prosim o kontrolu
Napsal: 03 lis 2018 12:06
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 24.10.2018
Ran by Vlado (administrator) on LAPTOP-RSV8O8AU (03-11-2018 11:56:27)
Running from C:\Users\Vlado\Desktop
Loaded Profiles: Vlado & (Available Profiles: Vlado)
Platform: Windows 10 Home Version 1809 17763.55 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
() C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\IntelCpHDCPSvc.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe
(arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\IntelCpHeciSvc.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
Failed to access process -> backgroundTaskHost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\igfxEM.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Windows\System32\SecurityHealthSystray.exe
(Lenovo(beijing) Limited) C:\Program Files\Lenovo\LenovoUtility\utility.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 19\Program32\ZPSTray.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam7\YouCamService7.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD14\PDVD14Serv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe
(Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
() C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1809.2731.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11809.1001.8.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe
(Lenovo Group Limited) C:\Users\Vlado\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.17763.52_none_96d83ec8e9f322fc\TiWorker.exe
() C:\Program Files\WindowsApps\Microsoft.WindowsAlarms_10.1809.2731.0_x64__8wekyb3d8bbwe\Time.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SecurityHealth] => C:\WINDOWS\system32\SecurityHealthSystray.exe [83968 2018-09-15] (Microsoft Corporation)
HKLM\...\Run: [LenovoUtility] => C:\Program Files\Lenovo\LenovoUtility\utility.exe [914344 2017-06-14] (Lenovo(beijing) Limited)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2670056 2018-09-10] (Adobe Systems, Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-26] (Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [653728 2018-03-26] (Oracle Corporation)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [YouCam Service7] => C:\Program Files (x86)\CyberLink\YouCam7\YouCamService7.exe [454072 2015-06-09] (CyberLink Corp.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2407008 2017-09-20] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [153296 2018-05-30] (Panda Security, S.L.)
HKLM\...\Winlogon: [Userinit] C:\WINDOWS\SysWOW64\userinit.exe,
HKU\S-1-5-21-3757017093-2623875683-488815004-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\Program Files\Zoner\Photo Studio 19\Program32\ZPSTRAY.EXE [604128 2018-10-12] (ZONER software)
HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10312018073140677\...\Run: [Zoner Photo Studio Autoupdate] => C:\Program Files\Zoner\Photo Studio 19\Program32\ZPSTRAY.EXE [604128 2018-10-12] (ZONER software)
HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018115333431\...\Run: [Zoner Photo Studio Autoupdate] => C:\Program Files\Zoner\Photo Studio 19\Program32\ZPSTRAY.EXE [604128 2018-10-12] (ZONER software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 217.23.254.124 217.23.254.125
Tcpip\..\Interfaces\{48fce1a9-e4b0-402e-8a6d-8e18fa3ad758}: [DhcpNameServer] 217.23.254.124 217.23.254.125
Tcpip\..\Interfaces\{d53ff755-1670-4c93-bd8b-633392b9539b}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKU\S-1-5-21-3757017093-2623875683-488815004-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3757017093-2623875683-488815004-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com
HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10312018073140677\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10312018073140677\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com
HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018115333431\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018115333431\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2018-01-25] (IObit)
BHO: No Name -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> No File
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre-10.0.1\bin\jp2ssv.dll [2018-05-30] (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-26] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\ssv.dll [2018-05-24] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\jp2ssv.dll [2018-05-24] (Oracle Corporation)
Edge:
======
Edge Extension: (BookReader) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets [2018-09-15]
Edge Extension: (PinJSAPI) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [2018-09-15]
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=13.0.1.0 -> C:\Program Files\Java\jre-10.0.1\bin\dtplugin\npDeployJava1.dll [2018-05-30] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=13.0.1.0 -> C:\Program Files\Java\jre-10.0.1\bin\plugin2\npjp2.dll [2018-05-30] (Oracle Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2017-09-20] (Adobe Systems)
FF Plugin-x32: @java.com/DTPlugin,version=11.171.2 -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\dtplugin\npDeployJava1.dll [2018-05-24] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.171.2 -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\plugin2\npjp2.dll [2018-05-24] (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-25] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-25] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-09-20] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2017-09-20] (Adobe Systems)
Chrome:
=======
CHR DefaultProfile: Default
CHR NewTab: Default -> Not-active:"chrome-extension://olfeabkoenfaoljndfecamgilllcpiak/speeddial/newTab.html"
CHR Profile: C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default [2018-11-03]
CHR Extension: (Prezentácie) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-05-25]
CHR Extension: (Dokumenty) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-05-25]
CHR Extension: (Disk Google) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-05-25]
CHR Extension: (Seznam doplněk - Email) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2018-09-07]
CHR Extension: (YouTube) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-05-25]
CHR Extension: (Adblock Plus) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2018-10-31]
CHR Extension: (Tabuľky) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-05-25]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-20]
CHR Extension: (AdBlock) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-10-16]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-05-25]
CHR Extension: (Seznam doplněk - Esko) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2018-09-07]
CHR Extension: (Gmail) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-05-25]
CHR Extension: (Chrome Media Router) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-11-01]
CHR Profile: C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Guest Profile [2018-06-28]
CHR Profile: C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\System Profile [2018-06-28]
CHR HKU\S-1-5-21-3757017093-2623875683-488815004-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3757017093-2623875683-488815004-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10312018073140677\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10312018073140677\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018115333431\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018115333431\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [817760 2017-09-20] (Adobe Systems Incorporated)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2910696 2018-09-10] (Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2704872 2018-09-10] (Adobe Systems, Incorporated)
R2 AtherosSvc; C:\WINDOWS\System32\drivers\AdminService.exe [414696 2018-01-08] (Windows (R) Win 7 DDK provider)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7361312 2018-10-10] ()
R2 BrokerInfrastructure; C:\WINDOWS\System32\psmsrv.dll [241664 2018-09-15] (Microsoft Corporation)
S3 cbdhsvc; C:\WINDOWS\System32\cbdhsvc.dll [961024 2018-09-15] (Microsoft Corporation)
S3 ConsentUxUserSvc; C:\WINDOWS\System32\ConsentUxClient.dll [157696 2018-09-15] (Microsoft Corporation)
R3 DisplayEnhancementService; C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll [914944 2018-09-15] (Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [784512 2018-10-12] (EasyAntiCheat Ltd)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144600 2017-10-22] (ELAN Microelectronics Corp.)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2018-04-20] () [File not signed]
S3 iaStorAfsService; C:\WINDOWS\IAStorAfsService\iaStorAfsService.exe [2410672 2017-11-27] (Intel Corporation)
R2 ImControllerService; C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [71408 2018-05-16] (Lenovo Group Limited)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe [742704 2017-10-11] (Intel(R) Corporation)
S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe [668472 2017-10-11] (Intel(R) Corporation)
R2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [206096 2018-01-25] (IObit)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [213648 2017-11-08] (Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6347056 2018-09-19] (Malwarebytes)
R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [109024 2017-11-08] (Panda Security, S.L.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [773160 2018-10-10] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [773160 2018-10-10] (NVIDIA Corporation)
S3 Origin Client Service; F:\origin\OriginClientService.exe [2216256 2018-09-13] (Electronic Arts)
S2 Origin Web Helper Service; F:\origin\OriginWebHelperService.exe [3087176 2018-09-13] (Electronic Arts)
S3 Panda VPN Service; C:\Program Files (x86)\Panda Security\Panda Security Protection\Hydra.Sdk.Windows.Service.exe [320848 2017-11-20] ()
R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [86104 2016-07-19] (Panda Security, S.L.)
S3 perceptionsimulation; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [78848 2018-09-15] (Microsoft Corporation)
R2 PSI_SVC_2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (arvato digital services llc)
R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [48784 2018-05-30] (Panda Security, S.L.)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [324552 2018-03-29] (Realtek Semiconductor)
S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [384512 2018-09-15] ()
S3 wampapache64; c:\wamp64\bin\apache\apache2.4.33\bin\httpd.exe [30720 2018-03-18] (Apache Software Foundation) [File not signed]
S3 wampmariadb64; c:\wamp64\bin\mariadb\mariadb10.2.14\bin\mysqld.exe [14550440 2018-03-26] ()
S3 wampmysqld64; c:\wamp64\bin\mysql\mysql5.7.21\bin\mysqld.exe [39551488 2017-12-28] () [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3830488 2018-09-15] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [110944 2018-09-15] (Microsoft Corporation)
S3 WManSvc; C:\WINDOWS\system32\Windows.Management.Service.dll [370176 2018-09-15] (Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 aftap0901; C:\WINDOWS\System32\drivers\aftap0901.sys [48624 2017-11-16] (The OpenVPN Project)
R1 BasicDisplay; C:\WINDOWS\System32\DriverStore\FileRepository\basicdisplay.inf_amd64_5103ac179273be89\BasicDisplay.sys [68096 2018-09-15] (Microsoft Corporation)
R1 BasicRender; C:\WINDOWS\System32\DriverStore\FileRepository\basicrender.inf_amd64_0b8d03c3bc0e7fd9\BasicRender.sys [37376 2018-09-15] (Microsoft Corporation)
R3 BtFilter; C:\WINDOWS\System32\drivers\btfilter.sys [65448 2018-01-08] (Qualcomm)
S3 BthMini; C:\WINDOWS\System32\drivers\BTHMINI.sys [34816 2018-09-15] (Microsoft Corporation)
R1 CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [100624 2015-06-09] (CyberLink)
R3 clwvd7; C:\WINDOWS\system32\DRIVERS\clwvd7.sys [42968 2015-03-24] (CyberLink Corporation)
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [152688 2018-10-29] (Malwarebytes)
R3 ETDHCF; C:\WINDOWS\System32\drivers\ETDHCF.sys [29256 2017-10-22] (ELAN Microelectronics Corp.)
S3 hidspi; C:\WINDOWS\System32\drivers\hidspi.sys [60928 2018-09-15] (Microsoft Corporation)
S3 iaLPSS2i_GPIO2_CNL; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128 2018-09-15] (Intel Corporation)
S3 iaLPSS2i_GPIO2_GLK; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256 2018-09-15] (Intel Corporation)
S3 iaLPSS2i_I2C_CNL; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [180736 2018-09-15] (Intel Corporation)
S3 iaLPSS2i_I2C_GLK; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664 2018-09-15] (Intel Corporation)
S3 iaStorAfs; C:\WINDOWS\System32\drivers\iaStorAfs.sys [69632 2017-11-27] (Intel Corporation)
R3 IUFileFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys [39904 2017-06-06] (IObit.com)
R3 IURegProcessFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IURegProcessFilter.sys [40328 2018-01-10] (IObit.com)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [198000 2018-10-29] (Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [119136 2018-10-29] (Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [63768 2018-10-29] (Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [260480 2018-10-29] (Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [111152 2018-11-03] (Malwarebytes)
S3 MbbCx; C:\WINDOWS\System32\drivers\MbbCx.sys [290816 2018-09-15] (Microsoft Corporation)
S3 Microsoft_Bluetooth_AvrcpTransport; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [53760 2018-09-15] (Microsoft Corporation)
R1 NNSALPC; C:\WINDOWS\system32\DRIVERS\NNSALPC.sys [108000 2017-11-06] (Panda Security, S.L.)
R1 NNSHTTP; C:\WINDOWS\system32\DRIVERS\NNSHTTP.sys [211936 2017-11-06] (Panda Security, S.L.)
R1 NNSHTTPS; C:\WINDOWS\system32\DRIVERS\NNSHTTPS.sys [121312 2017-11-06] (Panda Security, S.L.)
R1 NNSIDS; C:\WINDOWS\system32\DRIVERS\NNSIDS.sys [126432 2017-11-06] (Panda Security, S.L.)
R1 NNSNAHSL; C:\WINDOWS\system32\DRIVERS\NNSNAHSL.sys [99512 2017-09-26] (Panda Security, S.L.)
R1 NNSPICC; C:\WINDOWS\system32\DRIVERS\NNSPICC.sys [118240 2017-11-06] (Panda Security, S.L.)
R1 NNSPIHSW; C:\WINDOWS\system32\DRIVERS\NNSPIHSW.sys [91616 2017-11-06] (Panda Security, S.L.)
R1 NNSPOP3; C:\WINDOWS\system32\DRIVERS\NNSPOP3.sys [135648 2017-11-06] (Panda Security, S.L.)
R1 NNSPROT; C:\WINDOWS\system32\DRIVERS\NNSPROT.sys [336352 2017-11-06] (Panda Security, S.L.)
R1 NNSPRV; C:\WINDOWS\system32\DRIVERS\NNSPRV.sys [249312 2017-11-06] (Panda Security, S.L.)
R1 NNSSMTP; C:\WINDOWS\system32\DRIVERS\NNSSMTP.sys [123360 2017-11-06] (Panda Security, S.L.)
R1 NNSSTRM; C:\WINDOWS\system32\DRIVERS\NNSSTRM.sys [281056 2017-11-06] (Panda Security, S.L.)
R1 NNSTLSC; C:\WINDOWS\system32\DRIVERS\NNSTLSC.sys [125920 2017-11-06] (Panda Security, S.L.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvlti.inf_amd64_b0804a8322213783\nvlddmkm.sys [20605496 2018-10-03] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30792 2018-08-21] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69544 2018-06-08] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [74576 2018-10-01] (NVIDIA Corporation)
S3 PktMon; C:\WINDOWS\System32\drivers\PktMon.sys [85504 2018-09-15] (Microsoft Corporation)
R2 PSINAflt; C:\WINDOWS\system32\DRIVERS\PSINAflt.sys [191448 2017-11-08] (Panda Security, S.L.)
R2 PSINFile; C:\WINDOWS\System32\DRIVERS\PSINFile.sys [153992 2018-01-23] (Panda Security, S.L.)
R1 PSINKNC; C:\WINDOWS\system32\DRIVERS\PSINKNC.sys [207248 2018-01-30] (Panda Security, S.L.)
R2 PSINProc; C:\WINDOWS\System32\DRIVERS\PSINProc.sys [146912 2017-10-17] (Panda Security, S.L.)
R2 PSINProt; C:\WINDOWS\system32\DRIVERS\PSINProt.sys [159200 2017-10-17] (Panda Security, S.L.)
R2 PSINReg; C:\WINDOWS\system32\DRIVERS\PSINReg.sys [129504 2017-10-17] (Panda Security, S.L.)
U3 PSKMAD; C:\WINDOWS\System32\DRIVERS\PSKMAD.sys [72648 2017-05-22] (Panda Security, S.L.)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1010648 2017-12-13] (Realtek )
S0 SmartSAMD; C:\WINDOWS\System32\drivers\SmartSAMD.sys [219960 2018-09-15] (Microsemi Corportation)
R3 SNP2UVCW10; C:\WINDOWS\system32\DRIVERS\snUVCg2.sys [1710128 2017-11-05] (Sonix Tech. Co., Ltd.)
S3 UcmUcsiAcpiClient; C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [31232 2018-09-15] (Microsoft Corporation)
S3 UcmUcsiCx0101; C:\WINDOWS\System32\Drivers\UcmUcsiCx.sys [99840 2018-09-15] (Microsoft Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46584 2018-09-15] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [340008 2018-09-15] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [61992 2018-09-15] (Microsoft Corporation)
R3 WinQuic; C:\WINDOWS\System32\drivers\winquic.sys [156984 2018-09-15] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
NETSVC: WManSvc -> C:\Windows\system32\Windows.Management.Service.dll (Microsoft Corporation)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-11-03 11:56 - 2018-11-03 11:56 - 000028869 _____ C:\Users\Vlado\Desktop\FRST.txt
2018-11-03 11:56 - 2018-11-03 11:56 - 000000000 ____D C:\FRST
2018-11-03 11:55 - 2018-11-03 11:55 - 002414592 _____ (Farbar) C:\Users\Vlado\Desktop\FRST64.exe
2018-11-03 11:52 - 2018-11-03 11:52 - 000000000 ___HD C:\OneDriveTemp
2018-11-02 18:30 - 2018-11-02 18:30 - 062774584 _____ (Skype Technologies S.A.) C:\Users\Vlado\Downloads\Skype-8.33.0.50.exe
2018-11-02 18:30 - 2018-11-02 18:30 - 000001386 _____ C:\Users\Public\Desktop\Skype.lnk
2018-11-02 18:30 - 2018-11-02 18:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2018-10-30 18:14 - 2018-10-30 18:15 - 000000000 ____D C:\Users\Vlado\AppData\Roaming\Game
2018-10-30 18:14 - 2018-10-30 18:14 - 000000000 ____D C:\Users\Public\Documents\Steam
2018-10-30 18:11 - 2018-10-30 18:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crash Bandicoot N Sane Trilogy
2018-10-30 12:28 - 2018-10-30 12:28 - 000241060 _____ C:\Users\Vlado\Downloads\absolutne-poradie-hhbd-2018.pdf
2018-10-29 18:00 - 2018-11-03 11:53 - 000111152 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2018-10-29 18:00 - 2018-10-29 18:00 - 000260480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2018-10-29 18:00 - 2018-10-29 18:00 - 000119136 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2018-10-29 18:00 - 2018-10-29 18:00 - 000063768 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2018-10-29 17:42 - 2018-10-29 17:42 - 000002038 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Zoner Photo Studio X.lnk
2018-10-29 17:42 - 2018-10-29 17:42 - 000002032 _____ C:\Users\Public\Desktop\Zoner Photo Studio X.lnk
2018-10-29 17:42 - 2018-10-29 17:42 - 000000000 ____D C:\Program Files\Zoner
2018-10-29 17:12 - 2018-10-29 17:27 - 167571348 _____ C:\Users\Vlado\Downloads\Zoner Photo Studio X 19.1809.2.83.rar
2018-10-29 17:09 - 2018-10-29 17:09 - 000198000 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2018-10-26 16:55 - 2018-10-26 16:56 - 000002305 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Dome.lnk
2018-10-26 16:55 - 2018-10-26 16:56 - 000002288 _____ C:\Users\Public\Desktop\Panda Dome.lnk
2018-10-26 16:55 - 2018-10-26 16:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Dome
2018-10-26 16:55 - 2018-01-30 14:19 - 000207248 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINKNC.sys
2018-10-26 16:55 - 2017-11-08 23:43 - 000191448 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINAflt.sys
2018-10-26 16:55 - 2017-11-06 07:07 - 000281056 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsstrm.sys
2018-10-26 16:55 - 2017-11-06 07:07 - 000125920 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnstlsc.sys
2018-10-26 16:55 - 2017-11-06 07:06 - 000336352 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsprot.sys
2018-10-26 16:55 - 2017-11-06 07:06 - 000135648 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnspop3.sys
2018-10-26 16:55 - 2017-11-06 07:06 - 000123360 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnssmtp.sys
2018-10-26 16:55 - 2017-11-06 07:02 - 000118240 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnspicc.sys
2018-10-26 16:55 - 2017-11-06 07:02 - 000091616 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnspihsw.sys
2018-10-26 16:55 - 2017-11-06 07:01 - 000211936 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnshttp.sys
2018-10-26 16:55 - 2017-11-06 07:01 - 000126432 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsids.sys
2018-10-26 16:55 - 2017-11-06 07:01 - 000121312 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnshttps.sys
2018-10-26 16:55 - 2017-11-06 07:01 - 000108000 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsalpc.sys
2018-10-26 16:55 - 2017-10-17 02:31 - 000159200 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINProt.sys
2018-10-26 16:55 - 2017-10-17 02:31 - 000129504 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINReg.sys
2018-10-26 16:55 - 2017-05-22 06:01 - 000072648 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSKMAD.sys
2018-10-25 20:11 - 2018-10-29 17:59 - 000000000 ____D C:\Program Files\Common Files\AV
2018-10-25 20:10 - 2018-10-26 16:53 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2018-10-23 17:12 - 2018-10-29 17:08 - 000152688 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2018-10-23 17:12 - 2018-10-23 17:12 - 000001919 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2018-10-23 17:12 - 2018-10-23 17:12 - 000000000 ____D C:\Users\Vlado\AppData\Local\mbamtray
2018-10-23 17:12 - 2018-10-23 17:12 - 000000000 ____D C:\Users\Vlado\AppData\Local\mbam
2018-10-23 17:12 - 2018-10-23 17:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2018-10-23 17:12 - 2018-10-23 17:12 - 000000000 ____D C:\ProgramData\Malwarebytes
2018-10-23 17:12 - 2018-10-23 17:12 - 000000000 ____D C:\Program Files\Malwarebytes
2018-10-23 17:11 - 2018-10-23 17:11 - 080022264 _____ (Malwarebytes ) C:\Users\Vlado\Downloads\mb3-setup-35891.35891-3.6.1.2711-1.0.463-1.0.6913.exe
2018-10-21 14:10 - 2018-10-21 14:10 - 000000000 ____D C:\Users\Vlado\AppData\Local\PAYDAY
2018-10-21 11:50 - 2018-10-23 17:33 - 000000000 ____D C:\Users\Vlado\AppData\Roaming\Twitch
2018-10-21 11:50 - 2018-10-21 11:50 - 000000979 _____ C:\Users\Vlado\Desktop\Twitch.lnk
2018-10-21 11:50 - 2018-10-21 11:50 - 000000965 _____ C:\Users\Vlado\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twitch.lnk
2018-10-21 11:50 - 2018-10-21 11:50 - 000000000 ____D C:\ProgramData\Twitch
2018-10-21 11:49 - 2018-10-21 11:49 - 087447456 _____ C:\Users\Vlado\Downloads\TwitchSetup_[usher-268306925].exe
2018-10-18 15:29 - 2018-10-18 15:29 - 000000000 ____D C:\WINDOWS\Panther
2018-10-18 14:56 - 2018-10-18 14:56 - 000654652 _____ C:\Users\Vlado\Downloads\Cennk_W177_2018_07_27_akt.pdf
2018-10-12 18:29 - 2018-10-12 18:29 - 000000000 _____ C:\Users\Public\Shared Files
2018-10-12 18:22 - 2018-10-12 18:22 - 000000000 ____D C:\Users\Vlado\AppData\Roaming\EasyAntiCheat
2018-10-12 18:22 - 2018-10-12 18:22 - 000000000 ____D C:\Users\Vlado\AppData\Local\FortniteGame
2018-10-12 18:00 - 2018-10-12 18:00 - 000000999 _____ C:\Users\Public\Desktop\Epic Games Launcher.lnk
2018-10-12 18:00 - 2018-10-12 18:00 - 000000999 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2018-10-12 18:00 - 2018-10-12 18:00 - 000000000 ____D C:\Users\Vlado\AppData\Local\UnrealEngineLauncher
2018-10-12 18:00 - 2018-10-12 18:00 - 000000000 ____D C:\Users\Vlado\AppData\Local\EpicGamesLauncher
2018-10-12 17:59 - 2018-10-12 18:00 - 000000000 ____D C:\ProgramData\Epic
2018-10-12 17:59 - 2018-10-12 17:59 - 033542144 _____ C:\Users\Vlado\Downloads\EpicInstaller-7.16.0-fortnite-d0fd3d3521c2463284ba9773051cf181.msi
2018-10-09 18:13 - 2018-10-09 18:13 - 026805248 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 023440384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 022112072 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 020809216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 019024384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 012857856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 012151296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 011744256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 009951744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 009696768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2018-10-09 18:13 - 2018-10-09 18:13 - 007861248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 007645600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 006543224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 006062592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 005584056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 005440016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 004588032 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2018-10-09 18:13 - 2018-10-09 18:13 - 003981312 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 003662336 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 003556864 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 003380736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 003378176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 002927096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 002893312 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 002832896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 002721280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 002625552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 002488320 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 002469648 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 002435488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 002323904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 002186752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 002020560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001884672 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001863168 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001830912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001797128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001762816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001672072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001590288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001520208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001495552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001466992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001360896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 001255952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2018-10-09 18:13 - 2018-10-09 18:13 - 001050640 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2018-10-09 18:13 - 2018-10-09 18:13 - 000918496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000863752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 000850960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000582248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000535040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000402376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000398208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpshell.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpshell.dll
2018-10-08 17:18 - 2018-10-08 17:18 - 000000000 ____D C:\ProgramData\Hotspot Shield
2018-10-07 15:52 - 2018-10-07 15:52 - 000000000 ____D C:\Program Files (x86)\Origin Games
2018-10-07 15:49 - 2018-10-03 04:31 - 035296480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2018-10-07 15:49 - 2018-10-03 04:31 - 029972128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2018-10-07 15:49 - 2018-10-03 04:31 - 015907904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2018-10-07 15:49 - 2018-10-03 04:31 - 013202672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2018-10-07 15:49 - 2018-10-03 04:31 - 001167560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2018-10-07 15:49 - 2018-10-03 04:31 - 000914552 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2018-10-07 15:49 - 2018-10-03 01:35 - 000978312 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2018-10-07 15:49 - 2018-10-03 01:35 - 000978312 _____ C:\WINDOWS\system32\vulkan-1.dll
2018-10-07 15:49 - 2018-10-03 01:35 - 000845192 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2018-10-07 15:49 - 2018-10-03 01:35 - 000845192 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2018-10-07 15:49 - 2018-10-03 01:35 - 000268192 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2018-10-07 15:49 - 2018-10-03 01:35 - 000268192 _____ C:\WINDOWS\system32\vulkaninfo.exe
2018-10-07 15:49 - 2018-10-03 01:35 - 000243592 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2018-10-07 15:49 - 2018-10-03 01:35 - 000243592 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2018-10-07 15:49 - 2018-10-03 01:32 - 001998200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2018-10-07 15:49 - 2018-10-03 01:32 - 001507944 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2018-10-07 15:49 - 2018-10-03 01:32 - 001455176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2018-10-07 15:49 - 2018-10-03 01:32 - 001122376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2018-10-07 15:49 - 2018-10-03 01:32 - 000631368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2018-10-07 15:49 - 2018-10-03 01:32 - 000521904 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2018-10-07 15:48 - 2018-10-03 04:30 - 019704344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2018-10-07 15:48 - 2018-10-03 04:30 - 016983304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2018-10-07 15:48 - 2018-10-03 04:30 - 004249912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2018-10-07 15:48 - 2018-10-03 01:32 - 002018352 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6441616.dll
2018-10-07 15:48 - 2018-10-03 01:32 - 001468360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6441616.dll
2018-10-07 15:48 - 2018-10-03 01:31 - 040253672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2018-10-07 15:48 - 2018-10-03 01:31 - 035151592 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2018-10-07 15:48 - 2018-10-03 01:31 - 004938800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2018-10-07 15:48 - 2018-10-03 01:31 - 004310984 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2018-10-06 14:28 - 2018-10-06 14:28 - 002146496 _____ (Panda Security, S.L.) C:\Users\Vlado\Downloads\PANDAFREEAV.exe
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-11-03 11:55 - 2018-09-15 08:33 - 000000000 ___HD C:\Program Files\WindowsApps
2018-11-03 11:55 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2018-11-03 11:54 - 2018-06-09 19:06 - 000000000 ____D C:\Users\Vlado\AppData\Local\CrashDumps
2018-11-03 11:54 - 2017-09-01 10:19 - 000000000 ____D C:\ProgramData\NVIDIA
2018-11-03 11:53 - 2018-07-11 19:05 - 000000000 ____D C:\Users\Vlado\Documents\YouCam
2018-11-03 11:52 - 2018-05-25 07:10 - 000000000 ___RD C:\Users\Vlado\OneDrive
2018-11-03 11:52 - 2018-05-25 07:08 - 000000000 __SHD C:\Users\Vlado\IntelGraphicsProfiles
2018-11-02 21:33 - 2018-10-03 16:07 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2018-11-02 18:37 - 2018-09-15 08:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-11-02 18:30 - 2018-05-24 18:46 - 000000000 ____D C:\Users\Vlado\AppData\Roaming\Skype
2018-11-02 17:26 - 2018-05-25 16:14 - 000000000 ____D C:\Users\Vlado\AppData\LocalLow\Mozilla
2018-10-31 15:37 - 2018-05-25 07:28 - 000002320 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-10-31 15:37 - 2018-05-25 07:28 - 000002279 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-10-30 20:41 - 2018-07-21 10:22 - 000000000 ____D C:\ProgramData\ProductData
2018-10-30 18:19 - 2018-05-25 13:32 - 000000000 ____D C:\Users\Vlado\Desktop\hry
2018-10-29 18:06 - 2018-10-03 16:38 - 000840848 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-10-29 18:06 - 2018-09-15 08:31 - 000000000 ____D C:\WINDOWS\INF
2018-10-29 17:59 - 2018-10-03 16:12 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-10-29 17:59 - 2018-10-03 16:07 - 000595704 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-10-29 17:59 - 2018-09-15 07:09 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2018-10-29 17:43 - 2018-09-21 11:57 - 000000000 ____D C:\Users\Vlado\AppData\Roaming\Zoner
2018-10-29 17:43 - 2018-09-21 11:57 - 000000000 ____D C:\Users\Vlado\AppData\Local\Zoner
2018-10-29 17:07 - 2018-06-08 18:41 - 000000000 ____D C:\Users\Vlado\Documents\FLiNGTrainer
2018-10-26 16:55 - 2018-05-25 07:32 - 000000000 ____D C:\Users\Vlado\AppData\Roaming\Panda Security
2018-10-26 16:55 - 2018-05-25 07:32 - 000000000 ____D C:\Program Files (x86)\Panda Security
2018-10-26 16:55 - 2018-05-25 07:30 - 000000000 ____D C:\ProgramData\Panda Security
2018-10-26 16:53 - 2018-09-15 08:33 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2018-10-26 16:07 - 2018-09-15 07:09 - 000008192 _____ C:\WINDOWS\system32\config\ELAM
2018-10-26 14:34 - 2018-07-12 18:26 - 000000000 ____D C:\Users\Vlado\Desktop\praca
2018-10-25 20:09 - 2018-08-22 13:41 - 000000000 ____D C:\ProgramData\Kaspersky Lab Setup Files
2018-10-25 19:57 - 2018-05-24 21:00 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2018-10-22 14:33 - 2018-05-25 14:23 - 000000000 ____D C:\Users\Vlado\AppData\Local\PlaceholderTileLogoFolder
2018-10-22 14:33 - 2018-05-25 07:08 - 000000000 ____D C:\Users\Vlado\AppData\Local\Packages
2018-10-21 14:10 - 2018-05-25 10:37 - 000000000 ____D C:\Users\Vlado\AppData\Local\D3DSCache
2018-10-21 13:34 - 2018-05-25 12:02 - 000000000 ____D C:\Users\Vlado\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2018-10-19 14:29 - 2018-06-05 14:25 - 000000000 ____D C:\Users\Vlado\AppData\Local\NVIDIA
2018-10-18 14:50 - 2018-10-03 16:12 - 000004218 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1533206182
2018-10-18 14:50 - 2018-08-02 11:36 - 000001377 _____ C:\Users\Vlado\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prehliadač Opera.lnk
2018-10-17 16:41 - 2018-10-03 16:12 - 000004308 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000004106 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003976 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003940 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003866 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003654 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-06-07 16:01 - 000001450 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2018-10-17 16:41 - 2017-09-01 10:19 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2018-10-17 16:41 - 2017-09-01 10:19 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2018-10-17 16:41 - 2017-09-01 10:18 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2018-10-16 14:09 - 2018-10-03 16:12 - 000003376 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3757017093-2623875683-488815004-1001
2018-10-16 14:09 - 2018-10-03 16:08 - 000002374 _____ C:\Users\Vlado\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-10-16 06:46 - 2018-07-11 06:52 - 000000000 ____D C:\ProgramData\Packages
2018-10-14 12:11 - 2018-08-11 16:33 - 000000000 ____D C:\Users\Vlado\AppData\Local\ElevatedDiagnostics
2018-10-12 18:29 - 2018-09-15 08:33 - 000000000 __SHD C:\Users\Public\Libraries
2018-10-12 18:29 - 2018-09-15 08:33 - 000000000 ____D C:\PerfLogs
2018-10-12 18:22 - 2018-06-24 13:28 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2018-10-12 18:00 - 2018-06-24 13:29 - 000000000 ____D C:\Users\Vlado\AppData\Local\UnrealEngine
2018-10-12 18:00 - 2017-09-01 09:52 - 000000000 ____D C:\ProgramData\Package Cache
2018-10-10 21:04 - 2018-05-24 16:50 - 002620456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2018-10-10 21:04 - 2018-05-24 16:50 - 002248232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2018-10-10 21:04 - 2018-05-24 16:50 - 001311784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2018-10-10 19:22 - 2018-05-24 16:49 - 000001951 _____ C:\WINDOWS\NvTelemetryContainerRecovery.bat
2018-10-10 17:55 - 2018-09-15 08:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2018-10-10 16:32 - 2018-09-15 07:09 - 000000000 ____D C:\WINDOWS\servicing
2018-10-09 18:15 - 2018-05-24 20:33 - 000000000 ___RD C:\Users\Vlado\3D Objects
2018-10-09 18:15 - 2017-03-23 18:27 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-10-09 18:13 - 2018-09-15 17:25 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2018-10-09 18:13 - 2018-09-15 17:25 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2018-10-09 18:13 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\appraiser
2018-10-09 18:13 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\bcastdvr
2018-10-09 18:12 - 2018-05-24 19:21 - 000000000 ____D C:\WINDOWS\system32\MRT
2018-10-09 18:11 - 2018-05-24 19:21 - 136745976 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2018-10-07 15:53 - 2018-06-09 18:52 - 000000000 ____D C:\Users\Vlado\AppData\Roaming\Origin
2018-10-07 15:52 - 2018-05-24 18:21 - 000000000 ____D C:\ProgramData\Origin
2018-10-07 15:43 - 2018-05-24 17:25 - 000000000 ____D C:\Users\Vlado\AppData\Local\NVIDIA Corporation
2018-10-06 14:31 - 2018-08-22 13:50 - 000000000 ____D C:\Users\Vlado\AppData\Local\Avg
2018-10-06 14:31 - 2018-08-22 13:49 - 000000000 ____D C:\ProgramData\AVG
2018-10-06 10:54 - 2018-10-03 16:13 - 000000000 ____D C:\Users\Vlado\AppData\Local\PackageStaging
2018-10-04 14:20 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\appcompat
==================== Files in the root of some directories =======
2018-10-02 14:26 - 2018-10-02 14:26 - 000000000 _____ () C:\Users\Vlado\AppData\Local\oobelibMkey.log
Some files in TEMP:
====================
2018-10-27 17:49 - 2018-10-27 17:49 - 000000000 _____ () C:\Users\Vlado\AppData\Local\Temp\00e481b5e22dbe1f649fcddd505d3eb7.dll
2018-10-27 17:49 - 2018-10-27 17:49 - 000000016 _____ () C:\Users\Vlado\AppData\Local\Temp\a3b624dfdcbf7b62b2fec8d382197774.dll
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
==================== End of FRST.txt ============================
Ran by Vlado (administrator) on LAPTOP-RSV8O8AU (03-11-2018 11:56:27)
Running from C:\Users\Vlado\Desktop
Loaded Profiles: Vlado & (Available Profiles: Vlado)
Platform: Windows 10 Home Version 1809 17763.55 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
() C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\IntelCpHDCPSvc.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(IObit) C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe
(arvato digital services llc) C:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\IntelCpHeciSvc.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
Failed to access process -> backgroundTaskHost.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_1a33d2f73651d989\igfxEM.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Windows\System32\SecurityHealthSystray.exe
(Lenovo(beijing) Limited) C:\Program Files\Lenovo\LenovoUtility\utility.exe
(Lenovo Group Limited) C:\Program Files\Lenovo\ImController\PluginHost\Lenovo.Modern.ImController.PluginHost.SettingsApp.exe
(ZONER software) C:\Program Files\Zoner\Photo Studio 19\Program32\ZPSTray.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Elaborate Bytes AG) C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\YouCam7\YouCamService7.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
(Panda Security, S.L.) C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD14\PDVD14Serv.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
() C:\Program Files (x86)\Adobe\Adobe Sync\CoreSync\CoreSync.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe
(Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\HEX\Adobe CEF Helper.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
() C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1809.2731.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_11809.1001.8.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\cmd.exe
(Lenovo Group Limited) C:\Users\Vlado\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe
(Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.17763.52_none_96d83ec8e9f322fc\TiWorker.exe
() C:\Program Files\WindowsApps\Microsoft.WindowsAlarms_10.1809.2731.0_x64__8wekyb3d8bbwe\Time.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SecurityHealth] => C:\WINDOWS\system32\SecurityHealthSystray.exe [83968 2018-09-15] (Microsoft Corporation)
HKLM\...\Run: [LenovoUtility] => C:\Program Files\Lenovo\LenovoUtility\utility.exe [914344 2017-06-14] (Lenovo(beijing) Limited)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2670056 2018-09-10] (Adobe Systems, Incorporated)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [31016 2006-10-26] (Microsoft Corporation)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [653728 2018-03-26] (Oracle Corporation)
HKLM-x32\...\Run: [VirtualCloneDrive] => C:\Program Files (x86)\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe [88984 2013-03-10] (Elaborate Bytes AG)
HKLM-x32\...\Run: [YouCam Service7] => C:\Program Files (x86)\CyberLink\YouCam7\YouCamService7.exe [454072 2015-06-09] (CyberLink Corp.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2407008 2017-09-20] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [PSUAMain] => C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAMain.exe [153296 2018-05-30] (Panda Security, S.L.)
HKLM\...\Winlogon: [Userinit] C:\WINDOWS\SysWOW64\userinit.exe,
HKU\S-1-5-21-3757017093-2623875683-488815004-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\Program Files\Zoner\Photo Studio 19\Program32\ZPSTRAY.EXE [604128 2018-10-12] (ZONER software)
HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10312018073140677\...\Run: [Zoner Photo Studio Autoupdate] => C:\Program Files\Zoner\Photo Studio 19\Program32\ZPSTRAY.EXE [604128 2018-10-12] (ZONER software)
HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018115333431\...\Run: [Zoner Photo Studio Autoupdate] => C:\Program Files\Zoner\Photo Studio 19\Program32\ZPSTRAY.EXE [604128 2018-10-12] (ZONER software)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 217.23.254.124 217.23.254.125
Tcpip\..\Interfaces\{48fce1a9-e4b0-402e-8a6d-8e18fa3ad758}: [DhcpNameServer] 217.23.254.124 217.23.254.125
Tcpip\..\Interfaces\{d53ff755-1670-4c93-bd8b-633392b9539b}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKU\S-1-5-21-3757017093-2623875683-488815004-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3757017093-2623875683-488815004-1001\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com
HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10312018073140677\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10312018073140677\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com
HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018115333431\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018115333431\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://mystart.lenovo.com
BHO: ExplorerWnd Helper -> {10921475-03CE-4E04-90CE-E2E7EF20C814} -> C:\Program Files (x86)\IObit\IObit Uninstaller\UninstallExplorer.dll [2018-01-25] (IObit)
BHO: No Name -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> No File
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre-10.0.1\bin\jp2ssv.dll [2018-05-30] (Oracle Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-26] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\ssv.dll [2018-05-24] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\jp2ssv.dll [2018-05-24] (Oracle Corporation)
Edge:
======
Edge Extension: (BookReader) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets [2018-09-15]
Edge Extension: (PinJSAPI) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [2018-09-15]
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=13.0.1.0 -> C:\Program Files\Java\jre-10.0.1\bin\dtplugin\npDeployJava1.dll [2018-05-30] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=13.0.1.0 -> C:\Program Files\Java\jre-10.0.1\bin\plugin2\npjp2.dll [2018-05-30] (Oracle Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2017-09-20] (Adobe Systems)
FF Plugin-x32: @java.com/DTPlugin,version=11.171.2 -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\dtplugin\npDeployJava1.dll [2018-05-24] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.171.2 -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\plugin2\npjp2.dll [2018-05-24] (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-25] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-25] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2018-09-20] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2017-09-20] (Adobe Systems)
Chrome:
=======
CHR DefaultProfile: Default
CHR NewTab: Default -> Not-active:"chrome-extension://olfeabkoenfaoljndfecamgilllcpiak/speeddial/newTab.html"
CHR Profile: C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default [2018-11-03]
CHR Extension: (Prezentácie) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-05-25]
CHR Extension: (Dokumenty) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-05-25]
CHR Extension: (Disk Google) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-05-25]
CHR Extension: (Seznam doplněk - Email) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2018-09-07]
CHR Extension: (YouTube) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-05-25]
CHR Extension: (Adblock Plus) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2018-10-31]
CHR Extension: (Tabuľky) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-05-25]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-20]
CHR Extension: (AdBlock) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-10-16]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-05-25]
CHR Extension: (Seznam doplněk - Esko) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2018-09-07]
CHR Extension: (Gmail) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-05-25]
CHR Extension: (Chrome Media Router) - C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-11-01]
CHR Profile: C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\Guest Profile [2018-06-28]
CHR Profile: C:\Users\Vlado\AppData\Local\Google\Chrome\User Data\System Profile [2018-06-28]
CHR HKU\S-1-5-21-3757017093-2623875683-488815004-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3757017093-2623875683-488815004-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10312018073140677\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-10312018073140677\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018115333431\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [bgjpfhpjcgdppjbgnpnjllokbmcdllig] - hxxps://clients2.google.com/service/update2/crx
CHR HKU\S-1-5-21-3757017093-2623875683-488815004-1001-{ED1FC765-E35E-4C3D-BF15-2C2B11260CE4}-11032018115333431\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [olfeabkoenfaoljndfecamgilllcpiak] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [817760 2017-09-20] (Adobe Systems Incorporated)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2910696 2018-09-10] (Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2704872 2018-09-10] (Adobe Systems, Incorporated)
R2 AtherosSvc; C:\WINDOWS\System32\drivers\AdminService.exe [414696 2018-01-08] (Windows (R) Win 7 DDK provider)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [7361312 2018-10-10] ()
R2 BrokerInfrastructure; C:\WINDOWS\System32\psmsrv.dll [241664 2018-09-15] (Microsoft Corporation)
S3 cbdhsvc; C:\WINDOWS\System32\cbdhsvc.dll [961024 2018-09-15] (Microsoft Corporation)
S3 ConsentUxUserSvc; C:\WINDOWS\System32\ConsentUxClient.dll [157696 2018-09-15] (Microsoft Corporation)
R3 DisplayEnhancementService; C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll [914944 2018-09-15] (Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [784512 2018-10-12] (EasyAntiCheat Ltd)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144600 2017-10-22] (ELAN Microelectronics Corp.)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2018-04-20] () [File not signed]
S3 iaStorAfsService; C:\WINDOWS\IAStorAfsService\iaStorAfsService.exe [2410672 2017-11-27] (Intel Corporation)
R2 ImControllerService; C:\Program Files\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [71408 2018-05-16] (Lenovo Group Limited)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\SocketHeciServer.exe [742704 2017-10-11] (Intel(R) Corporation)
S2 Intel(R) TPM Provisioning Service; C:\Program Files\Intel\Intel(R) Management Engine Components\iCLS\TPMProvisioningService.exe [668472 2017-10-11] (Intel(R) Corporation)
R2 IObitUnSvr; C:\Program Files (x86)\IObit\IObit Uninstaller\IUService.exe [206096 2018-01-25] (IObit)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [213648 2017-11-08] (Intel Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6347056 2018-09-19] (Malwarebytes)
R2 NanoServiceMain; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSANHost.exe [109024 2017-11-08] (Panda Security, S.L.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [773160 2018-10-10] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [773160 2018-10-10] (NVIDIA Corporation)
S3 Origin Client Service; F:\origin\OriginClientService.exe [2216256 2018-09-13] (Electronic Arts)
S2 Origin Web Helper Service; F:\origin\OriginWebHelperService.exe [3087176 2018-09-13] (Electronic Arts)
S3 Panda VPN Service; C:\Program Files (x86)\Panda Security\Panda Security Protection\Hydra.Sdk.Windows.Service.exe [320848 2017-11-20] ()
R2 PandaAgent; C:\Program Files (x86)\Panda Security\Panda Devices Agent\AgentSvc.exe [86104 2016-07-19] (Panda Security, S.L.)
S3 perceptionsimulation; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [78848 2018-09-15] (Microsoft Corporation)
R2 PSI_SVC_2; c:\Program Files (x86)\Common Files\Protexis\License Service\PsiService_2.exe [277360 2014-04-30] (arvato digital services llc)
R2 PSUAService; C:\Program Files (x86)\Panda Security\Panda Security Protection\PSUAService.exe [48784 2018-05-30] (Panda Security, S.L.)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [324552 2018-03-29] (Realtek Semiconductor)
S4 ssh-agent; C:\WINDOWS\System32\OpenSSH\ssh-agent.exe [384512 2018-09-15] ()
S3 wampapache64; c:\wamp64\bin\apache\apache2.4.33\bin\httpd.exe [30720 2018-03-18] (Apache Software Foundation) [File not signed]
S3 wampmariadb64; c:\wamp64\bin\mariadb\mariadb10.2.14\bin\mysqld.exe [14550440 2018-03-26] ()
S3 wampmysqld64; c:\wamp64\bin\mysql\mysql5.7.21\bin\mysqld.exe [39551488 2017-12-28] () [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3830488 2018-09-15] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [110944 2018-09-15] (Microsoft Corporation)
S3 WManSvc; C:\WINDOWS\system32\Windows.Management.Service.dll [370176 2018-09-15] (Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 aftap0901; C:\WINDOWS\System32\drivers\aftap0901.sys [48624 2017-11-16] (The OpenVPN Project)
R1 BasicDisplay; C:\WINDOWS\System32\DriverStore\FileRepository\basicdisplay.inf_amd64_5103ac179273be89\BasicDisplay.sys [68096 2018-09-15] (Microsoft Corporation)
R1 BasicRender; C:\WINDOWS\System32\DriverStore\FileRepository\basicrender.inf_amd64_0b8d03c3bc0e7fd9\BasicRender.sys [37376 2018-09-15] (Microsoft Corporation)
R3 BtFilter; C:\WINDOWS\System32\drivers\btfilter.sys [65448 2018-01-08] (Qualcomm)
S3 BthMini; C:\WINDOWS\System32\drivers\BTHMINI.sys [34816 2018-09-15] (Microsoft Corporation)
R1 CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [100624 2015-06-09] (CyberLink)
R3 clwvd7; C:\WINDOWS\system32\DRIVERS\clwvd7.sys [42968 2015-03-24] (CyberLink Corporation)
R1 ESProtectionDriver; C:\WINDOWS\system32\drivers\mbae64.sys [152688 2018-10-29] (Malwarebytes)
R3 ETDHCF; C:\WINDOWS\System32\drivers\ETDHCF.sys [29256 2017-10-22] (ELAN Microelectronics Corp.)
S3 hidspi; C:\WINDOWS\System32\drivers\hidspi.sys [60928 2018-09-15] (Microsoft Corporation)
S3 iaLPSS2i_GPIO2_CNL; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [112128 2018-09-15] (Intel Corporation)
S3 iaLPSS2i_GPIO2_GLK; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [96256 2018-09-15] (Intel Corporation)
S3 iaLPSS2i_I2C_CNL; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [180736 2018-09-15] (Intel Corporation)
S3 iaLPSS2i_I2C_GLK; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [177664 2018-09-15] (Intel Corporation)
S3 iaStorAfs; C:\WINDOWS\System32\drivers\iaStorAfs.sys [69632 2017-11-27] (Intel Corporation)
R3 IUFileFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IUFileFilter.sys [39904 2017-06-06] (IObit.com)
R3 IURegProcessFilter; C:\Program Files (x86)\IObit\IObit Uninstaller\drivers\win10_amd64\IURegProcessFilter.sys [40328 2018-01-10] (IObit.com)
R2 MBAMChameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [198000 2018-10-29] (Malwarebytes)
R3 MBAMFarflt; C:\WINDOWS\System32\DRIVERS\farflt.sys [119136 2018-10-29] (Malwarebytes)
R3 MBAMProtection; C:\WINDOWS\system32\DRIVERS\mbam.sys [63768 2018-10-29] (Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [260480 2018-10-29] (Malwarebytes)
R3 MBAMWebProtection; C:\WINDOWS\system32\DRIVERS\mwac.sys [111152 2018-11-03] (Malwarebytes)
S3 MbbCx; C:\WINDOWS\System32\drivers\MbbCx.sys [290816 2018-09-15] (Microsoft Corporation)
S3 Microsoft_Bluetooth_AvrcpTransport; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [53760 2018-09-15] (Microsoft Corporation)
R1 NNSALPC; C:\WINDOWS\system32\DRIVERS\NNSALPC.sys [108000 2017-11-06] (Panda Security, S.L.)
R1 NNSHTTP; C:\WINDOWS\system32\DRIVERS\NNSHTTP.sys [211936 2017-11-06] (Panda Security, S.L.)
R1 NNSHTTPS; C:\WINDOWS\system32\DRIVERS\NNSHTTPS.sys [121312 2017-11-06] (Panda Security, S.L.)
R1 NNSIDS; C:\WINDOWS\system32\DRIVERS\NNSIDS.sys [126432 2017-11-06] (Panda Security, S.L.)
R1 NNSNAHSL; C:\WINDOWS\system32\DRIVERS\NNSNAHSL.sys [99512 2017-09-26] (Panda Security, S.L.)
R1 NNSPICC; C:\WINDOWS\system32\DRIVERS\NNSPICC.sys [118240 2017-11-06] (Panda Security, S.L.)
R1 NNSPIHSW; C:\WINDOWS\system32\DRIVERS\NNSPIHSW.sys [91616 2017-11-06] (Panda Security, S.L.)
R1 NNSPOP3; C:\WINDOWS\system32\DRIVERS\NNSPOP3.sys [135648 2017-11-06] (Panda Security, S.L.)
R1 NNSPROT; C:\WINDOWS\system32\DRIVERS\NNSPROT.sys [336352 2017-11-06] (Panda Security, S.L.)
R1 NNSPRV; C:\WINDOWS\system32\DRIVERS\NNSPRV.sys [249312 2017-11-06] (Panda Security, S.L.)
R1 NNSSMTP; C:\WINDOWS\system32\DRIVERS\NNSSMTP.sys [123360 2017-11-06] (Panda Security, S.L.)
R1 NNSSTRM; C:\WINDOWS\system32\DRIVERS\NNSSTRM.sys [281056 2017-11-06] (Panda Security, S.L.)
R1 NNSTLSC; C:\WINDOWS\system32\DRIVERS\NNSTLSC.sys [125920 2017-11-06] (Panda Security, S.L.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvlti.inf_amd64_b0804a8322213783\nvlddmkm.sys [20605496 2018-10-03] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30792 2018-08-21] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69544 2018-06-08] (NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [74576 2018-10-01] (NVIDIA Corporation)
S3 PktMon; C:\WINDOWS\System32\drivers\PktMon.sys [85504 2018-09-15] (Microsoft Corporation)
R2 PSINAflt; C:\WINDOWS\system32\DRIVERS\PSINAflt.sys [191448 2017-11-08] (Panda Security, S.L.)
R2 PSINFile; C:\WINDOWS\System32\DRIVERS\PSINFile.sys [153992 2018-01-23] (Panda Security, S.L.)
R1 PSINKNC; C:\WINDOWS\system32\DRIVERS\PSINKNC.sys [207248 2018-01-30] (Panda Security, S.L.)
R2 PSINProc; C:\WINDOWS\System32\DRIVERS\PSINProc.sys [146912 2017-10-17] (Panda Security, S.L.)
R2 PSINProt; C:\WINDOWS\system32\DRIVERS\PSINProt.sys [159200 2017-10-17] (Panda Security, S.L.)
R2 PSINReg; C:\WINDOWS\system32\DRIVERS\PSINReg.sys [129504 2017-10-17] (Panda Security, S.L.)
U3 PSKMAD; C:\WINDOWS\System32\DRIVERS\PSKMAD.sys [72648 2017-05-22] (Panda Security, S.L.)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1010648 2017-12-13] (Realtek )
S0 SmartSAMD; C:\WINDOWS\System32\drivers\SmartSAMD.sys [219960 2018-09-15] (Microsemi Corportation)
R3 SNP2UVCW10; C:\WINDOWS\system32\DRIVERS\snUVCg2.sys [1710128 2017-11-05] (Sonix Tech. Co., Ltd.)
S3 UcmUcsiAcpiClient; C:\WINDOWS\System32\drivers\UcmUcsiAcpiClient.sys [31232 2018-09-15] (Microsoft Corporation)
S3 UcmUcsiCx0101; C:\WINDOWS\System32\Drivers\UcmUcsiCx.sys [99840 2018-09-15] (Microsoft Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46584 2018-09-15] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [340008 2018-09-15] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [61992 2018-09-15] (Microsoft Corporation)
R3 WinQuic; C:\WINDOWS\System32\drivers\winquic.sys [156984 2018-09-15] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
NETSVC: WManSvc -> C:\Windows\system32\Windows.Management.Service.dll (Microsoft Corporation)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-11-03 11:56 - 2018-11-03 11:56 - 000028869 _____ C:\Users\Vlado\Desktop\FRST.txt
2018-11-03 11:56 - 2018-11-03 11:56 - 000000000 ____D C:\FRST
2018-11-03 11:55 - 2018-11-03 11:55 - 002414592 _____ (Farbar) C:\Users\Vlado\Desktop\FRST64.exe
2018-11-03 11:52 - 2018-11-03 11:52 - 000000000 ___HD C:\OneDriveTemp
2018-11-02 18:30 - 2018-11-02 18:30 - 062774584 _____ (Skype Technologies S.A.) C:\Users\Vlado\Downloads\Skype-8.33.0.50.exe
2018-11-02 18:30 - 2018-11-02 18:30 - 000001386 _____ C:\Users\Public\Desktop\Skype.lnk
2018-11-02 18:30 - 2018-11-02 18:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2018-10-30 18:14 - 2018-10-30 18:15 - 000000000 ____D C:\Users\Vlado\AppData\Roaming\Game
2018-10-30 18:14 - 2018-10-30 18:14 - 000000000 ____D C:\Users\Public\Documents\Steam
2018-10-30 18:11 - 2018-10-30 18:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crash Bandicoot N Sane Trilogy
2018-10-30 12:28 - 2018-10-30 12:28 - 000241060 _____ C:\Users\Vlado\Downloads\absolutne-poradie-hhbd-2018.pdf
2018-10-29 18:00 - 2018-11-03 11:53 - 000111152 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mwac.sys
2018-10-29 18:00 - 2018-10-29 18:00 - 000260480 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2018-10-29 18:00 - 2018-10-29 18:00 - 000119136 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\farflt.sys
2018-10-29 18:00 - 2018-10-29 18:00 - 000063768 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2018-10-29 17:42 - 2018-10-29 17:42 - 000002038 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Zoner Photo Studio X.lnk
2018-10-29 17:42 - 2018-10-29 17:42 - 000002032 _____ C:\Users\Public\Desktop\Zoner Photo Studio X.lnk
2018-10-29 17:42 - 2018-10-29 17:42 - 000000000 ____D C:\Program Files\Zoner
2018-10-29 17:12 - 2018-10-29 17:27 - 167571348 _____ C:\Users\Vlado\Downloads\Zoner Photo Studio X 19.1809.2.83.rar
2018-10-29 17:09 - 2018-10-29 17:09 - 000198000 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2018-10-26 16:55 - 2018-10-26 16:56 - 000002305 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Dome.lnk
2018-10-26 16:55 - 2018-10-26 16:56 - 000002288 _____ C:\Users\Public\Desktop\Panda Dome.lnk
2018-10-26 16:55 - 2018-10-26 16:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Panda Dome
2018-10-26 16:55 - 2018-01-30 14:19 - 000207248 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINKNC.sys
2018-10-26 16:55 - 2017-11-08 23:43 - 000191448 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINAflt.sys
2018-10-26 16:55 - 2017-11-06 07:07 - 000281056 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsstrm.sys
2018-10-26 16:55 - 2017-11-06 07:07 - 000125920 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnstlsc.sys
2018-10-26 16:55 - 2017-11-06 07:06 - 000336352 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsprot.sys
2018-10-26 16:55 - 2017-11-06 07:06 - 000135648 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnspop3.sys
2018-10-26 16:55 - 2017-11-06 07:06 - 000123360 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnssmtp.sys
2018-10-26 16:55 - 2017-11-06 07:02 - 000118240 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnspicc.sys
2018-10-26 16:55 - 2017-11-06 07:02 - 000091616 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnspihsw.sys
2018-10-26 16:55 - 2017-11-06 07:01 - 000211936 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnshttp.sys
2018-10-26 16:55 - 2017-11-06 07:01 - 000126432 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsids.sys
2018-10-26 16:55 - 2017-11-06 07:01 - 000121312 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnshttps.sys
2018-10-26 16:55 - 2017-11-06 07:01 - 000108000 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\nnsalpc.sys
2018-10-26 16:55 - 2017-10-17 02:31 - 000159200 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINProt.sys
2018-10-26 16:55 - 2017-10-17 02:31 - 000129504 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSINReg.sys
2018-10-26 16:55 - 2017-05-22 06:01 - 000072648 _____ (Panda Security, S.L.) C:\WINDOWS\system32\Drivers\PSKMAD.sys
2018-10-25 20:11 - 2018-10-29 17:59 - 000000000 ____D C:\Program Files\Common Files\AV
2018-10-25 20:10 - 2018-10-26 16:53 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2018-10-23 17:12 - 2018-10-29 17:08 - 000152688 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae64.sys
2018-10-23 17:12 - 2018-10-23 17:12 - 000001919 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2018-10-23 17:12 - 2018-10-23 17:12 - 000000000 ____D C:\Users\Vlado\AppData\Local\mbamtray
2018-10-23 17:12 - 2018-10-23 17:12 - 000000000 ____D C:\Users\Vlado\AppData\Local\mbam
2018-10-23 17:12 - 2018-10-23 17:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2018-10-23 17:12 - 2018-10-23 17:12 - 000000000 ____D C:\ProgramData\Malwarebytes
2018-10-23 17:12 - 2018-10-23 17:12 - 000000000 ____D C:\Program Files\Malwarebytes
2018-10-23 17:11 - 2018-10-23 17:11 - 080022264 _____ (Malwarebytes ) C:\Users\Vlado\Downloads\mb3-setup-35891.35891-3.6.1.2711-1.0.463-1.0.6913.exe
2018-10-21 14:10 - 2018-10-21 14:10 - 000000000 ____D C:\Users\Vlado\AppData\Local\PAYDAY
2018-10-21 11:50 - 2018-10-23 17:33 - 000000000 ____D C:\Users\Vlado\AppData\Roaming\Twitch
2018-10-21 11:50 - 2018-10-21 11:50 - 000000979 _____ C:\Users\Vlado\Desktop\Twitch.lnk
2018-10-21 11:50 - 2018-10-21 11:50 - 000000965 _____ C:\Users\Vlado\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Twitch.lnk
2018-10-21 11:50 - 2018-10-21 11:50 - 000000000 ____D C:\ProgramData\Twitch
2018-10-21 11:49 - 2018-10-21 11:49 - 087447456 _____ C:\Users\Vlado\Downloads\TwitchSetup_[usher-268306925].exe
2018-10-18 15:29 - 2018-10-18 15:29 - 000000000 ____D C:\WINDOWS\Panther
2018-10-18 14:56 - 2018-10-18 14:56 - 000654652 _____ C:\Users\Vlado\Downloads\Cennk_W177_2018_07_27_akt.pdf
2018-10-12 18:29 - 2018-10-12 18:29 - 000000000 _____ C:\Users\Public\Shared Files
2018-10-12 18:22 - 2018-10-12 18:22 - 000000000 ____D C:\Users\Vlado\AppData\Roaming\EasyAntiCheat
2018-10-12 18:22 - 2018-10-12 18:22 - 000000000 ____D C:\Users\Vlado\AppData\Local\FortniteGame
2018-10-12 18:00 - 2018-10-12 18:00 - 000000999 _____ C:\Users\Public\Desktop\Epic Games Launcher.lnk
2018-10-12 18:00 - 2018-10-12 18:00 - 000000999 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2018-10-12 18:00 - 2018-10-12 18:00 - 000000000 ____D C:\Users\Vlado\AppData\Local\UnrealEngineLauncher
2018-10-12 18:00 - 2018-10-12 18:00 - 000000000 ____D C:\Users\Vlado\AppData\Local\EpicGamesLauncher
2018-10-12 17:59 - 2018-10-12 18:00 - 000000000 ____D C:\ProgramData\Epic
2018-10-12 17:59 - 2018-10-12 17:59 - 033542144 _____ C:\Users\Vlado\Downloads\EpicInstaller-7.16.0-fortnite-d0fd3d3521c2463284ba9773051cf181.msi
2018-10-09 18:13 - 2018-10-09 18:13 - 026805248 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 023440384 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 022112072 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 020809216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 019024384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 012857856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 012151296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 011744256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 009951744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 009696768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2018-10-09 18:13 - 2018-10-09 18:13 - 007861248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 007645600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 006543224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 006062592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 005584056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 005440016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 004588032 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2018-10-09 18:13 - 2018-10-09 18:13 - 003981312 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 003662336 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 003556864 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 003380736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 003378176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 002927096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 002893312 _____ (Microsoft Corporation) C:\WINDOWS\system32\themeui.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 002832896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\themeui.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 002721280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 002625552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 002488320 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 002469648 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 002435488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 002323904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 002186752 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 002020560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001884672 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001863168 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001830912 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001797128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001762816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001672072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001590288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001520208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001495552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001466992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 001360896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 001255952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2018-10-09 18:13 - 2018-10-09 18:13 - 001050640 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2018-10-09 18:13 - 2018-10-09 18:13 - 000918496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000863752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 000850960 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000582248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CoreMessaging.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000535040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoMetadataHandler.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000439296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2018-10-09 18:13 - 2018-10-09 18:13 - 000403968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoMetadataHandler.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000402376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000398208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000343552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpshell.dll
2018-10-09 18:13 - 2018-10-09 18:13 - 000104960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmpshell.dll
2018-10-08 17:18 - 2018-10-08 17:18 - 000000000 ____D C:\ProgramData\Hotspot Shield
2018-10-07 15:52 - 2018-10-07 15:52 - 000000000 ____D C:\Program Files (x86)\Origin Games
2018-10-07 15:49 - 2018-10-03 04:31 - 035296480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2018-10-07 15:49 - 2018-10-03 04:31 - 029972128 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvopencl.dll
2018-10-07 15:49 - 2018-10-03 04:31 - 015907904 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2018-10-07 15:49 - 2018-10-03 04:31 - 013202672 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2018-10-07 15:49 - 2018-10-03 04:31 - 001167560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2018-10-07 15:49 - 2018-10-03 04:31 - 000914552 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2018-10-07 15:49 - 2018-10-03 01:35 - 000978312 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2018-10-07 15:49 - 2018-10-03 01:35 - 000978312 _____ C:\WINDOWS\system32\vulkan-1.dll
2018-10-07 15:49 - 2018-10-03 01:35 - 000845192 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2018-10-07 15:49 - 2018-10-03 01:35 - 000845192 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2018-10-07 15:49 - 2018-10-03 01:35 - 000268192 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2018-10-07 15:49 - 2018-10-03 01:35 - 000268192 _____ C:\WINDOWS\system32\vulkaninfo.exe
2018-10-07 15:49 - 2018-10-03 01:35 - 000243592 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2018-10-07 15:49 - 2018-10-03 01:35 - 000243592 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2018-10-07 15:49 - 2018-10-03 01:32 - 001998200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2018-10-07 15:49 - 2018-10-03 01:32 - 001507944 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2018-10-07 15:49 - 2018-10-03 01:32 - 001455176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2018-10-07 15:49 - 2018-10-03 01:32 - 001122376 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2018-10-07 15:49 - 2018-10-03 01:32 - 000631368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2018-10-07 15:49 - 2018-10-03 01:32 - 000521904 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2018-10-07 15:48 - 2018-10-03 04:30 - 019704344 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2018-10-07 15:48 - 2018-10-03 04:30 - 016983304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2018-10-07 15:48 - 2018-10-03 04:30 - 004249912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2018-10-07 15:48 - 2018-10-03 01:32 - 002018352 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6441616.dll
2018-10-07 15:48 - 2018-10-03 01:32 - 001468360 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6441616.dll
2018-10-07 15:48 - 2018-10-03 01:31 - 040253672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2018-10-07 15:48 - 2018-10-03 01:31 - 035151592 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2018-10-07 15:48 - 2018-10-03 01:31 - 004938800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2018-10-07 15:48 - 2018-10-03 01:31 - 004310984 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2018-10-06 14:28 - 2018-10-06 14:28 - 002146496 _____ (Panda Security, S.L.) C:\Users\Vlado\Downloads\PANDAFREEAV.exe
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-11-03 11:55 - 2018-09-15 08:33 - 000000000 ___HD C:\Program Files\WindowsApps
2018-11-03 11:55 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2018-11-03 11:54 - 2018-06-09 19:06 - 000000000 ____D C:\Users\Vlado\AppData\Local\CrashDumps
2018-11-03 11:54 - 2017-09-01 10:19 - 000000000 ____D C:\ProgramData\NVIDIA
2018-11-03 11:53 - 2018-07-11 19:05 - 000000000 ____D C:\Users\Vlado\Documents\YouCam
2018-11-03 11:52 - 2018-05-25 07:10 - 000000000 ___RD C:\Users\Vlado\OneDrive
2018-11-03 11:52 - 2018-05-25 07:08 - 000000000 __SHD C:\Users\Vlado\IntelGraphicsProfiles
2018-11-02 21:33 - 2018-10-03 16:07 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2018-11-02 18:37 - 2018-09-15 08:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-11-02 18:30 - 2018-05-24 18:46 - 000000000 ____D C:\Users\Vlado\AppData\Roaming\Skype
2018-11-02 17:26 - 2018-05-25 16:14 - 000000000 ____D C:\Users\Vlado\AppData\LocalLow\Mozilla
2018-10-31 15:37 - 2018-05-25 07:28 - 000002320 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-10-31 15:37 - 2018-05-25 07:28 - 000002279 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-10-30 20:41 - 2018-07-21 10:22 - 000000000 ____D C:\ProgramData\ProductData
2018-10-30 18:19 - 2018-05-25 13:32 - 000000000 ____D C:\Users\Vlado\Desktop\hry
2018-10-29 18:06 - 2018-10-03 16:38 - 000840848 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2018-10-29 18:06 - 2018-09-15 08:31 - 000000000 ____D C:\WINDOWS\INF
2018-10-29 17:59 - 2018-10-03 16:12 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2018-10-29 17:59 - 2018-10-03 16:07 - 000595704 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2018-10-29 17:59 - 2018-09-15 07:09 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2018-10-29 17:43 - 2018-09-21 11:57 - 000000000 ____D C:\Users\Vlado\AppData\Roaming\Zoner
2018-10-29 17:43 - 2018-09-21 11:57 - 000000000 ____D C:\Users\Vlado\AppData\Local\Zoner
2018-10-29 17:07 - 2018-06-08 18:41 - 000000000 ____D C:\Users\Vlado\Documents\FLiNGTrainer
2018-10-26 16:55 - 2018-05-25 07:32 - 000000000 ____D C:\Users\Vlado\AppData\Roaming\Panda Security
2018-10-26 16:55 - 2018-05-25 07:32 - 000000000 ____D C:\Program Files (x86)\Panda Security
2018-10-26 16:55 - 2018-05-25 07:30 - 000000000 ____D C:\ProgramData\Panda Security
2018-10-26 16:53 - 2018-09-15 08:33 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2018-10-26 16:07 - 2018-09-15 07:09 - 000008192 _____ C:\WINDOWS\system32\config\ELAM
2018-10-26 14:34 - 2018-07-12 18:26 - 000000000 ____D C:\Users\Vlado\Desktop\praca
2018-10-25 20:09 - 2018-08-22 13:41 - 000000000 ____D C:\ProgramData\Kaspersky Lab Setup Files
2018-10-25 19:57 - 2018-05-24 21:00 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2018-10-22 14:33 - 2018-05-25 14:23 - 000000000 ____D C:\Users\Vlado\AppData\Local\PlaceholderTileLogoFolder
2018-10-22 14:33 - 2018-05-25 07:08 - 000000000 ____D C:\Users\Vlado\AppData\Local\Packages
2018-10-21 14:10 - 2018-05-25 10:37 - 000000000 ____D C:\Users\Vlado\AppData\Local\D3DSCache
2018-10-21 13:34 - 2018-05-25 12:02 - 000000000 ____D C:\Users\Vlado\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2018-10-19 14:29 - 2018-06-05 14:25 - 000000000 ____D C:\Users\Vlado\AppData\Local\NVIDIA
2018-10-18 14:50 - 2018-10-03 16:12 - 000004218 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1533206182
2018-10-18 14:50 - 2018-08-02 11:36 - 000001377 _____ C:\Users\Vlado\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prehliadač Opera.lnk
2018-10-17 16:41 - 2018-10-03 16:12 - 000004308 _____ C:\WINDOWS\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000004106 _____ C:\WINDOWS\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003976 _____ C:\WINDOWS\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003940 _____ C:\WINDOWS\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003926 _____ C:\WINDOWS\System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003894 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003866 _____ C:\WINDOWS\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003858 _____ C:\WINDOWS\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-10-03 16:12 - 000003654 _____ C:\WINDOWS\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-17 16:41 - 2018-06-07 16:01 - 000001450 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2018-10-17 16:41 - 2017-09-01 10:19 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2018-10-17 16:41 - 2017-09-01 10:19 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2018-10-17 16:41 - 2017-09-01 10:18 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2018-10-16 14:09 - 2018-10-03 16:12 - 000003376 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3757017093-2623875683-488815004-1001
2018-10-16 14:09 - 2018-10-03 16:08 - 000002374 _____ C:\Users\Vlado\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-10-16 06:46 - 2018-07-11 06:52 - 000000000 ____D C:\ProgramData\Packages
2018-10-14 12:11 - 2018-08-11 16:33 - 000000000 ____D C:\Users\Vlado\AppData\Local\ElevatedDiagnostics
2018-10-12 18:29 - 2018-09-15 08:33 - 000000000 __SHD C:\Users\Public\Libraries
2018-10-12 18:29 - 2018-09-15 08:33 - 000000000 ____D C:\PerfLogs
2018-10-12 18:22 - 2018-06-24 13:28 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2018-10-12 18:00 - 2018-06-24 13:29 - 000000000 ____D C:\Users\Vlado\AppData\Local\UnrealEngine
2018-10-12 18:00 - 2017-09-01 09:52 - 000000000 ____D C:\ProgramData\Package Cache
2018-10-10 21:04 - 2018-05-24 16:50 - 002620456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2018-10-10 21:04 - 2018-05-24 16:50 - 002248232 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2018-10-10 21:04 - 2018-05-24 16:50 - 001311784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2018-10-10 19:22 - 2018-05-24 16:49 - 000001951 _____ C:\WINDOWS\NvTelemetryContainerRecovery.bat
2018-10-10 17:55 - 2018-09-15 08:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2018-10-10 16:32 - 2018-09-15 07:09 - 000000000 ____D C:\WINDOWS\servicing
2018-10-09 18:15 - 2018-05-24 20:33 - 000000000 ___RD C:\Users\Vlado\3D Objects
2018-10-09 18:15 - 2017-03-23 18:27 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-10-09 18:13 - 2018-09-15 17:25 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2018-10-09 18:13 - 2018-09-15 17:25 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2018-10-09 18:13 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\appraiser
2018-10-09 18:13 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\bcastdvr
2018-10-09 18:12 - 2018-05-24 19:21 - 000000000 ____D C:\WINDOWS\system32\MRT
2018-10-09 18:11 - 2018-05-24 19:21 - 136745976 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2018-10-07 15:53 - 2018-06-09 18:52 - 000000000 ____D C:\Users\Vlado\AppData\Roaming\Origin
2018-10-07 15:52 - 2018-05-24 18:21 - 000000000 ____D C:\ProgramData\Origin
2018-10-07 15:43 - 2018-05-24 17:25 - 000000000 ____D C:\Users\Vlado\AppData\Local\NVIDIA Corporation
2018-10-06 14:31 - 2018-08-22 13:50 - 000000000 ____D C:\Users\Vlado\AppData\Local\Avg
2018-10-06 14:31 - 2018-08-22 13:49 - 000000000 ____D C:\ProgramData\AVG
2018-10-06 10:54 - 2018-10-03 16:13 - 000000000 ____D C:\Users\Vlado\AppData\Local\PackageStaging
2018-10-04 14:20 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\appcompat
==================== Files in the root of some directories =======
2018-10-02 14:26 - 2018-10-02 14:26 - 000000000 _____ () C:\Users\Vlado\AppData\Local\oobelibMkey.log
Some files in TEMP:
====================
2018-10-27 17:49 - 2018-10-27 17:49 - 000000000 _____ () C:\Users\Vlado\AppData\Local\Temp\00e481b5e22dbe1f649fcddd505d3eb7.dll
2018-10-27 17:49 - 2018-10-27 17:49 - 000000016 _____ () C:\Users\Vlado\AppData\Local\Temp\a3b624dfdcbf7b62b2fec8d382197774.dll
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
==================== End of FRST.txt ============================