Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 05-12-2020
Ran by Petr (administrator) on DESKTOP-UDNBT74 (05-12-2020 21:10:58)
Running from D:\Sportocbhod -Stazene
Loaded Profiles: Petr
Platform: Windows 10 Pro Version 1809 17763.615 (X64) Language: English (United States)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Windows\System32\atwtusb.exe <2>
(Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\CCLibrary.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\afwServ.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswEngSrv.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\aswidsagent.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGSvc.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\avgToolsSvc.exe
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\AVGUI.exe <3>
(AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.) C:\Program Files\AVG\Antivirus\wsc_proxy.exe
(Ghisler Software GmbH -> Ghisler Software GmbH) C:\Program Files (x86)\totalcmd\TOTALCMD64.EXE
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <8>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe <2>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2009.4.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(Node.js Foundation -> Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\libs\node.exe
(Node.js Foundation -> Node.js) C:\Program Files\Common Files\Adobe\Creative Cloud Libraries\libs\node.exe
(Realtek Semiconductor Corp. -> ) C:\Windows\runSW.exe
(Realtek Semiconductor Corp. -> Realtek) C:\Windows\SwUSB.exe
(TeamViewer GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(The Qt Company Oy -> The Qt Company Ltd.) C:\Program Files\MuseScore 3\bin\QtWebEngineProcess.exe
(TP-Link Technologies Co., Ltd) [File not signed] C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\TWCU.exe
(VMware, Inc. -> ) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe
(VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
(VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AVGUI.exe] => C:\Program Files\AVG\Antivirus\AvLaunch.exe [157320 2020-10-19] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [AtwtusbIcon] => C:\Windows\system32\AtwtusbIcon.exe [3589120 2012-07-11] () [File not signed]
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [vmware-tray.exe] => C:\Program Files (x86)\VMware\VMware Workstation\vmware-tray.exe [117680 2019-09-16] (VMware, Inc. -> VMware, Inc.)
HKLM-x32\...\Run: [WPSTool] => C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\TWCU.exe [1891840 2018-02-06] (TP-Link Technologies Co., Ltd) [File not signed]
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-936610497-460076368-2508702492-1002\...\Run: [btweb] => "C:\Users\Petr\AppData\Roaming\BitTorrent Web\btweb.exe" /MINIMIZED
HKU\S-1-5-21-936610497-460076368-2508702492-1002\...\Run: [BitTorrent] => C:\Users\Petr\AppData\Roaming\BitTorrent\BitTorrent.exe [2121968 2020-12-04] (BitTorrent Inc -> BitTorrent Inc.)
HKU\S-1-5-21-936610497-460076368-2508702492-1002\...\Run: [Web Companion] => C:\Program Files (x86)\Lavasoft\Web Companion\Application\WebCompanion.exe --minimize
HKU\S-1-5-21-936610497-460076368-2508702492-1002\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [144008 2019-10-22] (Adobe Inc. -> Adobe Systems Incorporated)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\87.0.4280.88\Installer\chrmstp.exe [2020-12-04] (Google LLC -> Google LLC)
Startup: C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\laragon.lnk [2020-01-14]
ShortcutTarget: laragon.lnk -> C:\laragon\laragon.exe (No File)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {3E5686BC-1A3C-4B3A-8F08-2CAA191E1CAB} - System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-936610497-460076368-2508702492-500 => C:\Users\Petr\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe
Task: {6E64443E-5DE8-44BF-82D3-3D648D9EBB85} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [670928 2020-11-12] (Mozilla Corporation -> Mozilla Foundation)
Task: {844CB659-7950-40EC-88F7-487573EB3229} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [117600 2020-11-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {895DB5B8-3CDD-43E5-8588-60FBC598469A} - System32\Tasks\Antivirus Emergency Update => C:\Program Files\AVG\Antivirus\AvEmUpdate.exe [4665480 2020-11-27] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
Task: {976B698B-B032-42D9-955B-E0FFAAB388D1} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22939528 2020-11-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {BBD9809E-770E-48B6-8BAF-CC12696555E3} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [117600 2020-11-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {CF2041A1-F94A-47C9-AF63-AFC51ADE00FD} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22939528 2020-11-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {D4EBD4AC-C3D9-4A25-A667-C05757E1999A} - System32\Tasks\AVG\Overseer => C:\Program Files\Common Files\AVG\Overseer\overseer.exe [1773192 2020-09-17] (AVG Technologies USA, LLC -> AVG Technologies)
Task: {EBEB7148-8543-434F-93B4-42C5B00ADBEF} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-18] (Google Inc -> Google LLC)
Task: {F9BE62C0-7BF2-4A79-BD63-0289ED9B79D8} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-08-18] (Google Inc -> Google LLC)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog9 16 C:\Windows\SysWOW64\vsocklib.dll [42296 2019-08-14] (VMware, Inc. -> VMware, Inc.)
Winsock: Catalog9 17 C:\Windows\SysWOW64\vsocklib.dll [42296 2019-08-14] (VMware, Inc. -> VMware, Inc.)
Winsock: Catalog9-x64 16 C:\Windows\system32\vsocklib.dll [46392 2019-08-14] (VMware, Inc. -> VMware, Inc.)
Winsock: Catalog9-x64 17 C:\Windows\system32\vsocklib.dll [46392 2019-08-14] (VMware, Inc. -> VMware, Inc.)
Hosts: Hosts file not detected in the default directory
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{38810782-d0a6-42dd-91ea-40f2d192e1ef}: [DhcpNameServer] 213.46.172.37 213.46.172.36 192.168.10.1
Tcpip\..\Interfaces\{65d3232b-4321-40d1-b5ba-5ecb6945da38}: [DhcpNameServer] 192.168.1.1
FireFox:
========
FF DefaultProfile: wyu97ync.default
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\wyu97ync.default [2019-06-28]
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\mmohk7ir.default-release-1606031550645 [2020-12-01]
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-09-11] (Microsoft Corporation -> Microsoft Corporation)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default [2020-12-05]
CHR DownloadDir: D:\Sportocbhod -Stazene
CHR Notifications: Default -> hxxps://businesscenter.podnikatel.cz; hxxps://gy1m.americklyfer.info; hxxps://m.facebook.com; hxxps://pumpyoursound.com; hxxps://seznamka-krestanska.cz; hxxps://tinder.com; hxxps://www.freefilm.to; hxxps://www.tipsport.cz; hxxps://www.valgardena.it
CHR HomePage: Default -> hxxp://www.google.cz/
CHR Extension: (Prezentace) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-07-29]
CHR Extension: (Dokumenty) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-07-29]
CHR Extension: (Disk Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-24]
CHR Extension: (YouTube) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-07-29]
CHR Extension: (Tabulky) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-07-29]
CHR Extension: (Cloud SWF Player with Drive) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffhhaadihgfcgmlefioblaahpnglnkbk [2019-11-27]
CHR Extension: (Vzdálená plocha Chrome) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2019-12-11]
CHR Extension: (Dokumenty Google offline) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-11-12]
CHR Extension: (Chrome Remote Desktop) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2019-11-27]
CHR Extension: (Social Video Downloader) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\kfnnoammpigcglgbhcbbdpnekbcddahe [2020-05-16]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Gmail) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-24]
CHR Extension: (Chrome Media Router) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-11-23]
CHR HKLM-x32\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD FUEL Service; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Service.exe [351944 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R2 AVG Antivirus; C:\Program Files\AVG\Antivirus\AVGSvc.exe [360992 2020-10-19] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 AVG Firewall; C:\Program Files\AVG\Antivirus\afwServ.exe [1187584 2020-10-19] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 AVG Tools; C:\Program Files\AVG\Antivirus\avgToolsSvc.exe [2749064 2020-10-19] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R3 avgbIDSAgent; C:\Program Files\AVG\Antivirus\aswidsagent.exe [8498112 2020-10-19] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 AvgWscReporter; C:\Program Files\AVG\Antivirus\wsc_proxy.exe [110608 2020-10-19] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\88.0.4324.9\remoting_host.exe [72176 2020-11-17] (Google LLC -> Google Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9057136 2020-11-04] (Microsoft Corporation -> Microsoft Corporation)
R2 RunSwUSB; C:\Windows\runSW.exe [59232 2018-02-07] (Realtek Semiconductor Corp. -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5356848 2019-07-10] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12097024 2019-11-06] (TeamViewer GmbH -> TeamViewer Germany GmbH)
R2 VMwareHostd; C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe [15476144 2019-09-16] (VMware, Inc. -> )
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\NisSrv.exe [2433136 2019-06-08] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1905.4-0\MsMpEng.exe [109896 2019-06-08] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WTService; C:\Windows\system32\atwtusb.exe [579584 2012-07-11] () [File not signed]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AODDriver4.3; C:\Program Files\ATI Technologies\ATI.ACE\Fuel\amd64\AODDriver2.sys [59616 2014-02-11] (Advanced Micro Devices, Inc. -> Advanced Micro Devices)
R1 avgArPot; C:\Windows\System32\drivers\avgArPot.sys [206472 2020-11-27] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgbidsdriver; C:\Windows\System32\drivers\avgbidsdriver.sys [332432 2020-11-27] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgbidsh; C:\Windows\System32\drivers\avgbidsh.sys [247952 2020-11-27] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgbuniv; C:\Windows\System32\drivers\avgbuniv.sys [97424 2020-11-27] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgElam; C:\Windows\System32\drivers\avgElam.sys [16832 2020-11-27] (Microsoft Windows Early Launch Anti-malware Publisher -> AVG Technologies CZ, s.r.o.)
R1 avgKbd; C:\Windows\System32\drivers\avgKbd.sys [42848 2020-11-27] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgMonFlt; C:\Windows\System32\drivers\avgMonFlt.sys [176808 2020-11-27] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgNetHub; C:\Windows\System32\drivers\avgNetHub.sys [521816 2020-11-27] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgRdr; C:\Windows\System32\drivers\avgRdr2.sys [109352 2020-11-27] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgRvrt; C:\Windows\System32\drivers\avgRvrt.sys [84928 2020-11-27] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgSnx; C:\Windows\System32\drivers\avgSnx.sys [851680 2020-11-27] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R1 avgSP; C:\Windows\System32\drivers\avgSP.sys [469896 2020-11-27] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R2 avgStm; C:\Windows\System32\drivers\avgStm.sys [217408 2020-10-19] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
R0 avgVmm; C:\Windows\System32\drivers\avgVmm.sys [326488 2020-11-27] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus.sys [120416 2018-01-12] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.(www.devguru.co.kr))
R3 moufiltr; C:\Windows\System32\drivers\moufiltr.sys [7680 2009-03-08] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
R3 MTsensor; C:\Windows\system32\DRIVERS\ASACPI.sys [17280 2013-05-17] (ASUSTeK Computer Inc. -> )
S3 qcusbnet; C:\Windows\System32\drivers\qcusbnet.sys [428600 2017-03-15] (Microsoft Windows Hardware Compatibility Publisher -> QUALCOMM Incorporated)
R3 RTL8023x64; C:\Windows\System32\drivers\Rtnic64.sys [51712 2018-09-15] (Microsoft Windows -> Realtek Semiconductor Corporation)
R3 RtlWlanu; C:\Windows\System32\drivers\rtwlanu.sys [7148864 2018-04-10] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [213088 2018-01-12] (Samsung Electronics CO., LTD. -> DEVGURU Co., LTD.(www.devguru.co.kr))
S3 TabletFilter; C:\Windows\System32\drivers\TabletFilter.sys [7680 2012-08-15] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
S3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [236352 2019-05-13] (Oracle Corporation -> Oracle Corporation)
S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [174520 2019-05-13] (Oracle Corporation -> Oracle Corporation)
R3 vhidmini; C:\Windows\System32\drivers\walvhid.sys [7552 2009-08-26] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R1 vmkbd3; C:\Windows\system32\DRIVERS\vmkbd.sys [52288 2019-09-16] (VMware, Inc. -> VMware, Inc.)
R2 VMnetBridge; C:\Windows\system32\DRIVERS\vmnetbridge.sys [66368 2019-09-16] (VMware, Inc. -> VMware, Inc.)
R2 vmparport; C:\Windows\system32\DRIVERS\vmparport.sys [49216 2019-09-16] (VMware, Inc. -> VMware, Inc.)
R0 vsock; C:\Windows\System32\DRIVERS\vsock.sys [103224 2019-08-14] (VMware, Inc. -> VMware, Inc.)
R2 vstor2-mntapi20-shared; C:\Windows\SysWow64\drivers\vstor2-x64.sys [52576 2018-02-28] (VMware, Inc. -> VMware, Inc.)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [47496 2019-06-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [337632 2019-06-08] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (NGO -> MBB)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [53984 2019-06-08] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-12-05 21:08 - 2020-12-05 21:12 - 000000000 ____D C:\FRST
2020-12-05 21:05 - 2020-12-05 21:06 - 000000000 ____D C:\rsit
2020-12-05 21:05 - 2020-12-05 21:06 - 000000000 ____D C:\Program Files\trend micro
2020-12-04 20:26 - 2020-12-04 20:26 - 000000916 _____ C:\Users\Public\Desktop\VLC media player.lnk
2020-12-04 20:26 - 2020-12-04 20:26 - 000000916 _____ C:\ProgramData\Desktop\VLC media player.lnk
2020-11-30 21:12 - 2020-11-30 21:12 - 000000914 _____ C:\Users\Public\Desktop\CPUID CPU-Z.lnk
2020-11-30 21:12 - 2020-11-30 21:12 - 000000914 _____ C:\ProgramData\Desktop\CPUID CPU-Z.lnk
2020-11-30 21:12 - 2020-11-30 21:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2020-11-30 21:12 - 2020-11-30 21:12 - 000000000 ____D C:\Program Files\CPUID
2020-11-27 23:41 - 2020-11-27 23:41 - 000000000 ____D C:\Users\Petr\Desktop\New folder
2020-11-27 23:28 - 2020-11-27 23:27 - 000340104 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\avgBoot.exe
2020-11-27 23:28 - 2020-11-27 23:27 - 000217408 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\aswd88e1c6477e3c9a8.tmp
2020-11-22 08:52 - 2020-11-22 08:52 - 000000993 _____ C:\Users\Public\Desktop\Firefox.lnk
2020-11-22 08:52 - 2020-11-22 08:52 - 000000993 _____ C:\ProgramData\Desktop\Firefox.lnk
2020-11-22 08:52 - 2020-11-22 08:52 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2020-11-22 08:52 - 2020-11-22 08:52 - 000000000 ____D C:\Users\Petr\Desktop\Původní data aplikace Firefox
2020-11-22 08:52 - 2020-11-22 08:52 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-11-22 08:50 - 2020-11-22 08:50 - 000334064 _____ (Mozilla) C:\Users\Petr\Downloads\Firefox Installer.exe
2020-11-11 20:36 - 2020-12-01 21:10 - 000000025 _____ C:\Users\Petr\Desktop\New Text Document.txt
2020-11-08 12:39 - 2020-11-08 12:45 - 000085356 _____ C:\Users\Petr\Desktop\Nabidka_spoluprace.pdf
2020-11-08 10:55 - 2020-11-08 10:55 - 000000000 ____D C:\Users\Petr\Desktop\Moje kniha
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2020-12-05 21:06 - 2018-09-15 08:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-12-05 21:02 - 2019-06-24 11:26 - 000000000 ____D C:\Users\Petr\AppData\Roaming\BitTorrent
2020-12-05 20:53 - 2020-07-02 10:15 - 000000000 ____D C:\Users\Petr\Desktop\Bio Snopek
2020-12-05 19:44 - 2018-09-15 08:33 - 000000000 ___HD C:\Program Files\WindowsApps
2020-12-05 19:44 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\AppReadiness
2020-12-05 19:39 - 2018-11-14 18:06 - 000000000 ____D C:\Windows\system32\SleepStudy
2020-12-04 23:39 - 2019-08-18 17:50 - 000003346 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-12-04 23:39 - 2019-08-18 17:50 - 000003122 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-12-04 23:39 - 2019-06-10 14:18 - 000000000 ____D C:\Windows\system32\Tasks\AVAST Software
2020-12-04 23:39 - 2019-06-08 09:14 - 000003250 _____ C:\Windows\system32\Tasks\Antivirus Emergency Update
2020-12-04 23:39 - 2019-06-08 06:23 - 000002848 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-936610497-460076368-2508702492-500
2020-12-04 20:33 - 2019-07-30 09:44 - 000000000 ____D C:\Users\Petr\AppData\Roaming\vlc
2020-12-04 20:21 - 2019-08-18 17:51 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-12-01 21:09 - 2019-06-08 09:33 - 000000000 ____D C:\Users\Petr\AppData\LocalLow\Mozilla
2020-12-01 21:04 - 2019-06-08 09:33 - 000000000 ____D C:\ProgramData\Mozilla
2020-11-27 23:28 - 2019-06-08 09:13 - 000326488 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgVmm.sys
2020-11-27 23:28 - 2018-09-15 08:33 - 000000000 ___HD C:\Windows\ELAMBKUP
2020-11-27 23:27 - 2020-10-19 07:26 - 000176808 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgMonFlt.sys
2020-11-27 23:27 - 2020-04-07 13:36 - 000521816 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgNetHub.sys
2020-11-27 23:27 - 2019-06-08 09:13 - 000851680 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSnx.sys
2020-11-27 23:27 - 2019-06-08 09:13 - 000469896 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgSP.sys
2020-11-27 23:27 - 2019-06-08 09:13 - 000332432 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsdriver.sys
2020-11-27 23:27 - 2019-06-08 09:13 - 000247952 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbidsh.sys
2020-11-27 23:27 - 2019-06-08 09:13 - 000206472 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgArPot.sys
2020-11-27 23:27 - 2019-06-08 09:13 - 000109352 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRdr2.sys
2020-11-27 23:27 - 2019-06-08 09:13 - 000097424 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgbuniv.sys
2020-11-27 23:27 - 2019-06-08 09:13 - 000084928 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgRvrt.sys
2020-11-27 23:27 - 2019-06-08 09:13 - 000042848 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgKbd.sys
2020-11-27 23:27 - 2019-06-08 09:13 - 000016832 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\avgElam.sys
2020-11-25 07:39 - 2019-06-08 09:42 - 000000000 ____D C:\Users\Petr\AppData\Local\CrashDumps
2020-11-24 09:00 - 2020-04-07 13:36 - 000518744 _____ (AVG Technologies CZ, s.r.o.) C:\Windows\system32\Drivers\asw959cc9eb68b8e5b5.tmp
2020-11-23 12:36 - 2019-07-26 17:55 - 000006006 _____ C:\Users\Petr\Desktop\Literatura.txt
2020-11-23 12:26 - 2020-09-26 09:04 - 000000000 ____D C:\Users\Petr\AppData\Roaming\MuseScore
2020-11-22 08:52 - 2019-07-30 09:11 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-11-22 08:52 - 2019-06-28 08:46 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-11-17 19:24 - 2019-06-08 08:36 - 000000000 ____D C:\Users\Petr
2020-11-14 20:41 - 2019-06-08 17:02 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2020-11-13 18:10 - 2018-11-14 18:16 - 000845084 _____ C:\Windows\system32\PerfStringBackup.INI
2020-11-13 18:10 - 2018-09-15 08:31 - 000000000 ____D C:\Windows\INF
2020-11-13 18:05 - 2019-12-11 09:57 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2020-11-13 18:04 - 2018-09-15 08:31 - 000000107 _____ C:\Windows\win.ini
2020-11-13 18:03 - 2018-11-14 18:07 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-11-13 18:02 - 2018-09-15 07:09 - 000524288 _____ C:\Windows\system32\config\BBI
2020-11-13 18:00 - 2018-09-15 08:33 - 000000000 ____D C:\Windows\LiveKernelReports
2020-11-08 10:56 - 2020-09-27 13:37 - 000000000 ____D C:\Users\Petr\Desktop\Osobní rozvoj
2020-11-08 10:54 - 2020-04-14 06:51 - 000000000 ____D C:\Users\Petr\Desktop\mOJE
2020-11-08 10:53 - 2020-01-16 14:07 - 000000000 ____D C:\Users\Petr\Desktop\Recepty
2020-11-08 10:52 - 2020-10-31 18:39 - 000004383 _____ C:\Users\Petr\Desktop\Cheescake.txt
2020-11-08 10:34 - 2020-08-13 18:24 - 000000000 ____D C:\Users\Petr\Desktop\Běháníčko
2020-11-08 10:34 - 2019-06-08 08:37 - 000000000 ____D C:\Users\Petr\AppData\Local\Packages
2020-11-07 21:06 - 2020-11-01 18:15 - 000000000 ____D C:\Users\Petr\Desktop\Notino
==================== Files in the root of some directories ========
2019-08-16 12:55 - 2009-10-23 22:00 - 005811712 _____ (reFX) C:\Program Files (x86)\Nexus.dll
2019-06-30 17:08 - 2019-06-30 17:08 - 000472596 _____ () C:\Users\Petr\AppData\Roaming\2019-06-30.18.08.02.gpx
2019-06-30 17:05 - 2019-06-30 16:56 - 001285247 _____ () C:\Users\Petr\AppData\Roaming\com.huami.watch.wearservices
2019-08-09 16:42 - 2019-08-09 16:42 - 000000203 _____ () C:\Users\Petr\AppData\Roaming\DESKTOP-UDNBT74.MTBF.txt
2020-01-02 21:32 - 2020-03-16 15:03 - 000001456 _____ () C:\Users\Petr\AppData\Local\Adobe Save for Web 13.0 Prefs
2019-08-09 16:43 - 2019-08-09 16:43 - 000003584 _____ () C:\Users\Petr\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2020-01-03 09:54 - 2020-01-15 18:54 - 000006952 _____ () C:\Users\Petr\AppData\Local\krita.log
2020-01-15 18:54 - 2020-01-15 18:54 - 000000039 _____ () C:\Users\Petr\AppData\Local\kritadisplayrc
2020-01-03 09:54 - 2020-01-15 18:54 - 000016969 _____ () C:\Users\Petr\AppData\Local\kritarc
2019-07-27 10:19 - 2020-07-02 10:20 - 000000128 _____ () C:\Users\Petr\AppData\Local\PUTTY.RND
2020-01-13 07:53 - 2020-01-13 07:53 - 000000017 _____ () C:\Users\Petr\AppData\Local\resmon.resmoncfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-12-2020
Ran by Petr (05-12-2020 21:17:38)
Running from D:\Sportocbhod -Stazene
Windows 10 Pro Version 1809 17763.615 (X64) (2019-06-08 07:30:58)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-936610497-460076368-2508702492-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-936610497-460076368-2508702492-503 - Limited - Disabled)
Guest (S-1-5-21-936610497-460076368-2508702492-501 - Limited - Disabled)
Petr (S-1-5-21-936610497-460076368-2508702492-1002 - Administrator - Enabled) => C:\Users\Petr
WDAGUtilityAccount (S-1-5-21-936610497-460076368-2508702492-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: AVG Antivirus (Enabled - Up to date) {18A975F9-A60C-37D8-E30B-4BEF31AD3411}
AS: AVG Antivirus (Enabled - Up to date) {A3C8941D-8036-3856-D9BB-709D4A2A7EAC}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: AVG Antivirus (Enabled) {2092F4DC-EC63-3680-C854-E2DACF7E736A}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
Adobe Dimension (HKLM-x32\...\ESHR_3_0) (Version: 3.0 - Adobe Systems Incorporated)
Adobe Illustrator 2019 (HKLM-x32\...\ILST_23_0_3) (Version: 23.0.3 - Adobe Systems Incorporated)
Adobe InDesign 2020 (HKLM-x32\...\IDSN_15_0_1) (Version: 15.0.1 - Adobe Systems Incorporated)
Adobe Lightroom Classic (HKLM-x32\...\LTRM_8_3) (Version: 8.3 - Adobe Systems Incorporated)
Adobe Photoshop CC 2019 (HKLM-x32\...\PHSP_20_0_4) (Version: 20.0.4 - Adobe Systems Incorporated)
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
ASIO4ALL (HKLM-x32\...\ASIO4ALL) (Version: 2.14 - Michael Tippach)
AVG Internet Security (HKLM-x32\...\AVG Antivirus) (Version: 20.9.3152 - AVG Technologies)
BitTorrent (HKU\S-1-5-21-936610497-460076368-2508702492-1002\...\BitTorrent) (Version: 7.10.5.45785 - BitTorrent Inc.)
Blender (HKLM\...\{A6B045E1-6F1C-4FCD-936A-EE272B675EC8}) (Version: 2.81.1 - Blender Foundation)
CPUID CPU-Z 1.94 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.94 - CPUID, Inc.)
Crazybump (remove only) (HKLM-x32\...\Crazybump) (Version: - )
DxO PhotoLab 2 (HKLM\...\{58F7A087-91FE-4ECA-B60F-B0DB935CB9C6}) (Version: 2.3.0 - DxO)
DxO PhotoLab 2 plug-in for Adobe Lightroom (HKLM-x32\...\{2E2FA6EE-39A0-4022-B125-DD0036195E46}) (Version: 1.0.46 - DxO Labs)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Fabfilter Total Bundle 2019 (HKLM\...\{01E4DDF0-2822-43CD-ACEF-19536FEB1FFD}) (Version: 2019 - Fabfilter)
FileZilla Client 3.48.1 (HKU\S-1-5-21-936610497-460076368-2508702492-1002\...\FileZilla Client) (Version: 3.48.1 - Tim Kosse)
FL Studio 20 (HKLM-x32\...\FL Studio 20) (Version: - Image-Line)
FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version: - Image-Line)
Flexibooks 4.6.1 (64 bit) (HKLM\...\{D36F5D15-E633-45E7-803B-4FC66F183092}) (Version: 4.6.1 - Fraus Media s.r.o. 2016)
Free PDF Compressor (HKLM-x32\...\{BFA49A14-EC18-4071-BC13-B43043B09222}_is1) (Version: - freepdfcompressor.com)
Git version 2.27.0 (HKLM\...\Git_is1) (Version: 2.27.0 - The Git Development Community)
GoldWave v6.51 (HKLM\...\GoldWave v6.51) (Version: 6.51 - GoldWave Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 87.0.4280.88 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.51 - Google LLC) Hidden
Chrome Remote Desktop Host (HKLM-x32\...\{C98E9420-C6FD-434C-B6BB-B87E4487B437}) (Version: 88.0.4324.9 - Google Inc.)
iZotope Ozone 8 (HKLM\...\Ozone 8_is1) (Version: 8.0.2 - iZotope)
Java(TM) SE Development Kit 12.0.1 (64-bit) (HKLM\...\{0D60E96D-0B74-55A5-ACA5-0F6786FDF256}) (Version: 12.0.1.0 - Oracle Corporation)
JetBrains PhpStorm 2018.3.5 (HKLM-x32\...\PhpStorm 2018.3.5) (Version: 183.5912.26 - JetBrains s.r.o.)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Marvelous Designer 9 Enterprise (HKLM-x32\...\Marvelous Designer 9 Enterprise) (Version: - CLO Virtual Fashion Inc.)
Microsoft Office Professional 2019 - cs-cz (HKLM\...\Professional2019Retail - cs-cz) (Version: 16.0.13328.20356 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.22.27821 (HKLM-x32\...\{6361b579-2795-4886-b2a8-53d5239b6452}) (Version: 14.22.27821.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.22.27821 (HKLM-x32\...\{5bfc1380-fd35-4b85-9715-7351535d077e}) (Version: 14.22.27821.0 - Microsoft Corporation)
Mozilla Firefox 83.0 (x64 cs) (HKLM\...\Mozilla Firefox 83.0 (x64 cs)) (Version: 83.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 83.0 - Mozilla)
MuseScore 3 (HKLM\...\{1D5EDD9A-B856-4088-B06B-BB7488ED0C5D}) (Version: 3.5.0.13199 - Werner Schweer and Others)
Native Instruments Kontakt (HKLM-x32\...\Native Instruments Kontakt) (Version: 6.2.2.51 - Native Instruments)
Native Instruments Service Center (HKLM-x32\...\Native Instruments Service Center) (Version: 2.6.0.137 - Native Instruments)
Nicky Romero Kickstart 1.0.9 (HKLM\...\Kickstart_is1) (Version: 1.0.9 - Nicky Romero)
Nik Collection (HKLM-x32\...\Nik Collection) (Version: 2.0.4 - DxO)
Node.js (HKLM\...\{E3C2DC65-9DCA-4422-BDDE-0489B89A16D2}) (Version: 10.16.0 - Node.js Foundation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.13328.20340 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.13328.20340 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.13328.20340 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.13328.20340 - Microsoft Corporation) Hidden
PuTTY release 0.72 (64-bit) (HKLM\...\{8EFBA1C7-A8B8-4FB9-BEC0-6CEC6C7145DE}) (Version: 0.72.0.0 - Simon Tatham)
Python 3.7.4 (32-bit) (HKU\S-1-5-21-936610497-460076368-2508702492-1002\...\{b66087e3-469e-4725-8b9b-f0981244afea}) (Version: 3.7.4150.0 - Python Software Foundation)
Python 3.7.4 Add to Path (32-bit) (HKLM-x32\...\{53C4AA04-FA4C-49B0-AC2E-E7134655B041}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Core Interpreter (32-bit) (HKLM-x32\...\{A56641A4-58A7-471F-A0AE-A6633F4FA2BB}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Development Libraries (32-bit) (HKLM-x32\...\{4816C66E-55BF-4A8D-A5CE-FEAC36F4D192}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Documentation (32-bit) (HKLM-x32\...\{BB344FE7-A97C-44F0-BAF4-AA0C7D6359BA}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Executables (32-bit) (HKLM-x32\...\{CE095720-010D-4605-872E-EF3673551DF0}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 pip Bootstrap (32-bit) (HKLM-x32\...\{8DA900ED-69C5-41D9-8F85-416FBE1C89CB}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Standard Library (32-bit) (HKLM-x32\...\{236BB597-B9C7-4084-BD77-0DCCDA0D947F}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Tcl/Tk Support (32-bit) (HKLM-x32\...\{8F959BE9-8184-4C35-AB2A-87401C0279EB}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Test Suite (32-bit) (HKLM-x32\...\{D41CCB8E-4FD1-4EBF-9790-5B2218B5C5DD}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
Python 3.7.4 Utility Scripts (32-bit) (HKLM-x32\...\{DE70FA71-6C2C-48C2-9B54-4049CD25154C}) (Version: 3.7.4150.0 - Python Software Foundation) Hidden
reFX Nexus VSTi RTAS v2.2.0 (HKLM-x32\...\reFX Nexus_is1) (Version: - )
Sonic Academy Kick 2 (HKLM\...\{6B3B76A8-F156-430C-B02E-F88A854326FB}) (Version: 1.0.5 - Sonic Academy)
Sylenth1 v2.21 (HKLM-x32\...\Sylenth1_is1) (Version: - )
Sylenth1 version 2.2.1 (HKLM-x32\...\{149CBB8A-19FE-4574-99BE-657926BBE08B}_is1) (Version: 2.2.1 - Lennar Digital)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.0.8397 - TeamViewer)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.22a - Ghisler Software GmbH)
TP-Link Archer T4U Driver (HKLM-x32\...\{4805DC86-DEBF-4A5C-B9C4-291FA6441548}) (Version: 2.1.0 - TP-Link)
TP-Link Wireless Adapter WPS Tool (HKLM-x32\...\{685EFF87-B126-49E4-8213-70C56625C5B5}) (Version: 1.0.0.1 - TP-Link)
United States-Dvorak - Custom (HKLM\...\{3C93BE33-83AE-4F04-8EB3-7325A8886593}) (Version: 1.0.3.40 - Company)
USB Tablet Manager (HKLM\...\RmTablet) (Version: 4.16 - )
VEGAS Pro 16.0 (HKLM\...\{D1319B1E-615E-11E9-8C4C-00155D6302F2}) (Version: 16.0.424 - VEGAS)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN)
VMware Workstation (HKLM\...\{95339CED-ADD1-48FA-94DF-72E64B7893D6}) (Version: 15.5.0 - VMware, Inc.)
VOCALOID Amy (HKLM-x32\...\{D388A186-C294-4384-AC21-D310CDA10A81}) (Version: 5.0.1 - Yamaha Corporation)
VOCALOID5 Editor (HKLM\...\{BA28650F-9AFC-4086-BAB7-77DB904DE9F6}) (Version: 5.2.1 - Yamaha Corporation)
Voxengo SPAN (HKLM\...\Voxengo SPAN_is1) (Version: 3.5 - Voxengo)
WinHTTrack Website Copier 3.49-2 (x64) (HKLM\...\WinHTTrack Website Copier_is1) (Version: 3.49.2 - HTTrack)
Packages:
=========
Mapy.cz -> C:\Program Files\WindowsApps\949FFEAB.Mapy.cz_7.0.10.0_x64__refxrrjvvv3cw [2020-09-03] (Seznam.cz a.s.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-06-08] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-06-08] (Microsoft Corporation) [MS Ad]
Photos Media Engine Add-on -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-02-08] (Microsoft Corporation)
RemindMe for Windows -> C:\Program Files\WindowsApps\55648JonathanPierce.RemindMeforWindows_2.1.1.0_neutral__anp9h61w2e7b0 [2019-06-21] (Jonathan Pierce)
SpeedyPainter -> C:\Program Files\WindowsApps\21599AndreaBuzzelli.SpeedyPainter_3.6.3.0_x86__51k2p8gme1gmp [2020-01-03] (Andrea Buzzelli)
Ubuntu 18.04 on Windows -> C:\Program Files\WindowsApps\CanonicalGroupLimited.Ubuntu18.04onWindows_2020.1804.7.0_x64__79rhkp1fndgsc [2020-03-10] (Canonical Group Limited)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-936610497-460076368-2508702492-1002_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Petr\AppData\Local\Microsoft\OneDrive\19.103.0527.0003\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-936610497-460076368-2508702492-1002_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Petr\AppData\Local\Microsoft\OneDrive\19.103.0527.0003\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-936610497-460076368-2508702492-1002_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Petr\AppData\Local\Microsoft\OneDrive\19.103.0527.0003\amd64\FileSyncShell64.dll => No File
ShellIconOverlayIdentifiers: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2020-10-19] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
ContextMenuHandlers2-x32: [VMDiskMenuHandler] -> {271DC252-6FE1-4D59-9053-E4CF50AB99DE} => C:\Program Files (x86)\VMware\VMware Workstation\vmdkShellExt.dll [2019-09-16] (VMware, Inc. -> VMware, Inc.)
ContextMenuHandlers2: [VMDiskMenuHandler64] -> {E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC} => C:\Program Files (x86)\VMware\VMware Workstation\x64\vmdkShellExt64.dll [2019-09-16] (VMware, Inc. -> VMware, Inc.)
ContextMenuHandlers3: [00avg] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [AVG] -> {472083B1-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVG\Antivirus\ashShell.dll [2020-10-19] (AVG Technologies USA, LLC -> AVG Technologies CZ, s.r.o.)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Vzdálená plocha Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=gbchcmhmhahfdphkhkmpfmihenigjmpp
ShortcutWithArgument: C:\Users\Petr\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default
==================== Loaded Modules (Whitelisted) =============
2020-06-26 19:41 - 2017-10-26 19:59 - 000195072 _____ () [File not signed] C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\DC_WFF.dll
2020-06-26 19:41 - 2018-01-02 17:17 - 001680384 _____ () [File not signed] C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\WJRtl.dll
2014-02-11 05:08 - 2014-02-11 05:08 - 000817152 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Device.dll
2015-11-04 15:43 - 2015-11-04 15:43 - 000214528 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.PerformanceTuning.dll
2015-11-04 15:43 - 2015-11-04 15:43 - 000127488 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Container.Wlan.dll
2015-11-04 15:43 - 2015-11-04 15:43 - 000102400 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Fuel.Proxy.Native.dll
2014-02-11 05:08 - 2014-02-11 05:08 - 003650560 _____ () [File not signed] C:\Program Files\ATI Technologies\ATI.ACE\Fuel\Platform.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000031232 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\A4.Foundation\5d4ea6255ffba53315d56b1630e59bbc\A4.Foundation.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000022528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Actions5dc83b46#\d71765c013f75e50009e851d4cb1f378\AEM.Actions.CCAA.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.0a1309f7#\c8ca157309a4b4a62af27f7ffd293f5d\AEM.Plugin.EEU.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.2b6a6775#\e10b18826943eb8e1ffb188e11b4a172\AEM.Plugin.Hotkeys.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000016384 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.54d8abe3#\9509f9978442969853d64b189bd3db8b\AEM.Plugin.DPPE.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000282112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.5d945b6b#\4f7d4c5e5e2c5953cec99a4aba6c02c0\AEM.Plugin.Source.Kit.Server.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000014848 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.674d2b8a#\81bd6597ccfe5976b5eb9e5ea09558d6\AEM.Plugin.WinMessages.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.88aba5d2#\f7b70d0834adb554dcbc4d87a3e3e053\AEM.Plugin.REG.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000011776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.GD.Shared\6aa52a49657dac1e5b10fca955dc1f69\AEM.Plugin.GD.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Server.Shared\7d2a075f3660a1a9579b8882235986d4\AEM.Server.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000267776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Server\a625fc8a565bbbc99bbaa24afdc0be99\AEM.Server.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000055808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\APM.Foundation\868e28e2ba7488db3274ce26b08e3d25\APM.Foundation.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000122880 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ATICCCom\bdaec1a1c34c48f3a4ecdcf8d7a4e418\ATICCCom.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000204288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CCC.Implementation\a123ee1677d9017af946f9c7fdc61cb1\CCC.Implementation.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000151040 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.2042675f#\a550702edef11033ce08d5f4361f03cd\CLI.Aspect.CPUPStates.Fuel.Dashboard.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000128000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3399d0ec#\8fbf56f71836a88cb28fdf94b402ca6b\CLI.Aspect.CustomFormats.Graphics.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.37d3d968#\6f59cd8889af9342ee9404cee9c067fc\CLI.Aspect.AMDHome.Graphics.Shared.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000045568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.382a3def#\5fde48f1117a55e0f2683b91ea55576c\CLI.Aspect.AMDOverDrive.Platform.Shared.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000107008 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3a6f1658#\cf231733babfa13b52e3caf6a7e138fc\CLI.Aspect.TransCode.Graphics.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000209920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4542c692#\1a886ee65aa7ecdd18cd0f68a4421c95\CLI.Aspect.DeviceCRT.Graphics.Shared.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4bbb0755#\7f2fe96176912d60e91e81ac859a0680\CLI.Aspect.TransCode.Graphics.Dashboard.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000152576 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4ede500c#\79ed373e398b07c59a951962b452f7fe\CLI.Aspect.DPPE.Fuel.Dashboard.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.52c6dbaa#\2b85fb57c525044b902c94d1d849fdc0\CLI.Aspect.FPS.Graphics.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000111616 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.5a772e69#\ce54023a1707249ab4806a72bc6358d2\CLI.Aspect.Fets.Fuel.Dashboard.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000070656 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.648b65fc#\ecd2dc3fdf6559f7bbabda558e4176a1\CLI.Aspect.WiFi.Fuel.Dashboard.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000263168 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.73911eb5#\273bd516bfaf4c3a09f01dd2c143fdbe\CLI.Aspect.WirelessDisplay.Graphics.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000365056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.7ec2db45#\28135732e4cf6343cdf587bc35cc7e42\CLI.Aspect.DeviceDFP.Graphics.Shared.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000064000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8350f5c6#\e60291a2ebf9d736e08101b2b7cdba87\CLI.Aspect.UpdateNotification.Graphics.Runtime.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000678912 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.846fa813#\f6180eb10efabc52cbdf122b154c04da\CLI.Aspect.MMVideo.Graphics.Dashboard.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000320512 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.87ad5c75#\e65abb7bdc97ff79f987f39b119ab68e\CLI.Aspect.OverDrive5.Graphics.Dashboard.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000745472 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8d333b6b#\52494d2e2918a8ed3eb03708023bdb60\CLI.Aspect.Radeon3D.Graphics.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000449024 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8e996306#\775b1334995bedd2c69755a3203f154f\CLI.Aspect.CrossDisplay.Graphics.Dashboard.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000089088 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9cd1e9e7#\d94e7bd1622d387a3fc37177fc21398a\CLI.Aspect.FPS.Graphics.Dashboard.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000158208 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a0ae52bc#\3846763baeca813ad206e12c32903302\CLI.Aspect.DeviceLCD.Graphics.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000057856 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a6cd7fff#\11ebc3d5a3b7c86f6ab045b0e35c4000\CLI.Aspect.FPS.Graphics.Runtime.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000082944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a765109e#\205221385edd42ff38c0e83903e02f59\CLI.Aspect.UpdateNotification.Graphics.Dashboard.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000462336 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.acb9d930#\fea6602708f01f2aa4acfd11ad7be5bf\CLI.Aspect.DeviceProperty.Graphics.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000086528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ae5e117c#\bfc6a0efd98376e961bfe0479202a2c4\CLI.Aspect.DisplaysColour2.Graphics.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000067072 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b0a7c1fb#\121fd5c67c80f07aca66ca9a1b82f8e8\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000023552 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c2a2b491#\b33005a5463c352f9264dcb4508d42f5\CLI.Aspect.WiFi.Fuel.Shared.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000340992 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c7aaa0f8#\375cad621796651ed94004692dff377c\CLI.Aspect.OverDrive5.Graphics.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c854b457#\a43805534beb033091f26ec93005982e\CLI.Aspect.HotkeysHandling.Graphics.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000081408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.caa5cc64#\18a9eef1f5f7cfbd480314a3f11f0356\CLI.Aspect.Fets.Fuel.Shared.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 001315840 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d7e090dc#\b34f606dcac1207cecd8d2ebf87f7371\CLI.Aspect.User.Fuel.Dashboard.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000276480 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e8635fc7#\6635aed97d6ed5e0ace886c326dcccce\CLI.Aspect.InfoCentre.Graphics.Dashboard.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 003312640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e9fd7406#\108b5740b81391d3e447434666a0aca1\CLI.Aspect.Radeon3D.Graphics.Dashboard.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000240640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.eda8935e#\8734b717e9c55c62ccfb966ed140bc19\CLI.Aspect.MMVideo.Graphics.Shared.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000047616 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ef3eaa4d#\5bcadf435942e2635b38d892ad339525\CLI.Aspect.TransCode.Graphics.Runtime.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000070656 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.efd83192#\7214df2b24bef5e3699c2ce380befce2\CLI.Aspect.CPUPStates.Fuel.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000057856 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f45bd021#\a9e5f256403a501d076450eea1d8a4ce\CLI.Aspect.DPPE.Fuel.Shared.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000050688 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f480a2f3#\c01266d655dd972b6afd9a261dc78524\CLI.Aspect.UpdateNotification.Graphics.Shared.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000051200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Runtime\66eb872755585634837fe7e41da494c0\CLI.Caste.A4.Runtime.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Shared\8af238caf30cec99c49066235d438ef8\CLI.Caste.A4.Shared.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Af820fedc#\2582b62261b1e69aeb52e0ee1651acae\CLI.Caste.A4.Dashboard.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F24de14fe#\bb9c7e903d116b9218c5f0ab1ad37e73\CLI.Caste.Fuel.Shared.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000311808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F36b07a2b#\379125b45a3e9af7cfd4a618c73580cb\CLI.Caste.Fuel.Runtime.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Ff3085433#\a92e4b1f0c61d360cff04cc9508c8c26\CLI.Caste.Fuel.Dashboard.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60338cc0#\c26c3cc2e788d49ded3a5348cd1e04be\CLI.Caste.Graphics.Runtime.Shared.Private.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 001555968 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gd9d9b43b#\8659b27603d849438fa79a4f3ca0ea3c\CLI.Caste.Graphics.Dashboard.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000587776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gee7d2dbc#\6003ff0af897409a8190ce2697a28d31\CLI.Caste.Graphics.Dashboard.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000045056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H18c99613#\1f5beabbb0469016239b8c3cf40aa220\CLI.Caste.HydraVision.Runtime.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H92ba4e46#\f89fb6816b1bf73c860ba4f0b4606e8d\CLI.Caste.HydraVision.Shared.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Hbb906c0b#\a2e5a637e216efebbf611d405a608e8e\CLI.Caste.HydraVision.Dashboard.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pac40511b#\f188b13d4f0e5bdb248f9d71cf33b446\CLI.Caste.Platform.Shared.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000044032 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pdb36d56e#\a1b379ae1ff43b1862f2ccea216695a5\CLI.Caste.Platform.Runtime.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000024064 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pfeefa2b6#\f66504fd4a20c2951ea20e175387dd35\CLI.Caste.Platform.Dashboard.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000350720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Combinee84f0351#\20f2dc5e4358cf2a4fb7ea6604de6cda\CLI.Combined.Fusion.Aspects.Runtime.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone1b4a8c97#\7abc6e3995cc9aa516ff62862a7ee69a\CLI.Component.Runtime.Shared.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000901632 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone26c9c557#\c7debcd97e007576de77ad8ceb298fe5\CLI.Component.Systemtray.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000173568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone29e547cc#\3994bda19a50777bfcbb08bfb68cfa96\CLI.Component.Dashboard.ProfileManager2.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000151040 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone59f353b4#\970477eabcbab02bbbe916bc3ab89b1f\CLI.Component.Runtime.Shared.Private.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componeb4d0485c#\ed773608c0ee4551adc523697f954b9d\CLI.Component.Runtime.Extension.EEU.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 001609728 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componec89c3bec#\3e4eb2e48daf0a615063b409655d4a22\CLI.Component.Dashboard.Shared.Private.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000018432 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componef1fd67b2#\1dbc34a116ab6d9d4e19d1636d06aedb\CLI.Component.Client.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000085504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componef4cf054f#\16014f7250636c8b2709f9cd4307a5d4\CLI.Component.Dashboard.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000089600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat3d5d3945#\bd5e5086615aab2763ad7d681bb7a011\CLI.Foundation.Private.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000061440 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat60cdf5df#\b405b5c4c2f7fc30c1c5ad2fbff72dd1\CLI.Foundation.XManifest.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000091136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat619559bd#\6031f82f45a082615ec4b1b65d127bcc\CLI.Foundation.CoreAudioAPI.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 001079808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundatd3771151#\e90772b99755299180c0bad27bc429ca\CLI.Foundation.Client.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000301568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundation\4c75d7459560f331a62182f80be38f39\CLI.Foundation.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Foundation\4d771441c9d46d253951dda4bd1968de\DEM.Foundation.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000115200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0601\d518a9a37efa7ac98a7012939f9092ef\DEM.Graphics.I0601.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000015360 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics\59ff492e366c451e7dc710ca1325e01e\DEM.Graphics.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Fuel.Foundation\7b0c7d9cbdc1c7804d7798dae7b0622c\Fuel.Foundation.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000296960 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundat03490438#\262f0fce9f4957dacea0ae581a928699\LOG.Foundation.Implementation.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000150016 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundat5023f8e7#\1dde3d1c990fc0ba5de7b18a406cfb2d\LOG.Foundation.Private.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000087552 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundatcaafa75b#\7435fede8117ad0a17b639abd07117d2\LOG.Foundation.Implementation.Private.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundation\7f54331bc2bb0aa1456040890e085eb6\LOG.Foundation.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\MOM.Foundation\e2c76708919639ca324826bc8527b3fc\MOM.Foundation.ni.dll
2019-08-17 13:18 - 2019-08-17 13:18 - 000402944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\MOM.Implementation\8cfbadd38e318595ac58e10e8b3e143d\MOM.Implementation.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000055296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\NEWAEM.Foundation\9ada21789d711cc29252ff8ef5522f2d\NEWAEM.Foundation.ni.dll
2015-11-04 15:40 - 2015-11-04 15:40 - 000004608 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiamenu.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000897024 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ADL.Foundation\51aef2381493db28c8b17b0cb83dc308\ADL.Foundation.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000256000 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\APM.Server\a79c770e05c8136b57873756c4e19158\APM.Server.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000298496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9b707b25#\aa771f2330179312b1562558f842afb9\CLI.Aspect.DeviceProperty.Graphics.Runtime.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 001654272 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.aa59351a#\f11ece30e6d653d70c0126e63491d826\CLI.Aspect.DeviceProperty.Graphics.Dashboard.Shared.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 006336512 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e6d9f3a8#\c4a8fff6cf7315eb63599406460543e9\CLI.Aspect.DeviceDFP.Graphics.Dashboard.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 008027648 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Combine0616f305#\eaddd4a2e1e44c714bea598e7ad20ae9\CLI.Combined.Graphics.Aspects1.Dashboard.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 001160192 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Combine7332395e#\e991d67ef250ab502cf85a9fb228f3e7\CLI.Combined.Graphics.Aspects2.Runtime.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000136704 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone168638d1#\4a5d71f37d755aac008619b74c276f79\CLI.Component.Client.Shared.Private.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000234496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone6692ca50#\14fb425fec283f21ba3053c9c10753f4\CLI.Component.Runtime.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000929280 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone6bf88b08#\4b7e3cc41650c0abaa2b2cdd99827579\CLI.Component.Dashboard.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000016896 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0703\1a32bdc1ca115d71ac6fe9cfb3611d63\DEM.Graphics.I0703.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0706\eb8da15670c9abe091c1ef2a287f0024\DEM.Graphics.I0706.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000084480 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0709\183b5c90087dcfb9323aa8ac0aa10d8d\DEM.Graphics.I0709.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000012288 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0712\7cd85ab387b8db2e2220a386b7c7201f\DEM.Graphics.I0712.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000018432 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0804\cf388238f29d9107f0452cf41e201af5\DEM.Graphics.I0804.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0805\04833bf8903a32dc824c4358fdd4a8c5\DEM.Graphics.I0805.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0812\a03c298c455e30003ebeab8f7164a538\DEM.Graphics.I0812.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0906\93f4dd749c69d87f8ab2484427b00320\DEM.Graphics.I0906.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000014336 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0912\8a96bf59b5c27c3f933a32792f045b9a\DEM.Graphics.I0912.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 000035840 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I1010\49d7f60c7e41859e8c763091780c3d5a\DEM.Graphics.I1010.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 001139200 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Localizatio01dbc1c0#\9dd61e84120413cd313e696f9137c8ff\Localization.Foundation.Private.ni.dll
2019-08-17 13:18 - 2019-08-17 13:18 - 000244224 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ResourceMan446ca0e5#\0de9190bf8ae52b6605363ba10616981\ResourceManagement.Foundation.Implementation.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000023552 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ResourceManf163905a#\1977f8ccc188e2a597a5b8403b30e28c\ResourceManagement.Foundation.Private.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000091648 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ec8786e5#\41d4f3156263a0224a16b0bdfe5559fc\CLI.Aspect.AMDHome.Graphics.Dashboard.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 002845696 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60a7b4d1#\844bddba321218aa4f6f60c114172cf0\CLI.Caste.Graphics.Shared.ni.dll
2019-08-17 13:17 - 2019-08-17 13:17 - 003268608 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G962aa464#\dbf1208bbbea04a70edba7da8ce54075\CLI.Caste.Graphics.Runtime.ni.dll
2019-06-08 09:40 - 2019-02-21 17:00 - 000078336 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 000335360 _____ (Microsoft) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.W8090224c#\0adfdcd0494922ece68df6355bfbc711\Microsoft.WindowsAPICodePack.ni.dll
2019-08-17 13:16 - 2019-08-17 13:16 - 002546688 _____ (Microsoft) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Wfbf9373c#\400ff6d92c9a3a6df238c301265fa4be\Microsoft.WindowsAPICodePack.Shell.ni.dll
2020-06-26 19:41 - 2017-10-26 19:59 - 000557056 _____ (Realtek Semiconductor Corp.) [File not signed] C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\RtlLib.dll
2020-06-26 19:41 - 2017-10-26 19:59 - 000200704 _____ (Realtek) [File not signed] C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\IpLib.dll
2020-06-26 19:41 - 2017-10-26 19:59 - 000272384 _____ (Realtek) [File not signed] C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\RtlIhvOid.dll
2020-06-26 19:41 - 2017-10-26 19:59 - 001122304 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\LIBEAY32.dll
2019-12-20 12:17 - 2019-12-20 12:17 - 005842040 _____ (The Qt Company Oy -> The Qt Company Ltd.) [File not signed] C:\Program Files\MuseScore 3\bin\Qt5Core.dll
2019-12-03 21:49 - 2019-12-03 21:49 - 003470800 _____ (The Qt Company Oy -> The Qt Company Ltd.) [File not signed] C:\Program Files\MuseScore 3\bin\Qt5Qml.dll
2019-12-03 21:52 - 2019-12-03 21:52 - 003462608 _____ (The Qt Company Oy -> The Qt Company Ltd.) [File not signed] C:\Program Files\MuseScore 3\bin\Qt5Quick.dll
2020-06-26 19:41 - 2017-10-26 19:59 - 001715200 _____ (TP-Link Technologies Co., Ltd) [File not signed] C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\language\English(United_States)\nicLan.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) ==========
HKU\S-1-5-21-936610497-460076368-2508702492-1002\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://securedsearch.lavasoft.com/?pr=vmn&id=webcompa&ent=hp_WCYID10444__190624
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-09-11] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-11-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-11-01] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-936610497-460076368-2508702492-1002\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-936610497-460076368-2508702492-1002\...\webcompanion.com -> hxxp://webcompanion.com
2020-01-17 11:04 - 2020-01-17 11:22 - 000000443 _____ C:\Windows\system32\drivers\etc\hosts.ics
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKCU\Environment\\Path -> C:\Users\Petr\AppData\Local\Programs\Python\Python37-32\Scripts\;C:\Users\Petr\AppData\Local\Programs\Python\Python37-32\;C:\Users\Petr\AppData\Local\Apps\2.0\YPK48GZO.18H\MJLKRWZ3.4L3\tool..tion_279bd50f9e49d9f5_0001.0000_89f2ffb7c93ef5c8";C:\Users\Petr\AppData\Roaming\npm;%PyCharm%;%WebStorm%
HKU\S-1-5-21-936610497-460076368-2508702492-1002\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.
Network Binding:
=============
Wi-Fi: VMware Bridge Protocol -> vmware_bridge (enabled)
Ethernet 2: VMware Bridge Protocol -> vmware_bridge (enabled)
Ethernet: VMware Bridge Protocol -> vmware_bridge (enabled)
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "AtwtusbIcon"
HKLM\...\StartupApproved\Run32: => "vmware-tray.exe"
HKU\S-1-5-21-936610497-460076368-2508702492-1002\...\StartupApproved\StartupFolder: => "laragon.lnk"
HKU\S-1-5-21-936610497-460076368-2508702492-1002\...\StartupApproved\Run: => "btweb"
HKU\S-1-5-21-936610497-460076368-2508702492-1002\...\StartupApproved\Run: => "BitTorrent"
HKU\S-1-5-21-936610497-460076368-2508702492-1002\...\StartupApproved\Run: => "Web Companion"
HKU\S-1-5-21-936610497-460076368-2508702492-1002\...\StartupApproved\Run: => "CCXProcess"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [TCP Query User{626A7FB9-1974-4533-8C11-CD3AB14E2218}C:\program files (x86)\totalcmd\totalcmd64.exe] => (Allow) C:\program files (x86)\totalcmd\totalcmd64.exe (Ghisler Software GmbH -> Ghisler Software GmbH)
FirewallRules: [UDP Query User{6DE60F11-12B6-4C48-9255-AE8506F0869C}C:\program files (x86)\totalcmd\totalcmd64.exe] => (Allow) C:\program files (x86)\totalcmd\totalcmd64.exe (Ghisler Software GmbH -> Ghisler Software GmbH)
FirewallRules: [{8554FC6A-2D6D-4114-BFD4-2F5F5D54C947}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{D139B1B0-86AF-4B60-8C7D-ADE5D30B2180}] => (Allow) C:\Users\Petr\AppData\Roaming\BitTorrent\BitTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{97783AB9-C909-44B1-9632-98097A36CC39}] => (Allow) C:\Users\Petr\AppData\Roaming\BitTorrent\BitTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{E3C39C24-B1BA-40CD-A986-69E3DAA4A6D3}] => (Allow) C:\Users\Petr\Downloads\reiboot-for-android.exe => No File
FirewallRules: [{0AB869C4-AE21-4B01-B745-717A76804FA4}] => (Allow) C:\Users\Petr\Downloads\reiboot-for-android.exe => No File
FirewallRules: [{ECB7D859-BC5C-4DC7-A6E8-3B7B5F6412DB}] => (Allow) C:\Program Files\Pinnacle\Studio 22\programs\RM.exe => No File
FirewallRules: [{C1A5E6D6-F494-4000-A56B-0BD7278094CE}] => (Allow) C:\Program Files\Pinnacle\Studio 22\programs\RM.exe => No File
FirewallRules: [{8FC208DA-850F-4FDD-8A31-9E8CD8E005DE}] => (Allow) C:\Program Files\Pinnacle\Studio 22\programs\NGStudio.exe => No File
FirewallRules: [{9B4F2F90-CEA9-4529-81AB-26AA07005EAE}] => (Allow) C:\Program Files\Pinnacle\Studio 22\programs\NGStudio.exe => No File
FirewallRules: [{19A981B2-806F-4DA5-A768-702417299DA6}] => (Allow) C:\Program Files\Pinnacle\Studio 22\programs\UMI.exe => No File
FirewallRules: [{4EED89F2-8988-4440-8C4A-95BEB73FBC7A}] => (Allow) C:\Program Files\Pinnacle\Studio 22\programs\UMI.exe => No File
FirewallRules: [{F9445D57-F5F2-45A4-999B-713185C5C9B5}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{9EB7FB6A-1C36-470F-B4B1-086B498ADC1D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{E2A4A4BF-DB36-4FE3-874E-886778B3374A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{A9DA8A53-7124-436B-8C73-550D001534DB}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{48040440-14EF-44CC-A816-B0D292CC79AA}] => (Allow) C:\Program Files\Unity Hub\Unity Hub.exe => No File
FirewallRules: [{C3D5DB52-6635-402B-82CA-B929454A44A8}] => (Allow) C:\Program Files (x86)\Crazybump\CrazyBump.exe (CrazyBump Software) [File not signed]
FirewallRules: [{44A08B3B-B7F4-47EC-9890-104FE50FC15A}] => (Allow) C:\Program Files (x86)\Crazybump\CrazyBump.exe (CrazyBump Software) [File not signed]
FirewallRules: [{6BA91604-5DAD-4697-A770-7A96E41C5B0D}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe (VMware, Inc. -> VMware, Inc.)
FirewallRules: [{F7414B26-207C-48B6-BF55-2E6D826CDFFA}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-authd.exe (VMware, Inc. -> VMware, Inc.)
FirewallRules: [{44FAA08C-7470-4BAE-AB65-10ACA6751DE9}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe (VMware, Inc. -> )
FirewallRules: [{C0FF2B75-79A2-4A24-AEA9-FD052475326C}] => (Allow) C:\Program Files (x86)\VMware\VMware Workstation\vmware-hostd.exe (VMware, Inc. -> )
FirewallRules: [{7C96BBD1-ED4F-472F-933E-50E771BEBA68}] => (Allow) C:\Windows\system32\alg.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{D61088BD-1DEA-4B9F-9396-9170DF1EEA03}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe => No File
FirewallRules: [{C763A6B8-A1A8-41B5-B0AF-B242CE144692}] => (Allow) C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [{3A4E510E-4BCD-41E1-94C2-EAE1F3B21999}] => (Allow) C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [{1F4E2A31-1736-4F74-82CB-338FCE6923CA}] => (Allow) C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [{4BEB760B-6182-4A5E-99DC-2313B68625D7}] => (Allow) C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [{DB3402D3-39CE-4F82-8650-A1F28982E192}] => (Allow) C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [{F773CA9B-04F7-47FE-8991-0C037D613171}] => (Allow) C:\Program Files (x86)\TP-Link\TP-Link Wireless Adapter WPS Tool\RTLDHCP.exe (Realtek) [File not signed]
FirewallRules: [{887E2498-AAF5-48E1-BC5A-12E4B982D36B}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2F8C01EA-8572-4C7A-BD43-BA00696C069C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{7E67DDA6-B357-4CC8-BA44-8869F031D182}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\88.0.4324.9\remoting_host.exe (Google LLC -> Google Inc.)
==================== Restore Points =========================
16-11-2020 20:17:05 Scheduled Checkpoint
29-11-2020 22:08:59 Scheduled Checkpoint
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (12/05/2020 08:21:03 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program Photoshop.exe version 20.0.4.26077 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: 36e8
Start Time: 01d6c7eff5f7f3ee
Termination Time: 4294967295
Application Path: C:\Program Files\Adobe\Adobe Photoshop CC 2019\Photoshop.exe
Report Id: 910909d9-1939-4e6e-9c2f-5377af918bed
Faulting package full name:
Faulting package-relative application ID:
Hang type: Unknown
Error: (11/25/2020 01:13:09 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Photoshop.exe, version: 20.0.4.26077, time stamp: 0x5c764fad
Faulting module name: WinTypes.dll, version: 10.0.17763.134, time stamp: 0xedee7ffc
Exception code: 0xc0000005
Fault offset: 0x000000000003b08a
Faulting process id: 0x3268
Faulting application start time: 0x01d6c2b04ec0f7d2
Faulting application path: C:\Program Files\Adobe\Adobe Photoshop CC 2019\Photoshop.exe
Faulting module path: C:\Windows\System32\WinTypes.dll
Report Id: 258f3e9c-3bde-4c6b-b730-1acb9efe2618
Faulting package full name:
Faulting package-relative application ID:
Error: (11/17/2020 09:05:14 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Photoshop.exe, version: 20.0.4.26077, time stamp: 0x5c764fad
Faulting module name: WinTypes.dll, version: 10.0.17763.134, time stamp: 0xedee7ffc
Exception code: 0xc0000005
Fault offset: 0x000000000003b08a
Faulting process id: 0x2c30
Faulting application start time: 0x01d6bd0d8c78ea49
Faulting application path: C:\Program Files\Adobe\Adobe Photoshop CC 2019\Photoshop.exe
Faulting module path: C:\Windows\System32\WinTypes.dll
Report Id: c0b66402-59c4-4ce0-a6d8-2b0a7774c311
Faulting package full name:
Faulting package-relative application ID:
Error: (11/08/2020 10:20:34 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Explorer.EXE, version: 10.0.17763.592, time stamp: 0xe27bfbb1
Faulting module name: ntdll.dll, version: 10.0.17763.592, time stamp: 0x0f1b8afd
Exception code: 0xc0000005
Fault offset: 0x0000000000012575
Faulting process id: 0x1e1c
Faulting application start time: 0x01d6b2849372ec33
Faulting application path: C:\Windows\Explorer.EXE
Faulting module path: C:\Windows\SYSTEM32\ntdll.dll
Report Id: b242c0f0-20ad-42b9-aea9-035b75e695d0
Faulting package full name:
Faulting package-relative application ID:
Error: (11/08/2020 08:45:21 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: WLANExt.exe, version: 10.0.17763.1, time stamp: 0xb0a31365
Faulting module name: ntdll.dll, version: 10.0.17763.592, time stamp: 0x0f1b8afd
Exception code: 0xc0000374
Fault offset: 0x00000000000fb049
Faulting process id: 0xc30
Faulting application start time: 0x01d6b2847257ff02
Faulting application path: C:\Windows\system32\WLANExt.exe
Faulting module path: C:\Windows\SYSTEM32\ntdll.dll
Report Id: dd4e8d1b-24b3-4be3-9f9c-f62e4e8aea73
Faulting package full name:
Faulting package-relative application ID:
Error: (10/31/2020 05:53:13 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: The program Microsoft.Photos.exe version 2020.20090.1002.0 stopped interacting with Windows and was closed. To see if more information about the problem is available, check the problem history in the Security and Maintenance control panel.
Process ID: ca8
Start Time: 01d6aefd413e039a
Termination Time: 4294967295
Application Path: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2020.20090.1002.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
Report Id: 6e8c008f-a1ba-4ca3-bb76-471564e1330f
Faulting package full name: Microsoft.Windows.Photos_2020.20090.1002.0_x64__8wekyb3d8bbwe
Faulting package-relative application ID: App
Hang type: Quiesce
Error: (10/24/2020 06:13:08 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: backgroundTaskHost.exe, version: 10.0.17763.1, time stamp: 0x6fe3727f
Faulting module name: biwinrt.dll, version: 10.0.17763.1, time stamp: 0xd28070f9
Exception code: 0xc000027b
Fault offset: 0x0000000000015514
Faulting process id: 0x3f74
Faulting application start time: 0x01d6aa28f0f84290
Faulting application path: C:\Windows\system32\backgroundTaskHost.exe
Faulting module path: C:\Windows\System32\biwinrt.dll
Report Id: 01f3a574-8a84-4acd-9cca-b862ccd94fd3
Faulting package full name: Microsoft.MicrosoftOfficeHub_18.2008.12711.0_x64__8wekyb3d8bbwe
Faulting package-relative application ID: Microsoft.MicrosoftOfficeHub
Error: (10/18/2020 06:05:42 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: Photoshop.exe, version: 20.0.4.26077, time stamp: 0x5c764fad
Faulting module name: WinTypes.dll, version: 10.0.17763.134, time stamp: 0xedee7ffc
Exception code: 0xc0000005
Fault offset: 0x000000000003b08a
Faulting process id: 0x205c
Faulting application start time: 0x01d6a5336e130d1f
Faulting application path: C:\Program Files\Adobe\Adobe Photoshop CC 2019\Photoshop.exe
Faulting module path: C:\Windows\System32\WinTypes.dll
Report Id: 61626740-8d7a-492b-a5e3-b19e9b840b8a
Faulting package full name:
Faulting package-relative application ID:
System errors:
=============
Error: (12/05/2020 09:09:13 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-UDNBT74)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
and APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
to the user DESKTOP-UDNBT74\Petr SID (S-1-5-21-936610497-460076368-2508702492-1002) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (12/05/2020 07:41:18 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
Error: (12/05/2020 07:41:12 PM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
Error: (12/05/2020 07:40:02 PM) (Source: Service Control Manager) (EventID: 7011) (User: )
Description: A timeout (30000 milliseconds) was reached while waiting for a transaction response from the BFE service.
Error: (12/05/2020 07:39:53 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-UDNBT74)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
and APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
to the user DESKTOP-UDNBT74\Petr SID (S-1-5-21-936610497-460076368-2508702492-1002) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (12/05/2020 10:15:54 AM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
Error: (12/05/2020 10:15:50 AM) (Source: Microsoft-Windows-DNS-Client) (EventID: 1012) (User: NT AUTHORITY)
Description: There was an error while attempting to read the local hosts file.
Error: (12/05/2020 10:14:57 AM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-UDNBT74)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
and APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
to the user DESKTOP-UDNBT74\Petr SID (S-1-5-21-936610497-460076368-2508702492-1002) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Windows Defender:
===================================
Date: 2019-06-08 09:34:54.365
Description:
Windows Defender Antivirus has encountered an error trying to load signatures and will attempt reverting back to a known-good set of signatures.
Signatures Attempted: Current
Error Code: 0x80070002
Error description: The system cannot find the file specified.
Signature version: 0.0.0.0;0.0.0.0
Engine version: 0.0.0.0
CodeIntegrity:
===================================
Date: 2020-12-05 21:18:45.094
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVG\Antivirus\aswhook.dll that did not meet the Microsoft signing level requirements.
Date: 2020-12-05 21:18:44.786
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVG\Antivirus\aswhook.dll that did not meet the Microsoft signing level requirements.
Date: 2020-12-05 21:16:00.940
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVG\Antivirus\aswhook.dll that did not meet the Microsoft signing level requirements.
Date: 2020-12-05 21:15:52.641
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVG\Antivirus\aswhook.dll that did not meet the Microsoft signing level requirements.
Date: 2020-12-05 21:15:51.611
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVG\Antivirus\aswhook.dll that did not meet the Microsoft signing level requirements.
Date: 2020-12-05 21:15:48.526
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVG\Antivirus\aswhook.dll that did not meet the Microsoft signing level requirements.
Date: 2020-12-05 21:15:47.514
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVG\Antivirus\aswhook.dll that did not meet the Microsoft signing level requirements.
Date: 2020-12-05 21:15:46.697
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume2\Program Files\AVG\Antivirus\aswhook.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 0801 11/18/2011
Motherboard: ASUSTeK Computer INC. M5A88-M
Processor: AMD FX(tm)-4100 Quad-Core Processor
Percentage of memory in use: 38%
Total physical RAM: 12270.98 MB
Available physical RAM: 7576.28 MB
Total Virtual: 26105.41 MB
Available Virtual: 6755.19 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:194.82 GB) (Free:56.69 GB) NTFS
Drive d: (D) (Fixed) (Total:270.45 GB) (Free:250.39 GB) NTFS
Drive e: (E Archiv) (Fixed) (Total:931.51 GB) (Free:678.77 GB) NTFS
\\?\Volume{bedf9342-0000-0000-0000-100000000000}\ (System Reserved) (Fixed) (Total:0.49 GB) (Free:0.45 GB) NTFS
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: BEDF9342)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=194.8 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=270.4 GB) - (Type=07 NTFS)
==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: B371B71E)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)
==================== End of Addition.txt =======================

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Velmi pomalý pc :((((((((
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
- Rudy
- Site Admin
- Příspěvky: 119418
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Velmi pomalý pc :((((((((
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/
ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Velmi pomalý pc :((((((((
Malwarebytes
www.malwarebytes.com
-Log Details-
Scan Date: 12/6/20
Scan Time: 3:36 PM
Log File: 7830ef9a-37d0-11eb-8882-5404a685a671.json
-Software Information-
Version: 3.7.1.2839
Components Version: 1.0.538
Update Package Version: 1.0.19264
License: Premium
-System Information-
OS: Windows 10 (Build 17763.615)
CPU: x64
File System: NTFS
User: DESKTOP-UDNBT74\Petr
-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 316593
Threats Detected: 2
Threats Quarantined: 2
Time Elapsed: 7 min, 30 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
-Scan Details-
Process: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registry Key: 0
(No malicious items detected)
Registry Value: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Data Stream: 0
(No malicious items detected)
Folder: 0
(No malicious items detected)
File: 2
PUP.Optional.Conduit, C:\USERS\PETR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Replaced, [193], [454832],1.0.19264
PUP.Optional.Conduit, C:\USERS\PETR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Replaced, [193], [454832],1.0.19264
Physical Sector: 0
(No malicious items detected)
WMI: 0
(No malicious items detected)
(end)
www.malwarebytes.com
-Log Details-
Scan Date: 12/6/20
Scan Time: 3:36 PM
Log File: 7830ef9a-37d0-11eb-8882-5404a685a671.json
-Software Information-
Version: 3.7.1.2839
Components Version: 1.0.538
Update Package Version: 1.0.19264
License: Premium
-System Information-
OS: Windows 10 (Build 17763.615)
CPU: x64
File System: NTFS
User: DESKTOP-UDNBT74\Petr
-Scan Summary-
Scan Type: Threat Scan
Scan Initiated By: Manual
Result: Completed
Objects Scanned: 316593
Threats Detected: 2
Threats Quarantined: 2
Time Elapsed: 7 min, 30 sec
-Scan Options-
Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Detect
PUM: Detect
-Scan Details-
Process: 0
(No malicious items detected)
Module: 0
(No malicious items detected)
Registry Key: 0
(No malicious items detected)
Registry Value: 0
(No malicious items detected)
Registry Data: 0
(No malicious items detected)
Data Stream: 0
(No malicious items detected)
Folder: 0
(No malicious items detected)
File: 2
PUP.Optional.Conduit, C:\USERS\PETR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Replaced, [193], [454832],1.0.19264
PUP.Optional.Conduit, C:\USERS\PETR\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\Default\Web Data, Replaced, [193], [454832],1.0.19264
Physical Sector: 0
(No malicious items detected)
WMI: 0
(No malicious items detected)
(end)
- Rudy
- Site Admin
- Příspěvky: 119418
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Velmi pomalý pc :((((((((
Dejte nové logy FRST+Addidtion.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.