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000927232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000888560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000877568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000869888 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000862008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000856424 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000811536 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000808272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000807424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000801792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000782968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000773208 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000750592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000747536 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000741688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000729088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000703488 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000690688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000687104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000680184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000676352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000667664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000661264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000652088 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000642560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000638480 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000604344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000591160 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000590336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000588816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000574464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000553784 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000548864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000547328 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000542320 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000536320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000535080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000520704 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000520208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000514600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000509968 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000505640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000481280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000474936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2019-11-13 07:22 - 2019-11-13 07:22 - 000473832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000465416 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000462352 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000450632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000445752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000435512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000428032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000427832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000415760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000389408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000385848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000383288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000367104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000360960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000350208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000324624 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposableShellProxyStub.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000303104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManager.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000263360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000262152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000249856 _____ (Gracenote, Inc.) C:\WINDOWS\SysWOW64\gnsdk_fp.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-11-13 07:22 - 2019-11-13 07:22 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000213304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000201528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000198968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000193336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000180736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-11-13 07:22 - 2019-11-13 07:22 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\spacebridge.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spacebridge.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000164368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000160272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pacer.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000152896 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComposableShellProxyStub.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000141736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prntvpt.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000120352 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000118480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000112168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellExtFramework.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000090632 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000087080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000086840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\npfs.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000086744 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000080400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usp10.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000071696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CapabilityAccessManagerClient.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000061480 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvhostsvc.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessRuntime.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000047616 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AssignedAccessRuntime.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\compact.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\compact.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000038912 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000036368 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000023768 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000020144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-11-13 07:22 - 2019-11-13 07:22 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-11-13 07:22 - 2019-11-13 07:22 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-11-13 07:22 - 2019-11-13 07:22 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-11-13 07:22 - 2019-11-13 07:22 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-11-13 07:22 - 2019-11-13 07:22 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-11-13 07:22 - 2019-11-13 07:22 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-11-13 07:22 - 2019-11-13 07:22 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2019-11-12 23:17 - 2019-11-12 23:17 - 007622344 _____ (Malwarebytes) C:\Users\Mýl_a_Páť\Downloads\AdwCleaner.exe
2019-11-12 23:13 - 2019-11-12 23:13 - 000000000 ____D C:\Users\Mýl_a_Páť\AppData\Local\mbam
2019-11-12 23:13 - 2019-11-12 23:13 - 000000000 ____D C:\Users\Mýl_a_Páť\AppData\Local\cache
2019-11-12 23:12 - 2019-11-12 23:12 - 000000000 ____D C:\Users\Mýl_a_Páť\AppData\Local\mbamtray
2019-11-12 23:11 - 2019-11-12 23:11 - 001883976 _____ (Malwarebytes) C:\Users\Mýl_a_Páť\Downloads\MBSetup.exe
2019-11-11 16:14 - 2019-11-11 16:14 - 000000000 ____D C:\Users\Mýl_a_Páť\Downloads\PLK1920_oznameni
2019-11-11 16:13 - 2019-11-11 16:14 - 021192900 _____ C:\Users\Mýl_a_Páť\Downloads\PLK1920_oznameni.zip
2019-11-11 13:22 - 2019-03-28 10:11 - 000029232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll
2019-11-11 13:22 - 2019-03-28 10:11 - 000017968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr100_clr0400.dll
2019-11-11 13:22 - 2019-03-28 10:09 - 000032816 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll
2019-11-11 13:22 - 2019-03-28 10:09 - 000017968 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr100_clr0400.dll
2019-11-11 13:22 - 2019-03-28 07:35 - 000772176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_clr0400.dll
2019-11-11 13:22 - 2019-03-28 07:35 - 000702400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase_clr0400.dll
2019-11-11 13:22 - 2019-03-28 07:35 - 000622832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140_clr0400.dll
2019-11-11 13:22 - 2019-03-28 07:35 - 000433448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp140_clr0400.dll
2019-11-11 13:22 - 2019-03-28 07:35 - 000087296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vcruntime140_clr0400.dll
2019-11-11 13:22 - 2019-03-28 07:35 - 000083768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vcruntime140_clr0400.dll
2019-11-11 00:10 - 2019-10-25 10:43 - 001073872 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2019-11-11 00:10 - 2019-10-25 10:43 - 001073872 _____ C:\WINDOWS\system32\vulkan-1.dll
2019-11-11 00:10 - 2019-10-25 10:43 - 000931536 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2019-11-11 00:10 - 2019-10-25 10:43 - 000931536 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2019-11-11 00:10 - 2019-10-25 10:43 - 000848592 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2019-11-11 00:10 - 2019-10-25 10:43 - 000848592 _____ C:\WINDOWS\system32\vulkaninfo.exe
2019-11-11 00:10 - 2019-10-25 10:43 - 000706256 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-11-11 00:10 - 2019-10-25 10:43 - 000706256 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2019-11-11 00:10 - 2019-10-25 10:43 - 000450392 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2019-11-11 00:10 - 2019-10-25 10:43 - 000352512 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2019-11-11 00:10 - 2019-10-25 10:42 - 011839864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2019-11-11 00:10 - 2019-10-25 10:42 - 010164944 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2019-11-11 00:10 - 2019-10-25 10:42 - 000677072 _____ C:\WINDOWS\system32\nvofapi64.dll
2019-11-11 00:10 - 2019-10-25 10:42 - 000545112 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 017461464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 015028776 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 005380512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 004716584 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 002074504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 001733464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6444112.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 001568688 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 001491472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6444112.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 001483640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 001370032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 001144064 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 001065392 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 000812800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 000686592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 000658680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 000558080 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2019-11-11 00:10 - 2019-10-25 10:40 - 040511064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2019-11-11 00:10 - 2019-10-25 10:40 - 035379656 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2019-11-08 22:21 - 2019-11-08 22:26 - 000002494 _____ C:\Users\Mýl_a_Páť\Downloads\20191108210922_IMG_3775.JPG.data-zps
2019-11-08 21:49 - 2019-11-08 21:49 - 000823903 _____ C:\Users\Mýl_a_Páť\Downloads\image (2).jpg.jfif
2019-11-08 21:46 - 2019-11-08 21:46 - 000823903 _____ C:\Users\Mýl_a_Páť\Downloads\image (1).jfif
2019-11-08 21:39 - 2019-11-08 21:43 - 000002283 _____ C:\Users\Mýl_a_Páť\Downloads\20191108192954_IMG_3753.JPG.data-zps
2019-11-06 23:57 - 2019-11-06 23:57 - 000122484 _____ C:\Users\Mýl_a_Páť\Downloads\TJ01000161-ZZ-2019-potvrzení_podání.pdf
2019-10-18 22:27 - 2019-10-18 22:27 - 000545578 _____ C:\Users\Mýl_a_Páť\Downloads\image.jfif
2019-10-14 21:25 - 2019-10-14 21:25 - 000356402 _____ C:\Users\Mýl_a_Páť\Downloads\etika.zip
2019-10-14 21:25 - 2019-10-14 21:25 - 000000000 ____D C:\Users\Mýl_a_Páť\Downloads\etika

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-11-13 22:46 - 2017-12-28 22:23 - 000000000 ____D C:\FRST
2019-11-13 22:42 - 2017-12-19 17:39 - 000000000 ____D C:\Program Files (x86)\Steam
2019-11-13 22:34 - 2018-09-15 08:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-11-13 22:33 - 2018-12-22 11:20 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-11-13 14:36 - 2018-09-15 08:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-11-13 14:36 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-11-13 14:35 - 2018-12-22 11:30 - 001693640 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-11-13 14:35 - 2018-09-15 18:32 - 000716944 _____ C:\WINDOWS\system32\perfh005.dat
2019-11-13 14:35 - 2018-09-15 18:32 - 000145024 _____ C:\WINDOWS\system32\perfc005.dat
2019-11-13 14:35 - 2018-09-15 08:31 - 000000000 ____D C:\WINDOWS\INF
2019-11-13 14:31 - 2017-12-16 17:17 - 000000000 ____D C:\ProgramData\NVIDIA
2019-11-13 14:29 - 2018-12-22 11:26 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-11-13 14:29 - 2018-12-22 11:20 - 000459424 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-11-13 14:29 - 2018-09-15 08:33 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-11-13 14:29 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-11-13 14:29 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-11-13 14:29 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\appraiser
2019-11-13 14:29 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-11-13 14:29 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-11-13 14:29 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-11-13 14:29 - 2018-09-15 07:09 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-11-13 14:29 - 2018-09-15 07:09 - 000000000 ____D C:\WINDOWS\system32\Dism
2019-11-13 14:29 - 2017-12-16 19:00 - 000000000 __SHD C:\Users\Mýl_a_Páť\IntelGraphicsProfiles
2019-11-13 14:29 - 2017-12-16 17:21 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-11-13 14:29 - 2017-12-16 17:08 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-11-13 14:29 - 2017-12-16 17:08 - 000000000 ___RD C:\Users\Mýl_a_Páť\3D Objects
2019-11-13 13:23 - 2019-01-17 13:32 - 000000000 ____D C:\Users\Mýl_a_Páť\AppData\Local\TeamViewer
2019-11-13 07:25 - 2017-12-16 19:13 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-11-13 07:24 - 2018-09-15 08:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-11-13 07:24 - 2017-12-16 19:12 - 128443096 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-11-12 23:29 - 2017-12-16 19:13 - 000748816 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2019-11-12 23:18 - 2018-09-15 08:33 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-11-12 23:18 - 2017-12-30 21:09 - 000000000 ____D C:\AdwCleaner
2019-11-11 18:12 - 2017-12-16 17:20 - 000000000 ____D C:\Program Files\Opera
2019-11-11 17:23 - 2018-04-26 21:01 - 000000000 ____D C:\Users\Mýl_a_Páť\AppData\Roaming\vlc
2019-11-10 23:49 - 2019-06-17 21:21 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2019-06-17 21:21 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2019-06-17 21:21 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2019-06-17 21:21 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2018-12-22 11:26 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2018-12-22 11:26 - 000004106 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2018-12-22 11:26 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2018-12-22 11:26 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2018-12-22 11:26 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2018-12-22 11:26 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2017-12-16 17:16 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-11-10 23:49 - 2017-12-16 17:16 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-11-10 23:49 - 2017-12-16 17:16 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-11-06 18:12 - 2018-12-22 11:26 - 000003958 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1513441278
2019-11-06 18:12 - 2017-12-16 17:21 - 000001107 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2019-11-06 16:07 - 2019-08-22 20:10 - 000000000 ____D C:\ProgramData\Zoner
2019-11-05 07:22 - 2018-12-22 11:26 - 000003474 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-11-05 07:22 - 2018-12-22 11:26 - 000003350 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-11-05 07:22 - 2018-02-10 18:28 - 000000000 ____D C:\Program Files (x86)\Google
2019-11-03 21:05 - 2017-12-16 17:42 - 000000000 ____D C:\MSI
2019-11-02 16:29 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-11-01 06:32 - 2018-06-20 13:55 - 000000000 ____D C:\ProgramData\Packages
2019-10-28 21:11 - 2018-02-22 22:54 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-10-25 10:37 - 2018-12-20 17:11 - 004936784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2019-10-25 10:37 - 2018-12-20 17:11 - 004205776 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2019-10-25 06:23 - 2018-02-19 18:50 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-10-24 15:01 - 2018-05-27 19:14 - 002845208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2019-10-24 15:01 - 2018-05-27 19:14 - 002209136 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2019-10-24 15:01 - 2018-05-27 19:14 - 001323112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2019-10-24 12:05 - 2018-12-20 17:11 - 000056015 _____ C:\WINDOWS\system32\nvinfo.pb
2019-10-24 09:24 - 2017-12-16 17:17 - 005544056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2019-10-24 09:24 - 2017-12-16 17:17 - 002650480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2019-10-24 09:24 - 2017-12-16 17:17 - 001767872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2019-10-24 09:24 - 2017-12-16 17:17 - 000668200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2019-10-24 09:24 - 2017-12-16 17:17 - 000454968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2019-10-24 09:24 - 2017-12-16 17:17 - 000130032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2019-10-24 09:24 - 2017-12-16 17:17 - 000084584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2019-10-23 20:16 - 2019-08-22 20:13 - 000001563 _____ C:\Users\Mýl_a_Páť\AppData\Roaming\Microsoft\Windows\Start Menu\Zoner Photo Studio X.lnk
2019-10-23 20:16 - 2019-08-22 20:13 - 000001561 _____ C:\Users\Mýl_a_Páť\Desktop\Zoner Photo Studio X.lnk
2019-10-22 11:00 - 2017-12-16 17:17 - 008764732 _____ C:\WINDOWS\system32\nvcoproc.bin
2019-10-22 03:11 - 2017-12-16 17:17 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2019-10-15 20:13 - 2018-12-22 11:26 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2019-10-15 20:12 - 2018-02-19 18:48 - 000000000 ____D C:\Users\Mýl_a_Páť\AppData\Local\Adobe
2019-10-14 15:38 - 2018-03-16 14:53 - 000000027 _____ C:\WINDOWS\BRMFBIDI.INI

==================== Files in the root of some directories ========

2019-03-27 21:31 - 2019-03-27 21:31 - 000000730 _____ () C:\Users\Mýl_a_Páť\AppData\Local\recently-used.xbel
2018-01-16 19:35 - 2018-02-25 20:17 - 000007598 _____ () C:\Users\Mýl_a_Páť\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Ervd
Návštěvník
Návštěvník
Příspěvky: 177
Registrován: 04 úno 2007 10:47

Re: preventivka

#6 Příspěvek od Ervd »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-11-2019
Ran by Mýl_a_Páť (13-11-2019 22:46:44)
Running from C:\Users\Mýl_a_Páť\Desktop
Windows 10 Home Version 1809 17763.864 (X64) (2018-12-22 10:26:17)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-370975082-3115102142-3364293580-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-370975082-3115102142-3364293580-503 - Limited - Disabled)
Guest (S-1-5-21-370975082-3115102142-3364293580-501 - Limited - Disabled)
Mýl_a_Páť (S-1-5-21-370975082-3115102142-3364293580-1001 - Administrator - Enabled) => C:\Users\Mýl_a_Páť
WDAGUtilityAccount (S-1-5-21-370975082-3115102142-3364293580-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.021.20049 - Adobe Systems Incorporated)
Adobe Flash Player 31 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 31.0.0.108 - Adobe Systems Incorporated)
Aktualizace NVIDIA 38.0.2.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.2.0 - NVIDIA Corporation) Hidden
Apple Mobile Device Support (HKLM\...\{A05FDFEC-4377-49E0-82CB-B6D1386E89DA}) (Version: 11.3.0.9 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.)
Balíček ovladače systému Windows - OLYMPUS IMAGING CORP. Camera Communication Driver Package (09/09/2009 1.0.0.0) (HKLM\...\2C1C2F29FADF39F533CEEE67B90F07A5306A4BDB) (Version: 09/09/2009 1.0.0.0 - OLYMPUS IMAGING CORP.)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
BS.Player FREE (HKLM-x32\...\BSPlayerf) (Version: 2.72.1082 - AB Team, d.o.o.)
Google Earth Pro (HKLM\...\{70A0F34E-564B-4F93-ADD6-3BAEC6E44075}) (Version: 7.3.2.5776 - Google)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.341 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.3 - Google Inc.) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4835 - Intel Corporation)
iTunes (HKLM\...\{565C813A-F1E1-4A1B-91D8-B2112D0D5518}) (Version: 12.7.4.76 - Apple Inc.)
LibreOffice 6.3.1.2 (HKLM\...\{46BF4998-7CC7-43AA-8D4C-D43DEFB24493}) (Version: 6.3.1.2 - The Document Foundation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
MSI Afterburner 4.4.2 (HKLM-x32\...\Afterburner) (Version: 4.4.2 - MSI Co., LTD)
MSI DragonEye (HKLM\...\{7116875E-F251-4C33-AB3F-37DE05B15595}_is1) (Version: 0.0.2.6 - MSI)
MSI Gaming APP (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 6.2.0.45 - MSI)
MSI Kombustor 0.6.2.0 (32-bit) (HKLM-x32\...\{F3D3CC6B-9AD7-4F43-8C69-40D5902FDC5C}}_is1) (Version: - MSI / Geeks3D)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
nCode 11.1 64-bit (C:\Program Files\nCode\nCode 11.1 64-bit) (HKLM\...\nCode 11.1 64-bit) (Version: 11.1.0.0 - HBM United Kingdom Limited)
Nik Collection (HKLM-x32\...\Nik Collection) (Version: 1.2.11 - Google)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.20.1.57 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.1.57 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.38.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.21 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 441.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 441.12 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
OLYMPUS Digital Camera Updater (HKLM-x32\...\{BD107100-E418-4805-B08D-30E098741A95}) (Version: 2.1.3 - Olympus Corporation)
OLYMPUS Viewer 3 (HKLM-x32\...\{CC2205DE-4C99-4FAD-A0AE-A1B5267E60B7}) (Version: 2.3.0 - Olympus Corporation)
Olympus Workspace (HKLM-x32\...\{7FBF5669-B60F-402B-9A08-7F7FF7FBC538}) (Version: 1.0.0 - Olympus Corporation)
OpenSSL 1.1.0h Light (32-bit) (HKLM-x32\...\OpenSSL Light (32-bit)_is1) (Version: - OpenSSL Win32 Installer Team)
Opera Stable 64.0.3417.92 (HKLM-x32\...\Opera 64.0.3417.92) (Version: 64.0.3417.92 - Opera Software)
Ovládací panel NVIDIA 441.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 441.12 - NVIDIA Corporation) Hidden
Podpora aplikací Apple (32bitová) (HKLM-x32\...\{543F829B-4591-4B2F-AF63-6E6E6AE59EB2}) (Version: 6.4 - Apple Inc.)
Podpora aplikací Apple (64bitová) (HKLM\...\{0ECA3BB5-4410-414B-B226-241FF1C12CD0}) (Version: 6.4 - Apple Inc.)
RivaTuner Statistics Server 7.0.2 (HKLM-x32\...\RTSS) (Version: 7.0.2 - Unwinder)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.7.1965 - TeamViewer)
Teta CEWE fotosvet (HKLM-x32\...\Teta CEWE fotosvet) (Version: 6.4.5 - CEWE Stiftung u Co. KGaA)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.12 - Ghisler Software GmbH)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{9CBA860F-7437-4A75-941C-8EF559F2D145}) (Version: 2.52.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.2 - VideoLAN)
Zoner Photo Studio X CS (HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\ZPS X) (Version: 19.1909.2.193 - ZONER software)

Packages:
=========
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-06] (Autodesk Inc.)
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_6.2.6.0_x86__kgqvnymyfvs32 [2019-10-22] (king.com)
Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.151.300.0_x86__kgqvnymyfvs32 [2019-11-01] (king.com)
Disney Magic Kingdoms -> C:\Program Files\WindowsApps\A278AB0D.DisneyMagicKingdoms_4.4.0.5_x86__h6adky7gbf63m [2019-10-16] (Gameloft.)
Instagram -> C:\Program Files\WindowsApps\Facebook.InstagramBeta_41.1788.50991.0_x86__8xx8rvfyw5nnt [2018-12-25] (Instagram)
March of Empires: War of Lords -> C:\Program Files\WindowsApps\A278AB0D.MarchofEmpires_4.4.0.10_x86__h6adky7gbf63m [2019-10-23] (Gameloft.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-02-06] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-02-06] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.33.13094.0_x64__8wekyb3d8bbwe [2019-11-13] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.11052.0_x64__8wekyb3d8bbwe [2019-11-09] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-11] (Microsoft Corporation) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20368.0_x64__8wekyb3d8bbwe [2019-11-05] (Microsoft Corporation) [MS Ad]
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0 [2019-11-09] (Spotify AB) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-10-20] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.RTV1] => C:\WINDOWS\system32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed]

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2017-12-16 17:42 - 2016-06-14 16:35 - 000187392 _____ () [File not signed] C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\D3D11FontDraw.dll
2017-12-16 17:42 - 2016-06-14 16:35 - 000163328 _____ () [File not signed] C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\D3D11FontDraw.dll
2017-12-23 08:51 - 2015-09-01 11:51 - 000236544 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\ailibr.dll
2017-12-23 08:51 - 2015-09-01 11:51 - 000069632 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\anslibr.dll
2017-12-23 08:51 - 2015-09-01 12:14 - 000146432 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\appserverlibr.dll
2017-12-23 08:51 - 2015-09-01 12:15 - 002079744 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\asamlibr.DLL
2017-12-23 08:51 - 2015-09-01 11:52 - 000139264 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\CBLibr.dll
2017-12-23 08:51 - 2015-09-01 11:55 - 000211968 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cgdlibr.dll
2017-12-23 08:51 - 2015-09-01 11:49 - 000156160 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cgflibr.dll
2017-12-23 08:51 - 2015-09-01 11:55 - 000217600 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cgolibr.dll
2017-12-23 08:51 - 2015-09-01 11:55 - 000845312 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cgrlibr.dll
2017-12-23 08:51 - 2015-09-01 11:45 - 000395776 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cpputilr.dll
2017-12-23 08:51 - 2015-09-01 11:57 - 001482752 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\dglibr.dll
2017-12-23 08:51 - 2015-09-01 11:46 - 000017408 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\dmilibr.dll
2017-12-23 08:51 - 2015-09-01 11:54 - 007017984 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\dtlibr.dll
2017-12-23 08:51 - 2015-09-01 11:52 - 002461696 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\FDLibr.dll
2017-12-23 08:51 - 2015-09-01 12:02 - 006024192 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\fedlibr.dll
2017-12-23 08:51 - 2015-09-01 11:51 - 000199168 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\feilibr.dll
2017-12-23 08:51 - 2015-09-01 11:53 - 006523392 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\feimportlibr.dll
2017-12-23 08:51 - 2015-09-01 11:48 - 000413184 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\ferlibr.dll
2017-12-23 08:51 - 2015-09-01 11:47 - 002224640 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\FSLibr.dll
2017-12-23 08:51 - 2015-09-01 12:04 - 003898368 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\FVLibr.dll
2017-12-23 08:51 - 2015-09-01 12:06 - 001424384 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine01r.DLL
2017-12-23 08:51 - 2015-09-01 12:07 - 001577472 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine02r.DLL
2017-12-23 08:51 - 2015-09-01 12:08 - 004773888 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine03r.DLL
2017-12-23 08:51 - 2015-09-01 12:09 - 000937472 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine04r.DLL
2017-12-23 08:51 - 2015-09-01 12:10 - 001269248 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine06r.DLL
2017-12-23 08:51 - 2015-09-01 12:10 - 000411136 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine07r.DLL
2017-12-23 08:51 - 2015-09-01 12:11 - 000595456 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine08r.DLL
2017-12-23 08:51 - 2015-09-01 12:11 - 000338432 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine09r.DLL
2017-12-23 08:51 - 2015-09-01 12:12 - 000752640 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine13r.DLL
2017-12-23 08:51 - 2015-09-01 12:12 - 000614912 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine14r.DLL
2017-12-23 08:51 - 2015-09-01 12:13 - 000407040 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine15r.DLL
2017-12-23 08:51 - 2015-09-01 12:13 - 000146432 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine16r.DLL
2017-12-23 08:51 - 2015-09-01 12:03 - 000607744 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\gutlibr.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000474624 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\h3dreader.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 002172416 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\hdf5.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 000299520 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\hdf5_cpp.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 000099328 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\hdf5_hl.dll
2017-12-23 08:51 - 2015-09-01 11:58 - 000593920 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\iceintlibr.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000029696 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qgif.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000029184 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qico.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000234496 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qjpeg.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000276480 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qmng.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000023040 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qsvg.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000352256 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qtiff.dll
2017-12-23 08:51 - 2015-09-01 11:46 - 000453120 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\IXDLibr.dll
2017-12-23 08:51 - 2015-09-01 11:43 - 000279552 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\libsier.dll
2017-12-23 08:51 - 2015-09-01 11:46 - 000246272 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\maplibr.dll
2017-12-23 08:51 - 2015-09-01 11:48 - 000472064 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\matdblibr.dll
2017-12-23 08:51 - 2015-09-01 11:57 - 000616960 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\materialsr.dll
2017-12-23 08:51 - 2015-09-01 11:44 - 000210432 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\mcxlibr.dll
2017-12-23 08:51 - 2015-09-01 11:45 - 000069632 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\mtlibr.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 005095424 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\nci1.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 012812800 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\nci2.dll
2017-12-23 08:51 - 2015-09-01 11:43 - 000028672 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\ncmpilibr.dll
2017-12-23 08:51 - 2015-09-01 11:45 - 000068608 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\nulibr.dll
2017-12-23 08:51 - 2015-09-01 11:46 - 000148992 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\numsiglibr.dll
2017-12-23 08:51 - 2015-09-01 11:44 - 000147456 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\NXLibr.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 001093120 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\platforms\qwindows.dll
2017-12-23 08:51 - 2015-09-01 12:14 - 000040960 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\ProgramEngine00r.DLL
2017-12-23 08:51 - 2015-09-01 11:45 - 000070144 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\pylibr.dll
2017-12-23 08:51 - 2015-09-01 11:45 - 000009728 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\pylinklibr.dll
2017-12-23 08:51 - 2015-09-01 12:03 - 000571904 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\QCLibr.dll
2017-12-23 08:51 - 2015-09-01 11:42 - 001621504 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\qicstabler.dll
2017-12-23 08:51 - 2015-09-01 11:56 - 001545216 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\qtutilr.dll
2017-12-23 08:51 - 2015-09-01 11:53 - 001019904 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\QXLibr.dll
2017-12-23 08:51 - 2015-09-01 11:44 - 002302464 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\S3Libr.dll
2017-12-23 08:51 - 2015-09-01 11:47 - 000056320 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\sielibr.dll
2017-12-23 08:51 - 2015-09-01 11:49 - 001944576 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\siglibr.dll
2017-12-23 08:51 - 2015-09-01 12:17 - 000211456 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\svlibr.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 000046080 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\szip.dll
2017-12-23 08:52 - 2015-09-01 11:04 - 000410624 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\xerces-depdom_2_8.dll
2017-12-23 08:52 - 2015-09-01 11:42 - 000163840 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\xllibr.dll
2017-12-23 08:52 - 2015-09-01 11:04 - 000078336 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\zlib.dll
2017-12-23 08:51 - 2015-09-01 10:58 - 000152576 _____ (Apache Software Foundation) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\libapr-1.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 002499584 _____ (Apache Software Foundation) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\xerces-c_2_8.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 004882944 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Core.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 005223936 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Gui.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000683008 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Multimedia.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000102400 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5MultimediaWidgets.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 001059328 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Network.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000314880 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5OpenGL.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000198144 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Positioning.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000314368 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5PrintSupport.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 003037696 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Qml.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 002717696 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Quick.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000180224 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Sensors.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000201728 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Sql.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000256512 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Svg.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 023045632 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5WebKit.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000233472 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5WebKitWidgets.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 005275648 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Widgets.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000196096 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Xml.dll
2017-12-16 17:42 - 2015-06-23 16:41 - 000082432 _____ (Fintek) [File not signed] C:\Program Files (x86)\MSI\Gaming APP\Lib\FintekUSBDll.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 001574400 _____ (HighQSoft GmbH) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\athosr.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 000414720 _____ (HighQSoft GmbH) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\odsapicppr.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 001004544 _____ (HighQSoft GmbH) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\odsapir.dll
2017-12-23 08:46 - 2016-10-04 15:51 - 000076800 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000348160 _____ (Microsoft Corporation) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\msvcr71.dll
2017-12-23 08:51 - 2015-09-01 11:48 - 002371584 _____ (nCode International Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\fatlibr.dll
2017-12-23 08:51 - 2015-09-01 11:50 - 004077056 _____ (nCode International Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\fiolibr.dll
2017-12-23 08:51 - 2015-09-01 12:00 - 006931456 _____ (nCode International Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\grlibr.dll
2017-12-23 08:51 - 2015-09-01 11:41 - 003235840 _____ (nCode International Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\utlibr.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 001790464 _____ (omniORB open source project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\omniORB414_vc11_rt.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 000056320 _____ (omniORB open source project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\omnithread34_vc11_rt.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 002770432 _____ (Python Software Foundation) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\python26.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 002699264 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\client\jvm.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000015872 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\hpi.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000126976 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\java.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000018432 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\management.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000077824 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\net.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000005120 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\rmi.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 004378624 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\server\jvm.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000031744 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\verify.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000046592 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\zip.dll
2017-12-23 08:52 - 2009-11-25 10:45 - 000205312 _____ (Tanuki Software, Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\lib\win\wrapper.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 000412160 _____ (The cURL library, hxxp://curl.haxx.se/) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\curlr.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 021529088 _____ (The ICU Project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\icudt53.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 001883136 _____ (The ICU Project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\icuin53.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 001307136 _____ (The ICU Project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\icuuc53.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 001649664 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\LIBEAY32.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 000353280 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\SSLEAY32.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2017-09-29 14:46 - 2017-09-29 14:44 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-370975082-3115102142-3364293580-1001\Control Panel\Desktop\\Wallpaper -> D:\fotky\OLYMPUS Viewer 3\2018_03_10\P3100461.JPG
DNS Servers: 192.168.100.250
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "OV3_Monitor"
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\StartupApproved\Run: => "OV3_Monitor"
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\StartupApproved\Run: => "Zoner Photo Studio Autoupdate"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{E7B21B5B-A115-45BB-BE8A-B332C21B4E66}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{61420EF2-2A9E-4CE2-AAF5-A9CEA93AFF12}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{B9DCEEE7-E5A4-4A54-9621-79DA566C46D2}] => (Allow) C:\Program Files\Zoner\Photo Studio 18\Program32\MediaServer.exe No File
FirewallRules: [{0C4E3313-765A-4397-BABC-8E1786276E3C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{CC8C6F12-FD83-4F27-83F2-3AF38935EE0E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{3E2FAD11-4B6B-4478-A17D-136FEA2677AB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{6A8B018F-A02C-408A-8799-9658A672B639}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{99921221-6EC4-499C-97B5-CEC3A4909C4D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{C308D970-F320-4ECA-A0E2-EB2748C0EE05}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [TCP Query User{3B99C712-BED0-4738-8592-A84C0282F21A}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe No File
FirewallRules: [UDP Query User{F0A6CAC8-88FA-428B-BBF2-3B249FF5EA8F}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe No File
FirewallRules: [{287521F3-D300-482E-9CD5-F94F869027FA}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{CFBF723D-B399-4EEE-97C4-C61BE762983A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{AB66D30E-370A-49AE-A206-42DDD16B7351}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B4756F9B-B40A-4694-B0C1-14D41B2C6521}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{78B85857-E3A7-4FB8-A946-E500E84BE357}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{5D6CDED4-687D-4109-B4DA-5A94D0EA006A}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{57425C52-34E3-4F7B-9377-C3D4A0F295A9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\the witcher 2\Launcher.exe (CD Projekt RED) [File not signed]
FirewallRules: [{48508039-F51B-455D-8184-4850ED841F08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\the witcher 2\Launcher.exe (CD Projekt RED) [File not signed]
FirewallRules: [TCP Query User{EC573B71-62CA-4A2A-984E-C07AF0BD337B}C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe () [File not signed]
FirewallRules: [UDP Query User{C099AA9D-E446-4708-8628-A767BE84434C}C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe () [File not signed]
FirewallRules: [{1F256989-88AF-4BE0-9EAA-7B3F56B8CFF2}] => (Allow) C:\Program Files\Opera\63.0.3368.107\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{6553FC9C-7405-4235-BDCD-FD0D217317DC}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{76E19889-E4DE-4A6B-841C-D5779376BB33}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{6BB6C1C6-EE43-472C-B3F9-46664FCE5D48}] => (Allow) LPort=26789
FirewallRules: [{AAB73BB9-6AFC-45CB-96CE-92569167429B}] => (Allow) C:\Program Files\Opera\64.0.3417.92\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{A93A8F77-129C-4A42-914C-DB29F0788504}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{B73DC982-E35A-43F0-BBDE-F563AFDB27ED}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{C301A96C-6CE8-440B-8EEA-1567386C54E4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{5CB1C09A-40ED-46D1-AF05-FBDA6D56F76D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{1B209C66-4545-4E7C-9459-03D20997865B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{6029024B-C5AF-42A4-BA66-6B709EA53230}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{06F2A581-442C-4B4F-8A65-B96BE6989BFB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{1A4BA29A-8ED5-41CA-A1C7-79A591430384}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{CD520C30-B840-490F-9150-54AF5FA3FD19}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{975680BC-FDF1-4EFF-8F12-14AB0484D64D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F008501E-B5D0-4C2A-9749-54BB19E214C5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{234C56F3-EF8C-473D-A52C-AF6F3FC2A7A0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F2254637-6C46-4415-AD2E-96390744E5E6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{72CAED30-CEE8-4668-A9F1-E14435A92739}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{7E9269DC-41F3-407C-9980-905D871F31DC}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{46DD0EB0-EE76-4814-B076-350B33E4A071}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)

==================== Restore Points =========================

30-10-2019 15:57:55 Naplánovaný kontrolní bod
09-11-2019 09:55:27 Naplánovaný kontrolní bod
13-11-2019 07:18:54 Windows Update

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (11/13/2019 09:42:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 3718

Error: (11/13/2019 09:42:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 3718

Error: (11/13/2019 09:42:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/13/2019 09:42:23 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1828

Error: (11/13/2019 09:42:23 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1828

Error: (11/13/2019 09:42:23 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/13/2019 02:29:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding 25 C.A.8.3.3.6.5.6.6.9.F.D.9.A.9.9.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR DESKTOP-78RC28O-2.local.

Error: (11/13/2019 02:29:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.100.72:5353 23 C.A.8.3.3.6.5.6.6.9.F.D.9.A.9.9.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR DESKTOP-78RC28O.local.


System errors:
=============
Error: (11/13/2019 10:42:20 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-78RC28O)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli DESKTOP-78RC28O\Mýl_a_Páť (SID: S-1-5-21-370975082-3115102142-3364293580-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 10:41:05 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-78RC28O)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli DESKTOP-78RC28O\Mýl_a_Páť (SID: S-1-5-21-370975082-3115102142-3364293580-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 02:31:37 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.SecurityAppBroker
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 02:31:37 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscBrokerManager
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 02:31:37 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscDataProtection
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 02:30:30 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-78RC28O)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli DESKTOP-78RC28O\Mýl_a_Páť (SID: S-1-5-21-370975082-3115102142-3364293580-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 01:22:39 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-78RC28O)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli DESKTOP-78RC28O\Mýl_a_Páť (SID: S-1-5-21-370975082-3115102142-3364293580-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/12/2019 11:21:45 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscBrokerManager
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.


Windows Defender:
===================================
Date: 2019-10-25 00:50:10.151
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {F12E3110-630E-4F3A-BD0D-7A8FF31FBD0E}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-24 23:48:08.363
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {A49D1864-D4A4-4340-9A9A-FCC445D2644A}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-23 20:25:25.776
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {84B63F11-3CCC-4CC7-AE8A-06EE9CC1A20A}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-06 20:06:18.905
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {615DDD4D-1168-421C-97A6-D5C42853F179}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-03 12:01:10.311
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {C27CAC7B-FD51-4141-ABE7-FFC495DFC1E8}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

CodeIntegrity:
===================================

Date: 2019-04-16 19:30:21.427
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.419
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.371
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.363
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.354
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsreg.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.344
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsreg.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:20.944
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:20.924
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.

==================== Memory info ===========================

BIOS: American Megatrends Inc. F13 06/19/2014
Motherboard: Gigabyte Technology Co., Ltd. B85M-D3H
Processor: Intel(R) Core(TM) i5-4590 CPU @ 3.30GHz
Percentage of memory in use: 25%
Total physical RAM: 16248.38 MB
Available physical RAM: 12179.73 MB
Total Virtual: 18680.38 MB
Available Virtual: 12767.6 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:223.03 GB) (Free:35.59 GB) NTFS
Drive d: (Úložiště) (Fixed) (Total:931.51 GB) (Free:479 GB) NTFS

\\?\Volume{45600087-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.54 GB) (Free:0.12 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: 45600087)
Partition 1: (Active) - (Size=549 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=223 GB) - (Type=07 NTFS)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: D4088A27)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118251
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: preventivka

#7 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
FirewallRules: [{B9DCEEE7-E5A4-4A54-9621-79DA566C46D2}] => (Allow) C:\Program Files\Zoner\Photo Studio 18\Program32\MediaServer.exe No File
FirewallRules: [{3E2FAD11-4B6B-4478-A17D-136FEA2677AB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{6A8B018F-A02C-408A-8799-9658A672B639}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [TCP Query User{3B99C712-BED0-4738-8592-A84C0282F21A}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe No File
FirewallRules: [UDP Query User{F0A6CAC8-88FA-428B-BBF2-3B249FF5EA8F}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe No File
FirewallRules: [{CFBF723D-B399-4EEE-97C4-C61BE762983A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{AB66D30E-370A-49AE-A206-42DDD16B7351}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B4756F9B-B40A-4694-B0C1-14D41B2C6521}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{78B85857-E3A7-4FB8-A946-E500E84BE357}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\MountPoints2: {ddf2d247-b165-11e9-8f0e-fcaa14227de4} - "E:\OnePlus_setup.exe" /s
GroupPolicy: Restriction ? <==== ATTENTION
ask: {F42CB072-A96B-4DB5-A58C-15DCB5293903} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.)
Task: {F8CB0B9C-EA8E-4B89-A3E8-B99ECBCF1149} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.)
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Ervd
Návštěvník
Návštěvník
Příspěvky: 177
Registrován: 04 úno 2007 10:47

Re: preventivka

#8 Příspěvek od Ervd »

Fix result of Farbar Recovery Scan Tool (x64) Version: 14-11-2019
Ran by Mýl_a_Páť (18-11-2019 19:20:46) Run:1
Running from C:\Users\Mýl_a_Páť\Desktop
Loaded Profiles: Mýl_a_Páť (Available Profiles: Mýl_a_Páť)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
FirewallRules: [{B9DCEEE7-E5A4-4A54-9621-79DA566C46D2}] => (Allow) C:\Program Files\Zoner\Photo Studio 18\Program32\MediaServer.exe No File
FirewallRules: [{3E2FAD11-4B6B-4478-A17D-136FEA2677AB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{6A8B018F-A02C-408A-8799-9658A672B639}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [TCP Query User{3B99C712-BED0-4738-8592-A84C0282F21A}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe No File
FirewallRules: [UDP Query User{F0A6CAC8-88FA-428B-BBF2-3B249FF5EA8F}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe No File
FirewallRules: [{CFBF723D-B399-4EEE-97C4-C61BE762983A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{AB66D30E-370A-49AE-A206-42DDD16B7351}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B4756F9B-B40A-4694-B0C1-14D41B2C6521}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{78B85857-E3A7-4FB8-A946-E500E84BE357}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\MountPoints2: {ddf2d247-b165-11e9-8f0e-fcaa14227de4} - "E:\OnePlus_setup.exe" /s
GroupPolicy: Restriction ? <==== ATTENTION
ask: {F42CB072-A96B-4DB5-A58C-15DCB5293903} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.)
Task: {F8CB0B9C-EA8E-4B89-A3E8-B99ECBCF1149} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.)
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B9DCEEE7-E5A4-4A54-9621-79DA566C46D2}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3E2FAD11-4B6B-4478-A17D-136FEA2677AB}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6A8B018F-A02C-408A-8799-9658A672B639}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3B99C712-BED0-4738-8592-A84C0282F21A}C:\program files (x86)\videolan\vlc\vlc.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{F0A6CAC8-88FA-428B-BBF2-3B249FF5EA8F}C:\program files (x86)\videolan\vlc\vlc.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CFBF723D-B399-4EEE-97C4-C61BE762983A}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AB66D30E-370A-49AE-A206-42DDD16B7351}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B4756F9B-B40A-4694-B0C1-14D41B2C6521}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{78B85857-E3A7-4FB8-A946-E500E84BE357}" => removed successfully
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ddf2d247-b165-11e9-8f0e-fcaa14227de4} => removed successfully
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
ask: {F42CB072-A96B-4DB5-A58C-15DCB5293903} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.) => Error: No automatic fix found for this entry.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F8CB0B9C-EA8E-4B89-A3E8-B99ECBCF1149}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F8CB0B9C-EA8E-4B89-A3E8-B99ECBCF1149}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA" => not found
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore => moved successfully

=========== EmptyTemp: ==========

BITS transfer queue => 10510336 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 206118799 B
Java, Flash, Steam htmlcache => 345503931 B
Windows/system/drivers => 1414251 B
Edge => 6527035 B
Chrome => 0 B
Firefox => 0 B
Opera => 351524769 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 691086 B
Mýl_a_Páť => 148776415 B

RecycleBin => 0 B
EmptyTemp: => 1021.4 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 19:22:06 ====

Ervd
Návštěvník
Návštěvník
Příspěvky: 177
Registrován: 04 úno 2007 10:47

Re: preventivka

#9 Příspěvek od Ervd »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-11-2019
Ran by Mýl_a_Páť (13-11-2019 22:46:44)
Running from C:\Users\Mýl_a_Páť\Desktop
Windows 10 Home Version 1809 17763.864 (X64) (2018-12-22 10:26:17)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-370975082-3115102142-3364293580-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-370975082-3115102142-3364293580-503 - Limited - Disabled)
Guest (S-1-5-21-370975082-3115102142-3364293580-501 - Limited - Disabled)
Mýl_a_Páť (S-1-5-21-370975082-3115102142-3364293580-1001 - Administrator - Enabled) => C:\Users\Mýl_a_Páť
WDAGUtilityAccount (S-1-5-21-370975082-3115102142-3364293580-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.021.20049 - Adobe Systems Incorporated)
Adobe Flash Player 31 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 31.0.0.108 - Adobe Systems Incorporated)
Aktualizace NVIDIA 38.0.2.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.2.0 - NVIDIA Corporation) Hidden
Apple Mobile Device Support (HKLM\...\{A05FDFEC-4377-49E0-82CB-B6D1386E89DA}) (Version: 11.3.0.9 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.)
Balíček ovladače systému Windows - OLYMPUS IMAGING CORP. Camera Communication Driver Package (09/09/2009 1.0.0.0) (HKLM\...\2C1C2F29FADF39F533CEEE67B90F07A5306A4BDB) (Version: 09/09/2009 1.0.0.0 - OLYMPUS IMAGING CORP.)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
BS.Player FREE (HKLM-x32\...\BSPlayerf) (Version: 2.72.1082 - AB Team, d.o.o.)
Google Earth Pro (HKLM\...\{70A0F34E-564B-4F93-ADD6-3BAEC6E44075}) (Version: 7.3.2.5776 - Google)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.341 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.3 - Google Inc.) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4835 - Intel Corporation)
iTunes (HKLM\...\{565C813A-F1E1-4A1B-91D8-B2112D0D5518}) (Version: 12.7.4.76 - Apple Inc.)
LibreOffice 6.3.1.2 (HKLM\...\{46BF4998-7CC7-43AA-8D4C-D43DEFB24493}) (Version: 6.3.1.2 - The Document Foundation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
MSI Afterburner 4.4.2 (HKLM-x32\...\Afterburner) (Version: 4.4.2 - MSI Co., LTD)
MSI DragonEye (HKLM\...\{7116875E-F251-4C33-AB3F-37DE05B15595}_is1) (Version: 0.0.2.6 - MSI)
MSI Gaming APP (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 6.2.0.45 - MSI)
MSI Kombustor 0.6.2.0 (32-bit) (HKLM-x32\...\{F3D3CC6B-9AD7-4F43-8C69-40D5902FDC5C}}_is1) (Version: - MSI / Geeks3D)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
nCode 11.1 64-bit (C:\Program Files\nCode\nCode 11.1 64-bit) (HKLM\...\nCode 11.1 64-bit) (Version: 11.1.0.0 - HBM United Kingdom Limited)
Nik Collection (HKLM-x32\...\Nik Collection) (Version: 1.2.11 - Google)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.20.1.57 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.1.57 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.38.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.21 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 441.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 441.12 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
OLYMPUS Digital Camera Updater (HKLM-x32\...\{BD107100-E418-4805-B08D-30E098741A95}) (Version: 2.1.3 - Olympus Corporation)
OLYMPUS Viewer 3 (HKLM-x32\...\{CC2205DE-4C99-4FAD-A0AE-A1B5267E60B7}) (Version: 2.3.0 - Olympus Corporation)
Olympus Workspace (HKLM-x32\...\{7FBF5669-B60F-402B-9A08-7F7FF7FBC538}) (Version: 1.0.0 - Olympus Corporation)
OpenSSL 1.1.0h Light (32-bit) (HKLM-x32\...\OpenSSL Light (32-bit)_is1) (Version: - OpenSSL Win32 Installer Team)
Opera Stable 64.0.3417.92 (HKLM-x32\...\Opera 64.0.3417.92) (Version: 64.0.3417.92 - Opera Software)
Ovládací panel NVIDIA 441.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 441.12 - NVIDIA Corporation) Hidden
Podpora aplikací Apple (32bitová) (HKLM-x32\...\{543F829B-4591-4B2F-AF63-6E6E6AE59EB2}) (Version: 6.4 - Apple Inc.)
Podpora aplikací Apple (64bitová) (HKLM\...\{0ECA3BB5-4410-414B-B226-241FF1C12CD0}) (Version: 6.4 - Apple Inc.)
RivaTuner Statistics Server 7.0.2 (HKLM-x32\...\RTSS) (Version: 7.0.2 - Unwinder)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.7.1965 - TeamViewer)
Teta CEWE fotosvet (HKLM-x32\...\Teta CEWE fotosvet) (Version: 6.4.5 - CEWE Stiftung u Co. KGaA)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.12 - Ghisler Software GmbH)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{9CBA860F-7437-4A75-941C-8EF559F2D145}) (Version: 2.52.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.2 - VideoLAN)
Zoner Photo Studio X CS (HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\ZPS X) (Version: 19.1909.2.193 - ZONER software)

Packages:
=========
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-06] (Autodesk Inc.)
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_6.2.6.0_x86__kgqvnymyfvs32 [2019-10-22] (king.com)
Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.151.300.0_x86__kgqvnymyfvs32 [2019-11-01] (king.com)
Disney Magic Kingdoms -> C:\Program Files\WindowsApps\A278AB0D.DisneyMagicKingdoms_4.4.0.5_x86__h6adky7gbf63m [2019-10-16] (Gameloft.)
Instagram -> C:\Program Files\WindowsApps\Facebook.InstagramBeta_41.1788.50991.0_x86__8xx8rvfyw5nnt [2018-12-25] (Instagram)
March of Empires: War of Lords -> C:\Program Files\WindowsApps\A278AB0D.MarchofEmpires_4.4.0.10_x86__h6adky7gbf63m [2019-10-23] (Gameloft.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-02-06] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-02-06] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.33.13094.0_x64__8wekyb3d8bbwe [2019-11-13] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.11052.0_x64__8wekyb3d8bbwe [2019-11-09] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-11] (Microsoft Corporation) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20368.0_x64__8wekyb3d8bbwe [2019-11-05] (Microsoft Corporation) [MS Ad]
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0 [2019-11-09] (Spotify AB) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-10-20] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.RTV1] => C:\WINDOWS\system32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed]

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2017-12-16 17:42 - 2016-06-14 16:35 - 000187392 _____ () [File not signed] C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\D3D11FontDraw.dll
2017-12-16 17:42 - 2016-06-14 16:35 - 000163328 _____ () [File not signed] C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\D3D11FontDraw.dll
2017-12-23 08:51 - 2015-09-01 11:51 - 000236544 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\ailibr.dll
2017-12-23 08:51 - 2015-09-01 11:51 - 000069632 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\anslibr.dll
2017-12-23 08:51 - 2015-09-01 12:14 - 000146432 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\appserverlibr.dll
2017-12-23 08:51 - 2015-09-01 12:15 - 002079744 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\asamlibr.DLL
2017-12-23 08:51 - 2015-09-01 11:52 - 000139264 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\CBLibr.dll
2017-12-23 08:51 - 2015-09-01 11:55 - 000211968 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cgdlibr.dll
2017-12-23 08:51 - 2015-09-01 11:49 - 000156160 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cgflibr.dll
2017-12-23 08:51 - 2015-09-01 11:55 - 000217600 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cgolibr.dll
2017-12-23 08:51 - 2015-09-01 11:55 - 000845312 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cgrlibr.dll
2017-12-23 08:51 - 2015-09-01 11:45 - 000395776 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cpputilr.dll
2017-12-23 08:51 - 2015-09-01 11:57 - 001482752 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\dglibr.dll
2017-12-23 08:51 - 2015-09-01 11:46 - 000017408 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\dmilibr.dll
2017-12-23 08:51 - 2015-09-01 11:54 - 007017984 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\dtlibr.dll
2017-12-23 08:51 - 2015-09-01 11:52 - 002461696 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\FDLibr.dll
2017-12-23 08:51 - 2015-09-01 12:02 - 006024192 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\fedlibr.dll
2017-12-23 08:51 - 2015-09-01 11:51 - 000199168 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\feilibr.dll
2017-12-23 08:51 - 2015-09-01 11:53 - 006523392 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\feimportlibr.dll
2017-12-23 08:51 - 2015-09-01 11:48 - 000413184 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\ferlibr.dll
2017-12-23 08:51 - 2015-09-01 11:47 - 002224640 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\FSLibr.dll
2017-12-23 08:51 - 2015-09-01 12:04 - 003898368 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\FVLibr.dll
2017-12-23 08:51 - 2015-09-01 12:06 - 001424384 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine01r.DLL
2017-12-23 08:51 - 2015-09-01 12:07 - 001577472 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine02r.DLL
2017-12-23 08:51 - 2015-09-01 12:08 - 004773888 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine03r.DLL
2017-12-23 08:51 - 2015-09-01 12:09 - 000937472 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine04r.DLL
2017-12-23 08:51 - 2015-09-01 12:10 - 001269248 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine06r.DLL
2017-12-23 08:51 - 2015-09-01 12:10 - 000411136 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine07r.DLL
2017-12-23 08:51 - 2015-09-01 12:11 - 000595456 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine08r.DLL
2017-12-23 08:51 - 2015-09-01 12:11 - 000338432 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine09r.DLL
2017-12-23 08:51 - 2015-09-01 12:12 - 000752640 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine13r.DLL
2017-12-23 08:51 - 2015-09-01 12:12 - 000614912 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine14r.DLL
2017-12-23 08:51 - 2015-09-01 12:13 - 000407040 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine15r.DLL
2017-12-23 08:51 - 2015-09-01 12:13 - 000146432 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine16r.DLL
2017-12-23 08:51 - 2015-09-01 12:03 - 000607744 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\gutlibr.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000474624 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\h3dreader.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 002172416 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\hdf5.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 000299520 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\hdf5_cpp.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 000099328 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\hdf5_hl.dll
2017-12-23 08:51 - 2015-09-01 11:58 - 000593920 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\iceintlibr.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000029696 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qgif.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000029184 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qico.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000234496 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qjpeg.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000276480 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qmng.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000023040 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qsvg.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000352256 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qtiff.dll
2017-12-23 08:51 - 2015-09-01 11:46 - 000453120 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\IXDLibr.dll
2017-12-23 08:51 - 2015-09-01 11:43 - 000279552 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\libsier.dll
2017-12-23 08:51 - 2015-09-01 11:46 - 000246272 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\maplibr.dll
2017-12-23 08:51 - 2015-09-01 11:48 - 000472064 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\matdblibr.dll
2017-12-23 08:51 - 2015-09-01 11:57 - 000616960 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\materialsr.dll
2017-12-23 08:51 - 2015-09-01 11:44 - 000210432 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\mcxlibr.dll
2017-12-23 08:51 - 2015-09-01 11:45 - 000069632 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\mtlibr.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 005095424 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\nci1.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 012812800 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\nci2.dll
2017-12-23 08:51 - 2015-09-01 11:43 - 000028672 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\ncmpilibr.dll
2017-12-23 08:51 - 2015-09-01 11:45 - 000068608 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\nulibr.dll
2017-12-23 08:51 - 2015-09-01 11:46 - 000148992 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\numsiglibr.dll
2017-12-23 08:51 - 2015-09-01 11:44 - 000147456 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\NXLibr.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 001093120 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\platforms\qwindows.dll
2017-12-23 08:51 - 2015-09-01 12:14 - 000040960 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\ProgramEngine00r.DLL
2017-12-23 08:51 - 2015-09-01 11:45 - 000070144 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\pylibr.dll
2017-12-23 08:51 - 2015-09-01 11:45 - 000009728 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\pylinklibr.dll
2017-12-23 08:51 - 2015-09-01 12:03 - 000571904 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\QCLibr.dll
2017-12-23 08:51 - 2015-09-01 11:42 - 001621504 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\qicstabler.dll
2017-12-23 08:51 - 2015-09-01 11:56 - 001545216 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\qtutilr.dll
2017-12-23 08:51 - 2015-09-01 11:53 - 001019904 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\QXLibr.dll
2017-12-23 08:51 - 2015-09-01 11:44 - 002302464 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\S3Libr.dll
2017-12-23 08:51 - 2015-09-01 11:47 - 000056320 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\sielibr.dll
2017-12-23 08:51 - 2015-09-01 11:49 - 001944576 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\siglibr.dll
2017-12-23 08:51 - 2015-09-01 12:17 - 000211456 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\svlibr.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 000046080 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\szip.dll
2017-12-23 08:52 - 2015-09-01 11:04 - 000410624 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\xerces-depdom_2_8.dll
2017-12-23 08:52 - 2015-09-01 11:42 - 000163840 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\xllibr.dll
2017-12-23 08:52 - 2015-09-01 11:04 - 000078336 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\zlib.dll
2017-12-23 08:51 - 2015-09-01 10:58 - 000152576 _____ (Apache Software Foundation) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\libapr-1.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 002499584 _____ (Apache Software Foundation) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\xerces-c_2_8.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 004882944 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Core.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 005223936 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Gui.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000683008 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Multimedia.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000102400 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5MultimediaWidgets.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 001059328 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Network.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000314880 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5OpenGL.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000198144 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Positioning.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000314368 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5PrintSupport.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 003037696 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Qml.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 002717696 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Quick.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000180224 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Sensors.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000201728 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Sql.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000256512 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Svg.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 023045632 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5WebKit.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000233472 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5WebKitWidgets.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 005275648 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Widgets.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000196096 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Xml.dll
2017-12-16 17:42 - 2015-06-23 16:41 - 000082432 _____ (Fintek) [File not signed] C:\Program Files (x86)\MSI\Gaming APP\Lib\FintekUSBDll.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 001574400 _____ (HighQSoft GmbH) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\athosr.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 000414720 _____ (HighQSoft GmbH) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\odsapicppr.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 001004544 _____ (HighQSoft GmbH) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\odsapir.dll
2017-12-23 08:46 - 2016-10-04 15:51 - 000076800 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000348160 _____ (Microsoft Corporation) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\msvcr71.dll
2017-12-23 08:51 - 2015-09-01 11:48 - 002371584 _____ (nCode International Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\fatlibr.dll
2017-12-23 08:51 - 2015-09-01 11:50 - 004077056 _____ (nCode International Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\fiolibr.dll
2017-12-23 08:51 - 2015-09-01 12:00 - 006931456 _____ (nCode International Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\grlibr.dll
2017-12-23 08:51 - 2015-09-01 11:41 - 003235840 _____ (nCode International Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\utlibr.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 001790464 _____ (omniORB open source project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\omniORB414_vc11_rt.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 000056320 _____ (omniORB open source project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\omnithread34_vc11_rt.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 002770432 _____ (Python Software Foundation) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\python26.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 002699264 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\client\jvm.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000015872 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\hpi.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000126976 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\java.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000018432 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\management.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000077824 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\net.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000005120 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\rmi.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 004378624 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\server\jvm.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000031744 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\verify.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000046592 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\zip.dll
2017-12-23 08:52 - 2009-11-25 10:45 - 000205312 _____ (Tanuki Software, Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\lib\win\wrapper.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 000412160 _____ (The cURL library, hxxp://curl.haxx.se/) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\curlr.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 021529088 _____ (The ICU Project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\icudt53.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 001883136 _____ (The ICU Project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\icuin53.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 001307136 _____ (The ICU Project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\icuuc53.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 001649664 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\LIBEAY32.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 000353280 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\SSLEAY32.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2017-09-29 14:46 - 2017-09-29 14:44 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-370975082-3115102142-3364293580-1001\Control Panel\Desktop\\Wallpaper -> D:\fotky\OLYMPUS Viewer 3\2018_03_10\P3100461.JPG
DNS Servers: 192.168.100.250
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "OV3_Monitor"
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\StartupApproved\Run: => "OV3_Monitor"
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\StartupApproved\Run: => "Zoner Photo Studio Autoupdate"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{E7B21B5B-A115-45BB-BE8A-B332C21B4E66}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{61420EF2-2A9E-4CE2-AAF5-A9CEA93AFF12}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{B9DCEEE7-E5A4-4A54-9621-79DA566C46D2}] => (Allow) C:\Program Files\Zoner\Photo Studio 18\Program32\MediaServer.exe No File
FirewallRules: [{0C4E3313-765A-4397-BABC-8E1786276E3C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{CC8C6F12-FD83-4F27-83F2-3AF38935EE0E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{3E2FAD11-4B6B-4478-A17D-136FEA2677AB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{6A8B018F-A02C-408A-8799-9658A672B639}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{99921221-6EC4-499C-97B5-CEC3A4909C4D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{C308D970-F320-4ECA-A0E2-EB2748C0EE05}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [TCP Query User{3B99C712-BED0-4738-8592-A84C0282F21A}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe No File
FirewallRules: [UDP Query User{F0A6CAC8-88FA-428B-BBF2-3B249FF5EA8F}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe No File
FirewallRules: [{287521F3-D300-482E-9CD5-F94F869027FA}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{CFBF723D-B399-4EEE-97C4-C61BE762983A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{AB66D30E-370A-49AE-A206-42DDD16B7351}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B4756F9B-B40A-4694-B0C1-14D41B2C6521}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{78B85857-E3A7-4FB8-A946-E500E84BE357}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{5D6CDED4-687D-4109-B4DA-5A94D0EA006A}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{57425C52-34E3-4F7B-9377-C3D4A0F295A9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\the witcher 2\Launcher.exe (CD Projekt RED) [File not signed]
FirewallRules: [{48508039-F51B-455D-8184-4850ED841F08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\the witcher 2\Launcher.exe (CD Projekt RED) [File not signed]
FirewallRules: [TCP Query User{EC573B71-62CA-4A2A-984E-C07AF0BD337B}C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe () [File not signed]
FirewallRules: [UDP Query User{C099AA9D-E446-4708-8628-A767BE84434C}C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe () [File not signed]
FirewallRules: [{1F256989-88AF-4BE0-9EAA-7B3F56B8CFF2}] => (Allow) C:\Program Files\Opera\63.0.3368.107\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{6553FC9C-7405-4235-BDCD-FD0D217317DC}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{76E19889-E4DE-4A6B-841C-D5779376BB33}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{6BB6C1C6-EE43-472C-B3F9-46664FCE5D48}] => (Allow) LPort=26789
FirewallRules: [{AAB73BB9-6AFC-45CB-96CE-92569167429B}] => (Allow) C:\Program Files\Opera\64.0.3417.92\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{A93A8F77-129C-4A42-914C-DB29F0788504}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{B73DC982-E35A-43F0-BBDE-F563AFDB27ED}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{C301A96C-6CE8-440B-8EEA-1567386C54E4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{5CB1C09A-40ED-46D1-AF05-FBDA6D56F76D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{1B209C66-4545-4E7C-9459-03D20997865B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{6029024B-C5AF-42A4-BA66-6B709EA53230}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{06F2A581-442C-4B4F-8A65-B96BE6989BFB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{1A4BA29A-8ED5-41CA-A1C7-79A591430384}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{CD520C30-B840-490F-9150-54AF5FA3FD19}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{975680BC-FDF1-4EFF-8F12-14AB0484D64D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F008501E-B5D0-4C2A-9749-54BB19E214C5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{234C56F3-EF8C-473D-A52C-AF6F3FC2A7A0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F2254637-6C46-4415-AD2E-96390744E5E6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{72CAED30-CEE8-4668-A9F1-E14435A92739}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{7E9269DC-41F3-407C-9980-905D871F31DC}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{46DD0EB0-EE76-4814-B076-350B33E4A071}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)

==================== Restore Points =========================

30-10-2019 15:57:55 Naplánovaný kontrolní bod
09-11-2019 09:55:27 Naplánovaný kontrolní bod
13-11-2019 07:18:54 Windows Update

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (11/13/2019 09:42:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 3718

Error: (11/13/2019 09:42:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 3718

Error: (11/13/2019 09:42:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/13/2019 09:42:23 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1828

Error: (11/13/2019 09:42:23 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1828

Error: (11/13/2019 09:42:23 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/13/2019 02:29:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding 25 C.A.8.3.3.6.5.6.6.9.F.D.9.A.9.9.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR DESKTOP-78RC28O-2.local.

Error: (11/13/2019 02:29:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.100.72:5353 23 C.A.8.3.3.6.5.6.6.9.F.D.9.A.9.9.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR DESKTOP-78RC28O.local.


System errors:
=============
Error: (11/13/2019 10:42:20 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-78RC28O)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli DESKTOP-78RC28O\Mýl_a_Páť (SID: S-1-5-21-370975082-3115102142-3364293580-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 10:41:05 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-78RC28O)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli DESKTOP-78RC28O\Mýl_a_Páť (SID: S-1-5-21-370975082-3115102142-3364293580-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 02:31:37 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.SecurityAppBroker
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 02:31:37 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscBrokerManager
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 02:31:37 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscDataProtection
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 02:30:30 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-78RC28O)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli DESKTOP-78RC28O\Mýl_a_Páť (SID: S-1-5-21-370975082-3115102142-3364293580-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 01:22:39 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-78RC28O)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli DESKTOP-78RC28O\Mýl_a_Páť (SID: S-1-5-21-370975082-3115102142-3364293580-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/12/2019 11:21:45 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscBrokerManager
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.


Windows Defender:
===================================
Date: 2019-10-25 00:50:10.151
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {F12E3110-630E-4F3A-BD0D-7A8FF31FBD0E}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-24 23:48:08.363
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {A49D1864-D4A4-4340-9A9A-FCC445D2644A}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-23 20:25:25.776
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {84B63F11-3CCC-4CC7-AE8A-06EE9CC1A20A}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-06 20:06:18.905
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {615DDD4D-1168-421C-97A6-D5C42853F179}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-03 12:01:10.311
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {C27CAC7B-FD51-4141-ABE7-FFC495DFC1E8}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

CodeIntegrity:
===================================

Date: 2019-04-16 19:30:21.427
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.419
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.371
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.363
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.354
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsreg.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.344
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsreg.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:20.944
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:20.924
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.

==================== Memory info ===========================

BIOS: American Megatrends Inc. F13 06/19/2014
Motherboard: Gigabyte Technology Co., Ltd. B85M-D3H
Processor: Intel(R) Core(TM) i5-4590 CPU @ 3.30GHz
Percentage of memory in use: 25%
Total physical RAM: 16248.38 MB
Available physical RAM: 12179.73 MB
Total Virtual: 18680.38 MB
Available Virtual: 12767.6 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:223.03 GB) (Free:35.59 GB) NTFS
Drive d: (Úložiště) (Fixed) (Total:931.51 GB) (Free:479 GB) NTFS

\\?\Volume{45600087-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.54 GB) (Free:0.12 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: 45600087)
Partition 1: (Active) - (Size=549 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=223 GB) - (Type=07 NTFS)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: D4088A27)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118251
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: preventivka

#10 Příspěvek od Rudy »

Smazáno, log by již měl být OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Ervd
Návštěvník
Návštěvník
Příspěvky: 177
Registrován: 04 úno 2007 10:47

Re: preventivka

#11 Příspěvek od Ervd »

Děkuji

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118251
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: preventivka

#12 Příspěvek od Rudy »

Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno