Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o preventivní kontrolu

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Andrew14
Návštěvník
Návštěvník
Příspěvky: 57
Registrován: 14 srp 2007 16:06

Prosím o preventivní kontrolu

#1 Příspěvek od Andrew14 »

Dobrý den,
poprosím Vás o preventivní kontrolu logu. Jediné, co se mi zdá, že je větší odezva v prohlížečích při procházení internetu (rychlostí internetu to není způsobeno).

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 23-02-2020
Ran by Pietro (administrator) on HP (Hewlett-Packard HP 15 Notebook PC) (24-02-2020 11:14:51)
Running from C:\Users\Pietro\Desktop
Loaded Profiles: Pietro (Available Profiles: Pietro)
Platform: Windows 8.1 Connected (Update) (X64) Language: Čeština (Česká republika)
Default browser not detected!
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\Hewlett-Packard\SimplePass\opvapp.exe
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Andrea Electronics -> Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(CyberLink Corp. -> CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\egui.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(FinalWire Kft. -> FinalWire Ltd.) C:\Users\Pietro\Downloads\AIDA64Portable 5.75.3900\App\AIDA64Extreme\aida64.exe
(Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe
(Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe
(Hewlett-Packard Company) [File not signed] C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel Corporation - Software and Firmware Products -> Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel(R) Corporation) [File not signed] C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\WindowsMobile\wmdc.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_6.3.9600.19537_none_fa5691419b168859\TiWorker.exe
(PortableAppZ.blogspot.com) [File not signed] C:\Users\Pietro\Downloads\AIDA64Portable 5.75.3900\AIDA64ExtremePortable.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Seznam.cz, a.s. -> ) C:\Users\Pietro\AppData\Roaming\Seznam.cz\bin\listicka-x64.exe
(Seznam.cz, a.s. -> ) C:\Users\Pietro\AppData\Roaming\Seznam.cz\bin\szndesktop.exe
(Softex Inc.) [File not signed] C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe
(Softex Incorporated -> Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe
(Softex Incorporated -> Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe
(Softex Incorporated -> Hewlett-Packard) C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [7510896 2014-01-14] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [SimplePass] => C:\Program Files\Hewlett-Packard\SimplePass\ClientCore.exe [3962936 2014-03-28] (Softex Incorporated -> Hewlett-Packard)
HKLM\...\Run: [OPBHOBroker] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBroker.exe [415288 2014-03-28] (Softex Incorporated -> Hewlett-Packard)
HKLM\...\Run: [OPBHOBrokerDesktop] => C:\Program Files\Hewlett-Packard\SimplePass\OPBHOBrokerDsktop.exe [415288 2014-03-28] (Softex Incorporated -> Hewlett-Packard)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2803440 2013-12-13] (Synaptics Incorporated -> Synaptics Incorporated)
HKLM\...\Run: [Windows Mobile Device Center] => C:\Windows\WindowsMobile\wmdc.exe [660360 2007-05-31] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [183088 2019-11-29] (ESET, spol. s r.o. -> ESET)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [302904 2020-01-16] (Apple Inc. -> Apple Inc.)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe [1045304 2013-10-08] (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.)
HKLM-x32\...\Run: [seznam-listicka-distribuce] => C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe [1062472 2013-05-16] (Seznam.cz, a.s. -> )
HKU\S-1-5-19\Control Panel\Desktop\\SCRNSAVE.EXE ->
HKU\S-1-5-20\Control Panel\Desktop\\SCRNSAVE.EXE ->
HKU\S-1-5-21-2887967755-598317460-3697102776-1001\...\Run: [cz.seznam.software.szndesktop] => C:\Users\Pietro\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe [109808 2018-03-27] (Seznam.cz, a.s. -> )
HKU\S-1-5-21-2887967755-598317460-3697102776-1001\...\MountPoints2: {26fbc64d-bf77-11e4-8267-1458d0c44917} - "F:\startme.exe"
HKU\S-1-5-21-2887967755-598317460-3697102776-1001\Control Panel\Desktop\\SCRNSAVE.EXE ->
HKU\S-1-5-18\...\Run: [EEDSpeedLauncher] => C:\Windows\system32\eed_ec.dll [3141120 2014-12-22] (Microsoft Windows Hardware Compatibility Publisher -> )
HKU\S-1-5-18\Control Panel\Desktop\\SCRNSAVE.EXE ->
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.116\Installer\chrmstp.exe [2020-02-22] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\57.0.2987.133\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{A6EADE66-0000-0000-484E-7E8A45000000}] -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Esl\AiodLite.dll [2019-06-10] (Adobe Inc. -> Adobe Systems, Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{538C240D-3DEE-4032-AB4C-08A3A6EB0861}] -> C:\Program Files (x86)\CyberLink\YouCam\CLCredProv\x64\CLCredProv.dll [2014-03-07] (CyberLink Corp. -> CyberLink)
HKLM\Software\...\Authentication\Credential Providers: [{F3F1B0FA-4775-41d8-8578-436772D93FB4}] -> C:\Program Files\Hewlett-Packard\SimplePass\OmniPassCredProv.dll [2014-03-28] (Softex Inc..) [File not signed]
HKLM\Software\...\Authentication\Credential Provider Filters: [{F3F1B0FA-4775-41d8-8578-436772D93FB4}] -> C:\Program Files\Hewlett-Packard\SimplePass\OmniPassCredProv.dll [2014-03-28] (Softex Inc..) [File not signed]

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0AC18D56-BC75-49EF-8674-9AB0DFFF0998} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {0D8A891D-890C-4808-84D8-2F436AB14653} - \Microsoft\Windows\Application Experience\AitAgent -> No File <==== ATTENTION
Task: {1274336E-AB06-46B6-A48C-0671C5557CC6} - \Microsoft\Windows\TaskScheduler\Maintenance Configurator -> No File <==== ATTENTION
Task: {1687544D-7247-4F5A-965A-A6E920E55278} - \Microsoft\Windows\TaskScheduler\Manual Maintenance -> No File <==== ATTENTION
Task: {1EFA62E1-3940-4CA7-A00C-DF92EC8F17C1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [542008 2014-01-13] (Hewlett-Packard Company -> Hewlett-Packard Company)
Task: {2D814D45-BF34-438E-AEFB-19F57E370938} - System32\Tasks\Microsoft\Windows Live\SOXE\Extractor Definitions Update Task => {3519154C-227E-47F3-9CC9-12C3F05817F1}
Task: {33E3B476-3886-48B2-BDB5-5508AF45CA07} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {482595C3-6BD1-4C76-9179-C4618FBD1255} - System32\Tasks\Avast TUNEUP Update => C:\Program Files (x86)\AVAST Software\Avast Cleanup\TUNEUpdate.exe
Task: {50947B77-3495-4EA4-82E9-BFF8453C302D} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
Task: {5A5B89DB-86B7-4908-BA35-DBAA45E640AC} - System32\Tasks\CLVDLauncher => C:\Program Files (x86)\CyberLink\Power2Go8\CLVDLauncher.exe [339008 2013-03-12] (CyberLink Corp. -> CyberLink Corp.)
Task: {651A6FC8-2D93-467A-ADAD-8975F61E8FBC} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe
Task: {6E6A8518-ECCA-43AC-BF35-655E07439738} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [542008 2014-01-13] (Hewlett-Packard Company -> Hewlett-Packard Company)
Task: {6F02587F-8A2B-4552-97F6-DEEF229E335B} - \Microsoft\Windows\TaskScheduler\Idle Maintenance -> No File <==== ATTENTION
Task: {75810B99-541F-4808-B8FD-4ADBC987C615} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-06-27] (Google Inc -> Google Inc.)
Task: {842B3C73-D2E4-4436-B119-4342824F13F3} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.)
Task: {8CFEE5CF-A75E-483E-99FA-93B7B2BA6932} - System32\Tasks\YCMServiceAgent => C:\Program Files (x86)\CyberLink\YouCam\YouCamService.exe [267224 2014-03-07] (CyberLink Corp. -> CyberLink Corp.)
Task: {B328C93A-3AD1-4B6C-B442-8919B79ED01B} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [1835112 2020-02-22] (Avast Software s.r.o. -> AVAST Software)
Task: {B484E80F-C422-4C43-8D75-83DEC2451E07} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [603008 2012-11-29] (Hewlett-Packard Company -> Hewlett-Packard Company)
Task: {B7992938-01F1-4F40-A0EC-0D23D2F0F152} - \Microsoft\Windows\TaskScheduler\Regular Maintenance -> No File <==== ATTENTION
Task: {C023B720-9711-4EDB-B0FC-9AFF7750FE62} - System32\Tasks\CLMLSvc_P2G8 => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111576 2013-08-05] (CyberLink Corp. -> CyberLink)
Task: {CFD7C21A-808B-487B-A6EC-8A10E44E8360} - \Microsoft\Windows\SettingSync\BackupTask -> No File <==== ATTENTION
Task: {E7818BCE-C0E7-4B45-9A94-9AAB6AA6AE99} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2015-06-27] (Google Inc -> Google Inc.)
Task: {E7E4DC83-C4FD-4D2C-B4BB-B39CC4FF83C3} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2803440 2013-12-13] (Synaptics Incorporated -> Synaptics Incorporated)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyEnable: [S-1-5-21-2887967755-598317460-3697102776-1001] => Proxy is enabled.
Winsock: Catalog5 07 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 07 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{15A05C14-8703-46CC-AB33-AA29B203B34F}: [DhcpNameServer] 192.168.0.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com?pc=HPNTDFJS
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.bing.com?pc=HPNTDFJS
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=HPNTDFJS
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=HPNTDFJS
HKU\S-1-5-21-2887967755-598317460-3697102776-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://www.seznam.cz/
HKU\S-1-5-21-2887967755-598317460-3697102776-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com?pc=HPNTDFJS
HKU\S-1-5-21-2887967755-598317460-3697102776-1001\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com/ie
SearchScopes: HKLM -> {FEBDB3ED-BBE2-4F8F-9E7B-CC1C626767FB} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {6BC8BC57-2082-46EA-BB88-7C95E445D6BE} URL =
SearchScopes: HKLM-x32 -> {FEBDB3ED-BBE2-4F8F-9E7B-CC1C626767FB} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKU\S-1-5-21-2887967755-598317460-3697102776-1001 -> {0373BAB1-53BC-4FB9-8D66-8AE5C5CF0AA9} URL = hxxp://www.novinky.cz/hledej?w={searchTerms}&s ... arch_12454
SearchScopes: HKU\S-1-5-21-2887967755-598317460-3697102776-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
SearchScopes: HKU\S-1-5-21-2887967755-598317460-3697102776-1001 -> {44CE1C31-8611-4115-B043-DD54D2E25F22} URL = hxxp://encyklopedie.seznam.cz/search?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-2887967755-598317460-3697102776-1001 -> {47EB7B7C-5681-477F-9842-FF625DBF0308} URL = hxxp://www.mapy.cz/?query={searchTerms}&source ... arch_12454
SearchScopes: HKU\S-1-5-21-2887967755-598317460-3697102776-1001 -> {6BC8BC57-2082-46EA-BB88-7C95E445D6BE} URL = hxxp://trovi.com/ResultsExt.aspx?q={searchTerms}&SearchSource=4&ctid=CT3329621&CUI=UN32774874642432316&UM=4
SearchScopes: HKU\S-1-5-21-2887967755-598317460-3697102776-1001 -> {6C3C1041-0F27-406A-8DAB-7A91B5F354E2} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=en_cz&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-2887967755-598317460-3697102776-1001 -> {8203A86C-C30D-44A5-A175-1E5637B48B30} URL = hxxp://www.firmy.cz/?q={searchTerms}&sourceid= ... arch_12454
SearchScopes: HKU\S-1-5-21-2887967755-598317460-3697102776-1001 -> {8DA3BF43-110B-461B-A797-768FDD999FF5} URL = hxxp://tv.seznam.cz/hledej?w={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-2887967755-598317460-3697102776-1001 -> {9A8FCE31-0B5D-4A89-B2BC-8EA3CB2A9054} URL = hxxp://www.zbozi.cz/?q={searchTerms}&r=campmoz ... arch_12454
SearchScopes: HKU\S-1-5-21-2887967755-598317460-3697102776-1001 -> {9C113F47-E11F-4090-BEE3-1C65F259BE5B} URL = hxxp://search.seznam.cz/?q={searchTerms}&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-2887967755-598317460-3697102776-1001 -> {ADDFDDA7-2A36-4CF4-9840-44CFB222F68A} URL = hxxp://slovnik.seznam.cz/?q={searchTerms}&lang=cz_en&sourceid=QuickSearch_12454
SearchScopes: HKU\S-1-5-21-2887967755-598317460-3697102776-1001 -> {FEBDB3ED-BBE2-4F8F-9E7B-CC1C626767FB} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28] (Hewlett-Packard Company -> Hewlett-Packard)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28] (Hewlett-Packard Company -> Hewlett-Packard)
Toolbar: HKLM - BS Player ControlBar B Toolbar - {31264A33-A653-46C4-AF49-1232C59A7DA5} - No File

FireFox:
========
FF DefaultProfile: k5enbt8j.default
FF ProfilePath: C:\Users\Pietro\AppData\Roaming\Mozilla\Firefox\Profiles\k5enbt8j.default [2020-02-24]
FF DownloadDir: C:\Users\Pietro\Desktop
FF Homepage: Mozilla\Firefox\Profiles\k5enbt8j.default -> www.google.com
FF Extension: (Seznam pro Firefox - Esko) - C:\Users\Pietro\AppData\Roaming\Mozilla\Firefox\Profiles\k5enbt8j.default\Extensions\sko-extension@firma.seznam.cz [2018-01-12]
FF Extension: (Seznam pro Firefox - Email) - C:\Users\Pietro\AppData\Roaming\Mozilla\Firefox\Profiles\k5enbt8j.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2017-12-22]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3508.0205 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2013-02-05] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-02-04] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default [2020-02-24]
CHR Notifications: Default -> hxxps://linknotification.com; hxxps://novaplus.nova.cz; hxxps://sashoff.com; hxxps://sledujufilmy.cz; hxxps://www.facebook.com
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.seznam.cz/"
CHR NewTab: Default -> Not-active:"chrome-extension://olfeabkoenfaoljndfecamgilllcpiak/speeddial/html/newTab.html"
CHR Extension: (Prezentace) - C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Dokumenty) - C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Disk Google) - C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-13]
CHR Extension: (Seznam doplněk - Email) - C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2020-02-22]
CHR Extension: (YouTube) - C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-11-13]
CHR Extension: (Vyhledávání Google) - C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-13]
CHR Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2020-02-22]
CHR Extension: (Tabulky) - C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Dokumenty Google offline) - C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-02-22]
CHR Extension: (Avast Online Security) - C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2020-02-22]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-02-22]
CHR Extension: (Seznam doplněk - Esko) - C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2020-02-22]
CHR Extension: (Gmail) - C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-07-24]
CHR Extension: (Chrome Media Router) - C:\Users\Pietro\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-02-23]
CHR HKU\S-1-5-21-2887967755-598317460-3697102776-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig]
CHR HKU\S-1-5-21-2887967755-598317460-3697102776-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx <not found>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx <not found>

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [96056 2020-01-10] (Apple Inc. -> Apple Inc.)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2245488 2019-11-29] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2245488 2019-11-29] (ESET, spol. s r.o. -> ESET)
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2014-01-13] (Hewlett-Packard Company) [File not signed]
R2 HPWMISVC; C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPWMISVC.exe [1039160 2013-10-08] (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\TXE Components\TCS\HeciServer.exe [733696 2013-07-01] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\TXE Components\TCS\SocketHeciServer.exe [822232 2013-07-01] (Intel® Trusted Connect Service -> Intel(R) Corporation)
R2 omniserv; C:\Program Files\Hewlett-Packard\SimplePass\OmniServ.exe [88064 2014-03-28] (Softex Inc.) [File not signed]
R2 RapiMgr; C:\Windows\WindowsMobile\rapimgr.dll [225672 2007-05-31] (Microsoft Corporation -> Microsoft Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [290520 2014-01-08] (Realtek Semiconductor Corp -> Realtek Semiconductor)
R2 WcesComm; C:\Windows\WindowsMobile\wcescomm.dll [443784 2007-05-31] (Microsoft Corporation -> Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AIDA64Driver; C:\Users\Pietro\Downloads\AIDA64Portable 5.75.3900\App\AIDA64Extreme\kerneld.x64 [45728 2017-04-11] (FinalWire Kft. -> )
S3 aswTap; C:\Windows\system32\DRIVERS\aswTap.sys [53904 2017-02-25] (AVAST Software s.r.o. -> The OpenVPN Project)
S3 athr; C:\Windows\system32\DRIVERS\athw8x.sys [3680256 2013-06-18] (Microsoft Windows -> Qualcomm Atheros Communications, Inc.)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Broadcom Corporation -> Windows (R) Win 7 DDK provider)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [149944 2019-11-29] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [15800 2019-10-16] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [189512 2019-11-29] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [116696 2019-11-29] (ESET, spol. s r.o. -> ESET)
R3 GPIO; C:\Windows\System32\drivers\iaiogpioe.sys [31232 2013-11-11] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
R0 MBI; C:\Windows\System32\drivers\MBI.sys [29464 2014-01-23] (Intel(R) Software -> Intel Corporation)
R3 RSP2STOR; C:\Windows\system32\DRIVERS\RtsP2Stor.sys [291544 2014-01-04] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
R3 RTWlanE; C:\Windows\system32\DRIVERS\rtwlane.sys [6393856 2016-12-29] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [29936 2013-12-13] (Synaptics Incorporated -> Synaptics Incorporated)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [31472 2013-12-13] (Synaptics Incorporated -> Synaptics Incorporated)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [164992 2016-07-22] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 TXEIx64; C:\Windows\System32\drivers\TXEIx64.sys [88592 2014-01-15] (Intel Corporation - Client Components Group -> Intel Corporation)
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2016-03-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [31840 2016-03-23] (Hewlett-Packard Company -> HP)
R3 WirelessButtonDriver64; C:\Windows\system32\DRIVERS\WirelessButtonDriver64.sys [31840 2016-03-23] (Hewlett-Packard Company -> HP)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-02-24 11:14 - 2020-02-24 11:16 - 000027503 _____ C:\Users\Pietro\Desktop\FRST.txt
2020-02-24 11:14 - 2020-02-24 11:15 - 000000000 ____D C:\FRST
2020-02-24 11:13 - 2020-02-24 10:30 - 002279424 _____ (Farbar) C:\Users\Pietro\Desktop\FRST64.exe
2020-02-24 10:55 - 2020-02-24 10:55 - 000170202 _____ C:\Users\Pietro\Documents\cc_20200224_105516.reg
2020-02-24 10:55 - 2020-02-24 10:55 - 000018786 _____ C:\Users\Pietro\Documents\cc_20200224_105537.reg
2020-02-24 10:35 - 2020-02-24 10:35 - 000000000 ____D C:\Users\Pietro\Downloads\AIDA64Portable 5.75.3900
2020-02-24 10:31 - 2020-02-24 10:35 - 068238985 _____ C:\Users\Pietro\Downloads\AIDA64Portable 5.75.3900.zip
2020-02-24 10:30 - 2020-02-24 10:30 - 002279424 _____ (Farbar) C:\Users\Pietro\Downloads\FRST64.exe
2020-02-24 10:25 - 2020-02-24 10:26 - 000000000 ____D C:\Users\Pietro\Downloads\ccsetup563
2020-02-24 10:24 - 2020-02-24 10:24 - 022846514 _____ C:\Users\Pietro\Downloads\ccsetup563.zip
2020-02-24 09:54 - 2020-02-24 09:54 - 000000000 ____D C:\ProgramData\HP
2020-02-24 08:44 - 2020-02-24 08:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2020-02-24 08:43 - 2020-02-23 17:56 - 000002072 _____ C:\Users\Pietro\Desktop\ESET Security.lnk
2020-02-24 08:41 - 2020-02-24 08:41 - 000000000 ____D C:\Program Files\Microsoft Silverlight
2020-02-24 08:41 - 2020-02-24 08:41 - 000000000 ____D C:\Program Files (x86)\Microsoft Silverlight
2020-02-24 08:39 - 2020-02-24 08:39 - 000000000 ____D C:\Program Files (x86)\HP
2020-02-24 08:39 - 2014-11-17 21:17 - 000672984 _____ (Microsoft Corporation) C:\Windows\system32\MDMAgent.exe
2020-02-24 08:39 - 2014-11-15 20:05 - 000801584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfplat.dll
2020-02-24 08:39 - 2014-11-15 07:29 - 000962216 _____ (Microsoft Corporation) C:\Windows\system32\mfplat.dll
2020-02-24 08:39 - 2014-11-14 07:57 - 001027584 _____ (Microsoft Corporation) C:\Windows\system32\MFMediaEngine.dll
2020-02-24 08:39 - 2014-11-14 07:54 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2020-02-24 08:39 - 2014-11-14 06:03 - 000885760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MFMediaEngine.dll
2020-02-24 08:39 - 2014-11-08 03:03 - 000733696 _____ (Microsoft Corporation) C:\Windows\system32\SkyDriveTelemetry.dll
2020-02-24 08:39 - 2014-11-08 02:58 - 004837376 _____ (Microsoft Corporation) C:\Windows\system32\SyncEngine.dll
2020-02-24 08:39 - 2014-11-08 02:49 - 001154048 _____ (Microsoft Corporation) C:\Windows\system32\SkyDrive.exe
2020-02-24 08:39 - 2014-11-05 03:12 - 000211968 _____ (Microsoft Corporation) C:\Windows\system32\QSHVHOST.DLL
2020-02-24 08:39 - 2014-11-05 03:12 - 000128000 _____ (Microsoft Corporation) C:\Windows\system32\QSVRMGMT.DLL
2020-02-24 08:39 - 2014-11-05 03:06 - 000514048 _____ (Microsoft Corporation) C:\Windows\system32\DevicePairing.dll
2020-02-24 08:39 - 2014-11-05 02:39 - 000155648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSHVHOST.DLL
2020-02-24 08:39 - 2014-11-05 02:39 - 000094208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\QSVRMGMT.DLL
2020-02-24 08:39 - 2014-11-05 02:33 - 000465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DevicePairing.dll
2020-02-24 08:39 - 2014-11-05 02:14 - 000309760 _____ (Microsoft Corporation) C:\Windows\system32\WSDMon.dll
2020-02-24 08:39 - 2014-11-04 20:33 - 000058176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dam.sys
2020-02-24 08:39 - 2014-10-21 02:59 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\eventcls.dll
2020-02-24 08:39 - 2014-10-21 02:19 - 000015360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\eventcls.dll
2020-02-24 08:39 - 2014-10-21 01:50 - 000074752 _____ (Microsoft Corporation) C:\Windows\system32\vsstrace.dll
2020-02-24 08:39 - 2014-10-21 01:31 - 001574400 _____ (Microsoft Corporation) C:\Windows\system32\vssapi.dll
2020-02-24 08:39 - 2014-10-21 01:31 - 000055296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vsstrace.dll
2020-02-24 08:39 - 2014-10-21 01:20 - 001142272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vssapi.dll
2020-02-24 08:39 - 2014-10-17 05:56 - 000039744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\intelpep.sys
2020-02-24 08:16 - 2020-02-03 20:04 - 000835688 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerApp.exe
2020-02-24 08:16 - 2020-02-03 20:04 - 000179608 _____ (Adobe) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2020-02-24 07:07 - 2019-03-28 10:11 - 000029232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aspnet_counters.dll
2020-02-24 07:07 - 2019-03-28 10:11 - 000017968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcr100_clr0400.dll
2020-02-24 07:07 - 2019-03-28 10:09 - 000032816 _____ (Microsoft Corporation) C:\Windows\system32\aspnet_counters.dll
2020-02-24 07:07 - 2019-03-28 10:09 - 000017968 _____ (Microsoft Corporation) C:\Windows\system32\msvcr100_clr0400.dll
2020-02-24 07:07 - 2019-02-21 03:53 - 000622832 _____ (Microsoft Corporation) C:\Windows\system32\msvcp140_clr0400.dll
2020-02-24 07:07 - 2019-02-21 03:53 - 000433448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp140_clr0400.dll
2020-02-24 07:07 - 2019-02-21 03:53 - 000087296 _____ (Microsoft Corporation) C:\Windows\system32\vcruntime140_clr0400.dll
2020-02-24 07:07 - 2019-02-21 03:53 - 000083768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vcruntime140_clr0400.dll
2020-02-24 07:06 - 2019-02-21 03:53 - 000772176 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase_clr0400.dll
2020-02-24 07:06 - 2019-02-21 03:53 - 000702400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase_clr0400.dll
2020-02-23 21:46 - 2020-02-23 21:46 - 000001766 _____ C:\Users\Public\Desktop\iTunes.lnk
2020-02-23 21:46 - 2020-02-23 21:46 - 000001766 _____ C:\ProgramData\Desktop\iTunes.lnk
2020-02-23 21:46 - 2020-02-23 21:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2020-02-23 21:46 - 2020-02-23 21:46 - 000000000 ____D C:\Program Files\iPod
2020-02-23 21:43 - 2020-02-23 21:46 - 000000000 ____D C:\Program Files\iTunes
2020-02-23 21:35 - 2020-02-23 21:35 - 000000000 ____D C:\Windows\system32\Tasks\Apple
2020-02-23 21:34 - 2020-02-23 21:34 - 000000000 ____D C:\Program Files (x86)\Apple Software Update
2020-02-23 17:56 - 2020-02-23 17:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2020-02-23 17:56 - 2020-02-23 17:56 - 000000000 ____D C:\ProgramData\ESET
2020-02-23 17:56 - 2020-02-23 17:56 - 000000000 ____D C:\Program Files\ESET
2020-02-23 17:50 - 2020-02-23 17:50 - 005504824 _____ (ESET) C:\Users\Pietro\Downloads\eset_internet_security_live_installer.exe
2020-02-22 14:22 - 2019-06-25 03:59 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\poqexec.exe
2020-02-22 14:22 - 2019-06-25 03:24 - 000129536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\poqexec.exe
2020-02-22 14:20 - 2020-02-05 06:21 - 004168192 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2020-02-22 14:20 - 2020-01-28 09:19 - 007364048 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2020-02-22 14:20 - 2020-01-20 20:32 - 001115136 _____ (Microsoft Corporation) C:\Windows\system32\termsrv.dll
2020-02-22 14:20 - 2020-01-20 19:46 - 000365568 _____ (Microsoft Corporation) C:\Windows\system32\rdpclip.exe
2020-02-22 14:20 - 2020-01-20 19:42 - 007038464 _____ (Microsoft Corporation) C:\Windows\system32\mstscax.dll
2020-02-22 14:20 - 2020-01-20 19:41 - 003826176 _____ (Microsoft Corporation) C:\Windows\system32\rdpcore.dll
2020-02-22 14:20 - 2020-01-20 19:41 - 003551232 _____ (Microsoft Corporation) C:\Windows\system32\rdpcorets.dll
2020-02-22 14:20 - 2020-01-20 19:38 - 006218752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mstscax.dll
2020-02-22 14:20 - 2020-01-20 19:36 - 003278336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpcore.dll
2020-02-22 14:20 - 2020-01-16 18:46 - 025754624 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2020-02-22 14:20 - 2020-01-16 17:11 - 002910720 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2020-02-22 14:20 - 2020-01-16 17:09 - 000580096 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2020-02-22 14:20 - 2020-01-16 17:08 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2020-02-22 14:20 - 2020-01-16 16:59 - 005500416 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2020-02-22 14:20 - 2020-01-16 16:58 - 000790016 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2020-02-22 14:20 - 2020-01-16 16:56 - 020290048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2020-02-22 14:20 - 2020-01-16 16:50 - 000445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2020-02-22 14:20 - 2020-01-16 16:40 - 000496640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2020-02-22 14:20 - 2020-01-16 16:38 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2020-02-22 14:20 - 2020-01-16 16:36 - 002304000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2020-02-22 14:20 - 2020-01-16 16:36 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2020-02-22 14:20 - 2020-01-16 16:35 - 000145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2020-02-22 14:20 - 2020-01-16 16:34 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2020-02-22 14:20 - 2020-01-16 16:30 - 001033216 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2020-02-22 14:20 - 2020-01-16 16:30 - 000660992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2020-02-22 14:20 - 2020-01-16 16:24 - 000324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2020-02-22 14:20 - 2020-01-16 16:24 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2020-02-22 14:20 - 2020-01-16 16:22 - 000809472 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2020-02-22 14:20 - 2020-01-16 16:22 - 000728064 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2020-02-22 14:20 - 2020-01-16 16:20 - 015468544 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2020-02-22 14:20 - 2020-01-16 16:20 - 002132992 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2020-02-22 14:20 - 2020-01-16 16:15 - 000963072 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2020-02-22 14:20 - 2020-01-16 16:12 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2020-02-22 14:20 - 2020-01-16 16:12 - 000128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2020-02-22 14:20 - 2020-01-16 16:09 - 000880640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2020-02-22 14:20 - 2020-01-16 16:08 - 004859392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2020-02-22 14:20 - 2020-01-16 16:06 - 004112384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2020-02-22 14:20 - 2020-01-16 16:05 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2020-02-22 14:20 - 2020-01-16 16:04 - 000696320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2020-02-22 14:20 - 2020-01-16 16:03 - 002058752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2020-02-22 14:20 - 2020-01-16 16:00 - 013854208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2020-02-22 14:20 - 2020-01-16 15:57 - 001567232 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2020-02-22 14:20 - 2020-01-16 15:46 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2020-02-22 14:20 - 2020-01-16 15:45 - 004387328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2020-02-22 14:20 - 2020-01-16 15:42 - 001332224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2020-02-22 14:20 - 2020-01-16 15:40 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2020-02-22 14:20 - 2020-01-11 20:07 - 001546488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2020-02-22 14:20 - 2020-01-11 20:05 - 001541896 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2020-02-22 14:20 - 2020-01-11 17:44 - 001377280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2020-02-22 14:20 - 2020-01-10 00:20 - 000337408 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2020-02-22 14:20 - 2020-01-10 00:18 - 000468992 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2020-02-22 14:20 - 2020-01-10 00:18 - 000248832 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2020-02-22 14:20 - 2020-01-10 00:11 - 000774144 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2020-02-22 14:20 - 2020-01-10 00:02 - 003631616 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2020-02-22 14:20 - 2020-01-09 23:36 - 000905728 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2020-02-22 14:20 - 2020-01-09 23:35 - 002551808 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2020-02-22 14:20 - 2020-01-09 23:22 - 000272896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2020-02-22 14:20 - 2020-01-09 23:21 - 000391680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2020-02-22 14:20 - 2020-01-09 23:17 - 000699392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2020-02-22 14:20 - 2020-01-09 23:13 - 002750464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2020-02-22 14:20 - 2020-01-09 22:55 - 001920512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2020-02-22 14:20 - 2020-01-09 22:54 - 000711168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2020-02-22 14:20 - 2020-01-08 19:29 - 003326464 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2020-02-22 14:20 - 2020-01-08 18:40 - 003622912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2020-02-22 14:20 - 2019-12-20 01:16 - 000537608 _____ (Microsoft Corporation) C:\Windows\system32\wer.dll
2020-02-22 14:20 - 2019-12-20 01:12 - 000451008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wer.dll
2020-02-22 14:20 - 2019-12-12 08:01 - 000750080 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2020-02-22 14:20 - 2019-12-12 07:43 - 000504832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2020-02-22 14:20 - 2019-12-07 02:09 - 000427824 _____ (Microsoft Corporation) C:\Windows\system32\tsmf.dll
2020-02-22 14:20 - 2019-12-07 00:39 - 000367936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tsmf.dll
2020-02-22 14:20 - 2019-11-28 11:26 - 001368072 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2020-02-22 14:20 - 2019-11-28 05:03 - 001085440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2020-02-22 14:20 - 2019-11-05 01:03 - 000611432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleaut32.dll
2020-02-22 14:20 - 2019-10-28 03:40 - 000098296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\userenv.dll
2020-02-22 14:20 - 2019-10-24 03:53 - 000381952 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2020-02-22 14:20 - 2019-10-24 03:32 - 000333312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2020-02-22 14:20 - 2019-10-15 10:03 - 001311768 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2020-02-22 14:20 - 2019-10-15 04:24 - 000129024 _____ (Microsoft Corporation) C:\Windows\splwow64.exe
2020-02-22 14:20 - 2019-10-15 04:08 - 001040384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2020-02-22 14:20 - 2019-10-15 03:56 - 001994240 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2020-02-22 14:20 - 2019-10-15 03:47 - 001384960 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2020-02-22 14:20 - 2019-10-15 03:28 - 001560064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2020-02-22 14:20 - 2019-10-15 03:27 - 000747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2020-02-22 14:20 - 2019-10-15 03:17 - 000827392 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2020-02-22 14:20 - 2019-10-11 05:53 - 000430840 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2020-02-22 14:20 - 2019-10-11 04:56 - 000320248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2020-02-22 14:20 - 2019-10-11 03:02 - 000840704 _____ (Microsoft Corporation) C:\Windows\system32\netlogon.dll
2020-02-22 14:20 - 2019-10-11 02:44 - 000697344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\netlogon.dll
2020-02-22 14:20 - 2019-10-10 23:35 - 000374000 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2020-02-22 14:20 - 2019-10-10 23:32 - 000316144 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2020-02-22 14:20 - 2019-09-07 20:38 - 002535968 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2020-02-22 14:20 - 2019-09-07 18:13 - 001901904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2020-02-22 14:20 - 2019-09-07 17:17 - 000086528 _____ (Microsoft Corporation) C:\Windows\system32\wercplsupport.dll
2020-02-22 14:20 - 2019-09-06 17:32 - 000401920 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2020-02-22 14:20 - 2019-08-29 06:11 - 001385912 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2020-02-22 14:20 - 2019-08-29 02:43 - 001125312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2020-02-22 14:20 - 2019-08-27 04:17 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2020-02-22 14:20 - 2019-08-22 14:31 - 000435712 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2020-02-22 14:20 - 2019-08-22 14:31 - 000358400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2020-02-22 14:20 - 2019-07-11 04:35 - 000861184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2020-02-22 14:20 - 2019-07-11 03:54 - 000806912 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2020-02-22 14:20 - 2019-07-10 03:48 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2020-02-22 14:20 - 2019-07-06 16:58 - 001101824 _____ (Microsoft Corporation) C:\Windows\system32\rdvidcrl.dll
2020-02-22 14:20 - 2019-07-06 16:43 - 000856064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvidcrl.dll
2020-02-22 14:20 - 2019-06-15 16:22 - 000910848 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2020-02-22 14:20 - 2019-05-25 03:30 - 000500464 _____ (Microsoft Corporation) C:\Windows\system32\AudioSes.dll
2020-02-22 14:20 - 2019-05-25 03:30 - 000272184 _____ (Microsoft Corporation) C:\Windows\system32\audiodg.exe
2020-02-22 14:20 - 2019-05-25 02:56 - 000370872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AudioSes.dll
2020-02-22 14:20 - 2019-05-06 02:41 - 001197056 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Globalization.dll
2020-02-22 14:20 - 2019-04-07 01:57 - 001214720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2020-02-22 14:20 - 2019-04-06 19:39 - 002172832 _____ (Microsoft Corporation) C:\Windows\system32\combase.dll
2020-02-22 14:20 - 2019-04-06 19:39 - 001662512 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2020-02-22 14:20 - 2019-04-05 00:58 - 000863232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Globalization.dll
2020-02-22 14:20 - 2019-04-04 23:15 - 000513416 _____ C:\Windows\SysWOW64\locale.nls
2020-02-22 14:20 - 2019-04-04 23:15 - 000513416 _____ C:\Windows\system32\locale.nls
2020-02-22 14:20 - 2019-03-09 17:28 - 002348544 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2020-02-22 14:20 - 2019-03-09 17:19 - 001550848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2020-02-22 14:20 - 2019-03-06 07:26 - 000032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2020-02-22 14:20 - 2019-02-26 07:25 - 002882048 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2020-02-22 14:20 - 2019-02-26 07:20 - 001049600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2020-02-22 14:20 - 2019-02-21 18:35 - 000684032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2020-02-22 14:20 - 2019-02-21 18:34 - 000416256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2020-02-22 14:20 - 2019-02-09 18:46 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2020-02-22 14:20 - 2019-01-05 18:46 - 000243200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2020-02-22 14:19 - 2020-01-28 09:06 - 001737504 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2020-02-22 14:19 - 2020-01-28 09:06 - 001677024 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2020-02-22 14:19 - 2020-01-28 09:06 - 001537768 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2020-02-22 14:19 - 2020-01-28 09:06 - 001500848 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2020-02-22 14:19 - 2020-01-28 09:06 - 001371256 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2020-02-22 14:19 - 2020-01-28 07:59 - 000285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2020-02-22 14:19 - 2020-01-28 07:47 - 001501912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2020-02-22 14:19 - 2020-01-28 06:55 - 000229888 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2020-02-22 14:19 - 2020-01-20 22:48 - 000376568 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2020-02-22 14:19 - 2020-01-16 17:03 - 001113848 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2020-02-22 14:19 - 2020-01-16 16:21 - 001441280 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2020-02-22 14:19 - 2020-01-16 15:59 - 000780800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2020-02-22 14:19 - 2020-01-15 23:21 - 001165672 _____ (Microsoft Corporation) C:\Windows\system32\mfasfsrcsnk.dll
2020-02-22 14:19 - 2020-01-15 23:18 - 000959248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfasfsrcsnk.dll
2020-02-22 14:19 - 2020-01-11 17:57 - 000517632 _____ (Microsoft Corporation) C:\Windows\system32\wimserv.exe
2020-02-22 14:19 - 2020-01-11 17:49 - 000672768 _____ (Microsoft Corporation) C:\Windows\system32\wimgapi.dll
2020-02-22 14:19 - 2020-01-11 17:35 - 000561152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wimgapi.dll
2020-02-22 14:19 - 2020-01-10 00:00 - 001217536 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2020-02-22 14:19 - 2020-01-08 18:28 - 002779648 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2020-02-22 14:19 - 2020-01-08 17:57 - 002464256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2020-02-22 14:19 - 2020-01-03 08:39 - 000642488 _____ (Microsoft Corporation) C:\Windows\system32\twinapi.appcore.dll
2020-02-22 14:19 - 2020-01-03 07:55 - 000493944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinapi.appcore.dll
2020-02-22 14:19 - 2020-01-03 05:02 - 000362496 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2020-02-22 14:19 - 2019-12-20 01:17 - 000139912 _____ (Microsoft Corporation) C:\Windows\system32\wermgr.exe
2020-02-22 14:19 - 2019-12-20 01:16 - 000466816 _____ (Microsoft Corporation) C:\Windows\system32\WerFault.exe
2020-02-22 14:19 - 2019-12-20 01:16 - 000415224 _____ (Microsoft Corporation) C:\Windows\system32\Faultrep.dll
2020-02-22 14:19 - 2019-12-20 01:12 - 000414296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFault.exe
2020-02-22 14:19 - 2019-12-20 01:12 - 000374072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Faultrep.dll
2020-02-22 14:19 - 2019-12-20 01:12 - 000136944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wermgr.exe
2020-02-22 14:19 - 2019-12-17 02:19 - 001191936 _____ (Microsoft Corporation) C:\Windows\system32\uxtheme.dll
2020-02-22 14:19 - 2019-12-17 00:44 - 000949760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxtheme.dll
2020-02-22 14:19 - 2019-12-13 22:32 - 000121856 _____ (Microsoft Corporation) C:\Windows\system32\cryptcatsvc.dll
2020-02-22 14:19 - 2019-12-13 19:35 - 001317376 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Streaming.dll
2020-02-22 14:19 - 2019-12-13 19:28 - 000289792 _____ (Microsoft Corporation) C:\Windows\system32\PlayToDevice.dll
2020-02-22 14:19 - 2019-12-13 18:49 - 001103360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Streaming.dll
2020-02-22 14:19 - 2019-12-12 08:10 - 001756672 _____ (Microsoft Corporation) C:\Windows\system32\GdiPlus.dll
2020-02-22 14:19 - 2019-12-12 07:49 - 001492992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GdiPlus.dll
2020-02-22 14:19 - 2019-12-07 21:08 - 000990160 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2020-02-22 14:19 - 2019-12-05 15:55 - 000679424 _____ (Microsoft Corporation) C:\Windows\system32\wiaaut.dll
2020-02-22 14:19 - 2019-12-05 15:55 - 000671232 _____ (Microsoft Corporation) C:\Windows\system32\wiaservc.dll
2020-02-22 14:19 - 2019-12-05 15:55 - 000322560 _____ (Microsoft Corporation) C:\Windows\system32\sti.dll
2020-02-22 14:19 - 2019-12-05 15:55 - 000141312 _____ (Microsoft Corporation) C:\Windows\system32\sti_ci.dll
2020-02-22 14:19 - 2019-12-05 15:53 - 000580096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiaaut.dll
2020-02-22 14:19 - 2019-12-05 15:53 - 000236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sti.dll
2020-02-22 14:19 - 2019-11-28 06:20 - 000432128 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2020-02-22 14:19 - 2019-11-13 06:54 - 000148992 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2020-02-22 14:19 - 2019-11-13 06:54 - 000096768 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2020-02-22 14:19 - 2019-11-13 06:52 - 000113664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2020-02-22 14:19 - 2019-11-13 06:52 - 000078336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2020-02-22 14:19 - 2019-11-11 20:37 - 000881152 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelinesvc.exe
2020-02-22 14:19 - 2019-11-09 09:49 - 000409728 _____ (Microsoft Corporation) C:\Windows\system32\services.exe
2020-02-22 14:19 - 2019-11-05 05:21 - 000162392 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2020-02-22 14:19 - 2019-11-05 01:06 - 000805376 _____ (Microsoft Corporation) C:\Windows\system32\oleaut32.dll
2020-02-22 14:19 - 2019-10-28 04:20 - 000121040 _____ (Microsoft Corporation) C:\Windows\system32\userenv.dll
2020-02-22 14:19 - 2019-10-27 00:17 - 001717760 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2020-02-22 14:19 - 2019-10-15 06:55 - 001308256 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2020-02-22 14:19 - 2019-10-15 06:54 - 000355576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msrpc.sys
2020-02-22 14:19 - 2019-10-11 16:17 - 000458752 _____ (Microsoft Corporation) C:\Windows\system32\upnphost.dll
2020-02-22 14:19 - 2019-10-11 15:59 - 000332288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnphost.dll
2020-02-22 14:19 - 2019-10-11 02:28 - 000605184 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2020-02-22 14:19 - 2019-10-11 02:23 - 000565760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2020-02-22 14:19 - 2019-10-10 17:20 - 000044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2020-02-22 14:19 - 2019-10-10 16:50 - 000035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2020-02-22 14:19 - 2019-10-09 20:38 - 000470256 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2020-02-22 14:19 - 2019-10-09 14:35 - 000111616 _____ (Microsoft Corporation) C:\Windows\system32\AxInstSv.dll
2020-02-22 14:19 - 2019-10-06 03:57 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2020-02-22 14:19 - 2019-10-04 14:35 - 000929280 _____ (Microsoft Corporation) C:\Windows\system32\iphlpsvc.dll
2020-02-22 14:19 - 2019-10-04 14:18 - 001312256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msjet40.dll
2020-02-22 14:19 - 2019-09-25 05:18 - 002863104 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2020-02-22 14:19 - 2019-09-25 05:18 - 000802816 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2020-02-22 14:19 - 2019-09-25 05:18 - 000738816 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2020-02-22 14:19 - 2019-09-25 05:18 - 000634368 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2020-02-22 14:19 - 2019-09-25 05:18 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2020-02-22 14:19 - 2019-09-25 05:18 - 000456704 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2020-02-22 14:19 - 2019-09-25 05:18 - 000257024 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2020-02-22 14:19 - 2019-09-19 07:21 - 000098304 _____ (Microsoft Corporation) C:\Windows\system32\setupcl.exe
2020-02-22 14:19 - 2019-09-19 06:59 - 000246784 _____ (Microsoft Corporation) C:\Windows\system32\unattend.dll
2020-02-22 14:19 - 2019-09-19 06:26 - 000848896 _____ (Microsoft Corporation) C:\Windows\system32\samsrv.dll
2020-02-22 14:19 - 2019-09-19 06:24 - 000083456 _____ (Microsoft Corporation) C:\Windows\system32\umpo.dll
2020-02-22 14:19 - 2019-09-19 06:20 - 000333312 _____ (Microsoft Corporation) C:\Windows\system32\winsku.dll
2020-02-22 14:19 - 2019-09-19 06:16 - 000712192 _____ (Microsoft Corporation) C:\Windows\system32\DismApi.dll
2020-02-22 14:19 - 2019-09-19 04:26 - 000469504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DismApi.dll
2020-02-22 14:19 - 2019-09-19 04:26 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winsku.dll
2020-02-22 14:19 - 2019-09-19 04:10 - 000315904 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2020-02-22 14:19 - 2019-09-15 05:53 - 000532568 _____ (Microsoft Corporation) C:\Windows\system32\ci.dll
2020-02-22 14:19 - 2019-09-07 21:24 - 000038408 _____ (Microsoft Corporation) C:\Windows\system32\WerFaultSecure.exe
2020-02-22 14:19 - 2019-09-07 20:37 - 000157432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wof.sys
2020-02-22 14:19 - 2019-09-07 18:16 - 000033512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WerFaultSecure.exe
2020-02-22 14:19 - 2019-09-07 17:13 - 000176640 _____ (Microsoft Corporation) C:\Windows\system32\werui.dll
2020-02-22 14:19 - 2019-09-07 16:50 - 001254912 _____ (Microsoft Corporation) C:\Windows\system32\werconcpl.dll
2020-02-22 14:19 - 2019-09-07 16:43 - 000160256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\werui.dll
2020-02-22 14:19 - 2019-09-07 16:18 - 015441408 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2020-02-22 14:19 - 2019-09-07 16:09 - 013321728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2020-02-22 14:19 - 2019-09-07 02:32 - 000567048 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2020-02-22 14:19 - 2019-09-06 17:33 - 000403456 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2020-02-22 14:19 - 2019-09-06 14:17 - 000353792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2020-02-22 14:19 - 2019-09-06 14:17 - 000249856 _____ (Gracenote, Inc.) C:\Windows\SysWOW64\gnsdk_fp.dll
2020-02-22 14:19 - 2019-09-06 14:17 - 000241152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msltus40.dll
2020-02-22 14:19 - 2019-08-13 18:15 - 000121288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tm.sys
2020-02-22 14:19 - 2019-08-12 20:02 - 000117760 _____ (Microsoft Corporation) C:\Windows\system32\shsetup.dll
2020-02-22 14:19 - 2019-08-12 19:16 - 000096256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shsetup.dll
2020-02-22 14:19 - 2019-08-10 14:20 - 000475648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxbde40.dll
2020-02-22 14:19 - 2019-08-10 14:20 - 000313344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd2x40.dll
2020-02-22 14:19 - 2019-08-09 18:48 - 000166912 _____ (Microsoft Corporation) C:\Windows\system32\NcaSvc.dll
2020-02-22 14:19 - 2019-08-06 17:41 - 000403968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\HdAudio.sys
2020-02-22 14:19 - 2019-07-31 14:31 - 000571392 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2020-02-22 14:19 - 2019-07-16 03:30 - 001136760 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2020-02-22 14:19 - 2019-07-11 07:02 - 002446072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2020-02-22 14:19 - 2019-07-11 05:02 - 000195072 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdpdr.sys
2020-02-22 14:19 - 2019-07-11 04:58 - 000360448 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2020-02-22 14:19 - 2019-07-11 03:58 - 000160256 _____ (Microsoft Corporation) C:\Windows\system32\MicrosoftAccountTokenProvider.dll
2020-02-22 14:19 - 2019-07-11 03:52 - 000434176 _____ (Microsoft Corporation) C:\Windows\system32\P2PGraph.dll
2020-02-22 14:19 - 2019-07-11 03:49 - 000375296 _____ (Microsoft Corporation) C:\Windows\system32\wcmsvc.dll
2020-02-22 14:19 - 2019-07-11 03:46 - 000391168 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2020-02-22 14:19 - 2019-07-11 03:46 - 000249344 _____ (Microsoft Corporation) C:\Windows\system32\ssdpsrv.dll
2020-02-22 14:19 - 2019-07-11 03:44 - 000117760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MicrosoftAccountTokenProvider.dll
2020-02-22 14:19 - 2019-07-11 03:43 - 000380416 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
2020-02-22 14:19 - 2019-07-11 03:41 - 000373248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2PGraph.dll
2020-02-22 14:19 - 2019-07-11 03:32 - 000177664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2P.dll
2020-02-22 14:19 - 2019-07-11 01:43 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2020-02-22 14:19 - 2019-07-09 18:13 - 000364032 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore.dll
2020-02-22 14:19 - 2019-07-09 17:58 - 000292352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore.dll
2020-02-22 14:19 - 2019-07-09 17:58 - 000228864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcore6.dll
2020-02-22 14:19 - 2019-07-05 01:10 - 000108392 _____ (Microsoft Corporation) C:\Windows\system32\ncryptsslp.dll
2020-02-22 14:19 - 2019-07-05 01:07 - 000092040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncryptsslp.dll
2020-02-22 14:19 - 2019-06-29 19:07 - 000230752 _____ (Microsoft Corporation) C:\Windows\system32\xmllite.dll
2020-02-22 14:19 - 2019-06-29 18:50 - 000186024 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xmllite.dll
2020-02-22 14:19 - 2019-06-25 02:36 - 001549824 _____ (Microsoft Corporation) C:\Windows\system32\wlansvc.dll
2020-02-22 14:19 - 2019-06-18 04:13 - 000166912 _____ (Microsoft Corporation) C:\Windows\system32\AppxAllUserStore.dll
2020-02-22 14:19 - 2019-06-18 04:06 - 000269312 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentClient.dll
2020-02-22 14:19 - 2019-06-18 03:55 - 000214528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppXDeploymentClient.dll
2020-02-22 14:19 - 2019-06-18 03:42 - 001349120 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2020-02-22 14:19 - 2019-06-18 03:33 - 000956416 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.dll
2020-02-22 14:19 - 2019-06-11 14:37 - 000293888 _____ (Microsoft Corporation) C:\Windows\system32\Dism.exe
2020-02-22 14:19 - 2019-06-11 14:35 - 000215040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Dism.exe
2020-02-22 14:19 - 2019-05-31 17:55 - 001265152 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2020-02-22 14:19 - 2019-05-31 17:54 - 000504832 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2020-02-22 14:19 - 2019-05-31 17:53 - 000394240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll
2020-02-22 14:19 - 2019-05-25 03:36 - 022373096 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2020-02-22 14:19 - 2019-05-25 03:32 - 002013432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2020-02-22 14:19 - 2019-05-25 03:30 - 000394568 _____ (Microsoft Corporation) C:\Windows\system32\AUDIOKSE.dll
2020-02-22 14:19 - 2019-05-25 02:59 - 019790160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2020-02-22 14:19 - 2019-05-25 02:56 - 000344984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AUDIOKSE.dll
2020-02-22 14:19 - 2019-05-25 01:19 - 000551152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\vhdmp.sys
2020-02-22 14:19 - 2019-05-25 01:17 - 000230400 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2020-02-22 14:19 - 2019-05-17 05:47 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\mf3216.dll
2020-02-22 14:19 - 2019-05-17 05:07 - 000046080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mf3216.dll
2020-02-22 14:19 - 2019-05-15 21:33 - 000333552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Classpnp.sys
2020-02-22 14:19 - 2019-05-14 15:18 - 003718144 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2020-02-22 14:19 - 2019-04-12 14:20 - 000994384 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2020-02-22 14:19 - 2019-04-12 14:20 - 000914584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2020-02-22 14:19 - 2019-04-08 22:40 - 000136432 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wfplwfs.sys
2020-02-22 14:19 - 2019-04-06 21:31 - 000376320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mspbde40.dll
2020-02-22 14:19 - 2019-04-05 23:47 - 000096208 _____ (Microsoft Corporation) C:\Windows\system32\cryptdll.dll
2020-02-22 14:19 - 2019-04-05 23:46 - 000177608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2020-02-22 14:19 - 2019-04-05 23:44 - 000073248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptdll.dll
2020-02-22 14:19 - 2019-04-04 19:01 - 000469504 _____ (Microsoft Corporation) C:\Windows\system32\nltest.exe
2020-02-22 14:19 - 2019-04-04 17:48 - 000713216 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2020-02-22 14:19 - 2019-04-04 17:15 - 000562176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2020-02-22 14:19 - 2019-03-30 21:57 - 000126464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys
2020-02-22 14:19 - 2019-03-26 17:11 - 007079936 _____ (Microsoft Corporation) C:\Windows\system32\glcndFilter.dll
2020-02-22 14:19 - 2019-03-26 16:57 - 005276160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\glcndFilter.dll
2020-02-22 14:19 - 2019-03-26 16:40 - 007798272 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2020-02-22 14:19 - 2019-03-26 16:35 - 005270528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2020-02-22 14:19 - 2019-03-26 07:00 - 000035840 _____ (Microsoft Corporation) C:\Windows\system32\sxssrv.dll
2020-02-22 14:19 - 2019-02-26 08:31 - 000417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2020-02-22 14:19 - 2019-02-21 18:36 - 000059392 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\npfs.sys
2020-02-22 14:19 - 2019-02-21 18:34 - 000281088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbt.sys
2020-02-22 14:19 - 2019-02-09 20:36 - 000218056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2020-02-22 14:19 - 2019-02-09 19:53 - 000923384 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\refs.sys
2020-02-22 14:19 - 2019-02-09 18:49 - 000316416 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\udfs.sys
2020-02-22 14:19 - 2019-02-09 18:49 - 000200704 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys
2020-02-22 14:19 - 2019-02-09 18:03 - 000477696 _____ (Microsoft Corporation) C:\Windows\system32\puiobj.dll
2020-02-22 14:19 - 2019-02-09 17:45 - 000367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\puiobj.dll
2020-02-22 14:19 - 2019-02-09 17:18 - 000514048 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2020-02-22 14:19 - 2019-02-09 17:16 - 000399360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2020-02-22 14:19 - 2019-02-09 17:15 - 001095680 _____ (Microsoft Corporation) C:\Windows\system32\localspl.dll
2020-02-22 14:19 - 2019-02-07 20:38 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\bridge.sys
2020-02-22 14:19 - 2019-02-06 20:32 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\msfs.sys
2020-02-22 14:19 - 2019-01-09 05:20 - 000048128 _____ (Microsoft Corporation) C:\Windows\system32\hcproviders.dll
2020-02-22 14:19 - 2019-01-09 05:06 - 000894976 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenter.dll
2020-02-22 14:19 - 2019-01-09 04:52 - 000038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hcproviders.dll
2020-02-22 14:19 - 2019-01-09 04:45 - 000530432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenterCPL.dll
2020-02-22 14:19 - 2019-01-09 04:34 - 000134656 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
2020-02-22 14:19 - 2019-01-09 04:21 - 000102400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.NetworkOperators.HotspotAuthentication.dll
2020-02-22 14:19 - 2019-01-08 07:02 - 001764504 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2020-02-22 14:19 - 2019-01-08 06:12 - 001489704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2020-02-22 14:19 - 2018-12-27 18:57 - 000805376 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2020-02-22 14:19 - 2018-12-27 17:30 - 000626176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2020-02-22 14:19 - 2018-12-02 11:08 - 000179712 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
2020-02-22 14:19 - 2018-12-01 17:44 - 000151040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll
2020-02-22 14:18 - 2020-01-16 16:37 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2020-02-22 14:18 - 2020-01-16 16:14 - 000052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2020-02-22 14:18 - 2020-01-16 16:13 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\keyiso.dll
2020-02-22 14:18 - 2020-01-16 15:58 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\keyiso.dll
2020-02-22 14:18 - 2020-01-13 16:29 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\Websocket.dll
2020-02-22 14:18 - 2020-01-13 16:13 - 000035840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Websocket.dll
2020-02-22 14:18 - 2020-01-13 16:12 - 000172032 _____ (Microsoft Corporation) C:\Windows\system32\fdWSD.dll
2020-02-22 14:18 - 2020-01-13 16:02 - 000145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWSD.dll
2020-02-22 14:18 - 2020-01-10 18:28 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtutils.dll
2020-02-22 14:18 - 2020-01-10 16:01 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\rtutils.dll
2020-02-22 14:18 - 2020-01-10 00:31 - 000313856 _____ (Microsoft Corporation) C:\Windows\system32\tapisrv.dll
2020-02-22 14:18 - 2020-01-09 23:30 - 000254976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tapisrv.dll
2020-02-22 14:18 - 2019-12-20 16:03 - 000452608 _____ (Microsoft Corporation) C:\Windows\system32\ipnathlp.dll
2020-02-22 14:18 - 2019-12-18 20:52 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\wersvc.dll
2020-02-22 14:18 - 2019-12-17 02:08 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\UXInit.dll
2020-02-22 14:18 - 2019-12-17 01:39 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UXInit.dll
2020-02-22 14:18 - 2019-12-13 18:45 - 000215552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PlayToDevice.dll
2020-02-22 14:18 - 2019-12-05 15:55 - 000140800 _____ (Microsoft Corporation) C:\Windows\system32\wiadss.dll
2020-02-22 14:18 - 2019-12-05 15:55 - 000068608 _____ (Microsoft Corporation) C:\Windows\system32\wiarpc.dll
2020-02-22 14:18 - 2019-12-05 15:53 - 000117248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wiadss.dll
2020-02-22 14:18 - 2019-11-11 21:15 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\printfilterpipelineprxy.dll
2020-02-22 14:18 - 2019-10-11 17:29 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\upnpcont.exe
2020-02-22 14:18 - 2019-10-11 17:17 - 000067584 _____ (Microsoft Corporation) C:\Windows\system32\udhisapi.dll
2020-02-22 14:18 - 2019-10-11 16:45 - 000022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\upnpcont.exe
2020-02-22 14:18 - 2019-10-11 16:37 - 000058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\udhisapi.dll
2020-02-22 14:18 - 2019-09-19 07:11 - 000229888 _____ (Microsoft Corporation) C:\Windows\system32\ActionQueue.dll
2020-02-22 14:18 - 2019-09-19 07:10 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\spopk.dll
2020-02-22 14:18 - 2019-09-19 07:00 - 000169472 _____ (Microsoft Corporation) C:\Windows\system32\uxlib.dll
2020-02-22 14:18 - 2019-09-19 06:48 - 000475648 _____ (Microsoft Corporation) C:\Windows\system32\spwizeng.dll
2020-02-22 14:18 - 2019-09-15 03:22 - 000056320 _____ (Microsoft Corporation) C:\Windows\system32\admwprox.dll
2020-02-22 14:18 - 2019-09-15 03:21 - 000015872 _____ (Microsoft Corporation) C:\Windows\system32\wamregps.dll
2020-02-22 14:18 - 2019-09-15 02:32 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\ahadmin.dll
2020-02-22 14:18 - 2019-09-12 23:46 - 000017920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spopk.dll
2020-02-22 14:18 - 2019-09-12 23:36 - 000126464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\uxlib.dll
2020-02-22 14:18 - 2019-09-12 23:25 - 000380928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwizeng.dll
2020-02-22 14:18 - 2019-09-10 22:34 - 000354544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2020-02-22 14:18 - 2019-09-07 17:26 - 000160768 _____ (Microsoft Corporation) C:\Windows\system32\DWWIN.EXE
2020-02-22 14:18 - 2019-09-07 16:54 - 000138240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWWIN.EXE
2020-02-22 14:18 - 2019-08-20 04:49 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ws2ifsl.sys
2020-02-22 14:18 - 2019-07-11 04:58 - 000065024 _____ (Microsoft Corporation) C:\Windows\system32\ssdpapi.dll
2020-02-22 14:18 - 2019-07-11 04:30 - 000052736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ssdpapi.dll
2020-02-22 14:18 - 2019-07-11 04:04 - 000182784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\p2pnetsh.dll
2020-02-22 14:18 - 2019-07-11 03:39 - 000216576 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll
2020-02-22 14:18 - 2019-07-09 18:13 - 000269312 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcore6.dll
2020-02-22 14:18 - 2019-07-09 18:13 - 000089088 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc.dll
2020-02-22 14:18 - 2019-07-09 18:13 - 000066048 _____ (Microsoft Corporation) C:\Windows\system32\dhcpcsvc6.dll
2020-02-22 14:18 - 2019-07-09 17:58 - 000064512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc.dll
2020-02-22 14:18 - 2019-07-09 17:58 - 000057344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dhcpcsvc6.dll
2020-02-22 14:18 - 2019-06-25 02:44 - 000302080 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll
2020-02-22 14:18 - 2019-06-25 02:42 - 000175616 _____ (Microsoft Corporation) C:\Windows\system32\TpmTasks.dll
2020-02-22 14:18 - 2019-06-25 02:41 - 000302080 _____ (Microsoft Corporation) C:\Windows\system32\wlanapi.dll
2020-02-22 14:18 - 2019-06-25 02:26 - 000238080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wlanapi.dll
2020-02-22 14:18 - 2019-05-15 01:53 - 000136800 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2020-02-22 14:18 - 2019-04-12 14:20 - 000064248 _____ (Microsoft Corporation) C:\Windows\system32\api-ms-win-crt-private-l1-1-0.dll
2020-02-22 14:18 - 2019-04-04 18:10 - 001080320 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2020-02-22 14:18 - 2019-03-09 18:08 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\oleprn.dll
2020-02-22 14:18 - 2019-03-09 17:47 - 000111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleprn.dll
2020-02-22 14:18 - 2019-02-12 04:48 - 000092672 _____ (Microsoft Corporation) C:\Windows\system32\dab.dll
2020-02-22 14:18 - 2019-02-09 18:49 - 000088576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cdfs.sys
2020-02-22 14:18 - 2019-01-09 05:10 - 000546816 _____ (Microsoft Corporation) C:\Windows\system32\ActionCenterCPL.dll
2020-02-22 14:18 - 2019-01-09 04:40 - 000839680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ActionCenter.dll

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-02-24 11:10 - 2016-11-08 10:38 - 000820736 ___SH C:\Users\Pietro\Downloads\Thumbs.db
2020-02-24 11:08 - 2013-08-22 14:36 - 000000000 ____D C:\Windows\Inf
2020-02-24 10:33 - 2013-08-22 16:36 - 000000000 ___HD C:\Program Files\WindowsApps
2020-02-24 10:33 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\AppReadiness
2020-02-24 10:19 - 2015-02-15 23:47 - 000000000 ____D C:\Users\Pietro\AppData\Local\Packages
2020-02-24 10:07 - 2015-06-24 20:00 - 000000000 ____D C:\Users\Pietro\Documents\Youcam
2020-02-24 10:07 - 2014-04-26 14:47 - 000763200 _____ C:\Windows\system32\perfh005.dat
2020-02-24 10:07 - 2014-04-26 14:47 - 000163922 _____ C:\Windows\system32\perfc005.dat
2020-02-24 10:07 - 2014-03-18 10:53 - 001876396 _____ C:\Windows\system32\PerfStringBackup.INI
2020-02-24 10:02 - 2018-04-17 15:19 - 000541872 _____ C:\Windows\system32\FNTCACHE.DAT
2020-02-24 10:02 - 2013-08-22 15:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-02-24 09:20 - 2013-08-22 16:20 - 000000000 ____D C:\Windows\CbsTemp
2020-02-24 09:09 - 2015-02-15 23:52 - 000003598 _____ C:\Windows\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2887967755-598317460-3697102776-1001
2020-02-24 08:53 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\SysWOW64\inetsrv
2020-02-24 08:53 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\system32\inetsrv
2020-02-24 08:12 - 2013-08-22 14:25 - 000262144 ___SH C:\Windows\system32\config\BBI
2020-02-24 08:03 - 2013-08-22 16:36 - 000000000 ___RD C:\Windows\ToastData
2020-02-24 08:02 - 2015-04-16 12:58 - 000000000 ___SD C:\Windows\system32\CompatTel
2020-02-24 08:02 - 2015-04-16 12:58 - 000000000 ____D C:\Windows\system32\appraiser
2020-02-24 08:02 - 2013-08-22 14:36 - 000000000 ____D C:\Windows\SysWOW64\Dism
2020-02-24 08:02 - 2013-08-22 14:36 - 000000000 ____D C:\Windows\system32\oobe
2020-02-24 08:02 - 2013-08-22 14:36 - 000000000 ____D C:\Windows\system32\Dism
2020-02-24 08:01 - 2013-08-22 16:36 - 000000000 ____D C:\Windows\PolicyDefinitions
2020-02-23 23:08 - 2015-06-27 08:13 - 000003388 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-02-23 23:08 - 2015-06-27 08:13 - 000003260 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-02-23 23:07 - 2015-05-06 10:13 - 000000000 ____D C:\Program Files (x86)\Google
2020-02-23 21:35 - 2016-11-05 11:03 - 000002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2020-02-23 18:45 - 2015-02-19 19:37 - 000000000 ____D C:\Windows\system32\MRT
2020-02-23 18:37 - 2015-02-19 19:37 - 120407888 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2020-02-23 18:18 - 2015-06-30 15:48 - 000004476 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2020-02-23 18:16 - 2018-03-14 17:31 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-02-23 18:13 - 2015-02-16 22:06 - 000000000 ____D C:\Users\Pietro\AppData\Local\Adobe
2020-02-23 17:58 - 2013-08-22 16:36 - 000000000 ___HD C:\Windows\ELAMBKUP
2020-02-22 14:28 - 2015-07-07 19:16 - 000000000 ____D C:\Program Files\AVAST Software
2020-02-22 13:06 - 2015-06-27 08:14 - 000002251 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-02-22 13:06 - 2015-06-27 08:14 - 000002210 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-02-22 13:06 - 2015-06-27 08:14 - 000002210 _____ C:\ProgramData\Desktop\Google Chrome.lnk

==================== Files in the root of some directories ========

2015-05-17 19:41 - 2015-05-17 19:42 - 000008192 _____ () C:\Users\Pietro\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2015-03-03 22:55 - 2015-03-03 22:56 - 028140712 _____ (Sony Mobile Communications ) C:\Users\Pietro\AppData\Local\pcc.exe
2018-03-11 00:25 - 2018-03-11 00:25 - 000007605 _____ () C:\Users\Pietro\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2020-02-24 01:36
==================== End of FRST.txt ========================



Additional scan result of Farbar Recovery Scan Tool (x64) Version: 23-02-2020
Ran by Pietro (24-02-2020 11:19:09)
Running from C:\Users\Pietro\Desktop
Windows 8.1 Connected (Update) (X64) (2015-02-15 22:47:07)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2887967755-598317460-3697102776-500 - Administrator - Disabled)
Guest (S-1-5-21-2887967755-598317460-3697102776-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2887967755-598317460-3697102776-1003 - Limited - Enabled)
Pietro (S-1-5-21-2887967755-598317460-3697102776-1001 - Administrator - Enabled) => C:\Users\Pietro

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
AS: ESET Security (Enabled - Up to date) {333C65BB-8923-0EAA-C47E-C486E687BEFD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 18.01 (x64 edition) (HKLM\...\{23170F69-40C1-2702-1801-000001000000}) (Version: 18.01.00.0 - Igor Pavlov)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 20.006.20034 - Adobe Systems Incorporated)
Apple Mobile Device Support (HKLM\...\{7D606B87-0AEB-4C27-ABCE-1138EE09777B}) (Version: 13.0.0.41 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{A3985C05-7386-411F-A4BF-32A73F37EB44}) (Version: 2.6.3.1 - Apple Inc.)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Centrum zařízení Windows Mobile (HKLM\...\{626672CD-BFCF-49A9-AEFE-AB0FED3BFC5B}) (Version: 6.1.6965.0 - Microsoft Corporation)
Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM-x32\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM-x32\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.)
CyberLink LabelPrint (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.5.6902 - CyberLink Corp.)
CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.5.3303 - CyberLink Corp.)
CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.5.3416 - CyberLink Corp.)
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.3.3709 - CyberLink Corp.)
CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 5.0.3.3907 - CyberLink Corp.)
D3DX10 (HKLM-x32\...\{E09C4DB7-630C-4F06-A631-8EA7239923AF}) (Version: 15.4.2368.0902 - Microsoft) Hidden
DisableMSDefender (HKLM\...\{74FE39A0-FB76-47CD-84BA-91E2BBB17EF2}) (Version: 1.0.0 - Hewlett-Packard Company) Hidden
Energy Star (HKLM\...\{465CA2B6-98AF-4E77-BE22-A908C34BB9EC}) (Version: 1.0.9 - Hewlett-Packard Company)
ESET Security (HKLM\...\{D8E84711-EDFC-4D4E-B579-95AEB40DAA4D}) (Version: 13.0.24.0 - ESET, spol. s r.o.)
Fotogaléria (HKLM-x32\...\{08466673-3905-4437-93E8-34A221B7CA4E}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Fotogalerie (HKLM-x32\...\{AEA7CE08-09DC-4186-99FD-66A26F3B8B21}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 80.0.3987.116 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.441 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.24.7 - Google Inc.) Hidden
Hewlett-Packard ACLM.NET v1.2.2.3 (HKLM-x32\...\{6F340107-F9AA-47C6-B54C-C3A19F11553F}) (Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP Connected Music (Meridian - installer) (HKLM-x32\...\StartHPConnectedMusic) (Version: 1.0 - Meridian Audio Ltd)
HP Documentation (HKLM-x32\...\{F29E3AA8-CF19-4452-92B7-F1FE31CD11C5}) (Version: 1.1.0.0 - Hewlett-Packard)
HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.7372.4698 - Hewlett-Packard)
HP SimplePass (HKLM-x32\...\InstallShield_{314FAD12-F785-4471-BCE8-AB506642B9A1}) (Version: 8.01.11 - Hewlett-Packard)
HP Support Assistant (HKLM-x32\...\{8C696B4B-6AB1-44BC-9416-96EAC474CABE}) (Version: 7.5.2.12 - Hewlett-Packard Company)
HP System Event Utility (HKLM-x32\...\{C78E8F51-3EAD-4F0C-83F0-EF371075E0B4}) (Version: 1.0.10 - Hewlett-Packard Company)
HP Utility Center (HKLM\...\{891A1782-8B20-4403-8383-458962525926}) (Version: 2.3.4 - Hewlett-Packard Company)
HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company)
Inst5675 (HKLM\...\{2DE6247C-7077-451B-8BA7-FFD1A2ABBB47}) (Version: 8.01.11 - Softex Inc.) Hidden
Inst5676 (HKLM\...\{878F6913-7421-4713-97F7-0A736EE2A188}) (Version: 8.01.11 - Softex Inc.) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3408 - Intel Corporation)
Intel(R) Sideband Fabric Device Driver (HKLM-x32\...\C5A8BC6E-723A-4C0F-96E1-C426D1A4BCA9) (Version: 1.70.305.16316 - Intel Corporation)
Intel(R) Trusted Execution Engine (HKLM\...\{176E2755-0A17-42C6-88E2-192AB2131278}) (Version: 1.0.0.1064 - Intel Corporation)
iTunes (HKLM\...\{E3EFB6E1-08CD-4DED-A71C-A51DE544A7F6}) (Version: 12.10.4.2 - Apple Inc.)
LibreOffice 4.4.3.2 (HKLM-x32\...\{A651A592-2F6C-4D66-AEA8-9BFE4B61BCB3}) (Version: 4.4.3.2 - The Document Foundation)
Microsoft PowerPoint 2010 Interactive Guide CSY (HKLM-x32\...\{B59AAB7C-6701-42A3-95C8-A8D6F0057F0A}) (Version: 1.2.1 - Microsoft)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Movie Maker (HKLM-x32\...\{379A0618-EF50-423C-9637-EEB2D25A4BB4}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{3C5F91EF-5C0B-4D13-BCBE-0FC6FC3ED7F9}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{45898170-E68C-4F02-AA35-C2186BF347A3}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
Movie Maker (HKLM-x32\...\{CFBFE244-6269-41DC-85B6-86F99C88ED02}) (Version: 16.4.3508.0205 - Microsoft Corporation) Hidden
PhotoFiltre Studio X (HKU\S-1-5-21-2887967755-598317460-3697102776-1001\...\PhotoFiltre Studio X) (Version: - )
Podpora aplikací Apple (32bitová) (HKLM-x32\...\{A7039CC9-4669-4799-92B1-C5CE346DBE3D}) (Version: 8.3 - Apple Inc.)
Podpora aplikací Apple (64bitová) (HKLM\...\{DA78A9DC-3599-4D81-A960-B679687A6C14}) (Version: 8.3 - Apple Inc.)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 6.3.9600.29075 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller All-In-One Windows Driver (HKLM-x32\...\{F7E7F0CB-AA41-4D5A-B6F2-8E6738EB063F}) (Version: 8.24.1218.2013 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7156 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver (HKLM-x32\...\{A5107464-AA9B-4177-8129-5FF2F42DD322}) (Version: 1.00.13.1216 - REALTEK Semiconductor Corp.)
swMSM (HKLM-x32\...\{612C34C7-5E90-47D8-9B5C-0F717DD82726}) (Version: 12.0.0.1 - Adobe Systems, Inc) Hidden
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 18.0.4.0 - Synaptics Incorporated)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3508.0205 - Microsoft Corporation)
Zobrazit uživatelskou příručku (HKLM-x32\...\View User Guide) (Version: 3.60.43.0 - )

Packages:
=========
Box -> C:\Program Files\WindowsApps\134D4F5B.Box_1.6.3.1920_neutral__2qk4zy5s3qmee [2014-09-10] (Box, Inc.)
Cestování Bing -> C:\Program Files\WindowsApps\Microsoft.BingTravel_3.0.2.258_x64__8wekyb3d8bbwe [2015-02-15] (Microsoft Corporation) [MS Ad]
Finance Bing -> C:\Program Files\WindowsApps\Microsoft.BingFinance_3.0.2.258_x64__8wekyb3d8bbwe [2015-02-15] (Microsoft Corporation) [MS Ad]
Getting Started with Windows 8 -> C:\Program Files\WindowsApps\AD2F1837.GettingStartedwithWindows8_1.2.4.35_neutral__v10z8vjag6ke6 [2014-09-10] (Hewlett-Packard Company)
Gurmánský svět Bing -> C:\Program Files\WindowsApps\Microsoft.BingFoodAndDrink_3.0.2.243_x64__8wekyb3d8bbwe [2015-02-15] (Microsoft Corporation) [MS Ad]
HP Registration -> C:\Program Files\WindowsApps\AD2F1837.HPRegistration_1.2.1.141_neutral__v10z8vjag6ke6 [2014-09-10] (Hewlett-Packard Company)
Hry -> C:\Program Files\WindowsApps\Microsoft.XboxLIVEGames_2.0.139.0_x64__8wekyb3d8bbwe [2014-09-10] (Microsoft Corporation) [MS Ad]
Hudba -> C:\Program Files\WindowsApps\Microsoft.ZuneMusic_2.2.849.0_x64__8wekyb3d8bbwe [2014-09-10] (Microsoft Corporation) [MS Ad]
McAfee® Central for HP -> C:\Program Files\WindowsApps\2703103D.McAfeeCentral_2.0.0.1_x64__4ehj4w4frejdr [2014-09-10] (.-McAfee Inc-.)
Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_3.0.2.258_x64__8wekyb3d8bbwe [2015-02-15] (Microsoft Corporation) [MS Ad]
Skype -> C:\Program Files\WindowsApps\Microsoft.SkypeApp_2.8.0.1001_x86__kzf8qxf38zg5c [2014-09-10] (Skype) [MS Ad]
Sport Bing -> C:\Program Files\WindowsApps\Microsoft.BingSports_3.0.2.258_x64__8wekyb3d8bbwe [2015-02-15] (Microsoft Corporation) [MS Ad]
Video -> C:\Program Files\WindowsApps\Microsoft.ZuneVideo_2.2.849.0_x64__8wekyb3d8bbwe [2014-09-10] (Microsoft Corporation) [MS Ad]
YouCam for HP -> C:\Program Files\WindowsApps\CyberLinkCorp.hs.YouCamforHP_1.0.2.27571_x86__06qsbagp91rvg [2014-09-10] (CYBERLINKCOM CORP)
Zdraví a fitness Bing -> C:\Program Files\WindowsApps\Microsoft.BingHealthAndFitness_3.0.2.258_x64__8wekyb3d8bbwe [2015-02-15] (Microsoft Corporation) [MS Ad]
Zprávy Bing -> C:\Program Files\WindowsApps\Microsoft.BingNews_3.0.2.258_x64__8wekyb3d8bbwe [2015-02-15] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2887967755-598317460-3697102776-1001_Classes\CLSID\{D9AC5E73-BB10-467b-B884-AA1E475C51F5}\Shell\Open\Command -> C:\Program Files\Synaptics\SynTP\SynTPCpl.dll (Synaptics Incorporated -> Synaptics Incorporated)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll [2013-10-16] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-11-29] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers2: [CLVDShellExt] -> {3E2A0A32-6E14-4BAD-AA87-BBB6A75EBFF2} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt.dll [2013-10-16] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-11-29] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\Windows\system32\igfxpph.dll [2014-02-18] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-01-28] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2019-11-29] (ESET, spol. s r.o. -> ESET)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2014-03-28 12:31 - 2014-03-28 12:31 - 002110464 _____ () [File not signed] C:\Program Files\Hewlett-Packard\SimplePass\autheng.dll
2014-03-28 12:27 - 2014-03-28 12:27 - 000021504 _____ () [File not signed] C:\Program Files\Hewlett-Packard\SimplePass\cryptodll.dll
2014-03-28 12:27 - 2014-03-28 12:27 - 000055296 _____ () [File not signed] C:\Program Files\Hewlett-Packard\SimplePass\RandomPass.dll
2014-03-28 12:27 - 2014-03-28 12:27 - 000035328 _____ () [File not signed] C:\Program Files\Hewlett-Packard\SimplePass\ssplogon.dll
2020-02-24 10:51 - 2020-02-24 10:51 - 000008704 _____ () [File not signed] C:\Users\Pietro\AppData\Local\Temp\nsyC2BA.tmp\newadvsplash.dll
2020-02-24 10:51 - 2020-02-24 10:51 - 000025088 _____ () [File not signed] C:\Users\Pietro\AppData\Local\Temp\nsyC2BA.tmp\Registry.dll
2014-03-28 12:47 - 2014-03-28 12:47 - 000646656 _____ (Hewlett-Packard) [File not signed] C:\Program Files\Hewlett-Packard\SimplePass\OpBHO64.dll
2014-03-28 12:29 - 2014-03-28 12:29 - 000692224 _____ (Hewlett-Packard) [File not signed] C:\Program Files\Hewlett-Packard\SimplePass\storeng.dll
2014-03-28 12:32 - 2014-03-28 12:32 - 001107968 _____ (Hewlett-Packard) [File not signed] C:\Program Files\Hewlett-Packard\SimplePass\userdata.dll
2018-01-28 19:00 - 2018-01-28 19:00 - 000075776 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2014-09-10 12:48 - 2014-09-10 12:48 - 001093120 _____ (Microsoft Corporation) [File not signed] C:\Windows\WinSxS\x86_microsoft.vc80.mfc_1fc8b3b9a1e18e3b_8.0.50727.6195_none_cbf5e994470a1a8f\MFC80U.DLL
2014-09-10 12:33 - 2013-04-01 22:19 - 000574464 _____ (Realtek Semiconductor Corp. ) [File not signed] C:\Windows\system32\Rtlihvs.dll
2014-03-28 12:48 - 2014-03-28 12:48 - 000712080 _____ (Softex Incorporated -> ) [File not signed] C:\Program Files\Hewlett-Packard\SimplePass\GraphicalPwd.dll
2014-03-28 12:48 - 2014-03-28 12:48 - 000367504 _____ (Softex Incorporated -> ) [File not signed] C:\Program Files\Hewlett-Packard\SimplePass\mstrpwd.dll
2014-03-28 12:48 - 2014-03-28 12:48 - 000759184 _____ (Softex Incorporated -> Hewlett-Packard) [File not signed] C:\Program Files\Hewlett-Packard\SimplePass\hdddrv.dll
2014-03-28 12:48 - 2014-03-28 12:48 - 001204112 _____ (Softex Incorporated -> Hewlett-Packard) [File not signed] C:\Program Files\Hewlett-Packard\SimplePass\Wbf.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 14:25 - 2019-01-28 17:36 - 000000839 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\TXE Components\TCS\;C:\Program Files\Intel\TXE Components\TCS\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\Hewlett-Packard\SimplePass\;C:\Program Files (x86)\Windows Live\Shared
HKU\S-1-5-21-2887967755-598317460-3697102776-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Hewlett-Packard Backgrounds\backgroundDefault.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{C1041840-BC9B-490A-9AEC-BC364F6B61A7}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{50BAC705-4DDC-4E09-AB98-337881F214E9}] => (Allow) LPort=2869
FirewallRules: [{48B3F4CC-CFBB-4C49-9AFD-BD35CCC02F06}] => (Allow) LPort=1900
FirewallRules: [{888FE608-493A-4376-8F7A-CFF7ADD78E05}] => (Allow) C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe (Meridian Audio Ltd -> Meridian Audio Ltd)
FirewallRules: [{70D0CBED-23EF-4B29-BB1C-08AA0AA47E01}] => (Allow) C:\Program Files (x86)\HPConnectedMusic\HPConnectedMusic.exe (Meridian Audio Ltd -> Meridian Audio Ltd)
FirewallRules: [{6B6A0432-47A4-4EBE-9E3A-8AA8DE2EF398}] => (Allow) %LocalAppData%\HPConnectedMusic\Application\HPConnectedMusic.exe (Meridian Audio Ltd -> Meridian Audio Ltd)
FirewallRules: [{3C285737-2CFA-4A55-AF5A-158F30C33FF0}] => (Allow) %LocalAppData%\HPConnectedMusic\Application\HPConnectedMusic.exe (Meridian Audio Ltd -> Meridian Audio Ltd)
FirewallRules: [{42896283-2DFA-49EE-98E9-B7119900CCDA}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{6D29C014-3DC5-4CB8-AB53-26F0114F8ED9}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Kernel\DMS\CLMSServerPDVD12.exe (CyberLink Corp. -> CyberLink)
FirewallRules: [{96016CC6-67FD-43E0-BDBA-6EF42FDBA43B}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\PowerDVD12ML.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{68151C5D-5F23-4862-A3A6-B2D1021AD2B7}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD12\Movie\PowerDVD.exe (CyberLink Corp. -> CyberLink Corp.)
FirewallRules: [{5107B72A-AA64-46DC-A85B-12B31D7FAB3C}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{558D1B8D-65EE-4B46-976C-DC838A85A0F3}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{BDA3A689-2CF0-488E-9AC2-32A4AAC40698}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{3A4A95E3-EAC7-435C-86F4-C94BBB8AA894}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{FCFE45EA-3853-4F09-98E1-3EE305725275}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D4639523-A690-412C-B324-2CFC664A16C3}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{1D9F6739-DB5D-4BA6-9AC0-77B07C8DDF30}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)

==================== Restore Points =========================

23-02-2020 18:23:45 Windows Update

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (02/24/2020 10:51:38 AM) (Source: ESENT) (EventID: 454) (User: )
Description: taskhostex (2984) WebCacheLocal: Při zotavení či obnovení databáze došlo k neočekávané chybě -501.

Error: (02/24/2020 10:51:38 AM) (Source: ESENT) (EventID: 465) (User: )
Description: taskhostex (2984) WebCacheLocal: Při částečném obnovení byl zjištěn poškozený soubor protokolu C:\Users\Pietro\AppData\Local\Microsoft\Windows\WebCache\V01.log. Záznam s chybou kontrolního součtu je umístěn na pozici END. Data neodpovídající záznamům protokolu se poprvé vyskytla v sektoru 38 (0x00000026). Soubor je poškozený a nelze jej použít.

Error: (02/24/2020 10:51:38 AM) (Source: ESENT) (EventID: 477) (User: )
Description: taskhostex (2984) WebCacheLocal: Ověření načtení rozsahu protokolu ze souboru C:\Users\Pietro\AppData\Local\Microsoft\Windows\WebCache\V01.log s posunem 155648 (0x0000000000026000) o 4096 (0x00001000) bajtů se nezdařilo. Došlo k neshodě kontrolního součtu rozsahu. Byl očekáván kontrolní součet 2374277659938946394 (0x20f320f3c6ce7d5a), ale skutečný kontrolní součet byl 2374277659938946394 (0x20f320f3c6ce7d5a). Operace čtení se nezdaří a dojde k chybě -501 (0xfffffe0b). Pokud tento stav potrvá, obnovte soubor protokolu z předchozí zálohy.

Error: (02/24/2020 10:51:38 AM) (Source: ESENT) (EventID: 465) (User: )
Description: taskhostex (2984) WebCacheLocal: Při částečném obnovení byl zjištěn poškozený soubor protokolu C:\Users\Pietro\AppData\Local\Microsoft\Windows\WebCache\V01.log. Záznam s chybou kontrolního součtu je umístěn na pozici END. Data neodpovídající záznamům protokolu se poprvé vyskytla v sektoru 38 (0x00000026). Soubor je poškozený a nelze jej použít.

Error: (02/24/2020 10:51:38 AM) (Source: ESENT) (EventID: 477) (User: )
Description: taskhostex (2984) WebCacheLocal: Ověření načtení rozsahu protokolu ze souboru C:\Users\Pietro\AppData\Local\Microsoft\Windows\WebCache\V01.log s posunem 155648 (0x0000000000026000) o 4096 (0x00001000) bajtů se nezdařilo. Došlo k neshodě kontrolního součtu rozsahu. Byl očekáván kontrolní součet 2374277659938946394 (0x20f320f3c6ce7d5a), ale skutečný kontrolní součet byl 2374277659938946394 (0x20f320f3c6ce7d5a). Operace čtení se nezdaří a dojde k chybě -501 (0xfffffe0b). Pokud tento stav potrvá, obnovte soubor protokolu z předchozí zálohy.

Error: (02/24/2020 09:54:56 AM) (Source: MsiInstaller) (EventID: 10005) (User: NT AUTHORITY)
Description: Product: Bonjour -- A later version of Bonjour is already installed on this computer.

Error: (02/22/2020 02:13:49 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 3440172

Error: (02/22/2020 02:13:49 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 3440172


System errors:
=============
Error: (02/24/2020 10:05:04 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba %1!s! Update (avast) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (02/24/2020 09:40:44 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba %1!s! Update (avast) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (02/24/2020 09:00:34 AM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: Při čekání na odezvu transakce služby ShellHWDetection bylo dosaženo časového limitu (30000 ms).

Error: (02/24/2020 09:00:11 AM) (Source: Service Control Manager) (EventID: 7022) (User: )
Description: Služba Služba inteligentního přenosu na pozadí přestala během spouštění reagovat.

Error: (02/24/2020 08:58:06 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba %1!s! Update (avast) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (02/24/2020 08:17:15 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba %1!s! Update (avast) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (02/24/2020 06:51:11 AM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: NT AUTHORITY)
Description: 0x8000002a45\??\C:\Windows\AppCompat\Programs\Amcache.hve

Error: (02/24/2020 01:37:06 AM) (Source: DCOM) (EventID: 10010) (User: hp)
Description: Server {BF6C1E47-86EC-4194-9CE5-13C15DCB2001} se v daném časovém limitu neregistroval u služby DCOM.


Windows Defender:
===================================
Date: 2020-02-23 18:48:33.186
Description:
Prohledávání Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {A2E4BFE9-EEF7-4786-83AB-BD433F5AD0E1}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: hp\Pietro

Date: 2020-02-23 18:23:54.995
Description:
Prohledávání Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {3683D01A-E51A-4F13-A830-F289E466D904}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2015-06-24 16:00:58.497
Description:
Prohledávání Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {1588C9B9-DB6A-4C0E-A4E4-5B220296DC83}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2015-06-16 18:38:42.478
Description:
Prohledávání Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {15246C18-C33A-41F7-AA78-8D54822E7A12}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2015-06-15 22:38:37.600
Description:
Prohledávání Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {88FD625A-9ABC-42FB-A3ED-DFEE208587DA}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2020-02-22 14:27:26.702
Description:
Prohledávání Windows Defender zjistilo chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu:
Předchozí verze podpisu: 1.203.1679.0
Zdroj aktualizace: Server Microsoft Update
Typ podpisu: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.11903.0
Kód chyby: 0x8024001e
Popis chyby :Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2015-08-08 19:18:35.844
Description:
Prohledávání Windows Defender zjistilo chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu:
Předchozí verze podpisu: 1.201.1184.0
Zdroj aktualizace: Server Microsoft Update
Typ podpisu: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.11804.0
Kód chyby: 0x80070643
Popis chyby :Při instalaci došlo k závažné chybě.

Date: 2015-06-27 09:17:53.373
Description:
Prohledávání Windows Defender zjistilo chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu:
Předchozí verze podpisu: 1.201.276.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ podpisu: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 1.1.11804.0
Kód chyby: 0x80070652
Popis chyby :Momentálně je spuštěna jiná instalace. Před spuštěním nové instalace nejdříve dokončete spuštěnou instalaci.

Date: 2015-06-27 09:17:53.373
Description:
Prohledávání Windows Defender zjistilo chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu:
Předchozí verze podpisu: 1.201.276.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ podpisu: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 1.1.11804.0
Kód chyby: 0x80070652
Popis chyby :Momentálně je spuštěna jiná instalace. Před spuštěním nové instalace nejdříve dokončete spuštěnou instalaci.

Date: 2015-06-27 09:17:52.741
Description:
Prohledávání Windows Defender zjistilo chybu při pokusu o aktualizaci podpisů.
Nová verze podpisu:
Předchozí verze podpisu:
Zdroj aktualizace: Uživatel
Typ podpisu:
Typ aktualizace:
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu:
Kód chyby: 0x80070652
Popis chyby :Momentálně je spuštěna jiná instalace. Před spuštěním nové instalace nejdříve dokončete spuštěnou instalaci.

CodeIntegrity:
===================================

Date: 2020-02-24 11:20:07.129
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET Security\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-02-24 11:20:02.193
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET Security\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-02-24 11:19:56.834
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET Security\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-02-24 11:19:51.035
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET Security\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-02-24 11:19:45.494
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET Security\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-02-24 11:19:39.980
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET Security\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-02-24 11:19:34.940
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET Security\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2020-02-24 11:19:30.074
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\ESET\ESET Security\ekrn.exe) attempted to load \Device\HarddiskVolume4\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

==================== Memory info ===========================

BIOS: Insyde F.18 05/21/2014
Motherboard: Hewlett-Packard 2213
Processor: Intel(R) Celeron(R) CPU N2830 @ 2.16GHz
Percentage of memory in use: 47%
Total physical RAM: 3984.27 MB
Available physical RAM: 2095.54 MB
Total Virtual: 4688.27 MB
Available Virtual: 2712.09 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:448.18 GB) (Free:401.52 GB) NTFS
Drive d: (RECOVERY) (Fixed) (Total:16.56 GB) (Free:1.6 GB) NTFS ==>[system with boot components (obtained from drive)]

\\?\Volume{24ca76e3-cc11-4a4d-ac7c-795c0ae23edd}\ (WINRE) (Fixed) (Total:0.63 GB) (Free:0.34 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 6DA15431)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Prosím o preventivní kontrolu

#2 Příspěvek od Diallix »

Dobry den.

:arrow: Stiahnite si na plochu nastroj AdwCleaner, link. na stiahnutie tu: https://toolslib.net/downloads/finish/1/
Pred spustenim nastroja povypinajte vsetke beziace okna programov, to su vsetke beziace programy pod desktopom.
Kliknite pravym tlacidlom mysi na program -> spustit ako Administrator.
Pokracujte kliknutim na tlacidlo Prehladaj teraz (Scan now) a pockajte, kym sa system doskenuje.
Po skene nechajte oznacene vsetky chlieviky, pripadne najdene hrozieby a pokracujte v dolnom pravom rohu tlacidlom Vycistit Teraz (Clean and Repair).
Po restartovani PC sa spusti nastroj AdwCleaner, kliknite na Zobrazit soubor protokolu.
Spusti sa log, jeho obsah skopirujte sem.
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

Andrew14
Návštěvník
Návštěvník
Příspěvky: 57
Registrován: 14 srp 2007 16:06

Re: Prosím o preventivní kontrolu

#3 Příspěvek od Andrew14 »

Dobrý den,
děkuji Vám za zprávu, zde zasílám log:

# -------------------------------
# Malwarebytes AdwCleaner 8.0.2.0
# -------------------------------
# Build: 01-27-2020
# Database: 2020-02-17.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 02-25-2020
# Duration: 00:00:11
# OS: Windows 8.1 Connected
# Cleaned: 33
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted C:\Program Files (x86)\Seznam.cz
Deleted C:\Program Files (x86)\Tbccint
Deleted C:\ProgramData\Tbccint
Deleted C:\Users\Pietro\AppData\LocalLow\PriceGong
Deleted C:\Users\Pietro\AppData\LocalLow\Tbccint
Deleted C:\Users\Pietro\AppData\Local\Tbccint
Deleted C:\Users\Pietro\AppData\Roaming\Seznam.cz
Deleted C:\Windows\SysWOW64\config\systemprofile\AppData\LocalLow\BS_Player_ControlBar_B

***** [ Files ] *****

Deleted C:\END

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted HKCU\Software\AppDataLow\Software\PriceGong
Deleted HKCU\Software\AppDataLow\Software\Smartbar
Deleted HKCU\Software\AppDataLow\Software\Tbccint
Deleted HKCU\Software\AppDataLow\Software\TbccintSearchScopes
Deleted HKCU\Software\Classes\CLSID\{31264A33-A653-46C4-AF49-1232C59A7DA5}
Deleted HKCU\Software\Conduit
Deleted HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{6BC8BC57-2082-46EA-BB88-7C95E445D6BE}
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|cz.seznam.software.autoupdate
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run|cz.seznam.software.szndesktop
Deleted HKCU\Software\Microsoft\Windows\CurrentVersion\Run|cz.seznam.software.szndesktop
Deleted HKCU\Software\Mozilla\NativeMessagingHosts\sznpp_nm
Deleted HKCU\Software\Seznam.cz
Deleted HKCU\Software\Tbccint
Deleted HKCU\Software\Tbccint_HKLM
Deleted HKLM\SOFTWARE\Classes\Toolbar.CT3329621
Deleted HKLM\Software\Classes\CLSID\{31264A33-A653-46C4-AF49-1232C59A7DA5}
Deleted HKLM\Software\Classes\CLSID\{3A1209A4-8568-40F0-9B5E-4A06A2A06417}
Deleted HKLM\Software\Microsoft\Internet Explorer\Toolbar|{31264A33-A653-46C4-AF49-1232C59A7DA5}
Deleted HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|seznam-listicka-distribuce
Deleted HKLM\Software\Wow6432Node\Conduit
Deleted HKLM\Software\Wow6432Node\\Classes\CLSID\{3A1209A4-8568-40F0-9B5E-4A06A2A06417}
Deleted HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Run|seznam-listicka-distribuce

***** [ Chromium (and derivatives) ] *****

Deleted Seznam doplněk - Email
Deleted Seznam doplněk - Esko

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [8235 octets] - [25/02/2020 08:03:07]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Andrew14
Návštěvník
Návštěvník
Příspěvky: 57
Registrován: 14 srp 2007 16:06

Re: Prosím o preventivní kontrolu

#4 Příspěvek od Andrew14 »

Dobrý den,

je prosím Vás dle logu již vše v pořádku nebo máme vyčkat ještě na nějaký krok?

Uživatelský avatar
Diallix
Rádce
Rádce
Příspěvky: 2760
Registrován: 27 dub 2008 10:34
Kontaktovat uživatele:

Re: Prosím o preventivní kontrolu

#5 Příspěvek od Diallix »

Preskenujte pocitac s FRST - navod tu: https://forum.viry.cz/viewtopic.php?f=24&t=132509, skopirujte FRST.log + Addition log sem.
Vyšla moja nová kniha BOTNETY! :173: Informácie o nej nájdete tu: >> BOTNETY <<

¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­¯­­­
---
Obrázek Hľadáme nové posily do nášej CyberSecurity UNIT jednotky. Viac informácií o tom, čo to obnáša a ako sa pripojiť nájdete tu: >> CyberSecurity UNIT << Obrázek
----
Nízkoúrovňový, Vysokoúrovňový programátor - profilová karta tu: card <<
----
Háveťárna - UPLOAD Malwaru: >> upload <<
---
Ak sa Vám ľúbi moja práca a ste sňou spokojný, môžete ma kontaktovať na: diallix@centrum.sk, info@diallix.net alebo diallix@forum.viry.cz .
---
Momentálne aktívny ako:
- konzultant, vývojár a tutor výskumu inteligentného malwaru.
- tutor v oblasti dotazovacích jazykoch SQL (TSQL, PLSQL), objektového programovania (c++,c#,php) pre študentov.

Na fóre pôsobím ako:
- Bezpečnostná autorita viry.cz
- Zástupca tutora pre vzdelávanie nováčikov
- Zakladateľ Cyber Security jednotky

Odpovědět