Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 01.09.2018 03
Ran by germa (administrator) on LAPTOP-F2ORDJBC (05-09-2018 11:46:07)
Running from C:\Users\germa\Downloads
Loaded Profiles: germa (Available Profiles: germa)
Platform: Windows 10 Home Version 1703 15063.1266 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\DriverStore\FileRepository\c0328911.inf_amd64_a81756cbffedb936\B328940\atiesrxx.exe
(Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\tbaseprovisioning.exe
(AMD) C:\Windows\System32\DriverStore\FileRepository\c0328911.inf_amd64_a81756cbffedb936\B328940\atieclxx.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Realtek Semiconductor Corp.) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTDevMgr.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1807.18075-0\MsMpEng.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1807.18075-0\NisSrv.exe
() C:\Program Files\AMD\ATI.ACE\a4\AdaptiveSleepService.exe
(Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe
(HP Inc.) C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe
(HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
() C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_12.1815.210.0_x64__kzf8qxf38zg5c\SkypeHost.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(HP) C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe
(HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
(Realtek) C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amddvr.exe
(HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
(Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\LockAppHost.exe
(HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe
(Microsoft Corporation) C:\Windows\System32\perfmon.exe
(Microsoft Corporation) C:\Windows\SoftwareDistribution\Download\b408aeaa92b8d6de04ea8845ffbf6d03\WindowsUpdateBox.exe
(Microsoft Corporation) C:\$WINDOWS.~BT\Sources\SetupHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [629152 2017-03-18] (Microsoft Corporation)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3349728 2017-05-08] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9274312 2018-05-11] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Session] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1505736 2018-05-11] (Realtek Semiconductor)
HKLM-x32\...\Run: [HPRadioMgr] => C:\Program Files (x86)\HP\HP Wireless Button Driver\HPRadioMgr64.exe [324488 2016-08-02] (HP)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [709152 2018-03-22] (HP Inc.)
HKLM-x32\...\Run: [RtlS5Wake] => C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe [2097600 2018-02-23] (Realtek)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 213.46.172.36 213.46.172.37
Tcpip\..\Interfaces\{1128892f-6ea7-4d5c-8ed0-699ea15e29ef}: [DhcpNameServer] 213.46.172.36 213.46.172.37
Tcpip\..\Interfaces\{6509596d-3fb8-48b0-bd53-7fe68584d901}: [DhcpNameServer] 40.23.1.12
Tcpip\..\Interfaces\{737094c3-7117-4ee6-8ec7-473a8d532b6d}: [DhcpNameServer] 213.46.172.36 213.46.172.37
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\S-1-5-21-1894498253-2117363191-260290956-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\S-1-5-21-1894498253-2117363191-260290956-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://hp17win10.msn.com/?pc=HCTE
SearchScopes: HKLM -> {EDC3304B-8338-4F39-A818-2688DCA03749} URL = hxxp://
www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKLM-x32 -> {EDC3304B-8338-4F39-A818-2688DCA03749} URL = hxxp://
www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKU\S-1-5-21-1894498253-2117363191-260290956-1001 -> {EDC3304B-8338-4F39-A818-2688DCA03749} URL = hxxp://
www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-08-18] (Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2018-08-01] (Microsoft Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2016-12-06] (HP Inc.)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2018-08-10] (Microsoft Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\Office16\GROOVEEX.DLL [2018-08-10] (Microsoft Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2016-12-06] (HP Inc.)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-08-18] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-08-18] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-08-18] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-08-18] (Microsoft Corporation)
FireFox:
========
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2018-08-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-07-17] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-09-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-09-02] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-06-29] (Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\germa\AppData\Local\Google\Chrome\User Data\Default [2018-09-05]
CHR Extension: (Prezentace) - C:\Users\germa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-09-03]
CHR Extension: (Dokumenty) - C:\Users\germa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-09-03]
CHR Extension: (Disk Google) - C:\Users\germa\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-09-03]
CHR Extension: (YouTube) - C:\Users\germa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-09-03]
CHR Extension: (Tabulky) - C:\Users\germa\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-09-03]
CHR Extension: (Dokumenty Google offline) - C:\Users\germa\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-09-03]
CHR Extension: (HP Network Check Launcher) - C:\Users\germa\AppData\Local\Google\Chrome\User Data\Default\Extensions\jkfpchpiljkaemlpmpebnglgkomamfeo [2018-09-03]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\germa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-09-03]
CHR Extension: (Gmail) - C:\Users\germa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-09-03]
CHR Extension: (Chrome Media Router) - C:\Users\germa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-09-03]
CHR HKLM-x32\...\Chrome\Extension: [jkfpchpiljkaemlpmpebnglgkomamfeo] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdaptiveSleepService; C:\Program Files\AMD\ATI.ACE\A4\AdaptiveSleepService.exe [155016 2018-05-16] ()
R2 AMD External Events Utility; C:\windows\System32\DriverStore\FileRepository\c0328911.inf_amd64_a81756cbffedb936\B328940\atiesrxx.exe [481656 2018-05-22] (AMD)
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [679400 2018-04-02] (Realtek Semiconductor Corp.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [8853984 2018-08-09] (Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-07-17] (Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [143144 2018-07-17] (Dropbox, Inc.)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144600 2017-05-08] (ELAN Microelectronics Corp.)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1327400 2017-09-05] (HP Inc.)
R2 HPJumpStartBridge; C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [471040 2017-05-23] (HP Inc.)
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [333688 2018-06-13] (HP Inc.)
R2 HPWMISVC; C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [628768 2017-07-13] (HP Inc.)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [265672 2018-05-11] (Realtek Semiconductor)
R2 tbaseprovisioning; C:\windows\SysWOW64\tbaseprovisioning.exe [51224 2017-03-30] (Advanced Micro Devices, Inc.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\NisSrv.exe [3905952 2018-08-01] (Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\MsMpEng.exe [110944 2018-08-01] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AmdAS4; C:\windows\System32\drivers\AmdAS4.sys [27376 2017-03-30] (Advanced Micro Devices, INC.)
S3 amdkmcsp; C:\windows\system32\DRIVERS\amdkmcsp.sys [100752 2017-03-30] (Advanced Micro Devices, Inc. )
R3 amdkmdag; C:\windows\System32\DriverStore\FileRepository\c0328911.inf_amd64_a81756cbffedb936\B328940\atikmdag.sys [44682104 2018-05-22] (Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\windows\System32\DriverStore\FileRepository\c0328911.inf_amd64_a81756cbffedb936\B328940\atikmpag.sys [552824 2018-05-22] (Advanced Micro Devices, Inc.)
R0 amdpsp; C:\windows\System32\DRIVERS\amdpsp.sys [254864 2017-03-30] (Advanced Micro Devices, Inc. )
S3 AmUStor; C:\windows\system32\drivers\AmUStor.SYS [90560 2017-04-26] (Alcorlink Corp.)
R3 AtiHDAudioService; C:\windows\system32\drivers\AtihdWT6.sys [111080 2018-04-26] (Advanced Micro Devices)
S3 dot4; C:\windows\system32\DRIVERS\Dot4.sys [146856 2015-03-10] (Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\windows\System32\drivers\Dot4Prt.sys [21928 2015-03-10] (Windows (R) Win 7 DDK provider)
R3 ETDSMBus; C:\windows\System32\drivers\ETDSMBus.sys [32848 2017-05-08] (ELAN Microelectronic Corp.)
S3 MBAMSwissArmy; C:\windows\System32\Drivers\mbamswissarmy.sys [259360 2018-08-19] (Malwarebytes)
R3 rt640x64; C:\windows\System32\drivers\rt640x64.sys [1010656 2017-11-23] (Realtek )
S3 RT8723DE; C:\windows\System32\drivers\rtl8723de.sys [6763672 2017-04-28] (Realtek Semiconductor Corporation )
R3 RtkBtFilter; C:\windows\system32\DRIVERS\RtkBtfilter.sys [758216 2018-04-04] (Realtek Semiconductor Corporation)
R3 RTWlanE; C:\windows\System32\drivers\rtwlane.sys [8050000 2018-04-11] (Realtek Semiconductor Corporation )
S3 SDFRd; C:\windows\System32\drivers\SDFRd.sys [31128 2017-03-18] ()
S0 WdBoot; C:\windows\System32\drivers\wd\WdBoot.sys [46584 2018-08-01] (Microsoft Corporation)
R0 WdFilter; C:\windows\System32\drivers\wd\WdFilter.sys [340008 2018-08-01] (Microsoft Corporation)
R3 WdNisDrv; C:\windows\System32\drivers\wd\WdNisDrv.sys [61992 2018-08-01] (Microsoft Corporation)
R3 WirelessButtonDriver64; C:\windows\system32\DRIVERS\WirelessButtonDriver64.sys [34944 2018-05-11] (HP)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-09-05 11:46 - 2018-09-05 11:47 - 000017276 _____ C:\Users\germa\Downloads\FRST.txt
2018-09-05 11:42 - 2018-09-05 11:46 - 002413056 _____ (Farbar) C:\Users\germa\Downloads\FRST64.exe
2018-09-05 10:00 - 2018-09-05 10:00 - 000000000 ____D C:\Users\germa\AppData\Local\ElevatedDiagnostics
2018-09-03 17:15 - 2018-09-03 17:15 - 000000000 ____D C:\windows\LastGood.Tmp
2018-09-03 17:11 - 2018-09-03 17:11 - 001544192 _____ C:\Users\germa\Downloads\Dot4x64.msi
2018-09-03 17:07 - 2018-09-03 17:07 - 000118030 _____ C:\Users\germa\Documents\USB
2018-09-03 12:47 - 2018-09-03 12:47 - 000002080 _____ C:\Users\Public\Desktop\Google Slides.lnk
2018-09-03 12:47 - 2018-09-03 12:47 - 000002078 _____ C:\Users\Public\Desktop\Google Sheets.lnk
2018-09-03 12:47 - 2018-09-03 12:47 - 000002068 _____ C:\Users\Public\Desktop\Google Docs.lnk
2018-09-03 12:47 - 2018-09-03 12:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Backup and Sync from Google
2018-09-03 12:47 - 2018-09-03 12:47 - 000000000 ____D C:\Program Files\Google
2018-09-03 12:46 - 2018-09-03 12:46 - 001130840 _____ (Google Inc.) C:\Users\germa\Downloads\installbackupandsync.exe
2018-09-02 20:23 - 2018-09-02 20:23 - 000002340 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-09-02 20:23 - 2018-09-02 20:23 - 000002299 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-09-02 20:22 - 2018-09-02 20:22 - 000003472 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineUA
2018-09-02 20:22 - 2018-09-02 20:22 - 000003348 _____ C:\windows\System32\Tasks\GoogleUpdateTaskMachineCore
2018-09-02 20:18 - 2018-09-02 20:18 - 000000000 _____ C:\Users\germa\AppData\Local\{C305E1E1-9898-4EE4-A06F-679DFABBA946}
2018-09-02 19:21 - 2018-09-02 19:22 - 000000000 ____D C:\AdwCleaner
2018-09-01 19:18 - 2018-09-01 19:47 - 000000000 ____D C:\bckpphone
2018-09-01 09:18 - 2018-09-01 09:18 - 000045458 _____ C:\Users\germa\Downloads\Addition.txt
2018-09-01 09:16 - 2018-09-05 11:46 - 000000000 ____D C:\FRST
2018-09-01 09:16 - 2018-09-01 09:18 - 000056585 _____ C:\Users\germa\Downloads\FRST_b.txt
2018-08-31 21:19 - 2018-08-31 21:56 - 000036824 _____ C:\Users\germa\Documents\zapasy1819_testovaci.xlsx
2018-08-31 21:19 - 2018-08-27 15:00 - 000006824 _____ C:\Users\germa\Documents\zapasy1819_testovaci.csv
2018-08-31 21:19 - 2018-08-27 14:59 - 000002561 _____ C:\Users\germa\Documents\zapasy1819_MZJU1.csv
2018-08-31 21:19 - 2018-08-27 12:05 - 000014322 _____ C:\Users\germa\Documents\zapasy1819A.xlsx
2018-08-27 18:47 - 2018-08-27 18:47 - 000000000 ____D C:\windows\UpdateAssistant
2018-08-20 22:03 - 2018-08-20 22:03 - 000000000 ____H C:\windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2018-08-19 10:16 - 2018-07-31 08:20 - 000556352 _____ (Microsoft Corporation) C:\windows\SysWOW64\StructuredQuery.dll
2018-08-19 10:16 - 2018-07-31 08:19 - 002211240 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2018-08-19 10:16 - 2018-07-31 08:19 - 000115096 _____ (Microsoft Corporation) C:\windows\SysWOW64\offlinelsa.dll
2018-08-19 10:16 - 2018-07-31 08:18 - 000059480 _____ (Microsoft Corporation) C:\windows\SysWOW64\wldp.dll
2018-08-19 10:16 - 2018-07-31 08:17 - 006768824 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-08-19 10:16 - 2018-07-31 08:17 - 004673360 _____ (Microsoft Corporation) C:\windows\SysWOW64\mfcore.dll
2018-08-19 10:16 - 2018-07-31 08:15 - 000583672 _____ (Microsoft Corporation) C:\windows\SysWOW64\CoreMessaging.dll
2018-08-19 10:16 - 2018-07-31 08:07 - 002950656 _____ (Microsoft Corporation) C:\windows\SysWOW64\win32kfull.sys
2018-08-19 10:16 - 2018-07-31 08:04 - 000025088 _____ (Microsoft Corporation) C:\windows\SysWOW64\odbcconf.dll
2018-08-19 10:16 - 2018-07-31 07:58 - 000506880 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2018-08-19 10:16 - 2018-07-31 07:58 - 000396800 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2018-08-19 10:16 - 2018-07-31 07:58 - 000050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\cldapi.dll
2018-08-19 10:16 - 2018-07-31 07:57 - 007598592 _____ (Microsoft Corporation) C:\windows\SysWOW64\mstscax.dll
2018-08-19 10:16 - 2018-07-31 07:55 - 004034560 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2018-08-19 10:16 - 2018-07-31 07:54 - 004558848 _____ (Microsoft Corporation) C:\windows\SysWOW64\dbgeng.dll
2018-08-19 10:16 - 2018-07-31 07:51 - 004054528 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2018-08-19 10:16 - 2018-07-31 07:51 - 000089600 _____ (Microsoft Corporation) C:\windows\SysWOW64\olepro32.dll
2018-08-19 10:15 - 2018-07-31 08:36 - 000367512 _____ (Microsoft Corporation) C:\windows\SysWOW64\aepic.dll
2018-08-19 10:15 - 2018-07-31 08:25 - 001838120 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2018-08-19 10:15 - 2018-07-31 08:24 - 002259032 _____ (Microsoft Corporation) C:\windows\SysWOW64\CoreUIComponents.dll
2018-08-19 10:15 - 2018-07-31 08:17 - 020378560 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2018-08-19 10:15 - 2018-07-31 08:07 - 005974016 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Data.Pdf.dll
2018-08-19 10:15 - 2018-07-31 08:07 - 001449984 _____ (Microsoft Corporation) C:\windows\SysWOW64\GdiPlus.dll
2018-08-19 10:15 - 2018-07-31 08:06 - 000133632 _____ (Microsoft Corporation) C:\windows\SysWOW64\t2embed.dll
2018-08-19 10:15 - 2018-07-31 08:06 - 000097280 _____ (Microsoft Corporation) C:\windows\SysWOW64\fontsub.dll
2018-08-19 10:15 - 2018-07-31 08:04 - 000035328 _____ (Microsoft Corporation) C:\windows\SysWOW64\tokenbinding.dll
2018-08-19 10:15 - 2018-07-31 08:03 - 000030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\tbauth.dll
2018-08-19 10:15 - 2018-07-31 08:01 - 000742912 _____ (Microsoft Corporation) C:\windows\system32\nshwfp.dll
2018-08-19 10:15 - 2018-07-31 08:01 - 000365056 _____ (Microsoft Corporation) C:\windows\SysWOW64\msIso.dll
2018-08-19 10:15 - 2018-07-31 08:01 - 000099328 _____ (Microsoft Corporation) C:\windows\SysWOW64\hlink.dll
2018-08-19 10:15 - 2018-07-31 08:00 - 000932352 _____ (Microsoft Corporation) C:\windows\SysWOW64\GamePanel.exe
2018-08-19 10:15 - 2018-07-31 07:59 - 001248768 _____ (Microsoft Corporation) C:\windows\SysWOW64\AzureSettingSyncProvider.dll
2018-08-19 10:15 - 2018-07-31 07:59 - 000892928 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Cred.dll
2018-08-19 10:15 - 2018-07-31 07:59 - 000586240 _____ (Microsoft Corporation) C:\windows\SysWOW64\nshwfp.dll
2018-08-19 10:15 - 2018-07-31 07:58 - 000636416 _____ (Microsoft Corporation) C:\windows\SysWOW64\WpcWebFilter.dll
2018-08-19 10:15 - 2018-07-31 07:58 - 000598528 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2018-08-19 10:15 - 2018-07-31 07:58 - 000563200 _____ (Microsoft Corporation) C:\windows\SysWOW64\tdh.dll
2018-08-19 10:15 - 2018-07-31 07:57 - 000266752 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncryptprov.dll
2018-08-19 10:15 - 2018-07-31 07:56 - 003669504 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_47.dll
2018-08-19 10:15 - 2018-07-31 07:55 - 005226496 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll
2018-08-19 10:15 - 2018-07-31 07:55 - 001019904 _____ (Microsoft Corporation) C:\windows\SysWOW64\aadtb.dll
2018-08-19 10:15 - 2018-07-31 07:55 - 000813568 _____ (Microsoft Corporation) C:\windows\SysWOW64\TokenBroker.dll
2018-08-19 10:15 - 2018-07-31 07:51 - 000059904 _____ (Microsoft Corporation) C:\windows\SysWOW64\msiexec.exe
2018-08-19 10:15 - 2018-03-02 15:51 - 000056320 _____ (Microsoft Corporation) C:\windows\system32\fwcfg.dll
2018-08-19 10:15 - 2018-03-02 15:49 - 000501760 _____ (Microsoft Corporation) C:\windows\system32\authfwcfg.dll
2018-08-19 10:15 - 2018-03-02 08:38 - 000017920 _____ (Microsoft Corporation) C:\windows\SysWOW64\wksprtPS.dll
2018-08-19 10:14 - 2018-07-31 09:01 - 000092456 _____ (Microsoft Corporation) C:\windows\system32\Drivers\scmbus.sys
2018-08-19 10:14 - 2018-07-31 08:58 - 002400664 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2018-08-19 10:14 - 2018-07-31 08:58 - 000138024 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2018-08-19 10:14 - 2018-07-31 08:56 - 001239448 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndis.sys
2018-08-19 10:14 - 2018-07-31 08:51 - 004709016 _____ (Microsoft Corporation) C:\windows\system32\mfcore.dll
2018-08-19 10:14 - 2018-07-31 08:51 - 000254168 _____ (Microsoft Corporation) C:\windows\system32\mfps.dll
2018-08-19 10:14 - 2018-07-31 08:51 - 000094616 _____ (Microsoft Corporation) C:\windows\system32\rdpudd.dll
2018-08-19 10:14 - 2018-07-31 08:49 - 002672024 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2018-08-19 10:14 - 2018-07-31 08:49 - 000387928 _____ (Microsoft Corporation) C:\windows\system32\wmpps.dll
2018-08-19 10:14 - 2018-07-31 08:49 - 000058488 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2018-08-19 10:14 - 2018-07-31 08:06 - 000037376 _____ (Microsoft Corporation) C:\windows\system32\SEMgrPS.dll
2018-08-19 10:14 - 2018-07-31 08:04 - 000110592 _____ (Microsoft Corporation) C:\windows\system32\Chakradiag.dll
2018-08-19 10:14 - 2018-07-31 08:03 - 000080896 _____ (Microsoft Corporation) C:\windows\SysWOW64\Chakradiag.dll
2018-08-19 10:14 - 2018-07-31 08:02 - 020519936 _____ (Microsoft Corporation) C:\windows\SysWOW64\edgehtml.dll
2018-08-19 10:14 - 2018-07-31 08:01 - 019356672 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2018-08-19 10:14 - 2018-07-31 08:01 - 008214016 _____ (Microsoft Corporation) C:\windows\system32\mstscax.dll
2018-08-19 10:14 - 2018-07-31 08:01 - 000330240 _____ (Microsoft Corporation) C:\windows\SysWOW64\webplatstorageserver.dll
2018-08-19 10:14 - 2018-07-31 08:00 - 013429248 _____ (Microsoft Corporation) C:\windows\system32\wmp.dll
2018-08-19 10:14 - 2018-07-31 08:00 - 012263936 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmp.dll
2018-08-19 10:14 - 2018-07-31 07:58 - 000553472 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2018-08-19 10:14 - 2018-07-31 07:56 - 006258176 _____ (Microsoft Corporation) C:\windows\SysWOW64\Chakra.dll
2018-08-19 10:14 - 2018-07-31 07:56 - 000658432 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2018-08-19 10:14 - 2018-07-31 07:55 - 004719616 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2018-08-19 10:14 - 2018-07-31 07:55 - 003653632 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2018-08-19 10:14 - 2018-07-31 07:55 - 001886720 _____ (Microsoft Corporation) C:\windows\system32\rdpcorets.dll
2018-08-19 10:14 - 2018-03-02 15:39 - 000031744 _____ (Microsoft Corporation) C:\windows\system32\wksprtPS.dll
2018-08-19 10:13 - 2018-07-31 08:57 - 001930344 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2018-08-19 10:13 - 2018-07-31 08:25 - 001618784 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2018-08-19 10:13 - 2018-07-31 08:05 - 000029696 _____ (Microsoft Corporation) C:\windows\system32\odbcconf.dll
2018-08-19 10:13 - 2018-07-31 08:02 - 000457728 _____ (Microsoft Corporation) C:\windows\system32\webplatstorageserver.dll
2018-08-19 10:13 - 2018-07-31 08:00 - 023703040 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2018-08-19 10:13 - 2018-07-31 08:00 - 000692736 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2018-08-19 10:13 - 2018-07-31 07:59 - 000582144 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2018-08-19 10:13 - 2018-07-31 07:57 - 000755712 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2018-08-19 10:13 - 2018-07-31 07:56 - 008167424 _____ (Microsoft Corporation) C:\windows\system32\Chakra.dll
2018-08-19 10:12 - 2018-07-31 09:01 - 002868632 _____ (Microsoft Corporation) C:\windows\system32\aitstatic.exe
2018-08-19 10:12 - 2018-07-31 09:01 - 001200936 _____ (Microsoft Corporation) C:\windows\system32\hvix64.exe
2018-08-19 10:12 - 2018-07-31 09:01 - 001039280 _____ (Microsoft Corporation) C:\windows\system32\hvax64.exe
2018-08-19 10:12 - 2018-07-31 09:01 - 000968488 _____ (Microsoft Corporation) C:\windows\system32\hvloader.efi
2018-08-19 10:12 - 2018-07-31 09:01 - 000823216 _____ (Microsoft Corporation) C:\windows\system32\hvloader.exe
2018-08-19 10:12 - 2018-07-31 09:01 - 000546088 _____ (Microsoft Corporation) C:\windows\system32\securekernel.exe
2018-08-19 10:12 - 2018-07-31 09:01 - 000077208 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hvservice.sys
2018-08-19 10:12 - 2018-07-31 09:00 - 001067544 _____ (Microsoft Corporation) C:\windows\system32\winresume.efi
2018-08-19 10:12 - 2018-07-31 09:00 - 000901392 _____ (Microsoft Corporation) C:\windows\system32\winresume.exe
2018-08-19 10:12 - 2018-07-31 08:58 - 008321432 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2018-08-19 10:12 - 2018-07-31 08:58 - 001399640 _____ (Microsoft Corporation) C:\windows\system32\winload.efi
2018-08-19 10:12 - 2018-07-31 08:58 - 001189056 _____ (Microsoft Corporation) C:\windows\system32\winload.exe
2018-08-19 10:12 - 2018-07-31 08:57 - 002971848 _____ (Microsoft Corporation) C:\windows\system32\CoreUIComponents.dll
2018-08-19 10:12 - 2018-07-31 08:57 - 000115496 _____ (Microsoft Corporation) C:\windows\system32\kdnet.dll
2018-08-19 10:12 - 2018-07-31 08:56 - 000923592 _____ (Microsoft Corporation) C:\windows\system32\CoreMessaging.dll
2018-08-19 10:12 - 2018-07-31 08:56 - 000172328 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2018-08-19 10:12 - 2018-07-31 08:54 - 001019288 _____ (Microsoft Corporation) C:\windows\system32\SecConfig.efi
2018-08-19 10:12 - 2018-07-31 08:53 - 002695224 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2018-08-19 10:12 - 2018-07-31 08:53 - 002442672 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2018-08-19 10:12 - 2018-07-31 08:53 - 000652296 _____ (Microsoft Corporation) C:\windows\system32\StructuredQuery.dll
2018-08-19 10:12 - 2018-07-31 08:52 - 000872472 _____ (Microsoft Corporation) C:\windows\system32\ClipSVC.dll
2018-08-19 10:12 - 2018-07-31 08:52 - 000645128 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cng.sys
2018-08-19 10:12 - 2018-07-31 08:52 - 000129832 _____ (Microsoft Corporation) C:\windows\system32\offlinelsa.dll
2018-08-19 10:12 - 2018-07-31 08:52 - 000070352 _____ (Microsoft Corporation) C:\windows\system32\wldp.dll
2018-08-19 10:12 - 2018-07-31 08:52 - 000033064 _____ (Microsoft Corporation) C:\windows\system32\Drivers\winhv.sys
2018-08-19 10:12 - 2018-07-31 08:51 - 021359928 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2018-08-19 10:12 - 2018-07-31 08:51 - 007909936 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Protection.PlayReady.dll
2018-08-19 10:12 - 2018-07-31 08:49 - 001103792 _____ (Microsoft Corporation) C:\windows\system32\Drivers\http.sys
2018-08-19 10:12 - 2018-07-31 08:22 - 023684096 _____ (Microsoft Corporation) C:\windows\system32\edgehtml.dll
2018-08-19 10:12 - 2018-07-31 08:08 - 003666432 _____ (Microsoft Corporation) C:\windows\system32\win32kfull.sys
2018-08-19 10:12 - 2018-07-31 08:07 - 000584192 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIRibbonRes.dll
2018-08-19 10:12 - 2018-07-31 08:07 - 000584192 _____ (Microsoft Corporation) C:\windows\system32\UIRibbonRes.dll
2018-08-19 10:12 - 2018-07-31 08:07 - 000175616 _____ (Microsoft Corporation) C:\windows\system32\t2embed.dll
2018-08-19 10:12 - 2018-07-31 08:07 - 000123392 _____ (Microsoft Corporation) C:\windows\system32\fontsub.dll
2018-08-19 10:12 - 2018-07-31 08:07 - 000055296 _____ (Microsoft Corporation) C:\windows\system32\Drivers\winhvr.sys
2018-08-19 10:12 - 2018-07-31 08:03 - 000064512 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2018-08-19 10:12 - 2018-07-31 08:02 - 000099328 _____ (Microsoft Corporation) C:\windows\system32\hlink.dll
2018-08-19 10:12 - 2018-07-31 08:00 - 001051136 _____ (Microsoft Corporation) C:\windows\system32\nettrace.dll
2018-08-19 10:12 - 2018-07-31 07:59 - 000488960 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2018-08-19 10:12 - 2018-07-31 07:58 - 000315904 _____ (Microsoft Corporation) C:\windows\system32\ncryptprov.dll
2018-08-19 10:12 - 2018-07-31 07:57 - 005892608 _____ (Microsoft Corporation) C:\windows\system32\d2d1.dll
2018-08-19 10:12 - 2018-07-31 07:57 - 004398080 _____ (Microsoft Corporation) C:\windows\system32\D3DCompiler_47.dll
2018-08-19 10:12 - 2018-07-31 07:56 - 004481024 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2018-08-19 10:12 - 2018-07-31 07:56 - 002053120 _____ (Microsoft Corporation) C:\windows\system32\win32kbase.sys
2018-08-19 10:12 - 2018-07-31 07:55 - 002007040 _____ (Microsoft Corporation) C:\windows\system32\LocationFramework.dll
2018-08-19 10:12 - 2018-07-31 07:54 - 005557760 _____ (Microsoft Corporation) C:\windows\system32\dbgeng.dll
2018-08-19 10:12 - 2018-07-31 07:53 - 000079360 _____ (Microsoft Corporation) C:\windows\system32\LocationFrameworkInternalPS.dll
2018-08-19 10:12 - 2018-07-31 07:51 - 004050432 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2018-08-19 10:12 - 2018-07-31 07:50 - 000029696 _____ (Microsoft Corporation) C:\windows\system32\pcalua.exe
2018-08-19 10:12 - 2018-07-28 16:57 - 000125015 ____R C:\windows\system32\CaptureCountdown.hcp
2018-08-19 10:12 - 2018-07-28 16:57 - 000017806 ____R C:\windows\system32\CaptureToast.hcp
2018-08-19 10:12 - 2018-07-28 16:56 - 000119017 ____R C:\windows\system32\CaptureBrackets.hcp
2018-08-19 10:12 - 2018-03-18 23:15 - 003996160 _____ (Microsoft Corporation) C:\windows\system32\UIRibbon.dll
2018-08-19 10:12 - 2018-03-18 23:09 - 003466240 _____ (Microsoft Corporation) C:\windows\SysWOW64\UIRibbon.dll
2018-08-19 10:11 - 2018-07-31 14:39 - 001161216 ____R (Microsoft Corporation) C:\windows\system32\Windows.Mirage.Internal.Capture.UX.dll
2018-08-19 10:11 - 2018-07-31 09:04 - 000144792 _____ (Microsoft Corporation) C:\windows\system32\CompatTelRunner.exe
2018-08-19 10:11 - 2018-07-31 09:03 - 001612072 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2018-08-19 10:11 - 2018-07-31 09:03 - 000309656 _____ (Microsoft Corporation) C:\windows\system32\acmigration.dll
2018-08-19 10:11 - 2018-07-31 09:03 - 000071464 _____ (Microsoft Corporation) C:\windows\system32\win32appinventorycsp.dll
2018-08-19 10:11 - 2018-07-31 09:02 - 000793896 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2018-08-19 10:11 - 2018-07-31 09:02 - 000612272 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2018-08-19 10:11 - 2018-07-31 09:02 - 000453416 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2018-08-19 10:11 - 2018-07-31 09:02 - 000035224 _____ (Microsoft Corporation) C:\windows\system32\DeviceCensus.exe
2018-08-19 10:11 - 2018-07-31 09:01 - 000689560 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2018-08-19 10:11 - 2018-07-31 09:01 - 000482088 _____ (Microsoft Corporation) C:\windows\system32\dcntel.dll
2018-08-19 10:11 - 2018-07-31 09:01 - 000445848 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll
2018-08-19 10:11 - 2018-07-31 09:01 - 000060312 _____ (Microsoft Corporation) C:\windows\system32\hvhostsvc.dll
2018-08-19 10:11 - 2018-07-31 08:55 - 000529704 _____ (Microsoft Corporation) C:\windows\system32\pcasvc.dll
2018-08-19 10:11 - 2018-07-31 08:53 - 005478112 _____ (Microsoft Corporation) C:\windows\system32\OneCoreUAPCommonProxyStub.dll
2018-08-19 10:11 - 2018-07-31 08:08 - 001640448 _____ (Microsoft Corporation) C:\windows\system32\GdiPlus.dll
2018-08-19 10:11 - 2018-07-31 08:06 - 007346176 _____ (Microsoft Corporation) C:\windows\system32\Windows.Data.Pdf.dll
2018-08-19 10:11 - 2018-07-31 08:05 - 000044032 _____ (Microsoft Corporation) C:\windows\system32\tokenbinding.dll
2018-08-19 10:11 - 2018-07-31 08:04 - 000499712 _____ (Microsoft Corporation) C:\windows\system32\nltest.exe
2018-08-19 10:11 - 2018-07-31 08:04 - 000036864 _____ (Microsoft Corporation) C:\windows\system32\tbauth.dll
2018-08-19 10:11 - 2018-07-31 08:03 - 000354816 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.BioFeedback.dll
2018-08-19 10:11 - 2018-07-31 08:02 - 000434176 _____ (Microsoft Corporation) C:\windows\system32\msIso.dll
2018-08-19 10:11 - 2018-07-31 08:01 - 000527872 _____ (Microsoft Corporation) C:\windows\system32\aadcloudap.dll
2018-08-19 10:11 - 2018-07-31 08:01 - 000427008 _____ (Microsoft Corporation) C:\windows\system32\Windows.ApplicationModel.LockScreen.dll
2018-08-19 10:11 - 2018-07-31 08:00 - 001878016 _____ (Microsoft Corporation) C:\windows\system32\AzureSettingSyncProvider.dll
2018-08-19 10:11 - 2018-07-31 08:00 - 001433600 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Cred.dll
2018-08-19 10:11 - 2018-07-31 08:00 - 000925696 _____ (Microsoft Corporation) C:\windows\system32\WpcWebFilter.dll
2018-08-19 10:11 - 2018-07-31 08:00 - 000833024 _____ (Microsoft Corporation) C:\windows\system32\Windows.Security.Authentication.Web.Core.dll
2018-08-19 10:11 - 2018-07-31 08:00 - 000691712 _____ (Microsoft Corporation) C:\windows\system32\tdh.dll
2018-08-19 10:11 - 2018-07-31 07:59 - 001260544 _____ (Microsoft Corporation) C:\windows\system32\GamePanel.exe
2018-08-19 10:11 - 2018-07-31 07:58 - 000056832 _____ (Microsoft Corporation) C:\windows\system32\cldapi.dll
2018-08-19 10:11 - 2018-07-31 07:57 - 001736704 _____ (Microsoft Corporation) C:\windows\system32\wevtsvc.dll
2018-08-19 10:11 - 2018-07-31 07:56 - 002625024 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Logon.dll
2018-08-19 10:11 - 2018-07-31 07:56 - 001293312 _____ (Microsoft Corporation) C:\windows\system32\aadtb.dll
2018-08-19 10:11 - 2018-07-31 07:56 - 001071104 _____ (Microsoft Corporation) C:\windows\system32\TokenBroker.dll
2018-08-19 10:11 - 2018-07-31 07:51 - 000066048 _____ (Microsoft Corporation) C:\windows\system32\msiexec.exe
2018-08-19 10:11 - 2018-07-31 07:49 - 000045568 _____ (Microsoft Corporation) C:\windows\system32\pcadm.dll
2018-08-19 10:11 - 2018-07-31 07:49 - 000012800 _____ (Microsoft Corporation) C:\windows\system32\pcaevts.dll
2018-08-18 19:57 - 2018-09-04 08:21 - 000007594 _____ C:\Users\germa\AppData\Local\Resmon.ResmonCfg
2018-08-18 19:19 - 2018-08-18 19:19 - 000000000 ____D C:\Users\germa\AppData\Local\mbam
2018-08-18 19:18 - 2018-08-19 10:45 - 000259360 _____ (Malwarebytes) C:\windows\system32\Drivers\mbamswissarmy.sys
2018-08-18 19:17 - 2018-08-18 19:17 - 000000000 ____D C:\ProgramData\Malwarebytes
2018-08-18 19:17 - 2018-08-18 19:17 - 000000000 ____D C:\Program Files\Malwarebytes
2018-08-18 19:16 - 2018-08-18 19:17 - 082335352 _____ (Malwarebytes ) C:\Users\germa\Downloads\mb3-setup-consumer-3.5.1.2522-1.0.421-1.0.6385.exe
2018-08-18 18:59 - 2018-08-18 18:59 - 000000000 ____D C:\windows\Firmware
2018-08-18 18:18 - 2018-08-18 18:18 - 000002526 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2018-08-18 18:18 - 2018-08-18 18:18 - 000002525 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive pro firmy.lnk
2018-08-18 18:18 - 2018-08-18 18:18 - 000002485 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype pro firmy.lnk
2018-08-18 18:18 - 2018-08-18 18:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office
2018-08-11 11:06 - 2018-09-03 06:13 - 000000000 ____D C:\Users\germa\AppData\Roaming\XnView
2018-08-11 11:06 - 2018-08-11 11:06 - 000000955 _____ C:\Users\germa\Desktop\XnView.lnk
2018-08-11 11:05 - 2018-08-11 11:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XnView
2018-08-11 11:05 - 2018-08-11 11:06 - 000000000 ____D C:\Program Files (x86)\XnView
2018-08-11 10:45 - 2018-08-11 10:45 - 020346760 _____ (Gougelet Pierre-e ) C:\Users\germa\Downloads\XnView-win-full.exe
2018-08-11 10:24 - 2007-04-01 14:39 - 000005097 _____ C:\Users\germa\Documents\nemec1.ged
2018-08-11 10:24 - 2007-04-01 13:53 - 000003502 _____ C:\Users\germa\Documents\22.ged
2018-08-11 10:24 - 2007-04-01 13:44 - 000003534 _____ C:\Users\germa\Documents\nemec.ged
2018-08-11 10:23 - 2007-04-01 14:40 - 000005105 _____ C:\Users\germa\Documents\Nemec_aktualni.ged
2018-08-10 17:11 - 2018-08-10 17:11 - 000003222 _____ C:\windows\System32\Tasks\RtHDVBg_Session
2018-08-10 17:09 - 2018-08-10 17:09 - 000003194 _____ C:\windows\System32\Tasks\RTKCPL
2018-08-10 17:08 - 2018-05-11 01:52 - 072520680 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RCoRes64.dat
2018-08-10 17:08 - 2018-05-11 01:52 - 018223906 _____ C:\windows\system32\Drivers\RTAIODAT.DAT
2018-08-10 17:08 - 2018-05-11 01:52 - 003691368 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RltkAPO64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 003677128 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RTSnMg64.cpl
2018-08-10 17:08 - 2018-05-11 01:52 - 003452120 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RtkApi64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 003417976 _____ (DTS, Inc.) C:\windows\system32\slcnt64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 003215184 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RtPgEx64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 003128776 _____ (DTS, Inc.) C:\windows\system32\sltech64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 002930624 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RCoInstII64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 001618216 _____ (Conexant Systems Inc.) C:\windows\system32\CX64APO.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 001537504 _____ (Conexant Systems Inc.) C:\windows\system32\CX64Proxy.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 001435104 _____ (Synopsys, Inc.) C:\windows\system32\SRRPTR64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 001366904 _____ (Sound Research, Corp.) C:\windows\system32\SECOMN64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 001353288 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RTCOM64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 001300664 _____ (Sound Research, Corp.) C:\windows\system32\SEHDHF64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 001229088 _____ (Sound Research, Corp.) C:\windows\system32\SEAPO64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 001157216 _____ (Sound Research, Corp.) C:\windows\system32\SEHDRA64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 001045880 _____ (Sound Research, Corp.) C:\windows\SysWOW64\SECOMN32.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 001007344 _____ (Sound Research, Corp.) C:\windows\SysWOW64\SEHDHF32.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000994648 _____ (DTS, Inc.) C:\windows\system32\sl3apo64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000692128 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RtDataProc64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000541080 _____ (SRS Labs, Inc.) C:\windows\system32\SRSTSX64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000507144 _____ (Conexant Systems, Inc.) C:\windows\system32\CAF64APO2.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000467120 _____ (Synopsys, Inc.) C:\windows\system32\SRAPO64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000392840 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RTEEP64A.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000381376 _____ (Synopsys, Inc.) C:\windows\system32\SRCOM64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000343672 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RtlCPAPI64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000341112 _____ (Synopsys, Inc.) C:\windows\SysWOW64\SRCOM.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000341112 _____ (Synopsys, Inc.) C:\windows\system32\SRCOM.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000327240 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RP3DHT64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000327240 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RP3DAA64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000266520 _____ (TODO: <Company name>) C:\windows\system32\slprp64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000220352 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RTEED64A.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000192944 _____ (Realtek Semiconductor Corp.) C:\windows\system32\RtkCfg64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000174904 _____ (SRS Labs, Inc.) C:\windows\system32\SRSWOW64.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000123768 _____ (Conexant System, Inc.) C:\windows\system32\Caf64api.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000122280 _____ (Real Sound Lab SIA) C:\windows\system32\CONEQMSAPOGUILibrary.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000116504 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RTEEL64A.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000093872 _____ (Dolby Laboratories, Inc.) C:\windows\system32\RTEEG64A.dll
2018-08-10 17:08 - 2018-05-11 01:52 - 000004204 _____ C:\windows\system32\cxapo.prop
2018-08-10 16:52 - 2018-08-10 17:11 - 000002063 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audio Control.lnk
2018-08-10 16:52 - 2018-08-10 17:09 - 000000000 ____D C:\windows\SysWOW64\RTCOM
2018-08-10 16:52 - 2018-08-10 16:52 - 000000000 ____D C:\ProgramData\SoundResearch
2018-08-10 16:39 - 2018-08-10 16:39 - 000000000 ____D C:\Users\germa\AppData\LocalLow\Adobe
2018-08-10 16:39 - 2018-08-10 16:39 - 000000000 ____D C:\Users\germa\AppData\Local\CEF
2018-08-10 16:38 - 2018-08-10 16:44 - 000112195 _____ C:\Users\germa\Documents\Soustředění - seznam busy.pdf
2018-08-10 16:25 - 2018-08-10 16:43 - 000004562 _____ C:\windows\System32\Tasks\Adobe Acrobat Update Task
2018-08-10 16:24 - 2018-08-18 18:38 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2018-08-10 16:24 - 2018-08-10 16:24 - 000002091 _____ C:\Users\Public\Desktop\Acrobat Reader DC.lnk
2018-08-10 16:22 - 2018-08-10 16:22 - 000000000 ____D C:\Program Files (x86)\Adobe
2018-08-10 16:19 - 2018-08-10 16:40 - 000000000 ____D C:\ProgramData\Adobe
2018-08-10 16:11 - 2018-08-10 16:47 - 000057916 _____ C:\Users\germa\Documents\2018 - Přihláška na soustředění HBC Hostivař (Odpovědi).xlsx
2018-08-10 16:11 - 2018-08-10 16:45 - 000242356 _____ C:\Users\germa\Documents\Seznamy soustředění HBC Hostivař 2018 (1).pdf
2018-08-10 10:47 - 2018-04-03 23:12 - 000057924 _____ C:\windows\rtl8723d_mp_chip_bt40_fw_asic_rom_patch_new.dll
2018-08-10 10:47 - 2018-04-03 23:12 - 000050888 _____ C:\windows\rtl8723b_mp_chip_bt40_fw_asic_rom_patch_new.dll
2018-08-10 10:47 - 2018-04-03 23:12 - 000050836 _____ C:\windows\rtl8723b_mp_chip_bt40_fw_asic_rom_patch_new_s1.dll
2018-08-10 10:47 - 2018-04-03 23:12 - 000049424 _____ C:\windows\rtl8822b_mp_chip_bt40_fw_asic_rom_patch_new.dll
2018-08-10 10:47 - 2018-04-03 23:12 - 000044660 _____ C:\windows\rtl8821c_mp_chip_bt40_fw_asic_rom_patch_new.dll
2018-08-10 10:30 - 2018-08-10 10:30 - 000000000 ____D C:\Users\germa\AppData\Roaming\HP Active Health
2018-08-10 07:55 - 2018-05-17 10:52 - 000023024 _____ (Microsoft Corporation) C:\windows\SysWOW64\Luadgmgt.dll
2018-08-09 07:26 - 2018-08-09 07:26 - 000000000 ____D C:\6749525315573233238
2018-08-08 20:33 - 2018-08-08 20:33 - 000003160 _____ C:\windows\System32\Tasks\StartCN
2018-08-08 20:33 - 2018-08-08 20:33 - 000003074 _____ C:\windows\System32\Tasks\StartDVR
2018-08-08 20:33 - 2018-08-08 20:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Settings
2018-08-08 20:33 - 2018-08-08 20:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\##ID_STRING16##
2018-08-08 20:33 - 2018-08-08 20:33 - 000000000 ____D C:\Program Files (x86)\AMD
2018-08-08 20:31 - 2018-08-08 20:31 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies
2018-08-08 20:21 - 2018-08-08 20:21 - 000000000 ____D C:\Users\germa\AppData\Roaming\ATI
2018-08-08 20:21 - 2018-08-08 20:21 - 000000000 ____D C:\Users\germa\AppData\Local\ATI
2018-08-08 20:21 - 2018-08-08 20:21 - 000000000 ____D C:\ProgramData\ATI
2018-08-08 20:20 - 2018-08-08 20:20 - 000000000 ____D C:\Users\germa\AppData\Local\RadeonInstaller
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-09-05 11:38 - 2017-03-18 06:46 - 000000000 ____D C:\windows\Panther
2018-09-05 11:02 - 2017-03-18 05:52 - 000000000 ____D C:\windows\system32\SleepStudy
2018-09-05 09:17 - 2017-05-15 13:14 - 001216284 _____ C:\windows\system32\perfh005.dat
2018-09-05 09:17 - 2017-05-15 13:14 - 000295434 _____ C:\windows\system32\perfc005.dat
2018-09-05 09:17 - 2017-04-01 07:38 - 002768646 _____ C:\windows\system32\PerfStringBackup.INI
2018-09-05 09:11 - 2017-03-18 13:40 - 000786432 _____ C:\windows\system32\config\BBI
2018-09-05 09:11 - 2017-03-18 05:52 - 000000006 ____H C:\windows\Tasks\SA.DAT
2018-09-05 09:10 - 2017-09-22 08:53 - 000065536 _____ C:\windows\psp_storage.bin
2018-09-03 17:19 - 2017-03-18 23:01 - 000000000 ____D C:\windows\INF
2018-09-03 17:15 - 2017-05-15 04:18 - 000000000 ____D C:\Program Files (x86)\HP
2018-09-03 13:01 - 2018-07-26 20:33 - 000000364 _____ C:\windows\Tasks\HPCeeScheduleForgerma.job
2018-09-03 12:47 - 2018-07-17 18:56 - 000000000 ____D C:\Users\germa\AppData\Local\Google
2018-09-03 12:34 - 2018-07-26 20:33 - 000003256 _____ C:\windows\System32\Tasks\HPCeeScheduleForgerma
2018-09-03 10:38 - 2017-03-18 23:03 - 000000000 ___HD C:\Program Files\WindowsApps
2018-09-03 10:38 - 2017-03-18 23:03 - 000000000 ____D C:\windows\AppReadiness
2018-09-03 06:14 - 2018-07-17 21:38 - 000000000 ____D C:\windows\system32\Drivers\wd
2018-09-03 06:14 - 2017-03-18 23:03 - 000000000 ____D C:\windows\system32\WinBioPlugIns
2018-09-03 06:11 - 2018-07-17 18:35 - 000000000 ____D C:\Users\germa\AppData\Local\VirtualStore
2018-09-03 06:11 - 2017-03-18 23:03 - 000000000 ____D C:\windows\SystemApps
2018-09-02 20:22 - 2018-07-17 18:56 - 000000000 ____D C:\Program Files (x86)\Google
2018-09-02 20:15 - 2018-07-17 18:31 - 000000000 ____D C:\Users\germa
2018-09-02 20:14 - 2017-05-15 04:25 - 000000948 _____ C:\windows\Tasks\DropboxUpdateTaskMachineUA.job
2018-09-02 20:14 - 2017-05-15 04:25 - 000000944 _____ C:\windows\Tasks\DropboxUpdateTaskMachineCore.job
2018-08-23 22:58 - 2017-05-15 04:25 - 000004008 _____ C:\windows\System32\Tasks\DropboxUpdateTaskMachineUA
2018-08-23 22:58 - 2017-05-15 04:25 - 000003776 _____ C:\windows\System32\Tasks\DropboxUpdateTaskMachineCore
2018-08-20 19:16 - 2018-07-17 18:46 - 000003376 _____ C:\windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1894498253-2117363191-260290956-1001
2018-08-20 19:16 - 2018-07-17 18:39 - 000002394 _____ C:\Users\germa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-08-20 19:16 - 2018-07-17 18:39 - 000000000 ___RD C:\Users\germa\OneDrive
2018-08-19 12:13 - 2017-03-18 05:53 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-08-19 11:17 - 2017-03-18 23:03 - 000000000 ____D C:\windows\rescache
2018-08-19 11:02 - 2017-03-18 22:51 - 000000000 ____D C:\windows\CbsTemp
2018-08-19 10:44 - 2017-03-18 05:52 - 000454416 _____ C:\windows\system32\FNTCACHE.DAT
2018-08-19 10:42 - 2017-03-19 04:32 - 000000000 ____D C:\windows\HoloShell
2018-08-19 10:42 - 2017-03-18 23:03 - 000000000 ___SD C:\windows\SysWOW64\F12
2018-08-19 10:42 - 2017-03-18 23:03 - 000000000 ___SD C:\windows\system32\F12
2018-08-19 10:42 - 2017-03-18 23:03 - 000000000 ___SD C:\windows\system32\DiagSvcs
2018-08-19 10:42 - 2017-03-18 23:03 - 000000000 ____D C:\windows\ShellExperiences
2018-08-19 10:42 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2018-08-19 10:42 - 2017-03-18 23:03 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2018-08-19 09:58 - 2018-07-17 19:13 - 000004666 _____ C:\windows\System32\Tasks\Adobe Flash Player PPAPI Notifier
2018-08-19 09:58 - 2018-07-17 19:11 - 000000000 ____D C:\Users\germa\AppData\Local\Adobe
2018-08-19 09:57 - 2017-03-18 23:03 - 000000000 ____D C:\windows\SysWOW64\Macromed
2018-08-19 09:57 - 2017-03-18 23:03 - 000000000 ____D C:\windows\system32\Macromed
2018-08-18 19:03 - 2018-07-17 22:08 - 000000000 ____D C:\Program Files\rempl
2018-08-18 18:59 - 2018-07-17 22:06 - 000000000 ____D C:\windows\system32\MRT
2018-08-18 18:35 - 2018-07-17 22:05 - 137343192 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2018-08-18 18:21 - 2017-03-19 04:31 - 009261568 _____ (Microsoft Corporation) C:\windows\SysWOW64\wmploc.DLL
2018-08-18 18:21 - 2017-03-19 04:31 - 009261568 _____ (Microsoft Corporation) C:\windows\system32\wmploc.DLL
2018-08-18 18:19 - 2017-03-18 23:03 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-08-18 18:18 - 2017-05-15 04:28 - 000002520 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2018-08-18 18:18 - 2017-05-15 04:28 - 000002497 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2018-08-18 18:18 - 2017-05-15 04:28 - 000002492 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2018-08-18 18:18 - 2017-05-15 04:28 - 000002453 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2018-08-18 18:18 - 2017-05-15 04:28 - 000002418 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2018-08-18 18:18 - 2017-05-15 04:28 - 000002414 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2018-08-18 18:16 - 2017-05-15 04:26 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2018-08-18 18:12 - 2018-07-19 08:12 - 000000000 ____D C:\ProgramData\AMD
2018-08-10 17:11 - 2017-09-22 08:50 - 000000000 ___HD C:\Program Files (x86)\Temp
2018-08-10 17:09 - 2017-09-22 08:51 - 003280227 _____ C:\windows\system32\Drivers\rtkhdasetting.zip
2018-08-10 17:08 - 2017-05-15 04:20 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2018-08-10 16:39 - 2018-07-17 18:35 - 000000000 ____D C:\Users\germa\AppData\Roaming\Adobe
2018-08-10 16:15 - 2018-07-17 18:35 - 000000000 ____D C:\Users\germa\AppData\Local\Packages
2018-08-10 16:15 - 2018-07-17 18:34 - 000000000 ____D C:\Users\germa\AppData\Local\ConnectedDevicesPlatform
2018-08-10 16:06 - 2017-09-22 08:50 - 000000000 ____D C:\Program Files (x86)\Realtek
2018-08-10 11:07 - 2017-05-15 12:55 - 000000000 ____D C:\SWSetup
2018-08-10 10:46 - 2017-09-22 08:57 - 000000000 ____D C:\ProgramData\Realtek
2018-08-10 10:33 - 2017-09-22 08:54 - 000000740 _____ C:\windows\HPSetLog.txt
2018-08-10 10:30 - 2017-05-15 04:25 - 000000000 ____D C:\Program Files\HPCommRecovery
2018-08-09 07:26 - 2018-07-17 18:35 - 000000000 ____D C:\Users\germa\AppData\Local\AMD
2018-08-09 07:23 - 2018-07-17 18:57 - 000000000 ____D C:\Users\germa\AppData\LocalLow\AMD
2018-08-08 20:33 - 2018-07-17 21:53 - 000000000 ____D C:\AMD
2018-08-08 20:33 - 2017-09-22 08:51 - 000000000 ____D C:\Program Files\AMD
2018-08-08 20:28 - 2017-09-22 08:52 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2018-08-08 20:26 - 2017-05-15 04:15 - 000000000 ____D C:\ProgramData\Package Cache
2018-08-08 19:44 - 2017-09-22 10:17 - 000000000 ____D C:\windows\HP
2018-08-08 19:22 - 2017-05-15 12:56 - 000014848 _____ (Hewlett-Packard) C:\windows\HPCUST2.exe
==================== Files in the root of some directories =======
2018-07-27 00:10 - 2018-07-27 00:13 - 000006144 _____ () C:\Users\germa\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2018-08-18 19:57 - 2018-09-04 08:21 - 000007594 _____ () C:\Users\germa\AppData\Local\Resmon.ResmonCfg
2018-09-02 20:18 - 2018-09-02 20:18 - 000000000 _____ () C:\Users\germa\AppData\Local\{C305E1E1-9898-4EE4-A06F-679DFABBA946}
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\explorer.exe => File is digitally signed
C:\windows\SysWOW64\explorer.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\SysWOW64\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\SysWOW64\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\SysWOW64\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\dnsapi.dll => File is digitally signed
C:\windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2018-09-03 10:41
==================== End of FRST.txt ============================