Stránka 1 z 1

preventivka

Napsal: 09 lis 2019 23:22
od Ervd
prosím o "preventivku"

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 09-11-2019 01
Ran by Mýl_a_Páť (administrator) on DESKTOP-78RC28O (Gigabyte Technology Co., Ltd. B85M-D3H) (09-11-2019 23:22:00)
Running from C:\Users\Mýl_a_Páť\Desktop
Loaded Profiles: Mýl_a_Páť (Available Profiles: Mýl_a_Páť)
Platform: Windows 10 Home Version 1809 17763.805 (X64) Language: Čeština (Česko)
Default browser: Opera
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\appserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\dataloaderprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\filestoreprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\flowprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\logserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\studioprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\TCBServer.exe
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Windows Hardware Compatibility Publisher -> Brother Industries, Ltd.) C:\Windows\System32\BrmfRsmg.exe
(Microsoft Windows Hardware Compatibility Publisher -> Brother Industries, Ltd.) C:\Windows\System32\BrmfRsmg.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\NisSrv.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\EyeRest.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\TriggerModeMonitor.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\VideoCardMonitorII.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(MySQL AB -> ) C:\Program Files\nCode\nCode 11.1 64-bit\Automation\mysql\win\bin\mysqld.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Sun Microsystems, Inc. -> Sun Microsystems, Inc.) C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\bin\java.exe
(Sun Microsystems, Inc. -> Sun Microsystems, Inc.) C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\java.exe
(Tanuki Software, Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\bin\win\tanuki_wrapper_32bit.exe
(ZONER software, a.s. -> ZONER software) C:\Users\Mýl_a_Páť\AppData\Local\Programs\Zoner\ZPS X\binary\Program32\ZPSTray.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [298296 2018-03-25] (Apple Inc. -> Apple Inc.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3942864 2016-10-13] (Logitech -> Logitech, Inc.)
HKLM-x32\...\Run: [OV3_Monitor] => C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\FirstStart.exe [40400 2018-06-18] (OLYMPUS CORPORATION -> Olympus Corporation)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\Run: [OV3_Monitor] => C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OV3Monitor.exe [415696 2018-06-18] (OLYMPUS CORPORATION -> Olympus Corporation)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3278288 2019-10-30] (Valve -> Valve Corporation)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\Users\Mýl_a_Páť\AppData\Local\Programs\Zoner\ZPS X\binary\Program32\ZPSTRAY.EXE [749344 2019-10-22] (ZONER software, a.s. -> ZONER software)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\RunOnce: [Application Restart #3] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\MountPoints2: {ddf2d247-b165-11e9-8f0e-fcaa14227de4} - "E:\OnePlus_setup.exe" /s
GroupPolicy: Restriction ? <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {00193BE8-CC3A-41DE-8937-655C528CD05D} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {010112A6-B743-4238-AC8F-EA50749EB42C} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {08B85036-E815-4CB9-934E-44F821CB4D88} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [653864 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1949BBEE-032B-4E65-8138-3B7A4A8C3B91} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {22ABA24E-E8B6-4390-B69C-E9A14CC96DEE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {232CA7C5-19F3-45AC-8666-2BA256A1A1D4} - System32\Tasks\MSIOSDx86_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe [38560 2017-09-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {2AB3B801-36A7-47DF-A02D-67AD16EA4906} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {372A3C07-5D24-4536-884F-F1BDD5831BB0} - System32\Tasks\MSIOSDx64_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe [37536 2017-09-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {3C3C3E1E-4C0A-4C67-8B64-D2B14FFF85DD} - System32\Tasks\MSIGH_Host => C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe [3352760 2017-11-01] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {44A9C6B7-E19B-4C52-B481-F0C5AC8C0143} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4B9B9FD0-6F98-4CB6-9F9D-0FF9D8F8BACF} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3310688 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4E0080B5-C17F-42A2-86A4-F1293B4C64D8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4E159CC2-46AE-49EE-8216-4023D8838A0A} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5A59AFCD-C51D-4928-AE3C-D124A0FB6A6F} - System32\Tasks\Opera scheduled Autoupdate 1513441278 => C:\Program Files\Opera\launcher.exe [1534488 2019-11-05] (Opera Software AS -> Opera Software)
Task: {7213B410-D1B3-4600-8803-DF6A7239480E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {72795558-A9A7-4216-9169-51BB6EE96D22} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913448 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {78E3A367-187C-4682-8E91-DB1CC4098A20} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8DB870B5-CF6A-4BC8-89C3-32DC74DE5EAD} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {BDA1BB0F-BEA4-4B22-B77B-5824AEDE7866} - System32\Tasks\Zoner.Updater.S-1-5-21-370975082-3115102142-3364293580-1001 => C:\ProgramData\Zoner\Zoner.Installer.Core\Updater.exe [2576448 2019-11-06] (ZONER software, a.s. -> ZONER software, a.s.)
Task: {C4027DD8-FAF7-41E7-A573-F7EBE051AC46} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133608 2019-09-05] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {EE659DF6-155A-4A0B-8440-12F9897148A3} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F42CB072-A96B-4DB5-A58C-15DCB5293903} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.)
Task: {F8CB0B9C-EA8E-4B89-A3E8-B99ECBCF1149} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\MSISW_Host.job => C:\WINDOWS\SysWOW64\muachost.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.100.250
Tcpip\..\Interfaces\{e6795ea2-36ab-4f7c-8a7c-b76e62ec0e0a}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{ec890f28-0163-4f25-a22f-31f079ee0c8f}: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{ef968f1f-48c2-4f28-a94f-88098638aaa1}: [DhcpNameServer] 192.168.100.250

Internet Explorer:
==================
SearchScopes: HKU\S-1-5-21-370975082-3115102142-3364293580-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =

FireFox:
========
FF Plugin: @videolan.org/vlc,version=3.0.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-04-19] (VideoLAN -> VideoLAN)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-10-11] (Adobe Inc. -> Adobe Systems Inc.)

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-03-14] (Apple Inc. -> Apple Inc.)
R2 brmfrsmg; C:\WINDOWS\system32\BrmfRsmg.exe [52736 2011-07-18] (Microsoft Windows Hardware Compatibility Publisher -> Brother Industries, Ltd.)
R2 GamingApp_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe [48824 2017-10-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 GamingHotkey_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe [2021048 2017-11-01] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [365040 2017-10-20] (Intel(R) pGFX -> Intel Corporation)
R2 MSI_ActiveX_Service; C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe [83616 2017-11-21] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [860016 2019-08-27] (NVIDIA Corporation -> NVIDIA Corporation)
R2 TCB Server; C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\TCBServer.exe [25088 2015-09-01] () [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\NisSrv.exe [3201616 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MsMpEng.exe [103168 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 nCodePE 11.1; "C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\bin\win\tanuki_wrapper_32bit.exe" -s "C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\conf\wrapper.conf" "wrapper.app.parameter.1=C:\Program Files\nCode\nCode 11.1 64-bit\Automation,C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks,ports_02,C:\Program Files\nCode\Automation_data111," "set.TEMP=C:\Program Files\nCode\Automation_data111\temp" "set.TMP=C:\Program Files\nCode\Automation_data111\temp"
S3 nCodePE 11.1 Demo; "C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\bin\win\tanuki_wrapper_32bit.exe" -s "C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\conf\wrapper_demo.conf" "wrapper.app.parameter.1=C:\Program Files\nCode\nCode 11.1 64-bit\Automation,C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks,ports_02,C:\Program Files\nCode\nCode 11.1 64-bit\Automation\demo\Demo1," "set.TEMP=C:\Program Files\nCode\Automation_data111\temp" "set.TMP=C:\Program Files\nCode\Automation_data111\temp"
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BrUsbScn; C:\WINDOWS\System32\Drivers\BrUsbScn.sys [14336 2011-07-18] (Microsoft Windows Hardware Compatibility Publisher -> Brother Industries Ltd.)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (Feature Integration Technology -> FINTEK Corp.)
S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [23040 2018-02-01] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_827405c7c65146ab\nvlddmkm.sys [22377352 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [711968 2019-06-04] (Realtek Semiconductor Corp. -> Realtek )
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2017-07-28] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2017-07-21] (Valve Corp. -> )
S3 trufos; C:\WINDOWS\System32\drivers\trufos.sys [485512 2017-12-28] (Bitdefender SRL -> BitDefender S.R.L.)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2018-02-01] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [24576 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46472 2019-10-28] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [351968 2019-10-28] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2019-10-28] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-11-09 23:22 - 2019-11-09 23:22 - 000021707 _____ C:\Users\Mýl_a_Páť\Desktop\FRST.txt
2019-11-09 23:20 - 2019-11-09 23:20 - 002259968 _____ (Farbar) C:\Users\Mýl_a_Páť\Desktop\FRST64 (1).exe
2019-11-08 22:21 - 2019-11-08 22:26 - 000002494 _____ C:\Users\Mýl_a_Páť\Downloads\20191108210922_IMG_3775.JPG.data-zps
2019-11-08 21:49 - 2019-11-08 21:49 - 000823903 _____ C:\Users\Mýl_a_Páť\Downloads\image (2).jpg.jfif
2019-11-08 21:46 - 2019-11-08 21:46 - 000823903 _____ C:\Users\Mýl_a_Páť\Downloads\image (1).jfif
2019-11-08 21:39 - 2019-11-08 21:43 - 000002283 _____ C:\Users\Mýl_a_Páť\Downloads\20191108192954_IMG_3753.JPG.data-zps
2019-11-06 23:57 - 2019-11-06 23:57 - 000122484 _____ C:\Users\Mýl_a_Páť\Downloads\TJ01000161-ZZ-2019-potvrzení_podání.pdf
2019-10-18 22:27 - 2019-10-18 22:27 - 000545578 _____ C:\Users\Mýl_a_Páť\Downloads\image.jfif
2019-10-14 21:25 - 2019-10-14 21:25 - 000356402 _____ C:\Users\Mýl_a_Páť\Downloads\etika.zip
2019-10-14 21:25 - 2019-10-14 21:25 - 000000000 ____D C:\Users\Mýl_a_Páť\Downloads\etika

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-11-09 23:22 - 2017-12-28 22:23 - 000000000 ____D C:\FRST
2019-11-09 22:47 - 2018-12-22 11:20 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-11-09 22:47 - 2018-09-15 08:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-11-09 12:27 - 2017-12-16 17:17 - 000000000 ____D C:\ProgramData\NVIDIA
2019-11-09 07:58 - 2018-09-15 08:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-11-09 07:58 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-11-09 07:52 - 2017-12-16 19:00 - 000000000 __SHD C:\Users\Mýl_a_Páť\IntelGraphicsProfiles
2019-11-09 07:52 - 2017-12-16 17:21 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-11-07 01:02 - 2017-12-19 17:39 - 000000000 ____D C:\Program Files (x86)\Steam
2019-11-06 18:12 - 2018-12-22 11:26 - 000003958 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1513441278
2019-11-06 18:12 - 2017-12-16 17:21 - 000001107 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2019-11-06 18:12 - 2017-12-16 17:20 - 000000000 ____D C:\Program Files\Opera
2019-11-06 16:07 - 2019-08-22 20:10 - 000000000 ____D C:\ProgramData\Zoner
2019-11-05 07:23 - 2018-12-22 11:30 - 001693636 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-11-05 07:23 - 2018-09-15 18:32 - 000716776 _____ C:\WINDOWS\system32\perfh005.dat
2019-11-05 07:23 - 2018-09-15 18:32 - 000144856 _____ C:\WINDOWS\system32\perfc005.dat
2019-11-05 07:23 - 2018-09-15 08:31 - 000000000 ____D C:\WINDOWS\INF
2019-11-05 07:22 - 2018-12-22 11:26 - 000003474 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-11-05 07:22 - 2018-12-22 11:26 - 000003350 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-11-05 07:22 - 2018-02-10 18:28 - 000000000 ____D C:\Program Files (x86)\Google
2019-11-04 23:35 - 2018-12-22 11:26 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-11-04 23:34 - 2018-09-15 07:09 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-11-04 22:31 - 2018-04-26 21:01 - 000000000 ____D C:\Users\Mýl_a_Páť\AppData\Roaming\vlc
2019-11-03 21:05 - 2017-12-16 17:42 - 000000000 ____D C:\MSI
2019-11-02 16:29 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-11-01 06:32 - 2018-06-20 13:55 - 000000000 ____D C:\ProgramData\Packages
2019-10-28 21:11 - 2018-02-22 22:54 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-10-25 06:23 - 2018-02-19 18:50 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-10-23 20:16 - 2019-08-22 20:13 - 000001563 _____ C:\Users\Mýl_a_Páť\AppData\Roaming\Microsoft\Windows\Start Menu\Zoner Photo Studio X.lnk
2019-10-23 20:16 - 2019-08-22 20:13 - 000001561 _____ C:\Users\Mýl_a_Páť\Desktop\Zoner Photo Studio X.lnk
2019-10-23 13:09 - 2018-09-15 08:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-10-15 20:13 - 2018-12-22 11:26 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2019-10-15 20:12 - 2018-02-19 18:48 - 000000000 ____D C:\Users\Mýl_a_Páť\AppData\Local\Adobe
2019-10-14 15:38 - 2018-03-16 14:53 - 000000027 _____ C:\WINDOWS\BRMFBIDI.INI
2019-10-10 22:02 - 2017-12-23 09:10 - 000000000 ____D C:\Program Files (x86)\SpeedFan

==================== Files in the root of some directories ========

2019-03-27 21:31 - 2019-03-27 21:31 - 000000730 _____ () C:\Users\Mýl_a_Páť\AppData\Local\recently-used.xbel
2018-01-16 19:35 - 2018-02-25 20:17 - 000007598 _____ () C:\Users\Mýl_a_Páť\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Re: preventivka

Napsal: 11 lis 2019 10:23
od Rudy
Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi

Re: preventivka

Napsal: 12 lis 2019 23:18
od Ervd
# -------------------------------
# Malwarebytes AdwCleaner 7.4.2.0
# -------------------------------
# Build: 10-21-2019
# Database: 2019-10-21.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 11-12-2019
# Duration: 00:00:00
# OS: Windows 10 Home
# Cleaned: 2
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted HKCU\Software\Conduit
Deleted HKLM\Software\Wow6432Node\Conduit

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner_Debug.log - [9137 octets] - [12/11/2019 23:18:34]
AdwCleaner[S00].txt - [1472 octets] - [12/11/2019 23:19:00]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########

Re: preventivka

Napsal: 13 lis 2019 10:18
od Rudy
Dejte nové logy FRST+Addition.

Re: preventivka

Napsal: 13 lis 2019 22:44
od Ervd
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 13-11-2019
Ran by Mýl_a_Páť (administrator) on DESKTOP-78RC28O (Gigabyte Technology Co., Ltd. B85M-D3H) (13-11-2019 22:45:39)
Running from C:\Users\Mýl_a_Páť\Desktop
Loaded Profiles: Mýl_a_Páť (Available Profiles: Mýl_a_Páť)
Platform: Windows 10 Home Version 1809 17763.864 (X64) Language: Čeština (Česko)
Default browser: Opera
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\appserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cleanupprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\dataloaderprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\filestoreprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\flowprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\logserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\studioprocserver.exe
() [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\TCBServer.exe
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc. -> Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.BingNews_4.33.13094.0_x64__8wekyb3d8bbwe\Microsoft.Msn.News.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2019.19071.17920.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.19101.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(Microsoft Windows Hardware Compatibility Publisher -> Brother Industries, Ltd.) C:\Windows\System32\BrmfRsmg.exe
(Microsoft Windows Hardware Compatibility Publisher -> Brother Industries, Ltd.) C:\Windows\System32\BrmfRsmg.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1910.4-0\NisSrv.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\EyeRest.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\TriggerModeMonitor.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\VideoCardMonitorII.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe
(MySQL AB -> ) C:\Program Files\nCode\nCode 11.1 64-bit\Automation\mysql\win\bin\mysqld.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera.exe
(Opera Software AS -> Opera Software) C:\Program Files\Opera\64.0.3417.92\opera_crashreporter.exe
(Sun Microsystems, Inc. -> Sun Microsystems, Inc.) C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\bin\java.exe
(Sun Microsystems, Inc. -> Sun Microsystems, Inc.) C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\java.exe
(Tanuki Software, Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\bin\win\tanuki_wrapper_32bit.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [298296 2018-03-25] (Apple Inc. -> Apple Inc.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3942864 2016-10-13] (Logitech -> Logitech, Inc.)
HKLM-x32\...\Run: [OV3_Monitor] => C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\FirstStart.exe [40400 2018-06-18] (OLYMPUS CORPORATION -> Olympus Corporation)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\Run: [OV3_Monitor] => C:\Program Files (x86)\OLYMPUS\OLYMPUS Viewer 3\OV3Monitor.exe [415696 2018-06-18] (OLYMPUS CORPORATION -> Olympus Corporation)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3278288 2019-11-06] (Valve -> Valve Corporation)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\Users\Mýl_a_Páť\AppData\Local\Programs\Zoner\ZPS X\binary\Program32\ZPSTRAY.EXE [749344 2019-10-22] (ZONER software, a.s. -> ZONER software)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\RunOnce: [Application Restart #2] => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\MountPoints2: {ddf2d247-b165-11e9-8f0e-fcaa14227de4} - "E:\OnePlus_setup.exe" /s
GroupPolicy: Restriction ? <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {00193BE8-CC3A-41DE-8937-655C528CD05D} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {0368827F-BE2C-439D-9D7B-5A1575048E24} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1949BBEE-032B-4E65-8138-3B7A4A8C3B91} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {22ABA24E-E8B6-4390-B69C-E9A14CC96DEE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {232CA7C5-19F3-45AC-8666-2BA256A1A1D4} - System32\Tasks\MSIOSDx86_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\MsiGamingOSD_x86.exe [38560 2017-09-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {32145FC2-4401-4776-AEBB-AC9C64EA5305} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {372A3C07-5D24-4536-884F-F1BDD5831BB0} - System32\Tasks\MSIOSDx64_Host => C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\MsiGamingOSD_x64.exe [37536 2017-09-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {3C3C3E1E-4C0A-4C67-8B64-D2B14FFF85DD} - System32\Tasks\MSIGH_Host => C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey.exe [3352760 2017-11-01] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
Task: {45AB331D-899B-47DF-A877-595A567875AF} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {48D4C5EA-736C-42A3-8425-9A3FED5CABD2} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4E0080B5-C17F-42A2-86A4-F1293B4C64D8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {55CC5FC4-35BE-4143-950D-C6E9DC6FD6A1} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913720 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5A59AFCD-C51D-4928-AE3C-D124A0FB6A6F} - System32\Tasks\Opera scheduled Autoupdate 1513441278 => C:\Program Files\Opera\launcher.exe [1534488 2019-11-05] (Opera Software AS -> Opera Software)
Task: {7213B410-D1B3-4600-8803-DF6A7239480E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {78E3A367-187C-4682-8E91-DB1CC4098A20} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MpCmdRun.exe [469928 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {892F3F07-6E3B-4E16-B33E-E80EF025D42E} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [654456 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {8BE72701-FC52-4F92-BC99-AEB5E90C6C9B} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3301928 2019-10-25] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9ECEA174-2C97-4EC2-9B15-44430F481308} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [913720 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {BDA1BB0F-BEA4-4B22-B77B-5824AEDE7866} - System32\Tasks\Zoner.Updater.S-1-5-21-370975082-3115102142-3364293580-1001 => C:\ProgramData\Zoner\Zoner.Installer.Core\Updater.exe [2576448 2019-11-06] (ZONER software, a.s. -> ZONER software, a.s.)
Task: {CB2D0BA1-3444-44CA-BF8F-4CA1301AE0F3} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {DF24B147-EC1B-4F9B-A0A0-99961136D977} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1133368 2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F42CB072-A96B-4DB5-A58C-15DCB5293903} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.)
Task: {F8CB0B9C-EA8E-4B89-A3E8-B99ECBCF1149} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\MSISW_Host.job => C:\WINDOWS\SysWOW64\muachost.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.100.250
Tcpip\..\Interfaces\{e6795ea2-36ab-4f7c-8a7c-b76e62ec0e0a}: [DhcpNameServer] 192.168.42.129
Tcpip\..\Interfaces\{ec890f28-0163-4f25-a22f-31f079ee0c8f}: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{ef968f1f-48c2-4f28-a94f-88098638aaa1}: [DhcpNameServer] 192.168.100.250

Internet Explorer:
==================

FireFox:
========
FF Plugin: @videolan.org/vlc,version=3.0.2 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2018-04-19] (VideoLAN -> VideoLAN)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.342\npGoogleUpdate3.dll [2019-11-05] (Google Inc -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-10-11] (Adobe Inc. -> Adobe Systems Inc.)

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2018-03-14] (Apple Inc. -> Apple Inc.)
R2 brmfrsmg; C:\WINDOWS\system32\BrmfRsmg.exe [52736 2011-07-18] (Microsoft Windows Hardware Compatibility Publisher -> Brother Industries, Ltd.)
R2 GamingApp_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingApp_Service.exe [48824 2017-10-26] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 GamingHotkey_Service; C:\Program Files (x86)\MSI\Gaming APP\GamingHotkey_Service.exe [2021048 2017-11-01] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [365040 2017-10-20] (Intel(R) pGFX -> Intel Corporation)
R2 MSI_ActiveX_Service; C:\Program Files (x86)\MSI\MSI OC Kit\ActiveX_Service\MSI_ActiveX_Service.exe [83616 2017-11-21] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [858480 2019-09-27] (NVIDIA Corporation -> NVIDIA Corporation)
R2 TCB Server; C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\TCBServer.exe [25088 2015-09-01] () [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12054872 2019-10-10] (TeamViewer GmbH -> TeamViewer GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\NisSrv.exe [3201616 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1910.4-0\MsMpEng.exe [103168 2019-10-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 nCodePE 11.1; "C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\bin\win\tanuki_wrapper_32bit.exe" -s "C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\conf\wrapper.conf" "wrapper.app.parameter.1=C:\Program Files\nCode\nCode 11.1 64-bit\Automation,C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks,ports_02,C:\Program Files\nCode\Automation_data111," "set.TEMP=C:\Program Files\nCode\Automation_data111\temp" "set.TMP=C:\Program Files\nCode\Automation_data111\temp"
S3 nCodePE 11.1 Demo; "C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\bin\win\tanuki_wrapper_32bit.exe" -s "C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\conf\wrapper_demo.conf" "wrapper.app.parameter.1=C:\Program Files\nCode\nCode 11.1 64-bit\Automation,C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks,ports_02,C:\Program Files\nCode\nCode 11.1 64-bit\Automation\demo\Demo1," "set.TEMP=C:\Program Files\nCode\Automation_data111\temp" "set.TMP=C:\Program Files\nCode\Automation_data111\temp"
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BrUsbScn; C:\WINDOWS\System32\Drivers\BrUsbScn.sys [14336 2011-07-18] (Microsoft Windows Hardware Compatibility Publisher -> Brother Industries Ltd.)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (Feature Integration Technology -> FINTEK Corp.)
S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [23040 2018-02-01] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_93eff437a314841a\nvlddmkm.sys [22739392 2019-10-25] (NVIDIA Corporation -> NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30336 2019-07-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [69840 2019-03-19] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvvhci; C:\WINDOWS\System32\drivers\nvvhci.sys [75600 2019-04-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [711968 2019-06-04] (Realtek Semiconductor Corp. -> Realtek )
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2017-07-28] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2017-07-21] (Valve Corp. -> )
S3 trufos; C:\WINDOWS\System32\drivers\trufos.sys [485512 2017-12-28] (Bitdefender SRL -> BitDefender S.R.L.)
S3 USBAAPL64; C:\WINDOWS\System32\Drivers\usbaapl64.sys [54784 2018-02-01] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [24576 2018-09-15] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [46472 2019-10-28] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [351968 2019-10-28] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [53984 2019-10-28] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-11-13 22:45 - 2019-11-13 22:46 - 000024906 _____ C:\Users\Mýl_a_Páť\Desktop\FRST.txt
2019-11-13 22:45 - 2019-11-13 22:45 - 002260480 _____ (Farbar) C:\Users\Mýl_a_Páť\Desktop\FRST64 (1).exe
2019-11-13 13:23 - 2019-11-13 14:29 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2019-11-13 13:23 - 2019-11-13 13:23 - 000001112 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 14.lnk
2019-11-13 13:23 - 2019-11-13 13:23 - 000001100 _____ C:\Users\Public\Desktop\TeamViewer 14.lnk
2019-11-13 13:22 - 2019-11-13 13:22 - 025979792 _____ (TeamViewer GmbH) C:\Users\Mýl_a_Páť\Downloads\TeamViewer_Setup (1).exe
2019-11-13 07:22 - 2019-11-13 07:22 - 023455232 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 022137120 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 019014144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 012960256 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 012258816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 011724288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 009941504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 009667896 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 007872000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 007700696 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 007656072 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 007645392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 006934016 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 006547896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 006318328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 006065152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 005770240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 005608336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 005575168 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 005573232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 005436696 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 004873216 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 004866560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 004661760 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 004413936 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 004303872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 004049920 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003906560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003872336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003656792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003637760 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 003576832 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003550384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003496448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003387392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003363640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 003333632 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 003082752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002918200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 002871824 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 002848768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002765312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002707968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 002699976 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002698752 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002645504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002628112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 002421248 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 002393600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002348544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002192384 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002109960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002072176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 002050560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001994976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001966096 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 001933408 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001929728 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001918792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001904128 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001751432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001729024 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001726480 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001708544 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001702600 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-11-13 07:22 - 2019-11-13 07:22 - 001677808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001674480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001668784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001668752 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001666440 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001644544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001608192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001538560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 001486472 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001473296 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 001465472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001388032 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvruserservice.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001346216 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-11-13 07:22 - 2019-11-13 07:22 - 001331536 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001319936 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001294792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001291264 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001267240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2019-11-13 07:22 - 2019-11-13 07:22 - 001262592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001258512 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 001200920 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001183504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 001180248 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001098136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001054712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 001054224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ClipSp.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 001050112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 001049608 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 001024712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 001022464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000981504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000948224 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000927232 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000888560 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000877568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000869888 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000862008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000856424 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000834048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000811536 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000808272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000807424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000801792 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000782968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000775768 _____ (Microsoft Corporation) C:\WINDOWS\system32\pkeyhelper.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000774144 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000773208 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000750592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000747536 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000741688 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000729088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000703488 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000690688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000687104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000680184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000676352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sud.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000667664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000661264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000652088 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000642560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sud.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000638480 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000604344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000591160 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000590336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000588816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000574464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000553784 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000551936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000548864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000547328 _____ (Microsoft Corporation) C:\WINDOWS\system32\VAN.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000542320 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000536320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000535080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000533504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000520704 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000520208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000514600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000513544 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000509968 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000505640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000481280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000474936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2019-11-13 07:22 - 2019-11-13 07:22 - 000473832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000465416 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000462352 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000462336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmenrollengine.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000450632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000445752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000435512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fltMgr.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000428032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000427832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volsnap.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000415760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000415744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000408064 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000394240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000389408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000385848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000383288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000367104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000360960 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000350208 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000349184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000331264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000324624 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ComposableShellProxyStub.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000303104 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManager.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000284672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ubpm.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000263360 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000262152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnservice.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000249856 _____ (Gracenote, Inc.) C:\WINDOWS\SysWOW64\gnsdk_fp.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-11-13 07:22 - 2019-11-13 07:22 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000213304 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000201528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000198968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000193336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000180736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-11-13 07:22 - 2019-11-13 07:22 - 000178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\prntvpt.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\spacebridge.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000166400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spacebridge.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000164368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000160272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pacer.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000154624 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000152896 _____ (Microsoft Corporation) C:\WINDOWS\system32\userenv.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ComposableShellProxyStub.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000144384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000141736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wldp.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\prntvpt.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000138112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\userenv.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000120352 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000118480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wldp.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000112168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000109568 _____ (Microsoft Corporation) C:\WINDOWS\system32\CapabilityAccessManagerClient.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000105832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShellExtFramework.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000090632 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000087080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000086840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\npfs.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000086744 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskhostw.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000080400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-11-13 07:22 - 2019-11-13 07:22 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usp10.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000071696 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CapabilityAccessManagerClient.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000061480 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvhostsvc.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AssignedAccessRuntime.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwm.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000047616 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AssignedAccessRuntime.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\compact.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiredNetworkCSP.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\compact.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000038912 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000036368 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-11-13 07:22 - 2019-11-13 07:22 - 000023768 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000020144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2019-11-13 07:22 - 2019-11-13 07:22 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2019-11-13 07:22 - 2019-11-13 07:22 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2019-11-13 07:22 - 2019-11-13 07:22 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2019-11-13 07:22 - 2019-11-13 07:22 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2019-11-13 07:22 - 2019-11-13 07:22 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2019-11-13 07:22 - 2019-11-13 07:22 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2019-11-13 07:22 - 2019-11-13 07:22 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2019-11-13 07:22 - 2019-11-13 07:22 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2019-11-12 23:17 - 2019-11-12 23:17 - 007622344 _____ (Malwarebytes) C:\Users\Mýl_a_Páť\Downloads\AdwCleaner.exe
2019-11-12 23:13 - 2019-11-12 23:13 - 000000000 ____D C:\Users\Mýl_a_Páť\AppData\Local\mbam
2019-11-12 23:13 - 2019-11-12 23:13 - 000000000 ____D C:\Users\Mýl_a_Páť\AppData\Local\cache
2019-11-12 23:12 - 2019-11-12 23:12 - 000000000 ____D C:\Users\Mýl_a_Páť\AppData\Local\mbamtray
2019-11-12 23:11 - 2019-11-12 23:11 - 001883976 _____ (Malwarebytes) C:\Users\Mýl_a_Páť\Downloads\MBSetup.exe
2019-11-11 16:14 - 2019-11-11 16:14 - 000000000 ____D C:\Users\Mýl_a_Páť\Downloads\PLK1920_oznameni
2019-11-11 16:13 - 2019-11-11 16:14 - 021192900 _____ C:\Users\Mýl_a_Páť\Downloads\PLK1920_oznameni.zip
2019-11-11 13:22 - 2019-03-28 10:11 - 000029232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aspnet_counters.dll
2019-11-11 13:22 - 2019-03-28 10:11 - 000017968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr100_clr0400.dll
2019-11-11 13:22 - 2019-03-28 10:09 - 000032816 _____ (Microsoft Corporation) C:\WINDOWS\system32\aspnet_counters.dll
2019-11-11 13:22 - 2019-03-28 10:09 - 000017968 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr100_clr0400.dll
2019-11-11 13:22 - 2019-03-28 07:35 - 000772176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ucrtbase_clr0400.dll
2019-11-11 13:22 - 2019-03-28 07:35 - 000702400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ucrtbase_clr0400.dll
2019-11-11 13:22 - 2019-03-28 07:35 - 000622832 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcp140_clr0400.dll
2019-11-11 13:22 - 2019-03-28 07:35 - 000433448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcp140_clr0400.dll
2019-11-11 13:22 - 2019-03-28 07:35 - 000087296 _____ (Microsoft Corporation) C:\WINDOWS\system32\vcruntime140_clr0400.dll
2019-11-11 13:22 - 2019-03-28 07:35 - 000083768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vcruntime140_clr0400.dll
2019-11-11 00:10 - 2019-10-25 10:43 - 001073872 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2019-11-11 00:10 - 2019-10-25 10:43 - 001073872 _____ C:\WINDOWS\system32\vulkan-1.dll
2019-11-11 00:10 - 2019-10-25 10:43 - 000931536 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2019-11-11 00:10 - 2019-10-25 10:43 - 000931536 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2019-11-11 00:10 - 2019-10-25 10:43 - 000848592 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2019-11-11 00:10 - 2019-10-25 10:43 - 000848592 _____ C:\WINDOWS\system32\vulkaninfo.exe
2019-11-11 00:10 - 2019-10-25 10:43 - 000706256 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2019-11-11 00:10 - 2019-10-25 10:43 - 000706256 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2019-11-11 00:10 - 2019-10-25 10:43 - 000450392 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2019-11-11 00:10 - 2019-10-25 10:43 - 000352512 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2019-11-11 00:10 - 2019-10-25 10:42 - 011839864 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvptxJitCompiler.dll
2019-11-11 00:10 - 2019-10-25 10:42 - 010164944 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvptxJitCompiler.dll
2019-11-11 00:10 - 2019-10-25 10:42 - 000677072 _____ C:\WINDOWS\system32\nvofapi64.dll
2019-11-11 00:10 - 2019-10-25 10:42 - 000545112 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 017461464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 015028776 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 005380512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 004716584 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 002074504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 001733464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco6444112.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 001568688 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 001491472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco6444112.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 001483640 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 001370032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvfatbinaryLoader.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 001144064 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 001065392 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvfatbinaryLoader.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 000812800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 000686592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 000658680 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2019-11-11 00:10 - 2019-10-25 10:41 - 000558080 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2019-11-11 00:10 - 2019-10-25 10:40 - 040511064 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2019-11-11 00:10 - 2019-10-25 10:40 - 035379656 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcompiler.dll
2019-11-08 22:21 - 2019-11-08 22:26 - 000002494 _____ C:\Users\Mýl_a_Páť\Downloads\20191108210922_IMG_3775.JPG.data-zps
2019-11-08 21:49 - 2019-11-08 21:49 - 000823903 _____ C:\Users\Mýl_a_Páť\Downloads\image (2).jpg.jfif
2019-11-08 21:46 - 2019-11-08 21:46 - 000823903 _____ C:\Users\Mýl_a_Páť\Downloads\image (1).jfif
2019-11-08 21:39 - 2019-11-08 21:43 - 000002283 _____ C:\Users\Mýl_a_Páť\Downloads\20191108192954_IMG_3753.JPG.data-zps
2019-11-06 23:57 - 2019-11-06 23:57 - 000122484 _____ C:\Users\Mýl_a_Páť\Downloads\TJ01000161-ZZ-2019-potvrzení_podání.pdf
2019-10-18 22:27 - 2019-10-18 22:27 - 000545578 _____ C:\Users\Mýl_a_Páť\Downloads\image.jfif
2019-10-14 21:25 - 2019-10-14 21:25 - 000356402 _____ C:\Users\Mýl_a_Páť\Downloads\etika.zip
2019-10-14 21:25 - 2019-10-14 21:25 - 000000000 ____D C:\Users\Mýl_a_Páť\Downloads\etika

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-11-13 22:46 - 2017-12-28 22:23 - 000000000 ____D C:\FRST
2019-11-13 22:42 - 2017-12-19 17:39 - 000000000 ____D C:\Program Files (x86)\Steam
2019-11-13 22:34 - 2018-09-15 08:33 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-11-13 22:33 - 2018-12-22 11:20 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-11-13 14:36 - 2018-09-15 08:33 - 000000000 ___HD C:\Program Files\WindowsApps
2019-11-13 14:36 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-11-13 14:35 - 2018-12-22 11:30 - 001693640 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-11-13 14:35 - 2018-09-15 18:32 - 000716944 _____ C:\WINDOWS\system32\perfh005.dat
2019-11-13 14:35 - 2018-09-15 18:32 - 000145024 _____ C:\WINDOWS\system32\perfc005.dat
2019-11-13 14:35 - 2018-09-15 08:31 - 000000000 ____D C:\WINDOWS\INF
2019-11-13 14:31 - 2017-12-16 17:17 - 000000000 ____D C:\ProgramData\NVIDIA
2019-11-13 14:29 - 2018-12-22 11:26 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-11-13 14:29 - 2018-12-22 11:20 - 000459424 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-11-13 14:29 - 2018-09-15 08:33 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-11-13 14:29 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2019-11-13 14:29 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\oobe
2019-11-13 14:29 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\system32\appraiser
2019-11-13 14:29 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-11-13 14:29 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-11-13 14:29 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-11-13 14:29 - 2018-09-15 07:09 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-11-13 14:29 - 2018-09-15 07:09 - 000000000 ____D C:\WINDOWS\system32\Dism
2019-11-13 14:29 - 2017-12-16 19:00 - 000000000 __SHD C:\Users\Mýl_a_Páť\IntelGraphicsProfiles
2019-11-13 14:29 - 2017-12-16 17:21 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2019-11-13 14:29 - 2017-12-16 17:08 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-11-13 14:29 - 2017-12-16 17:08 - 000000000 ___RD C:\Users\Mýl_a_Páť\3D Objects
2019-11-13 13:23 - 2019-01-17 13:32 - 000000000 ____D C:\Users\Mýl_a_Páť\AppData\Local\TeamViewer
2019-11-13 07:25 - 2017-12-16 19:13 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-11-13 07:24 - 2018-09-15 08:23 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-11-13 07:24 - 2017-12-16 19:12 - 128443096 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-11-12 23:29 - 2017-12-16 19:13 - 000748816 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2019-11-12 23:18 - 2018-09-15 08:33 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-11-12 23:18 - 2017-12-30 21:09 - 000000000 ____D C:\AdwCleaner
2019-11-11 18:12 - 2017-12-16 17:20 - 000000000 ____D C:\Program Files\Opera
2019-11-11 17:23 - 2018-04-26 21:01 - 000000000 ____D C:\Users\Mýl_a_Páť\AppData\Roaming\vlc
2019-11-10 23:49 - 2019-06-17 21:21 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2019-06-17 21:21 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2019-06-17 21:21 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2019-06-17 21:21 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2018-12-22 11:26 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2018-12-22 11:26 - 000004106 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2018-12-22 11:26 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2018-12-22 11:26 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2018-12-22 11:26 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2018-12-22 11:26 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2019-11-10 23:49 - 2017-12-16 17:16 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2019-11-10 23:49 - 2017-12-16 17:16 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2019-11-10 23:49 - 2017-12-16 17:16 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2019-11-06 18:12 - 2018-12-22 11:26 - 000003958 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1513441278
2019-11-06 18:12 - 2017-12-16 17:21 - 000001107 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2019-11-06 16:07 - 2019-08-22 20:10 - 000000000 ____D C:\ProgramData\Zoner
2019-11-05 07:22 - 2018-12-22 11:26 - 000003474 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-11-05 07:22 - 2018-12-22 11:26 - 000003350 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-11-05 07:22 - 2018-02-10 18:28 - 000000000 ____D C:\Program Files (x86)\Google
2019-11-03 21:05 - 2017-12-16 17:42 - 000000000 ____D C:\MSI
2019-11-02 16:29 - 2018-09-15 08:33 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-11-01 06:32 - 2018-06-20 13:55 - 000000000 ____D C:\ProgramData\Packages
2019-10-28 21:11 - 2018-02-22 22:54 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-10-25 10:37 - 2018-12-20 17:11 - 004936784 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2019-10-25 10:37 - 2018-12-20 17:11 - 004205776 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2019-10-25 06:23 - 2018-02-19 18:50 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-10-24 15:01 - 2018-05-27 19:14 - 002845208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2019-10-24 15:01 - 2018-05-27 19:14 - 002209136 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2019-10-24 15:01 - 2018-05-27 19:14 - 001323112 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2019-10-24 12:05 - 2018-12-20 17:11 - 000056015 _____ C:\WINDOWS\system32\nvinfo.pb
2019-10-24 09:24 - 2017-12-16 17:17 - 005544056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2019-10-24 09:24 - 2017-12-16 17:17 - 002650480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2019-10-24 09:24 - 2017-12-16 17:17 - 001767872 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2019-10-24 09:24 - 2017-12-16 17:17 - 000668200 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2019-10-24 09:24 - 2017-12-16 17:17 - 000454968 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2019-10-24 09:24 - 2017-12-16 17:17 - 000130032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2019-10-24 09:24 - 2017-12-16 17:17 - 000084584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2019-10-23 20:16 - 2019-08-22 20:13 - 000001563 _____ C:\Users\Mýl_a_Páť\AppData\Roaming\Microsoft\Windows\Start Menu\Zoner Photo Studio X.lnk
2019-10-23 20:16 - 2019-08-22 20:13 - 000001561 _____ C:\Users\Mýl_a_Páť\Desktop\Zoner Photo Studio X.lnk
2019-10-22 11:00 - 2017-12-16 17:17 - 008764732 _____ C:\WINDOWS\system32\nvcoproc.bin
2019-10-22 03:11 - 2017-12-16 17:17 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2019-10-15 20:13 - 2018-12-22 11:26 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2019-10-15 20:12 - 2018-02-19 18:48 - 000000000 ____D C:\Users\Mýl_a_Páť\AppData\Local\Adobe
2019-10-14 15:38 - 2018-03-16 14:53 - 000000027 _____ C:\WINDOWS\BRMFBIDI.INI

==================== Files in the root of some directories ========

2019-03-27 21:31 - 2019-03-27 21:31 - 000000730 _____ () C:\Users\Mýl_a_Páť\AppData\Local\recently-used.xbel
2018-01-16 19:35 - 2018-02-25 20:17 - 000007598 _____ () C:\Users\Mýl_a_Páť\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Re: preventivka

Napsal: 13 lis 2019 22:45
od Ervd
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-11-2019
Ran by Mýl_a_Páť (13-11-2019 22:46:44)
Running from C:\Users\Mýl_a_Páť\Desktop
Windows 10 Home Version 1809 17763.864 (X64) (2018-12-22 10:26:17)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-370975082-3115102142-3364293580-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-370975082-3115102142-3364293580-503 - Limited - Disabled)
Guest (S-1-5-21-370975082-3115102142-3364293580-501 - Limited - Disabled)
Mýl_a_Páť (S-1-5-21-370975082-3115102142-3364293580-1001 - Administrator - Enabled) => C:\Users\Mýl_a_Páť
WDAGUtilityAccount (S-1-5-21-370975082-3115102142-3364293580-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.021.20049 - Adobe Systems Incorporated)
Adobe Flash Player 31 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 31.0.0.108 - Adobe Systems Incorporated)
Aktualizace NVIDIA 38.0.2.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.2.0 - NVIDIA Corporation) Hidden
Apple Mobile Device Support (HKLM\...\{A05FDFEC-4377-49E0-82CB-B6D1386E89DA}) (Version: 11.3.0.9 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.)
Balíček ovladače systému Windows - OLYMPUS IMAGING CORP. Camera Communication Driver Package (09/09/2009 1.0.0.0) (HKLM\...\2C1C2F29FADF39F533CEEE67B90F07A5306A4BDB) (Version: 09/09/2009 1.0.0.0 - OLYMPUS IMAGING CORP.)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
BS.Player FREE (HKLM-x32\...\BSPlayerf) (Version: 2.72.1082 - AB Team, d.o.o.)
Google Earth Pro (HKLM\...\{70A0F34E-564B-4F93-ADD6-3BAEC6E44075}) (Version: 7.3.2.5776 - Google)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.341 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.3 - Google Inc.) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4835 - Intel Corporation)
iTunes (HKLM\...\{565C813A-F1E1-4A1B-91D8-B2112D0D5518}) (Version: 12.7.4.76 - Apple Inc.)
LibreOffice 6.3.1.2 (HKLM\...\{46BF4998-7CC7-43AA-8D4C-D43DEFB24493}) (Version: 6.3.1.2 - The Document Foundation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
MSI Afterburner 4.4.2 (HKLM-x32\...\Afterburner) (Version: 4.4.2 - MSI Co., LTD)
MSI DragonEye (HKLM\...\{7116875E-F251-4C33-AB3F-37DE05B15595}_is1) (Version: 0.0.2.6 - MSI)
MSI Gaming APP (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 6.2.0.45 - MSI)
MSI Kombustor 0.6.2.0 (32-bit) (HKLM-x32\...\{F3D3CC6B-9AD7-4F43-8C69-40D5902FDC5C}}_is1) (Version: - MSI / Geeks3D)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
nCode 11.1 64-bit (C:\Program Files\nCode\nCode 11.1 64-bit) (HKLM\...\nCode 11.1 64-bit) (Version: 11.1.0.0 - HBM United Kingdom Limited)
Nik Collection (HKLM-x32\...\Nik Collection) (Version: 1.2.11 - Google)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.20.1.57 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.1.57 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.38.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.21 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 441.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 441.12 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
OLYMPUS Digital Camera Updater (HKLM-x32\...\{BD107100-E418-4805-B08D-30E098741A95}) (Version: 2.1.3 - Olympus Corporation)
OLYMPUS Viewer 3 (HKLM-x32\...\{CC2205DE-4C99-4FAD-A0AE-A1B5267E60B7}) (Version: 2.3.0 - Olympus Corporation)
Olympus Workspace (HKLM-x32\...\{7FBF5669-B60F-402B-9A08-7F7FF7FBC538}) (Version: 1.0.0 - Olympus Corporation)
OpenSSL 1.1.0h Light (32-bit) (HKLM-x32\...\OpenSSL Light (32-bit)_is1) (Version: - OpenSSL Win32 Installer Team)
Opera Stable 64.0.3417.92 (HKLM-x32\...\Opera 64.0.3417.92) (Version: 64.0.3417.92 - Opera Software)
Ovládací panel NVIDIA 441.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 441.12 - NVIDIA Corporation) Hidden
Podpora aplikací Apple (32bitová) (HKLM-x32\...\{543F829B-4591-4B2F-AF63-6E6E6AE59EB2}) (Version: 6.4 - Apple Inc.)
Podpora aplikací Apple (64bitová) (HKLM\...\{0ECA3BB5-4410-414B-B226-241FF1C12CD0}) (Version: 6.4 - Apple Inc.)
RivaTuner Statistics Server 7.0.2 (HKLM-x32\...\RTSS) (Version: 7.0.2 - Unwinder)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.7.1965 - TeamViewer)
Teta CEWE fotosvet (HKLM-x32\...\Teta CEWE fotosvet) (Version: 6.4.5 - CEWE Stiftung u Co. KGaA)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.12 - Ghisler Software GmbH)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{9CBA860F-7437-4A75-941C-8EF559F2D145}) (Version: 2.52.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.2 - VideoLAN)
Zoner Photo Studio X CS (HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\ZPS X) (Version: 19.1909.2.193 - ZONER software)

Packages:
=========
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-06] (Autodesk Inc.)
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_6.2.6.0_x86__kgqvnymyfvs32 [2019-10-22] (king.com)
Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.151.300.0_x86__kgqvnymyfvs32 [2019-11-01] (king.com)
Disney Magic Kingdoms -> C:\Program Files\WindowsApps\A278AB0D.DisneyMagicKingdoms_4.4.0.5_x86__h6adky7gbf63m [2019-10-16] (Gameloft.)
Instagram -> C:\Program Files\WindowsApps\Facebook.InstagramBeta_41.1788.50991.0_x86__8xx8rvfyw5nnt [2018-12-25] (Instagram)
March of Empires: War of Lords -> C:\Program Files\WindowsApps\A278AB0D.MarchofEmpires_4.4.0.10_x86__h6adky7gbf63m [2019-10-23] (Gameloft.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-02-06] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-02-06] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.33.13094.0_x64__8wekyb3d8bbwe [2019-11-13] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.11052.0_x64__8wekyb3d8bbwe [2019-11-09] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-11] (Microsoft Corporation) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20368.0_x64__8wekyb3d8bbwe [2019-11-05] (Microsoft Corporation) [MS Ad]
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0 [2019-11-09] (Spotify AB) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-10-20] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.RTV1] => C:\WINDOWS\system32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed]

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2017-12-16 17:42 - 2016-06-14 16:35 - 000187392 _____ () [File not signed] C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\D3D11FontDraw.dll
2017-12-16 17:42 - 2016-06-14 16:35 - 000163328 _____ () [File not signed] C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\D3D11FontDraw.dll
2017-12-23 08:51 - 2015-09-01 11:51 - 000236544 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\ailibr.dll
2017-12-23 08:51 - 2015-09-01 11:51 - 000069632 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\anslibr.dll
2017-12-23 08:51 - 2015-09-01 12:14 - 000146432 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\appserverlibr.dll
2017-12-23 08:51 - 2015-09-01 12:15 - 002079744 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\asamlibr.DLL
2017-12-23 08:51 - 2015-09-01 11:52 - 000139264 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\CBLibr.dll
2017-12-23 08:51 - 2015-09-01 11:55 - 000211968 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cgdlibr.dll
2017-12-23 08:51 - 2015-09-01 11:49 - 000156160 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cgflibr.dll
2017-12-23 08:51 - 2015-09-01 11:55 - 000217600 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cgolibr.dll
2017-12-23 08:51 - 2015-09-01 11:55 - 000845312 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cgrlibr.dll
2017-12-23 08:51 - 2015-09-01 11:45 - 000395776 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cpputilr.dll
2017-12-23 08:51 - 2015-09-01 11:57 - 001482752 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\dglibr.dll
2017-12-23 08:51 - 2015-09-01 11:46 - 000017408 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\dmilibr.dll
2017-12-23 08:51 - 2015-09-01 11:54 - 007017984 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\dtlibr.dll
2017-12-23 08:51 - 2015-09-01 11:52 - 002461696 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\FDLibr.dll
2017-12-23 08:51 - 2015-09-01 12:02 - 006024192 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\fedlibr.dll
2017-12-23 08:51 - 2015-09-01 11:51 - 000199168 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\feilibr.dll
2017-12-23 08:51 - 2015-09-01 11:53 - 006523392 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\feimportlibr.dll
2017-12-23 08:51 - 2015-09-01 11:48 - 000413184 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\ferlibr.dll
2017-12-23 08:51 - 2015-09-01 11:47 - 002224640 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\FSLibr.dll
2017-12-23 08:51 - 2015-09-01 12:04 - 003898368 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\FVLibr.dll
2017-12-23 08:51 - 2015-09-01 12:06 - 001424384 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine01r.DLL
2017-12-23 08:51 - 2015-09-01 12:07 - 001577472 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine02r.DLL
2017-12-23 08:51 - 2015-09-01 12:08 - 004773888 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine03r.DLL
2017-12-23 08:51 - 2015-09-01 12:09 - 000937472 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine04r.DLL
2017-12-23 08:51 - 2015-09-01 12:10 - 001269248 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine06r.DLL
2017-12-23 08:51 - 2015-09-01 12:10 - 000411136 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine07r.DLL
2017-12-23 08:51 - 2015-09-01 12:11 - 000595456 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine08r.DLL
2017-12-23 08:51 - 2015-09-01 12:11 - 000338432 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine09r.DLL
2017-12-23 08:51 - 2015-09-01 12:12 - 000752640 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine13r.DLL
2017-12-23 08:51 - 2015-09-01 12:12 - 000614912 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine14r.DLL
2017-12-23 08:51 - 2015-09-01 12:13 - 000407040 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine15r.DLL
2017-12-23 08:51 - 2015-09-01 12:13 - 000146432 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine16r.DLL
2017-12-23 08:51 - 2015-09-01 12:03 - 000607744 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\gutlibr.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000474624 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\h3dreader.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 002172416 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\hdf5.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 000299520 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\hdf5_cpp.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 000099328 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\hdf5_hl.dll
2017-12-23 08:51 - 2015-09-01 11:58 - 000593920 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\iceintlibr.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000029696 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qgif.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000029184 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qico.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000234496 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qjpeg.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000276480 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qmng.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000023040 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qsvg.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000352256 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qtiff.dll
2017-12-23 08:51 - 2015-09-01 11:46 - 000453120 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\IXDLibr.dll
2017-12-23 08:51 - 2015-09-01 11:43 - 000279552 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\libsier.dll
2017-12-23 08:51 - 2015-09-01 11:46 - 000246272 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\maplibr.dll
2017-12-23 08:51 - 2015-09-01 11:48 - 000472064 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\matdblibr.dll
2017-12-23 08:51 - 2015-09-01 11:57 - 000616960 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\materialsr.dll
2017-12-23 08:51 - 2015-09-01 11:44 - 000210432 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\mcxlibr.dll
2017-12-23 08:51 - 2015-09-01 11:45 - 000069632 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\mtlibr.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 005095424 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\nci1.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 012812800 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\nci2.dll
2017-12-23 08:51 - 2015-09-01 11:43 - 000028672 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\ncmpilibr.dll
2017-12-23 08:51 - 2015-09-01 11:45 - 000068608 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\nulibr.dll
2017-12-23 08:51 - 2015-09-01 11:46 - 000148992 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\numsiglibr.dll
2017-12-23 08:51 - 2015-09-01 11:44 - 000147456 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\NXLibr.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 001093120 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\platforms\qwindows.dll
2017-12-23 08:51 - 2015-09-01 12:14 - 000040960 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\ProgramEngine00r.DLL
2017-12-23 08:51 - 2015-09-01 11:45 - 000070144 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\pylibr.dll
2017-12-23 08:51 - 2015-09-01 11:45 - 000009728 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\pylinklibr.dll
2017-12-23 08:51 - 2015-09-01 12:03 - 000571904 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\QCLibr.dll
2017-12-23 08:51 - 2015-09-01 11:42 - 001621504 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\qicstabler.dll
2017-12-23 08:51 - 2015-09-01 11:56 - 001545216 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\qtutilr.dll
2017-12-23 08:51 - 2015-09-01 11:53 - 001019904 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\QXLibr.dll
2017-12-23 08:51 - 2015-09-01 11:44 - 002302464 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\S3Libr.dll
2017-12-23 08:51 - 2015-09-01 11:47 - 000056320 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\sielibr.dll
2017-12-23 08:51 - 2015-09-01 11:49 - 001944576 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\siglibr.dll
2017-12-23 08:51 - 2015-09-01 12:17 - 000211456 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\svlibr.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 000046080 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\szip.dll
2017-12-23 08:52 - 2015-09-01 11:04 - 000410624 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\xerces-depdom_2_8.dll
2017-12-23 08:52 - 2015-09-01 11:42 - 000163840 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\xllibr.dll
2017-12-23 08:52 - 2015-09-01 11:04 - 000078336 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\zlib.dll
2017-12-23 08:51 - 2015-09-01 10:58 - 000152576 _____ (Apache Software Foundation) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\libapr-1.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 002499584 _____ (Apache Software Foundation) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\xerces-c_2_8.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 004882944 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Core.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 005223936 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Gui.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000683008 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Multimedia.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000102400 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5MultimediaWidgets.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 001059328 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Network.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000314880 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5OpenGL.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000198144 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Positioning.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000314368 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5PrintSupport.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 003037696 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Qml.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 002717696 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Quick.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000180224 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Sensors.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000201728 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Sql.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000256512 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Svg.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 023045632 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5WebKit.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000233472 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5WebKitWidgets.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 005275648 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Widgets.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000196096 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Xml.dll
2017-12-16 17:42 - 2015-06-23 16:41 - 000082432 _____ (Fintek) [File not signed] C:\Program Files (x86)\MSI\Gaming APP\Lib\FintekUSBDll.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 001574400 _____ (HighQSoft GmbH) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\athosr.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 000414720 _____ (HighQSoft GmbH) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\odsapicppr.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 001004544 _____ (HighQSoft GmbH) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\odsapir.dll
2017-12-23 08:46 - 2016-10-04 15:51 - 000076800 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000348160 _____ (Microsoft Corporation) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\msvcr71.dll
2017-12-23 08:51 - 2015-09-01 11:48 - 002371584 _____ (nCode International Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\fatlibr.dll
2017-12-23 08:51 - 2015-09-01 11:50 - 004077056 _____ (nCode International Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\fiolibr.dll
2017-12-23 08:51 - 2015-09-01 12:00 - 006931456 _____ (nCode International Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\grlibr.dll
2017-12-23 08:51 - 2015-09-01 11:41 - 003235840 _____ (nCode International Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\utlibr.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 001790464 _____ (omniORB open source project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\omniORB414_vc11_rt.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 000056320 _____ (omniORB open source project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\omnithread34_vc11_rt.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 002770432 _____ (Python Software Foundation) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\python26.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 002699264 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\client\jvm.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000015872 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\hpi.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000126976 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\java.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000018432 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\management.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000077824 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\net.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000005120 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\rmi.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 004378624 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\server\jvm.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000031744 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\verify.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000046592 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\zip.dll
2017-12-23 08:52 - 2009-11-25 10:45 - 000205312 _____ (Tanuki Software, Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\lib\win\wrapper.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 000412160 _____ (The cURL library, hxxp://curl.haxx.se/) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\curlr.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 021529088 _____ (The ICU Project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\icudt53.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 001883136 _____ (The ICU Project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\icuin53.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 001307136 _____ (The ICU Project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\icuuc53.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 001649664 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\LIBEAY32.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 000353280 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\SSLEAY32.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2017-09-29 14:46 - 2017-09-29 14:44 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-370975082-3115102142-3364293580-1001\Control Panel\Desktop\\Wallpaper -> D:\fotky\OLYMPUS Viewer 3\2018_03_10\P3100461.JPG
DNS Servers: 192.168.100.250
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "OV3_Monitor"
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\StartupApproved\Run: => "OV3_Monitor"
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\StartupApproved\Run: => "Zoner Photo Studio Autoupdate"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{E7B21B5B-A115-45BB-BE8A-B332C21B4E66}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{61420EF2-2A9E-4CE2-AAF5-A9CEA93AFF12}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{B9DCEEE7-E5A4-4A54-9621-79DA566C46D2}] => (Allow) C:\Program Files\Zoner\Photo Studio 18\Program32\MediaServer.exe No File
FirewallRules: [{0C4E3313-765A-4397-BABC-8E1786276E3C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{CC8C6F12-FD83-4F27-83F2-3AF38935EE0E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{3E2FAD11-4B6B-4478-A17D-136FEA2677AB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{6A8B018F-A02C-408A-8799-9658A672B639}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{99921221-6EC4-499C-97B5-CEC3A4909C4D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{C308D970-F320-4ECA-A0E2-EB2748C0EE05}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [TCP Query User{3B99C712-BED0-4738-8592-A84C0282F21A}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe No File
FirewallRules: [UDP Query User{F0A6CAC8-88FA-428B-BBF2-3B249FF5EA8F}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe No File
FirewallRules: [{287521F3-D300-482E-9CD5-F94F869027FA}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{CFBF723D-B399-4EEE-97C4-C61BE762983A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{AB66D30E-370A-49AE-A206-42DDD16B7351}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B4756F9B-B40A-4694-B0C1-14D41B2C6521}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{78B85857-E3A7-4FB8-A946-E500E84BE357}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{5D6CDED4-687D-4109-B4DA-5A94D0EA006A}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{57425C52-34E3-4F7B-9377-C3D4A0F295A9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\the witcher 2\Launcher.exe (CD Projekt RED) [File not signed]
FirewallRules: [{48508039-F51B-455D-8184-4850ED841F08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\the witcher 2\Launcher.exe (CD Projekt RED) [File not signed]
FirewallRules: [TCP Query User{EC573B71-62CA-4A2A-984E-C07AF0BD337B}C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe () [File not signed]
FirewallRules: [UDP Query User{C099AA9D-E446-4708-8628-A767BE84434C}C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe () [File not signed]
FirewallRules: [{1F256989-88AF-4BE0-9EAA-7B3F56B8CFF2}] => (Allow) C:\Program Files\Opera\63.0.3368.107\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{6553FC9C-7405-4235-BDCD-FD0D217317DC}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{76E19889-E4DE-4A6B-841C-D5779376BB33}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{6BB6C1C6-EE43-472C-B3F9-46664FCE5D48}] => (Allow) LPort=26789
FirewallRules: [{AAB73BB9-6AFC-45CB-96CE-92569167429B}] => (Allow) C:\Program Files\Opera\64.0.3417.92\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{A93A8F77-129C-4A42-914C-DB29F0788504}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{B73DC982-E35A-43F0-BBDE-F563AFDB27ED}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{C301A96C-6CE8-440B-8EEA-1567386C54E4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{5CB1C09A-40ED-46D1-AF05-FBDA6D56F76D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{1B209C66-4545-4E7C-9459-03D20997865B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{6029024B-C5AF-42A4-BA66-6B709EA53230}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{06F2A581-442C-4B4F-8A65-B96BE6989BFB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{1A4BA29A-8ED5-41CA-A1C7-79A591430384}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{CD520C30-B840-490F-9150-54AF5FA3FD19}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{975680BC-FDF1-4EFF-8F12-14AB0484D64D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F008501E-B5D0-4C2A-9749-54BB19E214C5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{234C56F3-EF8C-473D-A52C-AF6F3FC2A7A0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F2254637-6C46-4415-AD2E-96390744E5E6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{72CAED30-CEE8-4668-A9F1-E14435A92739}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{7E9269DC-41F3-407C-9980-905D871F31DC}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{46DD0EB0-EE76-4814-B076-350B33E4A071}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)

==================== Restore Points =========================

30-10-2019 15:57:55 Naplánovaný kontrolní bod
09-11-2019 09:55:27 Naplánovaný kontrolní bod
13-11-2019 07:18:54 Windows Update

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (11/13/2019 09:42:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 3718

Error: (11/13/2019 09:42:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 3718

Error: (11/13/2019 09:42:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/13/2019 09:42:23 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1828

Error: (11/13/2019 09:42:23 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1828

Error: (11/13/2019 09:42:23 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/13/2019 02:29:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding 25 C.A.8.3.3.6.5.6.6.9.F.D.9.A.9.9.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR DESKTOP-78RC28O-2.local.

Error: (11/13/2019 02:29:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.100.72:5353 23 C.A.8.3.3.6.5.6.6.9.F.D.9.A.9.9.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR DESKTOP-78RC28O.local.


System errors:
=============
Error: (11/13/2019 10:42:20 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-78RC28O)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli DESKTOP-78RC28O\Mýl_a_Páť (SID: S-1-5-21-370975082-3115102142-3364293580-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 10:41:05 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-78RC28O)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli DESKTOP-78RC28O\Mýl_a_Páť (SID: S-1-5-21-370975082-3115102142-3364293580-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 02:31:37 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.SecurityAppBroker
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 02:31:37 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscBrokerManager
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 02:31:37 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscDataProtection
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 02:30:30 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-78RC28O)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli DESKTOP-78RC28O\Mýl_a_Páť (SID: S-1-5-21-370975082-3115102142-3364293580-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 01:22:39 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-78RC28O)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli DESKTOP-78RC28O\Mýl_a_Páť (SID: S-1-5-21-370975082-3115102142-3364293580-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/12/2019 11:21:45 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscBrokerManager
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.


Windows Defender:
===================================
Date: 2019-10-25 00:50:10.151
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {F12E3110-630E-4F3A-BD0D-7A8FF31FBD0E}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-24 23:48:08.363
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {A49D1864-D4A4-4340-9A9A-FCC445D2644A}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-23 20:25:25.776
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {84B63F11-3CCC-4CC7-AE8A-06EE9CC1A20A}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-06 20:06:18.905
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {615DDD4D-1168-421C-97A6-D5C42853F179}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-03 12:01:10.311
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {C27CAC7B-FD51-4141-ABE7-FFC495DFC1E8}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

CodeIntegrity:
===================================

Date: 2019-04-16 19:30:21.427
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.419
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.371
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.363
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.354
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsreg.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.344
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsreg.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:20.944
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:20.924
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.

==================== Memory info ===========================

BIOS: American Megatrends Inc. F13 06/19/2014
Motherboard: Gigabyte Technology Co., Ltd. B85M-D3H
Processor: Intel(R) Core(TM) i5-4590 CPU @ 3.30GHz
Percentage of memory in use: 25%
Total physical RAM: 16248.38 MB
Available physical RAM: 12179.73 MB
Total Virtual: 18680.38 MB
Available Virtual: 12767.6 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:223.03 GB) (Free:35.59 GB) NTFS
Drive d: (Úložiště) (Fixed) (Total:931.51 GB) (Free:479 GB) NTFS

\\?\Volume{45600087-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.54 GB) (Free:0.12 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: 45600087)
Partition 1: (Active) - (Size=549 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=223 GB) - (Type=07 NTFS)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: D4088A27)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

Re: preventivka

Napsal: 14 lis 2019 10:38
od Rudy
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
FirewallRules: [{B9DCEEE7-E5A4-4A54-9621-79DA566C46D2}] => (Allow) C:\Program Files\Zoner\Photo Studio 18\Program32\MediaServer.exe No File
FirewallRules: [{3E2FAD11-4B6B-4478-A17D-136FEA2677AB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{6A8B018F-A02C-408A-8799-9658A672B639}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [TCP Query User{3B99C712-BED0-4738-8592-A84C0282F21A}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe No File
FirewallRules: [UDP Query User{F0A6CAC8-88FA-428B-BBF2-3B249FF5EA8F}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe No File
FirewallRules: [{CFBF723D-B399-4EEE-97C4-C61BE762983A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{AB66D30E-370A-49AE-A206-42DDD16B7351}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B4756F9B-B40A-4694-B0C1-14D41B2C6521}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{78B85857-E3A7-4FB8-A946-E500E84BE357}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\MountPoints2: {ddf2d247-b165-11e9-8f0e-fcaa14227de4} - "E:\OnePlus_setup.exe" /s
GroupPolicy: Restriction ? <==== ATTENTION
ask: {F42CB072-A96B-4DB5-A58C-15DCB5293903} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.)
Task: {F8CB0B9C-EA8E-4B89-A3E8-B99ECBCF1149} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.)
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: preventivka

Napsal: 18 lis 2019 19:22
od Ervd
Fix result of Farbar Recovery Scan Tool (x64) Version: 14-11-2019
Ran by Mýl_a_Páť (18-11-2019 19:20:46) Run:1
Running from C:\Users\Mýl_a_Páť\Desktop
Loaded Profiles: Mýl_a_Páť (Available Profiles: Mýl_a_Páť)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
FirewallRules: [{B9DCEEE7-E5A4-4A54-9621-79DA566C46D2}] => (Allow) C:\Program Files\Zoner\Photo Studio 18\Program32\MediaServer.exe No File
FirewallRules: [{3E2FAD11-4B6B-4478-A17D-136FEA2677AB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{6A8B018F-A02C-408A-8799-9658A672B639}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [TCP Query User{3B99C712-BED0-4738-8592-A84C0282F21A}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe No File
FirewallRules: [UDP Query User{F0A6CAC8-88FA-428B-BBF2-3B249FF5EA8F}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe No File
FirewallRules: [{CFBF723D-B399-4EEE-97C4-C61BE762983A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{AB66D30E-370A-49AE-A206-42DDD16B7351}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B4756F9B-B40A-4694-B0C1-14D41B2C6521}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{78B85857-E3A7-4FB8-A946-E500E84BE357}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\MountPoints2: {ddf2d247-b165-11e9-8f0e-fcaa14227de4} - "E:\OnePlus_setup.exe" /s
GroupPolicy: Restriction ? <==== ATTENTION
ask: {F42CB072-A96B-4DB5-A58C-15DCB5293903} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.)
Task: {F8CB0B9C-EA8E-4B89-A3E8-B99ECBCF1149} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.)
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\igfxcui => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B9DCEEE7-E5A4-4A54-9621-79DA566C46D2}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3E2FAD11-4B6B-4478-A17D-136FEA2677AB}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6A8B018F-A02C-408A-8799-9658A672B639}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3B99C712-BED0-4738-8592-A84C0282F21A}C:\program files (x86)\videolan\vlc\vlc.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{F0A6CAC8-88FA-428B-BBF2-3B249FF5EA8F}C:\program files (x86)\videolan\vlc\vlc.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CFBF723D-B399-4EEE-97C4-C61BE762983A}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AB66D30E-370A-49AE-A206-42DDD16B7351}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B4756F9B-B40A-4694-B0C1-14D41B2C6521}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{78B85857-E3A7-4FB8-A946-E500E84BE357}" => removed successfully
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ddf2d247-b165-11e9-8f0e-fcaa14227de4} => removed successfully
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
ask: {F42CB072-A96B-4DB5-A58C-15DCB5293903} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-02-10] (Google Inc -> Google Inc.) => Error: No automatic fix found for this entry.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F8CB0B9C-EA8E-4B89-A3E8-B99ECBCF1149}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F8CB0B9C-EA8E-4B89-A3E8-B99ECBCF1149}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA" => not found
C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore => moved successfully

=========== EmptyTemp: ==========

BITS transfer queue => 10510336 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 206118799 B
Java, Flash, Steam htmlcache => 345503931 B
Windows/system/drivers => 1414251 B
Edge => 6527035 B
Chrome => 0 B
Firefox => 0 B
Opera => 351524769 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 691086 B
Mýl_a_Páť => 148776415 B

RecycleBin => 0 B
EmptyTemp: => 1021.4 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 19:22:06 ====

Re: preventivka

Napsal: 18 lis 2019 19:23
od Ervd
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 13-11-2019
Ran by Mýl_a_Páť (13-11-2019 22:46:44)
Running from C:\Users\Mýl_a_Páť\Desktop
Windows 10 Home Version 1809 17763.864 (X64) (2018-12-22 10:26:17)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-370975082-3115102142-3364293580-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-370975082-3115102142-3364293580-503 - Limited - Disabled)
Guest (S-1-5-21-370975082-3115102142-3364293580-501 - Limited - Disabled)
Mýl_a_Páť (S-1-5-21-370975082-3115102142-3364293580-1001 - Administrator - Enabled) => C:\Users\Mýl_a_Páť
WDAGUtilityAccount (S-1-5-21-370975082-3115102142-3364293580-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 16.04 (x64) (HKLM\...\7-Zip) (Version: 16.04 - Igor Pavlov)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.021.20049 - Adobe Systems Incorporated)
Adobe Flash Player 31 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 31.0.0.108 - Adobe Systems Incorporated)
Aktualizace NVIDIA 38.0.2.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.2.0 - NVIDIA Corporation) Hidden
Apple Mobile Device Support (HKLM\...\{A05FDFEC-4377-49E0-82CB-B6D1386E89DA}) (Version: 11.3.0.9 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{A30EA700-5515-48F0-88B0-9E99DC356B88}) (Version: 2.6.0.1 - Apple Inc.)
Balíček ovladače systému Windows - OLYMPUS IMAGING CORP. Camera Communication Driver Package (09/09/2009 1.0.0.0) (HKLM\...\2C1C2F29FADF39F533CEEE67B90F07A5306A4BDB) (Version: 09/09/2009 1.0.0.0 - OLYMPUS IMAGING CORP.)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
BS.Player FREE (HKLM-x32\...\BSPlayerf) (Version: 2.72.1082 - AB Team, d.o.o.)
Google Earth Pro (HKLM\...\{70A0F34E-564B-4F93-ADD6-3BAEC6E44075}) (Version: 7.3.2.5776 - Google)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.341 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.25.3 - Google Inc.) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4835 - Intel Corporation)
iTunes (HKLM\...\{565C813A-F1E1-4A1B-91D8-B2112D0D5518}) (Version: 12.7.4.76 - Apple Inc.)
LibreOffice 6.3.1.2 (HKLM\...\{46BF4998-7CC7-43AA-8D4C-D43DEFB24493}) (Version: 6.3.1.2 - The Document Foundation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
MSI Afterburner 4.4.2 (HKLM-x32\...\Afterburner) (Version: 4.4.2 - MSI Co., LTD)
MSI DragonEye (HKLM\...\{7116875E-F251-4C33-AB3F-37DE05B15595}_is1) (Version: 0.0.2.6 - MSI)
MSI Gaming APP (HKLM-x32\...\{E0229316-E73B-484B-B9E0-45098AB38D8C}}_is1) (Version: 6.2.0.45 - MSI)
MSI Kombustor 0.6.2.0 (32-bit) (HKLM-x32\...\{F3D3CC6B-9AD7-4F43-8C69-40D5902FDC5C}}_is1) (Version: - MSI / Geeks3D)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
nCode 11.1 64-bit (C:\Program Files\nCode\nCode 11.1 64-bit) (HKLM\...\nCode 11.1 64-bit) (Version: 11.1.0.0 - HBM United Kingdom Limited)
Nik Collection (HKLM-x32\...\Nik Collection) (Version: 1.2.11 - Google)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.19 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.20.1.57 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.1.57 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.38.21 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.21 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 441.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 441.12 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
OLYMPUS Digital Camera Updater (HKLM-x32\...\{BD107100-E418-4805-B08D-30E098741A95}) (Version: 2.1.3 - Olympus Corporation)
OLYMPUS Viewer 3 (HKLM-x32\...\{CC2205DE-4C99-4FAD-A0AE-A1B5267E60B7}) (Version: 2.3.0 - Olympus Corporation)
Olympus Workspace (HKLM-x32\...\{7FBF5669-B60F-402B-9A08-7F7FF7FBC538}) (Version: 1.0.0 - Olympus Corporation)
OpenSSL 1.1.0h Light (32-bit) (HKLM-x32\...\OpenSSL Light (32-bit)_is1) (Version: - OpenSSL Win32 Installer Team)
Opera Stable 64.0.3417.92 (HKLM-x32\...\Opera 64.0.3417.92) (Version: 64.0.3417.92 - Opera Software)
Ovládací panel NVIDIA 441.12 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 441.12 - NVIDIA Corporation) Hidden
Podpora aplikací Apple (32bitová) (HKLM-x32\...\{543F829B-4591-4B2F-AF63-6E6E6AE59EB2}) (Version: 6.4 - Apple Inc.)
Podpora aplikací Apple (64bitová) (HKLM\...\{0ECA3BB5-4410-414B-B226-241FF1C12CD0}) (Version: 6.4 - Apple Inc.)
RivaTuner Statistics Server 7.0.2 (HKLM-x32\...\RTSS) (Version: 7.0.2 - Unwinder)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.7.1965 - TeamViewer)
Teta CEWE fotosvet (HKLM-x32\...\Teta CEWE fotosvet) (Version: 6.4.5 - CEWE Stiftung u Co. KGaA)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.12 - Ghisler Software GmbH)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{9CBA860F-7437-4A75-941C-8EF559F2D145}) (Version: 2.52.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.2 - VideoLAN)
Zoner Photo Studio X CS (HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\ZPS X) (Version: 19.1909.2.193 - ZONER software)

Packages:
=========
Autodesk SketchBook -> C:\Program Files\WindowsApps\89006A2E.AutodeskSketchBook_5.1.0.0_x64__tf1gferkr813w [2019-11-06] (Autodesk Inc.)
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_6.2.6.0_x86__kgqvnymyfvs32 [2019-10-22] (king.com)
Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.151.300.0_x86__kgqvnymyfvs32 [2019-11-01] (king.com)
Disney Magic Kingdoms -> C:\Program Files\WindowsApps\A278AB0D.DisneyMagicKingdoms_4.4.0.5_x86__h6adky7gbf63m [2019-10-16] (Gameloft.)
Instagram -> C:\Program Files\WindowsApps\Facebook.InstagramBeta_41.1788.50991.0_x86__8xx8rvfyw5nnt [2018-12-25] (Instagram)
March of Empires: War of Lords -> C:\Program Files\WindowsApps\A278AB0D.MarchofEmpires_4.4.0.10_x86__h6adky7gbf63m [2019-10-23] (Gameloft.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-02-06] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-02-06] (Microsoft Corporation) [MS Ad]
Microsoft News -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.33.13094.0_x64__8wekyb3d8bbwe [2019-11-13] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.4.11052.0_x64__8wekyb3d8bbwe [2019-11-09] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.32.12463.0_x64__8wekyb3d8bbwe [2019-09-11] (Microsoft Corporation) [MS Ad]
Pošta a Kalendář -> C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.12026.20368.0_x64__8wekyb3d8bbwe [2019-11-05] (Microsoft Corporation) [MS Ad]
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0 [2019-11-09] (Spotify AB) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-10-20] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-10-24] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2016-10-04] (Igor Pavlov) [File not signed]

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.RTV1] => C:\WINDOWS\system32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed]

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2017-12-16 17:42 - 2016-06-14 16:35 - 000187392 _____ () [File not signed] C:\Program Files (x86)\MSI\Gaming APP\OSD\x64\D3D11FontDraw.dll
2017-12-16 17:42 - 2016-06-14 16:35 - 000163328 _____ () [File not signed] C:\Program Files (x86)\MSI\Gaming APP\OSD\x86\D3D11FontDraw.dll
2017-12-23 08:51 - 2015-09-01 11:51 - 000236544 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\ailibr.dll
2017-12-23 08:51 - 2015-09-01 11:51 - 000069632 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\anslibr.dll
2017-12-23 08:51 - 2015-09-01 12:14 - 000146432 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\appserverlibr.dll
2017-12-23 08:51 - 2015-09-01 12:15 - 002079744 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\asamlibr.DLL
2017-12-23 08:51 - 2015-09-01 11:52 - 000139264 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\CBLibr.dll
2017-12-23 08:51 - 2015-09-01 11:55 - 000211968 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cgdlibr.dll
2017-12-23 08:51 - 2015-09-01 11:49 - 000156160 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cgflibr.dll
2017-12-23 08:51 - 2015-09-01 11:55 - 000217600 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cgolibr.dll
2017-12-23 08:51 - 2015-09-01 11:55 - 000845312 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cgrlibr.dll
2017-12-23 08:51 - 2015-09-01 11:45 - 000395776 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\cpputilr.dll
2017-12-23 08:51 - 2015-09-01 11:57 - 001482752 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\dglibr.dll
2017-12-23 08:51 - 2015-09-01 11:46 - 000017408 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\dmilibr.dll
2017-12-23 08:51 - 2015-09-01 11:54 - 007017984 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\dtlibr.dll
2017-12-23 08:51 - 2015-09-01 11:52 - 002461696 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\FDLibr.dll
2017-12-23 08:51 - 2015-09-01 12:02 - 006024192 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\fedlibr.dll
2017-12-23 08:51 - 2015-09-01 11:51 - 000199168 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\feilibr.dll
2017-12-23 08:51 - 2015-09-01 11:53 - 006523392 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\feimportlibr.dll
2017-12-23 08:51 - 2015-09-01 11:48 - 000413184 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\ferlibr.dll
2017-12-23 08:51 - 2015-09-01 11:47 - 002224640 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\FSLibr.dll
2017-12-23 08:51 - 2015-09-01 12:04 - 003898368 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\FVLibr.dll
2017-12-23 08:51 - 2015-09-01 12:06 - 001424384 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine01r.DLL
2017-12-23 08:51 - 2015-09-01 12:07 - 001577472 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine02r.DLL
2017-12-23 08:51 - 2015-09-01 12:08 - 004773888 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine03r.DLL
2017-12-23 08:51 - 2015-09-01 12:09 - 000937472 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine04r.DLL
2017-12-23 08:51 - 2015-09-01 12:10 - 001269248 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine06r.DLL
2017-12-23 08:51 - 2015-09-01 12:10 - 000411136 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine07r.DLL
2017-12-23 08:51 - 2015-09-01 12:11 - 000595456 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine08r.DLL
2017-12-23 08:51 - 2015-09-01 12:11 - 000338432 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine09r.DLL
2017-12-23 08:51 - 2015-09-01 12:12 - 000752640 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine13r.DLL
2017-12-23 08:51 - 2015-09-01 12:12 - 000614912 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine14r.DLL
2017-12-23 08:51 - 2015-09-01 12:13 - 000407040 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine15r.DLL
2017-12-23 08:51 - 2015-09-01 12:13 - 000146432 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\GlyphEngine16r.DLL
2017-12-23 08:51 - 2015-09-01 12:03 - 000607744 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\gutlibr.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000474624 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\h3dreader.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 002172416 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\hdf5.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 000299520 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\hdf5_cpp.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 000099328 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\hdf5_hl.dll
2017-12-23 08:51 - 2015-09-01 11:58 - 000593920 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\iceintlibr.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000029696 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qgif.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000029184 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qico.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000234496 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qjpeg.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000276480 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qmng.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000023040 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qsvg.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000352256 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\imageformats\qtiff.dll
2017-12-23 08:51 - 2015-09-01 11:46 - 000453120 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\IXDLibr.dll
2017-12-23 08:51 - 2015-09-01 11:43 - 000279552 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\libsier.dll
2017-12-23 08:51 - 2015-09-01 11:46 - 000246272 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\maplibr.dll
2017-12-23 08:51 - 2015-09-01 11:48 - 000472064 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\matdblibr.dll
2017-12-23 08:51 - 2015-09-01 11:57 - 000616960 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\materialsr.dll
2017-12-23 08:51 - 2015-09-01 11:44 - 000210432 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\mcxlibr.dll
2017-12-23 08:51 - 2015-09-01 11:45 - 000069632 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\mtlibr.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 005095424 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\nci1.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 012812800 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\nci2.dll
2017-12-23 08:51 - 2015-09-01 11:43 - 000028672 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\ncmpilibr.dll
2017-12-23 08:51 - 2015-09-01 11:45 - 000068608 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\nulibr.dll
2017-12-23 08:51 - 2015-09-01 11:46 - 000148992 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\numsiglibr.dll
2017-12-23 08:51 - 2015-09-01 11:44 - 000147456 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\NXLibr.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 001093120 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\platforms\qwindows.dll
2017-12-23 08:51 - 2015-09-01 12:14 - 000040960 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\ProgramEngine00r.DLL
2017-12-23 08:51 - 2015-09-01 11:45 - 000070144 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\pylibr.dll
2017-12-23 08:51 - 2015-09-01 11:45 - 000009728 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\pylinklibr.dll
2017-12-23 08:51 - 2015-09-01 12:03 - 000571904 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\QCLibr.dll
2017-12-23 08:51 - 2015-09-01 11:42 - 001621504 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\qicstabler.dll
2017-12-23 08:51 - 2015-09-01 11:56 - 001545216 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\qtutilr.dll
2017-12-23 08:51 - 2015-09-01 11:53 - 001019904 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\QXLibr.dll
2017-12-23 08:51 - 2015-09-01 11:44 - 002302464 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\S3Libr.dll
2017-12-23 08:51 - 2015-09-01 11:47 - 000056320 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\sielibr.dll
2017-12-23 08:51 - 2015-09-01 11:49 - 001944576 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\siglibr.dll
2017-12-23 08:51 - 2015-09-01 12:17 - 000211456 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\svlibr.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 000046080 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\szip.dll
2017-12-23 08:52 - 2015-09-01 11:04 - 000410624 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\xerces-depdom_2_8.dll
2017-12-23 08:52 - 2015-09-01 11:42 - 000163840 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\xllibr.dll
2017-12-23 08:52 - 2015-09-01 11:04 - 000078336 _____ () [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\zlib.dll
2017-12-23 08:51 - 2015-09-01 10:58 - 000152576 _____ (Apache Software Foundation) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\libapr-1.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 002499584 _____ (Apache Software Foundation) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\xerces-c_2_8.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 004882944 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Core.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 005223936 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Gui.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000683008 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Multimedia.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000102400 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5MultimediaWidgets.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 001059328 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Network.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000314880 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5OpenGL.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000198144 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Positioning.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000314368 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5PrintSupport.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 003037696 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Qml.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 002717696 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Quick.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000180224 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Sensors.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000201728 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Sql.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000256512 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Svg.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 023045632 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5WebKit.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 000233472 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5WebKitWidgets.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 005275648 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Widgets.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 000196096 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\Qt5Xml.dll
2017-12-16 17:42 - 2015-06-23 16:41 - 000082432 _____ (Fintek) [File not signed] C:\Program Files (x86)\MSI\Gaming APP\Lib\FintekUSBDll.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 001574400 _____ (HighQSoft GmbH) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\athosr.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 000414720 _____ (HighQSoft GmbH) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\odsapicppr.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 001004544 _____ (HighQSoft GmbH) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\odsapir.dll
2017-12-23 08:46 - 2016-10-04 15:51 - 000076800 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000348160 _____ (Microsoft Corporation) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\msvcr71.dll
2017-12-23 08:51 - 2015-09-01 11:48 - 002371584 _____ (nCode International Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\fatlibr.dll
2017-12-23 08:51 - 2015-09-01 11:50 - 004077056 _____ (nCode International Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\fiolibr.dll
2017-12-23 08:51 - 2015-09-01 12:00 - 006931456 _____ (nCode International Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\grlibr.dll
2017-12-23 08:51 - 2015-09-01 11:41 - 003235840 _____ (nCode International Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\utlibr.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 001790464 _____ (omniORB open source project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\omniORB414_vc11_rt.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 000056320 _____ (omniORB open source project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\omnithread34_vc11_rt.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 002770432 _____ (Python Software Foundation) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\python26.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 002699264 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\client\jvm.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000015872 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\hpi.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000126976 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\java.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000018432 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\management.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000077824 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\net.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000005120 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\rmi.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 004378624 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\server\jvm.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000031744 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\verify.dll
2017-12-23 08:52 - 2010-11-02 13:50 - 000046592 _____ (Sun Microsystems, Inc.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\java\win\jre\bin\zip.dll
2017-12-23 08:52 - 2009-11-25 10:45 - 000205312 _____ (Tanuki Software, Ltd.) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\Automation\hbm\general\lib\win\wrapper.dll
2017-12-23 08:51 - 2015-09-01 11:05 - 000412160 _____ (The cURL library, hxxp://curl.haxx.se/) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\curlr.dll
2017-12-23 08:51 - 2015-09-01 11:03 - 021529088 _____ (The ICU Project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\icudt53.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 001883136 _____ (The ICU Project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\icuin53.dll
2017-12-23 08:51 - 2015-09-01 11:02 - 001307136 _____ (The ICU Project) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\icuuc53.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 001649664 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\LIBEAY32.dll
2017-12-23 08:51 - 2015-09-01 11:04 - 000353280 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\nCode\nCode 11.1 64-bit\GlyphWorks\bin\SSLEAY32.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2017-09-29 14:46 - 2017-09-29 14:44 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-370975082-3115102142-3364293580-1001\Control Panel\Desktop\\Wallpaper -> D:\fotky\OLYMPUS Viewer 3\2018_03_10\P3100461.JPG
DNS Servers: 192.168.100.250
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "OV3_Monitor"
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\StartupApproved\Run: => "OV3_Monitor"
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-370975082-3115102142-3364293580-1001\...\StartupApproved\Run: => "Zoner Photo Studio Autoupdate"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{E7B21B5B-A115-45BB-BE8A-B332C21B4E66}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{61420EF2-2A9E-4CE2-AAF5-A9CEA93AFF12}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{B9DCEEE7-E5A4-4A54-9621-79DA566C46D2}] => (Allow) C:\Program Files\Zoner\Photo Studio 18\Program32\MediaServer.exe No File
FirewallRules: [{0C4E3313-765A-4397-BABC-8E1786276E3C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{CC8C6F12-FD83-4F27-83F2-3AF38935EE0E}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{3E2FAD11-4B6B-4478-A17D-136FEA2677AB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{6A8B018F-A02C-408A-8799-9658A672B639}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe No File
FirewallRules: [{99921221-6EC4-499C-97B5-CEC3A4909C4D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{C308D970-F320-4ECA-A0E2-EB2748C0EE05}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [TCP Query User{3B99C712-BED0-4738-8592-A84C0282F21A}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe No File
FirewallRules: [UDP Query User{F0A6CAC8-88FA-428B-BBF2-3B249FF5EA8F}C:\program files (x86)\videolan\vlc\vlc.exe] => (Block) C:\program files (x86)\videolan\vlc\vlc.exe No File
FirewallRules: [{287521F3-D300-482E-9CD5-F94F869027FA}] => (Allow) C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{CFBF723D-B399-4EEE-97C4-C61BE762983A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{AB66D30E-370A-49AE-A206-42DDD16B7351}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B4756F9B-B40A-4694-B0C1-14D41B2C6521}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{78B85857-E3A7-4FB8-A946-E500E84BE357}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{5D6CDED4-687D-4109-B4DA-5A94D0EA006A}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{57425C52-34E3-4F7B-9377-C3D4A0F295A9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\the witcher 2\Launcher.exe (CD Projekt RED) [File not signed]
FirewallRules: [{48508039-F51B-455D-8184-4850ED841F08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\the witcher 2\Launcher.exe (CD Projekt RED) [File not signed]
FirewallRules: [TCP Query User{EC573B71-62CA-4A2A-984E-C07AF0BD337B}C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe () [File not signed]
FirewallRules: [UDP Query User{C099AA9D-E446-4708-8628-A767BE84434C}C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\the witcher 2\bin\witcher2.exe () [File not signed]
FirewallRules: [{1F256989-88AF-4BE0-9EAA-7B3F56B8CFF2}] => (Allow) C:\Program Files\Opera\63.0.3368.107\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{6553FC9C-7405-4235-BDCD-FD0D217317DC}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{76E19889-E4DE-4A6B-841C-D5779376BB33}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{6BB6C1C6-EE43-472C-B3F9-46664FCE5D48}] => (Allow) LPort=26789
FirewallRules: [{AAB73BB9-6AFC-45CB-96CE-92569167429B}] => (Allow) C:\Program Files\Opera\64.0.3417.92\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{A93A8F77-129C-4A42-914C-DB29F0788504}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{B73DC982-E35A-43F0-BBDE-F563AFDB27ED}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{C301A96C-6CE8-440B-8EEA-1567386C54E4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{5CB1C09A-40ED-46D1-AF05-FBDA6D56F76D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{1B209C66-4545-4E7C-9459-03D20997865B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{6029024B-C5AF-42A4-BA66-6B709EA53230}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{06F2A581-442C-4B4F-8A65-B96BE6989BFB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{1A4BA29A-8ED5-41CA-A1C7-79A591430384}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.119.480.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{CD520C30-B840-490F-9150-54AF5FA3FD19}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{975680BC-FDF1-4EFF-8F12-14AB0484D64D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F008501E-B5D0-4C2A-9749-54BB19E214C5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{234C56F3-EF8C-473D-A52C-AF6F3FC2A7A0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F2254637-6C46-4415-AD2E-96390744E5E6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{72CAED30-CEE8-4668-A9F1-E14435A92739}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{7E9269DC-41F3-407C-9980-905D871F31DC}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{46DD0EB0-EE76-4814-B076-350B33E4A071}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)

==================== Restore Points =========================

30-10-2019 15:57:55 Naplánovaný kontrolní bod
09-11-2019 09:55:27 Naplánovaný kontrolní bod
13-11-2019 07:18:54 Windows Update

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (11/13/2019 09:42:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 3718

Error: (11/13/2019 09:42:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 3718

Error: (11/13/2019 09:42:25 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/13/2019 09:42:23 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledSPRetry 1828

Error: (11/13/2019 09:42:23 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: m->NextScheduledEvent 1828

Error: (11/13/2019 09:42:23 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: Task Scheduling Error: Continuously busy for more than a second

Error: (11/13/2019 02:29:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Unexpected conflict discarding 25 C.A.8.3.3.6.5.6.6.9.F.D.9.A.9.9.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR DESKTOP-78RC28O-2.local.

Error: (11/13/2019 02:29:50 PM) (Source: Bonjour Service) (EventID: 100) (User: )
Description: mDNSCoreReceiveResponse: Received from 192.168.100.72:5353 23 C.A.8.3.3.6.5.6.6.9.F.D.9.A.9.9.0.0.0.0.0.0.0.0.0.0.0.0.0.8.E.F.ip6.arpa. PTR DESKTOP-78RC28O.local.


System errors:
=============
Error: (11/13/2019 10:42:20 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-78RC28O)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli DESKTOP-78RC28O\Mýl_a_Páť (SID: S-1-5-21-370975082-3115102142-3364293580-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 10:41:05 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-78RC28O)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli DESKTOP-78RC28O\Mýl_a_Páť (SID: S-1-5-21-370975082-3115102142-3364293580-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 02:31:37 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.SecurityAppBroker
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 02:31:37 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscBrokerManager
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 02:31:37 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscDataProtection
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 02:30:30 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-78RC28O)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli DESKTOP-78RC28O\Mýl_a_Páť (SID: S-1-5-21-370975082-3115102142-3364293580-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/13/2019 01:22:39 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-78RC28O)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{2593F8B9-4EAF-457C-B68A-50F6B8EA6B54}
a APPID
{15C20B67-12E7-4BB6-92BB-7AFF07997402}
uživateli DESKTOP-78RC28O\Mýl_a_Páť (SID: S-1-5-21-370975082-3115102142-3364293580-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (11/12/2019 11:21:45 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Spuštění pro serverovou aplikaci COM s identifikátorem CLSID
Windows.SecurityCenter.WscBrokerManager
a APPID
Není k dispozici
uživateli NT AUTHORITY\SYSTEM (SID: S-1-5-18) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.


Windows Defender:
===================================
Date: 2019-10-25 00:50:10.151
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {F12E3110-630E-4F3A-BD0D-7A8FF31FBD0E}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-24 23:48:08.363
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {A49D1864-D4A4-4340-9A9A-FCC445D2644A}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-23 20:25:25.776
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {84B63F11-3CCC-4CC7-AE8A-06EE9CC1A20A}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-06 20:06:18.905
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {615DDD4D-1168-421C-97A6-D5C42853F179}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2019-10-03 12:01:10.311
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {C27CAC7B-FD51-4141-ABE7-FFC495DFC1E8}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

CodeIntegrity:
===================================

Date: 2019-04-16 19:30:21.427
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.419
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.371
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.363
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.354
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsreg.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:21.344
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsreg.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:20.944
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-04-16 19:30:20.924
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.

==================== Memory info ===========================

BIOS: American Megatrends Inc. F13 06/19/2014
Motherboard: Gigabyte Technology Co., Ltd. B85M-D3H
Processor: Intel(R) Core(TM) i5-4590 CPU @ 3.30GHz
Percentage of memory in use: 25%
Total physical RAM: 16248.38 MB
Available physical RAM: 12179.73 MB
Total Virtual: 18680.38 MB
Available Virtual: 12767.6 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:223.03 GB) (Free:35.59 GB) NTFS
Drive d: (Úložiště) (Fixed) (Total:931.51 GB) (Free:479 GB) NTFS

\\?\Volume{45600087-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.54 GB) (Free:0.12 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: 45600087)
Partition 1: (Active) - (Size=549 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=223 GB) - (Type=07 NTFS)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: D4088A27)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

Re: preventivka

Napsal: 18 lis 2019 19:58
od Rudy
Smazáno, log by již měl být OK.

Re: preventivka

Napsal: 19 lis 2019 01:01
od Ervd
Děkuji

Re: preventivka

Napsal: 19 lis 2019 10:19
od Rudy
Nemáte zač! :)