Stránka 1 z 1

Prosím o preventivní kontrolu

Napsal: 15 říj 2019 15:42
od bigmuff
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-10-2019 02
Ran by rossu (administrator) on DESKTOP-HONRFIH (Acer Aspire ES1-731G) (15-10-2019 16:29:55)
Running from C:\Users\rossu\Desktop
Loaded Profiles: rossu (Available Profiles: rossu)
Platform: Windows 10 Home Version 1903 18362.418 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SoftwareDistribution\Download\Install\AM_Delta.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\MpSigStub.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_3.7.71.0_x64__8wekyb3d8bbwe\Microsoft.Notes.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19091.313.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DeviceCensus.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MpCmdRun.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MpCmdRun.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\NisSrv.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\Defraggler\df64.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\Defraggler\df64.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\Defraggler\df64.exe
(Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.85.0_x64__kzf8qxf38zg5c\SkypeApp.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.85.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18390912 2019-09-25] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\Run: [CCleaner Smart Cleaning] => F:\program\ccleaner\CCleaner64.exe [24916512 2019-10-01] (Piriform Software Ltd -> Piriform Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.90\Installer\chrmstp.exe [2019-09-19] (Google LLC -> Google LLC)
BootExecute:
GroupPolicy: Restriction ? <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0312AFB5-A175-4D34-BCAB-DEB53C4B9314} - System32\Tasks\HDCleanerSkipUAC => C:\USERS\ROSSU\DESKTOP\HDCLEANERX64\HDCleaner.exe
Task: {1B28AEAC-91AF-4177-8C8F-3CB17B2CA6EC} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
Task: {2EAB0A5A-E5F8-48FB-9DEB-D6883D3B0024} - System32\Tasks\CCleaner Update => F:\program\ccleaner\CCUpdate.exe [619416 2019-10-01] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {3F2C0504-AB60-42B3-8704-CF53E6E400B4} - System32\Tasks\Defraggler Volume C Task => C:\Program Files\Defraggler\df64.exe [1624120 2018-05-02] (Piriform Ltd -> Piriform Ltd)
Task: {5B45F462-B401-4006-AD6F-27E428528C22} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {67D532DF-D5CD-4D9C-8975-6D846F765EE7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {86790561-FDBD-4435-9813-E911E0EBB6B0} - System32\Tasks\Defraggler Volume D Task => C:\Program Files\Defraggler\df64.exe [1624120 2018-05-02] (Piriform Ltd -> Piriform Ltd)
Task: {8DCB0963-C38B-42FF-84AC-544097BD1107} - System32\Tasks\Defraggler Volume F Task => C:\Program Files\Defraggler\df64.exe [1624120 2018-05-02] (Piriform Ltd -> Piriform Ltd)
Task: {8E1B91F2-4A2C-4FA3-94F2-61CB993B2975} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B11A6E73-B90E-4AE4-AAA1-1CBD65F341C2} - System32\Tasks\Defraggler Volume E Task => C:\Program Files\Defraggler\df64.exe [1624120 2018-05-02] (Piriform Ltd -> Piriform Ltd)
Task: {C241ABCA-A2F9-44E4-BBAD-A0909FE08D7F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DF2192C6-BE19-4D03-A899-5B636468562A} - System32\Tasks\CCleanerSkipUAC => F:\program\ccleaner\CCleaner.exe [18732320 2019-10-01] (Piriform Software Ltd -> Piriform Ltd)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Defraggler Volume C Task.job => C:\Program Files\Defraggler\df64.exe
Task: C:\WINDOWS\Tasks\Defraggler Volume D Task.job => C:\Program Files\Defraggler\df64.exe
Task: C:\WINDOWS\Tasks\Defraggler Volume E Task.job => C:\Program Files\Defraggler\df64.exe
Task: C:\WINDOWS\Tasks\Defraggler Volume F Task.job => C:\Program Files\Defraggler\df64.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 08 C:\WINDOWS\SysWOW64\wlidNSP.dll [41472 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5 09 C:\WINDOWS\SysWOW64\wlidNSP.dll [41472 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5-x64 08 C:\WINDOWS\system32\wlidnsp.dll [66048 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5-x64 09 C:\WINDOWS\system32\wlidnsp.dll [66048 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{5673707c-6e6b-4bed-88a8-2addce076092}: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{90ade671-655b-4ef5-84a6-e0d9946ad7a7}: [DhcpNameServer] 192.168.0.1 0.0.0.0

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-677340807-1562095438-3412084234-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/

Edge:
======
DownloadDir: C:\Users\rossu\Downloads
Edge HomeButtonPage: HKU\S-1-5-21-677340807-1562095438-3412084234-1001 -> hxxp://www.seznam.cz/

FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-28] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-28] (Google Inc -> Google LLC)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxps://www.seznam.cz/"
CHR Profile: C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default [2019-10-15]
CHR Extension: (Překladač Google) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2019-03-07]
CHR Extension: (Prezentace) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-03-07]
CHR Extension: (Dokumenty) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-03-07]
CHR Extension: (Disk Google) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-03-07]
CHR Extension: (YouTube) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-03-07]
CHR Extension: (Tabulky) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-03-07]
CHR Extension: (AddToAny: Share Anywhere) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffpgijchhhkhnokafdeklpllijgnbche [2019-03-07]
CHR Extension: (Vzdálená plocha Chrome) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2019-07-20]
CHR Extension: (Dokumenty Google offline) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-03-08]
CHR Extension: (AdBlock) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-10-13]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Gmail) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-23]
CHR Extension: (Chrome Media Router) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-09-11]
CHR Profile: C:\Users\rossu\AppData\Local\Google\Chrome\User Data\System Profile [2019-09-07]
CHR HKLM-x32\...\Chrome\Extension: [nladljmabboanhihfkjacnnkgjhnokhj] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtherosSvc; C:\WINDOWS\System32\drivers\AdminService.exe [415992 2019-07-21] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider)
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed]
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [355872 2019-04-25] (Intel(R) pGFX -> Intel Corporation)
R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\NisSrv.exe [3004048 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MsMpEng.exe [103384 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\WINDOWS\System32\drivers\athw10x.sys [4322672 2019-07-21] (Qualcomm Atheros -> Qualcomm Atheros Communications, Inc.)
S3 dot4; C:\WINDOWS\system32\DRIVERS\Dot4.sys [151968 2012-10-18] (Hewlett-Packard Company -> Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\WINDOWS\System32\drivers\Dot4Prt.sys [27040 2012-10-18] (Hewlett-Packard Company -> Windows (R) Win 7 DDK provider)
S3 dot4usb; C:\WINDOWS\system32\DRIVERS\dot4usb.sys [49056 2012-10-18] (Hewlett-Packard Company -> Microsoft Corporation)
R3 ETDI2C; C:\WINDOWS\System32\drivers\ETDI2C.sys [218264 2019-08-26] (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronic Corp.)
R3 igfxLP; C:\WINDOWS\system32\DRIVERS\igdkmd64lp.sys [7399984 2019-04-25] (Intel Corporation -> Intel Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_3a28859ceb44fcc2\nvlddmkm.sys [20747736 2019-04-25] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1158944 2019-08-19] (Realtek Semiconductor Corp. -> Realtek )
R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [451792 2019-09-25] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 TXEIx64; C:\WINDOWS\System32\drivers\TXEIx64.sys [146200 2015-10-14] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R3 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [237584 2019-07-12] (Oracle Corporation -> Oracle Corporation)
R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [248464 2019-07-12] (Oracle Corporation -> Oracle Corporation)
S3 VBoxUSB; C:\WINDOWS\System32\Drivers\VBoxUSB.sys [175248 2019-07-12] (Oracle Corporation -> Oracle Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46688 2019-10-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [350136 2019-10-02] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54200 2019-10-02] (Microsoft Windows -> Microsoft Corporation)
S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-10-15 16:29 - 2019-10-15 16:34 - 000018135 _____ C:\Users\rossu\Desktop\FRST.txt
2019-10-15 16:29 - 2019-10-15 16:32 - 000000000 ____D C:\FRST
2019-10-15 16:26 - 2019-10-15 16:27 - 001616384 _____ (Farbar) C:\Users\rossu\Desktop\FRST64.exe
2019-10-15 16:24 - 2019-10-15 16:24 - 000228880 _____ (Translucency (hxxps://translucency.azurewebsites.net)) C:\Users\rossu\Downloads\empty-folder-finder_1.4.0.0.exe
2019-10-15 16:20 - 2019-10-15 16:21 - 000738001 _____ (FileManagerSoft Ltd. ) C:\Users\rossu\Downloads\EmptyFolderRemoverSetup.exe
2019-10-15 16:11 - 2019-10-15 16:11 - 000000000 ____D C:\Users\rossu\AppData\Local\GHISLER
2019-10-15 15:55 - 2019-10-15 16:33 - 000000000 ____D C:\Users\rossu\Desktop\Total Commander 9.22a Portable
2019-10-15 15:53 - 2019-10-15 16:21 - 000000000 ____D C:\Users\rossu\AppData\LocalLow\uTorrent
2019-10-15 15:53 - 2019-10-15 15:53 - 000005471 _____ C:\Users\rossu\Downloads\[CzT]Total_Commander_9_22a_Final_Portable_x86_x64_CZ_SK_.torrent
2019-10-14 20:15 - 2019-10-14 20:15 - 000000000 ____D C:\Users\rossu\Downloads\advanced_renamer_portable
2019-10-14 20:13 - 2019-10-14 20:14 - 015270215 _____ C:\Users\rossu\Downloads\advanced_renamer_portable.zip
2019-10-14 19:14 - 2019-10-14 19:16 - 122392419 _____ C:\Users\rossu\Downloads\popky.rar
2019-10-14 17:45 - 2019-10-14 17:45 - 000733500 _____ C:\Users\rossu\Downloads\[CzT]Annabelle_3_Annabelle_Comes_Home_2019_CZ_EN_HEVC_1080pHD_.torrent
2019-10-13 16:43 - 2019-10-13 16:44 - 030104352 _____ (2BrightSparks Pte Ltd ) C:\Users\rossu\Downloads\SyncBack_Setup.exe
2019-10-13 16:33 - 2019-10-13 16:33 - 000068227 _____ C:\Users\rossu\Downloads\[CzT]Shaft_2019_CZ_EN_1080pHD_.torrent
2019-10-13 16:24 - 2019-10-13 16:58 - 2810387908 ____R C:\Users\rossu\Downloads\The Cure - Flow Festival 2019.mkv
2019-10-13 16:21 - 2019-10-13 16:21 - 000017423 _____ C:\Users\rossu\Downloads\The Cure • Flow Festival [2019, Post - Punk, Gothic, HDTV, 1080i] [rutracker-5787120].torrent
2019-10-13 16:19 - 2019-10-13 16:20 - 000000000 ____D C:\Users\rossu\Downloads\GOTT KAREL - 80-80 Největší hity 1964-2019 (CZ 4CD 2019)[MP3.CBR.320](CzT)
2019-10-13 16:18 - 2019-10-13 16:18 - 000018271 _____ C:\Users\rossu\Downloads\[CzT]Karel_Gott_80_80_Nejvetsi_hity_1964_2019_2019_ (1).torrent
2019-10-13 16:17 - 2019-10-13 16:17 - 000018271 _____ C:\Users\rossu\Downloads\[CzT]Karel_Gott_80_80_Nejvetsi_hity_1964_2019_2019_.torrent
2019-10-09 20:55 - 2019-10-09 20:55 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 002314648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 002138472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2019-10-09 20:55 - 2019-10-09 20:55 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 001273392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 001098712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 000537600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 025900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 025443840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 022628352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 019811840 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 018019840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 008010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 007195648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 007015936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 006517640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 006232064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 005915648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 004538880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 004129616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2019-10-09 20:54 - 2019-10-09 20:54 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2019-10-09 20:54 - 2019-10-09 20:54 - 002494440 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 002422592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2019-10-09 20:54 - 2019-10-09 20:54 - 002236144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001847808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001664928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001563648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001562424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001394488 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001283072 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001217904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001152016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000829536 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000774672 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000690176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000679880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000598024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000452408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000422008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000404392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000380216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000300184 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-10-09 20:54 - 2019-10-09 20:54 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-10-09 20:54 - 2019-10-09 20:54 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000150328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000033048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NtlmShared.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2019-10-09 20:54 - 2019-10-09 20:54 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 017787392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 009928504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 007600664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 005041664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 004562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 004012544 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 003771392 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 003701760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002861568 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002762504 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002723328 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 002703360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002456064 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002448712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002114048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002095104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002000168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001952360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001743672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001730560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001721144 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001687040 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001656392 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001439744 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 001084432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000904208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000890472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000880088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000856576 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2019-10-09 20:53 - 2019-10-09 20:53 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000818688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000758584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mousocoreworker.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000516408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000515896 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000466416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000462136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000456504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000436536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000412152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000225080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000220472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000202040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000165832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000039304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NtlmShared.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000037176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2019-10-09 20:14 - 2019-09-20 06:36 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2019-10-09 20:14 - 2019-09-20 06:14 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2019-10-07 21:50 - 2019-10-07 21:50 - 000006033 _____ C:\Users\rossu\Downloads\[CzT]Revo_Uninstaller_Pro_v_4_2_0_CZ_SK_.torrent
2019-10-07 18:15 - 2019-10-07 18:20 - 000296316 _____ C:\TDSSKiller.3.1.0.28_07.10.2019_18.15.05_log.txt
2019-10-07 17:33 - 2019-10-07 17:34 - 000011916 _____ C:\TDSSKiller.3.1.0.28_07.10.2019_17.33.17_log.txt
2019-10-05 19:55 - 2019-10-05 19:56 - 000001409 _____ C:\Users\rossu\Desktop\shutdown.lnk
2019-10-05 19:51 - 2019-05-12 14:03 - 000884363 _____ C:\Users\rossu\Desktop\AntiTwin.exe
2019-10-05 19:50 - 2019-07-05 13:33 - 003617760 _____ (Easeware) C:\Users\rossu\Desktop\DriverEasy.exe
2019-10-05 19:49 - 2017-04-09 11:06 - 004476928 _____ (Pablo Software Solutions) C:\Users\rossu\Desktop\WebBuilder.exe
2019-10-05 19:49 - 2008-08-27 17:21 - 000821760 _____ C:\Users\rossu\Desktop\CUE_Splitter.exe
2019-10-05 19:48 - 2014-06-29 23:08 - 001807888 _____ (rajce.net) C:\Users\rossu\Desktop\rajce.exe
2019-10-05 19:43 - 2019-04-16 10:30 - 004081664 _____ C:\Users\rossu\Desktop\ROSSMANN CEWE fotosvet.exe
2019-10-05 18:45 - 2019-10-05 18:45 - 000039897 _____ C:\Users\rossu\Downloads\[CzT]Upgrade_2018_CZ_EN_HEVC_1080pHD_.torrent
2019-10-05 18:40 - 2019-10-05 18:40 - 000000000 ____D C:\Users\rossu\Downloads\tweaking.com_windows_repair_aio (1)
2019-10-05 18:34 - 2019-10-05 18:34 - 000000000 ____D C:\Users\rossu\Downloads\tweaking.com_windows_repair_aio
2019-10-05 16:37 - 2019-10-05 16:37 - 000003924 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2019-10-05 15:40 - 2019-10-05 15:40 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2019-10-05 15:40 - 2019-10-05 15:40 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secproc.dll
2019-10-05 14:12 - 2019-10-05 14:13 - 000003656 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask
2019-10-04 16:14 - 2019-10-04 16:14 - 000015848 _____ C:\Users\rossu\Downloads\(Indie) [WEB] Nick Cave And The Bad Seeds - Ghosteen - 2019, FLAC (tracks), lossless [rutracker-5786548].torrent
2019-10-01 18:52 - 2019-10-01 18:52 - 000939008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000742912 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000722944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000387832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeUISrv.exe
2019-10-01 18:51 - 2019-10-01 18:51 - 004481536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2019-10-01 18:51 - 2019-10-01 18:51 - 001244944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 002132280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001788728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001510752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001505320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001297936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001263616 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000904704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2019-10-01 18:50 - 2019-10-01 18:50 - 000802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000421376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-10-01 18:50 - 2019-10-01 18:50 - 000417280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiag.exe
2019-10-01 18:50 - 2019-10-01 18:50 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glu32.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000158208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2019-10-01 18:50 - 2019-10-01 18:50 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000100664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
2019-10-01 18:50 - 2019-10-01 18:50 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvvmtransport.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvvmtransport.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 005764872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 002799616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-10-01 18:49 - 2019-10-01 18:49 - 002258856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001692160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001616784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001473488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001178816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000772656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000652800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000568336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourceMapper.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000510464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000501232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000500736 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-10-01 18:49 - 2019-10-01 18:49 - 000487576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000463272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2019-10-01 18:49 - 2019-10-01 18:49 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000236520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgmgr32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000143808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000139264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prntvpt.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000137864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devobj.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000116904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000110080 _____ C:\WINDOWS\system32\ResBParser.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000093712 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000089544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000084496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-10-01 18:49 - 2019-10-01 18:49 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devrtl.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollCtrl.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000021544 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2019-10-01 18:48 - 2019-10-01 18:49 - 002821120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 006084048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 005865272 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizimg.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 005105152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 003964056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 003742032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 002772032 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 002160640 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001957008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001913296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001857024 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001845408 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001664376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001412096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001334064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdrecordcpu.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001154656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001054872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001047968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000792296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000784384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000673080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000629248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000599040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000539648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000507704 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000507152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000450360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11on12.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000383984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000379840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000375720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000285256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000283688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdwriter.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000278080 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2019-10-01 18:48 - 2019-10-01 18:48 - 000243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000176440 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlib.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComposableShellProxyStub.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ForceSync.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000125232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2019-10-01 18:48 - 2019-10-01 18:48 - 000073024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000066832 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnppolicy.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AssignedAccessRuntime.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2019-10-01 18:48 - 2019-10-01 18:48 - 000016696 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizres.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000011576 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlibres.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 001819136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 001482040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-10-01 18:47 - 2019-10-01 18:47 - 001023128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000984376 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000674072 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2019-10-01 18:47 - 2019-10-01 18:47 - 000639400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000617784 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000612864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-10-01 18:47 - 2019-10-01 18:47 - 000541480 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000442704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000398728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2019-10-01 18:47 - 2019-10-01 18:47 - 000334936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposableShellProxyStub.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000293344 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgmgr32.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000179512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2019-10-01 18:47 - 2019-10-01 18:47 - 000176152 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000159112 _____ (Microsoft Corporation) C:\WINDOWS\system32\devobj.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000140496 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000132408 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellExtFramework.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\devrtl.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2019-10-01 18:47 - 2019-10-01 18:47 - 000020944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmsgapi.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2019-10-01 18:46 - 2019-10-01 18:47 - 006425600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 007905000 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 006164480 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 004046336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 003727360 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-10-01 18:46 - 2019-10-01 18:46 - 003553280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 003386880 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 002590208 _____ C:\WINDOWS\system32\dwmscene.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001940952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-10-01 18:46 - 2019-10-01 18:46 - 001607680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001543168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001512320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 001372160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-10-01 18:46 - 2019-10-01 18:46 - 001261800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001182240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000975872 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000759488 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-10-01 18:46 - 2019-10-01 18:46 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-10-01 18:46 - 2019-10-01 18:46 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000363624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000342896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdwriter.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000152408 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000119840 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000105272 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000092624 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000053248 _____ C:\WINDOWS\system32\Drivers\UsbPmApi.sys
2019-10-01 18:46 - 2019-10-01 18:46 - 000047616 _____ C:\WINDOWS\system32\UsbPmApi.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 007848192 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 006227624 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 004612520 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 003590968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 003184128 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 003105280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 002552120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 002466304 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 002120704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 002069504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001616608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdrecordcpu.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001383856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001150240 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001036800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001029432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000944664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000931840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000833312 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000732176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000656960 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11on12.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000589384 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000449888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000415808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessRuntime.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32_DeviceGuard.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2019-10-01 18:44 - 2019-10-01 18:45 - 000735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 002120272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 001413704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000551952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000355000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ManageCI.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000223032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000208184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000201016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-10-01 18:44 - 2019-10-01 18:44 - 000151568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000088352 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000079376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uaspstor.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidspi.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000052752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmstorfl.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000043536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storvsc.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2019-10-01 18:44 - 2019-10-01 18:44 - 000028936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2019-09-28 20:44 - 2019-09-28 20:44 - 000002876 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2019-09-28 16:54 - 2019-09-28 16:54 - 000097681 _____ C:\Users\rossu\Downloads\Pojisteni majetku a odpovednosti BH.PDF
2019-09-25 19:13 - 2019-09-25 19:16 - 009908792 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll
2019-09-25 19:08 - 2019-09-25 19:08 - 001596088 _____ (Harman International Industries, Incorporated.) C:\WINDOWS\system32\HarmanAPO64.dll
2019-09-25 19:08 - 2019-09-25 19:08 - 000487360 _____ (Harman International Industries, Incorporated.) C:\WINDOWS\system32\HarmanAPOUI64.dll
2019-09-25 19:07 - 2019-09-25 19:08 - 001287488 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyAPOvlldpgm.dll
2019-09-25 19:07 - 2019-09-25 19:07 - 001610848 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyAPOv251gm.dll
2019-09-25 19:04 - 2019-09-25 19:04 - 000406344 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2APIPCLL.dll
2019-09-25 19:03 - 2019-09-25 19:04 - 001544144 _____ (Dolby Laboratories) C:\WINDOWS\system32\DAX3APOProp.dll
2019-09-25 19:03 - 2019-09-25 19:03 - 001259616 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOvlldp.dll
2019-09-25 19:02 - 2019-09-25 19:03 - 001372280 _____ (Dolby Laboratories) C:\WINDOWS\system32\DAX3APOv251.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000416400 _____ (Harman) C:\WINDOWS\system32\HMUI.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000366016 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\HMAPO.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000360240 _____ (Harman) C:\WINDOWS\system32\HMClariFi.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000203736 _____ (Harman) C:\WINDOWS\system32\HMHVS.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000190824 _____ (Harman) C:\WINDOWS\system32\HMEQ_Voice.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000190824 _____ (Harman) C:\WINDOWS\system32\HMEQ.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000179488 _____ (Harman) C:\WINDOWS\system32\HMLimiter.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000154256 _____ (Harman) C:\WINDOWS\system32\HarmanAudioInterface.dll
2019-09-25 18:58 - 2019-09-25 18:58 - 000378280 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2API.dll
2019-09-25 18:57 - 2019-09-25 18:58 - 001159080 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2019-09-25 18:56 - 2019-09-25 18:57 - 005346888 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2019-09-25 18:55 - 2019-09-25 18:56 - 002444576 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv201.dll
2019-09-25 18:55 - 2019-09-25 18:55 - 001078576 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SEHDHF32.dll
2019-09-25 18:54 - 2019-09-25 18:55 - 001061464 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SECOMN32.dll
2019-09-25 18:54 - 2019-09-25 18:54 - 001386680 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDHF64.dll
2019-09-25 18:54 - 2019-09-25 18:54 - 001180792 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDRA64.dll
2019-09-25 18:53 - 2019-09-25 18:54 - 001396840 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SECOMN64.dll
2019-09-25 18:53 - 2019-09-25 18:53 - 001294192 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEAPO64.dll
2019-09-25 18:53 - 2019-09-25 18:53 - 000604688 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaemaxapo64.dll
2019-09-25 18:51 - 2019-09-25 18:53 - 006270088 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64AF3.dll
2019-09-25 18:51 - 2019-09-25 18:51 - 000367504 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64AF3.dll
2019-09-25 18:50 - 2019-09-25 18:51 - 001965048 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64AF3.dll
2019-09-25 18:50 - 2019-09-25 18:50 - 000315872 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64F3.dll
2019-09-25 18:49 - 2019-09-25 18:50 - 003267496 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RltkAPO.dll
2019-09-25 18:49 - 2019-09-25 18:49 - 000341040 _____ (Synopsys, Inc.) C:\WINDOWS\SysWOW64\SRCOM.dll
2019-09-25 18:49 - 2019-09-25 18:49 - 000341040 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM.dll
2019-09-25 18:48 - 2019-09-25 18:49 - 001435032 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRRPTR64.dll
2019-09-25 18:48 - 2019-09-25 18:48 - 000467048 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRAPO64.dll
2019-09-25 18:48 - 2019-09-25 18:48 - 000381304 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM64.dll
2019-09-25 18:47 - 2019-09-25 18:48 - 003306704 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE2.dll
2019-09-25 18:46 - 2019-09-25 18:47 - 002197872 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE.dll
2019-09-25 18:44 - 2019-09-25 18:46 - 007101640 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2019-09-25 18:44 - 2019-09-25 18:44 - 000332904 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2019-09-25 18:43 - 2019-09-25 18:44 - 001971256 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2019-09-25 18:43 - 2019-09-25 18:43 - 000692056 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2019-09-25 18:43 - 2019-09-25 18:43 - 000278160 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2019-09-25 18:43 - 2019-09-25 18:43 - 000118488 _____ C:\WINDOWS\system32\AcpiServiceVnA64.dll
2019-09-25 18:43 - 2019-09-25 18:43 - 000105200 _____ C:\WINDOWS\system32\audioLibVc.dll
2019-09-25 18:42 - 2019-09-25 18:43 - 001337536 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaeapo64.dll
2019-09-25 18:42 - 2019-09-25 18:42 - 000852032 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tosasfapo64.dll
2019-09-25 18:42 - 2019-09-25 18:42 - 000447072 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\toseaeapo64.dll
2019-09-25 18:42 - 2019-09-25 18:42 - 000122208 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2019-09-25 18:39 - 2019-09-25 18:40 - 003168280 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll
2019-09-25 18:38 - 2019-09-25 18:39 - 003445640 _____ (DTS, Inc.) C:\WINDOWS\system32\slcnt64.dll
2019-09-25 18:38 - 2019-09-25 18:38 - 000266448 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll
2019-09-25 18:37 - 2019-09-25 18:38 - 001110072 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll
2019-09-25 18:27 - 2019-09-25 18:37 - 034637796 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2019-09-25 18:27 - 2019-09-25 18:27 - 000873352 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo264.dll
2019-09-25 18:27 - 2019-09-25 18:27 - 000158592 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo.dll
2019-09-25 18:27 - 2019-09-25 18:27 - 000075432 _____ (TOSHIBA CORPORATION.) C:\WINDOWS\system32\tepeqapo64.dll
2019-09-25 18:26 - 2019-09-25 18:27 - 001382128 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosade.dll
2019-09-25 18:19 - 2019-09-25 18:19 - 000139648 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2019-09-25 18:16 - 2019-09-25 18:19 - 007178360 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000964920 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000734664 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000453168 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000157240 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000090064 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2019-09-25 18:15 - 2019-09-25 18:16 - 000448496 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2019-09-25 18:15 - 2019-09-25 18:15 - 001516160 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2019-09-25 18:15 - 2019-09-25 18:15 - 000751192 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2019-09-25 18:15 - 2019-09-25 18:15 - 000452624 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2019-09-25 18:14 - 2019-09-25 18:15 - 001598288 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2019-09-25 18:14 - 2019-09-25 18:14 - 001787848 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2019-09-25 18:13 - 2019-09-25 18:14 - 000715544 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000511536 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000392768 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000261128 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000261088 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000260104 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000220280 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000116432 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000093800 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000343600 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000327168 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000327168 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000231808 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000192872 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000090808 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000088216 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000083520 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2019-09-25 18:11 - 2019-09-25 18:12 - 001353216 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2019-09-25 18:10 - 2019-09-25 18:11 - 003353720 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2019-09-25 18:10 - 2019-09-25 18:10 - 000541008 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2019-09-25 18:10 - 2019-09-25 18:10 - 000230600 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2019-09-25 18:10 - 2019-09-25 18:10 - 000218168 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2019-09-25 18:10 - 2019-09-25 18:10 - 000174832 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2019-09-25 17:49 - 2019-09-25 18:10 - 072520608 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2019-09-25 17:48 - 2019-09-25 17:49 - 002930048 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2019-09-25 17:47 - 2019-09-25 17:48 - 003159672 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2019-09-25 17:38 - 2019-09-25 17:39 - 003676960 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2019-09-24 17:14 - 2019-09-24 17:15 - 000000000 ____D C:\Users\rossu\Downloads\Argo
2019-09-24 17:11 - 2019-09-24 18:05 - 2197701283 _____ C:\Users\rossu\Downloads\Babel 2006 CZ-ENG 1080p Marambak.mkv
2019-09-17 16:26 - 2019-09-17 20:13 - 000000000 _____ C:\Recovery.txt
2019-09-15 22:00 - 2019-09-15 22:07 - 000000000 ___HD C:\$WINDOWS.~BT

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-10-15 16:32 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-10-15 16:28 - 2019-03-13 17:10 - 000000000 ____D C:\Users\rossu\Desktop\Jednorázové bezpečnostní utility pro Windows ( 3-2019 )
2019-10-15 16:22 - 2019-03-07 21:43 - 000000000 ____D C:\Users\rossu\AppData\Roaming\uTorrent
2019-10-15 16:00 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-10-15 15:54 - 2019-06-05 15:38 - 000000000 ____D C:\Users\rossu\AppData\Local\BitTorrentHelper
2019-10-15 15:49 - 2019-03-07 21:17 - 000000000 __SHD C:\Users\rossu\IntelGraphicsProfiles
2019-10-15 15:49 - 2019-03-07 20:58 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-10-15 15:47 - 2019-06-02 21:44 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-10-15 15:47 - 2019-03-07 21:05 - 000000000 ____D C:\ProgramData\NVIDIA
2019-10-14 20:20 - 2019-03-19 06:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-10-14 19:56 - 2019-06-02 21:11 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-10-13 18:51 - 2019-06-02 21:32 - 001693636 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-10-13 18:51 - 2019-03-19 13:55 - 000718018 _____ C:\WINDOWS\system32\perfh005.dat
2019-10-13 18:51 - 2019-03-19 13:55 - 000145062 _____ C:\WINDOWS\system32\perfc005.dat
2019-10-13 18:51 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF
2019-10-13 15:49 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Dism
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-10-09 21:13 - 2019-03-08 18:49 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-10-09 21:06 - 2019-03-08 18:49 - 127230528 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-10-09 21:05 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-10-07 17:40 - 2019-05-15 17:18 - 000000000 ____D C:\KVRT_Data
2019-10-07 17:35 - 2019-03-11 16:54 - 000000000 ____D C:\Users\rossu\AppData\Local\CrashDumps
2019-10-05 19:47 - 2019-06-01 19:28 - 000000000 ____D C:\Program Files\Defraggler
2019-10-05 19:45 - 2019-03-13 16:59 - 000000877 _____ C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
2019-10-05 16:02 - 2019-09-07 19:26 - 000489072 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-10-04 16:37 - 2019-06-02 20:37 - 000000000 ____D C:\Users\rossu
2019-10-04 16:36 - 2019-03-19 06:37 - 083099648 _____ C:\WINDOWS\system32\config\software.rcbak
2019-10-04 16:36 - 2019-03-19 06:37 - 020971520 _____ C:\WINDOWS\system32\config\system.rcbak
2019-10-04 16:36 - 2019-03-19 06:37 - 000524288 _____ C:\WINDOWS\system32\config\default.rcbak
2019-10-04 16:36 - 2019-03-19 06:37 - 000065536 _____ C:\WINDOWS\system32\config\sam.rcbak
2019-10-04 16:36 - 2019-03-19 06:37 - 000057344 _____ C:\WINDOWS\system32\config\security.rcbak
2019-10-02 17:01 - 2019-03-07 21:17 - 000000000 ____D C:\Users\rossu\AppData\Local\Packages
2019-10-02 16:59 - 2019-03-07 20:42 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-10-01 22:55 - 2019-03-14 17:35 - 000000000 ____D C:\Users\rossu\AppData\Roaming\MyPhoneExplorer
2019-10-01 19:37 - 2019-03-07 21:17 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-10-01 19:36 - 2019-03-07 21:17 - 000000000 ___RD C:\Users\rossu\3D Objects
2019-10-01 19:25 - 2019-03-19 06:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-10-01 19:25 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2019-10-01 19:25 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
2019-10-01 19:25 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-09-30 15:34 - 2019-08-12 16:28 - 000000000 ____D C:\Users\rossu\AppData\Local\TeamViewer
2019-09-28 20:54 - 2019-06-02 18:58 - 000000000 ___DC C:\WINDOWS\Panther
2019-09-28 17:16 - 2019-09-06 15:33 - 000000000 ____D C:\Users\rossu\Desktop\Nová složka (2)
2019-09-25 19:13 - 2019-04-25 23:21 - 000451792 _____ (Realsil Semiconductor Corporation) C:\WINDOWS\system32\Drivers\RtsUer.sys
2019-09-25 19:12 - 2019-03-07 21:01 - 002035889 _____ C:\WINDOWS\system32\Drivers\rtkhdasetting.zip
2019-09-25 19:11 - 2019-04-25 23:20 - 000000000 _____ C:\WINDOWS\system32\fpfftResultsFile.txt
2019-09-25 19:10 - 2019-03-07 21:00 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2019-09-25 17:48 - 2019-08-19 18:24 - 000023584 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2019-09-25 17:47 - 2019-04-25 21:58 - 003751488 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll
2019-09-25 17:37 - 2019-04-25 21:47 - 006970456 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2019-09-24 18:18 - 2019-06-15 08:18 - 000000000 ____D C:\Users\rossu\AppData\Local\ElevatedDiagnostics
2019-09-19 16:45 - 2019-05-28 19:35 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-09-15 22:07 - 2019-06-02 21:43 - 000001908 _____ C:\WINDOWS\diagwrn.xml
2019-09-15 22:07 - 2019-06-02 21:43 - 000001908 _____ C:\WINDOWS\diagerr.xml

==================== Files in the root of some directories ================

2019-08-22 17:53 - 2019-08-22 17:53 - 000000000 _____ () C:\Users\rossu\AppData\Local\{F0F00A64-F90E-4776-B475-DE76BB356B29}

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================




Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-10-2019 02
Ran by rossu (15-10-2019 16:39:35)
Running from C:\Users\rossu\Desktop
Windows 10 Home Version 1903 18362.418 (X64) (2019-06-02 19:48:02)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-677340807-1562095438-3412084234-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-677340807-1562095438-3412084234-503 - Limited - Disabled)
Guest (S-1-5-21-677340807-1562095438-3412084234-501 - Limited - Disabled)
rossu (S-1-5-21-677340807-1562095438-3412084234-1001 - Administrator - Enabled) => C:\Users\rossu
WDAGUtilityAccount (S-1-5-21-677340807-1562095438-3412084234-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\uTorrent) (Version: 3.5.5.45365 - BitTorrent Inc.)
1310 (HKLM-x32\...\{76A9FB3A-D7AB-4C8C-8C49-3CFDBF2D6C2D}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden
1310_Help (HKLM-x32\...\{6D4553DF-2095-4D10-92C0-17934733B51D}) (Version: 82.0.58.000 - Hewlett-Packard) Hidden
1310Trb (HKLM-x32\...\{6D7E031C-4C05-4265-854A-FE9FDEA9984D}) (Version: 82.0.242.000 - Hewlett-Packard) Hidden
64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden
AIO_CDB_ProductContext (HKLM-x32\...\{D5045A94-1D46-44A7-9C4F-7D05B40D82EC}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden
AIO_CDB_Software (HKLM-x32\...\{2DFDE21D-AFFE-4CDD-BBD4-3B7832BEC036}) (Version: 140.0.428.000 - Hewlett-Packard) Hidden
AIO_Scan (HKLM-x32\...\{104066F4-5897-4067-85D3-4C88B67CCF75}) (Version: 130.0.421.000 - Hewlett-Packard) Hidden
BufferChm (HKLM-x32\...\{FA0FF682-CC70-4C57-93CD-E276F3E7537E}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.62 - Piriform)
Copy (HKLM-x32\...\{9BE466FF-70B7-4DA8-807C-DB4C3610FDAA}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
Defraggler (HKLM\...\Defraggler) (Version: 2.22 - Piriform)
Destinations (HKLM-x32\...\{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
DeviceDiscovery (HKLM-x32\...\{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
DocProc (HKLM-x32\...\{9B362566-EC1B-4700-BB9C-EC661BDE2175}) (Version: 140.0.185.000 - Hewlett-Packard) Hidden
Driver Easy 5.6.12 (HKLM\...\DriverEasy_is1) (Version: 5.6.12 - Easeware)
Fax (HKLM-x32\...\{9294F169-72EE-4D74-AE92-CA25F64B4FF8}) (Version: 140.0.307.000 - Hewlett-Packard) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 77.0.3865.90 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
GPBaseService2 (HKLM-x32\...\{BB3447F6-9553-4AA9-960E-0DB5310C5779}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Photosmart Officejet and Deskjet All-In-One Driver Software (HKLM\...\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}) (Version: 14.0 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPPhotoGadget (HKLM-x32\...\{CAE4213F-F797-439D-BD9E-79B71D115BE3}) (Version: 140.0.524.000 - Hewlett-Packard) Hidden
HPProductAssistant (HKLM-x32\...\{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.15.4248 - Intel Corporation)
LibreOffice 6.2.2.2 (HKLM\...\{7B486711-D8E3-41F4-A518-D709CD62C3D1}) (Version: 6.2.2.2 - The Document Foundation)
MarketResearch (HKLM-x32\...\{D360FA88-17C8-4F14-B67F-13AAF9607B12}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden
Microsoft Access database engine 2010 (English) (HKLM-x32\...\{90140000-00D1-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\OneDriveSetup.exe) (Version: 19.012.0121.0011 - Microsoft Corporation)
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.12 - F.J. Wechselberger)
Network64 (HKLM\...\{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}) (Version: 140.0.306.000 - Hewlett-Packard) Hidden
OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP)
Ovládací panel NVIDIA 425.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 425.31 - NVIDIA Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8781.1 - Realtek Semiconductor Corp.)
Revo Uninstaller Pro 4.1.5 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 4.1.5 - VS Revo Group, Ltd.)
ROSSMANN CEWE fotosvet (HKLM-x32\...\ROSSMANN CEWE fotosvet) (Version: 6.4.3 - CEWE Stiftung u Co. KGaA)
Scan (HKLM-x32\...\{06A1D88C-E102-4527-AF70-29FFD7AF215A}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
SolutionCenter (HKLM-x32\...\{BC5DD87B-0143-4D14-AAE6-97109614DC6B}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden
Status (HKLM-x32\...\{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}) (Version: 140.0.342.000 - Hewlett-Packard) Hidden
SyncBackFree (HKLM-x32\...\SyncBackFree_is1) (Version: 9.1.12.0 - 2BrightSparks)
Toolbox (HKLM-x32\...\{292F0F52-B62D-4E71-921B-89A682402201}) (Version: 140.0.596.000 - Hewlett-Packard) Hidden
TrayApp (HKLM-x32\...\{CD31E63D-47FD-491C-8117-CF201D0AFAB5}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{C3ACFCEA-240F-4DCC-A0C3-DD55FEE6C3C2}) (Version: 2.58.0.0 - Microsoft Corporation)
USB Bridge Installer (HKLM\...\USB Bridge Installer_is1) (Version: - )
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
WebReg (HKLM-x32\...\{8EE94FD8-5F52-4463-A340-185D16328158}) (Version: 140.0.297.017 - Hewlett-Packard) Hidden
WinRAR 5.61 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.61.0 - win.rar GmbH)
Zoner Photo Studio 18 (HKLM\...\ZonerPhotoStudio18_CZ_is1) (Version: 18.0.1.1 - ZONER software)

Packages:
=========
Cooking Fever -> C:\Program Files\WindowsApps\NORDCURRENT.COOKINGFEVER_6.0.0.3_x86__m9bz608c1b9ra [2019-10-13] (Nordcurrent)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.0.3587.0_x64__rz1tebttyb220 [2019-10-13] (Dolby Laboratories)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-03-07] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-03-07] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-14] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.10022.0_x64__8wekyb3d8bbwe [2019-10-13] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-14] (Microsoft Corporation) [MS Ad]
Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_2.2.16.0_x64__nfy108tqq3p12 [2019-09-28] (Thumbmunkeys Ltd) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe [2019-09-28] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll (Microsoft Windows -> Microsoft Corporation)
ContextMenuHandlers1: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers1-x32: [MyPhoneExplorer] -> {A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} => C:\Program Files (x86)\MyPhoneExplorer\DLL\ShellMgr.dll [2010-03-30] (F.J. Wechselberger) [File not signed]
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2019-04-25] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [RUShellExt] -> {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} => F:\program\Revo Uninstaller Pro\RUExt.dll [2019-03-29] (VS Revo Group Ltd. -> VS Revo Group)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ==================


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2011-08-18 01:29 - 2011-08-18 01:29 - 001039360 _____ (Hewlett-Packard Co.) [File not signed] c:\program files (x86)\hp\digital imaging\bin\hpslpsvc64.dll
2010-08-06 11:15 - 2010-08-06 11:15 - 000071680 _____ (Hewlett-Packard) [File not signed] c:\windows\system32\hpzinw12.dll
2010-08-06 11:15 - 2010-08-06 11:15 - 000089600 _____ (Hewlett-Packard) [File not signed] c:\windows\system32\hpzipm12.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\localhost -> localhost

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-06-16 17:59 - 2019-09-14 16:23 - 000000917 _____ C:\WINDOWS\system32\drivers\etc\hosts

0.0.0.0 account.zoner.com
0.0.0.0 http://www.google-analytics.com

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> %SystemRoot%\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;C:\Users\rossu\AppData\Local\Microsoft\WindowsApps;
HKU\S-1-5-21-677340807-1562095438-3412084234-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\rossu\Desktop\242.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

HKLM\...\StartupApproved\StartupFolder: => "HP Digital Imaging Monitor.lnk"
HKLM\...\StartupApproved\Run32: => "HP Software Update"
HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{7CD50AB5-7174-4E61-8068-59D9D48E3E16}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe (Hewlett-Packard Company -> Hewlett-Packard)
FirewallRules: [{1EA14F12-FEF0-4322-ACDA-D18241B0B3EF}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{B90250FD-1309-40E6-B0BA-9A93203A65EB}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{4D187A93-545A-41E8-A2C1-87F1F7F7FAF9}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe (Hewlett Packard -> Hewlett-Packard)
FirewallRules: [{80676541-E8B7-49C1-84E2-BA8420913541}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{2C83FDDD-0FEC-4980-9CBC-E38BB497144F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{1FCF8DF0-F8B8-4B65-ACA1-B28A1CE901B8}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{9D24D801-3989-4777-92A8-28FE6A838C4C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{AB2CFCAD-C35C-4FF9-8F34-B83883033B32}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe (Hewlett-Packard Co.) [File not signed]
FirewallRules: [{7CDC5136-9ECE-4A94-A397-61F973E8C3BA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{D5BCB6A4-986C-4D75-9BA8-DF3AF1416F91}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{E81AE930-30E8-4E3C-98A8-A3464435B62B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{BE0A1E35-FB3A-411A-B09E-4DE34EED4924}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{8921E3B9-9F5B-4C57-9239-71BF20BAF4D8}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{24CE10E1-2CBB-460C-ADEF-40263B51438B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{A8F68FCC-5EAE-4403-84E1-ECA6DDB783BA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{C219FC01-1687-470A-8B9B-43ECDCC9A405}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{982F682E-A67B-4C3A-9B21-5D98CFEADD9D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{7570B5BD-D000-4932-B706-DC0E741867E1}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [UDP Query User{6E2F9970-FF36-4A97-BFD5-887F1728A0D6}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe (Franz Josef Wechselberger -> F.J. Wechselberger)
FirewallRules: [TCP Query User{9C9FD61C-7E97-4AE9-A60B-21D5BD2E1512}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe (Franz Josef Wechselberger -> F.J. Wechselberger)
FirewallRules: [{B0E2E240-8573-470B-BD27-70C8A10D0C15}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{19836764-87C0-408A-B324-BAA89AF42127}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{9ACBD8C1-BF14-4CC4-B9D2-D01A7201ECDB}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{6DB19253-DDC2-43E9-BB37-06B44E402CEE}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{29496A8D-EE36-41ED-8393-FC885D2DFA22}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{C03B1736-B0EB-43DD-8D8C-2259CE1998E1}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{4D2FBD16-8481-4811-99F6-F34897551598}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (10/15/2019 04:38:39 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7696,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/15/2019 04:27:22 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (9220,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/15/2019 04:14:10 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (10988,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/15/2019 04:05:53 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4776,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/14/2019 08:20:26 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (10/14/2019 08:20:26 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (10/14/2019 08:04:08 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7808,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/14/2019 07:59:05 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Microsoft.Photos.exe verze 2019.19071.17920.0 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 28d0

Čas spuštění: 01d582b5397b8ed5

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe

ID hlášení: 65da0d7e-ecc9-49f1-91bd-164953b5db99

Úplný název balíčku s chybou: Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe

ID aplikace relativní podle balíčku s chybou: App

Typ zablokování: Quiesce


System errors:
=============
Error: (10/15/2019 03:49:17 PM) (Source: VBoxNetLwf) (EventID: 12) (User: )
Description: Ovladač zjistil interní chybu ovladače na \Device\VBoxNetLwf.

Error: (10/15/2019 03:47:31 PM) (Source: VBoxNetLwf) (EventID: 12) (User: )
Description: Ovladač zjistil interní chybu ovladače na \Device\VBoxNetLwf.

Error: (10/15/2019 03:47:28 PM) (Source: VBoxNetLwf) (EventID: 12) (User: )
Description: Ovladač zjistil interní chybu ovladače na \Device\VBoxNetLwf.

Error: (10/14/2019 08:20:03 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HONRFIH)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/14/2019 08:20:03 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HONRFIH)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/14/2019 08:20:03 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HONRFIH)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/14/2019 08:20:03 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HONRFIH)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/14/2019 08:20:03 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-HONRFIH)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.


Windows Defender:
===================================
Date: 2019-10-15 16:28:35.254
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {7936A37E-FFDF-46F0-AB03-A0D4AAD90EFA}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Vlastní prohledávání
Uživatel: DESKTOP-HONRFIH\rossu

Date: 2019-10-01 17:00:33.933
Description:
Antivirová ochrana v programu Windows Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Ditertag.A
ID: 2147722997
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\rossu\Downloads\Windows 10 Manager 3.1.5\Windows 10 Manager 3.1.5\Keygen\Keygen.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-HONRFIH\rossu
Název procesu: C:\Windows\explorer.exe
Verze bezpečnostních informací: AV: 1.303.624.0, AS: 1.303.624.0, NIS: 1.303.624.0
Verze modulu: AM: 1.1.16400.2, NIS: 1.1.16400.2

Date: 2019-10-01 16:58:56.027
Description:
Antivirová ochrana v programu Windows Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Ditertag.A
ID: 2147722997
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\rossu\Downloads\Windows 10 Manager 3.1.5\Windows 10 Manager 3.1.5\Keygen\Keygen.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-HONRFIH\rossu
Název procesu: C:\Windows\explorer.exe
Verze bezpečnostních informací: AV: 1.303.624.0, AS: 1.303.624.0, NIS: 1.303.624.0
Verze modulu: AM: 1.1.16400.2, NIS: 1.1.16400.2

Date: 2019-10-01 16:58:46.658
Description:
Antivirová ochrana v programu Windows Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Ditertag.A
ID: 2147722997
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\rossu\Downloads\Windows 10 Manager 3.1.5\Windows 10 Manager 3.1.5\Keygen\Keygen.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.303.624.0, AS: 1.303.624.0, NIS: 1.303.624.0
Verze modulu: AM: 1.1.16400.2, NIS: 1.1.16400.2

Date: 2019-09-25 16:15:15.190
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {DF7051A3-C551-4C2B-A444-DBE6E8DF6447}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-06 19:35:34.323
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.303.963.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x80240016
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2019-10-05 17:17:57.694
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.303.944.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x8024001e
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2019-10-04 16:37:18.055
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o načtení bezpečnostních informací a pokusí se o obnovení poslední známé funkční verze.
Bezpečnostní informace, které se měly načíst: Aktuální
Kód chyby: 0x80070003
Popis chyby: Systém nemůže nalézt uvedenou cestu.
Verze bezpečnostních informací: 0.0.0.0;0.0.0.0
Verze modulu: 0.0.0.0

Date: 2019-09-22 21:42:35.719
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.301.2008.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.16300.1
Kód chyby: 0x80240022
Popis chyby: V daném programu nelze zkontrolovat aktualizace definic.

Date: 2019-09-04 18:15:13.873
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.301.518.0
Předchozí verze bezpečnostních informací: 1.301.513.0
Zdroj aktualizace: Uživatel
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.16300.1
Předchozí verze modulu: 1.1.16300.1
Kód chyby: 0x80509004
Popis chyby: Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.

CodeIntegrity:
===================================

Date: 2019-06-14 18:24:34.592
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\Windows\WinSxS\wow64_microsoft-windows-securitycenter-core_31bf3856ad364e35_10.0.17134.1_none_0a15945c4fa3fe26\wscadminui.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-14 18:24:34.577
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\Windows\WinSxS\wow64_microsoft-windows-securitycenter-core_31bf3856ad364e35_10.0.17134.1_none_0a15945c4fa3fe26\wscadminui.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-14 18:24:34.570
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\Windows\WinSxS\wow64_microsoft-windows-securitycenter-core_31bf3856ad364e35_10.0.17134.1_none_0a15945c4fa3fe26\wscadminui.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-14 18:24:34.534
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\Windows\WinSxS\wow64_microsoft-windows-securitycenter-core_31bf3856ad364e35_10.0.17134.1_none_0a15945c4fa3fe26\wscadminui.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

BIOS: Insyde Corp. V1.03 04/20/2015
Motherboard: Acer Tashigi_BA
Processor: Intel(R) Pentium(R) CPU N3700 @ 1.60GHz
Percentage of memory in use: 83%
Total physical RAM: 4009.76 MB
Available physical RAM: 668.03 MB
Total Virtual: 5993.76 MB
Available Virtual: 1534.96 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:193.9 GB) (Free:124.1 GB) NTFS
Drive d: (dokument) (Fixed) (Total:19.53 GB) (Free:19.14 GB) NTFS
Drive e: (miXa) (Fixed) (Total:292.97 GB) (Free:219.69 GB) NTFS
Drive f: (program) (Fixed) (Total:423.7 GB) (Free:383.8 GB) NTFS
Drive g: (usb 8) (Removable) (Total:7.46 GB) (Free:0.01 GB) NTFS
Drive i: (Verbatim HDD) (Fixed) (Total:465.76 GB) (Free:380.27 GB) NTFS

\\?\Volume{834b1fb5-6b69-4be2-bfbc-7d6e58f5c7e1}\ (Obnovení) (Fixed) (Total:0.49 GB) (Free:0.09 GB) NTFS
\\?\Volume{37f2efdb-8a87-4438-872f-dfbcb0d70c50}\ () (Fixed) (Total:0.81 GB) (Free:0.34 GB) NTFS
\\?\Volume{a53158e8-3458-4125-a82b-8058b68c7ffb}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 93A96FC2)

Partition: GPT.

========================================================
Disk: 2 (Size: 465.8 GB) (Disk ID: CCEAC4BE)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)

========================================================
Disk: 3 (Size: 7.5 GB) (Disk ID: 00077117)
Partition 1: (Active) - (Size=7.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Re: Prosím o preventivní kontrolu

Napsal: 15 říj 2019 22:49
od Conder
Ahoj :)

:arrow: Stiahni AdwCleaner: https://toolslib.net/downloads/finish/1/
  • Uloz na plochu a ukonci vsetky programy
  • Spusti AdwCleaner ako spravca
  • Odsuhlas licencne podmienky
  • Klikni na Skenovat nyni (Scan now) a pockaj na dokoncenie
  • Nechaj zaskrtnute vsetky nalezy
  • Klikni na Cisteni a opravy (Clean and Repair) a potvrd restart PC teraz
  • Po restartovani PC sa otvori AdwCleaner, klikni na Zobrazit soubor protokolu
  • Otvori sa log, jeho obsah sem skopiruj

Re: Prosím o preventivní kontrolu

Napsal: 16 říj 2019 16:30
od bigmuff
...tak jsem tady,a tady je log

# -------------------------------
# Malwarebytes AdwCleaner 7.4.1.0
# -------------------------------
# Build: 09-04-2019
# Database: 2019-10-14.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 10-16-2019
# Duration: 00:00:02
# OS: Windows 10 Home
# Cleaned: 1
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

Deleted nladljmabboanhihfkjacnnkgjhnokhj

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1603 octets] - [13/03/2019 16:47:15]
AdwCleaner[C00].txt - [1690 octets] - [13/03/2019 16:48:02]
AdwCleaner[S01].txt - [1662 octets] - [08/04/2019 17:41:49]
AdwCleaner[C01].txt - [1767 octets] - [08/04/2019 17:42:23]
AdwCleaner[S02].txt - [1610 octets] - [25/04/2019 16:21:33]
AdwCleaner[C02].txt - [1753 octets] - [25/04/2019 16:22:11]
AdwCleaner[S03].txt - [1636 octets] - [14/05/2019 18:22:58]
AdwCleaner[C03].txt - [1799 octets] - [14/05/2019 18:23:46]
AdwCleaner[S04].txt - [1758 octets] - [22/05/2019 17:37:05]
AdwCleaner[C04].txt - [1921 octets] - [22/05/2019 17:37:25]
AdwCleaner[S05].txt - [1880 octets] - [01/06/2019 17:58:34]
AdwCleaner[C05].txt - [2043 octets] - [01/06/2019 18:03:19]
AdwCleaner[S06].txt - [2002 octets] - [06/06/2019 19:50:58]
AdwCleaner[C06].txt - [2165 octets] - [06/06/2019 19:51:18]
AdwCleaner[S07].txt - [2124 octets] - [21/06/2019 17:35:30]
AdwCleaner[C07].txt - [2287 octets] - [21/06/2019 17:36:39]
AdwCleaner[S08].txt - [2264 octets] - [02/07/2019 19:46:15]
AdwCleaner[C08].txt - [2407 octets] - [02/07/2019 19:49:50]
AdwCleaner[S09].txt - [2368 octets] - [16/07/2019 19:25:46]
AdwCleaner[C09].txt - [2531 octets] - [16/07/2019 19:26:18]
AdwCleaner[S10].txt - [2490 octets] - [23/07/2019 21:14:22]
AdwCleaner[C10].txt - [2653 octets] - [23/07/2019 21:52:24]
AdwCleaner[S11].txt - [2612 octets] - [10/08/2019 18:42:02]
AdwCleaner[C11].txt - [2775 octets] - [10/08/2019 18:42:18]
AdwCleaner[S12].txt - [2810 octets] - [15/08/2019 22:16:51]
AdwCleaner[C12].txt - [2975 octets] - [15/08/2019 22:17:15]
AdwCleaner[S13].txt - [2932 octets] - [22/08/2019 18:56:45]
AdwCleaner[C13].txt - [3097 octets] - [22/08/2019 18:57:03]
AdwCleaner[S14].txt - [3054 octets] - [14/09/2019 10:44:27]
AdwCleaner[C14].txt - [3219 octets] - [14/09/2019 10:49:49]
AdwCleaner_Debug.log - [42419 octets] - [01/10/2019 20:10:00]
AdwCleaner[S15].txt - [3249 octets] - [01/10/2019 20:10:41]
AdwCleaner[C15].txt - [3414 octets] - [01/10/2019 20:11:29]
AdwCleaner[S16].txt - [3372 octets] - [06/10/2019 19:42:23]
AdwCleaner[C16].txt - [3537 octets] - [06/10/2019 19:44:37]
AdwCleaner[S17].txt - [3494 octets] - [13/10/2019 18:44:50]
AdwCleaner[C17].txt - [3659 octets] - [13/10/2019 18:45:17]
AdwCleaner[S18].txt - [3616 octets] - [16/10/2019 17:23:11]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C18].txt ##########

Re: Prosím o preventivní kontrolu

Napsal: 16 říj 2019 21:36
od Conder
:arrow: Poprosim o obidva nove logy z FRST.

Re: Prosím o preventivní kontrolu

Napsal: 16 říj 2019 22:19
od bigmuff
OK tady

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-10-2019 02
Ran by rossu (administrator) on DESKTOP-HONRFIH (Acer Aspire ES1-731G) (16-10-2019 23:10:19)
Running from C:\Users\rossu\Desktop
Loaded Profiles: rossu (Available Profiles: rossu)
Platform: Windows 10 Home Version 1903 18362.418 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Malwarebytes Inc -> Malwarebytes) C:\Users\rossu\Desktop\adwcleaner_7.4.1.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.19091.313.0_x64__8wekyb3d8bbwe\YourPhone.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeCP.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MicrosoftEdgeSH.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1909.6-0\NisSrv.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\Windows\SysWOW64\svchost.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\Defraggler\df64.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\Defraggler\df64.exe
(Piriform Ltd -> Piriform Ltd) C:\Program Files\Defraggler\df64.exe
(Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Skype) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.53.85.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18390912 2019-09-25] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\Run: [CCleaner Smart Cleaning] => F:\program\ccleaner\CCleaner64.exe [24552064 2019-10-15] (Piriform Software Ltd -> Piriform Ltd)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\77.0.3865.90\Installer\chrmstp.exe [2019-09-19] (Google LLC -> Google LLC)
BootExecute:
GroupPolicy: Restriction ? <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0312AFB5-A175-4D34-BCAB-DEB53C4B9314} - System32\Tasks\HDCleanerSkipUAC => C:\USERS\ROSSU\DESKTOP\HDCLEANERX64\HDCleaner.exe
Task: {1B28AEAC-91AF-4177-8C8F-3CB17B2CA6EC} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\WINDOWS\explorer.exe /NOUACCHECK
Task: {2EAB0A5A-E5F8-48FB-9DEB-D6883D3B0024} - System32\Tasks\CCleaner Update => F:\program\ccleaner\CCUpdate.exe [608384 2019-10-15] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {3F2C0504-AB60-42B3-8704-CF53E6E400B4} - System32\Tasks\Defraggler Volume C Task => C:\Program Files\Defraggler\df64.exe [1624120 2018-05-02] (Piriform Ltd -> Piriform Ltd)
Task: {5B45F462-B401-4006-AD6F-27E428528C22} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {67D532DF-D5CD-4D9C-8975-6D846F765EE7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {86790561-FDBD-4435-9813-E911E0EBB6B0} - System32\Tasks\Defraggler Volume D Task => C:\Program Files\Defraggler\df64.exe [1624120 2018-05-02] (Piriform Ltd -> Piriform Ltd)
Task: {8DCB0963-C38B-42FF-84AC-544097BD1107} - System32\Tasks\Defraggler Volume F Task => C:\Program Files\Defraggler\df64.exe [1624120 2018-05-02] (Piriform Ltd -> Piriform Ltd)
Task: {8E1B91F2-4A2C-4FA3-94F2-61CB993B2975} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B11A6E73-B90E-4AE4-AAA1-1CBD65F341C2} - System32\Tasks\Defraggler Volume E Task => C:\Program Files\Defraggler\df64.exe [1624120 2018-05-02] (Piriform Ltd -> Piriform Ltd)
Task: {C241ABCA-A2F9-44E4-BBAD-A0909FE08D7F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MpCmdRun.exe [468120 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DF2192C6-BE19-4D03-A899-5B636468562A} - System32\Tasks\CCleanerSkipUAC => F:\program\ccleaner\CCleaner.exe [18458752 2019-10-15] (Piriform Software Ltd -> Piriform Ltd)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Defraggler Volume C Task.job => C:\Program Files\Defraggler\df64.exe
Task: C:\WINDOWS\Tasks\Defraggler Volume D Task.job => C:\Program Files\Defraggler\df64.exe
Task: C:\WINDOWS\Tasks\Defraggler Volume E Task.job => C:\Program Files\Defraggler\df64.exe
Task: C:\WINDOWS\Tasks\Defraggler Volume F Task.job => C:\Program Files\Defraggler\df64.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 08 C:\WINDOWS\SysWOW64\wlidNSP.dll [41472 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5 09 C:\WINDOWS\SysWOW64\wlidNSP.dll [41472 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5-x64 08 C:\WINDOWS\system32\wlidnsp.dll [66048 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Winsock: Catalog5-x64 09 C:\WINDOWS\system32\wlidnsp.dll [66048 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{5673707c-6e6b-4bed-88a8-2addce076092}: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{90ade671-655b-4ef5-84a6-e0d9946ad7a7}: [DhcpNameServer] 192.168.0.1 0.0.0.0

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-677340807-1562095438-3412084234-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/

Edge:
======
DownloadDir: C:\Users\rossu\Downloads
Edge HomeButtonPage: HKU\S-1-5-21-677340807-1562095438-3412084234-1001 -> hxxp://www.seznam.cz/

FireFox:
========
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-28] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.34.11\npGoogleUpdate3.dll [2019-05-28] (Google Inc -> Google LLC)

Chrome:
=======
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxps://www.seznam.cz/"
CHR Profile: C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default [2019-10-16]
CHR Extension: (Překladač Google) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2019-03-07]
CHR Extension: (Prezentace) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-03-07]
CHR Extension: (Dokumenty) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-03-07]
CHR Extension: (Disk Google) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-03-07]
CHR Extension: (YouTube) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-03-07]
CHR Extension: (Tabulky) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-03-07]
CHR Extension: (AddToAny: Share Anywhere) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\ffpgijchhhkhnokafdeklpllijgnbche [2019-03-07]
CHR Extension: (Vzdálená plocha Chrome) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\gbchcmhmhahfdphkhkmpfmihenigjmpp [2019-07-20]
CHR Extension: (Dokumenty Google offline) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-03-08]
CHR Extension: (AdBlock) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2019-10-13]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-04]
CHR Extension: (Gmail) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-04-23]
CHR Extension: (Chrome Media Router) - C:\Users\rossu\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-09-11]
CHR Profile: C:\Users\rossu\AppData\Local\Google\Chrome\User Data\System Profile [2019-09-07]
CHR HKLM-x32\...\Chrome\Extension: [nladljmabboanhihfkjacnnkgjhnokhj] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtherosSvc; C:\WINDOWS\System32\drivers\AdminService.exe [415992 2019-07-21] (Qualcomm Atheros -> Windows (R) Win 7 DDK provider)
R2 HPSLPSVC; C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL [1039360 2011-08-18] (Hewlett-Packard Co.) [File not signed]
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [355872 2019-04-25] (Intel(R) pGFX -> Intel Corporation)
S2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [71680 2010-08-06] (Hewlett-Packard) [File not signed]
S2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [89600 2010-08-06] (Hewlett-Packard) [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\NisSrv.exe [3004048 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1909.6-0\MsMpEng.exe [103384 2019-10-02] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 athr; C:\WINDOWS\System32\drivers\athw10x.sys [4322672 2019-07-21] (Qualcomm Atheros -> Qualcomm Atheros Communications, Inc.)
S3 dot4; C:\WINDOWS\system32\DRIVERS\Dot4.sys [151968 2012-10-18] (Hewlett-Packard Company -> Windows (R) Win 7 DDK provider)
S3 Dot4Print; C:\WINDOWS\System32\drivers\Dot4Prt.sys [27040 2012-10-18] (Hewlett-Packard Company -> Windows (R) Win 7 DDK provider)
S3 dot4usb; C:\WINDOWS\system32\DRIVERS\dot4usb.sys [49056 2012-10-18] (Hewlett-Packard Company -> Microsoft Corporation)
R3 ETDI2C; C:\WINDOWS\System32\drivers\ETDI2C.sys [218264 2019-08-26] (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronic Corp.)
R3 igfxLP; C:\WINDOWS\system32\DRIVERS\igdkmd64lp.sys [7399984 2019-04-25] (Intel Corporation -> Intel Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvaci.inf_amd64_3a28859ceb44fcc2\nvlddmkm.sys [20747736 2019-04-25] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [1158944 2019-08-19] (Realtek Semiconductor Corp. -> Realtek )
R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [451792 2019-09-25] (Realtek Semiconductor Corp. -> Realsil Semiconductor Corporation)
R3 TXEIx64; C:\WINDOWS\System32\drivers\TXEIx64.sys [146200 2015-10-14] (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation)
R3 VBoxNetAdp; C:\WINDOWS\system32\DRIVERS\VBoxNetAdp6.sys [237584 2019-07-12] (Oracle Corporation -> Oracle Corporation)
R1 VBoxNetLwf; C:\WINDOWS\system32\DRIVERS\VBoxNetLwf.sys [248464 2019-07-12] (Oracle Corporation -> Oracle Corporation)
S3 VBoxUSB; C:\WINDOWS\System32\Drivers\VBoxUSB.sys [175248 2019-07-12] (Oracle Corporation -> Oracle Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46688 2019-10-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [350136 2019-10-02] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54200 2019-10-02] (Microsoft Windows -> Microsoft Corporation)
S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-10-16 20:04 - 2019-10-16 20:04 - 049852405 _____ C:\Users\rossu\Downloads\xvideos.com_acba33f5e63b4221a9cc3b7ec2e99356.mp4
2019-10-16 20:03 - 2019-10-16 20:03 - 060046898 _____ C:\Users\rossu\Downloads\xvideos.com_de7c262ddd5f3e7b2adfd6e8b8b47b46.mp4
2019-10-16 20:02 - 2019-10-16 20:02 - 005380644 _____ C:\Users\rossu\Downloads\xvideos.com_6ee38db3254c03791271725a412fe893.mp4
2019-10-16 19:59 - 2019-10-16 19:59 - 041190127 _____ C:\Users\rossu\Downloads\xvideos.com_9141eefa845751e973f2b95d6688be7f.mp4
2019-10-16 19:55 - 2019-10-16 19:55 - 068865916 _____ C:\Users\rossu\Downloads\xvideos.com_60de1acaf31a58adc32f7caeb722a62d.mp4
2019-10-16 19:51 - 2019-10-16 19:52 - 006867748 _____ C:\Users\rossu\Downloads\xvideos.com_8cd3709007b345531046b1fb2bce302a.mp4
2019-10-16 19:51 - 2019-10-16 19:51 - 011534787 _____ C:\Users\rossu\Downloads\xvideos.com_220f5b111cba6c102a25361ec7934df2.mp4
2019-10-16 19:47 - 2019-10-16 19:47 - 026240846 _____ C:\Users\rossu\Downloads\xvideos.com_62f202a14359eb06a68763899da689cc.mp4
2019-10-16 19:46 - 2019-10-16 19:46 - 026324289 _____ C:\Users\rossu\Downloads\xvideos.com_214cd80b47e4b3913fbb254e8f13567d-1.mp4
2019-10-16 19:45 - 2019-10-16 19:45 - 033312946 _____ C:\Users\rossu\Downloads\xvideos.com_0585d633dee99017145117b1078d9e47.mp4
2019-10-16 19:37 - 2019-10-16 19:37 - 033084541 _____ C:\Users\rossu\Downloads\xvideos.com_13db15f2cb01331656f44226b61cf83c.mp4
2019-10-16 19:36 - 2019-10-16 19:36 - 039769414 _____ C:\Users\rossu\Downloads\xvideos.com_f71e40a58eeca5c0086ed9ee9df91d0e.mp4
2019-10-16 19:30 - 2019-10-16 19:31 - 034295276 _____ C:\Users\rossu\Downloads\xvideos.com_4f1d1bdd1e8154f4253d3deb5813b371.mp4
2019-10-16 19:25 - 2019-10-16 19:25 - 004852131 _____ C:\Users\rossu\Downloads\xvideos.com_7169716a62de4a6017ee8757ca538d75.mp4
2019-10-16 19:23 - 2019-10-16 19:23 - 017104026 _____ C:\Users\rossu\Downloads\xvideos.com_b92c66a610e056daaab0a34fda2125d4-1.mp4
2019-10-16 18:04 - 2019-10-16 18:04 - 000016155 _____ C:\Users\rossu\Downloads\[SkT]Czech_Mega_Swingers_100_Amateurs_Fucking_Together_XXX_DVDRip_x264.torrent
2019-10-16 18:00 - 2019-10-16 18:00 - 000015239 _____ C:\Users\rossu\Downloads\[CzT]Euro_Truck_Simulator_2_v_1_34_0_17s_65_DLCs_2019_CZ_.torrent
2019-10-16 17:56 - 2019-10-16 17:56 - 000533691 _____ C:\Users\rossu\Downloads\[CzT]Zeny_v_behu_2019_CZ_WebRip_1080pLQ_.torrent
2019-10-16 17:55 - 2019-10-16 17:56 - 000018677 _____ C:\Users\rossu\Downloads\[SkT]Teroristka (2019)(CZ)[WebRip][1080p] CSFD 70%.torrent
2019-10-16 17:55 - 2019-10-16 17:55 - 000019811 _____ C:\Users\rossu\Downloads\[SkT]Teroristka_(2019)(CZ)[WebRip]_=_CSFD_70%.torrent
2019-10-16 17:20 - 2019-10-16 17:20 - 007622344 _____ (Malwarebytes) C:\Users\rossu\Desktop\adwcleaner_7.4.1.exe
2019-10-15 22:31 - 2019-10-15 22:31 - 000054701 _____ C:\Users\rossu\Downloads\Sešit1-hudba-prodej-rici.xlsx
2019-10-15 21:45 - 2019-10-15 21:45 - 000014819 _____ C:\Users\rossu\Downloads\[CzT]CCleaner_Professional_Business_Edition_v_5_63_7540_2019_CZ_SK_ (1).torrent
2019-10-15 21:44 - 2019-10-15 21:44 - 000014818 _____ C:\Users\rossu\Downloads\[CzT]CCleaner_Professional_Business_Edition_v_5_63_7540_2019_CZ_SK_.torrent
2019-10-15 19:20 - 2019-10-15 19:21 - 018624905 _____ C:\Users\rossu\Downloads\maratice sklepy.mp4
2019-10-15 17:22 - 2019-10-15 19:25 - 000000000 ____D C:\Users\rossu\Desktop\tagscan-6.0.35
2019-10-15 17:20 - 2019-10-15 17:20 - 003162542 _____ C:\Users\rossu\Downloads\tagscan-6.0.35.zip
2019-10-15 16:29 - 2019-10-16 23:13 - 000017435 _____ C:\Users\rossu\Desktop\FRST.txt
2019-10-15 16:29 - 2019-10-16 23:12 - 000000000 ____D C:\FRST
2019-10-15 16:26 - 2019-10-15 16:27 - 001616384 _____ (Farbar) C:\Users\rossu\Desktop\FRST64.exe
2019-10-15 16:24 - 2019-10-15 16:24 - 000228880 _____ (Translucency (hxxps://translucency.azurewebsites.net)) C:\Users\rossu\Downloads\empty-folder-finder_1.4.0.0.exe
2019-10-15 16:20 - 2019-10-15 16:21 - 000738001 _____ (FileManagerSoft Ltd. ) C:\Users\rossu\Downloads\EmptyFolderRemoverSetup.exe
2019-10-15 16:11 - 2019-10-15 16:11 - 000000000 ____D C:\Users\rossu\AppData\Local\GHISLER
2019-10-14 19:14 - 2019-10-14 19:16 - 122392419 _____ C:\Users\rossu\Downloads\popky.rar
2019-10-13 16:24 - 2019-10-13 16:58 - 2810387908 ____R C:\Users\rossu\Downloads\The Cure - Flow Festival 2019.mkv
2019-10-09 20:55 - 2019-10-09 20:55 - 003525592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 002314648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 002138472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMVCORE.DLL
2019-10-09 20:55 - 2019-10-09 20:55 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 001273392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 001098712 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 001012792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 000952416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DolbyDecMFT.dll
2019-10-09 20:55 - 2019-10-09 20:55 - 000537600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 025900544 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 025443840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 022628352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 019811840 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 018019840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 008010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 007195648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 007015936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 006517640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 006232064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 005915648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 004538880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 004129616 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2019-10-09 20:54 - 2019-10-09 20:54 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2019-10-09 20:54 - 2019-10-09 20:54 - 002494440 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 002422592 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMVCORE.DLL
2019-10-09 20:54 - 2019-10-09 20:54 - 002236144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001847808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\xpsservices.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001664928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001563648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001562424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001394488 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\webplatstorageserver.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001283072 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001217904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001152016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\CPFilters.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000843776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webplatstorageserver.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000829536 _____ (Microsoft Corporation) C:\WINDOWS\system32\BioIso.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000774672 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000691712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comdlg32.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000690176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000679880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000669496 _____ (Microsoft Corporation) C:\WINDOWS\system32\computecore.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000598024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000531968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000462848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000452408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000422008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SgrmEnclave_secure.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000404392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000380216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000353792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrd3x40.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000300184 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msltus40.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-10-09 20:54 - 2019-10-09 20:54 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-10-09 20:54 - 2019-10-09 20:54 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000150328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFaultSecure.exe
2019-10-09 20:54 - 2019-10-09 20:54 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000033048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NtlmShared.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2019-10-09 20:54 - 2019-10-09 20:54 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2019-10-09 20:54 - 2019-10-09 20:54 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6r.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 017787392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 009928504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 007600664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 005041664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 004562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 004012544 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 003771392 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 003701760 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002861568 _____ (Microsoft Corporation) C:\WINDOWS\system32\xpsservices.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002762504 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002723328 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 002703360 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002456064 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallService.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002448712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002284032 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002114048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002095104 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002081976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 002000168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001952360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001830200 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001743672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001730560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallService.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001721144 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001687040 _____ (Microsoft Corporation) C:\WINDOWS\system32\XpsPrint.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001656392 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001439744 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 001084432 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000904208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ReAgent.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000890472 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000880088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000856576 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2019-10-09 20:53 - 2019-10-09 20:53 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000818688 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000758584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000717312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mousocoreworker.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000701952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000595456 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000516408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000515896 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000466416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000462136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000456504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000436536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000412152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallServiceTasks.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000225080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000220472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000202040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallServiceTasks.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000165832 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFaultSecure.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000158720 _____ (Microsoft Corporation) C:\WINDOWS\system32\umpo.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatecsp.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000117048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-10-09 20:53 - 2019-10-09 20:53 - 000052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000039304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NtlmShared.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000037176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2019-10-09 20:53 - 2019-10-09 20:53 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2019-10-09 20:53 - 2019-10-09 20:53 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6r.dll
2019-10-09 20:14 - 2019-09-20 06:36 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2019-10-09 20:14 - 2019-09-20 06:14 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2019-10-07 18:15 - 2019-10-07 18:20 - 000296316 _____ C:\TDSSKiller.3.1.0.28_07.10.2019_18.15.05_log.txt
2019-10-07 17:33 - 2019-10-07 17:34 - 000011916 _____ C:\TDSSKiller.3.1.0.28_07.10.2019_17.33.17_log.txt
2019-10-05 19:55 - 2019-10-05 19:56 - 000001409 _____ C:\Users\rossu\Desktop\shutdown.lnk
2019-10-05 19:51 - 2019-05-12 14:03 - 000884363 _____ C:\Users\rossu\Desktop\AntiTwin.exe
2019-10-05 19:50 - 2019-07-05 13:33 - 003617760 _____ (Easeware) C:\Users\rossu\Desktop\DriverEasy.exe
2019-10-05 19:49 - 2017-04-09 11:06 - 004476928 _____ (Pablo Software Solutions) C:\Users\rossu\Desktop\WebBuilder.exe
2019-10-05 19:49 - 2008-08-27 17:21 - 000821760 _____ C:\Users\rossu\Desktop\CUE_Splitter.exe
2019-10-05 19:48 - 2014-06-29 23:08 - 001807888 _____ (rajce.net) C:\Users\rossu\Desktop\rajce.exe
2019-10-05 19:43 - 2019-04-16 10:30 - 004081664 _____ C:\Users\rossu\Desktop\ROSSMANN CEWE fotosvet.exe
2019-10-05 16:37 - 2019-10-05 16:37 - 000003924 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2019-10-05 15:40 - 2019-10-05 15:40 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2019-10-05 15:40 - 2019-10-05 15:40 - 000346624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\secproc.dll
2019-10-05 14:12 - 2019-10-05 14:13 - 000003656 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask
2019-10-01 18:52 - 2019-10-01 18:52 - 000939008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000742912 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000722944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapi.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000387832 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpps.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fveapibase.dll
2019-10-01 18:52 - 2019-10-01 18:52 - 000053760 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeUISrv.exe
2019-10-01 18:51 - 2019-10-01 18:51 - 004481536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2019-10-01 18:51 - 2019-10-01 18:51 - 001244944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 002132280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_fs.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001788728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsp_health.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001510752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001505320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_fs.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001297936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wsp_health.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 001263616 _____ (Microsoft Corporation) C:\WINDOWS\system32\opengl32.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000904704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\opengl32.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2019-10-01 18:50 - 2019-10-01 18:50 - 000802816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000483328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SessEnv.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiagn.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000421376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2019-10-01 18:50 - 2019-10-01 18:50 - 000417280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SessEnv.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxdiag.exe
2019-10-01 18:50 - 2019-10-01 18:50 - 000245248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\glu32.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\glu32.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000158208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2019-10-01 18:50 - 2019-10-01 18:50 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000100664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbkmcl.sys
2019-10-01 18:50 - 2019-10-01 18:50 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpdbusenum.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000082432 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdvvmtransport.dll
2019-10-01 18:50 - 2019-10-01 18:50 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdvvmtransport.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 005764872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 002799616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-10-01 18:49 - 2019-10-01 18:49 - 002258856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001692160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001616784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001473488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001178816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 001080320 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000875008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000772656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000652800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000568336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000546816 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiagn.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000541696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResourceMapper.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000510464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000501232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp_win.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000500736 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2019-10-01 18:49 - 2019-10-01 18:49 - 000487576 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_enclave.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000463272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxdiag.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2019-10-01 18:49 - 2019-10-01 18:49 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mdmregistration.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000236520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgmgr32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000195584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\container.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000174080 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000143808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imm32.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000139264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prntvpt.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000137864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devobj.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000116904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000110080 _____ C:\WINDOWS\system32\ResBParser.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000093712 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000089544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000084496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-10-01 18:49 - 2019-10-01 18:49 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcbuilder.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\devrtl.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnrollCtrl.exe
2019-10-01 18:49 - 2019-10-01 18:49 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enrollmentapi.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000021544 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2019-10-01 18:49 - 2019-10-01 18:49 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2019-10-01 18:48 - 2019-10-01 18:49 - 002821120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 006084048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 005865272 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizimg.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 005105152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 003964056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 003742032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 002772032 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 002160640 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001957008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001913296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001857024 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001845408 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001664376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001412096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001334064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdrecordcpu.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001154656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001054872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 001047968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000950784 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000836608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000792296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputHost.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000784384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000673080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000629248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Storage.Search.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000599040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000539648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9on12.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000518656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000507704 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizeng.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000507152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000450360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11on12.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000383984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MMDevAPI.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlasvc.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000379840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ws2_32.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000375720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000285256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000283688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ttdwriter.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000279040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000278080 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000244736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndproxy.sys
2019-10-01 18:48 - 2019-10-01 18:48 - 000243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Gpu.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000176440 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlib.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000173568 _____ (Microsoft Corporation) C:\WINDOWS\system32\drvinst.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComposableShellProxyStub.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_ForceSync.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000125232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcbuilder.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlaapi.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000092672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wanarp.sys
2019-10-01 18:48 - 2019-10-01 18:48 - 000073024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000066832 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnppolicy.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AssignedAccessRuntime.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2019-10-01 18:48 - 2019-10-01 18:48 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndistapi.sys
2019-10-01 18:48 - 2019-10-01 18:48 - 000016696 _____ (Microsoft Corporation) C:\WINDOWS\system32\spwizres.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d8thk.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000011576 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxlibres.dll
2019-10-01 18:48 - 2019-10-01 18:48 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCertResources.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 001819136 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 001657856 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 001482040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2019-10-01 18:47 - 2019-10-01 18:47 - 001023128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000984376 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000674072 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2019-10-01 18:47 - 2019-10-01 18:47 - 000639400 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp_win.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000617784 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000612864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000551424 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-10-01 18:47 - 2019-10-01 18:47 - 000541480 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000442704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ws2_32.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000398728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2019-10-01 18:47 - 2019-10-01 18:47 - 000334936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000327168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposableShellProxyStub.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000293344 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgmgr32.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000179512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2019-10-01 18:47 - 2019-10-01 18:47 - 000176152 _____ (Microsoft Corporation) C:\WINDOWS\system32\imm32.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000159112 _____ (Microsoft Corporation) C:\WINDOWS\system32\devobj.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000140496 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000132408 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellExtFramework.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\devrtl.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2019-10-01 18:47 - 2019-10-01 18:47 - 000020944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64cpu.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmsgapi.dll
2019-10-01 18:47 - 2019-10-01 18:47 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2019-10-01 18:46 - 2019-10-01 18:47 - 006425600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 007905000 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 006164480 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 004046336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 003727360 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-10-01 18:46 - 2019-10-01 18:46 - 003553280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 003386880 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 002590208 _____ C:\WINDOWS\system32\dwmscene.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001940952 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-10-01 18:46 - 2019-10-01 18:46 - 001607680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001543168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowManagement.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001512320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 001372160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-10-01 18:46 - 2019-10-01 18:46 - 001261800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001182240 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 001009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000975872 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000858112 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000759488 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000606208 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_PCDisplay.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-10-01 18:46 - 2019-10-01 18:46 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-10-01 18:46 - 2019-10-01 18:46 - 000448000 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000392704 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000363624 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000342896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdwriter.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000288256 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000284160 _____ (Microsoft Corporation) C:\WINDOWS\system32\container.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000252416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000152408 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmredir.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000119840 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000105272 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000092624 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2019-10-01 18:46 - 2019-10-01 18:46 - 000053248 _____ C:\WINDOWS\system32\Drivers\UsbPmApi.sys
2019-10-01 18:46 - 2019-10-01 18:46 - 000047616 _____ C:\WINDOWS\system32\UsbPmApi.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2019-10-01 18:46 - 2019-10-01 18:46 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 007848192 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 006227624 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 004612520 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 003590968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 003184128 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 003105280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 002552120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateAgent.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 002466304 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 002120704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 002069504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001616608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ttdrecordcpu.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001383856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001150240 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputHost.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001091584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001036800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 001029432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000944664 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000931840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000874296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000841216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000839680 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9on12.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000833312 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Storage.Search.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000732176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000656960 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11on12.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000589384 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000449888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MMDevAPI.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000415808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000338432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\directxdatabaseupdater.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3svc.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-10-01 18:45 - 2019-10-01 18:45 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgiadaptercache.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000208384 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000132096 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3msm.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\dot3api.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnrollCtrl.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessRuntime.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000047000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2019-10-01 18:45 - 2019-10-01 18:45 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32_DeviceGuard.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\system32\CSystemEventsBrokerClient.dll
2019-10-01 18:45 - 2019-10-01 18:45 - 000003584 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCertResources.dll
2019-10-01 18:44 - 2019-10-01 18:45 - 000735232 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 002120272 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 001413704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000551952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000355000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\ManageCI.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000223032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelppm.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000208184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\processr.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000201016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdppm.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\amdk8.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-10-01 18:44 - 2019-10-01 18:44 - 000151568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmbus.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000088352 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000079376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\uaspstor.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hidspi.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000052752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmstorfl.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2019-10-01 18:44 - 2019-10-01 18:44 - 000043536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storvsc.sys
2019-10-01 18:44 - 2019-10-01 18:44 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2019-10-01 18:44 - 2019-10-01 18:44 - 000028936 _____ (Microsoft Corporation) C:\WINDOWS\system32\vmbuspipe.dll
2019-09-28 20:44 - 2019-09-28 20:44 - 000002876 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2019-09-28 16:54 - 2019-09-28 16:54 - 000097681 _____ C:\Users\rossu\Downloads\Pojisteni majetku a odpovednosti BH.PDF
2019-09-25 19:13 - 2019-09-25 19:16 - 009908792 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RsCRIcon.dll
2019-09-25 19:08 - 2019-09-25 19:08 - 001596088 _____ (Harman International Industries, Incorporated.) C:\WINDOWS\system32\HarmanAPO64.dll
2019-09-25 19:08 - 2019-09-25 19:08 - 000487360 _____ (Harman International Industries, Incorporated.) C:\WINDOWS\system32\HarmanAPOUI64.dll
2019-09-25 19:07 - 2019-09-25 19:08 - 001287488 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyAPOvlldpgm.dll
2019-09-25 19:07 - 2019-09-25 19:07 - 001610848 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyAPOv251gm.dll
2019-09-25 19:04 - 2019-09-25 19:04 - 000406344 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2APIPCLL.dll
2019-09-25 19:03 - 2019-09-25 19:04 - 001544144 _____ (Dolby Laboratories) C:\WINDOWS\system32\DAX3APOProp.dll
2019-09-25 19:03 - 2019-09-25 19:03 - 001259616 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOvlldp.dll
2019-09-25 19:02 - 2019-09-25 19:03 - 001372280 _____ (Dolby Laboratories) C:\WINDOWS\system32\DAX3APOv251.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000416400 _____ (Harman) C:\WINDOWS\system32\HMUI.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000366016 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\HMAPO.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000360240 _____ (Harman) C:\WINDOWS\system32\HMClariFi.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000203736 _____ (Harman) C:\WINDOWS\system32\HMHVS.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000190824 _____ (Harman) C:\WINDOWS\system32\HMEQ_Voice.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000190824 _____ (Harman) C:\WINDOWS\system32\HMEQ.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000179488 _____ (Harman) C:\WINDOWS\system32\HMLimiter.dll
2019-09-25 19:02 - 2019-09-25 19:02 - 000154256 _____ (Harman) C:\WINDOWS\system32\HarmanAudioInterface.dll
2019-09-25 18:58 - 2019-09-25 18:58 - 000378280 _____ (Dolby Laboratories) C:\WINDOWS\system32\HiFiDAX2API.dll
2019-09-25 18:57 - 2019-09-25 18:58 - 001159080 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOProp.dll
2019-09-25 18:56 - 2019-09-25 18:57 - 005346888 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv211.dll
2019-09-25 18:55 - 2019-09-25 18:56 - 002444576 _____ (Dolby Laboratories) C:\WINDOWS\system32\DolbyDAX2APOv201.dll
2019-09-25 18:55 - 2019-09-25 18:55 - 001078576 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SEHDHF32.dll
2019-09-25 18:54 - 2019-09-25 18:55 - 001061464 _____ (Sound Research, Corp.) C:\WINDOWS\SysWOW64\SECOMN32.dll
2019-09-25 18:54 - 2019-09-25 18:54 - 001386680 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDHF64.dll
2019-09-25 18:54 - 2019-09-25 18:54 - 001180792 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEHDRA64.dll
2019-09-25 18:53 - 2019-09-25 18:54 - 001396840 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SECOMN64.dll
2019-09-25 18:53 - 2019-09-25 18:53 - 001294192 _____ (Sound Research, Corp.) C:\WINDOWS\system32\SEAPO64.dll
2019-09-25 18:53 - 2019-09-25 18:53 - 000604688 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaemaxapo64.dll
2019-09-25 18:51 - 2019-09-25 18:53 - 006270088 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64AF3.dll
2019-09-25 18:51 - 2019-09-25 18:51 - 000367504 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64AF3.dll
2019-09-25 18:50 - 2019-09-25 18:51 - 001965048 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64AF3.dll
2019-09-25 18:50 - 2019-09-25 18:50 - 000315872 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64F3.dll
2019-09-25 18:49 - 2019-09-25 18:50 - 003267496 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\SysWOW64\RltkAPO.dll
2019-09-25 18:49 - 2019-09-25 18:49 - 000341040 _____ (Synopsys, Inc.) C:\WINDOWS\SysWOW64\SRCOM.dll
2019-09-25 18:49 - 2019-09-25 18:49 - 000341040 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM.dll
2019-09-25 18:48 - 2019-09-25 18:49 - 001435032 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRRPTR64.dll
2019-09-25 18:48 - 2019-09-25 18:48 - 000467048 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRAPO64.dll
2019-09-25 18:48 - 2019-09-25 18:48 - 000381304 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SRCOM64.dll
2019-09-25 18:47 - 2019-09-25 18:48 - 003306704 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE2.dll
2019-09-25 18:46 - 2019-09-25 18:47 - 002197872 _____ (Yamaha Corporation) C:\WINDOWS\system32\YamahaAE.dll
2019-09-25 18:44 - 2019-09-25 18:46 - 007101640 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPP64A.dll
2019-09-25 18:44 - 2019-09-25 18:44 - 000332904 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPO64A.dll
2019-09-25 18:43 - 2019-09-25 18:44 - 001971256 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPD64A.dll
2019-09-25 18:43 - 2019-09-25 18:43 - 000692056 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtDataProc64.dll
2019-09-25 18:43 - 2019-09-25 18:43 - 000278160 _____ (Dolby Laboratories) C:\WINDOWS\system32\DDPA64.dll
2019-09-25 18:43 - 2019-09-25 18:43 - 000118488 _____ C:\WINDOWS\system32\AcpiServiceVnA64.dll
2019-09-25 18:43 - 2019-09-25 18:43 - 000105200 _____ C:\WINDOWS\system32\audioLibVc.dll
2019-09-25 18:42 - 2019-09-25 18:43 - 001337536 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tossaeapo64.dll
2019-09-25 18:42 - 2019-09-25 18:42 - 000852032 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\tosasfapo64.dll
2019-09-25 18:42 - 2019-09-25 18:42 - 000447072 _____ (Toshiba Client Solutions Co., Ltd.) C:\WINDOWS\system32\toseaeapo64.dll
2019-09-25 18:42 - 2019-09-25 18:42 - 000122208 _____ (Real Sound Lab SIA) C:\WINDOWS\system32\CONEQMSAPOGUILibrary.dll
2019-09-25 18:39 - 2019-09-25 18:40 - 003168280 _____ (DTS, Inc.) C:\WINDOWS\system32\sltech64.dll
2019-09-25 18:38 - 2019-09-25 18:39 - 003445640 _____ (DTS, Inc.) C:\WINDOWS\system32\slcnt64.dll
2019-09-25 18:38 - 2019-09-25 18:38 - 000266448 _____ (TODO: <Company name>) C:\WINDOWS\system32\slprp64.dll
2019-09-25 18:37 - 2019-09-25 18:38 - 001110072 _____ (DTS, Inc.) C:\WINDOWS\system32\sl3apo64.dll
2019-09-25 18:27 - 2019-09-25 18:37 - 034637796 _____ C:\WINDOWS\system32\Drivers\RTAIODAT.DAT
2019-09-25 18:27 - 2019-09-25 18:27 - 000873352 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo264.dll
2019-09-25 18:27 - 2019-09-25 18:27 - 000158592 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tadefxapo.dll
2019-09-25 18:27 - 2019-09-25 18:27 - 000075432 _____ (TOSHIBA CORPORATION.) C:\WINDOWS\system32\tepeqapo64.dll
2019-09-25 18:26 - 2019-09-25 18:27 - 001382128 _____ (TOSHIBA Corporation) C:\WINDOWS\system32\tosade.dll
2019-09-25 18:19 - 2019-09-25 18:19 - 000139648 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEA64A.dll
2019-09-25 18:16 - 2019-09-25 18:19 - 007178360 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEP64A.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000964920 _____ (Sony Corporation) C:\WINDOWS\system32\SFSS_APO.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000734664 _____ (DTS) C:\WINDOWS\system32\DTSSymmetryDLL64.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000453168 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EED64A.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000157240 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEL64A.dll
2019-09-25 18:16 - 2019-09-25 18:16 - 000090064 _____ (Dolby Laboratories) C:\WINDOWS\system32\R4EEG64A.dll
2019-09-25 18:15 - 2019-09-25 18:16 - 000448496 _____ (DTS) C:\WINDOWS\system32\DTSGainCompensatorDLL64.dll
2019-09-25 18:15 - 2019-09-25 18:15 - 001516160 _____ (DTS) C:\WINDOWS\system32\DTSBoostDLL64.dll
2019-09-25 18:15 - 2019-09-25 18:15 - 000751192 _____ (DTS) C:\WINDOWS\system32\DTSBassEnhancementDLL64.dll
2019-09-25 18:15 - 2019-09-25 18:15 - 000452624 _____ (DTS) C:\WINDOWS\system32\DTSLimiterDLL64.dll
2019-09-25 18:14 - 2019-09-25 18:15 - 001598288 _____ (DTS) C:\WINDOWS\system32\DTSS2HeadphoneDLL64.dll
2019-09-25 18:14 - 2019-09-25 18:14 - 001787848 _____ (DTS) C:\WINDOWS\system32\DTSS2SpeakerDLL64.dll
2019-09-25 18:13 - 2019-09-25 18:14 - 000715544 _____ (DTS) C:\WINDOWS\system32\DTSVoiceClarityDLL64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000511536 _____ (DTS) C:\WINDOWS\system32\DTSNeoPCDLL64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000392768 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEP64A.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000261128 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPO64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000261088 _____ (DTS) C:\WINDOWS\system32\DTSLFXAPO64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000260104 _____ (DTS) C:\WINDOWS\system32\DTSGFXAPONS64.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000220280 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEED64A.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000116432 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEL64A.dll
2019-09-25 18:13 - 2019-09-25 18:13 - 000093800 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RTEEG64A.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000343600 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtlCPAPI64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000327168 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DHT64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000327168 _____ (Dolby Laboratories, Inc.) C:\WINDOWS\system32\RP3DAA64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000231808 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFNHK64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000192872 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCfg64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000090808 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFCOM64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000088216 _____ (Synopsys, Inc.) C:\WINDOWS\system32\SFAPO64.dll
2019-09-25 18:12 - 2019-09-25 18:12 - 000083520 _____ (Virage Logic Corporation / Sonic Focus) C:\WINDOWS\SysWOW64\SFCOM.dll
2019-09-25 18:11 - 2019-09-25 18:12 - 001353216 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTCOM64.dll
2019-09-25 18:10 - 2019-09-25 18:11 - 003353720 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkApi64.dll
2019-09-25 18:10 - 2019-09-25 18:10 - 000541008 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSX64.dll
2019-09-25 18:10 - 2019-09-25 18:10 - 000230600 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSTSH64.dll
2019-09-25 18:10 - 2019-09-25 18:10 - 000218168 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSHP64.dll
2019-09-25 18:10 - 2019-09-25 18:10 - 000174832 _____ (SRS Labs, Inc.) C:\WINDOWS\system32\SRSWOW64.dll
2019-09-25 17:49 - 2019-09-25 18:10 - 072520608 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoRes64.dat
2019-09-25 17:48 - 2019-09-25 17:49 - 002930048 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RCoInstII64.dll
2019-09-25 17:47 - 2019-09-25 17:48 - 003159672 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtPgEx64.dll
2019-09-25 17:38 - 2019-09-25 17:39 - 003676960 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RTSnMg64.cpl
2019-09-24 17:14 - 2019-09-24 17:15 - 000000000 ____D C:\Users\rossu\Downloads\Argo
2019-09-24 17:11 - 2019-09-24 18:05 - 2197701283 _____ C:\Users\rossu\Downloads\Babel 2006 CZ-ENG 1080p Marambak.mkv
2019-09-17 16:26 - 2019-09-17 20:13 - 000000000 _____ C:\Recovery.txt

==================== One month (modified) ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-10-16 23:10 - 2019-03-07 21:43 - 000000000 ____D C:\Users\rossu\AppData\Roaming\uTorrent
2019-10-16 23:08 - 2019-06-02 21:11 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-10-16 23:08 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-10-16 20:22 - 2019-03-14 17:35 - 000000000 ____D C:\Users\rossu\AppData\Roaming\MyPhoneExplorer
2019-10-16 18:53 - 2019-06-05 15:38 - 000000000 ____D C:\Users\rossu\AppData\Local\BitTorrentHelper
2019-10-16 17:29 - 2019-03-07 21:17 - 000000000 __SHD C:\Users\rossu\IntelGraphicsProfiles
2019-10-16 17:28 - 2019-03-07 20:58 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-10-16 17:25 - 2019-06-02 21:44 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-10-16 17:25 - 2019-03-07 21:05 - 000000000 ____D C:\ProgramData\NVIDIA
2019-10-16 17:23 - 2019-03-19 06:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-10-15 18:01 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-10-15 17:41 - 2019-06-02 21:32 - 001693636 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-10-15 17:41 - 2019-03-19 13:55 - 000718018 _____ C:\WINDOWS\system32\perfh005.dat
2019-10-15 17:41 - 2019-03-19 13:55 - 000145062 _____ C:\WINDOWS\system32\perfc005.dat
2019-10-15 17:41 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF
2019-10-15 16:28 - 2019-03-13 17:10 - 000000000 ____D C:\Users\rossu\Desktop\Jednorázové bezpečnostní utility pro Windows ( 3-2019 )
2019-10-13 15:49 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\Dism
2019-10-09 21:23 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-10-09 21:13 - 2019-03-08 18:49 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-10-09 21:06 - 2019-03-08 18:49 - 127230528 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-10-09 21:05 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-10-07 17:40 - 2019-05-15 17:18 - 000000000 ____D C:\KVRT_Data
2019-10-07 17:35 - 2019-03-11 16:54 - 000000000 ____D C:\Users\rossu\AppData\Local\CrashDumps
2019-10-05 19:47 - 2019-06-01 19:28 - 000000000 ____D C:\Program Files\Defraggler
2019-10-05 19:45 - 2019-03-13 16:59 - 000000877 _____ C:\Users\Public\Desktop\Revo Uninstaller Pro.lnk
2019-10-05 16:02 - 2019-09-07 19:26 - 000489072 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-10-04 16:37 - 2019-06-02 20:37 - 000000000 ____D C:\Users\rossu
2019-10-04 16:36 - 2019-03-19 06:37 - 083099648 _____ C:\WINDOWS\system32\config\software.rcbak
2019-10-04 16:36 - 2019-03-19 06:37 - 020971520 _____ C:\WINDOWS\system32\config\system.rcbak
2019-10-04 16:36 - 2019-03-19 06:37 - 000524288 _____ C:\WINDOWS\system32\config\default.rcbak
2019-10-04 16:36 - 2019-03-19 06:37 - 000065536 _____ C:\WINDOWS\system32\config\sam.rcbak
2019-10-04 16:36 - 2019-03-19 06:37 - 000057344 _____ C:\WINDOWS\system32\config\security.rcbak
2019-10-02 17:01 - 2019-03-07 21:17 - 000000000 ____D C:\Users\rossu\AppData\Local\Packages
2019-10-02 16:59 - 2019-03-07 20:42 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-10-01 19:37 - 2019-03-07 21:17 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-10-01 19:36 - 2019-03-07 21:17 - 000000000 ___RD C:\Users\rossu\3D Objects
2019-10-01 19:25 - 2019-03-19 06:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-10-01 19:25 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2019-10-01 19:25 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\migwiz
2019-10-01 19:25 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-09-30 15:34 - 2019-08-12 16:28 - 000000000 ____D C:\Users\rossu\AppData\Local\TeamViewer
2019-09-28 20:54 - 2019-06-02 18:58 - 000000000 ___DC C:\WINDOWS\Panther
2019-09-28 17:16 - 2019-09-06 15:33 - 000000000 ____D C:\Users\rossu\Desktop\Nová složka (2)
2019-09-25 19:13 - 2019-04-25 23:21 - 000451792 _____ (Realsil Semiconductor Corporation) C:\WINDOWS\system32\Drivers\RtsUer.sys
2019-09-25 19:12 - 2019-03-07 21:01 - 002035889 _____ C:\WINDOWS\system32\Drivers\rtkhdasetting.zip
2019-09-25 19:11 - 2019-04-25 23:20 - 000000000 _____ C:\WINDOWS\system32\fpfftResultsFile.txt
2019-09-25 19:10 - 2019-03-07 21:00 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2019-09-25 17:48 - 2019-08-19 18:24 - 000023584 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtkCoLDR64.dll
2019-09-25 17:47 - 2019-04-25 21:58 - 003751488 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RltkAPO64.dll
2019-09-25 17:37 - 2019-04-25 21:47 - 006970456 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\Drivers\RTKVHD64.sys
2019-09-24 18:18 - 2019-06-15 08:18 - 000000000 ____D C:\Users\rossu\AppData\Local\ElevatedDiagnostics
2019-09-19 16:45 - 2019-05-28 19:35 - 000002301 _____ C:\Users\rossu\Desktop\Google Chrome.lnk

==================== Files in the root of some directories ================

2019-08-22 17:53 - 2019-08-22 17:53 - 000000000 _____ () C:\Users\rossu\AppData\Local\{F0F00A64-F90E-4776-B475-DE76BB356B29}

==================== SigCheck ===============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ============================




a





Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-10-2019 02
Ran by rossu (16-10-2019 23:16:38)
Running from C:\Users\rossu\Desktop
Windows 10 Home Version 1903 18362.418 (X64) (2019-06-02 19:48:02)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-677340807-1562095438-3412084234-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-677340807-1562095438-3412084234-503 - Limited - Disabled)
Guest (S-1-5-21-677340807-1562095438-3412084234-501 - Limited - Disabled)
rossu (S-1-5-21-677340807-1562095438-3412084234-1001 - Administrator - Enabled) => C:\Users\rossu
WDAGUtilityAccount (S-1-5-21-677340807-1562095438-3412084234-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\uTorrent) (Version: 3.5.5.45365 - BitTorrent Inc.)
1310 (HKLM-x32\...\{76A9FB3A-D7AB-4C8C-8C49-3CFDBF2D6C2D}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden
1310_Help (HKLM-x32\...\{6D4553DF-2095-4D10-92C0-17934733B51D}) (Version: 82.0.58.000 - Hewlett-Packard) Hidden
1310Trb (HKLM-x32\...\{6D7E031C-4C05-4265-854A-FE9FDEA9984D}) (Version: 82.0.242.000 - Hewlett-Packard) Hidden
64 Bit HP CIO Components Installer (HKLM\...\{FF21C3E6-97FD-474F-9518-8DCBE94C2854}) (Version: 7.2.8 - Hewlett-Packard) Hidden
AIO_CDB_ProductContext (HKLM-x32\...\{D5045A94-1D46-44A7-9C4F-7D05B40D82EC}) (Version: 140.0.425.000 - Hewlett-Packard) Hidden
AIO_CDB_Software (HKLM-x32\...\{2DFDE21D-AFFE-4CDD-BBD4-3B7832BEC036}) (Version: 140.0.428.000 - Hewlett-Packard) Hidden
AIO_Scan (HKLM-x32\...\{104066F4-5897-4067-85D3-4C88B67CCF75}) (Version: 130.0.421.000 - Hewlett-Packard) Hidden
BufferChm (HKLM-x32\...\{FA0FF682-CC70-4C57-93CD-E276F3E7537E}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.62 - Piriform)
Copy (HKLM-x32\...\{9BE466FF-70B7-4DA8-807C-DB4C3610FDAA}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
Defraggler (HKLM\...\Defraggler) (Version: 2.22 - Piriform)
Destinations (HKLM-x32\...\{BD7204BA-DD64-499E-9B55-6A282CDF4FA4}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
DeviceDiscovery (HKLM-x32\...\{1458BB78-1DC5-4BC0-B9A3-2B644F5A8105}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
DocProc (HKLM-x32\...\{9B362566-EC1B-4700-BB9C-EC661BDE2175}) (Version: 140.0.185.000 - Hewlett-Packard) Hidden
Driver Easy 5.6.12 (HKLM\...\DriverEasy_is1) (Version: 5.6.12 - Easeware)
Fax (HKLM-x32\...\{9294F169-72EE-4D74-AE92-CA25F64B4FF8}) (Version: 140.0.307.000 - Hewlett-Packard) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 77.0.3865.90 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.11 - Google LLC) Hidden
GPBaseService2 (HKLM-x32\...\{BB3447F6-9553-4AA9-960E-0DB5310C5779}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
HP Customer Participation Program 14.0 (HKLM\...\HPExtendedCapabilities) (Version: 14.0 - HP)
HP Imaging Device Functions 14.0 (HKLM\...\HP Imaging Device Functions) (Version: 14.0 - HP)
HP Photosmart Officejet and Deskjet All-In-One Driver Software (HKLM\...\{6F5B70F0-EA6C-4A5B-BB16-8390BD66B251}) (Version: 14.0 - HP)
HP Solution Center 14.0 (HKLM\...\HP Solution Center & Imaging Support Tools) (Version: 14.0 - HP)
HP Update (HKLM-x32\...\{912D30CF-F39E-4B31-AD9A-123C6B794EE2}) (Version: 5.005.002.002 - Hewlett-Packard)
HPPhotoGadget (HKLM-x32\...\{CAE4213F-F797-439D-BD9E-79B71D115BE3}) (Version: 140.0.524.000 - Hewlett-Packard) Hidden
HPProductAssistant (HKLM-x32\...\{150B6201-E9E6-4DFB-960E-CCBD53FBDDED}) (Version: 140.0.298.000 - Hewlett-Packard) Hidden
HPSSupply (HKLM-x32\...\{AC35A885-0F8F-4857-B7DA-6E8DFB43E6B3}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.15.4248 - Intel Corporation)
LibreOffice 6.2.2.2 (HKLM\...\{7B486711-D8E3-41F4-A518-D709CD62C3D1}) (Version: 6.2.2.2 - The Document Foundation)
MarketResearch (HKLM-x32\...\{D360FA88-17C8-4F14-B67F-13AAF9607B12}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden
Microsoft Access database engine 2010 (English) (HKLM-x32\...\{90140000-00D1-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\OneDriveSetup.exe) (Version: 19.012.0121.0011 - Microsoft Corporation)
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.12 - F.J. Wechselberger)
Network64 (HKLM\...\{6BFAB6C1-6D46-46DB-A538-A269907C9F2F}) (Version: 140.0.306.000 - Hewlett-Packard) Hidden
OCR Software by I.R.I.S. 14.0 (HKLM\...\HPOCR) (Version: 14.0 - HP)
Ovládací panel NVIDIA 425.31 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 425.31 - NVIDIA Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.8781.1 - Realtek Semiconductor Corp.)
Revo Uninstaller Pro 4.1.5 (HKLM\...\{67579783-0FB7-4F7B-B881-E5BE47C9DBE0}_is1) (Version: 4.1.5 - VS Revo Group, Ltd.)
ROSSMANN CEWE fotosvet (HKLM-x32\...\ROSSMANN CEWE fotosvet) (Version: 6.4.3 - CEWE Stiftung u Co. KGaA)
Scan (HKLM-x32\...\{06A1D88C-E102-4527-AF70-29FFD7AF215A}) (Version: 140.0.253.000 - Hewlett-Packard) Hidden
Shop for HP Supplies (HKLM\...\Shop for HP Supplies) (Version: 14.0 - HP)
SolutionCenter (HKLM-x32\...\{BC5DD87B-0143-4D14-AAE6-97109614DC6B}) (Version: 140.0.299.000 - Hewlett-Packard) Hidden
Status (HKLM-x32\...\{5B025634-7D5B-4B8D-BE2A-7943C1CF2D5D}) (Version: 140.0.342.000 - Hewlett-Packard) Hidden
SyncBackFree (HKLM-x32\...\SyncBackFree_is1) (Version: 9.1.12.0 - 2BrightSparks)
Toolbox (HKLM-x32\...\{292F0F52-B62D-4E71-921B-89A682402201}) (Version: 140.0.596.000 - Hewlett-Packard) Hidden
TrayApp (HKLM-x32\...\{CD31E63D-47FD-491C-8117-CF201D0AFAB5}) (Version: 140.0.297.000 - Hewlett-Packard) Hidden
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{C3ACFCEA-240F-4DCC-A0C3-DD55FEE6C3C2}) (Version: 2.58.0.0 - Microsoft Corporation)
USB Bridge Installer (HKLM\...\USB Bridge Installer_is1) (Version: - )
Vulkan Run Time Libraries 1.0.26.0 (HKLM\...\VulkanRT1.0.26.0) (Version: 1.0.26.0 - LunarG, Inc.)
WebReg (HKLM-x32\...\{8EE94FD8-5F52-4463-A340-185D16328158}) (Version: 140.0.297.017 - Hewlett-Packard) Hidden
WinRAR 5.61 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.61.0 - win.rar GmbH)
Zoner Photo Studio 18 (HKLM\...\ZonerPhotoStudio18_CZ_is1) (Version: 18.0.1.1 - ZONER software)

Packages:
=========
Cooking Fever -> C:\Program Files\WindowsApps\NORDCURRENT.COOKINGFEVER_6.0.0.3_x86__m9bz608c1b9ra [2019-10-13] (Nordcurrent)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.0.3587.0_x64__rz1tebttyb220 [2019-10-13] (Dolby Laboratories)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-03-07] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-03-07] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-14] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.10022.0_x64__8wekyb3d8bbwe [2019-10-13] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-14] (Microsoft Corporation) [MS Ad]
Phototastic Collage -> C:\Program Files\WindowsApps\ThumbmunkeysLtd.PhototasticCollage_2.2.16.0_x64__nfy108tqq3p12 [2019-09-28] (Thumbmunkeys Ltd) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20218.0_x64__8wekyb3d8bbwe [2019-09-28] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\wpdshserviceobj.dll (Microsoft Windows -> Microsoft Corporation)
ContextMenuHandlers1: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers1-x32: [MyPhoneExplorer] -> {A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} => C:\Program Files (x86)\MyPhoneExplorer\DLL\ShellMgr.dll [2010-03-30] (F.J. Wechselberger) [File not signed]
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2019-04-25] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-04-09] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [DefragglerShellExtension] -> {4380C993-0C43-4E02-9A7A-0D40B6EA7590} => C:\Program Files\Defraggler\DefragglerShell64.dll [2018-05-02] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [RUShellExt] -> {2C5515DC-2A7E-4BFD-B813-CACC2B685EB7} => F:\program\Revo Uninstaller Pro\RUExt.dll [2019-03-29] (VS Revo Group Ltd. -> VS Revo Group)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-09-30] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ==================


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2011-08-18 01:29 - 2011-08-18 01:29 - 001039360 _____ (Hewlett-Packard Co.) [File not signed] c:\program files (x86)\hp\digital imaging\bin\hpslpsvc64.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\localhost -> localhost

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-06-16 17:59 - 2019-09-14 16:23 - 000000917 _____ C:\WINDOWS\system32\drivers\etc\hosts

0.0.0.0 account.zoner.com
0.0.0.0 www.google-analytics.com

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> %SystemRoot%\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32\WBEM;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;C:\Users\rossu\AppData\Local\Microsoft\WindowsApps;
HKU\S-1-5-21-677340807-1562095438-3412084234-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\rossu\Desktop\242.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.

HKLM\...\StartupApproved\StartupFolder: => "HP Digital Imaging Monitor.lnk"
HKLM\...\StartupApproved\Run32: => "HP Software Update"
HKU\S-1-5-21-677340807-1562095438-3412084234-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{7CD50AB5-7174-4E61-8068-59D9D48E3E16}] => (Allow) C:\Program Files (x86)\HP\hp software update\hpwucli.exe (Hewlett-Packard Company -> Hewlett-Packard)
FirewallRules: [{1EA14F12-FEF0-4322-ACDA-D18241B0B3EF}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgh.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{B90250FD-1309-40E6-B0BA-9A93203A65EB}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqusgm.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{4D187A93-545A-41E8-A2C1-87F1F7F7FAF9}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgpc01.exe (Hewlett Packard -> Hewlett-Packard)
FirewallRules: [{80676541-E8B7-49C1-84E2-BA8420913541}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqgplgtupl.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{2C83FDDD-0FEC-4980-9CBC-E38BB497144F}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqfxt08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{1FCF8DF0-F8B8-4B65-ACA1-B28A1CE901B8}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxs08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{9D24D801-3989-4777-92A8-28FE6A838C4C}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpiscnapp.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{AB2CFCAD-C35C-4FF9-8F34-B83883033B32}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqnrs08.exe (Hewlett-Packard Co.) [File not signed]
FirewallRules: [{7CDC5136-9ECE-4A94-A397-61F973E8C3BA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpoews01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{D5BCB6A4-986C-4D75-9BA8-DF3AF1416F91}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpzwiz01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{E81AE930-30E8-4E3C-98A8-A3464435B62B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpfccopy.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{BE0A1E35-FB3A-411A-B09E-4DE34EED4924}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqcopy2.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{8921E3B9-9F5B-4C57-9239-71BF20BAF4D8}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqkygrp.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{24CE10E1-2CBB-460C-ADEF-40263B51438B}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposid01.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{A8F68FCC-5EAE-4403-84E1-ECA6DDB783BA}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hposfx08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{C219FC01-1687-470A-8B9B-43ECDCC9A405}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpofxm08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{982F682E-A67B-4C3A-9B21-5D98CFEADD9D}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqste08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [{7570B5BD-D000-4932-B706-DC0E741867E1}] => (Allow) C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe (Hewlett Packard -> Hewlett-Packard Co.)
FirewallRules: [UDP Query User{6E2F9970-FF36-4A97-BFD5-887F1728A0D6}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe (Franz Josef Wechselberger -> F.J. Wechselberger)
FirewallRules: [TCP Query User{9C9FD61C-7E97-4AE9-A60B-21D5BD2E1512}C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe] => (Allow) C:\program files (x86)\myphoneexplorer\myphoneexplorer.exe (Franz Josef Wechselberger -> F.J. Wechselberger)
FirewallRules: [{B0E2E240-8573-470B-BD27-70C8A10D0C15}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{19836764-87C0-408A-B324-BAA89AF42127}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{9ACBD8C1-BF14-4CC4-B9D2-D01A7201ECDB}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{6DB19253-DDC2-43E9-BB37-06B44E402CEE}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{29496A8D-EE36-41ED-8393-FC885D2DFA22}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{C03B1736-B0EB-43DD-8D8C-2259CE1998E1}] => (Allow) C:\Users\rossu\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{4D2FBD16-8481-4811-99F6-F34897551598}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (10/16/2019 11:14:51 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1840,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/16/2019 10:27:07 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (5668,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/16/2019 08:38:41 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (900,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/16/2019 08:15:19 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7888,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/16/2019 08:03:12 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7048,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/16/2019 07:19:21 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (6724,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/16/2019 06:46:34 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7512,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (10/16/2019 06:02:35 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (5104,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).


System errors:
=============
Error: (10/16/2019 11:09:28 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk1\DR1 má chybný blok.

Error: (10/16/2019 05:26:58 PM) (Source: VBoxNetLwf) (EventID: 12) (User: )
Description: Ovladač zjistil interní chybu ovladače na \Device\VBoxNetLwf.

Error: (10/16/2019 05:25:11 PM) (Source: VBoxNetLwf) (EventID: 12) (User: )
Description: Ovladač zjistil interní chybu ovladače na \Device\VBoxNetLwf.

Error: (10/16/2019 05:25:05 PM) (Source: VBoxNetLwf) (EventID: 12) (User: )
Description: Ovladač zjistil interní chybu ovladače na \Device\VBoxNetLwf.

Error: (10/16/2019 05:23:41 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Microsoft Passport Container neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (10/16/2019 05:23:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Presentation Foundation Font Cache 3.0.0.0 byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.

Error: (10/16/2019 05:23:27 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA Display Container LS byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.

Error: (10/16/2019 05:23:27 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba AtherosSvc byla neočekávaně ukončena. Tento stav nastal již 1krát.


Windows Defender:
===================================
Date: 2019-10-15 16:28:35.254
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {7936A37E-FFDF-46F0-AB03-A0D4AAD90EFA}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Vlastní prohledávání
Uživatel: DESKTOP-HONRFIH\rossu

Date: 2019-10-01 17:00:33.933
Description:
Antivirová ochrana v programu Windows Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Ditertag.A
ID: 2147722997
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\rossu\Downloads\Windows 10 Manager 3.1.5\Windows 10 Manager 3.1.5\Keygen\Keygen.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-HONRFIH\rossu
Název procesu: C:\Windows\explorer.exe
Verze bezpečnostních informací: AV: 1.303.624.0, AS: 1.303.624.0, NIS: 1.303.624.0
Verze modulu: AM: 1.1.16400.2, NIS: 1.1.16400.2

Date: 2019-10-01 16:58:56.027
Description:
Antivirová ochrana v programu Windows Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Ditertag.A
ID: 2147722997
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\rossu\Downloads\Windows 10 Manager 3.1.5\Windows 10 Manager 3.1.5\Keygen\Keygen.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-HONRFIH\rossu
Název procesu: C:\Windows\explorer.exe
Verze bezpečnostních informací: AV: 1.303.624.0, AS: 1.303.624.0, NIS: 1.303.624.0
Verze modulu: AM: 1.1.16400.2, NIS: 1.1.16400.2

Date: 2019-10-01 16:58:46.658
Description:
Antivirová ochrana v programu Windows Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Ditertag.A
ID: 2147722997
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\rossu\Downloads\Windows 10 Manager 3.1.5\Windows 10 Manager 3.1.5\Keygen\Keygen.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.303.624.0, AS: 1.303.624.0, NIS: 1.303.624.0
Verze modulu: AM: 1.1.16400.2, NIS: 1.1.16400.2

Date: 2019-09-25 16:15:15.190
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {DF7051A3-C551-4C2B-A444-DBE6E8DF6447}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-06 19:35:34.323
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.303.963.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x80240016
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2019-10-05 17:17:57.694
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.303.944.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.16400.2
Kód chyby: 0x8024001e
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2019-10-04 16:37:18.055
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o načtení bezpečnostních informací a pokusí se o obnovení poslední známé funkční verze.
Bezpečnostní informace, které se měly načíst: Aktuální
Kód chyby: 0x80070003
Popis chyby: Systém nemůže nalézt uvedenou cestu.
Verze bezpečnostních informací: 0.0.0.0;0.0.0.0
Verze modulu: 0.0.0.0

Date: 2019-09-22 21:42:35.719
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.301.2008.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.16300.1
Kód chyby: 0x80240022
Popis chyby: V daném programu nelze zkontrolovat aktualizace definic.

Date: 2019-09-04 18:15:13.873
Description:
Antivirová ochrana v programu Windows Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.301.518.0
Předchozí verze bezpečnostních informací: 1.301.513.0
Zdroj aktualizace: Uživatel
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.16300.1
Předchozí verze modulu: 1.1.16300.1
Kód chyby: 0x80509004
Popis chyby: Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.

CodeIntegrity:
===================================

Date: 2019-06-14 18:24:34.592
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\Windows\WinSxS\wow64_microsoft-windows-securitycenter-core_31bf3856ad364e35_10.0.17134.1_none_0a15945c4fa3fe26\wscadminui.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-14 18:24:34.577
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\Windows\WinSxS\wow64_microsoft-windows-securitycenter-core_31bf3856ad364e35_10.0.17134.1_none_0a15945c4fa3fe26\wscadminui.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-14 18:24:34.570
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\Windows\WinSxS\wow64_microsoft-windows-securitycenter-core_31bf3856ad364e35_10.0.17134.1_none_0a15945c4fa3fe26\wscadminui.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2019-06-14 18:24:34.534
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows.old\Windows\WinSxS\wow64_microsoft-windows-securitycenter-core_31bf3856ad364e35_10.0.17134.1_none_0a15945c4fa3fe26\wscadminui.exe because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

BIOS: Insyde Corp. V1.03 04/20/2015
Motherboard: Acer Tashigi_BA
Processor: Intel(R) Pentium(R) CPU N3700 @ 1.60GHz
Percentage of memory in use: 73%
Total physical RAM: 4009.76 MB
Available physical RAM: 1077.94 MB
Total Virtual: 5993.76 MB
Available Virtual: 1735.46 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:193.9 GB) (Free:134.4 GB) NTFS
Drive d: (dokument) (Fixed) (Total:19.53 GB) (Free:19.14 GB) NTFS
Drive e: (miXa) (Fixed) (Total:292.97 GB) (Free:219.69 GB) NTFS
Drive f: (program) (Fixed) (Total:423.7 GB) (Free:372.15 GB) NTFS
Drive g: (usb 8) (Removable) (Total:7.46 GB) (Free:0.01 GB) NTFS
Drive i: (Verbatim HDD) (Fixed) (Total:465.76 GB) (Free:380.27 GB) NTFS

\\?\Volume{834b1fb5-6b69-4be2-bfbc-7d6e58f5c7e1}\ (Obnovení) (Fixed) (Total:0.49 GB) (Free:0.09 GB) NTFS
\\?\Volume{37f2efdb-8a87-4438-872f-dfbcb0d70c50}\ () (Fixed) (Total:0.81 GB) (Free:0.34 GB) NTFS
\\?\Volume{a53158e8-3458-4125-a82b-8058b68c7ffb}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 93A96FC2)

Partition: GPT.

========================================================
Disk: 1 (Size: 465.8 GB) (Disk ID: CCEAC4BE)
Partition 1: (Not Active) - (Size=465.8 GB) - (Type=07 NTFS)

========================================================
Disk: 2 (Size: 7.5 GB) (Disk ID: 00077117)
Partition 1: (Active) - (Size=7.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Re: Prosím o preventivní kontrolu

Napsal: 17 říj 2019 15:31
od Conder
:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    BootExecute: 
    GroupPolicy: Restriction ? <==== ATTENTION
    CHR HKLM-x32\...\Chrome\Extension: [nladljmabboanhihfkjacnnkgjhnokhj] - hxxps://clients2.google.com/service/update2/crx
    S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys [X]
    
    Hosts:
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj

Re: Prosím o preventivní kontrolu

Napsal: 17 říj 2019 16:25
od bigmuff
..ok tady.....

Fix result of Farbar Recovery Scan Tool (x64) Version: 12-10-2019 02
Ran by rossu (17-10-2019 16:54:06) Run:1
Running from C:\Users\rossu\Desktop
Loaded Profiles: rossu (Available Profiles: rossu)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
BootExecute:
GroupPolicy: Restriction ? <==== ATTENTION
CHR HKLM-x32\...\Chrome\Extension: [nladljmabboanhihfkjacnnkgjhnokhj] - hxxps://clients2.google.com/service/update2/crx
S3 cpuz148; \??\C:\WINDOWS\temp\cpuz148\cpuz148_x64.sys [X]

Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
Restore point was successfully created.

========= Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum =========



Count : 1262
Average :
Sum : 2628979992
Maximum :
Minimum :
Property : Length




========= End of Powershell: =========

HKLM\System\CurrentControlSet\Control\Session Manager\\BootExecute => value restored successfully
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\nladljmabboanhihfkjacnnkgjhnokhj => removed successfully
HKLM\System\CurrentControlSet\Services\cpuz148 => removed successfully
cpuz148 => service removed successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 7364608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 74077728 B
Java, Flash, Steam htmlcache => 1124 B
Windows/system/drivers => 360002 B
Edge => 6320107 B
Chrome => 439358239 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 74628 B
rossu => 53310708 B

RecycleBin => 131463 B
EmptyTemp: => 554.1 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 17:03:21 ====

Re: Prosím o preventivní kontrolu

Napsal: 17 říj 2019 20:49
od Conder
:arrow: Ako to vyzera s PC? Su s PC nejake problemy?

:arrow: Plocha ma cca 2 GB, co je prilis vela. Presun vsetky subory a zlozky z plochy do dokumentov a na ploche nechaj iba odkazy/zastupcov. Prilis velka velkost plochy moze sposobit spomalenie systemu.

Re: Prosím o preventivní kontrolu

Napsal: 17 říj 2019 21:47
od bigmuff
ok plochu si uklidím,jinak asi OK
děkuju

romanS

Re: Prosím o preventivní kontrolu

Napsal: 18 říj 2019 12:58
od Conder
:arrow: Tak este upraceme po pouzitych nastrojoch:

Re: Prosím o preventivní kontrolu

Napsal: 20 říj 2019 15:12
od bigmuff
ok dekuju

Re: Prosím o preventivní kontrolu

Napsal: 20 říj 2019 16:17
od Conder
Nie je zaco, rad som pomohol :)