Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 18-09-2019
Ran by Tomáš (administrator) on TOMASPC (Hewlett-Packard HP ProBook 450 G0) (18-09-2019 19:58:23)
Running from C:\Users\Tomáš\Desktop
Loaded Profiles: Tomáš (Available Profiles: Tomáš)
Platform: Windows 8.1 Pro (Update) (X64) Language: Čeština (Česká republika)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(AVAST Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Google LLC -> ) C:\Program Files\Google\Drive\googledrivesync.exe
(Google LLC -> ) C:\Program Files\Google\Drive\googledrivesync.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) [File not signed] C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
(Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
(IDT, Inc.) [File not signed] C:\Program Files\IDT\WDM\stacsv64.exe
(IDT, Inc.) [File not signed] C:\Program Files\IDT\WDM\sttray64.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxTray.exe
(Intel® Trusted Connect Service -> Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(Spotify AB -> Spotify Ltd) C:\Users\Tomáš\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\Tomáš\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\Tomáš\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\Tomáš\AppData\Roaming\Spotify\Spotify.exe
(Spotify AB -> Spotify Ltd) C:\Users\Tomáš\AppData\Roaming\Spotify\Spotify.exe
(StagWare) [File not signed] C:\Program Files (x86)\NoteBook FanControl\NbfcService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Validity Sensors, Inc -> Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe [1703424 2013-11-07] (IDT, Inc.) [File not signed]
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [260488 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [336672 2014-05-16] (Hewlett-Packard Company -> Hewlett-Packard Company)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-09-05] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-08-19] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [260488 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
HKLM-x32\...\Run: [TeamsMachineUninstallerLocalAppData] => C:\Users\Tomáš\AppData\Local\Microsoft\Teams\Update.exe [1789552 2019-09-03] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKLM-x32\...\Run: [TeamsMachineUninstallerProgramData] => %ProgramData%\Microsoft\Teams\Update.exe --uninstall --msiUninstall --source=default
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\Run: [GoogleDriveSync] => C:\Program Files\Google\Drive\googledrivesync.exe [46993264 2019-06-27] (Google LLC -> )
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\Run: [HP DeskJet 5000 (NET)] => "C:\Program Files\HP\HP DeskJet 5000 series\Bin\ScanToPCActivationApp.exe" -deviceID "TH7C84B1VB:NW" -scfn "HP DeskJet 5000 (NET)" -AutoStart 1
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\Run: [GalaxyClient] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [7611464 2019-09-15] (GOG Sp. z o.o. -> GOG.com)
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Tomáš\AppData\Local\Microsoft\Teams\Update.exe [1789552 2019-09-03] (Microsoft 3rd Party Application Component -> Microsoft Corporation)
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\MountPoints2: {694ee494-763c-11e7-8286-a45d36cd7354} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\MountPoints2: {69af2778-3851-11e9-82c8-a45d36cd7354} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\MountPoints2: {d3259550-3f7f-11e9-82c8-a45d36cd7354} - "F:\HiSuiteDownLoader.exe"
HKU\S-1-5-18\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [30796352 2018-10-24] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKLM\...\Drivers32-x32: [vidc.XVID] => xvidvfw.dll
HKLM\...\Drivers32-x32: [VIDC.VP80] => vp8vfw.dll
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\76.0.3809.132\Installer\chrmstp.exe [2019-09-01] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\52.0.2743.82\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0F607CA7-F9F5-4B7C-AC2D-29DCC84FAEAC} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\sdxhelper.exe [157144 2019-09-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {0FC36F3F-FCE2-41D2-B961-A9A59A5CFB32} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2174624 2019-09-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {152F7048-69D5-48AA-8819-7E10B82FBCA4} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6299288 2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {188D854F-5582-458F-8382-8745811AA5FB} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2838920 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
Task: {1BCD32FD-A1FE-43BF-99C4-C272CEAACBFC} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [27367016 2019-08-30] (Microsoft Corporation -> Microsoft Corporation)
Task: {1EE90A21-6FA6-49D3-A408-665482C6AB94} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2174624 2019-09-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {2988BD4E-E4F9-4B77-92C6-6D26AB7FC30F} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [619416 2019-02-05] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {4FC29FF9-80B9-459F-BB4D-585BB7AB2158} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser => %windir%\system32\rundll32.exe aepdu.dll,AePduRunUpdate -nolegacy
Task: {51B5665D-5D81-4C8A-894E-21BA66E467ED} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [2345608 2019-09-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {5D3EEDFA-99BF-41E2-A0DA-54DFAF329B62} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe
Task: {5F8FEFE3-2910-4E49-A0FB-6221109B4BF8} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [39920 2018-10-24] (Garmin International, Inc. -> )
Task: {645AAAE6-3EE1-4574-B1AF-DC29D1267B5C} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\Windows\SysWOW64\Macromed\Flash\FlashUtil32_31_0_0_153_Plugin.exe [1456128 2018-11-26] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {7571E7E1-B377-41B7-A440-FF7B3F36DCD2} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [13797712 2018-09-08] (Piriform Ltd -> Piriform Ltd)
Task: {816606C3-417F-4B9E-AB32-5A87AF967D3D} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3956824 2017-08-16] (Synaptics Incorporated -> Synaptics Incorporated)
Task: {83CFF232-5DE2-403B-B716-B1C13E11C423} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-07-31] (Google Inc -> Google Inc.)
Task: {9F6362ED-6EB6-4D00-BBBA-2FDD4EEDC255} - System32\Tasks\AVAST Software\Avast settings backup => C:\Program Files\Common Files\AV\avast! Antivirus\backup.exe
Task: {A79CC7E9-1ACF-4EF2-8DFE-686A30E0F4C9} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe
Task: {AA07C323-2B2D-4E4E-B6AE-4C84011CCA45} - System32\Tasks\AutoPico Daily Restart => C:\Program Files\KMSpico\AutoPico.exe [743616 2015-12-02] (@ByELDI -> @ByELDI) [File not signed]
Task: {B2928C48-70A7-4EA5-A9E2-2B67EF1EA095} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154440 2016-07-31] (Google Inc -> Google Inc.)
Task: {B6C35989-EA31-4FD2-BECE-EFA921908D21} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\avast software\overseer\overseer.exe [1873288 2019-09-18] (AVAST Software s.r.o. -> AVAST Software)
Task: {D2C8AD13-7FB1-4A5B-AA83-DEE45D3994A4} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6299288 2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Task: {E48B2D77-3426-408C-9594-9CF65B98E30D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [27367016 2019-08-30] (Microsoft Corporation -> Microsoft Corporation)
Task: {FAEB4502-61A3-41E1-BFE5-BAE32B263B3D} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\sdxhelper.exe [157144 2019-09-16] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{398CC933-2364-4ECF-8C36-E25A03D70F9F}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{6FD0246E-E0CC-493D-A72F-06015BBE4AF9}: [DhcpNameServer] 10.0.0.138
Internet Explorer:
==================
HKU\S-1-5-21-508856505-97066582-1914413276-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://
www.msn.com/
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2019-07-02] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2019-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\ssv.dll [2017-10-26] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Evernote extension -> {92EF2EAD-A7CE-4424-B0DB-499CF856608E} -> C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll [2019-05-06] (Evernote Corporation -> Evernote Corp., 305 Walnut Street, Redwood City, CA 94063)
BHO-x32: No Name -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> No File
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-10-26] (Oracle America, Inc. -> Oracle Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2019-09-01] (Microsoft Corporation -> Microsoft Corporation)
FireFox:
========
FF DefaultProfile: it11cpe7.default
FF ProfilePath: C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\it11cpe7.default [2019-09-06]
FF Extension: (uBlock Origin) - C:\Users\Tomáš\AppData\Roaming\Mozilla\Firefox\Profiles\it11cpe7.default\Extensions\
uBlock0@raymondhill.net.xpi [2019-07-05]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_31_0_0_153.dll [2018-11-26] (Adobe Systems Incorporated -> )
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2019-07-02] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_31_0_0_153.dll [2018-11-26] (Adobe Systems Incorporated -> )
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-06-06] (Intel® Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-10-26] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-10-26] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-04-14] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2019-04-14] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-19] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-19] (Google Inc -> Google LLC)
Chrome:
=======
CHR HomePage: Default -> hxxp://seznam.cz/
CHR StartupUrls: Default -> "hxxp://seznam.cz/"
CHR Profile: C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default [2019-09-18]
CHR Extension: (Překladač Google) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2017-10-19]
CHR Extension: (Prezentace) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Super Netflix) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\aioencjhbaolepcoappllicjebblphoc [2018-01-07]
CHR Extension: (Dokumenty) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Disk Google) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-07-24]
CHR Extension: (YouTube) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-07-24]
CHR Extension: (uBlock Origin) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2019-09-08]
CHR Extension: (Kalendář Google) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2017-01-06]
CHR Extension: (Tabulky) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Word Online) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\fiombgjlkfpdpkbhfioofeeinbehmajg [2016-07-24]
CHR Extension: (Dokumenty Google offline) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-08-26]
CHR Extension: (Pocket Website) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\jijgclgmgjipgefcnnnibgllfonlfdap [2016-07-24]
CHR Extension: (Google Play) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi [2016-07-24]
CHR Extension: (Evernote Web) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\lbfehkoinhhcknnbdgnnmjhiladcgbol [2016-07-24]
CHR Extension: (Rozšíření Google Keep pro Chrome) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\lpcaedmchfhocbbapmcbpinfpgnhiddi [2019-09-12]
CHR Extension: (Upravte a pošlete snímek obrazovky) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\mdddabjhelpilpnpgondfmehhcplpiin [2019-09-03]
CHR Extension: (Save to Pocket) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\niloccemoadcdkdjlinkgdfekeahmflj [2019-08-23]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-04-03]
CHR Extension: (Evernote Web Clipper) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\pioclpoplcdbaefihamjohnefbikjilc [2019-09-18]
CHR Extension: (Gmail) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-19]
CHR Extension: (Chrome Media Router) - C:\Users\Tomáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-08-23]
CHR HKU\S-1-5-21-508856505-97066582-1914413276-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [daanglpcpkjjlkhcbladppjphglbigam] - <no Path/update_url>
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AMD External Events Utility; C:\Windows\system32\atiesrxx.exe [255504 2015-08-31] (Microsoft Windows Hardware Compatibility Publisher -> AMD)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [6570352 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [360440 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [1547200 2017-10-26] (Epic Games Inc. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11568144 2019-08-30] (Microsoft Corporation -> Microsoft Corporation)
S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [791624 2019-09-15] (GOG Sp. z o.o. -> GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [7170632 2019-06-12] (GOG Sp. z o.o. -> GOG.com)
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [683296 2014-05-16] (Hewlett-Packard Company -> Hewlett-Packard Company)
R3 hpqwmiex; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [1006424 2013-01-23] (Hewlett-Packard Company -> Hewlett-Packard Company) [File not signed]
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319096 2016-08-05] (Intel Corporation - pGFX -> Intel Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [130592 2012-10-22] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166432 2012-10-22] (Intel Corporation - Intel® Management Engine Firmware -> Intel Corporation)
R2 NbfcService; C:\Program Files (x86)\NoteBook FanControl\NbfcService.exe [8704 2017-05-29] (StagWare) [File not signed]
S3 PrintNotify; C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll [2896896 2017-09-29] (Microsoft Corporation) [File not signed]
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [340480 2013-11-07] (IDT, Inc.) [File not signed]
R2 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [246872 2017-08-16] (Synaptics Incorporated -> Synaptics Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [361824 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [119872 2017-01-12] (Microsoft Corporation -> Microsoft Corporation)
S2 HPSupportSolutionsFrameworkService; "C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe" [X]
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdkmdag; C:\Windows\system32\DRIVERS\atikmdag.sys [21645320 2015-08-31] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 AMDKMDAP; C:\Windows\system32\DRIVERS\atikmpag.sys [676360 2015-08-31] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [75520 2015-08-31] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [37320 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [205608 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [254408 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [196304 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswblog.sys [320904 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [58168 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42496 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [168896 2019-09-18] (AVAST Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [112520 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [88152 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1034640 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [476264 2019-04-14] (AVAST Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [220632 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [380160 2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
S3 bcmfn2; C:\Windows\System32\drivers\bcmfn2.sys [17624 2013-08-13] (Broadcom Corporation -> Windows (R) Win 7 DDK provider)
R3 HpqKbFiltr; C:\Windows\System32\drivers\HpqKbFiltr64.sys [28376 2014-05-15] (Hewlett-Packard Company -> Hewlett-Packard Company)
R3 netr28x; C:\Windows\system32\DRIVERS\netr28x.sys [2607792 2013-07-25] (Mediatek Inc. -> Ralink Technology, Corp.)
R3 rtbth; C:\Windows\System32\drivers\rtbth.sys [1205872 2014-06-26] (MEDIATEK INC. -> Ralink Technology, Corp.)
R3 RTL8168; C:\Windows\system32\DRIVERS\Rt630x64.sys [591360 2013-06-18] (Microsoft Windows -> Realtek )
R3 STHDA; C:\Windows\system32\DRIVERS\stwrt64.sys [551936 2013-11-07] (Microsoft Windows Hardware Compatibility Publisher -> IDT, Inc.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46600 2017-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [274776 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [117592 2017-01-12] (Microsoft Windows -> Microsoft Corporation)
R1 WinRing0_1_2_0; C:\Program Files (x86)\NoteBook FanControl\WinRing0x64.sys [14544 2017-10-08] (Noriyuki MIYAZAKI -> OpenLibSys.org)
S3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [31840 2016-03-23] (Hewlett-Packard Company -> HP)
R3 WirelessButtonDriver64; C:\Windows\system32\DRIVERS\WirelessButtonDriver64.sys [31840 2016-03-23] (Hewlett-Packard Company -> HP)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-09-18 19:58 - 2019-09-18 19:59 - 000032623 _____ C:\Users\Tomáš\Desktop\FRST.txt
2019-09-18 19:58 - 2019-09-18 19:58 - 000000000 ____D C:\Users\Tomáš\Desktop\FRST-OlderVersion
2019-09-15 22:13 - 2019-09-15 22:14 - 033493784 _____ C:\Users\Tomáš\Downloads\Brukner, Filip - Vetší poetický slovník.pdf
2019-09-15 20:44 - 2019-09-15 20:45 - 042601683 _____ C:\Users\Tomáš\Downloads\Rut - Menší poetický slovník v příkladech.PDF
2019-09-15 20:21 - 2019-09-15 20:21 - 000350441 _____ C:\Users\Tomáš\Downloads\VY_32_INOVACE_6_CJ_16_Test__basnicke_prostredky.pdf
2019-09-15 13:26 - 2019-09-15 13:30 - 000000000 ____D C:\AdwCleaner
2019-09-15 11:47 - 2019-09-15 11:48 - 007622344 _____ (Malwarebytes) C:\Users\Tomáš\Desktop\adwcleaner_7.4.1.exe
2019-09-12 22:50 - 2019-09-12 22:52 - 070082072 _____ C:\Users\Tomáš\Downloads\DJ5000_Basicx64_44.4.2678.exe
2019-09-12 22:34 - 2019-09-12 22:34 - 006757456 _____ C:\Users\Tomáš\Downloads\HPEasyStart_10_0_4029_14.exe
2019-09-11 21:42 - 2019-09-11 21:42 - 000065512 _____ C:\Users\Tomáš\Downloads\SOUHRNNÉ POUČENÍ O SLOHU.pptx
2019-09-03 17:27 - 2019-09-15 12:01 - 000000000 ____D C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Microsoft Corporation
2019-09-03 17:27 - 2019-09-03 17:27 - 000000000 ____D C:\Users\Tomáš\AppData\Roaming\Microsoft Teams
2019-09-03 17:25 - 2019-09-03 17:27 - 000000000 ____D C:\Users\Tomáš\AppData\Local\SquirrelTemp
2019-09-02 22:01 - 2019-09-18 19:58 - 001615360 _____ (Farbar) C:\Users\Tomáš\Desktop\FRST64.exe
2019-09-02 22:01 - 2019-09-18 19:58 - 000000000 ____D C:\FRST
2019-08-23 17:27 - 2019-08-23 17:28 - 000212992 _____ C:\Windows\system32\ClickToRun_Pipeline16
==================== One month (modified) ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2019-09-18 19:42 - 2019-06-18 22:22 - 000000000 ____D C:\Users\Tomáš\AppData\Roaming\Spotify
2019-09-18 19:42 - 2019-06-18 22:22 - 000000000 ____D C:\Users\Tomáš\AppData\Local\Spotify
2019-09-18 19:42 - 2018-09-08 23:27 - 000004128 _____ C:\Windows\System32\Tasks\CCleaner Update
2019-09-18 19:42 - 2018-09-01 18:40 - 000004526 _____ C:\Windows\System32\Tasks\Adobe Flash Player NPAPI Notifier
2019-09-18 19:42 - 2016-07-31 00:13 - 000003386 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2019-09-18 19:42 - 2016-07-31 00:13 - 000003258 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2019-09-18 19:42 - 2016-07-29 12:39 - 000003554 _____ C:\Windows\System32\Tasks\GarminUpdaterTask
2019-09-18 19:42 - 2016-07-26 11:36 - 000002788 _____ C:\Windows\System32\Tasks\CCleanerSkipUAC
2019-09-18 19:42 - 2016-07-26 11:33 - 000003364 _____ C:\Windows\System32\Tasks\AutoPico Daily Restart
2019-09-18 19:42 - 2016-07-25 20:21 - 000002990 _____ C:\Windows\System32\Tasks\Synaptics TouchPad Enhancements
2019-09-18 19:42 - 2016-07-24 20:36 - 000000000 ____D C:\Windows\System32\Tasks\AVAST Software
2019-09-18 18:58 - 2017-10-27 00:09 - 000168896 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2019-09-16 19:42 - 2013-08-22 17:36 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-09-16 19:40 - 2016-07-26 10:13 - 000000000 ____D C:\Program Files\Microsoft Office
2019-09-16 00:04 - 2016-07-25 20:44 - 000000000 ____D C:\ProgramData\NbfcService
2019-09-15 17:57 - 2016-07-24 20:30 - 000003594 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-508856505-97066582-1914413276-1001
2019-09-15 15:15 - 2016-07-24 13:43 - 000000000 ___DO C:\Users\Tomáš\SkyDrive
2019-09-15 13:46 - 2016-08-18 13:45 - 000000000 ___RD C:\Users\Tomáš\Disk Google
2019-09-15 13:44 - 2016-07-25 18:09 - 000000000 __SHD C:\Users\Tomáš\IntelGraphicsProfiles
2019-09-15 13:36 - 2013-09-30 06:20 - 001745984 _____ C:\Windows\system32\PerfStringBackup.INI
2019-09-15 13:36 - 2013-09-30 05:57 - 000739924 _____ C:\Windows\system32\perfh005.dat
2019-09-15 13:36 - 2013-09-30 05:57 - 000151610 _____ C:\Windows\system32\perfc005.dat
2019-09-15 13:36 - 2013-08-22 15:36 - 000000000 ____D C:\Windows\Inf
2019-09-15 13:31 - 2013-08-22 16:45 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2019-09-15 13:30 - 2016-07-25 00:22 - 000000000 ____D C:\Users\Tomáš\AppData\Roaming\Hewlett-Packard
2019-09-15 13:30 - 2016-07-24 21:24 - 000000000 ____D C:\Program Files (x86)\Hewlett-Packard
2019-09-15 13:20 - 2018-07-10 16:52 - 000000000 ____D C:\Program Files (x86)\GOG Galaxy
2019-09-15 13:13 - 2019-01-17 23:20 - 000000000 ____D C:\Users\Tomáš\AppData\Local\CrashDumps
2019-09-15 13:13 - 2018-09-10 22:45 - 000000000 ____D C:\ProgramData\HP
2019-09-15 13:13 - 2017-04-02 11:38 - 000000000 ____D C:\Program Files (x86)\HP
2019-09-12 23:04 - 2016-07-24 13:41 - 000000000 ____D C:\Users\Tomáš\AppData\Local\Packages
2019-09-12 22:52 - 2018-09-10 22:45 - 000000000 ____D C:\Users\Tomáš\AppData\Roaming\HP_Easy_Start
2019-09-12 22:21 - 2013-08-22 15:25 - 000262144 _____ C:\Windows\system32\config\BBI
2019-09-10 19:41 - 2017-10-08 10:58 - 000000000 ____D C:\Users\Tomáš\AppData\Roaming\NoteBookFanControl
2019-09-06 18:23 - 2017-06-29 00:12 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2019-09-06 18:23 - 2016-08-01 11:06 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2019-09-06 18:22 - 2017-07-10 11:15 - 000000000 ____D C:\Users\Tomáš\AppData\LocalLow\Mozilla
2019-09-02 21:53 - 2013-08-22 17:36 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2019-09-01 17:37 - 2016-07-31 00:14 - 000002204 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-09-01 17:37 - 2016-07-31 00:14 - 000002163 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2019-08-30 22:17 - 2017-03-17 10:08 - 000004168 _____ C:\Windows\System32\Tasks\Avast Emergency Update
==================== Files in the root of some directories ================
2018-06-03 21:27 - 2018-06-03 21:27 - 000000875 _____ () C:\Users\Tomáš\AppData\Local\recently-used.xbel
==================== FLock ================
2016-07-24 13:40 C:\Windows\CSC
==================== SigCheck ===============================
(There is no automatic fix for files that do not pass verification.)
LastRegBack: 2019-09-16 19:34
==================== End of FRST.txt ============================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 18-09-2019
Ran by Tomáš (18-09-2019 20:00:02)
Running from C:\Users\Tomáš\Desktop
Windows 8.1 Pro (Update) (X64) (2016-07-24 11:41:28)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-508856505-97066582-1914413276-500 - Administrator - Disabled)
Guest (S-1-5-21-508856505-97066582-1914413276-501 - Limited - Disabled)
Tomáš (S-1-5-21-508856505-97066582-1914413276-1001 - Administrator - Enabled) => C:\Users\Tomáš
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 16.02 (x64) (HKLM\...\7-Zip) (Version: 16.02 - Igor Pavlov)
Adobe Flash Player 31 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 31.0.0.153 - Adobe Systems Incorporated)
AMD Catalyst Install Manager (HKLM\...\{5094145C-9F17-8099-7F4F-E5AADD5E4065}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
ANT Drivers Installer x64 (HKLM\...\{D559687A-60C5-4786-9429-C21EC195789D}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 19.3.2369 - AVAST Software)
Backup and Sync from Google (HKLM\...\{768C0072-2FD2-4934-9824-B2A1E81AEA5D}) (Version: 3.45.5545.5747 - Google, Inc.)
Balíček ovladače systému Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Balíček ovladače systému Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Broadcom Bluetooth Drivers (HKLM\...\{0A1B4690-E176-4533-8058-939480AEE1D0}) (Version: 12.0.1.170 - Broadcom Corporation)
CCleaner (HKLM\...\CCleaner) (Version: 5.46 - Piriform)
Elevated Installer (HKLM-x32\...\{0BF90608-2F95-4C7C-9A85-E90E0CAF4FE9}) (Version: 6.9.1.0 - Garmin Ltd or its subsidiaries) Hidden
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Evernote v. 6.18.4 (HKLM-x32\...\{3E390FB8-703D-11E9-A27F-005056951CAD}) (Version: 6.18.4.8489 - Evernote Corp.)
FTL: Advanced Edition (HKLM-x32\...\1207659102_is1) (Version: 1.6.9 - GOG.com)
Garmin Express (HKLM-x32\...\{95D0EADA-5123-41C0-931A-F37946BC0E8E}) (Version: 6.9.1.0 - Garmin Ltd or its subsidiaries) Hidden
Garmin Express (HKLM-x32\...\{eab4691c-4022-41cd-8d39-c3097ba62d4b}) (Version: 6.9.1.0 - Garmin Ltd or its subsidiaries)
GIMP 2.8.18 (HKLM\...\GIMP-2_is1) (Version: 2.8.18 - The GIMP Team)
GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 76.0.3809.132 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
Google2SRT (HKLM-x32\...\{B0A59B6D-5983-46D2-9B34-51B1C15055CD}) (Version: 0.7.5 - Google2SRT)
HP ESU for Microsoft Windows 8.1 (HKLM-x32\...\{A3876D50-4A88-4A34-92E1-5D7BC8F886E1}) (Version: 1.0.1 - Hewlett-Packard Company)
HP Hotkey Support (HKLM-x32\...\{57FA60DA-585F-456A-B80E-17D1CDD22A30}) (Version: 5.0.27.1 - Hewlett-Packard Company)
HP Support Solutions Framework (HKLM-x32\...\{3D6FF65E-EE93-4D90-B5D7-0DC856E2AFEB}) (Version: 12.10.49.21 - HP)
HP System Default Settings (HKLM-x32\...\{987210BB-D707-48FC-88FA-4374765D108D}) (Version: 2.0.1 - Hewlett-Packard Company)
HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6496.0 - IDT)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.20.1337 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4425 - Intel Corporation)
IrfanView 64 (remove only) (HKLM\...\IrfanView64) (Version: 4.41 - Irfan Skiljan)
Java 8 Update 151 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180151F0}) (Version: 8.0.1510.12 - Oracle Corporation)
KMSpico (HKLM\...\{8B29D47F-92E2-4C20-9EE0-F710991F5D7C}_is1) (Version: - )
KMSpico 10.2.0 10.2.0 (HKLM-x32\...\KMSpico 10.2.0 10.2.0) (Version: 10.2.0 - KMSpico)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Mediatek Bluetooth (HKLM\...\{904C579C-9366-D3B7-7F31-4879401DBD4A}) (Version: 11.0.756.0 - Mediatek)
Microsoft Office 365 ProPlus - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 16.0.11929.20300 - Microsoft Corporation)
Microsoft OneDrive (HKU\.DEFAULT\...\OneDriveSetup.exe) (Version: 17.3.6743.1212 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x64 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 Redistributable - x86 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24212 (HKLM-x32\...\{323dad84-0974-4d90-a1c1-e006c7fdbb7d}) (Version: 14.0.24212.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Mozilla Firefox 67.0.4 (x64 cs) (HKLM\...\Mozilla Firefox 67.0.4 (x64 cs)) (Version: 67.0.4 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 67.0.4.7109 - Mozilla)
NoteBook FanControl (HKLM-x32\...\{21685c56-05b5-404c-a9d9-bf568d3749a0}) (Version: 1.5.3.0 - Stefan Hirschmann - StagWare)
NoteBook FanControl (HKLM-x32\...\{CE2D4D25-DF9B-4E9D-A4CB-2E4545271F70}) (Version: 1.5.3.0 - Stefan Hirschmann - StagWare) Hidden
OEM Application Profile (HKLM-x32\...\{29F5A1C9-0BC3-16E6-9384-3BC5D1CB7ACE}) (Version: 1.00.0000 - Název společnosti:)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.11929.20300 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.11929.20300 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.11929.20300 - Microsoft Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
PX Profile Update (HKLM-x32\...\{C5705DBC-3A55-986A-7114-A5F86AADDD06}) (Version: 1.00.1. - AMD) Hidden
Spotify (HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\Spotify) (Version: 1.1.15.448.g00fba0e3 - Spotify AB)
SumatraPDF (HKLM\...\SumatraPDF) (Version: 3.1.1 - Krzysztof Kowalczyk)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.19.63 - Synaptics Incorporated)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.51a - Ghisler Software GmbH)
Validity Fingerprint Sensor Driver (HKLM\...\{ADAA7361-54B8-4FC8-804E-94EC6C11ED68}) (Version: 4.5.133.0 - Validity Sensors, Inc.)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.4 - VideoLAN)
Vulkan Run Time Libraries 1.0.39.1 (HKLM\...\VulkanRT1.0.39.1) (Version: 1.0.39.1 - LunarG, Inc.)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-508856505-97066582-1914413276-1001_Classes\CLSID\{55808EA8-81FE-43c6-AAE8-1D8149F941D3}\InprocServer32 -> C:\Program Files\SumatraPDF\PdfFilter.dll () [File not signed]
CustomCLSID: HKU\S-1-5-21-508856505-97066582-1914413276-1001_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\Windows\system32\igfxEM.exe (Intel Corporation - pGFX -> Intel Corporation)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ GoogleDriveBlacklisted] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D42} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-06-27] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSynced] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D40} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-06-27] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [ GoogleDriveSyncing] -> {81539FE6-33C7-4CE7-90C7-1C7B8F2F2D41} => C:\Program Files\Google\Drive\googledrivesync64.dll [2019-06-27] (Google LLC -> Google)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2019-06-27] (Google LLC -> Google)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [GDContextMenu] -> {BB02B294-8425-42E5-983F-41A1FA970CD6} => C:\Program Files\Google\Drive\contextmenu64.dll [2019-06-27] (Google LLC -> Google)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\atiacm64.dll [2015-08-19] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\Windows\system32\igfxDTCM.dll [2016-08-05] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-05-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShell.dll [2019-03-31] (AVAST Software s.r.o. -> AVAST Software)
ContextMenuHandlers1_.DEFAULT: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers4_.DEFAULT: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers5_.DEFAULT: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
==================== Loaded Modules (Whitelisted) ==============
2019-09-15 13:45 - 2019-09-15 13:45 - 000113664 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\_ctypes.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000173568 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\_elementtree.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 001800192 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\_hashlib.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000032256 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\_multiprocessing.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000046080 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\_psutil_windows.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000047616 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\_socket.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 002230784 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\_ssl.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000026112 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\_yappi.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000080896 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\bz2.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 006277632 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\cello.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000014848 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\common.time34.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000007680 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\hashobjs_ext.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000301568 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\PIL._imaging.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000169472 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\pyexpat.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 001084416 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\pysqlite2._sqlite.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000548864 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\pythoncom27.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 000137728 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\pywintypes27.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 000010752 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\select.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000020992 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\thumbnails_ext.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000689664 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\unicodedata.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000118784 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\usb_ext.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000128512 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32api.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000438784 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32com.shell.shell.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000011776 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32crypt.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000023040 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32event.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000149504 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32file.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000223232 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32gui.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000048128 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32inet.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000029696 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32pdh.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000027648 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32pipe.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000044032 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32process.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000020480 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32profile.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000136192 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32security.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000026624 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\win32ts.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000034304 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\windows.conditional.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000038400 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\windows.connectivity.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000073216 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\windows.device_monitor.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000110592 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\windows.volumes.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000020480 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\windows.winwrap.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 001325056 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wx._controls_.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 001489408 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wx._core_.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 001007104 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wx._gdi_.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000103424 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wx._html2.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 000916992 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wx._misc_.pyd
2019-09-15 13:45 - 2019-09-15 13:45 - 001039872 _____ () [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wx._windows_.pyd
2018-02-08 11:43 - 2018-02-08 11:43 - 000032256 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\A4.Foundation\4ca053ea6ad12f7a3acf8574dd262804\A4.Foundation.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000022528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Actions5dc83b46#\842f19506907b19f7d1123ddde8da6f0\AEM.Actions.CCAA.Shared.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.0a1309f7#\131b5e91804254d94ea50aca6879be94\AEM.Plugin.EEU.Shared.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.2b6a6775#\2885c77d2b3572c1117ffac283d89303\AEM.Plugin.Hotkeys.Shared.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000016384 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.54d8abe3#\ce35c0ffba1f547eaea3a9a882ae5503\AEM.Plugin.DPPE.Shared.ni.dll
2018-02-08 11:44 - 2018-02-08 11:44 - 000280064 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.5d945b6b#\09974c993bd4a1f3123677444104dcc5\AEM.Plugin.Source.Kit.Server.ni.dll
2018-02-08 11:44 - 2018-02-08 11:44 - 000015360 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.674d2b8a#\5ce4c8b0b9bba47bc5e6aaefde0f8018\AEM.Plugin.WinMessages.Shared.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.88aba5d2#\dc8059ba2ccd7543213c662a5b224db4\AEM.Plugin.REG.Shared.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.GD.Shared\5a03f54b177ede24a7210099b470f075\AEM.Plugin.GD.Shared.ni.dll
2018-02-08 11:44 - 2018-02-08 11:44 - 000013824 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Server.Shared\77c17079d910ef6e9b34a8db8f3a47dd\AEM.Server.Shared.ni.dll
2018-02-08 11:45 - 2018-02-08 11:45 - 000271360 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AEM.Server\ef8ed4353f7b36c97e32243b59f62081\AEM.Server.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000057856 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\APM.Foundation\6330fd9ba4e1c15cbe02dea07dc41102\APM.Foundation.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000123392 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ATICCCom\ae772963a408c50c4cec849ccd5fb9b6\ATICCCom.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000202240 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CCC.Implementation\01c9edefd921d8cc6ff89e49a08e73a6\CCC.Implementation.ni.dll
2018-02-08 23:35 - 2018-02-08 23:35 - 000153600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.21d2ac78#\46dd21a40ae5c76cedd2981bc672b5cd\CLI.Aspect.PowerPlayDPPE.Graphics.Dashboard.ni.dll
2018-02-08 23:28 - 2018-02-08 23:28 - 000126976 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3399d0ec#\b1c82cc1d57fc0e8b1b3a90bf2cbf527\CLI.Aspect.CustomFormats.Graphics.Shared.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000026624 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.37d3d968#\9bf789d866ddc8d2bc665e6434b3dbfa\CLI.Aspect.AMDHome.Graphics.Shared.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000045568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.382a3def#\c13cb3f749eb8cea399387110b4939c3\CLI.Aspect.AMDOverDrive.Platform.Shared.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000105984 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3a6f1658#\b96afaf76c5d9eca8338b37f9dc3d0f0\CLI.Aspect.TransCode.Graphics.Shared.ni.dll
2018-02-08 23:35 - 2018-02-08 23:35 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.46819220#\c3b04660c3002c501d3f3aa6c2093689\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4bbb0755#\afd4f9cbca3895f4ced96db7bfcbe073\CLI.Aspect.TransCode.Graphics.Dashboard.ni.dll
2018-02-08 23:31 - 2018-02-08 23:31 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.52c6dbaa#\c0152281e1bac5adef1fa90feb79d424\CLI.Aspect.FPS.Graphics.Shared.ni.dll
2018-02-08 23:35 - 2018-02-08 23:35 - 000074240 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.59a12d95#\00f276899072fc1872e11d6810f3d230\CLI.Aspect.PowerPlayDPPE.Graphics.Shared.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000265216 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.73911eb5#\3fd28541dcd6775242a7de31545ed697\CLI.Aspect.WirelessDisplay.Graphics.Shared.ni.dll
2018-02-08 23:28 - 2018-02-08 23:28 - 000361984 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.7ec2db45#\488e6a99e4f0c2c334332bd7278c8da8\CLI.Aspect.DeviceDFP.Graphics.Shared.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000064000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8350f5c6#\c2f2dd2538955110d90a907ff7dff46a\CLI.Aspect.UpdateNotification.Graphics.Runtime.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000743424 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8d333b6b#\bf131e97419a2b4ae065c953bf94b4af\CLI.Aspect.Radeon3D.Graphics.Shared.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000447488 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8e996306#\2c74c3e701dcc877dac829a797cf96a4\CLI.Aspect.CrossDisplay.Graphics.Dashboard.ni.dll
2018-02-08 23:31 - 2018-02-08 23:31 - 000089088 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9cd1e9e7#\172a58f758df8b06ca80af4fe2ef8831\CLI.Aspect.FPS.Graphics.Dashboard.ni.dll
2018-02-08 23:32 - 2018-02-08 23:32 - 000057344 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a6cd7fff#\40563c9e40816eb05834886a4ef868b9\CLI.Aspect.FPS.Graphics.Runtime.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000082944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a765109e#\794d767865b981d684e8447739df751e\CLI.Aspect.UpdateNotification.Graphics.Dashboard.ni.dll
2018-02-08 23:33 - 2018-02-08 23:33 - 000148480 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.abe74207#\bd08ee60d8b7ce9f32edbb0b5dcdf4b7\CLI.Aspect.MultiVPU2.Graphics.Shared.ni.dll
2018-02-08 23:28 - 2018-02-08 23:28 - 000464896 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.acb9d930#\9c57de6b0fa63108a2a8973b0089a436\CLI.Aspect.DeviceProperty.Graphics.Shared.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000067584 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b0a7c1fb#\bf04a8c2f74344622936f7d0cf6ead55\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.ni.dll
2018-02-08 23:34 - 2018-02-08 23:34 - 000342528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c7aaa0f8#\841c6263ff56a405a27d862a794cea60\CLI.Aspect.OverDrive5.Graphics.Shared.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c854b457#\ac5f0712e800319751056b7d697a27c9\CLI.Aspect.HotkeysHandling.Graphics.Shared.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000095232 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d4f2f79c#\6c00b088bab0c2b5adcb165424b33878\CLI.Aspect.CrossFireX.Graphics.Dashboard.ni.dll
2018-02-08 23:33 - 2018-02-08 23:33 - 000274944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e8635fc7#\beda23d2cb66298ec586665912e5a6d3\CLI.Aspect.InfoCentre.Graphics.Dashboard.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 003320320 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e9fd7406#\921bdb4ab83c7858f7f655836292e54c\CLI.Aspect.Radeon3D.Graphics.Dashboard.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000047104 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ef3eaa4d#\b20cc8cf8ce9d8ac0b7a31e66eef5a68\CLI.Aspect.TransCode.Graphics.Runtime.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000050688 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f480a2f3#\56d9fdb52a1b5fba0d1249492d74f072\CLI.Aspect.UpdateNotification.Graphics.Shared.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000053248 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Runtime\14841ca810a85f3d8f1e5eb2b37e76ad\CLI.Caste.A4.Runtime.ni.dll
2018-02-08 11:47 - 2018-02-08 11:47 - 000046080 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Shared\774502fbd0a096c2507de2d00b33d5e7\CLI.Caste.A4.Shared.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000027648 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Af820fedc#\6ec6395371b7238f0cf9a25dcbe9da3d\CLI.Caste.A4.Dashboard.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000046080 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F24de14fe#\781b24158624f3b253235bdcd04b1623\CLI.Caste.Fuel.Shared.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000311808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F36b07a2b#\8e04122e785d7eafb29c808cb9ef96c4\CLI.Caste.Fuel.Runtime.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000027648 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Ff3085433#\fea5335b9be35c6e43020382235f9c42\CLI.Caste.Fuel.Dashboard.ni.dll
2018-02-08 23:31 - 2018-02-08 23:31 - 000038400 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60338cc0#\83a7836e9e492ce792f2e99a9a31caec\CLI.Caste.Graphics.Runtime.Shared.Private.ni.dll
2018-02-08 23:27 - 2018-02-08 23:27 - 001547776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gd9d9b43b#\4098e16256de4f567f0767a5f6571365\CLI.Caste.Graphics.Dashboard.Shared.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000579584 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gee7d2dbc#\e0ed9e26b1152ffda28dd235af704265\CLI.Caste.Graphics.Dashboard.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000046080 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H18c99613#\c0477c3ef465796010d740bb7d999a5b\CLI.Caste.HydraVision.Runtime.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H92ba4e46#\bbfec79b5a9c52e9308accd0b03eb295\CLI.Caste.HydraVision.Shared.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Hbb906c0b#\716a0feba1e467ae4d63f0a2ef4c4e29\CLI.Caste.HydraVision.Dashboard.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pac40511b#\e6d304b03856ff4e9c3f8aa688080ced\CLI.Caste.Platform.Shared.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000045056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pdb36d56e#\5364318939cded57ab3246999ccf15d7\CLI.Caste.Platform.Runtime.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000024576 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pfeefa2b6#\d0b8abb839fdfd634ab2e49451437661\CLI.Caste.Platform.Dashboard.ni.dll
2018-02-08 11:44 - 2018-02-08 11:44 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone1b4a8c97#\9df173665ef8e68a23a08aa0d9e5f63a\CLI.Component.Runtime.Shared.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000902144 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone26c9c557#\85de606a8ae1190056b08b782c70c5b1\CLI.Component.Systemtray.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000170496 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone29e547cc#\1044b7ff65783861851aee579b5d5379\CLI.Component.Dashboard.ProfileManager2.ni.dll
2018-02-08 23:26 - 2018-02-08 23:26 - 000152576 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone59f353b4#\4aa462ccf917792c45af3a98ea688559\CLI.Component.Runtime.Shared.Private.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componeb4d0485c#\856933c0fa751efd6ae764a08d9c3b8b\CLI.Component.Runtime.Extension.EEU.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 001606656 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componec89c3bec#\12ab26dbacc2fa779f1d0b78b045dcf4\CLI.Component.Dashboard.Shared.Private.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000019968 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componef1fd67b2#\7ac5152fbffcc0e44c2d2441c3442888\CLI.Component.Client.Shared.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000086528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Componef4cf054f#\2b9bd6412799bfae911966372a4df5be\CLI.Component.Dashboard.Shared.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000490496 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Component.Eeu\e36185c6bf989ccb1eb2cf1ff0714508\CLI.Component.Eeu.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000090112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat3d5d3945#\2af47fe817f2ab488a0374026d5dbff0\CLI.Foundation.Private.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000061952 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat60cdf5df#\ab26c36bbf527050abddbe43c1578e17\CLI.Foundation.XManifest.ni.dll
2018-02-08 11:44 - 2018-02-08 11:44 - 000091648 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundat619559bd#\bb7720029eb055da0f92f3756d319236\CLI.Foundation.CoreAudioAPI.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 001065472 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundatd3771151#\cb589323508dc55a5ede6942167bfc18\CLI.Foundation.Client.ni.dll
2018-02-08 11:45 - 2018-02-08 11:45 - 000301056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Foundation\3461c787048a4f135f2b524c132f38b9\CLI.Foundation.ni.dll
2018-02-08 11:44 - 2018-02-08 11:44 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Foundation\e6c4a590e4bdafd75ad099fdc1aecc01\DEM.Foundation.ni.dll
2018-02-08 11:44 - 2018-02-08 11:44 - 000117248 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0601\1e03423a2b25b5e462e175ae8063433c\DEM.Graphics.I0601.ni.dll
2018-02-08 11:44 - 2018-02-08 11:44 - 000015872 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics\64e648748b4227db490adae2b627a285\DEM.Graphics.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Fuel.Foundation\9aa99a450d60fb0fbffdc51c6ee9a1e6\Fuel.Foundation.ni.dll
2018-02-08 23:38 - 2018-02-08 23:38 - 000293376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundat03490438#\5f4785d76bc5c8466bedf7dd1113f713\LOG.Foundation.Implementation.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000147968 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundat5023f8e7#\5d802549de7a6c91fcb7221aa28b108b\LOG.Foundation.Private.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000086528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundatcaafa75b#\11c0fe133a491fb802d1b5e5107c992d\LOG.Foundation.Implementation.Private.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000133120 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\LOG.Foundation\0c0a4358d7b66d3d4839e21cd63d08bf\LOG.Foundation.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\MOM.Foundation\b3228efdb52a6e1b804746ce141d00b3\MOM.Foundation.ni.dll
2018-02-08 23:38 - 2018-02-08 23:38 - 000390656 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\MOM.Implementation\084dfefdcc8e672b61fed78e82f883aa\MOM.Implementation.ni.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000055296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\NEWAEM.Foundation\2e190f6dfdaa8a482f0d8e519391cbe7\NEWAEM.Foundation.ni.dll
2015-08-19 14:03 - 2015-08-19 14:03 - 000005120 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\atiamcsy.dll
2018-02-08 11:43 - 2018-02-08 11:43 - 000898560 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ADL.Foundation\990cdde735751cd767b437ba030e5b34\ADL.Foundation.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000258560 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\APM.Server\4e94916e1c9cb2ef1ab11f6aaed24a0e\APM.Server.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000780800 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.79734f7a#\3d579dfbf4fc9bdbf4e0f232da2c83b5\CLI.Aspect.PowerXpress.Graphics.Runtime.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000357888 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b3da5a8f#\6acd19d3895ee6d20113780aec4b3a92\CLI.Aspect.PowerXpress.Graphics.Shared.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000592896 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d4846ba2#\ca545cc56c30104d942c38e9c03879f1\CLI.Aspect.PowerXpress.Graphics.Dashboard.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 007967744 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Combine0616f305#\bc5b110f553e48fc3bc0a88dbe4bcf10\CLI.Combined.Graphics.Aspects1.Dashboard.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000135680 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone168638d1#\d5dff1059f05862c5a0a4112d338e4cd\CLI.Component.Client.Shared.Private.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000231936 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone6692ca50#\760a25b320a0f333cfd1f2ef5602df40\CLI.Component.Runtime.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000920576 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Compone6bf88b08#\13333e56b1049591486c31adae136a9b\CLI.Component.Dashboard.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000011776 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0702\da330e2619cdd3395ea358a0fa648024\DEM.Graphics.I0702.ni.dll
2018-02-08 23:31 - 2018-02-08 23:31 - 000084480 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0709\47465b7c5c60546b41b33aff29e44069\DEM.Graphics.I0709.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0710\4d9d2c23e3489313db06a9e1cfc7159d\DEM.Graphics.I0710.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0712\307449e2f2288d7a4978cfb67b576c9e\DEM.Graphics.I0712.ni.dll
2018-02-08 23:29 - 2018-02-08 23:29 - 000018944 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0804\d6f2507fda7cbdc5b4bb156814b88ac7\DEM.Graphics.I0804.ni.dll
2018-02-08 23:36 - 2018-02-08 23:36 - 000010752 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0901\33a81ba300f51f71e1460197b75e5be4\DEM.Graphics.I0901.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 000036352 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I1010\8c92743e9b554a6955b04b22abaef351\DEM.Graphics.I1010.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 001136640 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Localizatio01dbc1c0#\0557a9c72866d1af3050cb4e14b41a4f\Localization.Foundation.Private.ni.dll
2018-02-08 23:38 - 2018-02-08 23:38 - 000244736 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ResourceMan446ca0e5#\f7ebb70a144d9d3f2fe92a8edac3f4da\ResourceManagement.Foundation.Implementation.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 000023552 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ResourceManf163905a#\b36bf7adb625562f8922a8a7b832b6fb\ResourceManagement.Foundation.Private.ni.dll
2018-02-08 23:27 - 2018-02-08 23:27 - 000091648 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ec8786e5#\036ac620a278fa7284e13dcd5bda82bd\CLI.Aspect.AMDHome.Graphics.Dashboard.ni.dll
2018-02-08 11:46 - 2018-02-08 11:46 - 002862080 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60a7b4d1#\dc123e14c9674546a8ab5560b835102e\CLI.Caste.Graphics.Shared.ni.dll
2018-02-08 23:37 - 2018-02-08 23:37 - 003277824 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G962aa464#\db227dd554fad35712e064d7d5c2cd8c\CLI.Caste.Graphics.Runtime.ni.dll
2017-09-24 17:16 - 2008-04-03 05:00 - 000235520 _____ (CANON INC.) [File not signed] C:\Windows\System32\CNMLM83.DLL
2013-01-23 21:44 - 2013-01-23 21:44 - 000016216 _____ (Hewlett-Packard Company -> ) [File not signed] C:\Program Files (x86)\Hewlett-Packard\Shared\Interop.HPQWMIEXLib.dll
2013-01-23 21:43 - 2013-01-23 21:43 - 002452824 _____ (Hewlett-Packard Company -> Hewlett-Packard Company) [File not signed] C:\Program Files (x86)\Hewlett-Packard\Shared\hputils.dll
2013-01-23 21:44 - 2013-01-23 21:44 - 000068440 _____ (Hewlett-Packard Company -> Hewlett-Packard Development Company L.P.) [File not signed] C:\Program Files (x86)\Hewlett-Packard\Shared\CaslSmBios.dll
2013-01-23 21:44 - 2013-01-23 21:44 - 000524632 _____ (Hewlett-Packard Company -> Hewlett-Packard Development Company L.P.) [File not signed] C:\Program Files (x86)\Hewlett-Packard\Shared\CaslWmi.dll
2016-07-25 18:55 - 2016-07-25 18:55 - 000113496 _____ (Hewlett-Packard Company -> Hewlett-Packard Development Company L.P.) [File not signed] C:\Windows\assembly\GAC_MSIL\CaslShared\3.5.1.1__9c6f83d5b7f3d097\CaslShared.dll
2016-07-25 18:55 - 2016-07-25 18:55 - 000092504 _____ (Hewlett-Packard Company -> Hewlett-Packard Development Company L.P.) [File not signed] C:\Windows\assembly\GAC_MSIL\hpcasl\3.5.1.1__9c6f83d5b7f3d097\hpcasl.dll
2013-03-26 21:12 - 2013-03-26 21:12 - 000056832 _____ (Hewlett-Packard Development Company, L.P.) [File not signed] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HP.Mobile.Shared.dll
2016-07-26 10:08 - 2016-05-21 10:19 - 000077312 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2013-08-22 14:31 - 2017-09-29 15:40 - 002896896 _____ (Microsoft Corporation) [File not signed] C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll
2018-02-08 11:47 - 2018-02-08 11:47 - 000336384 _____ (Microsoft) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.W8090224c#\3cea719585c15871e82ac1992d53c457\Microsoft.WindowsAPICodePack.ni.dll
2018-02-08 11:47 - 2018-02-08 11:47 - 002525696 _____ (Microsoft) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.Wfbf9373c#\a6882fa8a172b8639bb8b2335f6af6b9\Microsoft.WindowsAPICodePack.Shell.ni.dll
2017-10-08 11:53 - 2017-10-08 11:53 - 002775040 _____ (NLog) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\NLog\4ce317f88ec4329c93b303ba50dcab03\NLog.ni.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 003042304 _____ (Python Software Foundation) [File not signed] C:\Users\TOM~1\AppData\Local\Temp\_MEI44922\python27.dll
2017-10-08 11:52 - 2017-10-08 11:52 - 000017408 _____ (StagWare) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\StagWare.BiosInfo\ddf5111c27f39642b0c056cf87f2192d\StagWare.BiosInfo.ni.dll
2017-10-08 11:54 - 2017-10-08 11:54 - 000036352 _____ (StagWare) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\StagWare.Fa1fc2d056#\cd39978e79ff598f310bddc2d1dcaf5d\StagWare.FanControl.Service.ni.dll
2017-10-08 11:52 - 2017-10-08 11:52 - 000167936 _____ (StagWare) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\StagWare.Fafc31ac88#\bafe100a11bb2a4789eca5894750b0fc\StagWare.FanControl.Configurations.ni.dll
2017-10-08 11:53 - 2017-10-08 11:53 - 000144384 _____ (StagWare) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\StagWare.FanControl\ac3416be90242299ef18e34e6008189f\StagWare.FanControl.ni.dll
2017-10-08 11:54 - 2017-10-08 11:54 - 000039424 _____ (StagWare) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\StagWare.Settings\2c916f31645736e86d33dfc6a741f3cc\StagWare.Settings.ni.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 000202240 _____ (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wxbase30u_net_vc90_x64.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 002831872 _____ (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wxbase30u_vc90_x64.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 001654784 _____ (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wxmsw30u_adv_vc90_x64.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 006542336 _____ (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wxmsw30u_core_vc90_x64.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 000773632 _____ (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wxmsw30u_html_vc90_x64.dll
2019-09-15 13:45 - 2019-09-15 13:45 - 000137216 _____ (wxWidgets development team) [File not signed] C:\Users\Tomáš\AppData\Local\Temp\_MEI44922\wxmsw30u_webview_vc90_x64.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\sharepoint.com -> hxxps://malgym-files.sharepoint.com
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2013-08-22 15:25 - 2019-02-25 18:35 - 000000041 _____ C:\Windows\system32\drivers\etc\hosts
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\ProgramData\Oracle\Java\javapath;c:\Program Files (x86)\Intel\iCLS Client\;c:\Program Files\Intel\iCLS Client\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\AMD\ATI.ACE\Core-Static;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\NoteBook FanControl\
HKU\S-1-5-21-508856505-97066582-1914413276-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Tomáš\AppData\Roaming\Microsoft\Windows Photo Viewer\Tapeta programu Windows Prohlížeč fotografií.jpg
DNS Servers: 10.0.0.138
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
If an entry is included in the fixlist, it will be removed.
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\StartupApproved\StartupFolder: => "EvernoteClipper.lnk"
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\StartupApproved\Run: => "GarminExpressTrayApp"
HKU\S-1-5-21-508856505-97066582-1914413276-1001\...\StartupApproved\Run: => "Spotify Web Helper"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [TCP Query User{4440500E-2A2E-4CE3-A3FF-66417F819A1F}C:\users\tomáš\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\tomáš\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [UDP Query User{221C8AF3-76F6-4FBB-9257-75A3317989C6}C:\users\tomáš\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\tomáš\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [TCP Query User{159A5873-2048-470A-B6C2-F6AB45B98221}C:\users\tomáš\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\tomáš\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{FF2D840F-E30B-4884-BAC4-06A50412A714}C:\users\tomáš\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\tomáš\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{241603BC-3EFB-47AE-9148-367EBF2BD7AC}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe No File
FirewallRules: [{F62FA635-7262-493E-97FC-7A3F7FC7B909}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe No File
FirewallRules: [{CFF3B325-EDA7-4A51-BB73-E7460E621457}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{558FEC4D-D298-4F3A-B674-DE115D047084}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E59D35AB-8D46-4BCA-9BEA-1F552D78F2F5}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{72F9D536-0640-4532-926C-F5B0555B6F94}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{EECB4F31-716E-4D54-9815-D425F3644E4F}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{42C88F82-A367-4C7D-BB12-592BE6FB1687}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{089C2A5B-1D73-4565-9EF0-14EE9D940AA7}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{BE5FDE4B-F25F-45BF-BF47-E1EFD82E3AF6}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{60612BCD-0DB6-4C17-A502-CFD48E0494EC}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{80E0A99E-4D91-4CAD-AA12-8A3AE58A4D36}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4FEBFC1C-4B86-4C55-B953-EFBAD6784247}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{DFAA4770-8A29-4D0E-B017-A74B13C24634}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F62F57B5-1BA5-447A-9EA3-A187B5BA1F6E}] => (Allow) C:\Users\Tomáš\AppData\Local\Temp\7zS013C\HP.EasyStart.exe (HP Inc. -> HP)
==================== Restore Points =========================
15-09-2019 12:08:22 Removed Základní software zařízení HP DeskJet 5000 series
15-09-2019 13:12:29 Removed Základní software zařízení HP DeskJet 5000 series
15-09-2019 13:14:00 Removed Teams Machine-Wide Installer
==================== Faulty Device Manager Devices =============
Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.
==================== Event log errors: =========================
Application errors:
==================
Error: (09/15/2019 11:59:00 PM) (Source: Software Protection Platform Service) (EventID: 1017) (User: )
Description: Instalace dokladu o zakoupení se nezdařila. 0xC004F069
Částečný klíč Pkey=F3G7T
ACID=?
Podrobná chyba[?]
Error: (09/15/2019 03:14:13 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x80004005
Argument příkazového řádku:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable
Error: (09/15/2019 01:45:10 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x80004005
Argument příkazového řádku:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=UserLogon;SessionId=1
Error: (09/15/2019 01:32:52 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0xC004F074
Argument příkazového řádku:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable
Error: (09/15/2019 01:13:01 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ScanToPCActivationApp.exe, verze: 44.4.2678.1977, časové razítko: 0x5c9088ce
Název chybujícího modulu: combase.dll, verze: 6.3.9600.18895, časové razítko: 0x5a4b0eb6
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000003b3d2
ID chybujícího procesu: 0x1494
Čas spuštění chybující aplikace: 0x01d569ac4683364f
Cesta k chybující aplikaci: C:\Program Files\HP\HP DeskJet 5000 series\Bin\ScanToPCActivationApp.exe
Cesta k chybujícímu modulu: C:\Windows\SYSTEM32\combase.dll
ID zprávy: c721ae29-d7a9-11e9-82ce-a45d36cd7354
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (09/15/2019 11:36:39 AM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x80004005
Argument příkazového řádku:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable
Error: (09/14/2019 07:13:01 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x80004005
Argument příkazového řádku:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable
Error: (09/14/2019 12:15:02 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x80004005
Argument příkazového řádku:
RuleId=502ff3ba-669a-4674-bbb1-601f34a3b968;Action=AutoActivateSilent;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=c06b6981-d7fd-4a35-b7b4-054742b7af67;NotificationInterval=1440;Trigger=NetworkAvailable
System errors:
=============
Error: (09/18/2019 07:57:31 AM) (Source: bowser) (EventID: 8003) (User: )
Description: Hlavní prohledávač přijal oznámení serveru od počítače HPF90D31,
který se považuje za hlavní prohledávač domény pro přenos NetBT_Tcpip_{6FD0246E-E0CC-493D-A72F-06015BBE4AF9}.
Hlavní prohledávač bude ukončen nebo bude vyvolána volba.
Error: (09/18/2019 07:37:40 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Ze vzdáleného koncového bodu byla přijata následující výstraha o závažné chybě. Kód výstrahy o závažné chybě definovaný protokolem TLS: 70
Error: (09/18/2019 07:37:39 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Ze vzdáleného koncového bodu byla přijata následující výstraha o závažné chybě. Kód výstrahy o závažné chybě definovaný protokolem TLS: 70
Error: (09/17/2019 08:35:58 PM) (Source: ACPI) (EventID: 13) (User: )
Description: : Integrovaný řadič neodpověděl během zadaného časového limitu. Může to znamenat chybu hardwaru nebo firmwaru integrovaného řadiče nebo že systém BIOS přistupuje k integrovanému řadiči nesprávně. Měli byste zjistit, zda výrobce počítače nemá k dispozici upgrade systému BIOS. V některých situacích může tato chyba způsobit, že počítač nebude pracovat správně.
Error: (09/17/2019 06:44:09 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Ze vzdáleného koncového bodu byla přijata následující výstraha o závažné chybě. Kód výstrahy o závažné chybě definovaný protokolem TLS: 70
Error: (09/17/2019 06:44:09 AM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Ze vzdáleného koncového bodu byla přijata následující výstraha o závažné chybě. Kód výstrahy o závažné chybě definovaný protokolem TLS: 70
Error: (09/16/2019 07:34:39 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: NT AUTHORITY)
Description: 0x8000002a42\SystemRoot\System32\Config\RegBack\SYSTEM
Error: (09/16/2019 06:38:57 PM) (Source: bowser) (EventID: 8003) (User: )
Description: Hlavní prohledávač přijal oznámení serveru od počítače HPF90D31,
který se považuje za hlavní prohledávač domény pro přenos NetBT_Tcpip_{6FD0246E-E0CC-493D-A72F-06015BBE4AF9}.
Hlavní prohledávač bude ukončen nebo bude vyvolána volba.
CodeIntegrity:
===================================
Date: 2018-12-16 15:22:54.482
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.
Date: 2018-12-16 15:22:54.291
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.
Date: 2018-12-16 15:22:54.100
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.
Date: 2018-12-16 15:22:53.907
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.
Date: 2018-12-16 15:22:53.679
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.
Date: 2018-12-16 15:22:53.492
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.
Date: 2018-12-16 15:22:53.304
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.
Date: 2018-12-16 15:22:53.117
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\wow64.dll because the set of per-page image hashes could not be found on the system.
==================== Memory info ===========================
BIOS: Hewlett-Packard 68IRF Ver. F.66 07/14/2017
Motherboard: Hewlett-Packard 1949
Processor: Intel(R) Pentium(R) CPU 2020M @ 2.40GHz
Percentage of memory in use: 51%
Total physical RAM: 8040.56 MB
Available physical RAM: 3869.63 MB
Total Virtual: 16232.56 MB
Available Virtual: 10783.93 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:930.55 GB) (Free:642.74 GB) NTFS ==>[drive with boot components (obtained from BCD)]
\\?\Volume{d44e5679-baee-11e7-8292-806e6f6e6963}\ () (Fixed) (Total:0.86 GB) (Free:0.84 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: A378BE02)
Partition 1: (Active) - (Size=930.5 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=883 MB) - (Type=27)
==================== End of Addition.txt ============================