Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Kontrola log - problém s Word

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
rudkr63
Návštěvník
Návštěvník
Příspěvky: 169
Registrován: 26 čer 2015 17:05

Kontrola log - problém s Word

#1 Příspěvek od rudkr63 »

Dobrý den, nainstaloval jsem Mic. Office 2019 Professional Plus; aktivace byla telefonická. Pokud chci otevřít dokument ve Word, obrazí se : „Aplikace Word nemůže vytvořit pracovní soubor. Zkontrolujte nastavení proměnné prostředí TEMP." Na netu jsem našel návod: Chcete-li tento problém vyřešit, vytvořte v počítači novou složku.

Spusťte Windows Explorer

Vyhledejte umístění složky C:\Users\userprofile\AppData\Local\Microsoft\Windows

Vytvořte složku s názvem INetCacheContent.Word.


Tohle jsem udělal, restartoval NB, ale je to beze změn. Proto prosím o kontrolu, kde je nějaký nedostatek a jak problém odstranit.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-12-2020
Ran by ruda6 (administrator) on RUDA1 (Acer Aspire E5-575G) (24-12-2020 17:17:28)
Running from C:\Users\ruda6\Desktop
Loaded Profiles: ruda6
Platform: Windows 10 Pro Version 20H2 19042.685 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ActMask Group Co., Ltd -> ActMask Co.,Ltd - hxxp://WWW.ALL2PDF.COM) C:\Windows\System32\PrintCtrl.exe
(ActMask Group Co., Ltd -> ActMask Co.,Ltd - hxxp://www.all2pdf.com) C:\Windows\System32\PrintDisp.exe <2>
(eM Client, s.r.o. -> eM Client s.r.o.) C:\Program Files (x86)\eM Client\MailClient.exe <2>
(FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler64.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <19>
(GZ Systems Limited -> ) C:\Program Files (x86)\Atom\AtomService\Atom.SDK.WindowsService.exe
(INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.2970.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe
(INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.2970.0_x64__8j3eq9eme6ctt\IGCC.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b8e01d9e8716d2a7\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b8e01d9e8716d2a7\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_54b736e5be5b50b2\OneApp.IGCC.WinService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\IntelCpHDCPSvc.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\IntelCpHeciSvc.exe
(Lamantine Software a.s. -> Lamantine Software a.s.) C:\Program Files (x86)\Sticky Password\spNMHost.exe <2>
(Lamantine Software a.s. -> Lamantine Software a.s.) C:\Program Files (x86)\Sticky Password\spUIAManager.exe
(Lamantine Software a.s. -> Lamantine Software a.s.) C:\Program Files (x86)\Sticky Password\stpass.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE <2>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <16>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_3.6.73.0_x64__8wekyb3d8bbwe\Microsoft.Notes.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20316.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20316.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12011.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <4>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\prevhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\NisSrv.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Paddy Xu) C:\Program Files\WindowsApps\21090PaddyXu.QuickLook_3.6.10.0_neutral__egxr34yet59cg\Package\QuickLook.exe
(SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE
(SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIR4E.EXE

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [PrintDisp] => C:\Windows\system32\PrintDisp.exe [595080 2019-03-21] (ActMask Group Co., Ltd -> ActMask Co.,Ltd - hxxp://www.all2pdf.com)
HKLM\...\Run: [EPPCCMON] => C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE [442936 2020-10-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1151872 2016-11-18] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [StickyPassword] => C:\Program Files (x86)\Sticky Password\stpass.exe [65800 2020-12-08] (Lamantine Software a.s. -> Lamantine Software a.s.)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [eM Client] => C:\Program Files (x86)\eM Client\MailClient.exe [279016 2020-12-07] (eM Client, s.r.o. -> eM Client s.r.o.)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [AshSnap] => C:\Program Files (x86)\Ashampoo\Ashampoo Snap 11\ashsnap.exe [6449016 2020-04-17] (Ashampoo GmbH & Co. KG -> Ashampoo GmbH & Co. KG)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [PureVPN] => C:\Program Files (x86)\GZ Systems\PureVPN\PureVPN.exe [1847928 2020-11-03] (GZ Systems Limited -> GZ Systems)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [EPSDNMON] => C:\Program Files (x86)\EPSON Software\Download Navigator\EPSDNMON.EXE [346712 2020-07-27] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIR4E.EXE [417776 2014-11-14] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32414392 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [CCleaner] => C:\Program Files\CCleaner\CCleaner64.exe [32414392 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\Users\ruda6\AppData\Local\Programs\Zoner\ZPS X\binary\Program32\ZPSTRAY.EXE [804336 2020-12-02] (ZONER software, a.s. -> ZONER software)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [Lync] => C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe [23925056 2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\ActMaskR: C:\Windows\System32\spool\prtprocs\x64\ActPrint.dll [51848 2018-09-14] (ActMask Group Co., Ltd -> ActMask Co.,Ltd)
HKLM\...\Print\Monitors\EPSON L3050 Series 64MonitorBE: C:\Windows\system32\E_YLMBR4E.DLL [183296 2016-12-21] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKLM\...\Print\Monitors\EpsonNet Print Port: C:\Windows\system32\enppmon.dll [500736 2016-09-14] (SEIKO EPSON CORPORATION) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\87.0.4280.88\Installer\chrmstp.exe [2020-12-21] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0379F9DC-D629-42F3-A133-E376DBE3056A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-21] (Google LLC -> Google LLC)
Task: {294F0690-9074-4D46-B955-7A60F6D5440E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4010416 2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {3117B972-21EE-44D7-8017-1FE49C585336} - System32\Tasks\Zoner.Updater.S-1-5-21-2513297869-714495167-4108430696-1001 => C:\ProgramData\Zoner\Zoner.Installer.Core\Updater.exe [2075216 2020-12-23] (ZONER software, a.s. -> ZONER software, a.s.)
Task: {47BFC4F1-5F25-412E-8945-117CFDEDBAD4} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116584 2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {4E851EA1-4D86-4DD8-927F-C637CC91B994} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-21] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {53E9792C-6F32-47AC-9317-FF30F22719D8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-21] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5E3068DF-C882-48F8-A91C-9A2C4B2B1E48} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116584 2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {70C87143-07E0-4BC1-9E50-CC81ADC3A3B9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-21] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {72E2F918-6484-43FF-850E-1A2EEE2A6DD6} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26896568 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {A724F931-F95B-4DD3-B8D9-3DE3D633FC79} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23054216 2020-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {C487900F-2C84-4A5B-8A92-F86CFF185F7C} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23054216 2020-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {D1E89FC5-94DF-41A6-A7D7-96857ED1EB01} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {DECCC3E1-E0FF-45E9-9CE0-C775B4EFEFAA} - System32\Tasks\EPSON L3050 Series Update {8F00F415-9F48-4B2C-A663-0FA26324ECA0} => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSR4E.EXE [690536 2013-11-22] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
Task: {DEF2D0FC-CEB4-48E2-83E3-38408DA5DE8C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-21] (Google LLC -> Google LLC)
Task: {DF0B8791-1D59-4364-BE35-CB7C4D7F18C6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-21] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E245421F-22D4-4243-BC73-3F1E669FBD87} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4010416 2020-12-23] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\EPSON L3050 Series Update {8F00F415-9F48-4B2C-A663-0FA26324ECA0}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSR4E.EXE:/EXE:{8F00F415-9F48-4B2C-A663-0FA26324ECA0} /F:UpdateWORKGROUP\RUDA1$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{e2d2f159-5e69-41fb-b99e-4ff3abbed79c}: [DhcpNameServer] 192.168.0.1

Edge:
======
Edge DefaultProfile: Default
Edge Profile: C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default [2020-12-24]
Edge Notifications: Default -> hxxps://www.ashampoo.com
Edge HomePage: Default -> hxxps://www.google.cz/?gfe_rd=cr&ei=X0EGWaPSAYi ... =ssl&pli=1
Edge StartupUrls: Default -> "hxxps://www.google.cz/search?source=hp&ei=Iaa_X ... CAc&uact=5"
Edge DefaultSearchURL: Default -> hxxps://duckduckgo.com/?q={searchTerms}
Edge DefaultSearchKeyword: Default -> duckduckgo.com
Edge DefaultSuggestURL: Default -> hxxps://duckduckgo.com/ac/?q={searchTerms}&type=list
Edge Session Restore: Default -> is enabled.
Edge Extension: (Překladač Google) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2020-12-21]
Edge Extension: (PureVPN: #1 Proxy Extension for Chrome) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bfidboloedlamgdmenmlbipfnccokknp [2020-12-23]
Edge Extension: (Microsoft Defender Browser Protection) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bkbeeeffjjeopflfhgeknacdieedcoml [2020-12-21]
Edge Extension: (DuckDuckGo) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bkdgflcldnnnapblkhphbgpggdiikppg [2020-12-21]
Edge Extension: (OneTab) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall [2020-12-21]
Edge Extension: (Picture-in-Picture Everywhere) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cmnlinjalaieggoebkmamaphjghpafhn [2020-12-21]
Edge Extension: (Session Buddy) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\edacconmaakjimmfgnblocblbcdcpbko [2020-12-21]
Edge Extension: (Ochrana Kaspersky) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\elhpdacimkjpccooodognopfhbdgnpbk [2020-12-21]
Edge Extension: (HTTPS Everywhere) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fchjpkplmbeeeaaogdbhjbgbknjobohb [2020-12-21]
Edge Extension: (Uložit na Disk Google) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2020-12-21]
Edge Extension: (Sticky Password - správce hesel) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jbipmfkjgjhibkepepeneigpkfeikikp [2020-12-21]
Edge Extension: (ScriptSafe) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\oiigbmnaadbkfbmpbfijlflahbdbdgdf [2020-12-21]
Edge Extension: (Chrome Media Router) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-12-22]

FireFox:
========
FF HKLM-x32\...\Firefox\Extensions: [e-webprint@epson.com] - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on
FF Extension: (E-Web Print) - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on [2020-12-22] [Legacy] [not signed]
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-12-23] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR Profile: C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default [2020-12-24]
CHR Notifications: Default -> hxxps://www.ashampoo.com
CHR HomePage: Default -> hxxps://www.google.com/webhp?hl=cs&sa=X&ved=0ah ... hsDOYQPAgH
CHR StartupUrls: Default -> "hxxps://www.google.cz/?pli=1","hxxps://www.sezn ... uckgo.com/"
CHR DefaultSearchURL: Default -> hxxps://duckduckgo.com/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> duckduckgo.com
CHR DefaultSuggestURL: Default -> hxxps://duckduckgo.com/ac/?q={searchTerms}&type=list
CHR Session Restore: Default -> is enabled.
CHR Extension: (Překladač Google) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2020-12-21]
CHR Extension: (Prezentace) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-12-21]
CHR Extension: (Ochrana Kaspersky) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2020-12-21]
CHR Extension: (Dokumenty) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-12-21]
CHR Extension: (Disk Google) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-12-21]
CHR Extension: (PureVPN: #1 Proxy Extension for Chrome) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfidboloedlamgdmenmlbipfnccokknp [2020-12-23]
CHR Extension: (Microsoft Defender Browser Protection) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkbeeeffjjeopflfhgeknacdieedcoml [2020-12-21]
CHR Extension: (DuckDuckGo) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkdgflcldnnnapblkhphbgpggdiikppg [2020-12-21]
CHR Extension: (YouTube) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-12-21]
CHR Extension: (Honey) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmnlcjabgnpnenekpadlanbbkooimhnj [2020-12-21]
CHR Extension: (Sticky Password - správce hesel) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnfdmghkeppfadphbnkjcicejfepnbfe [2020-12-21]
CHR Extension: (OneTab) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall [2020-12-21]
CHR Extension: (NoScript) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\doojmbjmlfjjnbmnoijecmcbfeoakpjm [2020-12-21]
CHR Extension: (Ochrana Kaspersky) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\elhpdacimkjpccooodognopfhbdgnpbk [2020-12-21]
CHR Extension: (Tabulky) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-12-21]
CHR Extension: (HTTPS Everywhere) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcbommkclmclpchllfjekcdonpmejbdp [2020-12-21]
CHR Extension: (Dokumenty Google offline) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-12-21]
CHR Extension: (Uložit na Disk Google) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2020-12-21]
CHR Extension: (Picture-in-Picture Extension (by Google)) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkgfoiooedgoejojocmhlaklaeopbecg [2020-12-21]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-12-21]
CHR Extension: (Gmail) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-12-21]
CHR Extension: (Chrome Media Router) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-12-21]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtomService; C:\Program Files (x86)\Atom\AtomService\Atom.SDK.WindowsService.exe [153048 2020-08-12] (GZ Systems Limited -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9105800 2020-12-01] (Microsoft Corporation -> Microsoft Corporation)
R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [206304 2020-10-02] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
R2 FoxitReaderUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe [2357936 2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5197552 2020-12-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-12-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-12-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem"

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AcerAirplaneModeController; C:\Windows\System32\drivers\AcerAirplaneModeController.sys [30168 2020-05-12] (Acer Incorporated -> Acer Incorporated)
R1 avpndriver; C:\Windows\System32\drivers\avpndriver.sys [104424 2020-05-29] (GZ Systems Limited -> Windows (R) Win 7 DDK provider)
S3 Revoflt; C:\Windows\System32\DRIVERS\revoflt.sys [38400 2020-10-14] (Microsoft Windows Hardware Compatibility Publisher -> VS Revo Group)
R3 tap0901; C:\Windows\System32\drivers\tap0901.sys [39920 2020-03-26] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [48536 2020-12-21] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [429296 2020-12-21] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [70896 2020-12-21] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-12-24 17:17 - 2020-12-24 17:18 - 000026076 _____ C:\Users\ruda6\Desktop\FRST.txt
2020-12-24 17:14 - 2020-12-24 17:14 - 002286592 _____ (Farbar) C:\Users\ruda6\Desktop\FRST64.exe
2020-12-24 13:35 - 2020-12-24 13:35 - 001895415 _____ C:\Users\ruda6\Documents\Povolit náhled náhledu souborů v aplikaci Průzkumník souborů aplikace Word, Excel a PowerPoint - Microsoft Office.pdf
2020-12-24 12:46 - 2020-12-24 12:46 - 000000000 ____D C:\Users\ruda6\Documents\Word-problém
2020-12-24 04:26 - 2020-12-24 11:18 - 000004190 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{A5BFB9D7-4339-4D22-B12D-E266718A116C}
2020-12-24 04:19 - 2020-12-24 04:19 - 000248622 _____ C:\Users\ruda6\Documents\Celebrity platí 25 000 dolarů za přeskočení za vakcíny COVID-19 - NaturalNews.com.pdf
2020-12-24 03:38 - 2020-12-24 03:38 - 000000000 ____D C:\Users\ruda6\Documents\Vlastní šablony Office
2020-12-24 03:17 - 2020-12-24 03:17 - 000000017 _____ C:\Users\ruda6\AppData\Local\resmon.resmoncfg
2020-12-24 03:15 - 2020-12-24 03:15 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\Skype
2020-12-23 23:33 - 2020-12-23 23:33 - 000003786 _____ C:\Windows\system32\Tasks\Zoner.Updater.S-1-5-21-2513297869-714495167-4108430696-1001
2020-12-23 23:33 - 2020-12-23 23:33 - 000001563 _____ C:\Users\ruda6\AppData\Roaming\Microsoft\Windows\Start Menu\Zoner Photo Studio X.lnk
2020-12-23 23:33 - 2020-12-23 23:33 - 000001561 _____ C:\Users\ruda6\Desktop\Zoner Photo Studio X.lnk
2020-12-23 23:31 - 2020-12-23 23:33 - 000000000 ____D C:\ProgramData\Zoner
2020-12-23 23:31 - 2020-12-23 23:31 - 000374568 _____ (ZONER software, a.s.) C:\Users\ruda6\Downloads\zpsx.exe
2020-12-23 22:43 - 2020-12-23 22:43 - 000001873 _____ C:\Users\Public\Desktop\MultiCommander (x64).lnk
2020-12-23 22:43 - 2020-12-23 22:43 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\MultiCommander
2020-12-23 22:43 - 2020-12-23 22:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MultiCommander
2020-12-23 22:43 - 2020-12-23 22:43 - 000000000 ____D C:\Program Files\MultiCommander (x64)
2020-12-23 22:41 - 2020-12-23 22:42 - 008826468 _____ (Mathias Svensson) C:\Users\ruda6\Downloads\MultiCommander_x64_(10.2.0.2745).exe
2020-12-23 21:37 - 2020-12-23 21:37 - 000002502 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk
2020-12-23 21:37 - 2020-12-23 21:37 - 000002497 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2020-12-23 21:37 - 2020-12-23 21:37 - 000002496 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2020-12-23 21:37 - 2020-12-23 21:37 - 000002460 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2020-12-23 21:37 - 2020-12-23 21:37 - 000002459 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2020-12-23 21:37 - 2020-12-23 21:37 - 000002453 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2020-12-23 21:37 - 2020-12-23 21:37 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2020-12-23 21:37 - 2020-12-23 21:37 - 000002439 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2020-12-23 21:37 - 2020-12-23 21:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2020-12-23 21:27 - 2020-12-23 21:37 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2020-12-23 21:27 - 2020-12-23 21:27 - 000000000 ____D C:\Program Files\Microsoft Office 15
2020-12-23 16:21 - 2020-12-23 16:22 - 000000000 ____D C:\ProgramData\Acer
2020-12-23 16:18 - 2020-12-23 16:18 - 008234296 _____ (Piriform Software Ltd) C:\Users\ruda6\Downloads\spsetup132.exe
2020-12-23 16:18 - 2020-12-23 16:18 - 000000841 _____ C:\Users\Public\Desktop\Speccy.lnk
2020-12-23 16:18 - 2020-12-23 16:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
2020-12-23 16:18 - 2020-12-23 16:18 - 000000000 ____D C:\Program Files\Speccy
2020-12-23 15:52 - 2020-12-23 15:52 - 000000000 ____D C:\Windows\oem
2020-12-23 15:51 - 2020-12-23 15:51 - 000000000 ____D C:\ProgramData\DriverSetupUtility
2020-12-23 15:50 - 2020-12-23 15:50 - 000000000 ____D C:\Program Files\DriverSetupUtility
2020-12-23 15:44 - 2020-12-23 15:51 - 000000000 ____D C:\Program Files\Intel
2020-12-23 15:42 - 2020-12-23 15:42 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer
2020-12-23 15:42 - 2020-12-23 15:42 - 000000000 ____D C:\Users\ruda6\Intel
2020-12-23 15:42 - 2020-12-23 15:42 - 000000000 ____D C:\Program Files\Reference Assemblies
2020-12-23 15:42 - 2020-12-23 15:42 - 000000000 ____D C:\Program Files\MSBuild
2020-12-23 15:42 - 2020-12-23 15:42 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2020-12-23 15:42 - 2020-12-23 15:42 - 000000000 ____D C:\Program Files (x86)\MSBuild
2020-12-23 15:38 - 2020-12-23 15:38 - 000000000 ____D C:\Users\ruda6\Downloads\IO Drivers_Intel _30.63.1620.3_W10x64_(Kabylake)
2020-12-23 15:38 - 2020-12-23 15:38 - 000000000 ____D C:\Users\ruda6\Downloads\Chipset_Intel_10.1.1.44_W10x64
2020-12-23 15:37 - 2020-12-23 15:37 - 005649908 _____ C:\Users\ruda6\Downloads\Chipset_Intel_10.1.1.44_W10x64_A.zip
2020-12-23 15:37 - 2020-12-23 15:37 - 002742337 _____ C:\Users\ruda6\Downloads\IO Drivers_Intel_30.63.1620.3_W10x64_A.zip
2020-12-23 15:15 - 2020-12-23 15:15 - 000000000 ____D C:\Users\ruda6\Documents\MV ČR
2020-12-22 20:43 - 2020-12-22 20:50 - 000000000 ____D C:\ProgramData\install_clap
2020-12-22 20:43 - 2020-12-22 20:50 - 000000000 ____D C:\ProgramData\CLSK
2020-12-22 19:53 - 2020-12-22 19:57 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\YouTubeByClick
2020-12-22 19:53 - 2020-12-22 19:53 - 000001102 _____ C:\ProgramData\Microsoft\Windows\Start Menu\YouTubeByClick.lnk
2020-12-22 19:53 - 2020-12-22 19:53 - 000001096 _____ C:\Users\Public\Desktop\YouTubeByClick.lnk
2020-12-22 19:53 - 2020-12-22 19:53 - 000000000 ____D C:\ProgramData\Caphyon
2020-12-22 19:52 - 2020-12-22 19:53 - 000000000 ____D C:\Program Files (x86)\YouTube By Click
2020-12-22 19:52 - 2020-12-22 19:52 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\ByClick
2020-12-22 19:50 - 2020-12-22 19:52 - 016021944 _____ (ByClick) C:\Users\ruda6\Downloads\YouTubeByClick-Setup.exe
2020-12-22 19:33 - 2020-12-22 20:17 - 000000000 ____D C:\ProgramData\ReceptyDoma
2020-12-22 19:30 - 2020-12-22 19:30 - 000001123 _____ C:\Users\ruda6\Desktop\Recepty doma.lnk
2020-12-22 19:30 - 2020-12-22 19:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recepty doma
2020-12-22 19:30 - 2007-03-05 07:32 - 000201216 _____ C:\Windows\SysWOW64\mediarcpt.dll
2020-12-22 19:29 - 2020-12-22 20:17 - 000000000 ____D C:\Program Files (x86)\Recepty doma
2020-12-22 19:28 - 2020-12-22 19:29 - 011164536 _____ (Martin Roubec ) C:\Users\ruda6\Downloads\InstalRecepty (2).exe
2020-12-22 16:50 - 2020-12-22 16:50 - 000001153 _____ C:\Users\Public\Desktop\PDF Candy Desktop.lnk
2020-12-22 16:50 - 2020-12-22 16:50 - 000000716 ____H C:\Users\ruda6\AppData\Roaming\{B0E80E49-57AF-758F-AE9B-C68B46701F6B}
2020-12-22 16:50 - 2020-12-22 16:50 - 000000000 ____D C:\Users\ruda6\.Icecream PDF Candy Desktop
2020-12-22 16:50 - 2020-12-22 16:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Candy Desktop
2020-12-22 16:50 - 2020-12-22 16:50 - 000000000 ____D C:\Program Files (x86)\PDF Candy Desktop
2020-12-22 16:47 - 2020-12-22 16:49 - 144758640 _____ (Icecream Apps ) C:\Users\ruda6\Downloads\pdfcandy_setup.exe
2020-12-22 16:43 - 2020-12-22 16:43 - 000001222 _____ C:\Users\Public\Desktop\Icecream Slideshow Maker.lnk
2020-12-22 16:43 - 2020-12-22 16:43 - 000000000 ____D C:\Users\ruda6\.Icecream Slideshow Maker
2020-12-22 16:43 - 2020-12-22 16:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xiph.Org
2020-12-22 16:43 - 2020-12-22 16:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Icecream Slideshow Maker
2020-12-22 16:43 - 2020-12-22 16:43 - 000000000 ____D C:\Program Files (x86)\Xiph.Org
2020-12-22 16:43 - 2020-12-22 16:43 - 000000000 ____D C:\Program Files (x86)\Icecream Slideshow Maker
2020-12-22 16:40 - 2020-12-22 16:40 - 000001198 _____ C:\Users\Public\Desktop\Icecream PDF Converter.lnk
2020-12-22 16:40 - 2020-12-22 16:40 - 000000000 ____D C:\Users\ruda6\.Icecream PDF Converter
2020-12-22 16:40 - 2020-12-22 16:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Icecream PDF Converter
2020-12-22 16:39 - 2020-12-22 16:40 - 000000000 ____D C:\Program Files (x86)\Icecream PDF Converter
2020-12-22 16:34 - 2020-12-23 13:05 - 000000000 ____D C:\Users\ruda6\log
2020-12-22 16:34 - 2020-12-22 16:34 - 000001197 _____ C:\Users\Public\Desktop\Screenshot.lnk
2020-12-22 16:34 - 2020-12-22 16:34 - 000001192 _____ C:\Users\Public\Desktop\Icecream Screen Recorder.lnk
2020-12-22 16:34 - 2020-12-22 16:34 - 000000000 ____D C:\Users\ruda6\.Icecream Screen Recorder
2020-12-22 16:34 - 2020-12-22 16:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Icecream Screen Recorder
2020-12-22 16:34 - 2020-12-22 16:34 - 000000000 ____D C:\Program Files\Common Files\WebM Project
2020-12-22 16:34 - 2020-12-22 16:34 - 000000000 ____D C:\Program Files (x86)\Icecream Screen Recorder
2020-12-22 16:23 - 2020-12-22 16:23 - 000001186 _____ C:\Users\Public\Desktop\Icecream Ebook Reader.lnk
2020-12-22 16:23 - 2020-12-22 16:23 - 000000000 ____D C:\Users\ruda6\.ebookreader
2020-12-22 16:23 - 2020-12-22 16:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Icecream Ebook Reader
2020-12-22 16:23 - 2020-12-22 16:23 - 000000000 ____D C:\Program Files (x86)\Icecream Ebook Reader
2020-12-22 16:18 - 2020-12-22 16:18 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\NVIDIA
2020-12-22 16:18 - 2020-12-22 16:18 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\LibreOffice
2020-12-22 16:16 - 2020-12-22 16:16 - 000001165 _____ C:\Users\Public\Desktop\LibreOffice 7.0.lnk
2020-12-22 16:16 - 2020-12-22 16:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 7.0
2020-12-22 16:15 - 2020-12-22 16:16 - 000000000 ____D C:\Program Files\LibreOffice
2020-12-22 16:04 - 2020-12-22 16:09 - 316936192 _____ C:\Users\ruda6\Downloads\LibreOffice_7.0.4_Win_x64.msi
2020-12-22 16:02 - 2020-12-22 16:14 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\Icecream
2020-12-22 16:00 - 2020-12-22 16:50 - 000000000 ____D C:\Users\ruda6\AppData\Local\Icecream
2020-12-22 16:00 - 2020-12-22 16:00 - 000001213 _____ C:\Users\Public\Desktop\Icecream PDF Split and Merge.lnk
2020-12-22 16:00 - 2020-12-22 16:00 - 000000000 ____D C:\Users\ruda6\.Icecream PDF Split and Merge
2020-12-22 16:00 - 2020-12-22 16:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Icecream PDF Split and Merge
2020-12-22 16:00 - 2020-12-22 16:00 - 000000000 ____D C:\Program Files (x86)\Icecream PDF Split and Merge
2020-12-22 15:57 - 2020-12-22 15:59 - 029536840 _____ (Icecream Apps ) C:\Users\ruda6\Downloads\ebook_reader_setup.exe
2020-12-22 15:57 - 2020-12-22 15:59 - 021768184 _____ (Icecream Apps ) C:\Users\ruda6\Downloads\slideshow_maker_setup.exe
2020-12-22 15:57 - 2020-12-22 15:58 - 019800680 _____ (Icecream Apps ) C:\Users\ruda6\Downloads\pdf_split_and_merge_setup.exe
2020-12-22 15:56 - 2020-12-22 16:04 - 132205232 _____ (Icecream Apps ) C:\Users\ruda6\Downloads\pdf_converter_setup.exe
2020-12-22 15:55 - 2020-12-22 16:00 - 056738936 _____ (Icecream Apps ) C:\Users\ruda6\Downloads\screen_recorder_setup.exe
2020-12-22 15:46 - 2020-12-22 15:46 - 000000000 ____D C:\Users\ruda6\Documents\20.eMC
2020-12-22 15:45 - 2020-12-22 15:45 - 000000000 ____D C:\Users\ruda6\Documents\Incomedia
2020-12-22 15:45 - 2020-12-22 15:45 - 000000000 ____D C:\Users\ruda6\Documents\Fax
2020-12-22 15:45 - 2020-12-20 23:27 - 000000000 ____D C:\Users\ruda6\Documents\FILMBOX
2020-12-22 15:45 - 2020-10-28 14:01 - 000000000 ____D C:\Users\ruda6\Documents\Onenotové poznámkové bloky
2020-12-22 02:36 - 2020-12-24 14:36 - 000000000 ____D C:\Program Files\CCleaner
2020-12-22 02:36 - 2020-12-22 02:36 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update
2020-12-22 02:36 - 2020-12-22 02:36 - 000002868 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC
2020-12-22 02:36 - 2020-12-22 02:36 - 000000867 _____ C:\Users\Public\Desktop\CCleaner.lnk
2020-12-22 02:36 - 2020-12-22 02:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2020-12-22 02:35 - 2020-12-22 02:35 - 030312056 _____ (Piriform Software Ltd) C:\Users\ruda6\Downloads\cctrialsetup.exe
2020-12-22 02:20 - 2020-12-22 02:20 - 000001126 _____ C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
2020-12-22 02:20 - 2020-12-22 02:20 - 000000000 ____D C:\Users\ruda6\AppData\Local\VS Revo Group
2020-12-22 02:20 - 2020-12-22 02:20 - 000000000 ____D C:\ProgramData\VS Revo Group
2020-12-22 02:20 - 2020-12-22 02:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
2020-12-22 02:20 - 2020-12-22 02:20 - 000000000 ____D C:\Program Files\VS Revo Group
2020-12-22 02:20 - 2020-10-14 04:07 - 000038400 _____ (VS Revo Group) C:\Windows\system32\Drivers\revoflt.sys
2020-12-22 02:17 - 2020-12-22 02:17 - 017249232 _____ (VS Revo Group ) C:\Users\ruda6\Downloads\RevoUninProSetup.exe
2020-12-22 01:55 - 2020-12-22 01:55 - 003923000 _____ C:\Users\ruda6\Downloads\EpsonConnect143.exe
2020-12-22 01:42 - 2020-12-22 01:42 - 000002244 _____ C:\Users\Public\Desktop\Epson Easy Photo Print.lnk
2020-12-22 01:42 - 2020-12-22 01:42 - 000000000 ____D C:\ProgramData\UDL
2020-12-22 01:41 - 2020-12-22 01:41 - 000002213 _____ C:\Users\Public\Desktop\Epson Printer Connection Checker.lnk
2020-12-22 01:41 - 2020-12-22 01:41 - 000000000 ____D C:\ProgramData\Sony Corporation
2020-12-22 01:35 - 2020-12-24 16:53 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\EPSON
2020-12-22 01:35 - 2020-12-22 10:30 - 000000931 _____ C:\Windows\Tasks\EPSON L3050 Series Update {8F00F415-9F48-4B2C-A663-0FA26324ECA0}.job
2020-12-22 01:35 - 2020-12-22 01:35 - 000004126 _____ C:\Windows\system32\Tasks\EPSON L3050 Series Update {8F00F415-9F48-4B2C-A663-0FA26324ECA0}
2020-12-22 01:35 - 2020-12-22 01:35 - 000000000 ____D C:\Program Files\EpsonNet
2020-12-22 01:35 - 2020-12-22 01:35 - 000000000 ____D C:\Program Files\Common Files\EPSON
2020-12-22 01:34 - 2020-12-22 01:55 - 000000000 ____D C:\Program Files (x86)\EPSON Software
2020-12-22 01:34 - 2020-12-22 01:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software
2020-12-22 01:34 - 2020-12-22 01:34 - 000001166 _____ C:\Users\Public\Desktop\Příručky společnosti EPSON.lnk
2020-12-22 01:34 - 2020-12-22 01:34 - 000000123 _____ C:\Users\Public\Desktop\Epson Connect Site.url
2020-12-22 01:33 - 2020-12-22 20:50 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2020-12-22 01:33 - 2020-12-22 01:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
2020-12-22 01:33 - 2020-12-22 01:41 - 000000000 ____D C:\Program Files (x86)\epson
2020-12-22 01:33 - 2020-12-22 01:33 - 000001242 _____ C:\Users\Public\Desktop\Epson Scan 2.lnk
2020-12-22 01:33 - 2020-12-22 01:33 - 000000000 ____D C:\Windows\twain_64
2020-12-22 01:33 - 2020-12-22 01:33 - 000000000 ____D C:\Program Files\epson
2020-12-22 01:33 - 2020-10-02 18:26 - 000206304 _____ (Seiko Epson Corporation) C:\Windows\system32\escsvc64.exe
2020-12-22 01:33 - 2020-10-02 18:26 - 000165392 _____ (TWAIN Working Group) C:\Windows\system32\twaindsm.dll
2020-12-22 01:33 - 2020-10-02 18:26 - 000147472 _____ (TWAIN Working Group) C:\Windows\SysWOW64\twaindsm.dll
2020-12-22 01:32 - 2016-12-21 04:12 - 000183296 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_YLMBR4E.DLL
2020-12-22 01:32 - 2011-03-15 03:03 - 000083968 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_YD4BR4E.DLL
2020-12-22 01:31 - 2020-12-22 01:42 - 000000000 ____D C:\ProgramData\Epson
2020-12-22 01:21 - 2020-12-22 01:21 - 018501944 _____ (ZONER software ) C:\Users\ruda6\Downloads\zps18_cz_aktualizace_10.exe
2020-12-22 01:18 - 2020-12-23 23:33 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\Zoner
2020-12-22 01:18 - 2020-12-23 23:33 - 000000000 ____D C:\Users\ruda6\AppData\Local\Zoner
2020-12-22 01:18 - 2020-12-22 01:18 - 000002035 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Zoner Photo Studio 18.lnk
2020-12-22 01:18 - 2020-12-22 01:18 - 000002029 _____ C:\Users\Public\Desktop\Zoner Photo Studio 18.lnk
2020-12-22 01:18 - 2020-12-22 01:18 - 000000000 ____D C:\Program Files\Zoner
2020-12-22 01:09 - 2020-12-22 01:12 - 000000000 ____D C:\Users\ruda6\AppData\Local\Turbo View & Convert
2020-12-22 01:09 - 2020-12-22 01:09 - 000001282 _____ C:\Users\Public\Desktop\Turbo View & Convert.lnk
2020-12-22 01:09 - 2020-12-22 01:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Turbo View & Convert
2020-12-22 01:09 - 2020-12-22 01:09 - 000000000 ____D C:\Program Files (x86)\File Identifier
2020-12-22 01:08 - 2020-12-22 01:08 - 000000000 ____D C:\Program Files (x86)\IMSIDesign
2020-12-22 01:07 - 2020-12-22 01:08 - 053786168 _____ (IMSI/Design, LLC ) C:\Users\ruda6\Downloads\tvc_setup_signed_2.0.0.145.exe
2020-12-22 00:51 - 2020-12-23 22:40 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\FreeFileSync
2020-12-22 00:51 - 2020-12-22 00:51 - 000001013 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeFileSync.lnk
2020-12-22 00:51 - 2020-12-22 00:51 - 000001001 _____ C:\Users\Public\Desktop\FreeFileSync.lnk
2020-12-22 00:51 - 2020-12-22 00:51 - 000000999 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealTimeSync.lnk
2020-12-22 00:51 - 2020-12-22 00:51 - 000000987 _____ C:\Users\Public\Desktop\RealTimeSync.lnk
2020-12-22 00:51 - 2020-12-22 00:51 - 000000000 ____D C:\Program Files\FreeFileSync
2020-12-22 00:50 - 2020-12-22 00:50 - 017319408 _____ (FreeFileSync.org ) C:\Users\ruda6\Downloads\FreeFileSync_11.4_Windows_Setup.exe
2020-12-22 00:18 - 2020-12-24 04:53 - 000000000 ____D C:\Users\ruda6\AppData\Local\D3DSCache
2020-12-21 23:53 - 2020-12-21 23:53 - 000001489 _____ C:\Users\ruda6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PureVPN.lnk
2020-12-21 23:41 - 2020-12-21 23:41 - 000000000 ____D C:\Users\ruda6\AppData\Local\GZ_Systems
2020-12-21 23:40 - 2020-12-21 23:53 - 000001257 _____ C:\Users\ruda6\Desktop\PureVPN.lnk
2020-12-21 23:40 - 2020-12-21 23:40 - 000001388 _____ C:\Users\ruda6\AppData\Roaming\Microsoft\Windows\Start Menu\Uninstall PureVPN.lnk
2020-12-21 23:40 - 2020-12-21 23:40 - 000000096 _____ C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
2020-12-21 23:40 - 2020-12-21 23:40 - 000000000 ____D C:\ProgramData\Atom
2020-12-21 23:40 - 2020-12-21 23:40 - 000000000 ____D C:\Program Files (x86)\Atom
2020-12-21 23:40 - 2020-05-29 06:19 - 000104424 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\avpndriver.sys
2020-12-21 23:40 - 2020-03-26 15:30 - 000039920 _____ (The OpenVPN Project) C:\Windows\system32\Drivers\tap0901.sys
2020-12-21 23:39 - 2020-12-21 23:55 - 000000000 ____D C:\ProgramData\purevpn
2020-12-21 23:39 - 2020-12-21 23:39 - 000000000 ____D C:\Program Files (x86)\GZ Systems
2020-12-21 23:38 - 2020-12-21 23:39 - 027932288 _____ () C:\Users\ruda6\Downloads\purevpn_setup.exe
2020-12-21 20:17 - 2020-12-21 20:17 - 000000000 ____D C:\Users\ruda6\AppData\Local\Ashampoo PDF
2020-12-21 20:16 - 2020-12-21 20:16 - 000000000 ____D C:\ProgramData\Temp
2020-12-21 20:16 - 2020-12-21 20:16 - 000000000 ____D C:\ActMask
2020-12-21 20:16 - 2019-03-21 14:33 - 000595080 ____R (ActMask Co.,Ltd - hxxp://www.all2pdf.com) C:\Windows\system32\PrintDisp.exe
2020-12-21 20:16 - 2015-10-01 06:46 - 000130184 ____R (ActMask Co.,Ltd - hxxp://WWW.ALL2PDF.COM) C:\Windows\system32\PrintCtrl.exe
2020-12-21 20:16 - 2015-07-16 13:35 - 000929792 _____ (ActMask hxxp://www.all2pdf.com) C:\Windows\SysWOW64\SaveTo.dll
2020-12-21 20:16 - 2013-12-07 21:25 - 004454128 _____ (DynaForms GmbH) C:\Windows\SysWOW64\CPDF4.dll
2020-12-21 20:16 - 2008-01-19 07:36 - 001391616 _____ C:\Windows\SysWOW64\ActPDF.dll
2020-12-21 20:15 - 2020-12-23 15:51 - 000000000 ____D C:\ProgramData\Package Cache
2020-12-21 20:15 - 2020-12-21 20:16 - 000000000 ____D C:\Windows\Ashampoo PDF
2020-12-21 20:15 - 2020-12-21 20:15 - 000001305 _____ C:\Users\Public\Desktop\Ashampoo PDF Pro 2.lnk
2020-12-21 20:15 - 2020-12-21 20:15 - 000000000 ____D C:\ProgramData\Aspell
2020-12-21 20:15 - 2020-12-21 20:15 - 000000000 ____D C:\ProgramData\Ashampoo PDF
2020-12-21 20:15 - 2017-03-25 10:01 - 000411272 _____ (ActMask Co.,Ltd - hxxp://WWW.ALL2PDF.COM) C:\Windows\SysWOW64\SetPrinter.exe
2020-12-21 20:15 - 2017-03-25 10:01 - 000411272 _____ (ActMask Co.,Ltd - hxxp://WWW.ALL2PDF.COM) C:\Windows\system32\SetPrinter.exe
2020-12-21 20:15 - 2014-04-16 18:21 - 000036488 _____ (ActMask Co., Ltd - hxxp:\\WWW.ALL2PDF.COM) C:\Windows\system32\SaveToEx30.dll
2020-12-21 20:15 - 2013-11-03 19:18 - 001181152 _____ (ActMask Co.,Ltd - hxxp://WWW.ALL2PDF.COM) C:\Windows\system32\PrtClient.exe
2020-12-21 20:15 - 2013-11-03 19:00 - 000532448 _____ (ActMask Co.,Ltd - hxxp://www.all2pdf.com) C:\Windows\system32\PrtPass.exe
2020-12-21 20:12 - 2020-12-21 20:12 - 000000000 ____D C:\Users\ruda6\AppData\LocalLow\Temp
2020-12-21 20:10 - 2020-12-21 20:14 - 318618888 _____ (Ashampoo GmbH & Co. KG ) C:\Users\ruda6\Downloads\ashampoo_pdf_pro_2_2.0.7_sm.exe
2020-12-21 20:00 - 2020-12-21 20:00 - 000001317 _____ C:\Users\Public\Desktop\Ashampoo Photo Commander 11.lnk
2020-12-21 19:57 - 2020-12-21 19:59 - 164099936 _____ (Ashampoo GmbH & Co. KG ) C:\Users\ruda6\Downloads\ashampoo_photo_commander_11_e11.1.9_sm.exe
2020-12-21 19:55 - 2020-12-21 19:55 - 000000000 ____D C:\Users\ruda6\AppData\Local\OneDrive
2020-12-21 19:53 - 2020-12-21 19:53 - 000001266 _____ C:\Users\Public\Desktop\Ashampoo ZIP Pro 2.lnk
2020-12-21 19:53 - 2020-12-21 19:53 - 000000000 ____D C:\Windows\SysWOW64\Skins
2020-12-21 19:53 - 2020-12-21 19:53 - 000000000 ____D C:\Windows\SysWOW64\Sfxs
2020-12-21 19:53 - 2020-12-21 19:53 - 000000000 ____D C:\Windows\SysWOW64\lang
2020-12-21 19:53 - 2020-12-21 19:53 - 000000000 ____D C:\Windows\SysWOW64\Icons
2020-12-21 19:53 - 2020-12-21 19:53 - 000000000 ____D C:\Windows\SysWOW64\Help
2020-12-21 19:52 - 2020-12-21 19:53 - 062621928 _____ (Ashampoo GmbH & Co. KG ) C:\Users\ruda6\Downloads\ashampoo_zip_pro_2_2.0.38_sm.exe
2020-12-21 19:47 - 2020-12-21 19:47 - 000000000 ____D C:\Users\ruda6\AppData\Local\CrashRpt
2020-12-21 19:46 - 2020-12-21 19:46 - 000001264 _____ C:\Users\Public\Desktop\Ashampoo Snap 11.lnk
2020-12-21 19:45 - 2020-12-21 19:45 - 048558592 _____ (Ashampoo GmbH & Co. KG ) C:\Users\ruda6\Downloads\ashampoo_snap_11_11.1.0_sm.exe
2020-12-21 19:40 - 2020-12-21 20:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2020-12-21 19:40 - 2020-12-21 20:15 - 000000000 ____D C:\ProgramData\Ashampoo
2020-12-21 19:40 - 2020-12-21 20:00 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\Ashampoo
2020-12-21 19:40 - 2020-12-21 19:47 - 000000000 ____D C:\Users\ruda6\AppData\Local\ashampoo
2020-12-21 19:40 - 2020-12-21 19:40 - 000001376 _____ C:\Users\Public\Desktop\Ashampoo Burning Studio 18.lnk
2020-12-21 19:39 - 2020-12-21 20:14 - 000000000 ____D C:\Program Files (x86)\Ashampoo
2020-12-21 19:37 - 2020-12-21 19:39 - 106137648 _____ (Ashampoo GmbH & Co. KG ) C:\Users\ruda6\Downloads\ashampoo_burning_studio_18_e18.0.0_sm.exe
2020-12-21 19:34 - 2020-12-22 11:55 - 000000000 ____D C:\Users\ruda6\AppData\Local\CrashDumps
2020-12-21 19:34 - 2020-12-21 19:34 - 000000000 ____D C:\Users\ruda6\AppData\Local\Foxit Reader
2020-12-21 19:32 - 2020-12-21 19:32 - 000000000 ____D C:\Users\ruda6\AppData\LocalLow\Foxit
2020-12-21 19:31 - 2020-12-21 19:33 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\Foxit Software
2020-12-21 19:31 - 2020-12-21 19:32 - 000000000 ____D C:\Users\Public\Foxit Software
2020-12-21 19:31 - 2020-12-21 19:31 - 000001428 _____ C:\Users\Public\Desktop\Foxit Reader.lnk
2020-12-21 19:31 - 2020-12-21 19:31 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\Foxit AgentInformation
2020-12-21 19:31 - 2020-12-21 19:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2020-12-21 19:31 - 2020-12-21 19:31 - 000000000 ____D C:\ProgramData\Foxit Software
2020-12-21 19:31 - 2020-12-21 19:31 - 000000000 ____D C:\ProgramData\Foxit ContentPlatform
2020-12-21 19:31 - 2020-12-21 19:31 - 000000000 ____D C:\Program Files (x86)\Foxit Software
2020-12-21 19:29 - 2020-12-21 19:30 - 073945696 _____ (Foxit Software Inc. ) C:\Users\ruda6\Downloads\FoxitReader1011_enu_Setup_Prom.exe
2020-12-21 19:24 - 2020-12-23 21:56 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\vlc
2020-12-21 19:24 - 2020-12-21 19:24 - 000000920 _____ C:\Users\Public\Desktop\VLC media player.lnk
2020-12-21 19:24 - 2020-12-21 19:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2020-12-21 19:24 - 2020-12-21 19:24 - 000000000 ____D C:\Program Files\VideoLAN
2020-12-21 19:22 - 2020-12-21 19:23 - 041824168 _____ C:\Users\ruda6\Downloads\vlc-3.0.11-win64.exe
2020-12-21 19:18 - 2020-12-21 19:18 - 000002323 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-12-21 19:18 - 2020-12-21 19:18 - 000002282 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-12-21 19:18 - 2020-12-21 19:18 - 000000000 ____D C:\Program Files\Google
2020-12-21 19:17 - 2020-12-21 19:23 - 000000000 ____D C:\Users\ruda6\AppData\Local\Google
2020-12-21 19:17 - 2020-12-21 19:17 - 001321688 _____ (Google LLC) C:\Users\ruda6\Downloads\ChromeSetup.exe
2020-12-21 19:17 - 2020-12-21 19:17 - 000003472 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-12-21 19:17 - 2020-12-21 19:17 - 000003348 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-12-21 19:17 - 2020-12-21 19:17 - 000000000 ____D C:\Program Files (x86)\Google
2020-12-21 18:59 - 2020-12-21 18:59 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2020-12-21 18:59 - 2020-12-21 18:59 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2020-12-21 18:59 - 2020-12-21 18:59 - 002260480 _____ C:\Windows\system32\TextInputMethodFormatter.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 001822272 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2020-12-21 18:59 - 2020-12-21 18:59 - 001393496 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2020-12-21 18:59 - 2020-12-21 18:59 - 001333248 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000363520 _____ C:\Windows\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000287232 _____ C:\Windows\system32\CoreMas.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000266240 _____ C:\Windows\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000240640 _____ C:\Windows\SysWOW64\CoreMas.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000165376 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe
2020-12-21 18:59 - 2020-12-21 18:59 - 000102912 _____ (Microsoft Corporation) C:\Windows\system32\ncpa.cpl
2020-12-21 18:59 - 2020-12-21 18:59 - 000100864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncpa.cpl
2020-12-21 18:59 - 2020-12-21 18:59 - 000089088 _____ C:\Windows\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000073216 _____ C:\Windows\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000060928 _____ C:\Windows\system32\runexehelper.exe
2020-12-21 18:59 - 2020-12-21 18:59 - 000048640 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000039936 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000013312 _____ C:\Windows\system32\agentactivationruntimestarter.exe
2020-12-21 18:59 - 2020-12-21 18:59 - 000010912 _____ C:\Windows\system32\DrtmAuthTxt.wim
2020-12-21 18:59 - 2020-12-21 18:59 - 000010752 _____ C:\Windows\SysWOW64\agentactivationruntimestarter.exe
2020-12-21 18:59 - 2020-12-21 18:59 - 000001370 _____ C:\Windows\system32\ThirdPartyNoticesBySHS.txt
2020-12-21 18:52 - 2020-12-24 14:03 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\eM Client
2020-12-21 18:52 - 2020-12-21 18:52 - 000000000 ____D C:\Users\ruda6\AppData\Local\eM Client
2020-12-21 18:52 - 2020-12-21 18:52 - 000000000 ____D C:\Users\ruda6\AppData\Local\CEF
2020-12-21 18:51 - 2020-12-21 18:51 - 000001108 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eM Client.lnk
2020-12-21 18:51 - 2020-12-21 18:51 - 000000000 ____D C:\Program Files (x86)\eM Client
2020-12-21 18:47 - 2020-12-21 18:50 - 110661632 _____ C:\Users\ruda6\Downloads\emclient-v8.1.876.msi
2020-12-21 18:41 - 2020-12-24 11:21 - 000000000 ___SD C:\Users\ruda6\Documents\Sticky Passwords
2020-12-21 18:40 - 2020-12-21 18:40 - 000001165 _____ C:\Users\Public\Desktop\Sticky Password.lnk
2020-12-21 18:40 - 2020-12-21 18:40 - 000000000 ____D C:\Users\ruda6\AppData\Local\PeerDistRepub
2020-12-21 18:40 - 2020-12-21 18:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sticky Password
2020-12-21 18:40 - 2020-12-21 18:40 - 000000000 ____D C:\Program Files (x86)\Sticky Password
2020-12-21 18:39 - 2020-12-21 18:40 - 000000000 ____D C:\Windows\system32\MRT
2020-12-21 18:38 - 2020-12-21 18:39 - 048290328 _____ (Lamantine Software ) C:\Users\ruda6\Downloads\StickyPassword_rev8284.exe
2020-12-21 17:39 - 2020-12-21 17:39 - 000000112 ___SH C:\bootTel.dat
2020-12-21 17:36 - 2020-12-21 23:16 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2020-12-21 17:36 - 2020-12-21 17:41 - 000000000 ____D C:\Windows\CSC
2020-12-21 17:36 - 2020-12-21 17:36 - 000000000 __SHD C:\Windows\BitLockerDiscoveryVolumeContents
2020-12-21 17:36 - 2020-12-21 17:36 - 000000000 ___SD C:\Windows\system32\AppV
2020-12-21 17:36 - 2020-12-21 17:36 - 000000000 ____D C:\Windows\RemotePackages
2020-12-21 17:14 - 2020-12-23 15:44 - 000000000 ____D C:\ProgramData\Intel
2020-12-21 17:11 - 2020-12-21 17:11 - 000000000 ____D C:\Users\ruda6\AppData\LocalLow\Intel
2020-12-21 16:57 - 2020-12-21 16:57 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2020-12-21 16:56 - 2020-12-24 14:02 - 000000000 ____D C:\ProgramData\NVIDIA
2020-12-21 16:56 - 2020-12-21 16:56 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2020-12-21 16:56 - 2016-12-29 14:16 - 006384576 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2020-12-21 16:56 - 2016-12-29 14:16 - 002475968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2020-12-21 16:56 - 2016-12-29 14:16 - 001762752 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2020-12-21 16:56 - 2016-12-29 14:16 - 000546752 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2020-12-21 16:56 - 2016-12-29 14:16 - 000392128 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2020-12-21 16:56 - 2016-12-29 14:16 - 000083512 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2020-12-21 16:56 - 2016-12-29 14:16 - 000069568 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2020-12-21 16:56 - 2016-12-29 14:10 - 000001951 _____ C:\Windows\NvContainerRecovery.bat
2020-12-21 16:56 - 2016-12-22 00:59 - 007651057 _____ C:\Windows\system32\nvcoproc.bin
2020-12-21 16:55 - 2020-12-21 16:56 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2020-12-21 16:55 - 2020-12-21 16:55 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2020-12-21 16:55 - 2017-01-17 05:54 - 034717624 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2020-12-21 16:55 - 2017-01-17 05:53 - 028209080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2020-12-21 16:55 - 2017-01-17 05:53 - 000951224 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2020-12-21 16:55 - 2017-01-17 05:53 - 000904752 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2020-12-21 16:55 - 2017-01-17 05:53 - 000448568 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2020-12-21 16:55 - 2017-01-17 05:53 - 000397240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2020-12-21 16:55 - 2017-01-17 05:52 - 040134192 _____ C:\Windows\system32\nvcompiler.dll
2020-12-21 16:55 - 2017-01-17 05:52 - 002961336 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2020-12-21 16:55 - 2017-01-17 05:52 - 002594744 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2020-12-21 16:55 - 2017-01-17 05:52 - 001964600 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437654.dll
2020-12-21 16:55 - 2017-01-17 05:52 - 001598392 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437654.dll
2020-12-21 16:55 - 2017-01-17 05:52 - 001047096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2020-12-21 16:55 - 2017-01-17 05:52 - 000985136 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 035233328 _____ C:\Windows\SysWOW64\nvcompiler.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 011017016 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 010907368 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 009246824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 009000336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 000818680 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 000698544 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 000586784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 000407240 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 000339144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2020-12-21 16:55 - 2017-01-17 05:50 - 010453152 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2020-12-21 16:55 - 2017-01-17 05:50 - 008847016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2020-12-21 16:55 - 2017-01-17 05:50 - 003972960 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2020-12-21 16:55 - 2017-01-17 05:50 - 003509152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2020-12-21 16:55 - 2017-01-17 05:50 - 000658584 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll
2020-12-21 16:55 - 2017-01-17 01:37 - 000042296 _____ C:\Windows\system32\nvinfo.pb
2020-12-21 16:55 - 2017-01-17 01:37 - 000000669 _____ C:\Windows\SysWOW64\nv-vk32.json
2020-12-21 16:55 - 2017-01-17 01:37 - 000000669 _____ C:\Windows\system32\nv-vk64.json
2020-12-21 16:49 - 2020-12-24 03:18 - 000000000 ____D C:\Users\ruda6\AppData\Local\Comms
2020-12-21 16:46 - 2020-12-24 14:02 - 000000000 __SHD C:\Users\ruda6\IntelGraphicsProfiles
2020-12-21 16:46 - 2020-12-21 17:14 - 000000000 ____D C:\Users\ruda6\AppData\Local\Intel
2020-12-21 16:46 - 2020-12-21 16:46 - 000000000 _____ C:\Windows\system32\GfxValDisplayLog.bin
2020-12-21 16:44 - 2020-12-21 17:21 - 000023552 _____ (Khronos Group) C:\Windows\SysWOW64\opencl.dll
2020-12-21 16:44 - 2020-09-11 11:36 - 000305992 _____ C:\Windows\system32\libmfxhw64.dll
2020-12-21 16:44 - 2020-09-11 11:36 - 000254520 _____ C:\Windows\SysWOW64\libmfxhw32.dll
2020-12-21 16:44 - 2020-09-11 11:36 - 000171472 _____ (Intel Corporation) C:\Windows\system32\intel_gfx_api-x64.dll
2020-12-21 16:44 - 2020-09-11 11:36 - 000146752 _____ (Intel Corporation) C:\Windows\SysWOW64\intel_gfx_api-x86.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 026676016 _____ (Intel Corporation) C:\Windows\system32\mfxplugin64_hw.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 013519664 _____ (Intel Corporation) C:\Windows\SysWOW64\mfxplugin32_hw.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 001790192 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2020-12-21 16:44 - 2020-09-11 11:35 - 001790192 _____ C:\Windows\system32\vulkaninfo.exe
2020-12-21 16:44 - 2020-09-11 11:35 - 001386224 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2020-12-21 16:44 - 2020-09-11 11:35 - 001386224 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2020-12-21 16:44 - 2020-09-11 11:35 - 001096800 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 001096800 _____ C:\Windows\system32\vulkan-1.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 000949856 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 000949856 _____ C:\Windows\SysWOW64\vulkan-1.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 000507696 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 000462640 _____ C:\Windows\system32\ze_loader.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 000148784 _____ C:\Windows\system32\ze_validation_layer.dll
2020-12-21 16:42 - 2020-12-24 14:07 - 001694140 _____ C:\Windows\system32\PerfStringBackup.INI
2020-12-21 16:41 - 2020-12-24 13:52 - 000000000 ____D C:\Users\ruda6\AppData\Local\PlaceholderTileLogoFolder
2020-12-21 16:40 - 2020-12-22 00:15 - 000000000 ___RD C:\Users\ruda6\OneDrive
2020-12-21 16:40 - 2020-12-21 16:41 - 000003378 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2513297869-714495167-4108430696-1001
2020-12-21 16:39 - 2020-12-24 13:52 - 000000000 ____D C:\Users\ruda6\AppData\Local\Packages
2020-12-21 16:39 - 2020-12-22 10:33 - 000000000 ____D C:\Users\ruda6\AppData\Local\ConnectedDevicesPlatform
2020-12-21 16:39 - 2020-12-21 16:49 - 000000000 ____D C:\Users\ruda6\AppData\Local\Publishers
2020-12-21 16:39 - 2020-12-21 16:39 - 000000000 ___RD C:\Users\ruda6\3D Objects
2020-12-21 16:39 - 2020-12-21 16:39 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\Adobe
2020-12-21 16:39 - 2020-12-21 16:39 - 000000000 ____D C:\Users\ruda6\AppData\Local\VirtualStore
2020-12-21 16:37 - 2020-12-23 15:42 - 000000000 ____D C:\Users\ruda6
2020-12-21 16:37 - 2020-12-21 16:41 - 000002365 _____ C:\Users\ruda6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-12-21 16:37 - 2020-12-21 16:37 - 000000020 ___SH C:\Users\ruda6\ntuser.ini
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\Šablony
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\Soubory cookie
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\Poslední
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\Okolní tiskárny
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\Okolní síť
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\Nabídka Start
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\Dokumenty
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\Data aplikací
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\AppData\Local\Data aplikací
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Public\Documents\Obrázky
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Public\Documents\Hudba
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Public\Documents\Filmy
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Šablony
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Poslední
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Okolní síť
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Dokumenty
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Documents\Obrázky
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Documents\Hudba
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Documents\Filmy
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Data aplikací
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Šablony
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Soubory cookie
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Poslední
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Okolní tiskárny
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Okolní síť
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Nabídka Start
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Dokumenty
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Documents\Obrázky
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Documents\Hudba
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Documents\Filmy
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Data aplikací
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\ProgramData\Šablony
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\ProgramData\Plocha
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\ProgramData\Dokumenty
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\ProgramData\Data aplikací
2020-12-21 16:32 - 2020-12-21 16:32 - 000002854 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2513297869-714495167-4108430696-500
2020-12-21 16:32 - 2020-12-21 16:32 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2020-12-21 16:31 - 2020-12-23 22:05 - 000000000 ____D C:\Windows\Panther
2020-12-21 14:14 - 2020-12-21 14:14 - 000000000 ___HD C:\$Windows.~WS
2020-12-21 11:47 - 2020-12-21 11:47 - 000000000 ____H C:\$WINRE_BACKUP_PARTITION.MARKER

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-12-24 17:17 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-12-24 17:17 - 2019-06-06 22:23 - 000000000 ____D C:\FRST
2020-12-24 16:44 - 2020-11-18 23:29 - 000000000 ____D C:\Windows\system32\SleepStudy
2020-12-24 14:07 - 2019-12-07 15:41 - 000718262 _____ C:\Windows\system32\perfh005.dat
2020-12-24 14:07 - 2019-12-07 15:41 - 000145404 _____ C:\Windows\system32\perfc005.dat
2020-12-24 14:07 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2020-12-24 14:02 - 2020-11-19 00:30 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-12-24 14:02 - 2020-09-27 06:50 - 000008192 ___SH C:\DumpStack.log.tmp
2020-12-24 14:02 - 2019-12-07 10:03 - 000524288 _____ C:\Windows\system32\config\BBI
2020-12-24 14:02 - 2017-04-14 02:33 - 000000000 ___HD C:\Intel
2020-12-24 13:58 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2020-12-24 13:52 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2020-12-24 04:56 - 2020-11-19 00:33 - 000000000 ____D C:\ProgramData\Packages
2020-12-23 21:27 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2020-12-23 15:45 - 2020-11-18 23:29 - 000630648 _____ C:\Windows\system32\FNTCACHE.DAT
2020-12-23 15:42 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\MUI
2020-12-23 15:42 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\MUI
2020-12-23 15:42 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp
2020-12-23 13:48 - 2020-01-09 15:43 - 000000000 ____D C:\Users\ruda6\Documents\Nákupy
2020-12-22 10:04 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\appcompat
2020-12-21 23:16 - 2019-12-07 15:44 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2020-12-21 23:16 - 2019-12-07 15:44 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2020-12-21 23:16 - 2019-12-07 15:41 - 000000000 ____D C:\Windows\SysWOW64\winrm
2020-12-21 23:16 - 2019-12-07 15:41 - 000000000 ____D C:\Windows\SysWOW64\WCN
2020-12-21 23:16 - 2019-12-07 15:41 - 000000000 ____D C:\Windows\SysWOW64\slmgr
2020-12-21 23:16 - 2019-12-07 15:41 - 000000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts
2020-12-21 23:16 - 2019-12-07 15:41 - 000000000 ____D C:\Windows\system32\winrm
2020-12-21 23:16 - 2019-12-07 15:41 - 000000000 ____D C:\Windows\system32\WCN
2020-12-21 23:16 - 2019-12-07 15:41 - 000000000 ____D C:\Windows\system32\slmgr
2020-12-21 23:16 - 2019-12-07 15:41 - 000000000 ____D C:\Windows\system32\Printing_Admin_Scripts
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\SysWOW64\F12
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\F12
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\migwiz
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2020-12-21 23:16 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\servicing
2020-12-21 23:13 - 2019-12-07 15:43 - 000000000 ____D C:\Windows\OCR
2020-12-21 19:25 - 2020-11-19 00:30 - 000000000 ____D C:\Windows\system32\Drivers\wd
2020-12-21 19:13 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2020-12-21 19:13 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources
2020-12-21 19:13 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Dism
2020-12-21 19:13 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2020-12-21 19:13 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr
2020-12-21 18:54 - 2020-06-10 15:08 - 000000000 ___HD C:\$WinREAgent
2020-12-21 17:36 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemApps
2020-12-21 17:36 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\schemas
2020-12-21 17:36 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\security
2020-12-21 17:21 - 2020-11-19 03:50 - 001970176 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistSvc.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 001632056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.AppAgent.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000859136 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000756224 _____ (Microsoft Corporation) C:\Windows\system32\cscsvc.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000704000 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000677888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvgogl32.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000580608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\csc.sys
2020-12-21 17:21 - 2020-11-19 03:50 - 000563200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000553984 _____ (Microsoft Corporation) C:\Windows\system32\scrptadm.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000542208 _____ (Microsoft Corporation) C:\Windows\system32\AdmTmpl.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000467968 _____ C:\Windows\system32\AssignedAccessCsp.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000467456 _____ (Microsoft Corporation) C:\Windows\system32\rdpshell.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000465920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrptadm.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000428544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AdmTmpl.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000417280 _____ (Microsoft Corporation) C:\Windows\system32\bdechangepin.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000409600 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000318464 _____ (Microsoft Corporation) C:\Windows\system32\rdpinit.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000282624 _____ (Microsoft Corporation) C:\Windows\system32\tscfgwmi.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000226304 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistCleaner.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000207360 _____ (Microsoft Corporation) C:\Windows\system32\appmgmts.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000185344 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistWSDDiscoProv.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000183296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvgocl32.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000181760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PeerDist.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000164152 _____ (Microsoft Corporation) C:\Windows\system32\hvsievaluator.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000162616 _____ (Microsoft Corporation) C:\Windows\system32\hvsigpext.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appmgmts.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000147272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mavinject.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000145736 _____ (Microsoft Corporation) C:\Windows\system32\CscMig.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000145408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvgu1132.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000137016 _____ C:\Windows\system32\HvsiManagementApi.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000111616 _____ C:\Windows\system32\RDVGHelper.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000101688 _____ C:\Windows\SysWOW64\HvsiManagementApi.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvgumd32.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000083768 _____ (Microsoft Corporation) C:\Windows\system32\windowsdefenderapplicationguardcsp.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\dggpext.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000075264 _____ (Microsoft Corporation) C:\Windows\system32\PrintBrmUi.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000056320 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistHttpTrans.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000053248 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000042496 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistAD.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.Office2010CustomActions.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000026944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppVClientPS.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000018232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppVTerminator.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000013624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppVSentinel.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\TSErrRedir.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\RemoteFXvGPUDisablement.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 002384696 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.AppAgent.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 002200576 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ModernAppAgent.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 002022200 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystems64.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 001588016 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntVirtualization.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 001438008 _____ (Microsoft Corporation) C:\Windows\system32\AppVIntegration.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 001332224 _____ (Microsoft Corporation) C:\Windows\system32\srmclient.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 001201152 _____ (Microsoft Corporation) C:\Windows\system32\AgentService.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 001198592 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.CommonBridge.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 001138176 _____ (Microsoft Corporation) C:\Windows\system32\ApplySettingsTemplateCatalog.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000969544 _____ (Microsoft Corporation) C:\Windows\system32\AppVPolicy.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000945152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmclient.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000894264 _____ (Microsoft Corporation) C:\Windows\system32\AppVManifest.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000756552 _____ (Microsoft Corporation) C:\Windows\system32\AppVClient.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000739128 _____ (Microsoft Corporation) C:\Windows\system32\AppVOrchestration.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000736056 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntStreamingManager.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000668472 _____ (Microsoft Corporation) C:\Windows\system32\AppVReporting.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000638976 _____ (Microsoft Corporation) C:\Windows\system32\srmscan.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000604472 _____ (Microsoft Corporation) C:\Windows\system32\AppVCatalog.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000575800 _____ (Microsoft Corporation) C:\Windows\system32\AppVPublishing.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmscan.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000446264 _____ (Microsoft Corporation) C:\Windows\system32\TransportDSA.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000422912 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.CscUnpinTool.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000366392 _____ (Microsoft Corporation) C:\Windows\system32\AppVScripting.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000293176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssecflt.sys
2020-12-21 17:21 - 2020-11-19 03:49 - 000284672 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ConfigWrapper.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000251192 _____ (Microsoft Corporation) C:\Windows\system32\AppVFileSystemMetadata.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\PeerDist.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000223544 _____ (Microsoft Corporation) C:\Windows\system32\AppVStreamMap.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000219960 _____ (Microsoft Corporation) C:\Windows\system32\AppVShNotify.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\tssrvlic.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000195384 _____ (Microsoft Corporation) C:\Windows\system32\AppVStreamingUX.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000182592 _____ (Microsoft Corporation) C:\Windows\system32\mavinject.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000175928 _____ (Microsoft Corporation) C:\Windows\system32\AppVDllSurrogate.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000167224 _____ (Microsoft Corporation) C:\Windows\system32\AppVNice.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000133120 _____ (Microsoft Corporation) C:\Windows\system32\appvetwclientres.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000101888 _____ (Microsoft Corporation) C:\Windows\system32\mssecuser.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000073728 _____ (Microsoft Corporation) C:\Windows\system32\LSCSHostPolicy.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Office2010CustomActions.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000041280 _____ (Microsoft Corporation) C:\Windows\system32\AppVClientPS.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000038712 _____ (Microsoft Corporation) C:\Windows\system32\SyncAppvPublishingServer.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000026624 _____ (Microsoft Corporation) C:\Windows\system32\lstelemetry.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000021816 _____ (Microsoft Corporation) C:\Windows\system32\ScriptRunner.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000019768 _____ (Microsoft Corporation) C:\Windows\system32\AppVTerminator.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000015672 _____ (Microsoft Corporation) C:\Windows\system32\AppVSentinel.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\appvetwstreamingux.dll
2020-12-21 17:21 - 2020-11-19 03:48 - 000134656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tsusbhub.sys
2020-12-21 17:21 - 2019-12-07 10:10 - 000820736 _____ (Microsoft Corporation) C:\Windows\system32\cscui.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000727040 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistCacheProvider.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000469504 _____ (Microsoft Corporation) C:\Windows\system32\appmgr.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000423936 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistSh.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000403968 _____ (Microsoft Corporation) C:\Windows\system32\AppIdPolicyEngineApi.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000373760 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_AssignedAccess.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000366592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appmgr.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000343552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PeerDistSh.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000301568 _____ (Microsoft Corporation) C:\Windows\system32\cscobj.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\ddputils.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000287744 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ManagedEventLogging.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppIdPolicyEngineApi.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000280064 _____ (Microsoft Corporation) C:\Windows\system32\srm.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srm.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000278528 _____ (Microsoft Corporation) C:\Windows\system32\srmstormod.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000233984 _____ (Microsoft Corporation) C:\Windows\system32\ddpchunk.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000233472 _____ (Microsoft Corporation) C:\Windows\system32\tspubwmi.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000224768 _____ (Microsoft Corporation) C:\Windows\system32\PresentationSettings.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000223744 _____ (Microsoft Corporation) C:\Windows\system32\AuditNativeSnapIn.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000223744 _____ (Microsoft Corporation) C:\Windows\system32\appvetwsharedperformance.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000223744 _____ (Microsoft Corporation) C:\Windows\system32\AppvClientEventLog.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuditNativeSnapIn.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000214016 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.CmUtil.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscobj.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000195072 _____ (Microsoft Corporation) C:\Windows\system32\IoTAssignedAccessLockFramework.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmstormod.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000174608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AppvVemgr.sys
2020-12-21 17:21 - 2019-12-07 10:10 - 000174592 _____ (Microsoft Corporation) C:\Windows\system32\srmshell.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000172544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\smbdirect.sys
2020-12-21 17:21 - 2019-12-07 10:10 - 000169472 ____R (Microsoft Corporation) C:\Windows\system32\SecureAssessmentHandlers.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000161280 _____ (Microsoft Corporation) C:\Windows\system32\fveprompt.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000156672 _____ C:\Windows\system32\uwfcsp.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000154936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AppvVfs.sys
2020-12-21 17:21 - 2019-12-07 10:10 - 000149504 _____ (Microsoft Corporation) C:\Windows\system32\AppManagementConfiguration.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000147439 _____ C:\Windows\SysWOW64\gpedit.msc
2020-12-21 17:21 - 2019-12-07 10:10 - 000147439 _____ C:\Windows\system32\gpedit.msc
2020-12-21 17:21 - 2019-12-07 10:10 - 000145408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.SecureAssessment.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000138272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AppVStrm.sys
2020-12-21 17:21 - 2019-12-07 10:10 - 000138240 _____ (Microsoft Corporation) C:\Windows\system32\ddptrace.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000137736 _____ (Microsoft Corporation) C:\Windows\system32\iotstartup.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000136704 ____R (Microsoft Corporation) C:\Windows\system32\Windows.Management.SecureAssessment.CfgProvider.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000136704 _____ (Microsoft Corporation) C:\Windows\system32\adrclient.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000134656 _____ C:\Windows\system32\DeviceUpdateCenterCsp.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000134144 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfg.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmshell.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppManagementConfiguration.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000122368 _____ C:\Windows\system32\uwfcfgmgmt.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000120458 _____ C:\Windows\system32\secpol.msc
2020-12-21 17:21 - 2019-12-07 10:10 - 000113152 _____ (Microsoft Corporation) C:\Windows\system32\baaupdate.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000105984 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfgLib.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000102400 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerWizardElev.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000102400 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerWizard.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000100352 _____ (Microsoft Corporation) C:\Windows\system32\rdpsign.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000099840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adrclient.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\RemoteAppLifetimeManager.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpolmsg.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000095744 _____ (Microsoft Corporation) C:\Windows\system32\auditpolmsg.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000093696 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseAppVMgmtCSP.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\PackageInspector.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmlib.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000090112 _____ (Microsoft Corporation) C:\Windows\system32\srmlib.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\srmtrace.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000083456 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.SyncController.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\AssignedAccessShellProxy.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000074752 _____ (Microsoft Corporation) C:\Windows\system32\AuditPolicyGPInterop.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Common.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\ddp_ps.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmtrace.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000058880 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ModernAppCore.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuditPolicyGPInterop.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000055808 _____ (Microsoft Corporation) C:\Windows\system32\UevAppMonitor.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000054272 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.CabUtil.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.EventLogMessages.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000043566 _____ C:\Windows\SysWOW64\rsop.msc
2020-12-21 17:21 - 2019-12-07 10:10 - 000043566 _____ C:\Windows\system32\rsop.msc
2020-12-21 17:21 - 2019-12-07 10:10 - 000041984 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000041488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UevAgentDriver.sys
2020-12-21 17:21 - 2019-12-07 10:10 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\UevAgentPolicyGenerator.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\SrpUxNativeSnapIn.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rfxvmt.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000032256 _____ (Microsoft Corporation) C:\Windows\system32\srm_ps.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000031744 _____ C:\Windows\system32\uwfservicingapi.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SrpUxNativeSnapIn.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\qwinsta.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000027648 _____ (Microsoft Corporation) C:\Windows\system32\qprocess.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000027136 _____ (Microsoft Corporation) C:\Windows\system32\msg.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\quser.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\chgport.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\tskill.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\qappsrv.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\tscon.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\tsdiscon.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\rwinsta.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Management.WmiAccess.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\logoff.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\chglogon.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\chgusr.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Management.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ModernAppData.WinRT.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NcaApi.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000019456 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.SyncCommon.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Common.WinRT.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\reset.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.LocalSyncProvider.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\change.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\query.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srm_ps.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\RemoteAppLifetimeManagerProxyStub.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ModernSync.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000013824 _____ (Microsoft Corporation) C:\Windows\system32\UevTemplateBaselineGenerator.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000013824 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.AgentDriverEvents.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\UevTemplateConfigItemGenerator.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\BdeSysprep.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000011264 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.SmbSyncProvider.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\assignedaccessproviderevents.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.MonitorSyncProvider.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000007680 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.SyncConditions.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.SecureAssessment.Diagnostics.dll
2020-12-21 17:15 - 2020-11-19 00:32 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-12-21 17:15 - 2020-11-19 00:32 - 000002278 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2020-12-21 16:56 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\Help
2020-12-21 16:41 - 2019-10-15 10:00 - 000000000 ___HD C:\OneDriveTemp
2020-12-21 16:40 - 2020-11-19 00:33 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-12-21 16:37 - 2020-11-19 00:32 - 000003584 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-12-21 16:37 - 2020-11-19 00:32 - 000003460 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-12-21 16:36 - 2019-12-07 15:42 - 000000000 ____D C:\Windows\system32\FxsTmp
2020-12-21 16:36 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ServiceState
2020-12-21 16:36 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate
2020-12-21 16:35 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows NT
2020-12-21 16:33 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\PrintDialog
2020-12-21 16:31 - 2019-12-07 10:14 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2020-12-21 15:58 - 2017-05-25 21:46 - 000000000 ____D C:\ESD
2020-12-21 04:40 - 2020-05-07 20:07 - 000000000 ____D C:\FFOutput
2020-12-20 23:27 - 2019-05-23 12:20 - 000000000 ___RD C:\Sandbox
2020-12-20 23:26 - 2019-12-01 01:19 - 000000000 ____D C:\Output
2020-12-20 23:26 - 2019-02-18 16:43 - 000000000 ____D C:\bE7tFd
2020-12-20 23:26 - 2019-01-09 17:17 - 000000000 ____D C:\AdwCleaner
2020-12-20 23:26 - 2017-04-19 09:59 - 000000000 ___RD C:\ALBA
2020-12-20 23:26 - 2017-04-13 18:31 - 000000000 ___HD C:\OEM

==================== Files in the root of some directories ========

2020-12-22 16:50 - 2020-12-22 16:50 - 000000716 ____H () C:\Users\ruda6\AppData\Roaming\{B0E80E49-57AF-758F-AE9B-C68B46701F6B}
2020-12-24 03:17 - 2020-12-24 03:17 - 000000017 _____ () C:\Users\ruda6\AppData\Local\resmon.resmoncfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-12-2020
Ran by ruda6 (24-12-2020 17:19:11)
Running from C:\Users\ruda6\Desktop
Windows 10 Pro Version 20H2 19042.685 (X64) (2020-12-21 15:35:38)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2513297869-714495167-4108430696-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2513297869-714495167-4108430696-503 - Limited - Disabled)
Guest (S-1-5-21-2513297869-714495167-4108430696-501 - Limited - Disabled)
ruda6 (S-1-5-21-2513297869-714495167-4108430696-1001 - Administrator - Enabled) => C:\Users\ruda6
WDAGUtilityAccount (S-1-5-21-2513297869-714495167-4108430696-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

ActMask PDF Virtual Printer SDK (HKLM\...\ActMask PDF Virtual Printer SDK - Licensee: Asha~0729FCB9_is1) (Version: - )
Ashampoo Burning Studio 18 (HKLM-x32\...\{91B33C97-AF35-C3DC-976E-8A253D817482}_is1) (Version: 18.0.0 - Ashampoo GmbH & Co. KG)
Ashampoo PDF Pro 2 (HKLM-x32\...\{0A11EA01-0224-BF80-B342-BDA165B48491}_is1) (Version: 2.0.7 - Ashampoo GmbH & Co. KG)
Ashampoo Photo Commander 11 v.11.1.9 (HKLM-x32\...\{C92AB6F1-0F9C-8526-5DF1-0A2FD0FB33D9}_is1) (Version: 11.1.9 - Ashampoo GmbH & Co. KG)
Ashampoo Snap 11 (HKLM-x32\...\{0A11EA01-AF34-C9AB-388B-8520DA9E7D92}_is1) (Version: 11.1.0 - Ashampoo GmbH & Co. KG)
Ashampoo ZIP Pro 2 (HKLM-x32\...\{0A11EA01-F9F6-19B4-64EE-EBA8E6C9F0FC}_is1) (Version: 2.0.38 - Ashampoo GmbH & Co. KG)
CCleaner (HKLM\...\CCleaner) (Version: 5.75 - Piriform)
DriverSetupUtility (HKLM\...\{2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6}) (Version: 1.00.3020 - Acer Incorporated)
eM Client (HKLM-x32\...\{73946719-FCCD-4D2D-8196-E595DBBFC187}) (Version: 8.1.876.0 - eM Client Inc.)
Epson Connect Printer Setup (HKLM-x32\...\{D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C}) (Version: 1.4.3 - Seiko Epson Corporation)
Epson Easy Photo Print 2 (HKLM-x32\...\{7E0261C4-8495-4365-BE48-647701D8B9BD}) (Version: 2.8.3.0 - Seiko Epson Corporation)
Epson Event Manager (HKLM-x32\...\{AB8BE3EA-01D3-44B7-8E77-A9601CBDEBDE}) (Version: 3.10.0085 - Seiko Epson Corporation)
Epson E-Web Print (HKLM-x32\...\{6BF9F374-EC67-4808-A90C-F127DE6D989D}) (Version: 1.23.0000 - SEIKO EPSON CORPORATION)
EPSON L3050 Series Printer Uninstall (HKLM\...\EPSON L3050 Series) (Version: - Seiko Epson Corporation)
Epson Printer Connection Checker (HKLM-x32\...\{189DE071-E0BC-4BA5-8E34-83D5ED12600B}) (Version: 3.2.0.0 - Seiko Epson Corporation)
Epson Scan 2 (HKLM-x32\...\Epson Scan 2) (Version: - Seiko Epson Corporation)
EPSON Scan OCR Component (HKLM-x32\...\{563B99D8-8895-4E3E-AE8D-15BE8C05F1C1}) (Version: 3.00.04 - SEIKO EPSON Corp.)
Epson Software Updater (HKLM-x32\...\{28C66F35-69BF-4376-BC80-4D5F4808FF3C}) (Version: 4.6.1 - Seiko Epson Corporation)
EpsonNet Print (HKLM\...\{96ED1D58-440C-4345-8FEE-C4781366C67F}) (Version: 3.1.4.0 - SEIKO EPSON Corporation)
File Identifier (HKLM-x32\...\{C257E434-E8F1-4E06-A616-598E4933553E}_is1) (Version: 1.0.9 - Sharpened Productions)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 10.1.1.37576 - Foxit Software Inc.)
FreeFileSync 11.4 (HKLM-x32\...\FreeFileSync_is1) (Version: 11.4 - FreeFileSync.org)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 87.0.4280.88 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.51 - Google LLC) Hidden
Icecream Ebook Reader verze 5.24 (HKLM-x32\...\{B8C30F0F-1F23-49E1-A3ED-44DE17660EE2}_is1) (Version: 5.24 - Icecream Apps)
Icecream PDF Converter verze 2.88 (HKLM-x32\...\{6811A286-E9F4-4035-9738-7721C087E500}_is1) (Version: 2.88 - Icecream Apps)
Icecream PDF Split and Merge verze 3.46 (HKLM-x32\...\{95DC4DB4-99FB-4FB2-ADBD-97F194EDEB4D}_is1) (Version: 3.46 - Icecream Apps)
Icecream Screen Recorder verze 6.23 (HKLM-x32\...\{7ADEC622-3230-4C9A-9DCE-9BD462B74095}_is1) (Version: 6.23 - Icecream Apps)
Icecream Slideshow Maker verze 4.05 (HKLM-x32\...\{3674ADB5-6374-4EBA-BB46-7C6EFB266661}_is1) (Version: 4.05 - Icecream Apps)
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.63.1620.3 - Intel Corporation)
Intel® Chipset Device Software (HKLM-x32\...\{17408817-d415-4768-a160-ae6d46d6bdb0}) (Version: 10.1.1.44 - Intel(R) Corporation) Hidden
LibreOffice 7.0.4.2 (HKLM\...\{B3171B83-4945-43E0-A101-841638C05506}) (Version: 7.0.4.2 - The Document Foundation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 87.0.664.66 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.139.59 - )
Microsoft Office Professional Plus 2019 - cs-cz (HKLM\...\ProPlus2019Retail - cs-cz) (Version: 16.0.13426.20332 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\OneDriveSetup.exe) (Version: 20.201.1005.0009 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.21.27702 (HKLM-x32\...\{49697869-be8e-427d-81a0-c334d1d14950}) (Version: 14.21.27702.2 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.11.25325 (HKLM-x32\...\{6c6356fe-cbfa-4944-9bed-a9e99f45cb7a}) (Version: 14.11.25325.0 - Microsoft Corporation)
MultiCommander (x64) (HKLM\...\MultiCommander x64) (Version: 10.2.0.2745 - Mathias Svensson)
NVIDIA Ovladače grafiky 376.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.54 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.13426.20332 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.13426.20332 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.13426.20332 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.13426.20332 - Microsoft Corporation) Hidden
Ovládací panel NVIDIA 376.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 376.54 - NVIDIA Corporation) Hidden
PDF Candy Desktop verze 2.90 (HKLM-x32\...\{9A8B6868-AA65-45DB-B055-18CCC462E6F5}_is1) (Version: 2.90 - Icecream Apps)
Příručky společnosti EPSON (HKLM-x32\...\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}) (Version: 1.57.0.0 - Seiko Epson Corporation)
PureVPN (HKLM-x32\...\{640ebb2a-b88a-4a1c-8b3c-18fb11bf1cce}) (Version: 1.1.74.0 - ) Hidden
PureVPN (HKLM-x32\...\PureVPN) (Version: 1.1.74.0 - GZ Systems)
Recepty doma (HKLM-x32\...\Recepty doma_is1) (Version: - Martin Roubec)
Revo Uninstaller Pro 4.4.0 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 4.4.0 - VS Revo Group, Ltd.)
Speccy (HKLM\...\Speccy) (Version: 1.32 - Piriform)
Sticky Password 8.2.8.4 (HKLM-x32\...\Sticky Password_is1) (Version: 8.2 - Lamantine Software)
Turbo View & Convert (HKLM-x32\...\{55B464FA-16DE-4127-A7B8-D49CD2768E63}_is1) (Version: 2.0.0 - IMSI/Design, LLC)
UnistallAtomSDK (HKLM-x32\...\AtomSDKInstaller_is1) (Version: 3.6.0 - )
VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
WebM Media Foundation Components (HKLM-x32\...\webmmf) (Version: 1.0.1.2 - WebM Project)
Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org)
YouTube By Click (HKLM-x32\...\{C198A897-FB88-4662-B97D-83C998D7B7BE}) (Version: 2.2.133 - ByClick) Hidden
YouTube By Click (HKLM-x32\...\YouTube By Click 2.2.133) (Version: 2.2.133 - ByClick)
Zoner Photo Studio 18 (HKLM\...\ZonerPhotoStudio18_CZ_is1) (Version: 18.0.1.10 - ZONER software)
Zoner Photo Studio X CS (HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\ZPS X) (Version: 19.2009.2.286 - ZONER software)

Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-12-21] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-12-21] (Microsoft Corporation) [MS Ad]
Microsoft Mahjong -> C:\Program Files\WindowsApps\Microsoft.MicrosoftMahjong_4.0.11030.0_x64__8wekyb3d8bbwe [2020-12-22] (Microsoft Studios) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.10142.0_x64__8wekyb3d8bbwe [2020-12-23] (Microsoft Studios) [MS Ad]
Microsoft To Do -> C:\Program Files\WindowsApps\Microsoft.Todos_2.33.33391.0_x64__8wekyb3d8bbwe [2020-12-24] (Microsoft Corporation) [Startup Task]
Ovládací centrum grafiky Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.2970.0_x64__8j3eq9eme6ctt [2020-12-21] (INTEL CORP) [Startup Task]
QuickLook -> C:\Program Files\WindowsApps\21090PaddyXu.QuickLook_3.6.10.0_neutral__egxr34yet59cg [2020-12-21] (Paddy Xu) [Startup Task]
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0 [2020-12-22] (Spotify AB) [Startup Task]
WiFi Analyzer -> C:\Program Files\WindowsApps\19965MATTHAFNER.WIFIANALYZER_2.6.1.0_x64__gs5k5vmxr2ste [2020-12-24] (Matt Hafner)
Wifi Analyzer and Scanner -> C:\Program Files\WindowsApps\28877WebProvider.WifiAnalyzerandScanner_1.2.1.0_x64__gdrx0g078t8zg [2020-12-24] (WebProvider)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ContextMenuHandlers1-x32: [ASZip2] -> {d13d3e68-0f44-3d45-b15f-bcfd8a8b4c7e} => C:\Program Files (x86)\Ashampoo\Ashampoo ZIP Pro 2\ASZSHLEXT.DLL [2017-10-10] (Ashampoo GmbH & Co. KG -> Ashampoo GmbH)
ContextMenuHandlers1: [ASZip264] -> {d13d3e78-0f44-3d45-b15f-bcfd8a8b4c7e} => C:\Program Files (x86)\Ashampoo\Ashampoo ZIP Pro 2\ASZSHLEXT64.DLL [2017-10-10] (Ashampoo GmbH & Co. KG -> Ashampoo GmbH)
ContextMenuHandlers1: [IcecreamShellExtension] -> {A8B59160-93EA-4303-9192-AA3C64FDBE31} => C:\Program Files (x86)\Icecream PDF Split and Merge\x64\IcecreamShell64.dll [2017-05-03] (Icecream Apps Ltd -> TODO: <Company name>)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2016-12-29] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6-x32: [ASZip2] -> {d13d3e68-0f44-3d45-b15f-bcfd8a8b4c7e} => C:\Program Files (x86)\Ashampoo\Ashampoo ZIP Pro 2\ASZSHLEXT.DLL [2017-10-10] (Ashampoo GmbH & Co. KG -> Ashampoo GmbH)
ContextMenuHandlers6: [ASZip264] -> {d13d3e78-0f44-3d45-b15f-bcfd8a8b4c7e} => C:\Program Files (x86)\Ashampoo\Ashampoo ZIP Pro 2\ASZSHLEXT64.DLL [2017-10-10] (Ashampoo GmbH & Co. KG -> Ashampoo GmbH)
ContextMenuHandlers6: [RUShellExt] -> {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} => C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll [2020-09-28] (VS Revo Group Ltd. -> VS Revo Group)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2020-12-07 07:26 - 2020-12-07 07:26 - 000011264 _____ () [File not signed] [File is in use] C:\Program Files (x86)\eM Client\cs\MailClient.Accounts.resources.dll
2020-12-07 07:26 - 2020-12-07 07:26 - 000009216 _____ () [File not signed] [File is in use] C:\Program Files (x86)\eM Client\cs\MailClient.Common.UI.resources.dll
2020-12-07 07:26 - 2020-12-07 07:26 - 000004608 _____ () [File not signed] [File is in use] C:\Program Files (x86)\eM Client\cs\MailClient.Protocols.Gdata.resources.dll
2020-12-07 07:26 - 2020-12-07 07:26 - 000005632 _____ () [File not signed] [File is in use] C:\Program Files (x86)\eM Client\cs\MailClient.Protocols.Pop3.resources.dll
2020-12-07 07:26 - 2020-12-07 07:26 - 000007680 _____ () [File not signed] [File is in use] C:\Program Files (x86)\eM Client\cs\MailClient.Protocols.resources.dll
2020-12-07 07:26 - 2020-12-07 07:26 - 000794624 _____ () [File not signed] [File is in use] C:\Program Files (x86)\eM Client\cs\MailClient.resources.dll
2020-12-07 07:26 - 2020-12-07 07:26 - 093837824 _____ () [File not signed] C:\Program Files (x86)\eM Client\libcef\libcef.dll
2020-12-21 18:40 - 2020-11-30 16:17 - 001101824 _____ () [File not signed] C:\Program Files (x86)\Sticky Password\DLLs\_hashlib.pyd
2020-12-21 18:35 - 2020-12-21 18:35 - 000163840 _____ () [File not signed] C:\Program Files\WindowsApps\21090PaddyXu.QuickLook_3.6.10.0_neutral__egxr34yet59cg\Package\QuickLook.Native64.dll
2020-08-17 15:08 - 2020-08-17 15:08 - 000141824 _____ (Google Inc.) [File not signed] [File is in use] C:\Program Files (x86)\eM Client\Google.Apis.Auth.dll
2020-10-01 01:26 - 2020-10-01 01:26 - 000093696 _____ (Google Inc.) [File not signed] [File is in use] C:\Program Files (x86)\eM Client\Google.Apis.Calendar.v3.dll
2020-08-17 15:08 - 2020-08-17 15:08 - 000073216 _____ (Google Inc.) [File not signed] [File is in use] C:\Program Files (x86)\eM Client\Google.Apis.Core.dll
2020-08-17 15:08 - 2020-08-17 15:08 - 000079360 _____ (Google Inc.) [File not signed] [File is in use] C:\Program Files (x86)\eM Client\Google.Apis.dll
2020-09-24 07:11 - 2020-09-24 07:11 - 000111616 _____ (Google Inc.) [File not signed] [File is in use] C:\Program Files (x86)\eM Client\Google.Apis.Gmail.v1.dll
2020-10-01 01:26 - 2020-10-01 01:26 - 000029696 _____ (Google Inc.) [File not signed] [File is in use] C:\Program Files (x86)\eM Client\Google.Apis.Tasks.v1.dll
2020-12-21 16:46 - 2020-12-21 16:47 - 041670144 _____ (Intel Corporation) [File not signed] C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.2970.0_x64__8j3eq9eme6ctt\IGCC.dll
2020-12-23 21:36 - 2020-12-23 21:36 - 000000000 ____L (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Root\Office16\AppVIsvSubsystems32.dll
2020-12-23 21:36 - 2020-12-23 21:36 - 000000000 ____L (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Root\Office16\c2r32.dll
2017-02-13 14:54 - 2017-02-13 14:54 - 000132096 _____ (Seiko Epson Corporation) [File not signed] C:\Program Files (x86)\EPSON Software\Event Manager\epnsm.dll
2009-10-21 17:39 - 2009-10-21 17:39 - 000291328 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\Program Files (x86)\EPSON Software\Event Manager\LcMgr.dll
2016-09-14 14:31 - 2016-09-14 14:31 - 000500736 ____S (SEIKO EPSON CORPORATION) [File not signed] C:\Windows\System32\enppmon.dll
2020-12-07 07:26 - 2020-12-07 07:26 - 000944840 _____ (SQLite Development Team) [File not signed] C:\Program Files (x86)\eM Client\win-x86\sqlite3.native.dll
2020-12-07 07:26 - 2020-12-07 07:26 - 000729600 _____ (The Chromium Authors) [File not signed] C:\Program Files (x86)\eM Client\libcef\chrome_elf.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2015-07-31] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
BHO-x32: E-Web Print -> {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} -> C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2015-07-31] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
Toolbar: HKLM-x32 - E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-23] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 10:14 - 2019-12-07 10:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2513297869-714495167-4108430696-1001\Control Panel\Desktop\\Wallpaper -> c:\users\ruda6\appdata\local\microsoft\windows\themes\roamedthemefiles\desktopbackground\20.06.20.png
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\StartupApproved\Run: => "AshSnap"
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\StartupApproved\Run: => "PureVPN"
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\StartupApproved\Run: => "Zoner Photo Studio Autoupdate"
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\StartupApproved\Run: => "Lync"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{C254AD0E-8788-4DC4-85C8-0A5D1BF3103D}] => (Allow) C:\Program Files (x86)\Sticky Password\stpass.exe (Lamantine Software a.s. -> Lamantine Software a.s.)
FirewallRules: [{95812CE3-6328-4AFC-845A-E50FD6B12CC6}] => (Allow) C:\Program Files (x86)\Sticky Password\stpass.exe (Lamantine Software a.s. -> Lamantine Software a.s.)
FirewallRules: [{84CB6983-3EE8-4B68-A6A5-ED14AE886F0D}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{78C8FCA1-5ADD-4F28-9FD8-7C786E587740}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe (GZ Systems Limited -> GZ Systems)
FirewallRules: [UDP Query User{799B34C4-956E-46BA-BD15-612507D2AEBA}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe (GZ Systems Limited -> GZ Systems)
FirewallRules: [{FD2D71A0-EB87-4F3C-83B4-D63A97F2D0E1}] => (Allow) C:\Program Files\Zoner\Photo Studio 18\Program32\MediaServer.exe (ZONER software, a.s. -> ZONER software)
FirewallRules: [{7A87D877-C290-4A9F-A5EF-064DF549C4CA}] => (Allow) C:\Users\ruda6\AppData\Local\Temp\EpInsNav\DL\3013\Network\EpsonNetSetup\Data\ENEasyApp.exe => No File
FirewallRules: [{497E3042-20E2-4353-8B9F-F7C61B44FCA1}] => (Allow) C:\Users\ruda6\AppData\Local\Temp\EpInsNav\DL\3013\Network\EpsonNetSetup\Data\ENEasyApp.exe => No File
FirewallRules: [{78F78F0C-A824-47EF-BF93-18ADFB96981B}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [{0008F8BD-ABD9-4868-92D1-9EBB42348C83}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [{B83BF97E-433D-4E6E-B4EE-C34BC9B05BD3}] => (Allow) C:\Program Files (x86)\EPSON Software\ECPrinterSetup\ENPApp.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
FirewallRules: [{0B08D31A-94B0-4C7F-8FBB-353C0295D7AB}] => (Allow) C:\Program Files (x86)\EPSON Software\ECPrinterSetup\ENPApp.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
FirewallRules: [{7ACB135E-BCBE-4EDF-AB15-FADC1A685C26}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{601564E1-D2EC-44DF-A49C-28233F927DD1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{97D55E69-7BF7-4B68-86E9-805385C1B016}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{0AECD1C8-163F-41C8-9478-9B1C1FBBAE76}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{6745617D-CB8B-413E-A24F-A7F8940F9145}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{5DDDC914-D1D8-4C5D-BD41-9FB197407079}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{DBFB1FAE-9F84-4FD3-873E-1F23CA79152E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{064D8F3D-645E-4CF6-9600-4607894C6512}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{34258BC7-E4B3-490F-AD57-BFDDE7E2E878}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C1C97F93-6055-4CFA-9680-24F96B05494A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{6B87AC4C-929E-4847-9476-32EAB3C6CB58}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{34819A58-2C44-43E9-8778-16DBB980CC3A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{FCA5EA12-A3DC-4F58-8421-5C0604BBBF57}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7FE62FEF-FEDB-42F6-8A49-2ADC17E5E075}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{CE2E18C3-23A8-4C65-B2C9-573A961D87B0}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{CB00EA0F-4817-4D3C-A5EA-9D83F2E9B4FF}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0B7376FD-32DB-4EE5-A200-1E1C7FE8C077}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================


==================== Faulty Device Manager Devices ============

Name: Zařízení PCI
Description: Zařízení PCI
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: ========================

Application errors:
==================
Error: (12/24/2020 03:15:30 AM) (Source: SideBySide) (EventID: 35) (User: )
Description: Generování kontextu aktivace pro C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest se nezdařilo. Chyba v souboru manifestu nebo zásady C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL na řádku 1.
Identita komponenty nalezená v manifestu nesouhlasí s identitou požadované komponenty.
Odkaz je UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definice je UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (12/24/2020 03:15:21 AM) (Source: SideBySide) (EventID: 35) (User: )
Description: Generování kontextu aktivace pro C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest se nezdařilo. Chyba v souboru manifestu nebo zásady C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL na řádku 1.
Identita komponenty nalezená v manifestu nesouhlasí s identitou požadované komponenty.
Odkaz je UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definice je UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (12/23/2020 09:52:17 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: Získání licence koncového uživatele se nezdařilo. hr=0xC004C008
ID SKU=5f472f1e-eb0a-4170-98e2-fb9e7f6ff535

Error: (12/23/2020 09:52:17 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: Podrobnosti chyby získávání licence
hr=0xC004C008

Error: (12/23/2020 09:48:46 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: Získání licence koncového uživatele se nezdařilo. hr=0xC004C008
ID SKU=5f472f1e-eb0a-4170-98e2-fb9e7f6ff535

Error: (12/23/2020 09:48:46 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: Podrobnosti chyby získávání licence
hr=0xC004C008

Error: (12/23/2020 09:40:58 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: Získání licence koncového uživatele se nezdařilo. hr=0xC004C008
ID SKU=5f472f1e-eb0a-4170-98e2-fb9e7f6ff535

Error: (12/23/2020 09:40:58 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: Podrobnosti chyby získávání licence
hr=0xC004C008


System errors:
=============
Error: (12/24/2020 02:04:01 PM) (Source: DCOM) (EventID: 10000) (User: RUDA1)
Description: Nelze spustit server DCOM: {0358B920-0AC7-461F-98F4-58E32CD89148}. Došlo k chybě:
2147942767
při provádění příkazu:
C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}

Error: (12/24/2020 11:16:41 AM) (Source: DCOM) (EventID: 10000) (User: RUDA1)
Description: Nelze spustit server DCOM: {0358B920-0AC7-461F-98F4-58E32CD89148}. Došlo k chybě:
2147942767
při provádění příkazu:
C:\Windows\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}

Error: (12/24/2020 05:36:19 AM) (Source: DCOM) (EventID: 10010) (User: RUDA1)
Description: Server {FD06603A-2BDF-4BB1-B7DF-5DC68F353601} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/24/2020 04:56:05 AM) (Source: DCOM) (EventID: 10010) (User: RUDA1)
Description: Server {84F66100-FF7C-4FB4-B0C0-02CD7FB668FE} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/24/2020 04:52:01 AM) (Source: DCOM) (EventID: 10010) (User: RUDA1)
Description: Server {84F66100-FF7C-4FB4-B0C0-02CD7FB668FE} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/24/2020 04:52:01 AM) (Source: DCOM) (EventID: 10010) (User: RUDA1)
Description: Server {84F66100-FF7C-4FB4-B0C0-02CD7FB668FE} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/24/2020 04:52:01 AM) (Source: DCOM) (EventID: 10010) (User: RUDA1)
Description: Server {84F66100-FF7C-4FB4-B0C0-02CD7FB668FE} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/24/2020 04:52:01 AM) (Source: DCOM) (EventID: 10010) (User: RUDA1)
Description: Server {84F66100-FF7C-4FB4-B0C0-02CD7FB668FE} se v daném časovém limitu neregistroval u služby DCOM.


Windows Defender:
===================================
Date: 2020-12-24 03:03:23.0670000Z
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {BB3690A0-710D-446F-A05B-EDCF5B345982}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2020-12-23 22:06:03.4560000Z
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {AEAB4619-0669-4893-B52E-E21349C3927F}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

==================== Memory info ===========================

BIOS: Insyde Corp. V1.47 09/06/2018
Motherboard: Acer Ironman_SK
Processor: Intel(R) Core(TM) i5-7200U CPU @ 2.50GHz
Percentage of memory in use: 66%
Total physical RAM: 8060.22 MB
Available physical RAM: 2735.09 MB
Total Virtual: 9980.22 MB
Available Virtual: 3984.05 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:235.36 GB) (Free:168.91 GB) NTFS
Drive e: (OSO) (Removable) (Total:28.87 GB) (Free:25.07 GB) NTFS

\\?\Volume{643bdd56-77d9-40d8-9e39-7ee327b151c2}\ () (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS
\\?\Volume{5e3a287c-696e-4acd-aab9-9a78c5c3dda7}\ () (Fixed) (Total:0.51 GB) (Free:0.08 GB) NTFS
\\?\Volume{75899f7b-57d6-44be-b8ed-68c08cfe7d3b}\ () (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS
\\?\Volume{3d791de5-a886-4772-8d9e-9b3d5c442da7}\ () (Fixed) (Total:0.45 GB) (Free:0.05 GB) NTFS
\\?\Volume{bc9f385e-b315-4b43-9b91-7fc8b7d94767}\ (Recovery) (Fixed) (Total:1 GB) (Free:0.63 GB) NTFS
\\?\Volume{b358e61a-7e3c-4af2-862b-13f196cdde30}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: CEE052CA)

Partition: GPT.

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 28.9 GB) (Disk ID: 59F27931)
Partition 1: (Active) - (Size=28.9 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118302
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola log - problém s Word

#2 Příspěvek od Rudy »

Zdravím!
Domnívám se, že toto nebude mít s viry nic společného. Přesto zkusíme PC vyčistit. Spusťte tuto utilitu:

Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rudkr63
Návštěvník
Návštěvník
Příspěvky: 169
Registrován: 26 čer 2015 17:05

Re: Kontrola log - problém s Word

#3 Příspěvek od rudkr63 »

# -------------------------------
# Malwarebytes AdwCleaner 8.0.8.0
# -------------------------------
# Build: 10-08-2020
# Database: 2020-12-21.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 12-24-2020
# Duration: 00:00:19
# OS: Windows 10 Pro
# Scanned: 31930
# Detected: 5


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

PUP.Optional.Legacy C:\Users\Public\Desktop\ScreenShot.lnk

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

PUP.Optional.Legacy HKLM\Software\Classes\Installer\Features\A38C15B2D5649AE4C9CDE19DE50DA96C
PUP.Optional.Legacy HKLM\Software\Classes\Installer\Products\A38C15B2D5649AE4C9CDE19DE50DA96C
PUP.Optional.Legacy HKLM\Software\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\A38C15B2D5649AE4C9CDE19DE50DA96C
PUP.Optional.Legacy HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2B51C83A-465D-4EA9-9CDC-1ED95ED09AC6}

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

No Preinstalled Software found.



########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118302
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola log - problém s Word

#4 Příspěvek od Rudy »

Nalezené položky smažte (dejte do karantény) a pak dejte nové logy FRST+Addition.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rudkr63
Návštěvník
Návštěvník
Příspěvky: 169
Registrován: 26 čer 2015 17:05

Re: Kontrola log - problém s Word

#5 Příspěvek od rudkr63 »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-12-2020
Ran by ruda6 (administrator) on RUDA1 (Acer Aspire E5-575G) (24-12-2020 22:06:42)
Running from C:\Users\ruda6\Desktop
Loaded Profiles: ruda6
Platform: Windows 10 Pro Version 20H2 19042.685 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ActMask Group Co., Ltd -> ActMask Co.,Ltd - hxxp://WWW.ALL2PDF.COM) C:\Windows\System32\PrintCtrl.exe
(ActMask Group Co., Ltd -> ActMask Co.,Ltd - hxxp://www.all2pdf.com) C:\Windows\System32\PrintDisp.exe <2>
(FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler64.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <17>
(GZ Systems Limited -> ) C:\Program Files (x86)\Atom\AtomService\Atom.SDK.WindowsService.exe
(INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.2970.0_x64__8j3eq9eme6ctt\GCP.ML.BackgroundSysTray\IGCCTray.exe
(INTEL CORP) C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.2970.0_x64__8j3eq9eme6ctt\IGCC.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b8e01d9e8716d2a7\igfxCUIService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_b8e01d9e8716d2a7\igfxEM.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_54b736e5be5b50b2\OneApp.IGCC.WinService.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\IntelCpHDCPSvc.exe
(Intel(R) pGFX 2020 -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_a086f01cc7be643a\IntelCpHeciSvc.exe
(Lamantine Software a.s. -> Lamantine Software a.s.) C:\Program Files (x86)\Sticky Password\spNMHost.exe <2>
(Lamantine Software a.s. -> Lamantine Software a.s.) C:\Program Files (x86)\Sticky Password\spUIAManager.exe
(Lamantine Software a.s. -> Lamantine Software a.s.) C:\Program Files (x86)\Sticky Password\stpass.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\WINWORD.EXE
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <22>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_3.6.73.0_x64__8wekyb3d8bbwe\Microsoft.Notes.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20316.0_x64__8wekyb3d8bbwe\HxOutlook.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.13426.20316.0_x64__8wekyb3d8bbwe\HxTsr.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12011.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe <2>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\prevhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\NisSrv.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Paddy Xu) C:\Program Files\WindowsApps\21090PaddyXu.QuickLook_3.6.10.0_neutral__egxr34yet59cg\Package\QuickLook.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE
(SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Program Files (x86)\EPSON Software\Event Manager\EEventManager.exe
(SEIKO EPSON CORPORATION -> Seiko Epson Corporation) C:\Windows\System32\escsvc64.exe
(SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION) C:\Windows\System32\spool\drivers\x64\3\E_YATIR4E.EXE

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [PrintDisp] => C:\Windows\system32\PrintDisp.exe [595080 2019-03-21] (ActMask Group Co., Ltd -> ActMask Co.,Ltd - hxxp://www.all2pdf.com)
HKLM\...\Run: [EPPCCMON] => C:\Program Files (x86)\EPSON Software\Epson Printer Connection Checker\EPPCCMON.EXE [442936 2020-10-22] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKLM-x32\...\Run: [EEventManager] => C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe [1151872 2016-11-18] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [StickyPassword] => C:\Program Files (x86)\Sticky Password\stpass.exe [65800 2020-12-08] (Lamantine Software a.s. -> Lamantine Software a.s.)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [eM Client] => C:\Program Files (x86)\eM Client\MailClient.exe [279016 2020-12-07] (eM Client, s.r.o. -> eM Client s.r.o.)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [AshSnap] => C:\Program Files (x86)\Ashampoo\Ashampoo Snap 11\ashsnap.exe [6449016 2020-04-17] (Ashampoo GmbH & Co. KG -> Ashampoo GmbH & Co. KG)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [PureVPN] => C:\Program Files (x86)\GZ Systems\PureVPN\PureVPN.exe [1847928 2020-11-03] (GZ Systems Limited -> GZ Systems)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [EPSDNMON] => C:\Program Files (x86)\EPSON Software\Download Navigator\EPSDNMON.EXE [346712 2020-07-27] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [EPLTarget\P0000000000000000] => C:\Windows\system32\spool\DRIVERS\x64\3\E_YATIR4E.EXE [417776 2014-11-14] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [32414392 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [CCleaner] => C:\Program Files\CCleaner\CCleaner64.exe [32414392 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\Users\ruda6\AppData\Local\Programs\Zoner\ZPS X\binary\Program32\ZPSTRAY.EXE [804336 2020-12-02] (ZONER software, a.s. -> ZONER software)
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\Run: [Lync] => C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe [23925056 2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\ActMaskR: C:\Windows\System32\spool\prtprocs\x64\ActPrint.dll [51848 2018-09-14] (ActMask Group Co., Ltd -> ActMask Co.,Ltd)
HKLM\...\Print\Monitors\EPSON L3050 Series 64MonitorBE: C:\Windows\system32\E_YLMBR4E.DLL [183296 2016-12-21] (Microsoft Windows Hardware Compatibility Publisher -> SEIKO EPSON CORPORATION)
HKLM\...\Print\Monitors\EpsonNet Print Port: C:\Windows\system32\enppmon.dll [500736 2016-09-14] (SEIKO EPSON CORPORATION) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\87.0.4280.88\Installer\chrmstp.exe [2020-12-21] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {01E48A05-9938-45CB-96A2-136240859619} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116584 2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {0379F9DC-D629-42F3-A133-E376DBE3056A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-21] (Google LLC -> Google LLC)
Task: {3117B972-21EE-44D7-8017-1FE49C585336} - System32\Tasks\Zoner.Updater.S-1-5-21-2513297869-714495167-4108430696-1001 => C:\ProgramData\Zoner\Zoner.Installer.Core\Updater.exe [2075216 2020-12-23] (ZONER software, a.s. -> ZONER software, a.s.)
Task: {41FFD6E4-DFB6-4AEA-818D-170651ED43D6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4010416 2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {4E851EA1-4D86-4DD8-927F-C637CC91B994} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-21] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {53E9792C-6F32-47AC-9317-FF30F22719D8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-21] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {70C87143-07E0-4BC1-9E50-CC81ADC3A3B9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-21] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {72E2F918-6484-43FF-850E-1A2EEE2A6DD6} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [26896568 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {A724F931-F95B-4DD3-B8D9-3DE3D633FC79} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23054216 2020-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {AAF4E2D5-982B-43F8-92D8-5748B7B7C0AA} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4010416 2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {C487900F-2C84-4A5B-8A92-F86CFF185F7C} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23054216 2020-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {D1E89FC5-94DF-41A6-A7D7-96857ED1EB01} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-12-08] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {DECCC3E1-E0FF-45E9-9CE0-C775B4EFEFAA} - System32\Tasks\EPSON L3050 Series Update {8F00F415-9F48-4B2C-A663-0FA26324ECA0} => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSR4E.EXE [690536 2013-11-22] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
Task: {DEF2D0FC-CEB4-48E2-83E3-38408DA5DE8C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-21] (Google LLC -> Google LLC)
Task: {DF0B8791-1D59-4364-BE35-CB7C4D7F18C6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-12-21] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {EC3434BE-78CA-498A-A710-167CD79D94F7} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116584 2020-12-23] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\EPSON L3050 Series Update {8F00F415-9F48-4B2C-A663-0FA26324ECA0}.job => C:\Windows\system32\spool\DRIVERS\x64\3\E_YTSR4E.EXE:/EXE:{8F00F415-9F48-4B2C-A663-0FA26324ECA0} /F:UpdateWORKGROUP\RUDA1$ĊSearches for EPSON software updates, and notifies you when updates are available.If this task is disabled or stopped, your EPSON software will not be automatically kept up to date.Thi

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{e2d2f159-5e69-41fb-b99e-4ff3abbed79c}: [DhcpNameServer] 192.168.0.1

Edge:
======
Edge DefaultProfile: Default
Edge Profile: C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default [2020-12-24]
Edge Notifications: Default -> hxxps://www.ashampoo.com
Edge HomePage: Default -> hxxps://www.google.cz/?gfe_rd=cr&ei=X0EGWaPSAYi ... =ssl&pli=1
Edge StartupUrls: Default -> "hxxps://www.google.cz/search?source=hp&ei=Iaa_X ... CAc&uact=5"
Edge DefaultSearchURL: Default -> hxxps://duckduckgo.com/?q={searchTerms}
Edge DefaultSearchKeyword: Default -> duckduckgo.com
Edge DefaultSuggestURL: Default -> hxxps://duckduckgo.com/ac/?q={searchTerms}&type=list
Edge Session Restore: Default -> is enabled.
Edge Extension: (Překladač Google) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2020-12-21]
Edge Extension: (PureVPN: #1 Proxy Extension for Chrome) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bfidboloedlamgdmenmlbipfnccokknp [2020-12-23]
Edge Extension: (Microsoft Defender Browser Protection) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bkbeeeffjjeopflfhgeknacdieedcoml [2020-12-21]
Edge Extension: (DuckDuckGo) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bkdgflcldnnnapblkhphbgpggdiikppg [2020-12-21]
Edge Extension: (OneTab) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall [2020-12-21]
Edge Extension: (Picture-in-Picture Everywhere) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cmnlinjalaieggoebkmamaphjghpafhn [2020-12-21]
Edge Extension: (Session Buddy) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\edacconmaakjimmfgnblocblbcdcpbko [2020-12-21]
Edge Extension: (Ochrana Kaspersky) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\elhpdacimkjpccooodognopfhbdgnpbk [2020-12-21]
Edge Extension: (HTTPS Everywhere) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\fchjpkplmbeeeaaogdbhjbgbknjobohb [2020-12-21]
Edge Extension: (Uložit na Disk Google) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2020-12-21]
Edge Extension: (Sticky Password - správce hesel) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jbipmfkjgjhibkepepeneigpkfeikikp [2020-12-21]
Edge Extension: (ScriptSafe) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\oiigbmnaadbkfbmpbfijlflahbdbdgdf [2020-12-21]
Edge Extension: (Chrome Media Router) - C:\Users\ruda6\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-12-22]

FireFox:
========
FF HKLM-x32\...\Firefox\Extensions: [e-webprint@epson.com] - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on
FF Extension: (E-Web Print) - C:\Program Files (x86)\Epson Software\E-Web Print\Firefox Add-on [2020-12-22] [Legacy] [not signed]
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-06-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files (x86)\Foxit Software\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-12-23] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR Profile: C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default [2020-12-24]
CHR Notifications: Default -> hxxps://www.ashampoo.com
CHR HomePage: Default -> hxxps://www.google.com/webhp?hl=cs&sa=X&ved=0ah ... hsDOYQPAgH
CHR StartupUrls: Default -> "hxxps://www.google.cz/?pli=1","hxxps://www.sezn ... uckgo.com/"
CHR DefaultSearchURL: Default -> hxxps://duckduckgo.com/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> duckduckgo.com
CHR DefaultSuggestURL: Default -> hxxps://duckduckgo.com/ac/?q={searchTerms}&type=list
CHR Session Restore: Default -> is enabled.
CHR Extension: (Překladač Google) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2020-12-21]
CHR Extension: (Prezentace) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-12-21]
CHR Extension: (Ochrana Kaspersky) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2020-12-21]
CHR Extension: (Dokumenty) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-12-21]
CHR Extension: (Disk Google) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-12-21]
CHR Extension: (PureVPN: #1 Proxy Extension for Chrome) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\bfidboloedlamgdmenmlbipfnccokknp [2020-12-23]
CHR Extension: (Microsoft Defender Browser Protection) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkbeeeffjjeopflfhgeknacdieedcoml [2020-12-21]
CHR Extension: (DuckDuckGo) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\bkdgflcldnnnapblkhphbgpggdiikppg [2020-12-21]
CHR Extension: (YouTube) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-12-21]
CHR Extension: (Honey) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\bmnlcjabgnpnenekpadlanbbkooimhnj [2020-12-21]
CHR Extension: (Sticky Password - správce hesel) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnfdmghkeppfadphbnkjcicejfepnbfe [2020-12-21]
CHR Extension: (OneTab) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\chphlpgkkbolifaimnlloiipkdnihall [2020-12-21]
CHR Extension: (NoScript) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\doojmbjmlfjjnbmnoijecmcbfeoakpjm [2020-12-21]
CHR Extension: (Ochrana Kaspersky) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\elhpdacimkjpccooodognopfhbdgnpbk [2020-12-21]
CHR Extension: (Tabulky) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-12-21]
CHR Extension: (HTTPS Everywhere) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\gcbommkclmclpchllfjekcdonpmejbdp [2020-12-21]
CHR Extension: (Dokumenty Google offline) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-12-21]
CHR Extension: (Uložit na Disk Google) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\gmbmikajjgmnabiglmofipeabaddhgne [2020-12-21]
CHR Extension: (Picture-in-Picture Extension (by Google)) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\hkgfoiooedgoejojocmhlaklaeopbecg [2020-12-21]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-12-21]
CHR Extension: (Gmail) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-12-21]
CHR Extension: (Chrome Media Router) - C:\Users\ruda6\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-12-21]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtomService; C:\Program Files (x86)\Atom\AtomService\Atom.SDK.WindowsService.exe [153048 2020-08-12] (GZ Systems Limited -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9105800 2020-12-01] (Microsoft Corporation -> Microsoft Corporation)
R2 EpsonScanSvc; C:\Windows\system32\EscSvc64.exe [206304 2020-10-02] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
R2 FoxitReaderUpdateService; C:\Program Files (x86)\Foxit Software\Foxit Reader\FoxitReaderUpdateService.exe [2357936 2020-11-23] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5197552 2020-12-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-12-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-12-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem"

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AcerAirplaneModeController; C:\Windows\System32\drivers\AcerAirplaneModeController.sys [30168 2020-05-12] (Acer Incorporated -> Acer Incorporated)
R1 avpndriver; C:\Windows\System32\drivers\avpndriver.sys [104424 2020-05-29] (GZ Systems Limited -> Windows (R) Win 7 DDK provider)
R3 MpKsl42e1dc00; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{C65565A1-5F17-4225-926B-E3D6A429F085}\MpKslDrv.sys [47344 2020-12-24] (Microsoft Windows -> Microsoft Corporation)
S3 Revoflt; C:\Windows\System32\DRIVERS\revoflt.sys [38400 2020-10-14] (Microsoft Windows Hardware Compatibility Publisher -> VS Revo Group)
R3 tap0901; C:\Windows\System32\drivers\tap0901.sys [39920 2020-03-26] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [48536 2020-12-21] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [429296 2020-12-21] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [70896 2020-12-21] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-12-24 21:58 - 2020-12-24 21:58 - 000000000 ____D C:\Users\ruda6\Documents\MalwB
2020-12-24 20:45 - 2020-12-24 20:45 - 000001905 _____ C:\Users\ruda6\Documents\AdwCleaner[S00].txt
2020-12-24 20:42 - 2020-12-24 20:42 - 008447152 _____ (Malwarebytes) C:\Users\ruda6\Downloads\adwcleaner_8.0.8.exe
2020-12-24 18:21 - 2020-12-24 18:21 - 000002502 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype for Business.lnk
2020-12-24 18:21 - 2020-12-24 18:21 - 000002497 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2020-12-24 18:21 - 2020-12-24 18:21 - 000002496 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2020-12-24 18:21 - 2020-12-24 18:21 - 000002453 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2020-12-24 18:21 - 2020-12-24 18:21 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2020-12-24 18:21 - 2020-12-24 18:21 - 000002439 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk
2020-12-24 18:21 - 2020-12-24 18:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office Tools
2020-12-24 17:19 - 2020-12-24 17:20 - 000033504 _____ C:\Users\ruda6\Desktop\Addition.txt
2020-12-24 17:17 - 2020-12-24 22:07 - 000026344 _____ C:\Users\ruda6\Desktop\FRST.txt
2020-12-24 17:14 - 2020-12-24 17:14 - 002286592 _____ (Farbar) C:\Users\ruda6\Desktop\FRST64.exe
2020-12-24 13:35 - 2020-12-24 13:35 - 001895415 _____ C:\Users\ruda6\Documents\Povolit náhled náhledu souborů v aplikaci Průzkumník souborů aplikace Word, Excel a PowerPoint - Microsoft Office.pdf
2020-12-24 12:46 - 2020-12-24 12:46 - 000000000 ____D C:\Users\ruda6\Documents\Word-problém
2020-12-24 04:26 - 2020-12-24 17:29 - 000004190 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{A5BFB9D7-4339-4D22-B12D-E266718A116C}
2020-12-24 04:19 - 2020-12-24 04:19 - 000248622 _____ C:\Users\ruda6\Documents\Celebrity platí 25 000 dolarů za přeskočení za vakcíny COVID-19 - NaturalNews.com.pdf
2020-12-24 03:38 - 2020-12-24 03:38 - 000000000 ____D C:\Users\ruda6\Documents\Vlastní šablony Office
2020-12-24 03:17 - 2020-12-24 03:17 - 000000017 _____ C:\Users\ruda6\AppData\Local\resmon.resmoncfg
2020-12-24 03:15 - 2020-12-24 03:15 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\Skype
2020-12-23 23:33 - 2020-12-23 23:33 - 000003786 _____ C:\Windows\system32\Tasks\Zoner.Updater.S-1-5-21-2513297869-714495167-4108430696-1001
2020-12-23 23:33 - 2020-12-23 23:33 - 000001563 _____ C:\Users\ruda6\AppData\Roaming\Microsoft\Windows\Start Menu\Zoner Photo Studio X.lnk
2020-12-23 23:33 - 2020-12-23 23:33 - 000001561 _____ C:\Users\ruda6\Desktop\Zoner Photo Studio X.lnk
2020-12-23 23:31 - 2020-12-23 23:33 - 000000000 ____D C:\ProgramData\Zoner
2020-12-23 23:31 - 2020-12-23 23:31 - 000374568 _____ (ZONER software, a.s.) C:\Users\ruda6\Downloads\zpsx.exe
2020-12-23 22:43 - 2020-12-23 22:43 - 000001873 _____ C:\Users\Public\Desktop\MultiCommander (x64).lnk
2020-12-23 22:43 - 2020-12-23 22:43 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\MultiCommander
2020-12-23 22:43 - 2020-12-23 22:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MultiCommander
2020-12-23 22:43 - 2020-12-23 22:43 - 000000000 ____D C:\Program Files\MultiCommander (x64)
2020-12-23 22:41 - 2020-12-23 22:42 - 008826468 _____ (Mathias Svensson) C:\Users\ruda6\Downloads\MultiCommander_x64_(10.2.0.2745).exe
2020-12-23 21:37 - 2020-12-24 18:21 - 000002460 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2020-12-23 21:37 - 2020-12-24 18:21 - 000002459 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2020-12-23 21:27 - 2020-12-23 21:37 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2020-12-23 21:27 - 2020-12-23 21:27 - 000000000 ____D C:\Program Files\Microsoft Office 15
2020-12-23 16:21 - 2020-12-23 16:22 - 000000000 ____D C:\ProgramData\Acer
2020-12-23 16:18 - 2020-12-23 16:18 - 008234296 _____ (Piriform Software Ltd) C:\Users\ruda6\Downloads\spsetup132.exe
2020-12-23 16:18 - 2020-12-23 16:18 - 000000841 _____ C:\Users\Public\Desktop\Speccy.lnk
2020-12-23 16:18 - 2020-12-23 16:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Speccy
2020-12-23 16:18 - 2020-12-23 16:18 - 000000000 ____D C:\Program Files\Speccy
2020-12-23 15:52 - 2020-12-23 15:52 - 000000000 ____D C:\Windows\oem
2020-12-23 15:51 - 2020-12-23 15:51 - 000000000 ____D C:\ProgramData\DriverSetupUtility
2020-12-23 15:50 - 2020-12-23 15:50 - 000000000 ____D C:\Program Files\DriverSetupUtility
2020-12-23 15:44 - 2020-12-23 15:51 - 000000000 ____D C:\Program Files\Intel
2020-12-23 15:42 - 2020-12-23 15:42 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer
2020-12-23 15:42 - 2020-12-23 15:42 - 000000000 ____D C:\Users\ruda6\Intel
2020-12-23 15:42 - 2020-12-23 15:42 - 000000000 ____D C:\Program Files\Reference Assemblies
2020-12-23 15:42 - 2020-12-23 15:42 - 000000000 ____D C:\Program Files\MSBuild
2020-12-23 15:42 - 2020-12-23 15:42 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2020-12-23 15:42 - 2020-12-23 15:42 - 000000000 ____D C:\Program Files (x86)\MSBuild
2020-12-23 15:38 - 2020-12-23 15:38 - 000000000 ____D C:\Users\ruda6\Downloads\IO Drivers_Intel _30.63.1620.3_W10x64_(Kabylake)
2020-12-23 15:38 - 2020-12-23 15:38 - 000000000 ____D C:\Users\ruda6\Downloads\Chipset_Intel_10.1.1.44_W10x64
2020-12-23 15:37 - 2020-12-23 15:37 - 005649908 _____ C:\Users\ruda6\Downloads\Chipset_Intel_10.1.1.44_W10x64_A.zip
2020-12-23 15:37 - 2020-12-23 15:37 - 002742337 _____ C:\Users\ruda6\Downloads\IO Drivers_Intel_30.63.1620.3_W10x64_A.zip
2020-12-23 15:15 - 2020-12-23 15:15 - 000000000 ____D C:\Users\ruda6\Documents\MV ČR
2020-12-22 20:43 - 2020-12-22 20:50 - 000000000 ____D C:\ProgramData\install_clap
2020-12-22 20:43 - 2020-12-22 20:50 - 000000000 ____D C:\ProgramData\CLSK
2020-12-22 19:53 - 2020-12-22 19:57 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\YouTubeByClick
2020-12-22 19:53 - 2020-12-22 19:53 - 000001102 _____ C:\ProgramData\Microsoft\Windows\Start Menu\YouTubeByClick.lnk
2020-12-22 19:53 - 2020-12-22 19:53 - 000001096 _____ C:\Users\Public\Desktop\YouTubeByClick.lnk
2020-12-22 19:53 - 2020-12-22 19:53 - 000000000 ____D C:\ProgramData\Caphyon
2020-12-22 19:52 - 2020-12-22 19:53 - 000000000 ____D C:\Program Files (x86)\YouTube By Click
2020-12-22 19:52 - 2020-12-22 19:52 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\ByClick
2020-12-22 19:50 - 2020-12-22 19:52 - 016021944 _____ (ByClick) C:\Users\ruda6\Downloads\YouTubeByClick-Setup.exe
2020-12-22 19:33 - 2020-12-22 20:17 - 000000000 ____D C:\ProgramData\ReceptyDoma
2020-12-22 19:30 - 2020-12-22 19:30 - 000001123 _____ C:\Users\ruda6\Desktop\Recepty doma.lnk
2020-12-22 19:30 - 2020-12-22 19:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Recepty doma
2020-12-22 19:30 - 2007-03-05 07:32 - 000201216 _____ C:\Windows\SysWOW64\mediarcpt.dll
2020-12-22 19:29 - 2020-12-22 20:17 - 000000000 ____D C:\Program Files (x86)\Recepty doma
2020-12-22 19:28 - 2020-12-22 19:29 - 011164536 _____ (Martin Roubec ) C:\Users\ruda6\Downloads\InstalRecepty (2).exe
2020-12-22 16:50 - 2020-12-22 16:50 - 000001153 _____ C:\Users\Public\Desktop\PDF Candy Desktop.lnk
2020-12-22 16:50 - 2020-12-22 16:50 - 000000716 ____H C:\Users\ruda6\AppData\Roaming\{B0E80E49-57AF-758F-AE9B-C68B46701F6B}
2020-12-22 16:50 - 2020-12-22 16:50 - 000000000 ____D C:\Users\ruda6\.Icecream PDF Candy Desktop
2020-12-22 16:50 - 2020-12-22 16:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Candy Desktop
2020-12-22 16:50 - 2020-12-22 16:50 - 000000000 ____D C:\Program Files (x86)\PDF Candy Desktop
2020-12-22 16:47 - 2020-12-22 16:49 - 144758640 _____ (Icecream Apps ) C:\Users\ruda6\Downloads\pdfcandy_setup.exe
2020-12-22 16:43 - 2020-12-22 16:43 - 000001222 _____ C:\Users\Public\Desktop\Icecream Slideshow Maker.lnk
2020-12-22 16:43 - 2020-12-22 16:43 - 000000000 ____D C:\Users\ruda6\.Icecream Slideshow Maker
2020-12-22 16:43 - 2020-12-22 16:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xiph.Org
2020-12-22 16:43 - 2020-12-22 16:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Icecream Slideshow Maker
2020-12-22 16:43 - 2020-12-22 16:43 - 000000000 ____D C:\Program Files (x86)\Xiph.Org
2020-12-22 16:43 - 2020-12-22 16:43 - 000000000 ____D C:\Program Files (x86)\Icecream Slideshow Maker
2020-12-22 16:40 - 2020-12-22 16:40 - 000001198 _____ C:\Users\Public\Desktop\Icecream PDF Converter.lnk
2020-12-22 16:40 - 2020-12-22 16:40 - 000000000 ____D C:\Users\ruda6\.Icecream PDF Converter
2020-12-22 16:40 - 2020-12-22 16:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Icecream PDF Converter
2020-12-22 16:39 - 2020-12-22 16:40 - 000000000 ____D C:\Program Files (x86)\Icecream PDF Converter
2020-12-22 16:34 - 2020-12-23 13:05 - 000000000 ____D C:\Users\ruda6\log
2020-12-22 16:34 - 2020-12-22 16:34 - 000001192 _____ C:\Users\Public\Desktop\Icecream Screen Recorder.lnk
2020-12-22 16:34 - 2020-12-22 16:34 - 000000000 ____D C:\Users\ruda6\.Icecream Screen Recorder
2020-12-22 16:34 - 2020-12-22 16:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Icecream Screen Recorder
2020-12-22 16:34 - 2020-12-22 16:34 - 000000000 ____D C:\Program Files\Common Files\WebM Project
2020-12-22 16:34 - 2020-12-22 16:34 - 000000000 ____D C:\Program Files (x86)\Icecream Screen Recorder
2020-12-22 16:23 - 2020-12-22 16:23 - 000001186 _____ C:\Users\Public\Desktop\Icecream Ebook Reader.lnk
2020-12-22 16:23 - 2020-12-22 16:23 - 000000000 ____D C:\Users\ruda6\.ebookreader
2020-12-22 16:23 - 2020-12-22 16:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Icecream Ebook Reader
2020-12-22 16:23 - 2020-12-22 16:23 - 000000000 ____D C:\Program Files (x86)\Icecream Ebook Reader
2020-12-22 16:18 - 2020-12-22 16:18 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\NVIDIA
2020-12-22 16:18 - 2020-12-22 16:18 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\LibreOffice
2020-12-22 16:16 - 2020-12-22 16:16 - 000001165 _____ C:\Users\Public\Desktop\LibreOffice 7.0.lnk
2020-12-22 16:16 - 2020-12-22 16:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 7.0
2020-12-22 16:15 - 2020-12-22 16:16 - 000000000 ____D C:\Program Files\LibreOffice
2020-12-22 16:04 - 2020-12-22 16:09 - 316936192 _____ C:\Users\ruda6\Downloads\LibreOffice_7.0.4_Win_x64.msi
2020-12-22 16:02 - 2020-12-22 16:14 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\Icecream
2020-12-22 16:00 - 2020-12-22 16:50 - 000000000 ____D C:\Users\ruda6\AppData\Local\Icecream
2020-12-22 16:00 - 2020-12-22 16:00 - 000001213 _____ C:\Users\Public\Desktop\Icecream PDF Split and Merge.lnk
2020-12-22 16:00 - 2020-12-22 16:00 - 000000000 ____D C:\Users\ruda6\.Icecream PDF Split and Merge
2020-12-22 16:00 - 2020-12-22 16:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Icecream PDF Split and Merge
2020-12-22 16:00 - 2020-12-22 16:00 - 000000000 ____D C:\Program Files (x86)\Icecream PDF Split and Merge
2020-12-22 15:57 - 2020-12-22 15:59 - 029536840 _____ (Icecream Apps ) C:\Users\ruda6\Downloads\ebook_reader_setup.exe
2020-12-22 15:57 - 2020-12-22 15:59 - 021768184 _____ (Icecream Apps ) C:\Users\ruda6\Downloads\slideshow_maker_setup.exe
2020-12-22 15:57 - 2020-12-22 15:58 - 019800680 _____ (Icecream Apps ) C:\Users\ruda6\Downloads\pdf_split_and_merge_setup.exe
2020-12-22 15:56 - 2020-12-22 16:04 - 132205232 _____ (Icecream Apps ) C:\Users\ruda6\Downloads\pdf_converter_setup.exe
2020-12-22 15:55 - 2020-12-22 16:00 - 056738936 _____ (Icecream Apps ) C:\Users\ruda6\Downloads\screen_recorder_setup.exe
2020-12-22 15:46 - 2020-12-22 15:46 - 000000000 ____D C:\Users\ruda6\Documents\20.eMC
2020-12-22 15:45 - 2020-12-22 15:45 - 000000000 ____D C:\Users\ruda6\Documents\Incomedia
2020-12-22 15:45 - 2020-12-22 15:45 - 000000000 ____D C:\Users\ruda6\Documents\Fax
2020-12-22 15:45 - 2020-12-20 23:27 - 000000000 ____D C:\Users\ruda6\Documents\FILMBOX
2020-12-22 15:45 - 2020-10-28 14:01 - 000000000 ____D C:\Users\ruda6\Documents\Onenotové poznámkové bloky
2020-12-22 02:36 - 2020-12-24 22:00 - 000000000 ____D C:\Program Files\CCleaner
2020-12-22 02:36 - 2020-12-22 02:36 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update
2020-12-22 02:36 - 2020-12-22 02:36 - 000002868 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC
2020-12-22 02:36 - 2020-12-22 02:36 - 000000867 _____ C:\Users\Public\Desktop\CCleaner.lnk
2020-12-22 02:36 - 2020-12-22 02:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2020-12-22 02:35 - 2020-12-22 02:35 - 030312056 _____ (Piriform Software Ltd) C:\Users\ruda6\Downloads\cctrialsetup.exe
2020-12-22 02:20 - 2020-12-22 02:20 - 000001126 _____ C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
2020-12-22 02:20 - 2020-12-22 02:20 - 000000000 ____D C:\Users\ruda6\AppData\Local\VS Revo Group
2020-12-22 02:20 - 2020-12-22 02:20 - 000000000 ____D C:\ProgramData\VS Revo Group
2020-12-22 02:20 - 2020-12-22 02:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller Pro
2020-12-22 02:20 - 2020-12-22 02:20 - 000000000 ____D C:\Program Files\VS Revo Group
2020-12-22 02:20 - 2020-10-14 04:07 - 000038400 _____ (VS Revo Group) C:\Windows\system32\Drivers\revoflt.sys
2020-12-22 02:17 - 2020-12-22 02:17 - 017249232 _____ (VS Revo Group ) C:\Users\ruda6\Downloads\RevoUninProSetup.exe
2020-12-22 01:55 - 2020-12-22 01:55 - 003923000 _____ C:\Users\ruda6\Downloads\EpsonConnect143.exe
2020-12-22 01:42 - 2020-12-22 01:42 - 000002244 _____ C:\Users\Public\Desktop\Epson Easy Photo Print.lnk
2020-12-22 01:42 - 2020-12-22 01:42 - 000000000 ____D C:\ProgramData\UDL
2020-12-22 01:41 - 2020-12-22 01:41 - 000002213 _____ C:\Users\Public\Desktop\Epson Printer Connection Checker.lnk
2020-12-22 01:41 - 2020-12-22 01:41 - 000000000 ____D C:\ProgramData\Sony Corporation
2020-12-22 01:35 - 2020-12-24 16:53 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\EPSON
2020-12-22 01:35 - 2020-12-22 10:30 - 000000931 _____ C:\Windows\Tasks\EPSON L3050 Series Update {8F00F415-9F48-4B2C-A663-0FA26324ECA0}.job
2020-12-22 01:35 - 2020-12-22 01:35 - 000004126 _____ C:\Windows\system32\Tasks\EPSON L3050 Series Update {8F00F415-9F48-4B2C-A663-0FA26324ECA0}
2020-12-22 01:35 - 2020-12-22 01:35 - 000000000 ____D C:\Program Files\EpsonNet
2020-12-22 01:35 - 2020-12-22 01:35 - 000000000 ____D C:\Program Files\Common Files\EPSON
2020-12-22 01:34 - 2020-12-22 01:55 - 000000000 ____D C:\Program Files (x86)\EPSON Software
2020-12-22 01:34 - 2020-12-22 01:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON Software
2020-12-22 01:34 - 2020-12-22 01:34 - 000001166 _____ C:\Users\Public\Desktop\Příručky společnosti EPSON.lnk
2020-12-22 01:34 - 2020-12-22 01:34 - 000000123 _____ C:\Users\Public\Desktop\Epson Connect Site.url
2020-12-22 01:33 - 2020-12-22 20:50 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2020-12-22 01:33 - 2020-12-22 01:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EPSON
2020-12-22 01:33 - 2020-12-22 01:41 - 000000000 ____D C:\Program Files (x86)\epson
2020-12-22 01:33 - 2020-12-22 01:33 - 000001242 _____ C:\Users\Public\Desktop\Epson Scan 2.lnk
2020-12-22 01:33 - 2020-12-22 01:33 - 000000000 ____D C:\Windows\twain_64
2020-12-22 01:33 - 2020-12-22 01:33 - 000000000 ____D C:\Program Files\epson
2020-12-22 01:33 - 2020-10-02 18:26 - 000206304 _____ (Seiko Epson Corporation) C:\Windows\system32\escsvc64.exe
2020-12-22 01:33 - 2020-10-02 18:26 - 000165392 _____ (TWAIN Working Group) C:\Windows\system32\twaindsm.dll
2020-12-22 01:33 - 2020-10-02 18:26 - 000147472 _____ (TWAIN Working Group) C:\Windows\SysWOW64\twaindsm.dll
2020-12-22 01:32 - 2016-12-21 04:12 - 000183296 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_YLMBR4E.DLL
2020-12-22 01:32 - 2011-03-15 03:03 - 000083968 _____ (SEIKO EPSON CORPORATION) C:\Windows\system32\E_YD4BR4E.DLL
2020-12-22 01:31 - 2020-12-22 01:42 - 000000000 ____D C:\ProgramData\Epson
2020-12-22 01:21 - 2020-12-22 01:21 - 018501944 _____ (ZONER software ) C:\Users\ruda6\Downloads\zps18_cz_aktualizace_10.exe
2020-12-22 01:18 - 2020-12-23 23:33 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\Zoner
2020-12-22 01:18 - 2020-12-23 23:33 - 000000000 ____D C:\Users\ruda6\AppData\Local\Zoner
2020-12-22 01:18 - 2020-12-22 01:18 - 000002035 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Zoner Photo Studio 18.lnk
2020-12-22 01:18 - 2020-12-22 01:18 - 000002029 _____ C:\Users\Public\Desktop\Zoner Photo Studio 18.lnk
2020-12-22 01:18 - 2020-12-22 01:18 - 000000000 ____D C:\Program Files\Zoner
2020-12-22 01:09 - 2020-12-22 01:12 - 000000000 ____D C:\Users\ruda6\AppData\Local\Turbo View & Convert
2020-12-22 01:09 - 2020-12-22 01:09 - 000001282 _____ C:\Users\Public\Desktop\Turbo View & Convert.lnk
2020-12-22 01:09 - 2020-12-22 01:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Turbo View & Convert
2020-12-22 01:09 - 2020-12-22 01:09 - 000000000 ____D C:\Program Files (x86)\File Identifier
2020-12-22 01:08 - 2020-12-22 01:08 - 000000000 ____D C:\Program Files (x86)\IMSIDesign
2020-12-22 01:07 - 2020-12-22 01:08 - 053786168 _____ (IMSI/Design, LLC ) C:\Users\ruda6\Downloads\tvc_setup_signed_2.0.0.145.exe
2020-12-22 00:51 - 2020-12-23 22:40 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\FreeFileSync
2020-12-22 00:51 - 2020-12-22 00:51 - 000001013 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeFileSync.lnk
2020-12-22 00:51 - 2020-12-22 00:51 - 000001001 _____ C:\Users\Public\Desktop\FreeFileSync.lnk
2020-12-22 00:51 - 2020-12-22 00:51 - 000000999 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealTimeSync.lnk
2020-12-22 00:51 - 2020-12-22 00:51 - 000000987 _____ C:\Users\Public\Desktop\RealTimeSync.lnk
2020-12-22 00:51 - 2020-12-22 00:51 - 000000000 ____D C:\Program Files\FreeFileSync
2020-12-22 00:50 - 2020-12-22 00:50 - 017319408 _____ (FreeFileSync.org ) C:\Users\ruda6\Downloads\FreeFileSync_11.4_Windows_Setup.exe
2020-12-22 00:18 - 2020-12-24 04:53 - 000000000 ____D C:\Users\ruda6\AppData\Local\D3DSCache
2020-12-21 23:53 - 2020-12-21 23:53 - 000001489 _____ C:\Users\ruda6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PureVPN.lnk
2020-12-21 23:41 - 2020-12-21 23:41 - 000000000 ____D C:\Users\ruda6\AppData\Local\GZ_Systems
2020-12-21 23:40 - 2020-12-21 23:53 - 000001257 _____ C:\Users\ruda6\Desktop\PureVPN.lnk
2020-12-21 23:40 - 2020-12-21 23:40 - 000001388 _____ C:\Users\ruda6\AppData\Roaming\Microsoft\Windows\Start Menu\Uninstall PureVPN.lnk
2020-12-21 23:40 - 2020-12-21 23:40 - 000000096 _____ C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
2020-12-21 23:40 - 2020-12-21 23:40 - 000000000 ____D C:\ProgramData\Atom
2020-12-21 23:40 - 2020-12-21 23:40 - 000000000 ____D C:\Program Files (x86)\Atom
2020-12-21 23:40 - 2020-05-29 06:19 - 000104424 _____ (Windows (R) Win 7 DDK provider) C:\Windows\system32\Drivers\avpndriver.sys
2020-12-21 23:40 - 2020-03-26 15:30 - 000039920 _____ (The OpenVPN Project) C:\Windows\system32\Drivers\tap0901.sys
2020-12-21 23:39 - 2020-12-21 23:55 - 000000000 ____D C:\ProgramData\purevpn
2020-12-21 23:39 - 2020-12-21 23:39 - 000000000 ____D C:\Program Files (x86)\GZ Systems
2020-12-21 23:38 - 2020-12-21 23:39 - 027932288 _____ () C:\Users\ruda6\Downloads\purevpn_setup.exe
2020-12-21 20:17 - 2020-12-21 20:17 - 000000000 ____D C:\Users\ruda6\AppData\Local\Ashampoo PDF
2020-12-21 20:16 - 2020-12-21 20:16 - 000000000 ____D C:\ProgramData\Temp
2020-12-21 20:16 - 2020-12-21 20:16 - 000000000 ____D C:\ActMask
2020-12-21 20:16 - 2019-03-21 14:33 - 000595080 ____R (ActMask Co.,Ltd - hxxp://www.all2pdf.com) C:\Windows\system32\PrintDisp.exe
2020-12-21 20:16 - 2015-10-01 06:46 - 000130184 ____R (ActMask Co.,Ltd - hxxp://WWW.ALL2PDF.COM) C:\Windows\system32\PrintCtrl.exe
2020-12-21 20:16 - 2015-07-16 13:35 - 000929792 _____ (ActMask hxxp://www.all2pdf.com) C:\Windows\SysWOW64\SaveTo.dll
2020-12-21 20:16 - 2013-12-07 21:25 - 004454128 _____ (DynaForms GmbH) C:\Windows\SysWOW64\CPDF4.dll
2020-12-21 20:16 - 2008-01-19 07:36 - 001391616 _____ C:\Windows\SysWOW64\ActPDF.dll
2020-12-21 20:15 - 2020-12-23 15:51 - 000000000 ____D C:\ProgramData\Package Cache
2020-12-21 20:15 - 2020-12-21 20:16 - 000000000 ____D C:\Windows\Ashampoo PDF
2020-12-21 20:15 - 2020-12-21 20:15 - 000001305 _____ C:\Users\Public\Desktop\Ashampoo PDF Pro 2.lnk
2020-12-21 20:15 - 2020-12-21 20:15 - 000000000 ____D C:\ProgramData\Aspell
2020-12-21 20:15 - 2020-12-21 20:15 - 000000000 ____D C:\ProgramData\Ashampoo PDF
2020-12-21 20:15 - 2017-03-25 10:01 - 000411272 _____ (ActMask Co.,Ltd - hxxp://WWW.ALL2PDF.COM) C:\Windows\SysWOW64\SetPrinter.exe
2020-12-21 20:15 - 2017-03-25 10:01 - 000411272 _____ (ActMask Co.,Ltd - hxxp://WWW.ALL2PDF.COM) C:\Windows\system32\SetPrinter.exe
2020-12-21 20:15 - 2014-04-16 18:21 - 000036488 _____ (ActMask Co., Ltd - hxxp:\\WWW.ALL2PDF.COM) C:\Windows\system32\SaveToEx30.dll
2020-12-21 20:15 - 2013-11-03 19:18 - 001181152 _____ (ActMask Co.,Ltd - hxxp://WWW.ALL2PDF.COM) C:\Windows\system32\PrtClient.exe
2020-12-21 20:15 - 2013-11-03 19:00 - 000532448 _____ (ActMask Co.,Ltd - hxxp://www.all2pdf.com) C:\Windows\system32\PrtPass.exe
2020-12-21 20:12 - 2020-12-21 20:12 - 000000000 ____D C:\Users\ruda6\AppData\LocalLow\Temp
2020-12-21 20:10 - 2020-12-21 20:14 - 318618888 _____ (Ashampoo GmbH & Co. KG ) C:\Users\ruda6\Downloads\ashampoo_pdf_pro_2_2.0.7_sm.exe
2020-12-21 20:00 - 2020-12-21 20:00 - 000001317 _____ C:\Users\Public\Desktop\Ashampoo Photo Commander 11.lnk
2020-12-21 19:57 - 2020-12-21 19:59 - 164099936 _____ (Ashampoo GmbH & Co. KG ) C:\Users\ruda6\Downloads\ashampoo_photo_commander_11_e11.1.9_sm.exe
2020-12-21 19:55 - 2020-12-21 19:55 - 000000000 ____D C:\Users\ruda6\AppData\Local\OneDrive
2020-12-21 19:53 - 2020-12-21 19:53 - 000001266 _____ C:\Users\Public\Desktop\Ashampoo ZIP Pro 2.lnk
2020-12-21 19:53 - 2020-12-21 19:53 - 000000000 ____D C:\Windows\SysWOW64\Skins
2020-12-21 19:53 - 2020-12-21 19:53 - 000000000 ____D C:\Windows\SysWOW64\Sfxs
2020-12-21 19:53 - 2020-12-21 19:53 - 000000000 ____D C:\Windows\SysWOW64\lang
2020-12-21 19:53 - 2020-12-21 19:53 - 000000000 ____D C:\Windows\SysWOW64\Icons
2020-12-21 19:53 - 2020-12-21 19:53 - 000000000 ____D C:\Windows\SysWOW64\Help
2020-12-21 19:52 - 2020-12-21 19:53 - 062621928 _____ (Ashampoo GmbH & Co. KG ) C:\Users\ruda6\Downloads\ashampoo_zip_pro_2_2.0.38_sm.exe
2020-12-21 19:47 - 2020-12-21 19:47 - 000000000 ____D C:\Users\ruda6\AppData\Local\CrashRpt
2020-12-21 19:46 - 2020-12-21 19:46 - 000001264 _____ C:\Users\Public\Desktop\Ashampoo Snap 11.lnk
2020-12-21 19:45 - 2020-12-21 19:45 - 048558592 _____ (Ashampoo GmbH & Co. KG ) C:\Users\ruda6\Downloads\ashampoo_snap_11_11.1.0_sm.exe
2020-12-21 19:40 - 2020-12-21 20:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2020-12-21 19:40 - 2020-12-21 20:15 - 000000000 ____D C:\ProgramData\Ashampoo
2020-12-21 19:40 - 2020-12-21 20:00 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\Ashampoo
2020-12-21 19:40 - 2020-12-21 19:47 - 000000000 ____D C:\Users\ruda6\AppData\Local\ashampoo
2020-12-21 19:40 - 2020-12-21 19:40 - 000001376 _____ C:\Users\Public\Desktop\Ashampoo Burning Studio 18.lnk
2020-12-21 19:39 - 2020-12-21 20:14 - 000000000 ____D C:\Program Files (x86)\Ashampoo
2020-12-21 19:37 - 2020-12-21 19:39 - 106137648 _____ (Ashampoo GmbH & Co. KG ) C:\Users\ruda6\Downloads\ashampoo_burning_studio_18_e18.0.0_sm.exe
2020-12-21 19:34 - 2020-12-22 11:55 - 000000000 ____D C:\Users\ruda6\AppData\Local\CrashDumps
2020-12-21 19:34 - 2020-12-21 19:34 - 000000000 ____D C:\Users\ruda6\AppData\Local\Foxit Reader
2020-12-21 19:32 - 2020-12-21 19:32 - 000000000 ____D C:\Users\ruda6\AppData\LocalLow\Foxit
2020-12-21 19:31 - 2020-12-21 19:33 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\Foxit Software
2020-12-21 19:31 - 2020-12-21 19:32 - 000000000 ____D C:\Users\Public\Foxit Software
2020-12-21 19:31 - 2020-12-21 19:31 - 000001428 _____ C:\Users\Public\Desktop\Foxit Reader.lnk
2020-12-21 19:31 - 2020-12-21 19:31 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\Foxit AgentInformation
2020-12-21 19:31 - 2020-12-21 19:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit Reader
2020-12-21 19:31 - 2020-12-21 19:31 - 000000000 ____D C:\ProgramData\Foxit Software
2020-12-21 19:31 - 2020-12-21 19:31 - 000000000 ____D C:\ProgramData\Foxit ContentPlatform
2020-12-21 19:31 - 2020-12-21 19:31 - 000000000 ____D C:\Program Files (x86)\Foxit Software
2020-12-21 19:29 - 2020-12-21 19:30 - 073945696 _____ (Foxit Software Inc. ) C:\Users\ruda6\Downloads\FoxitReader1011_enu_Setup_Prom.exe
2020-12-21 19:24 - 2020-12-24 18:39 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\vlc
2020-12-21 19:24 - 2020-12-21 19:24 - 000000920 _____ C:\Users\Public\Desktop\VLC media player.lnk
2020-12-21 19:24 - 2020-12-21 19:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2020-12-21 19:24 - 2020-12-21 19:24 - 000000000 ____D C:\Program Files\VideoLAN
2020-12-21 19:22 - 2020-12-21 19:23 - 041824168 _____ C:\Users\ruda6\Downloads\vlc-3.0.11-win64.exe
2020-12-21 19:18 - 2020-12-21 19:18 - 000002323 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-12-21 19:18 - 2020-12-21 19:18 - 000002282 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-12-21 19:18 - 2020-12-21 19:18 - 000000000 ____D C:\Program Files\Google
2020-12-21 19:17 - 2020-12-21 19:23 - 000000000 ____D C:\Users\ruda6\AppData\Local\Google
2020-12-21 19:17 - 2020-12-21 19:17 - 001321688 _____ (Google LLC) C:\Users\ruda6\Downloads\ChromeSetup.exe
2020-12-21 19:17 - 2020-12-21 19:17 - 000003472 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-12-21 19:17 - 2020-12-21 19:17 - 000003348 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-12-21 19:17 - 2020-12-21 19:17 - 000000000 ____D C:\Program Files (x86)\Google
2020-12-21 18:59 - 2020-12-21 18:59 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2020-12-21 18:59 - 2020-12-21 18:59 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2020-12-21 18:59 - 2020-12-21 18:59 - 002260480 _____ C:\Windows\system32\TextInputMethodFormatter.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 001822272 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2020-12-21 18:59 - 2020-12-21 18:59 - 001393496 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2020-12-21 18:59 - 2020-12-21 18:59 - 001333248 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000363520 _____ C:\Windows\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000287232 _____ C:\Windows\system32\CoreMas.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000266240 _____ C:\Windows\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000240640 _____ C:\Windows\SysWOW64\CoreMas.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000165376 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe
2020-12-21 18:59 - 2020-12-21 18:59 - 000102912 _____ (Microsoft Corporation) C:\Windows\system32\ncpa.cpl
2020-12-21 18:59 - 2020-12-21 18:59 - 000100864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncpa.cpl
2020-12-21 18:59 - 2020-12-21 18:59 - 000089088 _____ C:\Windows\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000073216 _____ C:\Windows\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000060928 _____ C:\Windows\system32\runexehelper.exe
2020-12-21 18:59 - 2020-12-21 18:59 - 000048640 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000039936 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2020-12-21 18:59 - 2020-12-21 18:59 - 000013312 _____ C:\Windows\system32\agentactivationruntimestarter.exe
2020-12-21 18:59 - 2020-12-21 18:59 - 000010912 _____ C:\Windows\system32\DrtmAuthTxt.wim
2020-12-21 18:59 - 2020-12-21 18:59 - 000010752 _____ C:\Windows\SysWOW64\agentactivationruntimestarter.exe
2020-12-21 18:59 - 2020-12-21 18:59 - 000001370 _____ C:\Windows\system32\ThirdPartyNoticesBySHS.txt
2020-12-21 18:52 - 2020-12-24 22:06 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\eM Client
2020-12-21 18:52 - 2020-12-21 18:52 - 000000000 ____D C:\Users\ruda6\AppData\Local\eM Client
2020-12-21 18:52 - 2020-12-21 18:52 - 000000000 ____D C:\Users\ruda6\AppData\Local\CEF
2020-12-21 18:51 - 2020-12-21 18:51 - 000001108 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eM Client.lnk
2020-12-21 18:51 - 2020-12-21 18:51 - 000000000 ____D C:\Program Files (x86)\eM Client
2020-12-21 18:47 - 2020-12-21 18:50 - 110661632 _____ C:\Users\ruda6\Downloads\emclient-v8.1.876.msi
2020-12-21 18:41 - 2020-12-24 11:21 - 000000000 ___SD C:\Users\ruda6\Documents\Sticky Passwords
2020-12-21 18:40 - 2020-12-21 18:40 - 000001165 _____ C:\Users\Public\Desktop\Sticky Password.lnk
2020-12-21 18:40 - 2020-12-21 18:40 - 000000000 ____D C:\Users\ruda6\AppData\Local\PeerDistRepub
2020-12-21 18:40 - 2020-12-21 18:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sticky Password
2020-12-21 18:40 - 2020-12-21 18:40 - 000000000 ____D C:\Program Files (x86)\Sticky Password
2020-12-21 18:39 - 2020-12-21 18:40 - 000000000 ____D C:\Windows\system32\MRT
2020-12-21 18:38 - 2020-12-21 18:39 - 048290328 _____ (Lamantine Software ) C:\Users\ruda6\Downloads\StickyPassword_rev8284.exe
2020-12-21 17:39 - 2020-12-21 17:39 - 000000112 ___SH C:\bootTel.dat
2020-12-21 17:36 - 2020-12-21 23:16 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2020-12-21 17:36 - 2020-12-21 17:41 - 000000000 ____D C:\Windows\CSC
2020-12-21 17:36 - 2020-12-21 17:36 - 000000000 __SHD C:\Windows\BitLockerDiscoveryVolumeContents
2020-12-21 17:36 - 2020-12-21 17:36 - 000000000 ___SD C:\Windows\system32\AppV
2020-12-21 17:36 - 2020-12-21 17:36 - 000000000 ____D C:\Windows\RemotePackages
2020-12-21 17:14 - 2020-12-23 15:44 - 000000000 ____D C:\ProgramData\Intel
2020-12-21 17:11 - 2020-12-21 17:11 - 000000000 ____D C:\Users\ruda6\AppData\LocalLow\Intel
2020-12-21 16:57 - 2020-12-21 16:57 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2020-12-21 16:56 - 2020-12-24 20:54 - 000000000 ____D C:\ProgramData\NVIDIA
2020-12-21 16:56 - 2020-12-21 16:56 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2020-12-21 16:56 - 2016-12-29 14:16 - 006384576 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2020-12-21 16:56 - 2016-12-29 14:16 - 002475968 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2020-12-21 16:56 - 2016-12-29 14:16 - 001762752 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2020-12-21 16:56 - 2016-12-29 14:16 - 000546752 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2020-12-21 16:56 - 2016-12-29 14:16 - 000392128 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2020-12-21 16:56 - 2016-12-29 14:16 - 000083512 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2020-12-21 16:56 - 2016-12-29 14:16 - 000069568 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2020-12-21 16:56 - 2016-12-29 14:10 - 000001951 _____ C:\Windows\NvContainerRecovery.bat
2020-12-21 16:56 - 2016-12-22 00:59 - 007651057 _____ C:\Windows\system32\nvcoproc.bin
2020-12-21 16:55 - 2020-12-21 16:56 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2020-12-21 16:55 - 2020-12-21 16:55 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2020-12-21 16:55 - 2017-01-17 05:54 - 034717624 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2020-12-21 16:55 - 2017-01-17 05:53 - 028209080 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2020-12-21 16:55 - 2017-01-17 05:53 - 000951224 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2020-12-21 16:55 - 2017-01-17 05:53 - 000904752 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2020-12-21 16:55 - 2017-01-17 05:53 - 000448568 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2020-12-21 16:55 - 2017-01-17 05:53 - 000397240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2020-12-21 16:55 - 2017-01-17 05:52 - 040134192 _____ C:\Windows\system32\nvcompiler.dll
2020-12-21 16:55 - 2017-01-17 05:52 - 002961336 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2020-12-21 16:55 - 2017-01-17 05:52 - 002594744 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2020-12-21 16:55 - 2017-01-17 05:52 - 001964600 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6437654.dll
2020-12-21 16:55 - 2017-01-17 05:52 - 001598392 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6437654.dll
2020-12-21 16:55 - 2017-01-17 05:52 - 001047096 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2020-12-21 16:55 - 2017-01-17 05:52 - 000985136 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 035233328 _____ C:\Windows\SysWOW64\nvcompiler.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 011017016 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 010907368 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 009246824 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 009000336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 000818680 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 000698544 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 000586784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 000407240 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2020-12-21 16:55 - 2017-01-17 05:51 - 000339144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2020-12-21 16:55 - 2017-01-17 05:50 - 010453152 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2020-12-21 16:55 - 2017-01-17 05:50 - 008847016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2020-12-21 16:55 - 2017-01-17 05:50 - 003972960 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2020-12-21 16:55 - 2017-01-17 05:50 - 003509152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2020-12-21 16:55 - 2017-01-17 05:50 - 000658584 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll
2020-12-21 16:55 - 2017-01-17 01:37 - 000042296 _____ C:\Windows\system32\nvinfo.pb
2020-12-21 16:55 - 2017-01-17 01:37 - 000000669 _____ C:\Windows\SysWOW64\nv-vk32.json
2020-12-21 16:55 - 2017-01-17 01:37 - 000000669 _____ C:\Windows\system32\nv-vk64.json
2020-12-21 16:49 - 2020-12-24 03:18 - 000000000 ____D C:\Users\ruda6\AppData\Local\Comms
2020-12-21 16:46 - 2020-12-24 20:54 - 000000000 __SHD C:\Users\ruda6\IntelGraphicsProfiles
2020-12-21 16:46 - 2020-12-21 17:14 - 000000000 ____D C:\Users\ruda6\AppData\Local\Intel
2020-12-21 16:46 - 2020-12-21 16:46 - 000000000 _____ C:\Windows\system32\GfxValDisplayLog.bin
2020-12-21 16:44 - 2020-12-21 17:21 - 000023552 _____ (Khronos Group) C:\Windows\SysWOW64\opencl.dll
2020-12-21 16:44 - 2020-09-11 11:36 - 000305992 _____ C:\Windows\system32\libmfxhw64.dll
2020-12-21 16:44 - 2020-09-11 11:36 - 000254520 _____ C:\Windows\SysWOW64\libmfxhw32.dll
2020-12-21 16:44 - 2020-09-11 11:36 - 000171472 _____ (Intel Corporation) C:\Windows\system32\intel_gfx_api-x64.dll
2020-12-21 16:44 - 2020-09-11 11:36 - 000146752 _____ (Intel Corporation) C:\Windows\SysWOW64\intel_gfx_api-x86.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 026676016 _____ (Intel Corporation) C:\Windows\system32\mfxplugin64_hw.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 013519664 _____ (Intel Corporation) C:\Windows\SysWOW64\mfxplugin32_hw.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 001790192 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2020-12-21 16:44 - 2020-09-11 11:35 - 001790192 _____ C:\Windows\system32\vulkaninfo.exe
2020-12-21 16:44 - 2020-09-11 11:35 - 001386224 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2020-12-21 16:44 - 2020-09-11 11:35 - 001386224 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2020-12-21 16:44 - 2020-09-11 11:35 - 001096800 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 001096800 _____ C:\Windows\system32\vulkan-1.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 000949856 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 000949856 _____ C:\Windows\SysWOW64\vulkan-1.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 000507696 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 000462640 _____ C:\Windows\system32\ze_loader.dll
2020-12-21 16:44 - 2020-09-11 11:35 - 000148784 _____ C:\Windows\system32\ze_validation_layer.dll
2020-12-21 16:42 - 2020-12-24 21:01 - 001694140 _____ C:\Windows\system32\PerfStringBackup.INI
2020-12-21 16:41 - 2020-12-24 13:52 - 000000000 ____D C:\Users\ruda6\AppData\Local\PlaceholderTileLogoFolder
2020-12-21 16:40 - 2020-12-22 00:15 - 000000000 ___RD C:\Users\ruda6\OneDrive
2020-12-21 16:40 - 2020-12-21 16:41 - 000003378 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2513297869-714495167-4108430696-1001
2020-12-21 16:39 - 2020-12-24 13:52 - 000000000 ____D C:\Users\ruda6\AppData\Local\Packages
2020-12-21 16:39 - 2020-12-22 10:33 - 000000000 ____D C:\Users\ruda6\AppData\Local\ConnectedDevicesPlatform
2020-12-21 16:39 - 2020-12-21 16:49 - 000000000 ____D C:\Users\ruda6\AppData\Local\Publishers
2020-12-21 16:39 - 2020-12-21 16:39 - 000000000 ___RD C:\Users\ruda6\3D Objects
2020-12-21 16:39 - 2020-12-21 16:39 - 000000000 ____D C:\Users\ruda6\AppData\Roaming\Adobe
2020-12-21 16:39 - 2020-12-21 16:39 - 000000000 ____D C:\Users\ruda6\AppData\Local\VirtualStore
2020-12-21 16:37 - 2020-12-23 15:42 - 000000000 ____D C:\Users\ruda6
2020-12-21 16:37 - 2020-12-21 16:41 - 000002365 _____ C:\Users\ruda6\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-12-21 16:37 - 2020-12-21 16:37 - 000000020 ___SH C:\Users\ruda6\ntuser.ini
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\Šablony
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\Soubory cookie
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\Poslední
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\Okolní tiskárny
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\Okolní síť
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\Nabídka Start
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\Dokumenty
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\Data aplikací
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2020-12-21 16:37 - 2020-12-21 16:37 - 000000000 _SHDL C:\Users\ruda6\AppData\Local\Data aplikací
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Public\Documents\Obrázky
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Public\Documents\Hudba
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Public\Documents\Filmy
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Šablony
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Poslední
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Okolní síť
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Dokumenty
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Documents\Obrázky
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Documents\Hudba
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Documents\Filmy
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\Data aplikací
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Šablony
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Soubory cookie
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Poslední
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Okolní tiskárny
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Okolní síť
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Nabídka Start
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Dokumenty
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Documents\Obrázky
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Documents\Hudba
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Documents\Filmy
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\Data aplikací
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\ProgramData\Šablony
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\ProgramData\Plocha
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\ProgramData\Dokumenty
2020-12-21 16:35 - 2020-12-21 16:35 - 000000000 _SHDL C:\ProgramData\Data aplikací
2020-12-21 16:32 - 2020-12-21 16:32 - 000002854 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2513297869-714495167-4108430696-500
2020-12-21 16:32 - 2020-12-21 16:32 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2020-12-21 16:31 - 2020-12-23 22:05 - 000000000 ____D C:\Windows\Panther
2020-12-21 14:14 - 2020-12-21 14:14 - 000000000 ___HD C:\$Windows.~WS
2020-12-21 11:47 - 2020-12-21 11:47 - 000000000 ____H C:\$WINRE_BACKUP_PARTITION.MARKER

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-12-24 22:07 - 2019-06-06 22:23 - 000000000 ____D C:\FRST
2020-12-24 21:54 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-12-24 21:40 - 2020-11-18 23:29 - 000000000 ____D C:\Windows\system32\SleepStudy
2020-12-24 21:01 - 2019-12-07 15:41 - 000718262 _____ C:\Windows\system32\perfh005.dat
2020-12-24 21:01 - 2019-12-07 15:41 - 000145404 _____ C:\Windows\system32\perfc005.dat
2020-12-24 21:01 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2020-12-24 20:54 - 2020-11-19 00:30 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-12-24 20:54 - 2017-04-14 02:33 - 000000000 ___HD C:\Intel
2020-12-24 20:53 - 2020-09-27 06:50 - 000008192 ___SH C:\DumpStack.log.tmp
2020-12-24 20:53 - 2019-12-07 10:03 - 000524288 _____ C:\Windows\system32\config\BBI
2020-12-24 20:26 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2020-12-24 20:25 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2020-12-24 04:56 - 2020-11-19 00:33 - 000000000 ____D C:\ProgramData\Packages
2020-12-23 21:27 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2020-12-23 15:45 - 2020-11-18 23:29 - 000630648 _____ C:\Windows\system32\FNTCACHE.DAT
2020-12-23 15:42 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\MUI
2020-12-23 15:42 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\MUI
2020-12-23 15:42 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp
2020-12-23 13:48 - 2020-01-09 15:43 - 000000000 ____D C:\Users\ruda6\Documents\Nákupy
2020-12-22 10:04 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\appcompat
2020-12-21 23:16 - 2019-12-07 15:44 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2020-12-21 23:16 - 2019-12-07 15:44 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2020-12-21 23:16 - 2019-12-07 15:41 - 000000000 ____D C:\Windows\SysWOW64\winrm
2020-12-21 23:16 - 2019-12-07 15:41 - 000000000 ____D C:\Windows\SysWOW64\WCN
2020-12-21 23:16 - 2019-12-07 15:41 - 000000000 ____D C:\Windows\SysWOW64\slmgr
2020-12-21 23:16 - 2019-12-07 15:41 - 000000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts
2020-12-21 23:16 - 2019-12-07 15:41 - 000000000 ____D C:\Windows\system32\winrm
2020-12-21 23:16 - 2019-12-07 15:41 - 000000000 ____D C:\Windows\system32\WCN
2020-12-21 23:16 - 2019-12-07 15:41 - 000000000 ____D C:\Windows\system32\slmgr
2020-12-21 23:16 - 2019-12-07 15:41 - 000000000 ____D C:\Windows\system32\Printing_Admin_Scripts
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\SysWOW64\F12
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\F12
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\migwiz
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender
2020-12-21 23:16 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2020-12-21 23:16 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\servicing
2020-12-21 23:13 - 2019-12-07 15:43 - 000000000 ____D C:\Windows\OCR
2020-12-21 19:25 - 2020-11-19 00:30 - 000000000 ____D C:\Windows\system32\Drivers\wd
2020-12-21 19:13 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2020-12-21 19:13 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources
2020-12-21 19:13 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Dism
2020-12-21 19:13 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2020-12-21 19:13 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr
2020-12-21 18:54 - 2020-06-10 15:08 - 000000000 ___HD C:\$WinREAgent
2020-12-21 17:36 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemApps
2020-12-21 17:36 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\schemas
2020-12-21 17:36 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\security
2020-12-21 17:21 - 2020-11-19 03:50 - 001970176 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistSvc.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 001632056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.AppAgent.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000859136 _____ (Microsoft Corporation) C:\Windows\system32\fvewiz.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000756224 _____ (Microsoft Corporation) C:\Windows\system32\cscsvc.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000704000 _____ (Microsoft Corporation) C:\Windows\system32\gpprefcl.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000677888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvgogl32.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000580608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\csc.sys
2020-12-21 17:21 - 2020-11-19 03:50 - 000563200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpprefcl.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000553984 _____ (Microsoft Corporation) C:\Windows\system32\scrptadm.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000542208 _____ (Microsoft Corporation) C:\Windows\system32\AdmTmpl.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000467968 _____ C:\Windows\system32\AssignedAccessCsp.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000467456 _____ (Microsoft Corporation) C:\Windows\system32\rdpshell.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000465920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scrptadm.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000428544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AdmTmpl.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000417280 _____ (Microsoft Corporation) C:\Windows\system32\bdechangepin.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000409600 _____ (Microsoft Corporation) C:\Windows\system32\fvecpl.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000318464 _____ (Microsoft Corporation) C:\Windows\system32\rdpinit.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000282624 _____ (Microsoft Corporation) C:\Windows\system32\tscfgwmi.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000226304 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistCleaner.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000207360 _____ (Microsoft Corporation) C:\Windows\system32\appmgmts.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000185344 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistWSDDiscoProv.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000183296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvgocl32.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000181760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PeerDist.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000164152 _____ (Microsoft Corporation) C:\Windows\system32\hvsievaluator.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000162616 _____ (Microsoft Corporation) C:\Windows\system32\hvsigpext.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000160768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appmgmts.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000147272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mavinject.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000145736 _____ (Microsoft Corporation) C:\Windows\system32\CscMig.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000145408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvgu1132.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000137016 _____ C:\Windows\system32\HvsiManagementApi.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000111616 _____ C:\Windows\system32\RDVGHelper.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000101688 _____ C:\Windows\SysWOW64\HvsiManagementApi.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdvgumd32.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000083768 _____ (Microsoft Corporation) C:\Windows\system32\windowsdefenderapplicationguardcsp.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000078848 _____ (Microsoft Corporation) C:\Windows\system32\dggpext.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000075264 _____ (Microsoft Corporation) C:\Windows\system32\PrintBrmUi.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000056320 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistHttpTrans.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000053248 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\gpscript.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000042496 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistAD.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000040960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000037888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpscript.exe
2020-12-21 17:21 - 2020-11-19 03:50 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Uev.Office2010CustomActions.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000026944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppVClientPS.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000018232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppVTerminator.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000013624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppVSentinel.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\TSErrRedir.dll
2020-12-21 17:21 - 2020-11-19 03:50 - 000012288 _____ (Microsoft Corporation) C:\Windows\system32\RemoteFXvGPUDisablement.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 002384696 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.AppAgent.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 002200576 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ModernAppAgent.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 002022200 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystems64.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 001588016 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntVirtualization.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 001438008 _____ (Microsoft Corporation) C:\Windows\system32\AppVIntegration.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 001332224 _____ (Microsoft Corporation) C:\Windows\system32\srmclient.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 001201152 _____ (Microsoft Corporation) C:\Windows\system32\AgentService.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 001198592 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.CommonBridge.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 001138176 _____ (Microsoft Corporation) C:\Windows\system32\ApplySettingsTemplateCatalog.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000969544 _____ (Microsoft Corporation) C:\Windows\system32\AppVPolicy.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000945152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmclient.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000894264 _____ (Microsoft Corporation) C:\Windows\system32\AppVManifest.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000756552 _____ (Microsoft Corporation) C:\Windows\system32\AppVClient.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000739128 _____ (Microsoft Corporation) C:\Windows\system32\AppVOrchestration.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000736056 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntStreamingManager.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000668472 _____ (Microsoft Corporation) C:\Windows\system32\AppVReporting.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000638976 _____ (Microsoft Corporation) C:\Windows\system32\srmscan.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000604472 _____ (Microsoft Corporation) C:\Windows\system32\AppVCatalog.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000575800 _____ (Microsoft Corporation) C:\Windows\system32\AppVPublishing.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000465408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmscan.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000446264 _____ (Microsoft Corporation) C:\Windows\system32\TransportDSA.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000422912 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.CscUnpinTool.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000366392 _____ (Microsoft Corporation) C:\Windows\system32\AppVScripting.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000293176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mssecflt.sys
2020-12-21 17:21 - 2020-11-19 03:49 - 000284672 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ConfigWrapper.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000251192 _____ (Microsoft Corporation) C:\Windows\system32\AppVFileSystemMetadata.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000227840 _____ (Microsoft Corporation) C:\Windows\system32\PeerDist.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000223544 _____ (Microsoft Corporation) C:\Windows\system32\AppVStreamMap.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000219960 _____ (Microsoft Corporation) C:\Windows\system32\AppVShNotify.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000201728 _____ (Microsoft Corporation) C:\Windows\system32\tssrvlic.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000195384 _____ (Microsoft Corporation) C:\Windows\system32\AppVStreamingUX.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000182592 _____ (Microsoft Corporation) C:\Windows\system32\mavinject.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000175928 _____ (Microsoft Corporation) C:\Windows\system32\AppVDllSurrogate.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000167224 _____ (Microsoft Corporation) C:\Windows\system32\AppVNice.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000133120 _____ (Microsoft Corporation) C:\Windows\system32\appvetwclientres.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000101888 _____ (Microsoft Corporation) C:\Windows\system32\mssecuser.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000073728 _____ (Microsoft Corporation) C:\Windows\system32\LSCSHostPolicy.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000046080 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Office2010CustomActions.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000041280 _____ (Microsoft Corporation) C:\Windows\system32\AppVClientPS.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000038712 _____ (Microsoft Corporation) C:\Windows\system32\SyncAppvPublishingServer.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000026624 _____ (Microsoft Corporation) C:\Windows\system32\lstelemetry.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000021816 _____ (Microsoft Corporation) C:\Windows\system32\ScriptRunner.exe
2020-12-21 17:21 - 2020-11-19 03:49 - 000019768 _____ (Microsoft Corporation) C:\Windows\system32\AppVTerminator.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000015672 _____ (Microsoft Corporation) C:\Windows\system32\AppVSentinel.dll
2020-12-21 17:21 - 2020-11-19 03:49 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\appvetwstreamingux.dll
2020-12-21 17:21 - 2020-11-19 03:48 - 000134656 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tsusbhub.sys
2020-12-21 17:21 - 2019-12-07 10:10 - 000820736 _____ (Microsoft Corporation) C:\Windows\system32\cscui.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000727040 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistCacheProvider.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000469504 _____ (Microsoft Corporation) C:\Windows\system32\appmgr.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000423936 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistSh.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000403968 _____ (Microsoft Corporation) C:\Windows\system32\AppIdPolicyEngineApi.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000373760 _____ (Microsoft Corporation) C:\Windows\system32\SettingsHandlers_AssignedAccess.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000366592 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appmgr.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000343552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PeerDistSh.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000301568 _____ (Microsoft Corporation) C:\Windows\system32\cscobj.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\ddputils.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000287744 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ManagedEventLogging.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppIdPolicyEngineApi.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000280064 _____ (Microsoft Corporation) C:\Windows\system32\srm.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srm.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000278528 _____ (Microsoft Corporation) C:\Windows\system32\srmstormod.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000233984 _____ (Microsoft Corporation) C:\Windows\system32\ddpchunk.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000233472 _____ (Microsoft Corporation) C:\Windows\system32\tspubwmi.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000224768 _____ (Microsoft Corporation) C:\Windows\system32\PresentationSettings.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000223744 _____ (Microsoft Corporation) C:\Windows\system32\AuditNativeSnapIn.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000223744 _____ (Microsoft Corporation) C:\Windows\system32\appvetwsharedperformance.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000223744 _____ (Microsoft Corporation) C:\Windows\system32\AppvClientEventLog.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000219136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuditNativeSnapIn.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000214016 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.CmUtil.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000202752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cscobj.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000195072 _____ (Microsoft Corporation) C:\Windows\system32\IoTAssignedAccessLockFramework.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000193536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmstormod.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000174608 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AppvVemgr.sys
2020-12-21 17:21 - 2019-12-07 10:10 - 000174592 _____ (Microsoft Corporation) C:\Windows\system32\srmshell.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000172544 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\smbdirect.sys
2020-12-21 17:21 - 2019-12-07 10:10 - 000169472 ____R (Microsoft Corporation) C:\Windows\system32\SecureAssessmentHandlers.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000161280 _____ (Microsoft Corporation) C:\Windows\system32\fveprompt.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000156672 _____ C:\Windows\system32\uwfcsp.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000154936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AppvVfs.sys
2020-12-21 17:21 - 2019-12-07 10:10 - 000149504 _____ (Microsoft Corporation) C:\Windows\system32\AppManagementConfiguration.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000147439 _____ C:\Windows\SysWOW64\gpedit.msc
2020-12-21 17:21 - 2019-12-07 10:10 - 000147439 _____ C:\Windows\system32\gpedit.msc
2020-12-21 17:21 - 2019-12-07 10:10 - 000145408 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Internal.Management.SecureAssessment.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000138272 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\AppVStrm.sys
2020-12-21 17:21 - 2019-12-07 10:10 - 000138240 _____ (Microsoft Corporation) C:\Windows\system32\ddptrace.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000137736 _____ (Microsoft Corporation) C:\Windows\system32\iotstartup.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000136704 ____R (Microsoft Corporation) C:\Windows\system32\Windows.Management.SecureAssessment.CfgProvider.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000136704 _____ (Microsoft Corporation) C:\Windows\system32\adrclient.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000134656 _____ C:\Windows\system32\DeviceUpdateCenterCsp.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000134144 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfg.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmshell.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppManagementConfiguration.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000122368 _____ C:\Windows\system32\uwfcfgmgmt.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000120458 _____ C:\Windows\system32\secpol.msc
2020-12-21 17:21 - 2019-12-07 10:10 - 000113152 _____ (Microsoft Corporation) C:\Windows\system32\baaupdate.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000105984 _____ (Microsoft Corporation) C:\Windows\system32\BdeHdCfgLib.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000102400 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerWizardElev.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000102400 _____ (Microsoft Corporation) C:\Windows\system32\BitLockerWizard.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000100352 _____ (Microsoft Corporation) C:\Windows\system32\rdpsign.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000099840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adrclient.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\RemoteAppLifetimeManager.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000095744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpolmsg.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000095744 _____ (Microsoft Corporation) C:\Windows\system32\auditpolmsg.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000093696 _____ (Microsoft Corporation) C:\Windows\system32\EnterpriseAppVMgmtCSP.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000090624 _____ (Microsoft Corporation) C:\Windows\system32\PackageInspector.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000090112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmlib.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000090112 _____ (Microsoft Corporation) C:\Windows\system32\srmlib.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000087040 _____ (Microsoft Corporation) C:\Windows\system32\srmtrace.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000083456 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.SyncController.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\AssignedAccessShellProxy.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000074752 _____ (Microsoft Corporation) C:\Windows\system32\AuditPolicyGPInterop.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Common.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\ddp_ps.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000066048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srmtrace.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000058880 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ModernAppCore.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AuditPolicyGPInterop.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000055808 _____ (Microsoft Corporation) C:\Windows\system32\UevAppMonitor.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000054272 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.CabUtil.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.EventLogMessages.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000043566 _____ C:\Windows\SysWOW64\rsop.msc
2020-12-21 17:21 - 2019-12-07 10:10 - 000043566 _____ C:\Windows\system32\rsop.msc
2020-12-21 17:21 - 2019-12-07 10:10 - 000041984 _____ (Microsoft Corporation) C:\Windows\system32\rfxvmt.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000041488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\UevAgentDriver.sys
2020-12-21 17:21 - 2019-12-07 10:10 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\UevAgentPolicyGenerator.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\SrpUxNativeSnapIn.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000032256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rfxvmt.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000032256 _____ (Microsoft Corporation) C:\Windows\system32\srm_ps.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000031744 _____ C:\Windows\system32\uwfservicingapi.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000031232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SrpUxNativeSnapIn.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\qwinsta.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000027648 _____ (Microsoft Corporation) C:\Windows\system32\qprocess.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000027136 _____ (Microsoft Corporation) C:\Windows\system32\msg.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\quser.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\chgport.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\tskill.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000025088 _____ (Microsoft Corporation) C:\Windows\system32\qappsrv.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\tscon.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\tsdiscon.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\rwinsta.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Management.WmiAccess.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\logoff.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\chglogon.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\chgusr.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Management.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000020992 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ModernAppData.WinRT.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\NcaApi.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000019456 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.SyncCommon.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000018944 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.Common.WinRT.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\reset.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.LocalSyncProvider.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\change.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000017408 _____ (Microsoft Corporation) C:\Windows\system32\query.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000016896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srm_ps.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\RemoteAppLifetimeManagerProxyStub.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.ModernSync.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000013824 _____ (Microsoft Corporation) C:\Windows\system32\UevTemplateBaselineGenerator.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000013824 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.AgentDriverEvents.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\UevTemplateConfigItemGenerator.exe
2020-12-21 17:21 - 2019-12-07 10:10 - 000011776 _____ (Microsoft Corporation) C:\Windows\system32\BdeSysprep.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000011264 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.SmbSyncProvider.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000010240 _____ (Microsoft Corporation) C:\Windows\system32\assignedaccessproviderevents.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000008192 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.MonitorSyncProvider.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000007680 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Uev.SyncConditions.dll
2020-12-21 17:21 - 2019-12-07 10:10 - 000006144 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Management.SecureAssessment.Diagnostics.dll
2020-12-21 17:15 - 2020-11-19 00:32 - 000002440 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-12-21 17:15 - 2020-11-19 00:32 - 000002278 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2020-12-21 16:56 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\Help
2020-12-21 16:41 - 2019-10-15 10:00 - 000000000 ___HD C:\OneDriveTemp
2020-12-21 16:40 - 2020-11-19 00:33 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-12-21 16:37 - 2020-11-19 00:32 - 000003584 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-12-21 16:37 - 2020-11-19 00:32 - 000003460 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-12-21 16:36 - 2019-12-07 15:42 - 000000000 ____D C:\Windows\system32\FxsTmp
2020-12-21 16:36 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ServiceState
2020-12-21 16:36 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate
2020-12-21 16:35 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows NT
2020-12-21 16:33 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\PrintDialog
2020-12-21 16:31 - 2019-12-07 10:14 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2020-12-21 15:58 - 2017-05-25 21:46 - 000000000 ____D C:\ESD
2020-12-21 04:40 - 2020-05-07 20:07 - 000000000 ____D C:\FFOutput
2020-12-20 23:27 - 2019-05-23 12:20 - 000000000 ___RD C:\Sandbox
2020-12-20 23:26 - 2019-12-01 01:19 - 000000000 ____D C:\Output
2020-12-20 23:26 - 2019-02-18 16:43 - 000000000 ____D C:\bE7tFd
2020-12-20 23:26 - 2017-04-19 09:59 - 000000000 ___RD C:\ALBA
2020-12-20 23:26 - 2017-04-13 18:31 - 000000000 ___HD C:\OEM

==================== Files in the root of some directories ========

2020-12-22 16:50 - 2020-12-22 16:50 - 000000716 ____H () C:\Users\ruda6\AppData\Roaming\{B0E80E49-57AF-758F-AE9B-C68B46701F6B}
2020-12-24 03:17 - 2020-12-24 03:17 - 000000017 _____ () C:\Users\ruda6\AppData\Local\resmon.resmoncfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================


Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-12-2020
Ran by ruda6 (24-12-2020 22:08:43)
Running from C:\Users\ruda6\Desktop
Windows 10 Pro Version 20H2 19042.685 (X64) (2020-12-21 15:35:38)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2513297869-714495167-4108430696-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2513297869-714495167-4108430696-503 - Limited - Disabled)
Guest (S-1-5-21-2513297869-714495167-4108430696-501 - Limited - Disabled)
ruda6 (S-1-5-21-2513297869-714495167-4108430696-1001 - Administrator - Enabled) => C:\Users\ruda6
WDAGUtilityAccount (S-1-5-21-2513297869-714495167-4108430696-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

ActMask PDF Virtual Printer SDK (HKLM\...\ActMask PDF Virtual Printer SDK - Licensee: Asha~0729FCB9_is1) (Version: - )
Ashampoo Burning Studio 18 (HKLM-x32\...\{91B33C97-AF35-C3DC-976E-8A253D817482}_is1) (Version: 18.0.0 - Ashampoo GmbH & Co. KG)
Ashampoo PDF Pro 2 (HKLM-x32\...\{0A11EA01-0224-BF80-B342-BDA165B48491}_is1) (Version: 2.0.7 - Ashampoo GmbH & Co. KG)
Ashampoo Photo Commander 11 v.11.1.9 (HKLM-x32\...\{C92AB6F1-0F9C-8526-5DF1-0A2FD0FB33D9}_is1) (Version: 11.1.9 - Ashampoo GmbH & Co. KG)
Ashampoo Snap 11 (HKLM-x32\...\{0A11EA01-AF34-C9AB-388B-8520DA9E7D92}_is1) (Version: 11.1.0 - Ashampoo GmbH & Co. KG)
Ashampoo ZIP Pro 2 (HKLM-x32\...\{0A11EA01-F9F6-19B4-64EE-EBA8E6C9F0FC}_is1) (Version: 2.0.38 - Ashampoo GmbH & Co. KG)
CCleaner (HKLM\...\CCleaner) (Version: 5.75 - Piriform)
eM Client (HKLM-x32\...\{73946719-FCCD-4D2D-8196-E595DBBFC187}) (Version: 8.1.876.0 - eM Client Inc.)
Epson Connect Printer Setup (HKLM-x32\...\{D9B1D51B-EB56-410D-AEB5-1CCFAC4B6C8C}) (Version: 1.4.3 - Seiko Epson Corporation)
Epson Easy Photo Print 2 (HKLM-x32\...\{7E0261C4-8495-4365-BE48-647701D8B9BD}) (Version: 2.8.3.0 - Seiko Epson Corporation)
Epson Event Manager (HKLM-x32\...\{AB8BE3EA-01D3-44B7-8E77-A9601CBDEBDE}) (Version: 3.10.0085 - Seiko Epson Corporation)
Epson E-Web Print (HKLM-x32\...\{6BF9F374-EC67-4808-A90C-F127DE6D989D}) (Version: 1.23.0000 - SEIKO EPSON CORPORATION)
EPSON L3050 Series Printer Uninstall (HKLM\...\EPSON L3050 Series) (Version: - Seiko Epson Corporation)
Epson Printer Connection Checker (HKLM-x32\...\{189DE071-E0BC-4BA5-8E34-83D5ED12600B}) (Version: 3.2.0.0 - Seiko Epson Corporation)
Epson Scan 2 (HKLM-x32\...\Epson Scan 2) (Version: - Seiko Epson Corporation)
EPSON Scan OCR Component (HKLM-x32\...\{563B99D8-8895-4E3E-AE8D-15BE8C05F1C1}) (Version: 3.00.04 - SEIKO EPSON Corp.)
Epson Software Updater (HKLM-x32\...\{28C66F35-69BF-4376-BC80-4D5F4808FF3C}) (Version: 4.6.1 - Seiko Epson Corporation)
EpsonNet Print (HKLM\...\{96ED1D58-440C-4345-8FEE-C4781366C67F}) (Version: 3.1.4.0 - SEIKO EPSON Corporation)
File Identifier (HKLM-x32\...\{C257E434-E8F1-4E06-A616-598E4933553E}_is1) (Version: 1.0.9 - Sharpened Productions)
Foxit Reader (HKLM-x32\...\Foxit Reader_is1) (Version: 10.1.1.37576 - Foxit Software Inc.)
FreeFileSync 11.4 (HKLM-x32\...\FreeFileSync_is1) (Version: 11.4 - FreeFileSync.org)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 87.0.4280.88 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.51 - Google LLC) Hidden
Icecream Ebook Reader verze 5.24 (HKLM-x32\...\{B8C30F0F-1F23-49E1-A3ED-44DE17660EE2}_is1) (Version: 5.24 - Icecream Apps)
Icecream PDF Converter verze 2.88 (HKLM-x32\...\{6811A286-E9F4-4035-9738-7721C087E500}_is1) (Version: 2.88 - Icecream Apps)
Icecream PDF Split and Merge verze 3.46 (HKLM-x32\...\{95DC4DB4-99FB-4FB2-ADBD-97F194EDEB4D}_is1) (Version: 3.46 - Icecream Apps)
Icecream Screen Recorder verze 6.23 (HKLM-x32\...\{7ADEC622-3230-4C9A-9DCE-9BD462B74095}_is1) (Version: 6.23 - Icecream Apps)
Icecream Slideshow Maker verze 4.05 (HKLM-x32\...\{3674ADB5-6374-4EBA-BB46-7C6EFB266661}_is1) (Version: 4.05 - Icecream Apps)
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.63.1620.3 - Intel Corporation)
Intel® Chipset Device Software (HKLM-x32\...\{17408817-d415-4768-a160-ae6d46d6bdb0}) (Version: 10.1.1.44 - Intel(R) Corporation) Hidden
LibreOffice 7.0.4.2 (HKLM\...\{B3171B83-4945-43E0-A101-841638C05506}) (Version: 7.0.4.2 - The Document Foundation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 87.0.664.66 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.139.59 - )
Microsoft Office Professional Plus 2019 - cs-cz (HKLM\...\ProPlus2019Retail - cs-cz) (Version: 16.0.13426.20332 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\OneDriveSetup.exe) (Version: 20.201.1005.0009 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{402ED4A1-8F5B-387A-8688-997ABF58B8F2}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.21.27702 (HKLM-x32\...\{49697869-be8e-427d-81a0-c334d1d14950}) (Version: 14.21.27702.2 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.11.25325 (HKLM-x32\...\{6c6356fe-cbfa-4944-9bed-a9e99f45cb7a}) (Version: 14.11.25325.0 - Microsoft Corporation)
MultiCommander (x64) (HKLM\...\MultiCommander x64) (Version: 10.2.0.2745 - Mathias Svensson)
NVIDIA Ovladače grafiky 376.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 376.54 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.13426.20332 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.13426.20332 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.13426.20332 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.13426.20332 - Microsoft Corporation) Hidden
Ovládací panel NVIDIA 376.54 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 376.54 - NVIDIA Corporation) Hidden
PDF Candy Desktop verze 2.90 (HKLM-x32\...\{9A8B6868-AA65-45DB-B055-18CCC462E6F5}_is1) (Version: 2.90 - Icecream Apps)
Příručky společnosti EPSON (HKLM-x32\...\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}) (Version: 1.57.0.0 - Seiko Epson Corporation)
PureVPN (HKLM-x32\...\{640ebb2a-b88a-4a1c-8b3c-18fb11bf1cce}) (Version: 1.1.74.0 - ) Hidden
PureVPN (HKLM-x32\...\PureVPN) (Version: 1.1.74.0 - GZ Systems)
Recepty doma (HKLM-x32\...\Recepty doma_is1) (Version: - Martin Roubec)
Revo Uninstaller Pro 4.4.0 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 4.4.0 - VS Revo Group, Ltd.)
Speccy (HKLM\...\Speccy) (Version: 1.32 - Piriform)
Sticky Password 8.2.8.4 (HKLM-x32\...\Sticky Password_is1) (Version: 8.2 - Lamantine Software)
Turbo View & Convert (HKLM-x32\...\{55B464FA-16DE-4127-A7B8-D49CD2768E63}_is1) (Version: 2.0.0 - IMSI/Design, LLC)
UnistallAtomSDK (HKLM-x32\...\AtomSDKInstaller_is1) (Version: 3.6.0 - )
VLC media player (HKLM\...\VLC media player) (Version: 3.0.11 - VideoLAN)
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
WebM Media Foundation Components (HKLM-x32\...\webmmf) (Version: 1.0.1.2 - WebM Project)
Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org)
YouTube By Click (HKLM-x32\...\{C198A897-FB88-4662-B97D-83C998D7B7BE}) (Version: 2.2.133 - ByClick) Hidden
YouTube By Click (HKLM-x32\...\YouTube By Click 2.2.133) (Version: 2.2.133 - ByClick)
Zoner Photo Studio 18 (HKLM\...\ZonerPhotoStudio18_CZ_is1) (Version: 18.0.1.10 - ZONER software)
Zoner Photo Studio X CS (HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\ZPS X) (Version: 19.2009.2.286 - ZONER software)

Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-12-21] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-12-21] (Microsoft Corporation) [MS Ad]
Microsoft Mahjong -> C:\Program Files\WindowsApps\Microsoft.MicrosoftMahjong_4.0.11030.0_x64__8wekyb3d8bbwe [2020-12-22] (Microsoft Studios) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.10142.0_x64__8wekyb3d8bbwe [2020-12-23] (Microsoft Studios) [MS Ad]
Microsoft To Do -> C:\Program Files\WindowsApps\Microsoft.Todos_2.33.33391.0_x64__8wekyb3d8bbwe [2020-12-24] (Microsoft Corporation) [Startup Task]
Ovládací centrum grafiky Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.2970.0_x64__8j3eq9eme6ctt [2020-12-21] (INTEL CORP) [Startup Task]
QuickLook -> C:\Program Files\WindowsApps\21090PaddyXu.QuickLook_3.6.10.0_neutral__egxr34yet59cg [2020-12-21] (Paddy Xu) [Startup Task]
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0 [2020-12-22] (Spotify AB) [Startup Task]
WiFi Analyzer -> C:\Program Files\WindowsApps\19965MATTHAFNER.WIFIANALYZER_2.6.1.0_x64__gs5k5vmxr2ste [2020-12-24] (Matt Hafner)
Wifi Analyzer and Scanner -> C:\Program Files\WindowsApps\28877WebProvider.WifiAnalyzerandScanner_1.2.1.0_x64__gdrx0g078t8zg [2020-12-24] (WebProvider)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ContextMenuHandlers1-x32: [ASZip2] -> {d13d3e68-0f44-3d45-b15f-bcfd8a8b4c7e} => C:\Program Files (x86)\Ashampoo\Ashampoo ZIP Pro 2\ASZSHLEXT.DLL [2017-10-10] (Ashampoo GmbH & Co. KG -> Ashampoo GmbH)
ContextMenuHandlers1: [ASZip264] -> {d13d3e78-0f44-3d45-b15f-bcfd8a8b4c7e} => C:\Program Files (x86)\Ashampoo\Ashampoo ZIP Pro 2\ASZSHLEXT64.DLL [2017-10-10] (Ashampoo GmbH & Co. KG -> Ashampoo GmbH)
ContextMenuHandlers1: [IcecreamShellExtension] -> {A8B59160-93EA-4303-9192-AA3C64FDBE31} => C:\Program Files (x86)\Icecream PDF Split and Merge\x64\IcecreamShell64.dll [2017-05-03] (Icecream Apps Ltd -> TODO: <Company name>)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2016-12-29] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6-x32: [ASZip2] -> {d13d3e68-0f44-3d45-b15f-bcfd8a8b4c7e} => C:\Program Files (x86)\Ashampoo\Ashampoo ZIP Pro 2\ASZSHLEXT.DLL [2017-10-10] (Ashampoo GmbH & Co. KG -> Ashampoo GmbH)
ContextMenuHandlers6: [ASZip264] -> {d13d3e78-0f44-3d45-b15f-bcfd8a8b4c7e} => C:\Program Files (x86)\Ashampoo\Ashampoo ZIP Pro 2\ASZSHLEXT64.DLL [2017-10-10] (Ashampoo GmbH & Co. KG -> Ashampoo GmbH)
ContextMenuHandlers6: [RUShellExt] -> {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} => C:\Program Files\VS Revo Group\Revo Uninstaller Pro\RUExt.dll [2020-09-28] (VS Revo Group Ltd. -> VS Revo Group)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2020-12-21 18:40 - 2020-11-30 16:17 - 001101824 _____ () [File not signed] C:\Program Files (x86)\Sticky Password\DLLs\_hashlib.pyd
2020-12-21 18:35 - 2020-12-21 18:35 - 000163840 _____ () [File not signed] C:\Program Files\WindowsApps\21090PaddyXu.QuickLook_3.6.10.0_neutral__egxr34yet59cg\Package\QuickLook.Native64.dll
2020-12-21 16:46 - 2020-12-21 16:47 - 041670144 _____ (Intel Corporation) [File not signed] C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.2970.0_x64__8j3eq9eme6ctt\IGCC.dll
2020-12-23 21:36 - 2020-12-23 21:36 - 000000000 ____L (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Root\Office16\AppVIsvSubsystems32.dll
2020-12-23 21:36 - 2020-12-23 21:36 - 000000000 ____L (Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\Root\Office16\c2r32.dll
2017-02-13 14:54 - 2017-02-13 14:54 - 000132096 _____ (Seiko Epson Corporation) [File not signed] C:\Program Files (x86)\EPSON Software\Event Manager\epnsm.dll
2009-10-21 17:39 - 2009-10-21 17:39 - 000291328 _____ (SEIKO EPSON CORPORATION) [File not signed] C:\Program Files (x86)\EPSON Software\Event Manager\LcMgr.dll
2016-09-14 14:31 - 2016-09-14 14:31 - 000500736 ____S (SEIKO EPSON CORPORATION) [File not signed] C:\Windows\System32\enppmon.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
BHO: Easy Photo Print -> {9421DD08-935F-4701-A9CA-22DF90AC4EA6} -> C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2015-07-31] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
BHO-x32: E-Web Print -> {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} -> C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
Toolbar: HKLM - Easy Photo Print - {9421DD08-935F-4701-A9CA-22DF90AC4EA6} - C:\Program Files (x86)\Epson Software\Easy Photo Print\EPTBL.dll [2015-07-31] (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
Toolbar: HKLM-x32 - E-Web Print - {201CF130-E29C-4E5C-A73F-CD197DEFA6AE} - C:\Program Files (x86)\Epson Software\E-Web Print\ewps_tb.dll [2014-11-27] (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-23] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-12-23] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 10:14 - 2019-12-07 10:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2513297869-714495167-4108430696-1001\Control Panel\Desktop\\Wallpaper -> c:\users\ruda6\appdata\local\microsoft\windows\themes\roamedthemefiles\desktopbackground\20.06.20.png
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\StartupApproved\Run: => "AshSnap"
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\StartupApproved\Run: => "PureVPN"
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\StartupApproved\Run: => "Zoner Photo Studio Autoupdate"
HKU\S-1-5-21-2513297869-714495167-4108430696-1001\...\StartupApproved\Run: => "Lync"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{C254AD0E-8788-4DC4-85C8-0A5D1BF3103D}] => (Allow) C:\Program Files (x86)\Sticky Password\stpass.exe (Lamantine Software a.s. -> Lamantine Software a.s.)
FirewallRules: [{95812CE3-6328-4AFC-845A-E50FD6B12CC6}] => (Allow) C:\Program Files (x86)\Sticky Password\stpass.exe (Lamantine Software a.s. -> Lamantine Software a.s.)
FirewallRules: [{84CB6983-3EE8-4B68-A6A5-ED14AE886F0D}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{78C8FCA1-5ADD-4F28-9FD8-7C786E587740}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe (GZ Systems Limited -> GZ Systems)
FirewallRules: [UDP Query User{799B34C4-956E-46BA-BD15-612507D2AEBA}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe (GZ Systems Limited -> GZ Systems)
FirewallRules: [{FD2D71A0-EB87-4F3C-83B4-D63A97F2D0E1}] => (Allow) C:\Program Files\Zoner\Photo Studio 18\Program32\MediaServer.exe (ZONER software, a.s. -> ZONER software)
FirewallRules: [{7A87D877-C290-4A9F-A5EF-064DF549C4CA}] => (Allow) C:\Users\ruda6\AppData\Local\Temp\EpInsNav\DL\3013\Network\EpsonNetSetup\Data\ENEasyApp.exe => No File
FirewallRules: [{497E3042-20E2-4353-8B9F-F7C61B44FCA1}] => (Allow) C:\Users\ruda6\AppData\Local\Temp\EpInsNav\DL\3013\Network\EpsonNetSetup\Data\ENEasyApp.exe => No File
FirewallRules: [{78F78F0C-A824-47EF-BF93-18ADFB96981B}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [{0008F8BD-ABD9-4868-92D1-9EBB42348C83}] => (Allow) C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe (SEIKO EPSON CORPORATION -> SEIKO EPSON CORPORATION)
FirewallRules: [{B83BF97E-433D-4E6E-B4EE-C34BC9B05BD3}] => (Allow) C:\Program Files (x86)\EPSON Software\ECPrinterSetup\ENPApp.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
FirewallRules: [{0B08D31A-94B0-4C7F-8FBB-353C0295D7AB}] => (Allow) C:\Program Files (x86)\EPSON Software\ECPrinterSetup\ENPApp.exe (SEIKO EPSON CORPORATION -> Seiko Epson Corporation)
FirewallRules: [{7ACB135E-BCBE-4EDF-AB15-FADC1A685C26}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{601564E1-D2EC-44DF-A49C-28233F927DD1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{97D55E69-7BF7-4B68-86E9-805385C1B016}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{0AECD1C8-163F-41C8-9478-9B1C1FBBAE76}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{6745617D-CB8B-413E-A24F-A7F8940F9145}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{5DDDC914-D1D8-4C5D-BD41-9FB197407079}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{DBFB1FAE-9F84-4FD3-873E-1F23CA79152E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{064D8F3D-645E-4CF6-9600-4607894C6512}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.148.625.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{34258BC7-E4B3-490F-AD57-BFDDE7E2E878}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C1C97F93-6055-4CFA-9680-24F96B05494A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{6B87AC4C-929E-4847-9476-32EAB3C6CB58}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{34819A58-2C44-43E9-8778-16DBB980CC3A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.67.97.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{FCA5EA12-A3DC-4F58-8421-5C0604BBBF57}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7FE62FEF-FEDB-42F6-8A49-2ADC17E5E075}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{CE2E18C3-23A8-4C65-B2C9-573A961D87B0}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{CB00EA0F-4817-4D3C-A5EA-9D83F2E9B4FF}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0B7376FD-32DB-4EE5-A200-1E1C7FE8C077}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================

24-12-2020 18:05:12 Naplánovaný kontrolní bod

==================== Faulty Device Manager Devices ============

Name: Zařízení PCI
Description: Zařízení PCI
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: ========================

Application errors:
==================
Error: (12/24/2020 03:15:30 AM) (Source: SideBySide) (EventID: 35) (User: )
Description: Generování kontextu aktivace pro C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest se nezdařilo. Chyba v souboru manifestu nebo zásady C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL na řádku 1.
Identita komponenty nalezená v manifestu nesouhlasí s identitou požadované komponenty.
Odkaz je UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definice je UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (12/24/2020 03:15:21 AM) (Source: SideBySide) (EventID: 35) (User: )
Description: Generování kontextu aktivace pro C:\Program Files (x86)\Microsoft Office\root\Office16\lync.exe.Manifest se nezdařilo. Chyba v souboru manifestu nebo zásady C:\Program Files (x86)\Microsoft Office\root\Office16\UccApi.DLL na řádku 1.
Identita komponenty nalezená v manifestu nesouhlasí s identitou požadované komponenty.
Odkaz je UccApi,processorArchitecture="AMD64",type="win32",version="16.0.0.0".
Definice je UccApi,processorArchitecture="x86",type="win32",version="16.0.0.0".
Podrobnější diagnostické údaje získáte pomocí programu sxstrace.exe.

Error: (12/23/2020 09:52:17 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: Získání licence koncového uživatele se nezdařilo. hr=0xC004C008
ID SKU=5f472f1e-eb0a-4170-98e2-fb9e7f6ff535

Error: (12/23/2020 09:52:17 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: Podrobnosti chyby získávání licence
hr=0xC004C008

Error: (12/23/2020 09:48:46 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: Získání licence koncového uživatele se nezdařilo. hr=0xC004C008
ID SKU=5f472f1e-eb0a-4170-98e2-fb9e7f6ff535

Error: (12/23/2020 09:48:46 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: Podrobnosti chyby získávání licence
hr=0xC004C008

Error: (12/23/2020 09:40:58 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: Získání licence koncového uživatele se nezdařilo. hr=0xC004C008
ID SKU=5f472f1e-eb0a-4170-98e2-fb9e7f6ff535

Error: (12/23/2020 09:40:58 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: Podrobnosti chyby získávání licence
hr=0xC004C008


System errors:
=============
Error: (12/24/2020 08:53:29 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA Display Container LS byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.

Error: (12/24/2020 08:53:29 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Content Protection HECI Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (12/24/2020 08:53:29 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Atom Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (12/24/2020 08:53:29 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba Microsoft Office Klikni a spusť byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.

Error: (12/24/2020 08:53:29 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Foxit Reader Update Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (12/24/2020 08:53:29 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Printer Control byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (12/24/2020 08:53:29 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Graphics Command Center Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (12/24/2020 08:53:29 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Presentation Foundation Font Cache 3.0.0.0 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.


Windows Defender:
===================================
Date: 2020-12-24 03:03:23.0670000Z
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {BB3690A0-710D-446F-A05B-EDCF5B345982}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2020-12-23 22:06:03.4560000Z
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {AEAB4619-0669-4893-B52E-E21349C3927F}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

==================== Memory info ===========================

BIOS: Insyde Corp. V1.47 09/06/2018
Motherboard: Acer Ironman_SK
Processor: Intel(R) Core(TM) i5-7200U CPU @ 2.50GHz
Percentage of memory in use: 44%
Total physical RAM: 8060.22 MB
Available physical RAM: 4503.38 MB
Total Virtual: 9980.22 MB
Available Virtual: 6112.16 MB

==================== Drives ================================

Drive c: (Acer) (Fixed) (Total:235.36 GB) (Free:163.85 GB) NTFS
Drive e: (OSO) (Removable) (Total:28.87 GB) (Free:25.07 GB) NTFS

\\?\Volume{643bdd56-77d9-40d8-9e39-7ee327b151c2}\ () (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS
\\?\Volume{5e3a287c-696e-4acd-aab9-9a78c5c3dda7}\ () (Fixed) (Total:0.51 GB) (Free:0.08 GB) NTFS
\\?\Volume{75899f7b-57d6-44be-b8ed-68c08cfe7d3b}\ () (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS
\\?\Volume{3d791de5-a886-4772-8d9e-9b3d5c442da7}\ () (Fixed) (Total:0.45 GB) (Free:0.05 GB) NTFS
\\?\Volume{bc9f385e-b315-4b43-9b91-7fc8b7d94767}\ (Recovery) (Fixed) (Total:1 GB) (Free:0.63 GB) NTFS
\\?\Volume{b358e61a-7e3c-4af2-862b-13f196cdde30}\ (ESP) (Fixed) (Total:0.09 GB) (Free:0.04 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: CEE052CA)

Partition: GPT.

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 28.9 GB) (Disk ID: 59F27931)
Partition 1: (Active) - (Size=28.9 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118302
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola log - problém s Word

#6 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
Task: {0379F9DC-D629-42F3-A133-E376DBE3056A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-21] (Google LLC -> Google LLC)
Task: {DEF2D0FC-CEB4-48E2-83E3-38408DA5DE8C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-21] (Google LLC -> Google LLC)
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
C:\DumpStack.log.tmp
C:\Users\ruda6\AppData\Roaming\{B0E80E49-57AF-758F-AE9B-C68B46701F6B}
FirewallRules: [{7A87D877-C290-4A9F-A5EF-064DF549C4CA}] => (Allow) C:\Users\ruda6\AppData\Local\Temp\EpInsNav\DL\3013\Network\EpsonNetSetup\Data\ENEasyApp.exe => No File
FirewallRules: [{497E3042-20E2-4353-8B9F-F7C61B44FCA1}] => (Allow) C:\Users\ruda6\AppData\Local\Temp\EpInsNav\DL\3013\Network\EpsonNetSetup\Data\ENEasyApp.exe => No File

EmptyTemp:
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rudkr63
Návštěvník
Návštěvník
Příspěvky: 169
Registrován: 26 čer 2015 17:05

Re: Kontrola log - problém s Word

#7 Příspěvek od rudkr63 »

zkopírování, ale co dál

rudkr63
Návštěvník
Návštěvník
Příspěvky: 169
Registrován: 26 čer 2015 17:05

Re: Kontrola log - problém s Word

#8 Příspěvek od rudkr63 »

dát na plochu a ve FRST Fix ?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118302
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola log - problém s Word

#9 Příspěvek od Rudy »

Pardon, zapoměl jsem něc zkopírovat:

Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rudkr63
Návštěvník
Návštěvník
Příspěvky: 169
Registrován: 26 čer 2015 17:05

Re: Kontrola log - problém s Word

#10 Příspěvek od rudkr63 »

Fix result of Farbar Recovery Scan Tool (x64) Version: 14-12-2020
Ran by ruda6 (25-12-2020 12:44:03) Run:1
Running from C:\Users\ruda6\Desktop
Loaded Profiles: ruda6
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
Task: {0379F9DC-D629-42F3-A133-E376DBE3056A} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-21] (Google LLC -> Google LLC)
Task: {DEF2D0FC-CEB4-48E2-83E3-38408DA5DE8C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-12-21] (Google LLC -> Google LLC)
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
C:\DumpStack.log.tmp
C:\Users\ruda6\AppData\Roaming\{B0E80E49-57AF-758F-AE9B-C68B46701F6B}
FirewallRules: [{7A87D877-C290-4A9F-A5EF-064DF549C4CA}] => (Allow) C:\Users\ruda6\AppData\Local\Temp\EpInsNav\DL\3013\Network\EpsonNetSetup\Data\ENEasyApp.exe => No File
FirewallRules: [{497E3042-20E2-4353-8B9F-F7C61B44FCA1}] => (Allow) C:\Users\ruda6\AppData\Local\Temp\EpInsNav\DL\3013\Network\EpsonNetSetup\Data\ENEasyApp.exe => No File

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0379F9DC-D629-42F3-A133-E376DBE3056A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0379F9DC-D629-42F3-A133-E376DBE3056A}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DEF2D0FC-CEB4-48E2-83E3-38408DA5DE8C}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DEF2D0FC-CEB4-48E2-83E3-38408DA5DE8C}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore" => not found
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
C:\Users\ruda6\AppData\Roaming\{B0E80E49-57AF-758F-AE9B-C68B46701F6B} => moved successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7A87D877-C290-4A9F-A5EF-064DF549C4CA}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{497E3042-20E2-4353-8B9F-F7C61B44FCA1}" => removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 9199616 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 8535372 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 2202230 B
Edge => 0 B
Chrome => 323584 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 0 B
ruda6 => 28014952 B

RecycleBin => 265304 B
EmptyTemp: => 46.3 MB temporary data Removed.

================================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118302
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola log - problém s Word

#11 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rudkr63
Návštěvník
Návštěvník
Příspěvky: 169
Registrován: 26 čer 2015 17:05

Re: Kontrola log - problém s Word

#12 Příspěvek od rudkr63 »

Bohužel ne.

rudkr63
Návštěvník
Návštěvník
Příspěvky: 169
Registrován: 26 čer 2015 17:05

Re: Kontrola log - problém s Word

#13 Příspěvek od rudkr63 »

ještě se mi podařilo zobrazit toto, kde se upravuje proměnné prostředí, ale nevím, co s tím
Přílohy
proměnné prostředí.png
proměnné prostředí.png (107.53 KiB) Zobrazeno 865 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118302
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Kontrola log - problém s Word

#14 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

rudkr63
Návštěvník
Návštěvník
Příspěvky: 169
Registrován: 26 čer 2015 17:05

Re: Kontrola log - problém s Word

#15 Příspěvek od rudkr63 »

Vytvořil jsem složku INetCacheContent.Word . Jediné, co se změnilo je, že při kliku na soubor .docx v průzkumníkovi se zobrazí nejdříve ona chybová hláška a po jejím uzavření se zobrazí náhled v průzk. a pak teprve jde soubor otevřít ve Wordu.

Odpovědět