pomalé načítání stránek
Napsal: 04 dub 2019 15:11
Dobrý den mám problém s NB, zpomalené načítání stránek , občas zamrznutí počítače a celkově je zpomalený.
děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17.03.2019
Ran by rh46 (administrator) on LAPTOP-A7QKU0HK (04-04-2019 15:27:15)
Running from C:\Users\rh46\Desktop
Loaded Profiles: rh46 (Available Profiles: rh46)
Platform: Windows 10 Home Version 1803 17134.648 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0334924.inf_amd64_05abf00239dfc53b\B334881\atiesrxx.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\mcafee\pef\CORE\PEFService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\mcafee\modulecore\ModuleCoreService.exe
(Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTDevMgr.exe
(McAfee, Inc. -> McAfee, LLC) C:\Program Files\Common Files\mcafee\SystemCore\mfemms.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\mcafee\mmsshost\MMSSHOST.exe
(McAfee, Inc. -> McAfee, LLC) C:\Windows\System32\mfevtps.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\mcafee\modulecore\ProtectedModuleHost.exe
(McAfee, Inc. -> McAfee, LLC) C:\Program Files\Common Files\mcafee\SystemCore\mfefire.exe
(McAfee, Inc. -> McAfee, LLC) C:\Windows\System32\mfevtps.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\mcafee\VSCore_18_12\mcapexe.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\mcafee\mfeav\MfeAVSvc.exe
(McAfee, Inc. -> McAfee LLC.) C:\Program Files\Common Files\mcafee\amcore\mcshield.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\mcafee\csp\3.1.160.0\McCSPServiceHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1902.2-0\MsMpEng.exe
(Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1902.2-0\NisSrv.exe
(HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\mcafee\vul\McVulCtr.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedlauncher.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0334924.inf_amd64_05abf00239dfc53b\B334881\atieclxx.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.42.60.0_x64__kzf8qxf38zg5c\SkypeApp.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.42.60.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\mcafee\modulecore\ModuleCoreService.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
(Realtek Semiconductor Corp. -> Realtek) C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amddvr.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19021.18010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SecurityHealth] => C:\Program Files\WINDOWS DEFENDER\MSASCUIL.EXE [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\PROGRAM FILES\REALTEK\AUDIO\HDA\RTKNGUI64.EXE [9279328 2018-09-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Session] => C:\PROGRAM FILES\REALTEK\AUDIO\HDA\RAVBG64.EXE [1505832 2018-09-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\SYNAPTICS\SYNTP\SYNTPENH.EXE [4436520 2018-04-20] (Synaptics Incorporated -> Synaptics Incorporated)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [709152 2018-03-22] (HP Inc. -> HP Inc.)
HKLM-x32\...\Run: [RtlS5Wake] => C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe [2097600 2018-02-23] (Realtek Semiconductor Corp. -> Realtek)
HKU\S-1-5-21-3605916927-1593358766-570604066-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22488952 2019-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3605916927-1593358766-570604066-1001\...\Run: [Device Detector] => DevDetect.exe -autorun
HKLM\...\Drivers32: [VIDC.ACDV] => ACDV.dll
HKLM\...\Drivers32-x32: [VIDC.ACDV] => ACDV.dll
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{3b58764c-1ee5-49f5-bf27-546a0146a335}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\S-1-5-21-3605916927-1593358766-570604066-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3605916927-1593358766-570604066-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
SearchScopes: HKLM -> {B8CD7665-68EB-4B77-AF04-EB0863DDB1E1} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {B8CD7665-68EB-4B77-AF04-EB0863DDB1E1} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKU\S-1-5-21-3605916927-1593358766-570604066-1001 -> {B8CD7665-68EB-4B77-AF04-EB0863DDB1E1} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2019-03-13] (Microsoft Corporation -> Microsoft Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2017-09-27] (HP Inc. -> HP Inc.)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2017-09-27] (HP Inc. -> HP Inc.)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-03-13] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-03-13] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-03-13] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-03-13] (Microsoft Corporation -> Microsoft Corporation)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\program files\mcafee\msc\mcsniepl64.dll [2019-01-07] (McAfee, Inc. -> McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\program files (x86)\mcafee\msc\mcsniepl.dll [2019-01-07] (McAfee, Inc. -> McAfee, Inc.)
Edge:
======
Edge Extension: (Translator pro Microsoft Edge) -> MicrosoftTranslate_MicrosoftTranslatorforMicrosoftEdge_8wekyb3d8bbwe => C:\Program Files\WindowsApps\Microsoft.TranslatorforMicrosoftEdge_0.91.51.0_neutral__8wekyb3d8bbwe [2019-02-01]
FireFox:
========
FF HKLM\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSKHKLM => not found
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2019-03-02] [Legacy] [not signed]
FF Plugin: @mcafee.com/MSC,version=10 -> c:\program files\mcafee\msc\npmcsnffpl64.dll [2019-01-07] (McAfee, Inc. -> )
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\program files (x86)\mcafee\msc\npmcsnffpl.dll [2019-01-07] (McAfee, Inc. -> )
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-03-13] (Microsoft Corporation -> Microsoft Corporation)
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD External Events Utility; C:\windows\System32\DriverStore\FileRepository\c0334924.inf_amd64_05abf00239dfc53b\B334881\atiesrxx.exe [481768 2018-10-23] (Advanced Micro Devices, Inc. -> AMD)
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [679400 2018-04-02] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11082312 2019-03-28] (Microsoft Corporation -> Microsoft Corporation)
S3 ClientAnalyticsService; C:\Program Files\Common Files\McAfee\ClientAnalytics\Legacy\McClientAnalytics.exe [1511728 2017-09-21] (McAfee, Inc. -> McAfee, Inc.)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1322632 2017-12-13] (HP Inc. -> HP Inc.)
R2 HPJumpStartBridge; c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [477184 2017-10-06] (HP Inc. -> HP Inc.)
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (Hewlett-Packard Company -> HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [323952 2017-09-27] (HP Inc. -> HP Inc.)
R2 HPWMISVC; c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [628768 2017-07-13] (HP Inc. -> HP Inc.)
R2 McAPExe; C:\Program Files\Common Files\McAfee\VSCore_18_12\McApExe.exe [745880 2019-01-08] (McAfee, Inc. -> McAfee, Inc.)
S3 McAWFwk; c:\Program Files\Common Files\mcafee\actwiz\McAWFwk.exe [455584 2017-09-27] (McAfee, Inc. -> McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\3.1.160.0\\McCSPServiceHost.exe [2158952 2018-12-17] (McAfee, Inc. -> McAfee, Inc.)
S3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [371840 2018-12-05] (McAfee, Inc. -> McAfee, LLC)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [604216 2018-12-05] (McAfee, Inc. -> McAfee, LLC)
R3 mfevtp; C:\windows\system32\mfevtps.exe [509728 2018-12-05] (McAfee, Inc. -> McAfee, LLC)
R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1692552 2018-12-19] (McAfee, Inc. -> McAfee, Inc.)
R2 PEFService; C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe [1333064 2018-10-26] (McAfee, Inc. -> McAfee, Inc.)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [268128 2018-09-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [351784 2018-04-20] (Synaptics Incorporated -> Synaptics Incorporated)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\NisSrv.exe [4098064 2019-03-09] (Microsoft Corporation -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MsMpEng.exe [113992 2019-03-09] (Microsoft Corporation -> Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AmdAS4; C:\windows\System32\drivers\AmdAS4.sys [27016 2018-04-13] (Advanced Micro Devices Inc. -> Advanced Micro Devices, INC.)
R3 amdkmdag; C:\windows\System32\DriverStore\FileRepository\c0334924.inf_amd64_05abf00239dfc53b\B334881\atikmdag.sys [44624360 2018-10-23] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\windows\System32\DriverStore\FileRepository\c0334924.inf_amd64_05abf00239dfc53b\B334881\atikmpag.sys [567784 2018-10-23] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R0 amdpsp; C:\windows\System32\drivers\amdpsp.sys [137104 2018-04-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc. )
S3 AmUStor; C:\windows\system32\drivers\AmUStor.SYS [108992 2018-04-27] (Alcorlink Corp. -> )
R3 AtiHDAudioService; C:\windows\system32\drivers\AtihdWT6.sys [111112 2018-04-13] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 cfwids; C:\windows\System32\drivers\cfwids.sys [77144 2018-12-10] (McAfee, Inc. -> McAfee, LLC)
S3 HipShieldK; C:\windows\System32\drivers\HipShieldK.sys [218408 2018-12-24] (McAfee, Inc. -> McAfee, Inc.)
R3 mfeaack; C:\windows\System32\drivers\mfeaack.sys [510808 2018-12-10] (McAfee, Inc. -> McAfee, LLC)
R3 mfeavfk; C:\windows\System32\drivers\mfeavfk.sys [373592 2018-12-10] (McAfee, Inc. -> McAfee, LLC)
S0 mfeelamk; C:\windows\System32\drivers\mfeelamk.sys [85928 2018-12-10] (Microsoft Windows Early Launch Anti-malware Publisher -> McAfee, LLC)
R3 mfefirek; C:\windows\System32\drivers\mfefirek.sys [516952 2018-12-10] (McAfee, Inc. -> McAfee, LLC)
R0 mfehidk; C:\windows\System32\drivers\mfehidk.sys [980824 2018-12-10] (McAfee, Inc. -> McAfee, LLC)
R3 mfencbdc; C:\windows\System32\DRIVERS\mfencbdc.sys [563728 2018-11-19] (McAfee, Inc. -> McAfee LLC.)
S3 mfencrk; C:\windows\System32\DRIVERS\mfencrk.sys [109072 2018-11-19] (McAfee, Inc. -> McAfee LLC.)
R3 mfeplk; C:\windows\System32\drivers\mfeplk.sys [117592 2018-12-10] (McAfee, Inc. -> McAfee, LLC)
R0 mfewfpk; C:\windows\System32\drivers\mfewfpk.sys [253784 2018-12-10] (McAfee, Inc. -> McAfee, LLC)
R3 rt640x64; C:\windows\System32\drivers\rt640x64.sys [1026896 2018-04-12] (Realtek Semiconductor Corp. -> Realtek )
R3 RtkBtFilter; C:\windows\system32\DRIVERS\RtkBtfilter.sys [758216 2018-04-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 RTWlanE; C:\windows\System32\drivers\rtwlane.sys [8050000 2018-04-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
R3 SmbDrv; C:\windows\system32\DRIVERS\Smb_driver_AMDASF.sys [45096 2018-04-20] (Synaptics Incorporated -> Synaptics Incorporated)
S3 SmbDrvI; C:\windows\System32\drivers\Smb_driver_Intel.sys [46632 2018-04-20] (Synaptics Incorporated -> Synaptics Incorporated)
S0 WdBoot; C:\windows\System32\drivers\wd\WdBoot.sys [46472 2019-03-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\windows\System32\drivers\wd\WdFilter.sys [333792 2019-03-09] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\windows\System32\drivers\wd\WdNisDrv.sys [62432 2019-03-09] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\windows\System32\drivers\WirelessButtonDriver64.sys [35568 2018-08-31] (HP Inc. -> HP)
S3 H2OFFT; \SystemRoot\System32\drivers\H2OFFT64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-04-04 15:36 - 2019-04-04 15:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2019-04-04 15:27 - 2019-04-04 15:33 - 000018990 _____ C:\Users\rh46\Desktop\FRST.txt
2019-04-04 15:27 - 2019-04-04 15:27 - 000000000 ____D C:\FRST
2019-04-04 15:23 - 2019-04-04 15:23 - 002434048 _____ (Farbar) C:\Users\rh46\Desktop\FRST64.exe
2019-04-04 00:46 - 2019-04-04 00:46 - 000000000 ___HD C:\$SysReset
2019-04-03 16:44 - 2019-04-03 16:44 - 000000000 ____D C:\windows\LastGood
2019-03-30 13:23 - 2019-03-30 13:23 - 000002566 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2019-03-30 13:23 - 2019-03-30 13:23 - 000002560 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2019-03-30 13:23 - 2019-03-30 13:23 - 000002537 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2019-03-30 13:23 - 2019-03-30 13:23 - 000002532 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2019-03-30 13:23 - 2019-03-30 13:23 - 000002493 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2019-03-30 13:23 - 2019-03-30 13:23 - 000002458 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2019-03-30 13:23 - 2019-03-30 13:23 - 000002454 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2019-03-30 13:23 - 2019-03-30 13:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office
2019-03-12 22:22 - 2019-03-06 11:06 - 009084216 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2019-03-12 22:22 - 2019-03-06 11:03 - 007519896 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Protection.PlayReady.dll
2019-03-12 22:22 - 2019-03-06 10:44 - 025856512 _____ (Microsoft Corporation) C:\windows\system32\edgehtml.dll
2019-03-12 22:22 - 2019-03-06 10:36 - 022716928 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2019-03-12 22:22 - 2019-03-06 10:31 - 007598592 _____ (Microsoft Corporation) C:\windows\system32\Chakra.dll
2019-03-12 22:22 - 2019-03-06 10:28 - 004937728 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2019-03-12 22:22 - 2019-03-06 08:14 - 006568528 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-03-12 22:22 - 2019-03-06 08:05 - 022018048 _____ (Microsoft Corporation) C:\windows\SysWOW64\edgehtml.dll
2019-03-12 22:22 - 2019-03-06 07:56 - 019404288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2019-03-12 22:22 - 2019-03-06 07:49 - 004516352 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2019-03-12 22:22 - 2019-02-16 12:24 - 023862272 _____ (Microsoft Corporation) C:\windows\system32\Hydrogen.dll
2019-03-12 22:22 - 2019-02-16 12:22 - 019525120 _____ (Microsoft Corporation) C:\windows\system32\HologramCompositor.dll
2019-03-12 22:22 - 2019-02-16 10:03 - 005625360 _____ (Microsoft Corporation) C:\windows\system32\StartTileData.dll
2019-03-12 22:22 - 2019-02-16 10:01 - 000735464 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentClient.dll
2019-03-12 22:22 - 2019-02-16 09:33 - 004708864 _____ (Microsoft Corporation) C:\windows\system32\cdp.dll
2019-03-12 22:21 - 2019-03-06 17:39 - 000720536 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2019-03-12 22:21 - 2019-03-06 17:37 - 001616608 _____ (Microsoft Corporation) C:\windows\system32\sppobjs.dll
2019-03-12 22:21 - 2019-03-06 17:36 - 001047352 _____ (Microsoft Corporation) C:\windows\system32\ReAgent.dll
2019-03-12 22:21 - 2019-03-06 17:20 - 000064000 _____ (Microsoft Corporation) C:\windows\system32\iemigplugin.dll
2019-03-12 22:21 - 2019-03-06 17:19 - 000058368 _____ (Microsoft Corporation) C:\windows\system32\mf3216.dll
2019-03-12 22:21 - 2019-03-06 17:17 - 012730368 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2019-03-12 22:21 - 2019-03-06 17:17 - 000810496 _____ C:\windows\system32\MBR2GPT.EXE
2019-03-12 22:21 - 2019-03-06 17:17 - 000116736 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bridge.sys
2019-03-12 22:21 - 2019-03-06 17:14 - 001180672 _____ (Microsoft Corporation) C:\windows\system32\localspl.dll
2019-03-12 22:21 - 2019-03-06 17:14 - 000522240 _____ (Microsoft Corporation) C:\windows\system32\winspool.drv
2019-03-12 22:21 - 2019-03-06 17:14 - 000488448 _____ (Microsoft Corporation) C:\windows\system32\werui.dll
2019-03-12 22:21 - 2019-03-06 17:13 - 004053504 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2019-03-12 22:21 - 2019-03-06 17:13 - 001856512 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll
2019-03-12 22:21 - 2019-03-06 17:13 - 001662976 _____ (Microsoft Corporation) C:\windows\system32\GdiPlus.dll
2019-03-12 22:21 - 2019-03-06 17:13 - 001364992 _____ (Microsoft Corporation) C:\windows\system32\bcastdvruserservice.dll
2019-03-12 22:21 - 2019-03-06 17:12 - 001180672 _____ (Microsoft Corporation) C:\windows\system32\reseteng.dll
2019-03-12 22:21 - 2019-03-06 14:18 - 000918032 _____ (Microsoft Corporation) C:\windows\SysWOW64\ReAgent.dll
2019-03-12 22:21 - 2019-03-06 14:18 - 000607744 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll
2019-03-12 22:21 - 2019-03-06 14:10 - 000044544 _____ (Microsoft Corporation) C:\windows\SysWOW64\mf3216.dll
2019-03-12 22:21 - 2019-03-06 14:09 - 011919360 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2019-03-12 22:21 - 2019-03-06 14:06 - 000425472 _____ (Microsoft Corporation) C:\windows\SysWOW64\werui.dll
2019-03-12 22:21 - 2019-03-06 14:05 - 004054016 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2019-03-12 22:21 - 2019-03-06 14:05 - 001586176 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll
2019-03-12 22:21 - 2019-03-06 14:04 - 001471488 _____ (Microsoft Corporation) C:\windows\SysWOW64\GdiPlus.dll
2019-03-12 22:21 - 2019-03-06 14:04 - 000423936 _____ (Microsoft Corporation) C:\windows\SysWOW64\winspool.drv
2019-03-12 22:21 - 2019-03-06 13:59 - 001008640 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.MixedRealityCapture.dll
2019-03-12 22:21 - 2019-03-06 11:29 - 001035040 _____ (Microsoft Corporation) C:\windows\system32\ApplyTrustOffline.exe
2019-03-12 22:21 - 2019-03-06 11:16 - 002822456 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2019-03-12 22:21 - 2019-03-06 11:16 - 001457032 _____ (Microsoft Corporation) C:\windows\system32\winload.efi
2019-03-12 22:21 - 2019-03-06 11:16 - 001188000 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2019-03-12 22:21 - 2019-03-06 11:16 - 000776792 _____ (Microsoft Corporation) C:\windows\system32\wer.dll
2019-03-12 22:21 - 2019-03-06 11:16 - 000722744 _____ (Microsoft Corporation) C:\windows\system32\wimgapi.dll
2019-03-12 22:21 - 2019-03-06 11:16 - 000566568 _____ (Microsoft Corporation) C:\windows\system32\tcblaunch.exe
2019-03-12 22:21 - 2019-03-06 11:16 - 000527160 _____ (Microsoft Corporation) C:\windows\system32\wimserv.exe
2019-03-12 22:21 - 2019-03-06 11:11 - 000493880 _____ (Microsoft Corporation) C:\windows\system32\WerFault.exe
2019-03-12 22:21 - 2019-03-06 11:10 - 000248880 _____ (Microsoft Corporation) C:\windows\system32\weretw.dll
2019-03-12 22:21 - 2019-03-06 11:07 - 001219896 _____ (Microsoft Corporation) C:\windows\system32\hvix64.exe
2019-03-12 22:21 - 2019-03-06 11:07 - 001023800 _____ (Microsoft Corporation) C:\windows\system32\hvax64.exe
2019-03-12 22:21 - 2019-03-06 11:07 - 000376120 _____ (Microsoft Corporation) C:\windows\system32\Drivers\fastfat.sys
2019-03-12 22:21 - 2019-03-06 11:06 - 000134968 _____ (Microsoft Corporation) C:\windows\system32\hvloader.dll
2019-03-12 22:21 - 2019-03-06 11:06 - 000076088 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hvservice.sys
2019-03-12 22:21 - 2019-03-06 11:05 - 000439224 _____ (Microsoft Corporation) C:\windows\system32\Faultrep.dll
2019-03-12 22:21 - 2019-03-06 11:05 - 000436240 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2019-03-12 22:21 - 2019-03-06 11:05 - 000159864 _____ (Microsoft Corporation) C:\windows\system32\WerFaultSecure.exe
2019-03-12 22:21 - 2019-03-06 11:04 - 002765856 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2019-03-12 22:21 - 2019-03-06 11:04 - 000945464 _____ (Microsoft Corporation) C:\windows\system32\Drivers\refsv1.sys
2019-03-12 22:21 - 2019-03-06 11:04 - 000628024 _____ (Microsoft Corporation) C:\windows\system32\dpx.dll
2019-03-12 22:21 - 2019-03-06 11:03 - 002719544 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2019-03-12 22:21 - 2019-03-06 11:03 - 002465784 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll
2019-03-12 22:21 - 2019-03-06 11:03 - 001921848 _____ (Microsoft Corporation) C:\windows\system32\Drivers\refs.sys
2019-03-12 22:21 - 2019-03-06 11:03 - 000793400 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms2.sys
2019-03-12 22:21 - 2019-03-06 11:03 - 000412984 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms1.sys
2019-03-12 22:21 - 2019-03-06 11:03 - 000375608 _____ (Microsoft Corporation) C:\windows\system32\Drivers\msrpc.sys
2019-03-12 22:21 - 2019-03-06 11:02 - 002421048 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ntfs.sys
2019-03-12 22:21 - 2019-03-06 11:02 - 001257672 _____ (Microsoft Corporation) C:\windows\system32\winload.exe
2019-03-12 22:21 - 2019-03-06 11:02 - 001140480 _____ (Microsoft Corporation) C:\windows\system32\winresume.efi
2019-03-12 22:21 - 2019-03-06 11:02 - 000982912 _____ (Microsoft Corporation) C:\windows\system32\winresume.exe
2019-03-12 22:21 - 2019-03-06 11:02 - 000626488 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys
2019-03-12 22:21 - 2019-03-06 10:36 - 004383744 _____ (Microsoft Corporation) C:\windows\system32\EdgeContent.dll
2019-03-12 22:21 - 2019-03-06 10:34 - 004866048 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2019-03-12 22:21 - 2019-03-06 10:33 - 000046080 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidparse.sys
2019-03-12 22:21 - 2019-03-06 10:32 - 003399168 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentServer.dll
2019-03-12 22:21 - 2019-03-06 10:32 - 000358912 _____ (Microsoft Corporation) C:\windows\system32\Drivers\exfat.sys
2019-03-12 22:21 - 2019-03-06 10:32 - 000209408 _____ (Microsoft Corporation) C:\windows\system32\AppXApplicabilityBlob.dll
2019-03-12 22:21 - 2019-03-06 10:31 - 002368512 _____ (Microsoft Corporation) C:\windows\system32\WebRuntimeManager.dll
2019-03-12 22:21 - 2019-03-06 10:31 - 001826816 _____ (Microsoft Corporation) C:\windows\system32\Windows.CloudStore.dll
2019-03-12 22:21 - 2019-03-06 10:31 - 000894464 _____ (Microsoft Corporation) C:\windows\system32\webplatstorageserver.dll
2019-03-12 22:21 - 2019-03-06 10:31 - 000808448 _____ (Microsoft Corporation) C:\windows\system32\EdgeManager.dll
2019-03-12 22:21 - 2019-03-06 10:31 - 000726528 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2019-03-12 22:21 - 2019-03-06 10:31 - 000353792 _____ (Microsoft Corporation) C:\windows\system32\dhcpcore.dll
2019-03-12 22:21 - 2019-03-06 10:31 - 000324608 _____ (Microsoft Corporation) C:\windows\system32\Drivers\udfs.sys
2019-03-12 22:21 - 2019-03-06 10:31 - 000279552 _____ (Microsoft Corporation) C:\windows\system32\dhcpcore6.dll
2019-03-12 22:21 - 2019-03-06 10:31 - 000266752 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srvnet.sys
2019-03-12 22:21 - 2019-03-06 10:31 - 000154112 _____ (Microsoft Corporation) C:\windows\system32\Chakradiag.dll
2019-03-12 22:21 - 2019-03-06 10:29 - 002364928 _____ (Microsoft Corporation) C:\windows\system32\OpcServices.dll
2019-03-12 22:21 - 2019-03-06 10:29 - 002174976 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentExtensions.onecore.dll
2019-03-12 22:21 - 2019-03-06 10:29 - 001559552 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentExtensions.desktop.dll
2019-03-12 22:21 - 2019-03-06 10:29 - 000736256 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srv2.sys
2019-03-12 22:21 - 2019-03-06 10:28 - 001803776 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2019-03-12 22:21 - 2019-03-06 10:27 - 002224640 _____ (Microsoft Corporation) C:\windows\system32\win32kbase.sys
2019-03-12 22:21 - 2019-03-06 10:27 - 000776192 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2019-03-12 22:21 - 2019-03-06 10:27 - 000542720 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2019-03-12 22:21 - 2019-03-06 10:27 - 000507392 _____ (Microsoft Corporation) C:\windows\system32\edgeIso.dll
2019-03-12 22:21 - 2019-03-06 10:26 - 000868864 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.MixedRealityCapture.dll
2019-03-12 22:21 - 2019-03-06 10:26 - 000073216 _____ (Microsoft Corporation) C:\windows\system32\Drivers\npfs.sys
2019-03-12 22:21 - 2019-03-06 10:26 - 000031232 _____ (Microsoft Corporation) C:\windows\system32\Drivers\msfs.sys
2019-03-12 22:21 - 2019-03-06 10:25 - 000093696 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cdfs.sys
2019-03-12 22:21 - 2019-03-06 09:08 - 000001310 _____ C:\windows\system32\tcbres.wim
2019-03-12 22:21 - 2019-03-06 08:17 - 001989040 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll
2019-03-12 22:21 - 2019-03-06 08:17 - 000146712 _____ (Microsoft Corporation) C:\windows\SysWOW64\WerFaultSecure.exe
2019-03-12 22:21 - 2019-03-06 08:15 - 002253488 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2019-03-12 22:21 - 2019-03-06 08:15 - 000434488 _____ (Microsoft Corporation) C:\windows\SysWOW64\WerFault.exe
2019-03-12 22:21 - 2019-03-06 08:14 - 000785568 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2019-03-12 22:21 - 2019-03-06 08:14 - 000665224 _____ (Microsoft Corporation) C:\windows\SysWOW64\wer.dll
2019-03-12 22:21 - 2019-03-06 08:14 - 000450872 _____ (Microsoft Corporation) C:\windows\SysWOW64\dpx.dll
2019-03-12 22:21 - 2019-03-06 08:14 - 000380728 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2019-03-12 22:21 - 2019-03-06 08:13 - 000607248 _____ (Microsoft Corporation) C:\windows\SysWOW64\wimgapi.dll
2019-03-12 22:21 - 2019-03-06 07:53 - 005307392 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll
2019-03-12 22:21 - 2019-03-06 07:53 - 003711488 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2019-03-12 22:21 - 2019-03-06 07:52 - 005790720 _____ (Microsoft Corporation) C:\windows\SysWOW64\Chakra.dll
2019-03-12 22:21 - 2019-03-06 07:52 - 000608768 _____ (Microsoft Corporation) C:\windows\SysWOW64\EdgeManager.dll
2019-03-12 22:21 - 2019-03-06 07:52 - 000261632 _____ (Microsoft Corporation) C:\windows\SysWOW64\dhcpcore6.dll
2019-03-12 22:21 - 2019-03-06 07:51 - 000561152 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2019-03-12 22:21 - 2019-03-06 07:51 - 000333824 _____ (Microsoft Corporation) C:\windows\SysWOW64\edgeIso.dll
2019-03-12 22:21 - 2019-03-06 07:51 - 000032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\werdiagcontroller.dll
2019-03-12 22:21 - 2019-03-06 07:50 - 001628160 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2019-03-12 22:21 - 2019-03-06 07:50 - 001347584 _____ (Microsoft Corporation) C:\windows\SysWOW64\OpcServices.dll
2019-03-12 22:21 - 2019-03-06 07:50 - 000578560 _____ (Microsoft Corporation) C:\windows\SysWOW64\webplatstorageserver.dll
2019-03-12 22:21 - 2019-03-06 07:49 - 000318464 _____ (Microsoft Corporation) C:\windows\SysWOW64\dhcpcore.dll
2019-03-12 22:21 - 2019-03-06 07:49 - 000251904 _____ (Microsoft Corporation) C:\windows\SysWOW64\msIso.dll
2019-03-12 22:21 - 2019-03-06 07:48 - 000669696 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2019-03-12 22:21 - 2019-03-06 07:48 - 000533504 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2019-03-12 22:21 - 2019-02-21 05:26 - 000313344 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrd2x40.dll
2019-03-12 22:21 - 2019-02-16 15:02 - 002871304 _____ (Microsoft Corporation) C:\windows\system32\aitstatic.exe
2019-03-12 22:21 - 2019-02-16 15:02 - 001644040 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2019-03-12 22:21 - 2019-02-16 15:02 - 000808456 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2019-03-12 22:21 - 2019-02-16 15:02 - 000735752 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2019-03-12 22:21 - 2019-02-16 15:02 - 000620040 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2019-03-12 22:21 - 2019-02-16 15:02 - 000460296 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2019-03-12 22:21 - 2019-02-16 15:02 - 000322568 _____ (Microsoft Corporation) C:\windows\system32\acmigration.dll
2019-03-12 22:21 - 2019-02-16 15:02 - 000147464 _____ (Microsoft Corporation) C:\windows\system32\CompatTelRunner.exe
2019-03-12 22:21 - 2019-02-16 15:02 - 000071176 _____ (Microsoft Corporation) C:\windows\system32\win32appinventorycsp.dll
2019-03-12 22:21 - 2019-02-16 14:57 - 001048472 _____ (Microsoft Corporation) C:\windows\system32\Windows.Internal.Shell.Broker.dll
2019-03-12 22:21 - 2019-02-16 14:57 - 000506088 _____ (Microsoft Corporation) C:\windows\system32\systemreset.exe
2019-03-12 22:21 - 2019-02-16 14:56 - 000549520 _____ (Microsoft Corporation) C:\windows\system32\AppResolver.dll
2019-03-12 22:21 - 2019-02-16 14:56 - 000540984 _____ (Microsoft Corporation) C:\windows\system32\pcasvc.dll
2019-03-12 22:21 - 2019-02-16 14:53 - 001516416 _____ (Microsoft Corporation) C:\windows\system32\msctf.dll
2019-03-12 22:21 - 2019-02-16 14:36 - 000127488 _____ (Microsoft Corporation) C:\windows\system32\AppxSysprep.dll
2019-03-12 22:21 - 2019-02-16 14:34 - 004718080 _____ (Microsoft Corporation) C:\windows\system32\twinui.pcshell.dll
2019-03-12 22:21 - 2019-02-16 14:34 - 001725952 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Immersive.dll
2019-03-12 22:21 - 2019-02-16 14:34 - 000302080 _____ (Microsoft Corporation) C:\windows\system32\AcLayers.dll
2019-03-12 22:21 - 2019-02-16 14:33 - 001786880 _____ (Microsoft Corporation) C:\windows\system32\wsp_health.dll
2019-03-12 22:21 - 2019-02-16 14:32 - 003646976 _____ (Microsoft Corporation) C:\windows\system32\win32kfull.sys
2019-03-12 22:21 - 2019-02-16 14:32 - 002051072 _____ (Microsoft Corporation) C:\windows\system32\wsp_fs.dll
2019-03-12 22:21 - 2019-02-16 14:31 - 001271808 _____ (Microsoft Corporation) C:\windows\system32\gpsvc.dll
2019-03-12 22:21 - 2019-02-16 14:31 - 001003520 _____ (Microsoft Corporation) C:\windows\system32\clusapi.dll
2019-03-12 22:21 - 2019-02-16 14:31 - 000861184 _____ (Microsoft Corporation) C:\windows\system32\mprddm.dll
2019-03-12 22:21 - 2019-02-16 14:31 - 000615424 _____ (Microsoft Corporation) C:\windows\system32\resutils.dll
2019-03-12 22:21 - 2019-02-16 14:30 - 002019840 _____ (Microsoft Corporation) C:\windows\system32\ResetEngine.dll
2019-03-12 22:21 - 2019-02-16 14:30 - 000877568 _____ (Microsoft Corporation) C:\windows\system32\RecoveryDrive.exe
2019-03-12 22:21 - 2019-02-16 14:29 - 000174080 _____ (Microsoft Corporation) C:\windows\system32\ResetEngOnline.dll
2019-03-12 22:21 - 2019-02-16 14:29 - 000091136 _____ (Microsoft Corporation) C:\windows\system32\mcbuilder.exe
2019-03-12 22:21 - 2019-02-16 14:24 - 000444176 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppResolver.dll
2019-03-12 22:21 - 2019-02-16 14:22 - 001322176 _____ (Microsoft Corporation) C:\windows\SysWOW64\msctf.dll
2019-03-12 22:21 - 2019-02-16 14:08 - 000373760 _____ (Microsoft Corporation) C:\windows\SysWOW64\AcLayers.dll
2019-03-12 22:21 - 2019-02-16 14:07 - 001307648 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsp_health.dll
2019-03-12 22:21 - 2019-02-16 14:07 - 000484352 _____ (Microsoft Corporation) C:\windows\SysWOW64\resutils.dll
2019-03-12 22:21 - 2019-02-16 14:06 - 002890752 _____ (Microsoft Corporation) C:\windows\SysWOW64\win32kfull.sys
2019-03-12 22:21 - 2019-02-16 14:06 - 001530880 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Immersive.dll
2019-03-12 22:21 - 2019-02-16 14:06 - 001451520 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsp_fs.dll
2019-03-12 22:21 - 2019-02-16 14:06 - 000774656 _____ (Microsoft Corporation) C:\windows\SysWOW64\clusapi.dll
2019-03-12 22:21 - 2019-02-16 14:06 - 000765952 _____ (Microsoft Corporation) C:\windows\SysWOW64\mprddm.dll
2019-03-12 22:21 - 2019-02-16 14:04 - 000080384 _____ (Microsoft Corporation) C:\windows\SysWOW64\mcbuilder.exe
2019-03-12 22:21 - 2019-02-16 10:16 - 000511800 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll
2019-03-12 22:21 - 2019-02-16 10:15 - 000505656 _____ (Microsoft Corporation) C:\windows\system32\dcntel.dll
2019-03-12 22:21 - 2019-02-16 10:15 - 000035640 _____ (Microsoft Corporation) C:\windows\system32\DeviceCensus.exe
2019-03-12 22:21 - 2019-02-16 10:05 - 000087800 _____ (Microsoft Corporation) C:\windows\system32\taskhostw.exe
2019-03-12 22:21 - 2019-02-16 10:04 - 000193032 _____ (Microsoft Corporation) C:\windows\system32\Drivers\appid.sys
2019-03-12 22:21 - 2019-02-16 10:03 - 007901392 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2019-03-12 22:21 - 2019-02-16 10:03 - 000510288 _____ (Microsoft Corporation) C:\windows\system32\policymanager.dll
2019-03-12 22:21 - 2019-02-16 10:02 - 005821440 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll
2019-03-12 22:21 - 2019-02-16 10:02 - 003291632 _____ (Microsoft Corporation) C:\windows\system32\combase.dll
2019-03-12 22:21 - 2019-02-16 10:02 - 001934800 _____ (Microsoft Corporation) C:\windows\system32\AudioEng.dll
2019-03-12 22:21 - 2019-02-16 10:02 - 001792712 _____ (Microsoft Corporation) C:\windows\system32\propsys.dll
2019-03-12 22:21 - 2019-02-16 10:02 - 000705848 _____ (Microsoft Corporation) C:\windows\system32\Drivers\vhdmp.sys
2019-03-12 22:21 - 2019-02-16 10:02 - 000432952 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdbss.sys
2019-03-12 22:21 - 2019-02-16 10:02 - 000413712 _____ (Microsoft Corporation) C:\windows\system32\AUDIOKSE.dll
2019-03-12 22:21 - 2019-02-16 10:01 - 001285424 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndis.sys
2019-03-12 22:21 - 2019-02-16 10:01 - 001209696 _____ (Microsoft Corporation) C:\windows\system32\AudioSes.dll
2019-03-12 22:21 - 2019-02-16 10:01 - 001098056 _____ (Microsoft Corporation) C:\windows\system32\msvproc.dll
2019-03-12 22:21 - 2019-02-16 10:01 - 001028920 _____ (Microsoft Corporation) C:\windows\system32\Drivers\http.sys
2019-03-12 22:21 - 2019-02-16 10:01 - 001014344 _____ (Microsoft Corporation) C:\windows\system32\ucrtbase.dll
2019-03-12 22:21 - 2019-02-16 10:01 - 000641984 _____ (Microsoft Corporation) C:\windows\system32\msvcp_win.dll
2019-03-12 22:21 - 2019-02-16 10:01 - 000594024 _____ (Microsoft Corporation) C:\windows\system32\audiodg.exe
2019-03-12 22:21 - 2019-02-16 10:01 - 000527160 _____ (Microsoft Corporation) C:\windows\system32\hal.dll
2019-03-12 22:21 - 2019-02-16 10:01 - 000480840 _____ (Microsoft Corporation) C:\windows\system32\ucrtbase_enclave.dll
2019-03-12 22:21 - 2019-02-16 10:01 - 000335672 _____ (Microsoft Corporation) C:\windows\system32\moshostcore.dll
2019-03-12 22:21 - 2019-02-16 10:01 - 000161664 _____ (Microsoft Corporation) C:\windows\system32\RTWorkQ.dll
2019-03-12 22:21 - 2019-02-16 09:57 - 000383288 _____ (Microsoft Corporation) C:\windows\SysWOW64\aepic.dll
2019-03-12 22:21 - 2019-02-16 09:53 - 000443632 _____ (Microsoft Corporation) C:\windows\SysWOW64\policymanager.dll
2019-03-12 22:21 - 2019-02-16 09:51 - 002479168 _____ (Microsoft Corporation) C:\windows\SysWOW64\combase.dll
2019-03-12 22:21 - 2019-02-16 09:51 - 001584536 _____ (Microsoft Corporation) C:\windows\SysWOW64\propsys.dll
2019-03-12 22:21 - 2019-02-16 09:51 - 000170952 _____ (Microsoft Corporation) C:\windows\SysWOW64\RTWorkQ.dll
2019-03-12 22:21 - 2019-02-16 09:50 - 001805648 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioEng.dll
2019-03-12 22:21 - 2019-02-16 09:50 - 001171336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ucrtbase.dll
2019-03-12 22:21 - 2019-02-16 09:50 - 001130568 _____ (Microsoft Corporation) C:\windows\SysWOW64\msvproc.dll
2019-03-12 22:21 - 2019-02-16 09:50 - 001011872 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioSes.dll
2019-03-12 22:21 - 2019-02-16 09:50 - 000560384 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppXDeploymentClient.dll
2019-03-12 22:21 - 2019-02-16 09:50 - 000504072 _____ (Microsoft Corporation) C:\windows\SysWOW64\msvcp_win.dll
2019-03-12 22:21 - 2019-02-16 09:37 - 009084928 _____ (Microsoft Corporation) C:\windows\system32\BingMaps.dll
2019-03-12 22:21 - 2019-02-16 09:36 - 007057408 _____ (Microsoft Corporation) C:\windows\system32\mos.dll
2019-03-12 22:21 - 2019-02-16 09:36 - 000144384 _____ (Microsoft Corporation) C:\windows\system32\fcon.dll
2019-03-12 22:21 - 2019-02-16 09:35 - 008188928 _____ (Microsoft Corporation) C:\windows\system32\Windows.Data.Pdf.dll
2019-03-12 22:21 - 2019-02-16 09:35 - 006661632 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Data.Pdf.dll
2019-03-12 22:21 - 2019-02-16 09:34 - 005883904 _____ (Microsoft Corporation) C:\windows\SysWOW64\mos.dll
2019-03-12 22:21 - 2019-02-16 09:34 - 000095232 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataTimeUtil.dll
2019-03-12 22:21 - 2019-02-16 09:34 - 000002560 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2019-03-12 22:21 - 2019-02-16 09:33 - 006646784 _____ (Microsoft Corporation) C:\windows\SysWOW64\BingMaps.dll
2019-03-12 22:21 - 2019-02-16 09:33 - 000119808 _____ (Microsoft Corporation) C:\windows\system32\UserDataTimeUtil.dll
2019-03-12 22:21 - 2019-02-16 09:33 - 000054272 _____ (Microsoft Corporation) C:\windows\system32\CredentialMigrationHandler.dll
2019-03-12 22:21 - 2019-02-16 09:33 - 000043520 _____ (Microsoft Corporation) C:\windows\SysWOW64\CredentialMigrationHandler.dll
2019-03-12 22:21 - 2019-02-16 09:33 - 000002560 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2019-03-12 22:21 - 2019-02-16 09:32 - 002969088 _____ (Microsoft Corporation) C:\windows\SysWOW64\cdp.dll
2019-03-12 22:21 - 2019-02-16 09:32 - 000173568 _____ (Microsoft Corporation) C:\windows\system32\EnterpriseModernAppMgmtCSP.dll
2019-03-12 22:21 - 2019-02-16 09:31 - 002825728 _____ (Microsoft Corporation) C:\windows\system32\MapGeocoder.dll
2019-03-12 22:21 - 2019-02-16 09:31 - 000392704 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapConfiguration.dll
2019-03-12 22:21 - 2019-02-16 09:31 - 000141312 _____ (Microsoft Corporation) C:\windows\system32\AppointmentActivation.dll
2019-03-12 22:21 - 2019-02-16 09:31 - 000126976 _____ (Microsoft Corporation) C:\windows\SysWOW64\srpapi.dll
2019-03-12 22:21 - 2019-02-16 09:30 - 002449408 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapRouter.dll
2019-03-12 22:21 - 2019-02-16 09:30 - 001986560 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapGeocoder.dll
2019-03-12 22:21 - 2019-02-16 09:30 - 001124352 _____ (Microsoft Corporation) C:\windows\SysWOW64\cdprt.dll
2019-03-12 22:21 - 2019-02-16 09:30 - 000530432 _____ (Microsoft Corporation) C:\windows\system32\MapConfiguration.dll
2019-03-12 22:21 - 2019-02-16 09:30 - 000357888 _____ (Microsoft Corporation) C:\windows\system32\AppLockerCSP.dll
2019-03-12 22:21 - 2019-02-16 09:30 - 000254464 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppLockerCSP.dll
2019-03-12 22:21 - 2019-02-16 09:30 - 000145920 _____ (Microsoft Corporation) C:\windows\system32\srpapi.dll
2019-03-12 22:21 - 2019-02-16 09:29 - 001768448 _____ (Microsoft Corporation) C:\windows\system32\audiosrv.dll
2019-03-12 22:21 - 2019-02-16 09:29 - 000304128 _____ (Microsoft Corporation) C:\windows\system32\domgmt.dll
2019-03-12 22:21 - 2019-02-16 09:28 - 003381248 _____ (Microsoft Corporation) C:\windows\system32\MapRouter.dll
2019-03-12 22:21 - 2019-02-16 09:28 - 002585600 _____ (Microsoft Corporation) C:\windows\system32\wlansvc.dll
2019-03-12 22:21 - 2019-02-16 09:28 - 001668096 _____ (Microsoft Corporation) C:\windows\system32\cdprt.dll
2019-03-12 22:21 - 2019-02-16 09:28 - 000713216 _____ (Microsoft Corporation) C:\windows\SysWOW64\BingOnlineServices.dll
2019-03-12 22:21 - 2019-02-16 09:28 - 000705024 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapControlCore.dll
2019-03-12 22:21 - 2019-02-16 09:28 - 000528384 _____ (Microsoft Corporation) C:\windows\SysWOW64\ActivationManager.dll
2019-03-12 22:21 - 2019-02-16 09:27 - 001364992 _____ (Microsoft Corporation) C:\windows\system32\lpasvc.dll
2019-03-12 22:21 - 2019-02-16 09:27 - 000729088 _____ (Microsoft Corporation) C:\windows\SysWOW64\NMAA.dll
2019-03-12 22:21 - 2019-02-16 09:27 - 000686592 _____ (Microsoft Corporation) C:\windows\system32\AudioEndpointBuilder.dll
2019-03-12 22:21 - 2019-02-16 09:26 - 001459712 _____ (Microsoft Corporation) C:\windows\system32\dosvc.dll
2019-03-12 22:21 - 2019-02-16 09:26 - 001225216 _____ (Microsoft Corporation) C:\windows\system32\MapsStore.dll
2019-03-12 22:21 - 2019-02-16 09:26 - 000943616 _____ (Microsoft Corporation) C:\windows\system32\BingOnlineServices.dll
2019-03-12 22:21 - 2019-02-16 09:26 - 000935424 _____ (Microsoft Corporation) C:\windows\system32\rasmans.dll
2019-03-12 22:21 - 2019-02-16 09:26 - 000401920 _____ (Microsoft Corporation) C:\windows\system32\rascustom.dll
2019-03-12 22:21 - 2019-02-16 09:25 - 000884224 _____ (Microsoft Corporation) C:\windows\system32\NMAA.dll
2019-03-12 22:21 - 2019-02-16 09:25 - 000652800 _____ (Microsoft Corporation) C:\windows\system32\ActivationManager.dll
2019-03-12 21:24 - 2019-03-12 21:25 - 021205512 _____ (Piriform Software Ltd) C:\Users\rh46\Downloads\ccsetup555.exe
2019-03-09 13:26 - 2019-03-09 13:19 - 000592616 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2019-03-06 23:30 - 2019-03-06 23:30 - 000158237 _____ C:\Users\rh46\Downloads\Doklad SIPO_201903_6141295020.pdf
2019-03-05 18:04 - 2019-03-05 22:53 - 000000000 ____D C:\Users\rh46\AppData\Roaming\MPC-HC
2019-03-05 18:02 - 2019-03-05 18:06 - 000000000 ____D C:\Users\rh46\Desktop\Zoom Player
2019-03-05 18:01 - 2019-03-05 18:01 - 000000000 ____D C:\Users\rh46\Desktop\MPC-HC
2019-03-05 17:48 - 2019-03-05 17:48 - 000000000 ____D C:\Users\Public\CyberLink
==================== One month (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-04-04 15:25 - 2019-01-07 16:22 - 000000000 ___HD C:\Users\rh46\MicrosoftEdgeBackups
2019-04-04 15:21 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-04-04 14:57 - 2019-01-28 22:47 - 000000000 ____D C:\Users\rh46\Desktop\Účetnictví
2019-04-04 14:56 - 2018-04-28 08:06 - 000000000 ____D C:\windows\system32\SleepStudy
2019-04-04 12:09 - 2019-01-08 15:07 - 000004210 _____ C:\windows\System32\Tasks\CCleaner Update
2019-04-04 00:12 - 2018-04-12 01:36 - 000000000 ____D C:\windows\INF
2019-04-03 20:40 - 2018-04-12 01:38 - 000000000 ____D C:\windows\AppReadiness
2019-04-03 17:55 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps
2019-04-03 17:51 - 2019-01-29 17:32 - 000003248 _____ C:\windows\System32\Tasks\HPCeeScheduleForrh46
2019-04-03 17:51 - 2019-01-29 17:32 - 000000360 _____ C:\windows\Tasks\HPCeeScheduleForrh46.job
2019-04-01 23:11 - 2019-01-12 15:15 - 000000000 ____D C:\Users\rh46\Downloads\Od Jitky 2019
2019-04-01 21:56 - 2019-01-10 22:08 - 000000000 ____D C:\Users\rh46\Desktop\Odkazy
2019-04-01 14:42 - 2019-01-28 22:48 - 000000000 ____D C:\Users\rh46\Desktop\Spotřeba energií
2019-03-30 19:49 - 2019-01-07 18:50 - 000000000 ____D C:\Users\rh46\AppData\Roaming\Ancestry
2019-03-30 13:20 - 2019-01-08 21:01 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2019-03-30 13:17 - 2019-01-07 16:21 - 000000000 ____D C:\Users\rh46\AppData\Local\VirtualStore
2019-03-29 17:22 - 2019-01-07 17:00 - 000003376 _____ C:\windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3605916927-1593358766-570604066-1001
2019-03-29 17:22 - 2019-01-07 16:35 - 000000000 ___RD C:\Users\rh46\OneDrive
2019-03-29 17:22 - 2019-01-07 16:16 - 000002365 _____ C:\Users\rh46\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-03-22 19:34 - 2019-01-26 19:45 - 000000000 ____D C:\Users\rh46\Desktop\Nová složka
2019-03-22 01:33 - 2019-01-18 18:10 - 000000000 ____D C:\Users\rh46\Downloads\Od Karla 2019
2019-03-20 22:52 - 2018-04-11 23:04 - 000032768 _____ C:\windows\system32\config\ELAM
2019-03-20 22:51 - 2018-04-28 08:06 - 000000006 ____H C:\windows\Tasks\SA.DAT
2019-03-20 22:39 - 2018-10-04 02:38 - 000065536 _____ C:\windows\psp_storage.bin
2019-03-20 22:39 - 2018-04-11 23:04 - 000786432 _____ C:\windows\system32\config\BBI
2019-03-20 21:18 - 2019-01-08 14:09 - 000000000 ____D C:\Program Files\rempl
2019-03-19 23:36 - 2019-01-07 16:21 - 000000000 ____D C:\Users\rh46\AppData\Local\Packages
2019-03-14 20:47 - 2019-01-08 21:21 - 000000000 ____D C:\Users\rh46\AppData\Local\D3DSCache
2019-03-13 12:40 - 2018-06-02 11:33 - 000744924 _____ C:\windows\system32\perfh005.dat
2019-03-13 12:40 - 2018-06-02 11:33 - 000159594 _____ C:\windows\system32\perfc005.dat
2019-03-13 12:40 - 2018-04-28 08:11 - 001826110 _____ C:\windows\system32\PerfStringBackup.INI
2019-03-13 12:32 - 2018-04-28 08:06 - 000490856 _____ C:\windows\system32\FNTCACHE.DAT
2019-03-13 01:09 - 2018-04-12 01:38 - 000000000 ___SD C:\windows\system32\UNP
2019-03-13 01:09 - 2018-04-12 01:38 - 000000000 ____D C:\windows\TextInput
2019-03-13 01:09 - 2018-04-12 01:38 - 000000000 ____D C:\windows\system32\oobe
2019-03-13 01:09 - 2018-04-12 01:38 - 000000000 ____D C:\windows\system32\appraiser
2019-03-13 01:09 - 2018-04-12 01:38 - 000000000 ____D C:\windows\ShellExperiences
2019-03-13 01:09 - 2018-04-12 01:38 - 000000000 ____D C:\windows\bcastdvr
2019-03-13 01:09 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files\Windows Defender
2019-03-13 01:09 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2019-03-13 00:48 - 2019-01-08 15:07 - 000000870 _____ C:\Users\Public\Desktop\CCleaner.lnk
2019-03-12 22:36 - 2018-04-12 01:30 - 000000000 ____D C:\windows\CbsTemp
2019-03-12 22:19 - 2019-01-08 14:44 - 000000000 ____D C:\windows\system32\MRT
2019-03-12 22:14 - 2019-01-08 14:43 - 127411920 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2019-03-10 00:29 - 2019-01-31 21:12 - 000000000 ____D C:\Users\rh46\Desktop\Od Petříka
2019-03-09 13:27 - 2018-04-28 08:06 - 000000000 ____D C:\windows\system32\Drivers\wd
2019-03-08 13:00 - 2019-01-07 16:16 - 000000000 ____D C:\Users\rh46
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\explorer.exe => File is digitally signed
C:\windows\SysWOW64\explorer.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\SysWOW64\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\SysWOW64\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\SysWOW64\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\dnsapi.dll => File is digitally signed
C:\windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\windows\system32\dllhost.exe => File is digitally signed
C:\windows\SysWOW64\dllhost.exe => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2018-04-28 08:06
==================== End of FRST.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17.03.2019
Ran by rh46 (04-04-2019 15:37:40)
Running from C:\Users\rh46\Desktop
Windows 10 Home Version 1803 17134.648 (X64) (2019-01-07 12:13:18)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3605916927-1593358766-570604066-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3605916927-1593358766-570604066-503 - Limited - Disabled)
Guest (S-1-5-21-3605916927-1593358766-570604066-501 - Limited - Disabled)
rh46 (S-1-5-21-3605916927-1593358766-570604066-1001 - Administrator - Enabled) => C:\Users\rh46
WDAGUtilityAccount (S-1-5-21-3605916927-1593358766-570604066-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: McAfee VirusScan (Disabled - Up to date) {8BCDACFA-D264-3528-5EF8-E94FD0BC1FBC}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: McAfee VirusScan (Disabled - Up to date) {30AC4D1E-F45E-3AA6-6448-D23DAB3B5501}
FW: McAfee Firewall (Disabled) {B3F62DDF-980B-3470-75A7-407A2E6F58C7}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
ACDSee Photo Manager 2009 (HKLM-x32\...\{300578F9-9EFF-4B93-9AB1-C0E5707EF463}) (Version: 11.0.85 - ACD Systems International)
ACDSee Photo Manager 2009 Build 113 - odinstalovat češtinu (HKLM-x32\...\ACDSee Photo Manager 2009 Build 113) (Version: - Michellin & Pavlík)
AMD Radeon Settings (HKLM\...\WUCCCApp) (Version: 2018.1016.918.14930 - Advanced Micro Devices, Inc.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 17.7 - Advanced Micro Devices, Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.55 - Piriform)
HP Audio Switch (HKLM-x32\...\{BC852AA8-58F6-4F07-ACB1-7377E52CA4F3}) (Version: 1.0.150.0 - HP Inc.)
HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.11.0 - HP Inc.)
HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.1 - HP Inc.)
HP ePrint SW (HKLM-x32\...\{cdb5f70f-5107-4613-bf69-15de903b5b5d}) (Version: 5.5.22560 - HP Inc.)
HP JumpStart Bridge (HKLM-x32\...\{3FC961DB-BD36-4D8D-B276-0C456A2BB638}) (Version: 1.4.0.441 - HP Inc.)
HP JumpStart Launch (HKLM-x32\...\{F213102E-FD30-4E22-AF73-4C682D65FFEE}) (Version: 1.4.441.0 - HP Inc.)
HP Support Assistant (HKLM-x32\...\{4AAC4B07-77EF-4BCF-88DC-D24E4DE683E8}) (Version: 8.5.37.19 - HP Inc.)
HP Support Solutions Framework (HKLM-x32\...\{4E100CB6-9312-48BC-9DC0-4F4D5C338449}) (Version: 12.8.37.11 - HP Inc.)
HP System Event Utility (HKLM-x32\...\{5D308D1F-E37B-431A-8D35-67D16287467D}) (Version: 1.4.28 - HP Inc.)
McAfee LiveSafe (HKLM-x32\...\MSC) (Version: 16.0 R18 - McAfee, Inc.)
Microsoft Office Professional Plus 2016 - cs-cz (HKLM\...\ProplusRetail - cs-cz) (Version: 16.0.11425.20202 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 - en-us (HKLM\...\ProplusRetail - en-us) (Version: 16.0.11425.20202 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3605916927-1593358766-570604066-1001\...\OneDriveSetup.exe) (Version: 19.043.0304.0005 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24123 (HKLM-x32\...\{2cbcedbb-f38c-48a3-a3e1-6c6fd821a7f4}) (Version: 14.0.24123.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24123 (HKLM-x32\...\{206898cc-4b41-4d98-ac28-9f9ae57f91fe}) (Version: 14.0.24123.0 - Microsoft Corporation)
OEM Application Profile (HKLM-x32\...\{12C2AEB0-ED60-4CCF-DD83-C65BC7CCFB50}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.11425.20202 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.11425.20202 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.11425.20202 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.11425.20202 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.11425.20202 - Microsoft Corporation) Hidden
REALTEK Bluetooth Driver (HKLM-x32\...\{9D3D8C60-A5EF-4123-B2B9-172095903AB}) (Version: 1.0.0.88 - REALTEK Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.25.119.2018 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8544 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver (HKLM-x32\...\{A5107464-AA9B-4177-8129-5FF2F42DD322}) (Version: 1.0.0.113 - REALTEK Semiconductor Corp.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.5.10.69 - Synaptics Incorporated)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{FBA3961B-D1DF-493C-BC1F-E67D3B832895}) (Version: 2.56.0.0 - Microsoft Corporation)
Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3605916927-1593358766-570604066-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6} -> [OneDrive] => {a52bba46-e9e1-435f-b3d9-28daa648c0f6}
CustomCLSID: HKU\S-1-5-21-3605916927-1593358766-570604066-1001_Classes\CLSID\{C591CFEA-E432-495d-A0BE-58E4CCD87B17}\Shell\Open\Command -> C:\Program Files\Synaptics\SynTP\SynTPCpl.dll (Synaptics Incorporated -> Synaptics Incorporated)
ContextMenuHandlers1: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => c:\program files\mcafee\msc\mcctxmenufrmwrk.dll [2019-01-07] (McAfee, Inc. -> McAfee, Inc.)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2018-10-16] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => c:\program files\mcafee\msc\mcctxmenufrmwrk.dll [2019-01-07] (McAfee, Inc. -> McAfee, Inc.)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {18D223C0-7CB7-4DA1-96BB-C4EB4337C3DB} - System32\Tasks\HPCeeScheduleForrh46 => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe (Hewlett-Packard Company -> HP Inc.)
Task: {1A202AA7-A639-49EE-AF6B-38431F66E9B2} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {22CB766B-35BC-40F6-AB16-D244F942AB28} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {268D6266-2825-4C95-A965-6CB61E562644} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\1.1.207\DADUpdater.exe (McAfee, Inc. -> McAfee, Inc.)
Task: {2999E628-83E3-4F5C-8BA4-4FD387FFC088} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {38B39170-18AE-4952-ADCC-D52D829D5436} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe (Microsoft Corporation -> Microsoft Corporation)
"C:\Windows\System32\Tasks\McAfee\McAfee Idle Detection Task" was unlocked. <==== ATTENTION
Task: {3D351267-4B1C-4E27-A3C6-B8633D062613} - System32\Tasks\McAfee\McAfee Idle Detection Task
Task: {4CE34D76-F472-4F08-BD52-4E844DF305DA} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe (HP Inc. -> HP Inc.)
Task: {534D652C-518D-4B04-B0FB-27570068DB5A} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
Task: {57DE0D48-6C91-45C9-8537-B1E22758DC85} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {5EF76084-0830-4E9F-88F8-2E5C9E5E3862} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {5F93DA86-1DAD-40BC-A409-39981DA0B1F1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe (HP Inc. -> HP Inc.)
Task: {731442F9-A342-4499-B9C0-F4AA2AFAEEB1} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent
Task: {75DC029F-6C76-4B6E-848A-6DAD314B00E4} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe (McAfee, Inc. -> McAfee, Inc.)
Task: {7E3348ED-EBD9-4657-B635-44B68CBFDB38} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {83903C80-4820-4A57-8B17-B0D5E783AF2D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe (HP Inc. -> HP Inc.)
Task: {87BE0508-B183-4629-A605-562FA248EE4B} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {8C66479D-2916-4A06-9E44-E0171E85554A} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {8F0DA0B1-7E40-404A-A352-D14652A21678} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe (HP Inc. -> HP Inc.)
Task: {B14DD813-42E3-44DC-80BA-28447BC7073D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {B8218A7B-8BA8-402E-8D08-C7E4FA0BA9A6} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe (Piriform Software Ltd -> Piriform Software Ltd)
Task: {BD027BF8-DA61-4E00-8810-509332D4F90E} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures
Task: {BE67FD36-4B14-4E0C-8AE0-CDCDA6D1FFAD} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe (McAfee, Inc. -> McAfee, Inc.)
Task: {C54E4FC0-B311-49B1-AEF2-4E28541DADB8} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\dvrcmd.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {C67429B0-51D1-4A44-A1FF-7715FEC6396D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe (HP Inc. -> HP Inc.)
Task: {C838708C-7304-4C56-A793-F61ABC0212EF} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe (HP Inc. -> HP Inc.)
Task: {CC7DF77A-E731-410F-9F82-030EE2984E2C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {DD475149-0155-4C0E-A0A1-FE70149D9282} - System32\Tasks\HPJumpStartLaunch => C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe (HP Inc. -> HP Inc.)
Task: {DE7CC29A-E7E2-4220-83C5-DC45695A0A93} - System32\Tasks\HPEA3JOBS => C:\Program [Argument = Files\HP\HP ePrint\hpeprint.exe /CheckJobs]
Task: {EF123825-882E-4C42-9AB8-C54D8476C97C} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {FB2CD991-1C5D-4F01-9899-EB90DF95A340} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {FF3C5612-87DA-4C1B-8DA5-7AFBB46F663C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe (HP Inc. -> HP Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\windows\Tasks\HPCeeScheduleForrh46.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2018-04-24 23:22 - 2018-04-24 23:22 - 000325632 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 003406848 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000282624 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 005523456 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 003281408 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll
2018-04-24 23:21 - 2018-04-24 23:21 - 000964096 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2018-04-24 23:21 - 2018-04-24 23:21 - 003233792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000194560 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2018-04-24 23:21 - 2018-04-24 23:21 - 006045184 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 069968896 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000109568 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2018-10-16 10:16 - 2018-10-16 10:16 - 005766144 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2018-04-24 23:21 - 2018-04-24 23:21 - 000279552 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 001336320 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\platforms\qwindows.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000015360 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.DLL
2018-04-24 23:22 - 2018-04-24 23:22 - 002519040 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000032256 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qgif.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000039936 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qicns.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000034304 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qico.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000237056 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qjpeg.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000025600 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qsvg.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000328704 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000025600 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qtga.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000024064 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwbmp.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000481792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwebp.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000018432 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000311296 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000018432 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000018432 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000049152 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000089600 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2019-01-07 17:59 - 2019-01-07 17:59 - 001037312 _____ () [File not signed] C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_1.4.3.0_x64__wafk5atnkzcwy\McUWPTile.dll
2019-01-07 17:59 - 2019-01-07 17:59 - 000074752 _____ () [File not signed] C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_1.4.3.0_x64__wafk5atnkzcwy\McAfee.UWP.AppServices.Crypto.dll
2019-03-13 15:26 - 2019-03-13 15:26 - 000172544 _____ (HP Inc.) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\HPJumpStartBridge\ac4d2e3d1d11b9d5da4df3703df1def7\HPJumpStartBridge.ni.exe
2019-03-13 15:23 - 2019-03-13 15:23 - 000156672 _____ () [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\BRIDGECommon\5c8205d93a18c751218761c3b15473c1\BRIDGECommon.ni.dll
2019-03-13 15:25 - 2019-03-13 15:25 - 000131584 _____ (HP Inc.) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\CommonPortable\7695e152afc6d412e6ba001d5602b5b7\CommonPortable.ni.dll
2019-03-13 15:26 - 2019-03-13 15:26 - 000374784 _____ () [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\CleanStartController\f229d388ad289da81e4f92c485070514\CleanStartController.ni.dll
2019-03-13 15:25 - 2019-03-13 15:25 - 000121344 _____ () [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\BridgeExtension\645a97e8106e48931785ef8a467e6727\BridgeExtension.ni.dll
2019-03-13 15:26 - 2019-03-13 15:26 - 000139776 _____ () [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\Registratio4eabc192#\414563ac2981ab79d846dc2186701ffd\RegistrationUtilities.ni.dll
2019-03-13 15:24 - 2019-03-13 15:24 - 002227200 _____ (Newtonsoft) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\Newtonsoft.Json\4582e50ce61e5fbb8e458df79cd7a84e\Newtonsoft.Json.ni.dll
2019-03-13 15:25 - 2019-03-13 15:25 - 000077824 _____ () [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\NativeInterop\5660d1653481412c3fe11ec188d88a2e\NativeInterop.ni.dll
2019-03-13 15:27 - 2019-03-13 15:27 - 001567232 _____ (HP Inc.) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\HPAudioSwitch\915a93bc288cb667c4ead9459692161c\HPAudioSwitch.ni.exe
2019-03-13 15:27 - 2019-03-13 15:27 - 000764928 _____ (The Apache Software Foundation) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\log4net\a1d8f678b50292d989072e1b75e72ba8\log4net.ni.dll
2019-03-13 15:27 - 2019-03-13 15:27 - 000129536 _____ (hardcodet.net) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\Hardcodet.W6cab32f3#\18abc1546f7fd36f2144e91ae6116b8d\Hardcodet.Wpf.TaskbarNotification.ni.dll
2019-03-13 15:27 - 2019-03-13 15:27 - 001549312 _____ (Mark Heath) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\NAudio\818fad3eb6b481a0e888c5e2569a1694\NAudio.ni.dll
2019-03-13 15:27 - 2019-03-13 15:27 - 000141312 _____ ( ) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\Interop.IWs06dcaa36#\9384196ea1e1fa6c9b853d15a9e3b0c9\Interop.IWshRuntimeLibrary.ni.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ModuleCoreService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcapexe => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ModuleCoreService => ""="Service"
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2018-04-12 01:38 - 2018-04-12 01:36 - 000000824 _____ C:\windows\system32\drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3605916927-1593358766-570604066-1001\Control Panel\Desktop\\Wallpaper -> C:\windows\web\wallpaper\HP Backgrounds\backgroundDefault.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
If an entry is included in the fixlist, it will be removed.
HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKU\S-1-5-21-3605916927-1593358766-570604066-1001\...\StartupApproved\Run: => "Device Detector"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{C93A2B8A-4157-4784-83A7-79AA8EBCA781}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{85471620-F426-4DC6-8623-EB9F3B608095}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{269FB3BE-49F7-4A8B-AA3D-7ED2240801C4}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{A420DB3C-C7A1-4D99-AD83-300D6EE1B7FA}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1E5F4564-EC50-4197-8BAB-83B3BC3C270C}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe (McAfee, Inc. -> McAfee, Inc.)
FirewallRules: [{74701624-5171-4D71-88A7-6F3F208E3049}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe (McAfee, Inc. -> McAfee, Inc.)
FirewallRules: [{82AA8684-5DDE-4235-BE8A-21040C1F6107}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (McAfee, Inc. -> McAfee, Inc.)
FirewallRules: [{A97980FD-17C5-442B-9EEC-1EB43C173866}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16050.11029.20108.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1696D619-BC9A-447A-BAE1-C3FA038F08D1}] => (Allow) LPort=1688
FirewallRules: [{4BA4689E-43E4-469D-B188-359F8F4B1613}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B88F244C-97FE-4778-AD82-F2F21C376DC1}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{87A1C076-96DF-4424-9082-C2721408AA57}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
==================== Restore Points =========================
18-03-2019 15:19:01 Naplánovaný kontrolní bod
25-03-2019 18:57:57 Naplánovaný kontrolní bod
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (04/04/2019 02:22:37 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MicrosoftEdgeCP.exe, verze: 11.0.17134.648, časové razítko: 0x5c7f852f
Název chybujícího modulu: edgehtml.dll, verze: 11.0.17134.648, časové razítko: 0x97d0e3c6
Kód výjimky: 0xc0000602
Posun chyby: 0x00000000004176dc
ID chybujícího procesu: 0x80fc
Čas spuštění chybující aplikace: 0x01d4eae0df2779fc
Cesta k chybující aplikaci: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
Cesta k chybujícímu modulu: C:\windows\SYSTEM32\edgehtml.dll
ID zprávy: eb3eca32-41e1-47b7-a4e7-168caa2c7f8e
Úplný název chybujícího balíčku: Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe
ID aplikace související s chybujícím balíčkem: ContentProcess
Error: (04/04/2019 01:28:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2109
Error: (04/04/2019 01:28:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2109
Error: (04/04/2019 01:28:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (04/04/2019 12:05:59 PM) (Source: HP Comm Recovery) (EventID: 0) (User: )
Description: Zpracování události PowerEvent se nezdařilo. Chyba, ke které došlo: System.IO.IOException: Proces nemůže přistupovat k souboru C:\Windows\Temp\signtool.exe, protože soubor je využíván jiným procesem.
v System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
v System.IO.FileStream.Init(String path, FileMode mode, FileAccess access, Int32 rights, Boolean useRights, FileShare share, Int32 bufferSize, FileOptions options, SECURITY_ATTRIBUTES secAttrs, String msgPath, Boolean bFromProxy, Boolean useLongPath, Boolean checkHost)
v System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, String msgPath, Boolean bFromProxy)
v System.IO.FileStream..ctor(String path, FileMode mode)
v _HPCommRecovery.Tools.Signtool.ExtractSignTool()
v _HPCommRecovery.Tools.Signtool.Verify(String arg)
v _HPCommRecovery.HPAHAgent.CallAgent()
v _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
v _HPCommRecovery.HPAHLogger.NewSession()
v _HPCommRecovery.HPCommRecove....
Error: (04/04/2019 12:05:58 PM) (Source: HP Comm Recovery) (EventID: 0) (User: )
Description: Zpracování události PowerEvent se nezdařilo. Chyba, ke které došlo: System.IO.IOException: Proces nemůže přistupovat k souboru C:\Windows\Temp\signtool.exe, protože soubor je využíván jiným procesem.
v System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
v System.IO.FileStream.Init(String path, FileMode mode, FileAccess access, Int32 rights, Boolean useRights, FileShare share, Int32 bufferSize, FileOptions options, SECURITY_ATTRIBUTES secAttrs, String msgPath, Boolean bFromProxy, Boolean useLongPath, Boolean checkHost)
v System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, String msgPath, Boolean bFromProxy)
v System.IO.FileStream..ctor(String path, FileMode mode)
v _HPCommRecovery.Tools.Signtool.ExtractSignTool()
v _HPCommRecovery.Tools.Signtool.Verify(String arg)
v _HPCommRecovery.HPAHAgent.CallAgent()
v _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
v _HPCommRecovery.HPAHLogger.NewSession()
v _HPCommRecovery.HPCommRecove....
Error: (04/04/2019 01:08:32 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 17375
Error: (04/04/2019 01:08:32 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 17375
System errors:
=============
Error: (04/04/2019 12:06:05 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.
Error: (04/04/2019 12:06:04 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.
Error: (04/04/2019 12:06:04 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.
Error: (04/04/2019 01:08:04 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-A7QKU0HK)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (04/04/2019 01:08:04 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-A7QKU0HK)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (04/04/2019 01:08:03 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-A7QKU0HK)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (04/04/2019 01:08:03 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-A7QKU0HK)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (04/04/2019 01:08:03 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-A7QKU0HK)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.
Windows Defender:
===================================
Date: 2019-03-29 23:23:14.402
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {5497F8CB-B62E-49F0-8D1C-B8469CB76D05}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Date: 2019-03-22 16:36:49.722
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {B71EE895-35C8-48E8-875C-159DDB90846F}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Date: 2019-03-22 13:57:08.942
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {F7145E0A-BD35-4DA6-9ED3-EA346BE53130}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Date: 2019-03-22 11:38:04.736
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {DF60FB63-D01B-45E3-A636-C26FE992944D}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Date: 2019-03-22 00:07:08.954
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {F64A39F9-EDB4-4283-85D2-B6E1389426A9}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Date: 2019-03-09 12:09:09.908
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo chybu při pokusu o načtení podpisů a pokusí se o obnovení sady podpisů, jejichž správnost je potvrzena.
Podpisy, které se měly načíst: Aktuální
Kód chyby: 0x80070002
Popis chyby: Systém nemůže nalézt uvedený soubor.
Verze podpisu: 0.0.0.0;0.0.0.0
Verze modulu: 0.0.0.0
CodeIntegrity:
===================================
Date: 2019-04-04 15:37:36.290
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
Date: 2019-04-04 15:37:36.286
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
Date: 2019-04-04 15:37:31.274
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
Date: 2019-04-04 15:37:31.271
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
Date: 2019-04-04 15:37:19.113
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
Date: 2019-04-04 15:37:19.110
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
Date: 2019-04-04 15:36:54.459
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
Date: 2019-04-04 15:36:54.454
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
Processor: AMD A6-9225 RADEON R4, 5 COMPUTE CORES 2C+3G
Percentage of memory in use: 76%
Total physical RAM: 3981.68 MB
Available physical RAM: 951.26 MB
Total Virtual: 9523.58 MB
Available Virtual: 2138.3 MB
==================== Drives ================================
Drive c: (Windows) (Fixed) (Total:915.7 GB) (Free:850.8 GB) NTFS
Drive d: (RECOVERY) (Fixed) (Total:14.58 GB) (Free:1.74 GB) NTFS ==>[system with boot components (obtained from drive)]
\\?\Volume{9a7c98d1-9ab5-4084-99b9-58d26824b52f}\ (Windows RE tools) (Fixed) (Total:0.96 GB) (Free:0.53 GB) NTFS
\\?\Volume{81aa4aa0-31c2-4305-83fe-9f1551ed5041}\ () (Fixed) (Total:0.25 GB) (Free:0.2 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: F34E8BF8)
Partition: GPT.
==================== End of Addition.txt ============================
děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17.03.2019
Ran by rh46 (administrator) on LAPTOP-A7QKU0HK (04-04-2019 15:27:15)
Running from C:\Users\rh46\Desktop
Loaded Profiles: rh46 (Available Profiles: rh46)
Platform: Windows 10 Home Version 1803 17134.648 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0334924.inf_amd64_05abf00239dfc53b\B334881\atiesrxx.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\mcafee\pef\CORE\PEFService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\mcafee\modulecore\ModuleCoreService.exe
(Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Program Files (x86)\Realtek\REALTEK Bluetooth\BTDevMgr.exe
(McAfee, Inc. -> McAfee, LLC) C:\Program Files\Common Files\mcafee\SystemCore\mfemms.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\mcafee\mmsshost\MMSSHOST.exe
(McAfee, Inc. -> McAfee, LLC) C:\Windows\System32\mfevtps.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\mcafee\modulecore\ProtectedModuleHost.exe
(McAfee, Inc. -> McAfee, LLC) C:\Program Files\Common Files\mcafee\SystemCore\mfefire.exe
(McAfee, Inc. -> McAfee, LLC) C:\Windows\System32\mfevtps.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\mcafee\VSCore_18_12\mcapexe.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\mcafee\mfeav\MfeAVSvc.exe
(McAfee, Inc. -> McAfee LLC.) C:\Program Files\Common Files\mcafee\amcore\mcshield.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\mcafee\csp\3.1.160.0\McCSPServiceHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1902.2-0\MsMpEng.exe
(Microsoft Corporation -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1902.2-0\NisSrv.exe
(HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedsvc.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\mcafee\vul\McVulCtr.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\rempl\sedlauncher.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0334924.inf_amd64_05abf00239dfc53b\B334881\atieclxx.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\mcafee\platform\McUICnt.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.42.60.0_x64__kzf8qxf38zg5c\SkypeApp.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.42.60.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(McAfee, Inc. -> McAfee, Inc.) C:\Program Files\Common Files\mcafee\modulecore\ModuleCoreService.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe
(Realtek Semiconductor Corp. -> Realtek) C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amddvr.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
() [File not signed] C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19021.18010.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(HP Inc. -> HP Inc.) C:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SecurityHealth] => C:\Program Files\WINDOWS DEFENDER\MSASCUIL.EXE [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Run: [RTHDVCPL] => C:\PROGRAM FILES\REALTEK\AUDIO\HDA\RTKNGUI64.EXE [9279328 2018-09-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Session] => C:\PROGRAM FILES\REALTEK\AUDIO\HDA\RAVBG64.EXE [1505832 2018-09-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\SYNAPTICS\SYNTP\SYNTPENH.EXE [4436520 2018-04-20] (Synaptics Incorporated -> Synaptics Incorporated)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Windows -> Microsoft Corporation)
HKLM-x32\...\Run: [HPMessageService] => C:\Program Files (x86)\HP\HP System Event\HPMSGSVC.exe [709152 2018-03-22] (HP Inc. -> HP Inc.)
HKLM-x32\...\Run: [RtlS5Wake] => C:\Program Files (x86)\Realtek\PCIE Wireless LAN\RtlS5Wake\RtlS5Wake.exe [2097600 2018-02-23] (Realtek Semiconductor Corp. -> Realtek)
HKU\S-1-5-21-3605916927-1593358766-570604066-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [22488952 2019-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-3605916927-1593358766-570604066-1001\...\Run: [Device Detector] => DevDetect.exe -autorun
HKLM\...\Drivers32: [VIDC.ACDV] => ACDV.dll
HKLM\...\Drivers32-x32: [VIDC.ACDV] => ACDV.dll
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{3b58764c-1ee5-49f5-bf27-546a0146a335}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
HKU\S-1-5-21-3605916927-1593358766-570604066-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3605916927-1593358766-570604066-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://hp17win10.msn.com/?pc=HCTE
SearchScopes: HKLM -> {B8CD7665-68EB-4B77-AF04-EB0863DDB1E1} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {B8CD7665-68EB-4B77-AF04-EB0863DDB1E1} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
SearchScopes: HKU\S-1-5-21-3605916927-1593358766-570604066-1001 -> {B8CD7665-68EB-4B77-AF04-EB0863DDB1E1} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2019-03-13] (Microsoft Corporation -> Microsoft Corporation)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2017-09-27] (HP Inc. -> HP Inc.)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2017-09-27] (HP Inc. -> HP Inc.)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-03-13] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-03-13] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-03-13] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2019-03-13] (Microsoft Corporation -> Microsoft Corporation)
Filter: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\program files\mcafee\msc\mcsniepl64.dll [2019-01-07] (McAfee, Inc. -> McAfee, Inc.)
Filter-x32: application/x-mfe-ipt - {3EF5086B-5478-4598-A054-786C45D75692} - c:\program files (x86)\mcafee\msc\mcsniepl.dll [2019-01-07] (McAfee, Inc. -> McAfee, Inc.)
Edge:
======
Edge Extension: (Translator pro Microsoft Edge) -> MicrosoftTranslate_MicrosoftTranslatorforMicrosoftEdge_8wekyb3d8bbwe => C:\Program Files\WindowsApps\Microsoft.TranslatorforMicrosoftEdge_0.91.51.0_neutral__8wekyb3d8bbwe [2019-02-01]
FireFox:
========
FF HKLM\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSKHKLM => not found
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF Extension: (McAfee Anti-Spam Thunderbird Extension) - C:\Program Files\McAfee\MSK [2019-03-02] [Legacy] [not signed]
FF Plugin: @mcafee.com/MSC,version=10 -> c:\program files\mcafee\msc\npmcsnffpl64.dll [2019-01-07] (McAfee, Inc. -> )
FF Plugin-x32: @mcafee.com/MSC,version=10 -> c:\program files (x86)\mcafee\msc\npmcsnffpl.dll [2019-01-07] (McAfee, Inc. -> )
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-03-13] (Microsoft Corporation -> Microsoft Corporation)
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD External Events Utility; C:\windows\System32\DriverStore\FileRepository\c0334924.inf_amd64_05abf00239dfc53b\B334881\atiesrxx.exe [481768 2018-10-23] (Advanced Micro Devices, Inc. -> AMD)
R2 BTDevManager; C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTDevMgr.exe [679400 2018-04-02] (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11082312 2019-03-28] (Microsoft Corporation -> Microsoft Corporation)
S3 ClientAnalyticsService; C:\Program Files\Common Files\McAfee\ClientAnalytics\Legacy\McClientAnalytics.exe [1511728 2017-09-21] (McAfee, Inc. -> McAfee, Inc.)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [1322632 2017-12-13] (HP Inc. -> HP Inc.)
R2 HPJumpStartBridge; c:\Program Files (x86)\HP\HP JumpStart Bridge\HPJumpStartBridge.exe [477184 2017-10-06] (HP Inc. -> HP Inc.)
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1031704 2016-06-03] (Hewlett-Packard Company -> HP)
R2 HPSupportSolutionsFrameworkService; C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [323952 2017-09-27] (HP Inc. -> HP Inc.)
R2 HPWMISVC; c:\Program Files (x86)\HP\HP System Event\HPWMISVC.exe [628768 2017-07-13] (HP Inc. -> HP Inc.)
R2 McAPExe; C:\Program Files\Common Files\McAfee\VSCore_18_12\McApExe.exe [745880 2019-01-08] (McAfee, Inc. -> McAfee, Inc.)
S3 McAWFwk; c:\Program Files\Common Files\mcafee\actwiz\McAWFwk.exe [455584 2017-09-27] (McAfee, Inc. -> McAfee, Inc.)
R2 mccspsvc; C:\Program Files\Common Files\McAfee\CSP\3.1.160.0\\McCSPServiceHost.exe [2158952 2018-12-17] (McAfee, Inc. -> McAfee, Inc.)
S3 mfefire; C:\Program Files\Common Files\McAfee\SystemCore\mfefire.exe [371840 2018-12-05] (McAfee, Inc. -> McAfee, LLC)
R2 mfemms; C:\Program Files\Common Files\McAfee\SystemCore\mfemms.exe [604216 2018-12-05] (McAfee, Inc. -> McAfee, LLC)
R3 mfevtp; C:\windows\system32\mfevtps.exe [509728 2018-12-05] (McAfee, Inc. -> McAfee, LLC)
R2 ModuleCoreService; C:\Program Files\Common Files\McAfee\ModuleCore\ModuleCoreService.exe [1692552 2018-12-19] (McAfee, Inc. -> McAfee, Inc.)
R2 PEFService; C:\Program Files\Common Files\McAfee\PEF\CORE\PEFService.exe [1333064 2018-10-26] (McAfee, Inc. -> McAfee, Inc.)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [268128 2018-09-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [351784 2018-04-20] (Synaptics Incorporated -> Synaptics Incorporated)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\NisSrv.exe [4098064 2019-03-09] (Microsoft Corporation -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MsMpEng.exe [113992 2019-03-09] (Microsoft Corporation -> Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AmdAS4; C:\windows\System32\drivers\AmdAS4.sys [27016 2018-04-13] (Advanced Micro Devices Inc. -> Advanced Micro Devices, INC.)
R3 amdkmdag; C:\windows\System32\DriverStore\FileRepository\c0334924.inf_amd64_05abf00239dfc53b\B334881\atikmdag.sys [44624360 2018-10-23] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\windows\System32\DriverStore\FileRepository\c0334924.inf_amd64_05abf00239dfc53b\B334881\atikmpag.sys [567784 2018-10-23] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R0 amdpsp; C:\windows\System32\drivers\amdpsp.sys [137104 2018-04-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc. )
S3 AmUStor; C:\windows\system32\drivers\AmUStor.SYS [108992 2018-04-27] (Alcorlink Corp. -> )
R3 AtiHDAudioService; C:\windows\system32\drivers\AtihdWT6.sys [111112 2018-04-13] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 cfwids; C:\windows\System32\drivers\cfwids.sys [77144 2018-12-10] (McAfee, Inc. -> McAfee, LLC)
S3 HipShieldK; C:\windows\System32\drivers\HipShieldK.sys [218408 2018-12-24] (McAfee, Inc. -> McAfee, Inc.)
R3 mfeaack; C:\windows\System32\drivers\mfeaack.sys [510808 2018-12-10] (McAfee, Inc. -> McAfee, LLC)
R3 mfeavfk; C:\windows\System32\drivers\mfeavfk.sys [373592 2018-12-10] (McAfee, Inc. -> McAfee, LLC)
S0 mfeelamk; C:\windows\System32\drivers\mfeelamk.sys [85928 2018-12-10] (Microsoft Windows Early Launch Anti-malware Publisher -> McAfee, LLC)
R3 mfefirek; C:\windows\System32\drivers\mfefirek.sys [516952 2018-12-10] (McAfee, Inc. -> McAfee, LLC)
R0 mfehidk; C:\windows\System32\drivers\mfehidk.sys [980824 2018-12-10] (McAfee, Inc. -> McAfee, LLC)
R3 mfencbdc; C:\windows\System32\DRIVERS\mfencbdc.sys [563728 2018-11-19] (McAfee, Inc. -> McAfee LLC.)
S3 mfencrk; C:\windows\System32\DRIVERS\mfencrk.sys [109072 2018-11-19] (McAfee, Inc. -> McAfee LLC.)
R3 mfeplk; C:\windows\System32\drivers\mfeplk.sys [117592 2018-12-10] (McAfee, Inc. -> McAfee, LLC)
R0 mfewfpk; C:\windows\System32\drivers\mfewfpk.sys [253784 2018-12-10] (McAfee, Inc. -> McAfee, LLC)
R3 rt640x64; C:\windows\System32\drivers\rt640x64.sys [1026896 2018-04-12] (Realtek Semiconductor Corp. -> Realtek )
R3 RtkBtFilter; C:\windows\system32\DRIVERS\RtkBtfilter.sys [758216 2018-04-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R3 RTWlanE; C:\windows\System32\drivers\rtwlane.sys [8050000 2018-04-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation )
R3 SmbDrv; C:\windows\system32\DRIVERS\Smb_driver_AMDASF.sys [45096 2018-04-20] (Synaptics Incorporated -> Synaptics Incorporated)
S3 SmbDrvI; C:\windows\System32\drivers\Smb_driver_Intel.sys [46632 2018-04-20] (Synaptics Incorporated -> Synaptics Incorporated)
S0 WdBoot; C:\windows\System32\drivers\wd\WdBoot.sys [46472 2019-03-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\windows\System32\drivers\wd\WdFilter.sys [333792 2019-03-09] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\windows\System32\drivers\wd\WdNisDrv.sys [62432 2019-03-09] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\windows\System32\drivers\WirelessButtonDriver64.sys [35568 2018-08-31] (HP Inc. -> HP)
S3 H2OFFT; \SystemRoot\System32\drivers\H2OFFT64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-04-04 15:36 - 2019-04-04 15:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\McAfee
2019-04-04 15:27 - 2019-04-04 15:33 - 000018990 _____ C:\Users\rh46\Desktop\FRST.txt
2019-04-04 15:27 - 2019-04-04 15:27 - 000000000 ____D C:\FRST
2019-04-04 15:23 - 2019-04-04 15:23 - 002434048 _____ (Farbar) C:\Users\rh46\Desktop\FRST64.exe
2019-04-04 00:46 - 2019-04-04 00:46 - 000000000 ___HD C:\$SysReset
2019-04-03 16:44 - 2019-04-03 16:44 - 000000000 ____D C:\windows\LastGood
2019-03-30 13:23 - 2019-03-30 13:23 - 000002566 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote 2016.lnk
2019-03-30 13:23 - 2019-03-30 13:23 - 000002560 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2019-03-30 13:23 - 2019-03-30 13:23 - 000002537 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk
2019-03-30 13:23 - 2019-03-30 13:23 - 000002532 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk
2019-03-30 13:23 - 2019-03-30 13:23 - 000002493 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk
2019-03-30 13:23 - 2019-03-30 13:23 - 000002458 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook.lnk
2019-03-30 13:23 - 2019-03-30 13:23 - 000002454 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Publisher.lnk
2019-03-30 13:23 - 2019-03-30 13:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nástroje Microsoft Office
2019-03-12 22:22 - 2019-03-06 11:06 - 009084216 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2019-03-12 22:22 - 2019-03-06 11:03 - 007519896 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.Protection.PlayReady.dll
2019-03-12 22:22 - 2019-03-06 10:44 - 025856512 _____ (Microsoft Corporation) C:\windows\system32\edgehtml.dll
2019-03-12 22:22 - 2019-03-06 10:36 - 022716928 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2019-03-12 22:22 - 2019-03-06 10:31 - 007598592 _____ (Microsoft Corporation) C:\windows\system32\Chakra.dll
2019-03-12 22:22 - 2019-03-06 10:28 - 004937728 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2019-03-12 22:22 - 2019-03-06 08:14 - 006568528 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-03-12 22:22 - 2019-03-06 08:05 - 022018048 _____ (Microsoft Corporation) C:\windows\SysWOW64\edgehtml.dll
2019-03-12 22:22 - 2019-03-06 07:56 - 019404288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2019-03-12 22:22 - 2019-03-06 07:49 - 004516352 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2019-03-12 22:22 - 2019-02-16 12:24 - 023862272 _____ (Microsoft Corporation) C:\windows\system32\Hydrogen.dll
2019-03-12 22:22 - 2019-02-16 12:22 - 019525120 _____ (Microsoft Corporation) C:\windows\system32\HologramCompositor.dll
2019-03-12 22:22 - 2019-02-16 10:03 - 005625360 _____ (Microsoft Corporation) C:\windows\system32\StartTileData.dll
2019-03-12 22:22 - 2019-02-16 10:01 - 000735464 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentClient.dll
2019-03-12 22:22 - 2019-02-16 09:33 - 004708864 _____ (Microsoft Corporation) C:\windows\system32\cdp.dll
2019-03-12 22:21 - 2019-03-06 17:39 - 000720536 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2019-03-12 22:21 - 2019-03-06 17:37 - 001616608 _____ (Microsoft Corporation) C:\windows\system32\sppobjs.dll
2019-03-12 22:21 - 2019-03-06 17:36 - 001047352 _____ (Microsoft Corporation) C:\windows\system32\ReAgent.dll
2019-03-12 22:21 - 2019-03-06 17:20 - 000064000 _____ (Microsoft Corporation) C:\windows\system32\iemigplugin.dll
2019-03-12 22:21 - 2019-03-06 17:19 - 000058368 _____ (Microsoft Corporation) C:\windows\system32\mf3216.dll
2019-03-12 22:21 - 2019-03-06 17:17 - 012730368 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2019-03-12 22:21 - 2019-03-06 17:17 - 000810496 _____ C:\windows\system32\MBR2GPT.EXE
2019-03-12 22:21 - 2019-03-06 17:17 - 000116736 _____ (Microsoft Corporation) C:\windows\system32\Drivers\bridge.sys
2019-03-12 22:21 - 2019-03-06 17:14 - 001180672 _____ (Microsoft Corporation) C:\windows\system32\localspl.dll
2019-03-12 22:21 - 2019-03-06 17:14 - 000522240 _____ (Microsoft Corporation) C:\windows\system32\winspool.drv
2019-03-12 22:21 - 2019-03-06 17:14 - 000488448 _____ (Microsoft Corporation) C:\windows\system32\werui.dll
2019-03-12 22:21 - 2019-03-06 17:13 - 004053504 _____ (Microsoft Corporation) C:\windows\system32\msi.dll
2019-03-12 22:21 - 2019-03-06 17:13 - 001856512 _____ (Microsoft Corporation) C:\windows\system32\msxml3.dll
2019-03-12 22:21 - 2019-03-06 17:13 - 001662976 _____ (Microsoft Corporation) C:\windows\system32\GdiPlus.dll
2019-03-12 22:21 - 2019-03-06 17:13 - 001364992 _____ (Microsoft Corporation) C:\windows\system32\bcastdvruserservice.dll
2019-03-12 22:21 - 2019-03-06 17:12 - 001180672 _____ (Microsoft Corporation) C:\windows\system32\reseteng.dll
2019-03-12 22:21 - 2019-03-06 14:18 - 000918032 _____ (Microsoft Corporation) C:\windows\SysWOW64\ReAgent.dll
2019-03-12 22:21 - 2019-03-06 14:18 - 000607744 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll
2019-03-12 22:21 - 2019-03-06 14:10 - 000044544 _____ (Microsoft Corporation) C:\windows\SysWOW64\mf3216.dll
2019-03-12 22:21 - 2019-03-06 14:09 - 011919360 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2019-03-12 22:21 - 2019-03-06 14:06 - 000425472 _____ (Microsoft Corporation) C:\windows\SysWOW64\werui.dll
2019-03-12 22:21 - 2019-03-06 14:05 - 004054016 _____ (Microsoft Corporation) C:\windows\SysWOW64\msi.dll
2019-03-12 22:21 - 2019-03-06 14:05 - 001586176 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml3.dll
2019-03-12 22:21 - 2019-03-06 14:04 - 001471488 _____ (Microsoft Corporation) C:\windows\SysWOW64\GdiPlus.dll
2019-03-12 22:21 - 2019-03-06 14:04 - 000423936 _____ (Microsoft Corporation) C:\windows\SysWOW64\winspool.drv
2019-03-12 22:21 - 2019-03-06 13:59 - 001008640 _____ (Microsoft Corporation) C:\windows\system32\Windows.Media.MixedRealityCapture.dll
2019-03-12 22:21 - 2019-03-06 11:29 - 001035040 _____ (Microsoft Corporation) C:\windows\system32\ApplyTrustOffline.exe
2019-03-12 22:21 - 2019-03-06 11:16 - 002822456 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgkrnl.sys
2019-03-12 22:21 - 2019-03-06 11:16 - 001457032 _____ (Microsoft Corporation) C:\windows\system32\winload.efi
2019-03-12 22:21 - 2019-03-06 11:16 - 001188000 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2019-03-12 22:21 - 2019-03-06 11:16 - 000776792 _____ (Microsoft Corporation) C:\windows\system32\wer.dll
2019-03-12 22:21 - 2019-03-06 11:16 - 000722744 _____ (Microsoft Corporation) C:\windows\system32\wimgapi.dll
2019-03-12 22:21 - 2019-03-06 11:16 - 000566568 _____ (Microsoft Corporation) C:\windows\system32\tcblaunch.exe
2019-03-12 22:21 - 2019-03-06 11:16 - 000527160 _____ (Microsoft Corporation) C:\windows\system32\wimserv.exe
2019-03-12 22:21 - 2019-03-06 11:11 - 000493880 _____ (Microsoft Corporation) C:\windows\system32\WerFault.exe
2019-03-12 22:21 - 2019-03-06 11:10 - 000248880 _____ (Microsoft Corporation) C:\windows\system32\weretw.dll
2019-03-12 22:21 - 2019-03-06 11:07 - 001219896 _____ (Microsoft Corporation) C:\windows\system32\hvix64.exe
2019-03-12 22:21 - 2019-03-06 11:07 - 001023800 _____ (Microsoft Corporation) C:\windows\system32\hvax64.exe
2019-03-12 22:21 - 2019-03-06 11:07 - 000376120 _____ (Microsoft Corporation) C:\windows\system32\Drivers\fastfat.sys
2019-03-12 22:21 - 2019-03-06 11:06 - 000134968 _____ (Microsoft Corporation) C:\windows\system32\hvloader.dll
2019-03-12 22:21 - 2019-03-06 11:06 - 000076088 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hvservice.sys
2019-03-12 22:21 - 2019-03-06 11:05 - 000439224 _____ (Microsoft Corporation) C:\windows\system32\Faultrep.dll
2019-03-12 22:21 - 2019-03-06 11:05 - 000436240 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2019-03-12 22:21 - 2019-03-06 11:05 - 000159864 _____ (Microsoft Corporation) C:\windows\system32\WerFaultSecure.exe
2019-03-12 22:21 - 2019-03-06 11:04 - 002765856 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2019-03-12 22:21 - 2019-03-06 11:04 - 000945464 _____ (Microsoft Corporation) C:\windows\system32\Drivers\refsv1.sys
2019-03-12 22:21 - 2019-03-06 11:04 - 000628024 _____ (Microsoft Corporation) C:\windows\system32\dpx.dll
2019-03-12 22:21 - 2019-03-06 11:03 - 002719544 _____ (Microsoft Corporation) C:\windows\system32\Drivers\tcpip.sys
2019-03-12 22:21 - 2019-03-06 11:03 - 002465784 _____ (Microsoft Corporation) C:\windows\system32\msxml6.dll
2019-03-12 22:21 - 2019-03-06 11:03 - 001921848 _____ (Microsoft Corporation) C:\windows\system32\Drivers\refs.sys
2019-03-12 22:21 - 2019-03-06 11:03 - 000793400 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms2.sys
2019-03-12 22:21 - 2019-03-06 11:03 - 000412984 _____ (Microsoft Corporation) C:\windows\system32\Drivers\dxgmms1.sys
2019-03-12 22:21 - 2019-03-06 11:03 - 000375608 _____ (Microsoft Corporation) C:\windows\system32\Drivers\msrpc.sys
2019-03-12 22:21 - 2019-03-06 11:02 - 002421048 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ntfs.sys
2019-03-12 22:21 - 2019-03-06 11:02 - 001257672 _____ (Microsoft Corporation) C:\windows\system32\winload.exe
2019-03-12 22:21 - 2019-03-06 11:02 - 001140480 _____ (Microsoft Corporation) C:\windows\system32\winresume.efi
2019-03-12 22:21 - 2019-03-06 11:02 - 000982912 _____ (Microsoft Corporation) C:\windows\system32\winresume.exe
2019-03-12 22:21 - 2019-03-06 11:02 - 000626488 _____ (Microsoft Corporation) C:\windows\system32\Drivers\afd.sys
2019-03-12 22:21 - 2019-03-06 10:36 - 004383744 _____ (Microsoft Corporation) C:\windows\system32\EdgeContent.dll
2019-03-12 22:21 - 2019-03-06 10:34 - 004866048 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2019-03-12 22:21 - 2019-03-06 10:33 - 000046080 _____ (Microsoft Corporation) C:\windows\system32\Drivers\hidparse.sys
2019-03-12 22:21 - 2019-03-06 10:32 - 003399168 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentServer.dll
2019-03-12 22:21 - 2019-03-06 10:32 - 000358912 _____ (Microsoft Corporation) C:\windows\system32\Drivers\exfat.sys
2019-03-12 22:21 - 2019-03-06 10:32 - 000209408 _____ (Microsoft Corporation) C:\windows\system32\AppXApplicabilityBlob.dll
2019-03-12 22:21 - 2019-03-06 10:31 - 002368512 _____ (Microsoft Corporation) C:\windows\system32\WebRuntimeManager.dll
2019-03-12 22:21 - 2019-03-06 10:31 - 001826816 _____ (Microsoft Corporation) C:\windows\system32\Windows.CloudStore.dll
2019-03-12 22:21 - 2019-03-06 10:31 - 000894464 _____ (Microsoft Corporation) C:\windows\system32\webplatstorageserver.dll
2019-03-12 22:21 - 2019-03-06 10:31 - 000808448 _____ (Microsoft Corporation) C:\windows\system32\EdgeManager.dll
2019-03-12 22:21 - 2019-03-06 10:31 - 000726528 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2019-03-12 22:21 - 2019-03-06 10:31 - 000353792 _____ (Microsoft Corporation) C:\windows\system32\dhcpcore.dll
2019-03-12 22:21 - 2019-03-06 10:31 - 000324608 _____ (Microsoft Corporation) C:\windows\system32\Drivers\udfs.sys
2019-03-12 22:21 - 2019-03-06 10:31 - 000279552 _____ (Microsoft Corporation) C:\windows\system32\dhcpcore6.dll
2019-03-12 22:21 - 2019-03-06 10:31 - 000266752 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srvnet.sys
2019-03-12 22:21 - 2019-03-06 10:31 - 000154112 _____ (Microsoft Corporation) C:\windows\system32\Chakradiag.dll
2019-03-12 22:21 - 2019-03-06 10:29 - 002364928 _____ (Microsoft Corporation) C:\windows\system32\OpcServices.dll
2019-03-12 22:21 - 2019-03-06 10:29 - 002174976 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentExtensions.onecore.dll
2019-03-12 22:21 - 2019-03-06 10:29 - 001559552 _____ (Microsoft Corporation) C:\windows\system32\AppXDeploymentExtensions.desktop.dll
2019-03-12 22:21 - 2019-03-06 10:29 - 000736256 _____ (Microsoft Corporation) C:\windows\system32\Drivers\srv2.sys
2019-03-12 22:21 - 2019-03-06 10:28 - 001803776 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2019-03-12 22:21 - 2019-03-06 10:27 - 002224640 _____ (Microsoft Corporation) C:\windows\system32\win32kbase.sys
2019-03-12 22:21 - 2019-03-06 10:27 - 000776192 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2019-03-12 22:21 - 2019-03-06 10:27 - 000542720 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2019-03-12 22:21 - 2019-03-06 10:27 - 000507392 _____ (Microsoft Corporation) C:\windows\system32\edgeIso.dll
2019-03-12 22:21 - 2019-03-06 10:26 - 000868864 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Media.MixedRealityCapture.dll
2019-03-12 22:21 - 2019-03-06 10:26 - 000073216 _____ (Microsoft Corporation) C:\windows\system32\Drivers\npfs.sys
2019-03-12 22:21 - 2019-03-06 10:26 - 000031232 _____ (Microsoft Corporation) C:\windows\system32\Drivers\msfs.sys
2019-03-12 22:21 - 2019-03-06 10:25 - 000093696 _____ (Microsoft Corporation) C:\windows\system32\Drivers\cdfs.sys
2019-03-12 22:21 - 2019-03-06 09:08 - 000001310 _____ C:\windows\system32\tcbres.wim
2019-03-12 22:21 - 2019-03-06 08:17 - 001989040 _____ (Microsoft Corporation) C:\windows\SysWOW64\msxml6.dll
2019-03-12 22:21 - 2019-03-06 08:17 - 000146712 _____ (Microsoft Corporation) C:\windows\SysWOW64\WerFaultSecure.exe
2019-03-12 22:21 - 2019-03-06 08:15 - 002253488 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2019-03-12 22:21 - 2019-03-06 08:15 - 000434488 _____ (Microsoft Corporation) C:\windows\SysWOW64\WerFault.exe
2019-03-12 22:21 - 2019-03-06 08:14 - 000785568 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2019-03-12 22:21 - 2019-03-06 08:14 - 000665224 _____ (Microsoft Corporation) C:\windows\SysWOW64\wer.dll
2019-03-12 22:21 - 2019-03-06 08:14 - 000450872 _____ (Microsoft Corporation) C:\windows\SysWOW64\dpx.dll
2019-03-12 22:21 - 2019-03-06 08:14 - 000380728 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2019-03-12 22:21 - 2019-03-06 08:13 - 000607248 _____ (Microsoft Corporation) C:\windows\SysWOW64\wimgapi.dll
2019-03-12 22:21 - 2019-03-06 07:53 - 005307392 _____ (Microsoft Corporation) C:\windows\SysWOW64\d2d1.dll
2019-03-12 22:21 - 2019-03-06 07:53 - 003711488 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2019-03-12 22:21 - 2019-03-06 07:52 - 005790720 _____ (Microsoft Corporation) C:\windows\SysWOW64\Chakra.dll
2019-03-12 22:21 - 2019-03-06 07:52 - 000608768 _____ (Microsoft Corporation) C:\windows\SysWOW64\EdgeManager.dll
2019-03-12 22:21 - 2019-03-06 07:52 - 000261632 _____ (Microsoft Corporation) C:\windows\SysWOW64\dhcpcore6.dll
2019-03-12 22:21 - 2019-03-06 07:51 - 000561152 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2019-03-12 22:21 - 2019-03-06 07:51 - 000333824 _____ (Microsoft Corporation) C:\windows\SysWOW64\edgeIso.dll
2019-03-12 22:21 - 2019-03-06 07:51 - 000032768 _____ (Microsoft Corporation) C:\windows\SysWOW64\werdiagcontroller.dll
2019-03-12 22:21 - 2019-03-06 07:50 - 001628160 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2019-03-12 22:21 - 2019-03-06 07:50 - 001347584 _____ (Microsoft Corporation) C:\windows\SysWOW64\OpcServices.dll
2019-03-12 22:21 - 2019-03-06 07:50 - 000578560 _____ (Microsoft Corporation) C:\windows\SysWOW64\webplatstorageserver.dll
2019-03-12 22:21 - 2019-03-06 07:49 - 000318464 _____ (Microsoft Corporation) C:\windows\SysWOW64\dhcpcore.dll
2019-03-12 22:21 - 2019-03-06 07:49 - 000251904 _____ (Microsoft Corporation) C:\windows\SysWOW64\msIso.dll
2019-03-12 22:21 - 2019-03-06 07:48 - 000669696 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2019-03-12 22:21 - 2019-03-06 07:48 - 000533504 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2019-03-12 22:21 - 2019-02-21 05:26 - 000313344 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrd2x40.dll
2019-03-12 22:21 - 2019-02-16 15:02 - 002871304 _____ (Microsoft Corporation) C:\windows\system32\aitstatic.exe
2019-03-12 22:21 - 2019-02-16 15:02 - 001644040 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2019-03-12 22:21 - 2019-02-16 15:02 - 000808456 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2019-03-12 22:21 - 2019-02-16 15:02 - 000735752 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2019-03-12 22:21 - 2019-02-16 15:02 - 000620040 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2019-03-12 22:21 - 2019-02-16 15:02 - 000460296 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2019-03-12 22:21 - 2019-02-16 15:02 - 000322568 _____ (Microsoft Corporation) C:\windows\system32\acmigration.dll
2019-03-12 22:21 - 2019-02-16 15:02 - 000147464 _____ (Microsoft Corporation) C:\windows\system32\CompatTelRunner.exe
2019-03-12 22:21 - 2019-02-16 15:02 - 000071176 _____ (Microsoft Corporation) C:\windows\system32\win32appinventorycsp.dll
2019-03-12 22:21 - 2019-02-16 14:57 - 001048472 _____ (Microsoft Corporation) C:\windows\system32\Windows.Internal.Shell.Broker.dll
2019-03-12 22:21 - 2019-02-16 14:57 - 000506088 _____ (Microsoft Corporation) C:\windows\system32\systemreset.exe
2019-03-12 22:21 - 2019-02-16 14:56 - 000549520 _____ (Microsoft Corporation) C:\windows\system32\AppResolver.dll
2019-03-12 22:21 - 2019-02-16 14:56 - 000540984 _____ (Microsoft Corporation) C:\windows\system32\pcasvc.dll
2019-03-12 22:21 - 2019-02-16 14:53 - 001516416 _____ (Microsoft Corporation) C:\windows\system32\msctf.dll
2019-03-12 22:21 - 2019-02-16 14:36 - 000127488 _____ (Microsoft Corporation) C:\windows\system32\AppxSysprep.dll
2019-03-12 22:21 - 2019-02-16 14:34 - 004718080 _____ (Microsoft Corporation) C:\windows\system32\twinui.pcshell.dll
2019-03-12 22:21 - 2019-02-16 14:34 - 001725952 _____ (Microsoft Corporation) C:\windows\system32\Windows.UI.Immersive.dll
2019-03-12 22:21 - 2019-02-16 14:34 - 000302080 _____ (Microsoft Corporation) C:\windows\system32\AcLayers.dll
2019-03-12 22:21 - 2019-02-16 14:33 - 001786880 _____ (Microsoft Corporation) C:\windows\system32\wsp_health.dll
2019-03-12 22:21 - 2019-02-16 14:32 - 003646976 _____ (Microsoft Corporation) C:\windows\system32\win32kfull.sys
2019-03-12 22:21 - 2019-02-16 14:32 - 002051072 _____ (Microsoft Corporation) C:\windows\system32\wsp_fs.dll
2019-03-12 22:21 - 2019-02-16 14:31 - 001271808 _____ (Microsoft Corporation) C:\windows\system32\gpsvc.dll
2019-03-12 22:21 - 2019-02-16 14:31 - 001003520 _____ (Microsoft Corporation) C:\windows\system32\clusapi.dll
2019-03-12 22:21 - 2019-02-16 14:31 - 000861184 _____ (Microsoft Corporation) C:\windows\system32\mprddm.dll
2019-03-12 22:21 - 2019-02-16 14:31 - 000615424 _____ (Microsoft Corporation) C:\windows\system32\resutils.dll
2019-03-12 22:21 - 2019-02-16 14:30 - 002019840 _____ (Microsoft Corporation) C:\windows\system32\ResetEngine.dll
2019-03-12 22:21 - 2019-02-16 14:30 - 000877568 _____ (Microsoft Corporation) C:\windows\system32\RecoveryDrive.exe
2019-03-12 22:21 - 2019-02-16 14:29 - 000174080 _____ (Microsoft Corporation) C:\windows\system32\ResetEngOnline.dll
2019-03-12 22:21 - 2019-02-16 14:29 - 000091136 _____ (Microsoft Corporation) C:\windows\system32\mcbuilder.exe
2019-03-12 22:21 - 2019-02-16 14:24 - 000444176 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppResolver.dll
2019-03-12 22:21 - 2019-02-16 14:22 - 001322176 _____ (Microsoft Corporation) C:\windows\SysWOW64\msctf.dll
2019-03-12 22:21 - 2019-02-16 14:08 - 000373760 _____ (Microsoft Corporation) C:\windows\SysWOW64\AcLayers.dll
2019-03-12 22:21 - 2019-02-16 14:07 - 001307648 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsp_health.dll
2019-03-12 22:21 - 2019-02-16 14:07 - 000484352 _____ (Microsoft Corporation) C:\windows\SysWOW64\resutils.dll
2019-03-12 22:21 - 2019-02-16 14:06 - 002890752 _____ (Microsoft Corporation) C:\windows\SysWOW64\win32kfull.sys
2019-03-12 22:21 - 2019-02-16 14:06 - 001530880 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.UI.Immersive.dll
2019-03-12 22:21 - 2019-02-16 14:06 - 001451520 _____ (Microsoft Corporation) C:\windows\SysWOW64\wsp_fs.dll
2019-03-12 22:21 - 2019-02-16 14:06 - 000774656 _____ (Microsoft Corporation) C:\windows\SysWOW64\clusapi.dll
2019-03-12 22:21 - 2019-02-16 14:06 - 000765952 _____ (Microsoft Corporation) C:\windows\SysWOW64\mprddm.dll
2019-03-12 22:21 - 2019-02-16 14:04 - 000080384 _____ (Microsoft Corporation) C:\windows\SysWOW64\mcbuilder.exe
2019-03-12 22:21 - 2019-02-16 10:16 - 000511800 _____ (Microsoft Corporation) C:\windows\system32\aepic.dll
2019-03-12 22:21 - 2019-02-16 10:15 - 000505656 _____ (Microsoft Corporation) C:\windows\system32\dcntel.dll
2019-03-12 22:21 - 2019-02-16 10:15 - 000035640 _____ (Microsoft Corporation) C:\windows\system32\DeviceCensus.exe
2019-03-12 22:21 - 2019-02-16 10:05 - 000087800 _____ (Microsoft Corporation) C:\windows\system32\taskhostw.exe
2019-03-12 22:21 - 2019-02-16 10:04 - 000193032 _____ (Microsoft Corporation) C:\windows\system32\Drivers\appid.sys
2019-03-12 22:21 - 2019-02-16 10:03 - 007901392 _____ (Microsoft Corporation) C:\windows\system32\d3d10warp.dll
2019-03-12 22:21 - 2019-02-16 10:03 - 000510288 _____ (Microsoft Corporation) C:\windows\system32\policymanager.dll
2019-03-12 22:21 - 2019-02-16 10:02 - 005821440 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3d10warp.dll
2019-03-12 22:21 - 2019-02-16 10:02 - 003291632 _____ (Microsoft Corporation) C:\windows\system32\combase.dll
2019-03-12 22:21 - 2019-02-16 10:02 - 001934800 _____ (Microsoft Corporation) C:\windows\system32\AudioEng.dll
2019-03-12 22:21 - 2019-02-16 10:02 - 001792712 _____ (Microsoft Corporation) C:\windows\system32\propsys.dll
2019-03-12 22:21 - 2019-02-16 10:02 - 000705848 _____ (Microsoft Corporation) C:\windows\system32\Drivers\vhdmp.sys
2019-03-12 22:21 - 2019-02-16 10:02 - 000432952 _____ (Microsoft Corporation) C:\windows\system32\Drivers\rdbss.sys
2019-03-12 22:21 - 2019-02-16 10:02 - 000413712 _____ (Microsoft Corporation) C:\windows\system32\AUDIOKSE.dll
2019-03-12 22:21 - 2019-02-16 10:01 - 001285424 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ndis.sys
2019-03-12 22:21 - 2019-02-16 10:01 - 001209696 _____ (Microsoft Corporation) C:\windows\system32\AudioSes.dll
2019-03-12 22:21 - 2019-02-16 10:01 - 001098056 _____ (Microsoft Corporation) C:\windows\system32\msvproc.dll
2019-03-12 22:21 - 2019-02-16 10:01 - 001028920 _____ (Microsoft Corporation) C:\windows\system32\Drivers\http.sys
2019-03-12 22:21 - 2019-02-16 10:01 - 001014344 _____ (Microsoft Corporation) C:\windows\system32\ucrtbase.dll
2019-03-12 22:21 - 2019-02-16 10:01 - 000641984 _____ (Microsoft Corporation) C:\windows\system32\msvcp_win.dll
2019-03-12 22:21 - 2019-02-16 10:01 - 000594024 _____ (Microsoft Corporation) C:\windows\system32\audiodg.exe
2019-03-12 22:21 - 2019-02-16 10:01 - 000527160 _____ (Microsoft Corporation) C:\windows\system32\hal.dll
2019-03-12 22:21 - 2019-02-16 10:01 - 000480840 _____ (Microsoft Corporation) C:\windows\system32\ucrtbase_enclave.dll
2019-03-12 22:21 - 2019-02-16 10:01 - 000335672 _____ (Microsoft Corporation) C:\windows\system32\moshostcore.dll
2019-03-12 22:21 - 2019-02-16 10:01 - 000161664 _____ (Microsoft Corporation) C:\windows\system32\RTWorkQ.dll
2019-03-12 22:21 - 2019-02-16 09:57 - 000383288 _____ (Microsoft Corporation) C:\windows\SysWOW64\aepic.dll
2019-03-12 22:21 - 2019-02-16 09:53 - 000443632 _____ (Microsoft Corporation) C:\windows\SysWOW64\policymanager.dll
2019-03-12 22:21 - 2019-02-16 09:51 - 002479168 _____ (Microsoft Corporation) C:\windows\SysWOW64\combase.dll
2019-03-12 22:21 - 2019-02-16 09:51 - 001584536 _____ (Microsoft Corporation) C:\windows\SysWOW64\propsys.dll
2019-03-12 22:21 - 2019-02-16 09:51 - 000170952 _____ (Microsoft Corporation) C:\windows\SysWOW64\RTWorkQ.dll
2019-03-12 22:21 - 2019-02-16 09:50 - 001805648 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioEng.dll
2019-03-12 22:21 - 2019-02-16 09:50 - 001171336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ucrtbase.dll
2019-03-12 22:21 - 2019-02-16 09:50 - 001130568 _____ (Microsoft Corporation) C:\windows\SysWOW64\msvproc.dll
2019-03-12 22:21 - 2019-02-16 09:50 - 001011872 _____ (Microsoft Corporation) C:\windows\SysWOW64\AudioSes.dll
2019-03-12 22:21 - 2019-02-16 09:50 - 000560384 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppXDeploymentClient.dll
2019-03-12 22:21 - 2019-02-16 09:50 - 000504072 _____ (Microsoft Corporation) C:\windows\SysWOW64\msvcp_win.dll
2019-03-12 22:21 - 2019-02-16 09:37 - 009084928 _____ (Microsoft Corporation) C:\windows\system32\BingMaps.dll
2019-03-12 22:21 - 2019-02-16 09:36 - 007057408 _____ (Microsoft Corporation) C:\windows\system32\mos.dll
2019-03-12 22:21 - 2019-02-16 09:36 - 000144384 _____ (Microsoft Corporation) C:\windows\system32\fcon.dll
2019-03-12 22:21 - 2019-02-16 09:35 - 008188928 _____ (Microsoft Corporation) C:\windows\system32\Windows.Data.Pdf.dll
2019-03-12 22:21 - 2019-02-16 09:35 - 006661632 _____ (Microsoft Corporation) C:\windows\SysWOW64\Windows.Data.Pdf.dll
2019-03-12 22:21 - 2019-02-16 09:34 - 005883904 _____ (Microsoft Corporation) C:\windows\SysWOW64\mos.dll
2019-03-12 22:21 - 2019-02-16 09:34 - 000095232 _____ (Microsoft Corporation) C:\windows\SysWOW64\UserDataTimeUtil.dll
2019-03-12 22:21 - 2019-02-16 09:34 - 000002560 _____ (Microsoft Corporation) C:\windows\SysWOW64\tzres.dll
2019-03-12 22:21 - 2019-02-16 09:33 - 006646784 _____ (Microsoft Corporation) C:\windows\SysWOW64\BingMaps.dll
2019-03-12 22:21 - 2019-02-16 09:33 - 000119808 _____ (Microsoft Corporation) C:\windows\system32\UserDataTimeUtil.dll
2019-03-12 22:21 - 2019-02-16 09:33 - 000054272 _____ (Microsoft Corporation) C:\windows\system32\CredentialMigrationHandler.dll
2019-03-12 22:21 - 2019-02-16 09:33 - 000043520 _____ (Microsoft Corporation) C:\windows\SysWOW64\CredentialMigrationHandler.dll
2019-03-12 22:21 - 2019-02-16 09:33 - 000002560 _____ (Microsoft Corporation) C:\windows\system32\tzres.dll
2019-03-12 22:21 - 2019-02-16 09:32 - 002969088 _____ (Microsoft Corporation) C:\windows\SysWOW64\cdp.dll
2019-03-12 22:21 - 2019-02-16 09:32 - 000173568 _____ (Microsoft Corporation) C:\windows\system32\EnterpriseModernAppMgmtCSP.dll
2019-03-12 22:21 - 2019-02-16 09:31 - 002825728 _____ (Microsoft Corporation) C:\windows\system32\MapGeocoder.dll
2019-03-12 22:21 - 2019-02-16 09:31 - 000392704 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapConfiguration.dll
2019-03-12 22:21 - 2019-02-16 09:31 - 000141312 _____ (Microsoft Corporation) C:\windows\system32\AppointmentActivation.dll
2019-03-12 22:21 - 2019-02-16 09:31 - 000126976 _____ (Microsoft Corporation) C:\windows\SysWOW64\srpapi.dll
2019-03-12 22:21 - 2019-02-16 09:30 - 002449408 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapRouter.dll
2019-03-12 22:21 - 2019-02-16 09:30 - 001986560 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapGeocoder.dll
2019-03-12 22:21 - 2019-02-16 09:30 - 001124352 _____ (Microsoft Corporation) C:\windows\SysWOW64\cdprt.dll
2019-03-12 22:21 - 2019-02-16 09:30 - 000530432 _____ (Microsoft Corporation) C:\windows\system32\MapConfiguration.dll
2019-03-12 22:21 - 2019-02-16 09:30 - 000357888 _____ (Microsoft Corporation) C:\windows\system32\AppLockerCSP.dll
2019-03-12 22:21 - 2019-02-16 09:30 - 000254464 _____ (Microsoft Corporation) C:\windows\SysWOW64\AppLockerCSP.dll
2019-03-12 22:21 - 2019-02-16 09:30 - 000145920 _____ (Microsoft Corporation) C:\windows\system32\srpapi.dll
2019-03-12 22:21 - 2019-02-16 09:29 - 001768448 _____ (Microsoft Corporation) C:\windows\system32\audiosrv.dll
2019-03-12 22:21 - 2019-02-16 09:29 - 000304128 _____ (Microsoft Corporation) C:\windows\system32\domgmt.dll
2019-03-12 22:21 - 2019-02-16 09:28 - 003381248 _____ (Microsoft Corporation) C:\windows\system32\MapRouter.dll
2019-03-12 22:21 - 2019-02-16 09:28 - 002585600 _____ (Microsoft Corporation) C:\windows\system32\wlansvc.dll
2019-03-12 22:21 - 2019-02-16 09:28 - 001668096 _____ (Microsoft Corporation) C:\windows\system32\cdprt.dll
2019-03-12 22:21 - 2019-02-16 09:28 - 000713216 _____ (Microsoft Corporation) C:\windows\SysWOW64\BingOnlineServices.dll
2019-03-12 22:21 - 2019-02-16 09:28 - 000705024 _____ (Microsoft Corporation) C:\windows\SysWOW64\MapControlCore.dll
2019-03-12 22:21 - 2019-02-16 09:28 - 000528384 _____ (Microsoft Corporation) C:\windows\SysWOW64\ActivationManager.dll
2019-03-12 22:21 - 2019-02-16 09:27 - 001364992 _____ (Microsoft Corporation) C:\windows\system32\lpasvc.dll
2019-03-12 22:21 - 2019-02-16 09:27 - 000729088 _____ (Microsoft Corporation) C:\windows\SysWOW64\NMAA.dll
2019-03-12 22:21 - 2019-02-16 09:27 - 000686592 _____ (Microsoft Corporation) C:\windows\system32\AudioEndpointBuilder.dll
2019-03-12 22:21 - 2019-02-16 09:26 - 001459712 _____ (Microsoft Corporation) C:\windows\system32\dosvc.dll
2019-03-12 22:21 - 2019-02-16 09:26 - 001225216 _____ (Microsoft Corporation) C:\windows\system32\MapsStore.dll
2019-03-12 22:21 - 2019-02-16 09:26 - 000943616 _____ (Microsoft Corporation) C:\windows\system32\BingOnlineServices.dll
2019-03-12 22:21 - 2019-02-16 09:26 - 000935424 _____ (Microsoft Corporation) C:\windows\system32\rasmans.dll
2019-03-12 22:21 - 2019-02-16 09:26 - 000401920 _____ (Microsoft Corporation) C:\windows\system32\rascustom.dll
2019-03-12 22:21 - 2019-02-16 09:25 - 000884224 _____ (Microsoft Corporation) C:\windows\system32\NMAA.dll
2019-03-12 22:21 - 2019-02-16 09:25 - 000652800 _____ (Microsoft Corporation) C:\windows\system32\ActivationManager.dll
2019-03-12 21:24 - 2019-03-12 21:25 - 021205512 _____ (Piriform Software Ltd) C:\Users\rh46\Downloads\ccsetup555.exe
2019-03-09 13:26 - 2019-03-09 13:19 - 000592616 ____N (Microsoft Corporation) C:\windows\system32\MpSigStub.exe
2019-03-06 23:30 - 2019-03-06 23:30 - 000158237 _____ C:\Users\rh46\Downloads\Doklad SIPO_201903_6141295020.pdf
2019-03-05 18:04 - 2019-03-05 22:53 - 000000000 ____D C:\Users\rh46\AppData\Roaming\MPC-HC
2019-03-05 18:02 - 2019-03-05 18:06 - 000000000 ____D C:\Users\rh46\Desktop\Zoom Player
2019-03-05 18:01 - 2019-03-05 18:01 - 000000000 ____D C:\Users\rh46\Desktop\MPC-HC
2019-03-05 17:48 - 2019-03-05 17:48 - 000000000 ____D C:\Users\Public\CyberLink
==================== One month (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-04-04 15:25 - 2019-01-07 16:22 - 000000000 ___HD C:\Users\rh46\MicrosoftEdgeBackups
2019-04-04 15:21 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-04-04 14:57 - 2019-01-28 22:47 - 000000000 ____D C:\Users\rh46\Desktop\Účetnictví
2019-04-04 14:56 - 2018-04-28 08:06 - 000000000 ____D C:\windows\system32\SleepStudy
2019-04-04 12:09 - 2019-01-08 15:07 - 000004210 _____ C:\windows\System32\Tasks\CCleaner Update
2019-04-04 00:12 - 2018-04-12 01:36 - 000000000 ____D C:\windows\INF
2019-04-03 20:40 - 2018-04-12 01:38 - 000000000 ____D C:\windows\AppReadiness
2019-04-03 17:55 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps
2019-04-03 17:51 - 2019-01-29 17:32 - 000003248 _____ C:\windows\System32\Tasks\HPCeeScheduleForrh46
2019-04-03 17:51 - 2019-01-29 17:32 - 000000360 _____ C:\windows\Tasks\HPCeeScheduleForrh46.job
2019-04-01 23:11 - 2019-01-12 15:15 - 000000000 ____D C:\Users\rh46\Downloads\Od Jitky 2019
2019-04-01 21:56 - 2019-01-10 22:08 - 000000000 ____D C:\Users\rh46\Desktop\Odkazy
2019-04-01 14:42 - 2019-01-28 22:48 - 000000000 ____D C:\Users\rh46\Desktop\Spotřeba energií
2019-03-30 19:49 - 2019-01-07 18:50 - 000000000 ____D C:\Users\rh46\AppData\Roaming\Ancestry
2019-03-30 13:20 - 2019-01-08 21:01 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2019-03-30 13:17 - 2019-01-07 16:21 - 000000000 ____D C:\Users\rh46\AppData\Local\VirtualStore
2019-03-29 17:22 - 2019-01-07 17:00 - 000003376 _____ C:\windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3605916927-1593358766-570604066-1001
2019-03-29 17:22 - 2019-01-07 16:35 - 000000000 ___RD C:\Users\rh46\OneDrive
2019-03-29 17:22 - 2019-01-07 16:16 - 000002365 _____ C:\Users\rh46\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2019-03-22 19:34 - 2019-01-26 19:45 - 000000000 ____D C:\Users\rh46\Desktop\Nová složka
2019-03-22 01:33 - 2019-01-18 18:10 - 000000000 ____D C:\Users\rh46\Downloads\Od Karla 2019
2019-03-20 22:52 - 2018-04-11 23:04 - 000032768 _____ C:\windows\system32\config\ELAM
2019-03-20 22:51 - 2018-04-28 08:06 - 000000006 ____H C:\windows\Tasks\SA.DAT
2019-03-20 22:39 - 2018-10-04 02:38 - 000065536 _____ C:\windows\psp_storage.bin
2019-03-20 22:39 - 2018-04-11 23:04 - 000786432 _____ C:\windows\system32\config\BBI
2019-03-20 21:18 - 2019-01-08 14:09 - 000000000 ____D C:\Program Files\rempl
2019-03-19 23:36 - 2019-01-07 16:21 - 000000000 ____D C:\Users\rh46\AppData\Local\Packages
2019-03-14 20:47 - 2019-01-08 21:21 - 000000000 ____D C:\Users\rh46\AppData\Local\D3DSCache
2019-03-13 12:40 - 2018-06-02 11:33 - 000744924 _____ C:\windows\system32\perfh005.dat
2019-03-13 12:40 - 2018-06-02 11:33 - 000159594 _____ C:\windows\system32\perfc005.dat
2019-03-13 12:40 - 2018-04-28 08:11 - 001826110 _____ C:\windows\system32\PerfStringBackup.INI
2019-03-13 12:32 - 2018-04-28 08:06 - 000490856 _____ C:\windows\system32\FNTCACHE.DAT
2019-03-13 01:09 - 2018-04-12 01:38 - 000000000 ___SD C:\windows\system32\UNP
2019-03-13 01:09 - 2018-04-12 01:38 - 000000000 ____D C:\windows\TextInput
2019-03-13 01:09 - 2018-04-12 01:38 - 000000000 ____D C:\windows\system32\oobe
2019-03-13 01:09 - 2018-04-12 01:38 - 000000000 ____D C:\windows\system32\appraiser
2019-03-13 01:09 - 2018-04-12 01:38 - 000000000 ____D C:\windows\ShellExperiences
2019-03-13 01:09 - 2018-04-12 01:38 - 000000000 ____D C:\windows\bcastdvr
2019-03-13 01:09 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files\Windows Defender
2019-03-13 01:09 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2019-03-13 00:48 - 2019-01-08 15:07 - 000000870 _____ C:\Users\Public\Desktop\CCleaner.lnk
2019-03-12 22:36 - 2018-04-12 01:30 - 000000000 ____D C:\windows\CbsTemp
2019-03-12 22:19 - 2019-01-08 14:44 - 000000000 ____D C:\windows\system32\MRT
2019-03-12 22:14 - 2019-01-08 14:43 - 127411920 ____C (Microsoft Corporation) C:\windows\system32\MRT.exe
2019-03-10 00:29 - 2019-01-31 21:12 - 000000000 ____D C:\Users\rh46\Desktop\Od Petříka
2019-03-09 13:27 - 2018-04-28 08:06 - 000000000 ____D C:\windows\system32\Drivers\wd
2019-03-08 13:00 - 2019-01-07 16:16 - 000000000 ____D C:\Users\rh46
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\explorer.exe => File is digitally signed
C:\windows\SysWOW64\explorer.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\SysWOW64\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\SysWOW64\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\SysWOW64\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\dnsapi.dll => File is digitally signed
C:\windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\windows\system32\dllhost.exe => File is digitally signed
C:\windows\SysWOW64\dllhost.exe => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2018-04-28 08:06
==================== End of FRST.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17.03.2019
Ran by rh46 (04-04-2019 15:37:40)
Running from C:\Users\rh46\Desktop
Windows 10 Home Version 1803 17134.648 (X64) (2019-01-07 12:13:18)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-3605916927-1593358766-570604066-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3605916927-1593358766-570604066-503 - Limited - Disabled)
Guest (S-1-5-21-3605916927-1593358766-570604066-501 - Limited - Disabled)
rh46 (S-1-5-21-3605916927-1593358766-570604066-1001 - Administrator - Enabled) => C:\Users\rh46
WDAGUtilityAccount (S-1-5-21-3605916927-1593358766-570604066-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: McAfee VirusScan (Disabled - Up to date) {8BCDACFA-D264-3528-5EF8-E94FD0BC1FBC}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: McAfee VirusScan (Disabled - Up to date) {30AC4D1E-F45E-3AA6-6448-D23DAB3B5501}
FW: McAfee Firewall (Disabled) {B3F62DDF-980B-3470-75A7-407A2E6F58C7}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
ACDSee Photo Manager 2009 (HKLM-x32\...\{300578F9-9EFF-4B93-9AB1-C0E5707EF463}) (Version: 11.0.85 - ACD Systems International)
ACDSee Photo Manager 2009 Build 113 - odinstalovat češtinu (HKLM-x32\...\ACDSee Photo Manager 2009 Build 113) (Version: - Michellin & Pavlík)
AMD Radeon Settings (HKLM\...\WUCCCApp) (Version: 2018.1016.918.14930 - Advanced Micro Devices, Inc.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 17.7 - Advanced Micro Devices, Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 5.55 - Piriform)
HP Audio Switch (HKLM-x32\...\{BC852AA8-58F6-4F07-ACB1-7377E52CA4F3}) (Version: 1.0.150.0 - HP Inc.)
HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.11.0 - HP Inc.)
HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.1 - HP Inc.)
HP ePrint SW (HKLM-x32\...\{cdb5f70f-5107-4613-bf69-15de903b5b5d}) (Version: 5.5.22560 - HP Inc.)
HP JumpStart Bridge (HKLM-x32\...\{3FC961DB-BD36-4D8D-B276-0C456A2BB638}) (Version: 1.4.0.441 - HP Inc.)
HP JumpStart Launch (HKLM-x32\...\{F213102E-FD30-4E22-AF73-4C682D65FFEE}) (Version: 1.4.441.0 - HP Inc.)
HP Support Assistant (HKLM-x32\...\{4AAC4B07-77EF-4BCF-88DC-D24E4DE683E8}) (Version: 8.5.37.19 - HP Inc.)
HP Support Solutions Framework (HKLM-x32\...\{4E100CB6-9312-48BC-9DC0-4F4D5C338449}) (Version: 12.8.37.11 - HP Inc.)
HP System Event Utility (HKLM-x32\...\{5D308D1F-E37B-431A-8D35-67D16287467D}) (Version: 1.4.28 - HP Inc.)
McAfee LiveSafe (HKLM-x32\...\MSC) (Version: 16.0 R18 - McAfee, Inc.)
Microsoft Office Professional Plus 2016 - cs-cz (HKLM\...\ProplusRetail - cs-cz) (Version: 16.0.11425.20202 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 - en-us (HKLM\...\ProplusRetail - en-us) (Version: 16.0.11425.20202 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3605916927-1593358766-570604066-1001\...\OneDriveSetup.exe) (Version: 19.043.0304.0005 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24123 (HKLM-x32\...\{2cbcedbb-f38c-48a3-a3e1-6c6fd821a7f4}) (Version: 14.0.24123.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24123 (HKLM-x32\...\{206898cc-4b41-4d98-ac28-9f9ae57f91fe}) (Version: 14.0.24123.0 - Microsoft Corporation)
OEM Application Profile (HKLM-x32\...\{12C2AEB0-ED60-4CCF-DD83-C65BC7CCFB50}) (Version: 1.00.0000 - Advanced Micro Devices, Inc.)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.11425.20202 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.11425.20202 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.11425.20202 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.11425.20202 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0409-0000-0000000FF1CE}) (Version: 16.0.11425.20202 - Microsoft Corporation) Hidden
REALTEK Bluetooth Driver (HKLM-x32\...\{9D3D8C60-A5EF-4123-B2B9-172095903AB}) (Version: 1.0.0.88 - REALTEK Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.25.119.2018 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8544 - Realtek Semiconductor Corp.)
REALTEK Wireless LAN Driver (HKLM-x32\...\{A5107464-AA9B-4177-8129-5FF2F42DD322}) (Version: 1.0.0.113 - REALTEK Semiconductor Corp.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.5.10.69 - Synaptics Incorporated)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{FBA3961B-D1DF-493C-BC1F-E67D3B832895}) (Version: 2.56.0.0 - Microsoft Corporation)
Vulkan Run Time Libraries 1.0.61.0 (HKLM\...\VulkanRT1.0.61.0) (Version: 1.0.61.0 - LunarG, Inc.) Hidden
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3605916927-1593358766-570604066-1001_Classes\CLSID\{018D5C66-4533-4307-9B53-224DE2ED1FE6} -> [OneDrive] => {a52bba46-e9e1-435f-b3d9-28daa648c0f6}
CustomCLSID: HKU\S-1-5-21-3605916927-1593358766-570604066-1001_Classes\CLSID\{C591CFEA-E432-495d-A0BE-58E4CCD87B17}\Shell\Open\Command -> C:\Program Files\Synaptics\SynTP\SynTPCpl.dll (Synaptics Incorporated -> Synaptics Incorporated)
ContextMenuHandlers1: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => c:\program files\mcafee\msc\mcctxmenufrmwrk.dll [2019-01-07] (McAfee, Inc. -> McAfee, Inc.)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2018-10-16] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers6: [McCtxMenuFrmWrk] -> {CCA9EFD3-29ED-430A-BA6D-E6BBFF0A60C2} => c:\program files\mcafee\msc\mcctxmenufrmwrk.dll [2019-01-07] (McAfee, Inc. -> McAfee, Inc.)
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {18D223C0-7CB7-4DA1-96BB-C4EB4337C3DB} - System32\Tasks\HPCeeScheduleForrh46 => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe (Hewlett-Packard Company -> HP Inc.)
Task: {1A202AA7-A639-49EE-AF6B-38431F66E9B2} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {22CB766B-35BC-40F6-AB16-D244F942AB28} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {268D6266-2825-4C95-A965-6CB61E562644} - System32\Tasks\McAfee\DAD.Execute.Updates => C:\Program Files\Common Files\McAfee\DynamicAppDownloader\1.1.207\DADUpdater.exe (McAfee, Inc. -> McAfee, Inc.)
Task: {2999E628-83E3-4F5C-8BA4-4FD387FFC088} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {38B39170-18AE-4952-ADCC-D52D829D5436} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe (Microsoft Corporation -> Microsoft Corporation)
"C:\Windows\System32\Tasks\McAfee\McAfee Idle Detection Task" was unlocked. <==== ATTENTION
Task: {3D351267-4B1C-4E27-A3C6-B8633D062613} - System32\Tasks\McAfee\McAfee Idle Detection Task
Task: {4CE34D76-F472-4F08-BD52-4E844DF305DA} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe (HP Inc. -> HP Inc.)
Task: {534D652C-518D-4B04-B0FB-27570068DB5A} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
Task: {57DE0D48-6C91-45C9-8537-B1E22758DC85} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {5EF76084-0830-4E9F-88F8-2E5C9E5E3862} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {5F93DA86-1DAD-40BC-A409-39981DA0B1F1} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe (HP Inc. -> HP Inc.)
Task: {731442F9-A342-4499-B9C0-F4AA2AFAEEB1} - System32\Tasks\McAfee\McAfee Auto Maintenance Task Agent
Task: {75DC029F-6C76-4B6E-848A-6DAD314B00E4} - System32\Tasks\McAfeeLogon => C:\Program Files\Common Files\McAfee\Platform\McUICnt.exe (McAfee, Inc. -> McAfee, Inc.)
Task: {7E3348ED-EBD9-4657-B635-44B68CBFDB38} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {83903C80-4820-4A57-8B17-B0D5E783AF2D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe (HP Inc. -> HP Inc.)
Task: {87BE0508-B183-4629-A605-562FA248EE4B} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {8C66479D-2916-4A06-9E44-E0171E85554A} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {8F0DA0B1-7E40-404A-A352-D14652A21678} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe (HP Inc. -> HP Inc.)
Task: {B14DD813-42E3-44DC-80BA-28447BC7073D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {B8218A7B-8BA8-402E-8D08-C7E4FA0BA9A6} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe (Piriform Software Ltd -> Piriform Software Ltd)
Task: {BD027BF8-DA61-4E00-8810-509332D4F90E} - System32\Tasks\Microsoft\Windows\Flighting\FeatureConfig\ReconcileFeatures
Task: {BE67FD36-4B14-4E0C-8AE0-CDCDA6D1FFAD} - System32\Tasks\McAfee Remediation (Prepare) => C:\Program Files\Common Files\AV\McAfee VirusScan\upgrade.exe (McAfee, Inc. -> McAfee, Inc.)
Task: {C54E4FC0-B311-49B1-AEF2-4E28541DADB8} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\dvrcmd.exe (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {C67429B0-51D1-4A44-A1FF-7715FEC6396D} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe (HP Inc. -> HP Inc.)
Task: {C838708C-7304-4C56-A793-F61ABC0212EF} - System32\Tasks\HPAudioSwitch => C:\Program Files (x86)\HP\HPAudioSwitch\HPAudioSwitch.exe (HP Inc. -> HP Inc.)
Task: {CC7DF77A-E731-410F-9F82-030EE2984E2C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1902.2-0\MpCmdRun.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {DD475149-0155-4C0E-A0A1-FE70149D9282} - System32\Tasks\HPJumpStartLaunch => C:\Program Files (x86)\HP\HP JumpStart Launch\HPJumpStartLaunch.exe (HP Inc. -> HP Inc.)
Task: {DE7CC29A-E7E2-4220-83C5-DC45695A0A93} - System32\Tasks\HPEA3JOBS => C:\Program [Argument = Files\HP\HP ePrint\hpeprint.exe /CheckJobs]
Task: {EF123825-882E-4C42-9AB8-C54D8476C97C} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {FB2CD991-1C5D-4F01-9899-EB90DF95A340} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe (Microsoft Corporation -> Microsoft Corporation)
Task: {FF3C5612-87DA-4C1B-8DA5-7AFBB46F663C} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe (HP Inc. -> HP Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\windows\Tasks\HPCeeScheduleForrh46.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2018-04-24 23:22 - 2018-04-24 23:22 - 000325632 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 003406848 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000282624 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 005523456 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 003281408 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll
2018-04-24 23:21 - 2018-04-24 23:21 - 000964096 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2018-04-24 23:21 - 2018-04-24 23:21 - 003233792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000194560 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2018-04-24 23:21 - 2018-04-24 23:21 - 006045184 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 069968896 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000109568 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2018-10-16 10:16 - 2018-10-16 10:16 - 005766144 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2018-04-24 23:21 - 2018-04-24 23:21 - 000279552 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 001336320 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\platforms\qwindows.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000015360 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.DLL
2018-04-24 23:22 - 2018-04-24 23:22 - 002519040 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000032256 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qgif.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000039936 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qicns.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000034304 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qico.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000237056 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qjpeg.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000025600 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qsvg.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000328704 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000025600 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qtga.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000024064 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwbmp.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000481792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwebp.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000018432 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000311296 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000018432 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000018432 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000049152 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2018-04-24 23:22 - 2018-04-24 23:22 - 000089600 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2019-01-07 17:59 - 2019-01-07 17:59 - 001037312 _____ () [File not signed] C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_1.4.3.0_x64__wafk5atnkzcwy\McUWPTile.dll
2019-01-07 17:59 - 2019-01-07 17:59 - 000074752 _____ () [File not signed] C:\Program Files\WindowsApps\5A894077.McAfeeSecurity_1.4.3.0_x64__wafk5atnkzcwy\McAfee.UWP.AppServices.Crypto.dll
2019-03-13 15:26 - 2019-03-13 15:26 - 000172544 _____ (HP Inc.) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\HPJumpStartBridge\ac4d2e3d1d11b9d5da4df3703df1def7\HPJumpStartBridge.ni.exe
2019-03-13 15:23 - 2019-03-13 15:23 - 000156672 _____ () [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\BRIDGECommon\5c8205d93a18c751218761c3b15473c1\BRIDGECommon.ni.dll
2019-03-13 15:25 - 2019-03-13 15:25 - 000131584 _____ (HP Inc.) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\CommonPortable\7695e152afc6d412e6ba001d5602b5b7\CommonPortable.ni.dll
2019-03-13 15:26 - 2019-03-13 15:26 - 000374784 _____ () [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\CleanStartController\f229d388ad289da81e4f92c485070514\CleanStartController.ni.dll
2019-03-13 15:25 - 2019-03-13 15:25 - 000121344 _____ () [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\BridgeExtension\645a97e8106e48931785ef8a467e6727\BridgeExtension.ni.dll
2019-03-13 15:26 - 2019-03-13 15:26 - 000139776 _____ () [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\Registratio4eabc192#\414563ac2981ab79d846dc2186701ffd\RegistrationUtilities.ni.dll
2019-03-13 15:24 - 2019-03-13 15:24 - 002227200 _____ (Newtonsoft) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\Newtonsoft.Json\4582e50ce61e5fbb8e458df79cd7a84e\Newtonsoft.Json.ni.dll
2019-03-13 15:25 - 2019-03-13 15:25 - 000077824 _____ () [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\NativeInterop\5660d1653481412c3fe11ec188d88a2e\NativeInterop.ni.dll
2019-03-13 15:27 - 2019-03-13 15:27 - 001567232 _____ (HP Inc.) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\HPAudioSwitch\915a93bc288cb667c4ead9459692161c\HPAudioSwitch.ni.exe
2019-03-13 15:27 - 2019-03-13 15:27 - 000764928 _____ (The Apache Software Foundation) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\log4net\a1d8f678b50292d989072e1b75e72ba8\log4net.ni.dll
2019-03-13 15:27 - 2019-03-13 15:27 - 000129536 _____ (hardcodet.net) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\Hardcodet.W6cab32f3#\18abc1546f7fd36f2144e91ae6116b8d\Hardcodet.Wpf.TaskbarNotification.ni.dll
2019-03-13 15:27 - 2019-03-13 15:27 - 001549312 _____ (Mark Heath) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\NAudio\818fad3eb6b481a0e888c5e2569a1694\NAudio.ni.dll
2019-03-13 15:27 - 2019-03-13 15:27 - 000141312 _____ ( ) [File not signed] C:\windows\assembly\NativeImages_v4.0.30319_32\Interop.IWs06dcaa36#\9384196ea1e1fa6c9b853d15a9e3b0c9\Interop.IWshRuntimeLibrary.ni.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\ModuleCoreService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcapexe => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\McMPFSvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MCODS => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mcpltsvc => ""=""
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeaack.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeavfk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefire => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfefirek.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfehidk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfemms => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfeplk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfetdi2k.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\mfevtp => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\ModuleCoreService => ""="Service"
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2018-04-12 01:38 - 2018-04-12 01:36 - 000000824 _____ C:\windows\system32\drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3605916927-1593358766-570604066-1001\Control Panel\Desktop\\Wallpaper -> C:\windows\web\wallpaper\HP Backgrounds\backgroundDefault.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
If an entry is included in the fixlist, it will be removed.
HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKU\S-1-5-21-3605916927-1593358766-570604066-1001\...\StartupApproved\Run: => "Device Detector"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{C93A2B8A-4157-4784-83A7-79AA8EBCA781}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{85471620-F426-4DC6-8623-EB9F3B608095}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{269FB3BE-49F7-4A8B-AA3D-7ED2240801C4}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{A420DB3C-C7A1-4D99-AD83-300D6EE1B7FA}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{1E5F4564-EC50-4197-8BAB-83B3BC3C270C}] => (Allow) C:\Program Files (x86)\Common Files\Mcafee\MMSSHost\MMSSHost.exe (McAfee, Inc. -> McAfee, Inc.)
FirewallRules: [{74701624-5171-4D71-88A7-6F3F208E3049}] => (Allow) C:\Program Files\Common Files\McAfee\MMSSHost\MMSSHost.exe (McAfee, Inc. -> McAfee, Inc.)
FirewallRules: [{82AA8684-5DDE-4235-BE8A-21040C1F6107}] => (Allow) C:\Program Files\Common Files\McAfee\Platform\McSvcHost\McSvHost.exe (McAfee, Inc. -> McAfee, Inc.)
FirewallRules: [{A97980FD-17C5-442B-9EEC-1EB43C173866}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16050.11029.20108.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1696D619-BC9A-447A-BAE1-C3FA038F08D1}] => (Allow) LPort=1688
FirewallRules: [{4BA4689E-43E4-469D-B188-359F8F4B1613}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B88F244C-97FE-4778-AD82-F2F21C376DC1}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{87A1C076-96DF-4424-9082-C2721408AA57}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
==================== Restore Points =========================
18-03-2019 15:19:01 Naplánovaný kontrolní bod
25-03-2019 18:57:57 Naplánovaný kontrolní bod
==================== Faulty Device Manager Devices =============
==================== Event log errors: =========================
Application errors:
==================
Error: (04/04/2019 02:22:37 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: MicrosoftEdgeCP.exe, verze: 11.0.17134.648, časové razítko: 0x5c7f852f
Název chybujícího modulu: edgehtml.dll, verze: 11.0.17134.648, časové razítko: 0x97d0e3c6
Kód výjimky: 0xc0000602
Posun chyby: 0x00000000004176dc
ID chybujícího procesu: 0x80fc
Čas spuštění chybující aplikace: 0x01d4eae0df2779fc
Cesta k chybující aplikaci: C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
Cesta k chybujícímu modulu: C:\windows\SYSTEM32\edgehtml.dll
ID zprávy: eb3eca32-41e1-47b7-a4e7-168caa2c7f8e
Úplný název chybujícího balíčku: Microsoft.MicrosoftEdge_42.17134.1.0_neutral__8wekyb3d8bbwe
ID aplikace související s chybujícím balíčkem: ContentProcess
Error: (04/04/2019 01:28:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 2109
Error: (04/04/2019 01:28:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 2109
Error: (04/04/2019 01:28:51 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second
Error: (04/04/2019 12:05:59 PM) (Source: HP Comm Recovery) (EventID: 0) (User: )
Description: Zpracování události PowerEvent se nezdařilo. Chyba, ke které došlo: System.IO.IOException: Proces nemůže přistupovat k souboru C:\Windows\Temp\signtool.exe, protože soubor je využíván jiným procesem.
v System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
v System.IO.FileStream.Init(String path, FileMode mode, FileAccess access, Int32 rights, Boolean useRights, FileShare share, Int32 bufferSize, FileOptions options, SECURITY_ATTRIBUTES secAttrs, String msgPath, Boolean bFromProxy, Boolean useLongPath, Boolean checkHost)
v System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, String msgPath, Boolean bFromProxy)
v System.IO.FileStream..ctor(String path, FileMode mode)
v _HPCommRecovery.Tools.Signtool.ExtractSignTool()
v _HPCommRecovery.Tools.Signtool.Verify(String arg)
v _HPCommRecovery.HPAHAgent.CallAgent()
v _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
v _HPCommRecovery.HPAHLogger.NewSession()
v _HPCommRecovery.HPCommRecove....
Error: (04/04/2019 12:05:58 PM) (Source: HP Comm Recovery) (EventID: 0) (User: )
Description: Zpracování události PowerEvent se nezdařilo. Chyba, ke které došlo: System.IO.IOException: Proces nemůže přistupovat k souboru C:\Windows\Temp\signtool.exe, protože soubor je využíván jiným procesem.
v System.IO.__Error.WinIOError(Int32 errorCode, String maybeFullPath)
v System.IO.FileStream.Init(String path, FileMode mode, FileAccess access, Int32 rights, Boolean useRights, FileShare share, Int32 bufferSize, FileOptions options, SECURITY_ATTRIBUTES secAttrs, String msgPath, Boolean bFromProxy, Boolean useLongPath, Boolean checkHost)
v System.IO.FileStream..ctor(String path, FileMode mode, FileAccess access, FileShare share, Int32 bufferSize, FileOptions options, String msgPath, Boolean bFromProxy)
v System.IO.FileStream..ctor(String path, FileMode mode)
v _HPCommRecovery.Tools.Signtool.ExtractSignTool()
v _HPCommRecovery.Tools.Signtool.Verify(String arg)
v _HPCommRecovery.HPAHAgent.CallAgent()
v _HPCommRecovery.AppSession..ctor(DateTime Current, String LogPath)
v _HPCommRecovery.HPAHLogger.NewSession()
v _HPCommRecovery.HPCommRecove....
Error: (04/04/2019 01:08:32 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 17375
Error: (04/04/2019 01:08:32 AM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 17375
System errors:
=============
Error: (04/04/2019 12:06:05 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.
Error: (04/04/2019 12:06:04 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.
Error: (04/04/2019 12:06:04 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{6B3B8D23-FA8D-40B9-8DBD-B950333E2C52}
a APPID
{4839DDB7-58C2-48F5-8283-E1D1807D0D7D}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.
Error: (04/04/2019 01:08:04 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-A7QKU0HK)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (04/04/2019 01:08:04 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-A7QKU0HK)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (04/04/2019 01:08:03 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-A7QKU0HK)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (04/04/2019 01:08:03 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-A7QKU0HK)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (04/04/2019 01:08:03 AM) (Source: DCOM) (EventID: 10010) (User: LAPTOP-A7QKU0HK)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.
Windows Defender:
===================================
Date: 2019-03-29 23:23:14.402
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {5497F8CB-B62E-49F0-8D1C-B8469CB76D05}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Date: 2019-03-22 16:36:49.722
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {B71EE895-35C8-48E8-875C-159DDB90846F}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Date: 2019-03-22 13:57:08.942
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {F7145E0A-BD35-4DA6-9ED3-EA346BE53130}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Date: 2019-03-22 11:38:04.736
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {DF60FB63-D01B-45E3-A636-C26FE992944D}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Date: 2019-03-22 00:07:08.954
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {F64A39F9-EDB4-4283-85D2-B6E1389426A9}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Date: 2019-03-09 12:09:09.908
Description:
Prohledávání Antivirová ochrana v programu Windows Defender zjistilo chybu při pokusu o načtení podpisů a pokusí se o obnovení sady podpisů, jejichž správnost je potvrzena.
Podpisy, které se měly načíst: Aktuální
Kód chyby: 0x80070002
Popis chyby: Systém nemůže nalézt uvedený soubor.
Verze podpisu: 0.0.0.0;0.0.0.0
Verze modulu: 0.0.0.0
CodeIntegrity:
===================================
Date: 2019-04-04 15:37:36.290
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
Date: 2019-04-04 15:37:36.286
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
Date: 2019-04-04 15:37:31.274
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
Date: 2019-04-04 15:37:31.271
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
Date: 2019-04-04 15:37:19.113
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
Date: 2019-04-04 15:37:19.110
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
Date: 2019-04-04 15:36:54.459
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
Date: 2019-04-04 15:36:54.454
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
Processor: AMD A6-9225 RADEON R4, 5 COMPUTE CORES 2C+3G
Percentage of memory in use: 76%
Total physical RAM: 3981.68 MB
Available physical RAM: 951.26 MB
Total Virtual: 9523.58 MB
Available Virtual: 2138.3 MB
==================== Drives ================================
Drive c: (Windows) (Fixed) (Total:915.7 GB) (Free:850.8 GB) NTFS
Drive d: (RECOVERY) (Fixed) (Total:14.58 GB) (Free:1.74 GB) NTFS ==>[system with boot components (obtained from drive)]
\\?\Volume{9a7c98d1-9ab5-4084-99b9-58d26824b52f}\ (Windows RE tools) (Fixed) (Total:0.96 GB) (Free:0.53 GB) NTFS
\\?\Volume{81aa4aa0-31c2-4305-83fe-9f1551ed5041}\ () (Fixed) (Total:0.25 GB) (Free:0.2 GB) FAT32
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: F34E8BF8)
Partition: GPT.
==================== End of Addition.txt ============================