Stránka 1 z 1

Prosím o kontrolu logu

Napsal: 14 pro 2019 09:02
od kockopes
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 07-12-2019
Ran by Hladk (administrator) on DESKTOP-1T75NO9 (14-12-2019 08:58:56)
Running from C:\Users\Hladk\Desktop
Loaded Profiles: Hladk (Available Profiles: Hladk)
Platform: Windows 10 Home Version 1903 18362.535 (X64) Language: Čeština (Česko)
Default browser: Opera
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0346830.inf_amd64_35731e557194973d\B345901\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0346830.inf_amd64_35731e557194973d\B345901\atiesrxx.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTAgent.exe
(Huawei Technologies Co., Ltd. -> ) [File not signed] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Logitech Inc -> Logitech) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOverlay.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\Logitech\LogiOptions\LogiOptions.exe
(Logitech Inc -> Logitech, Inc.) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.exe
(Malwarebytes Inc -> Malwarebytes) C:\Users\Hladk\Desktop\adwcleaner_8.0.0.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\backgroundTaskHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\notepad.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\NisSrv.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmd.inf_amd64_91da6d9092d2907a\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmd.inf_amd64_91da6d9092d2907a\Display.NvContainer\NVDisplay.Container.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\65.0.3467.62\opera_crashreporter.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(TeamViewer GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [2177160 2019-03-03] (Logitech Inc -> Logitech, Inc.)
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\System32\LogiLDA.dll [3942864 2016-10-13] (Logitech -> Logitech, Inc.)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163640 2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [645648 2019-10-05] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\Run: [Zoner Photo Studio Autoupdate] => "C:\Users\Hladk\AppData\Local\Programs\Zoner\ZPS X\binary\Program32\ZPSTRAY.EXE"
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [371304 2019-10-03] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\Run: [utweb] => "C:\Users\Hladk\AppData\Roaming\uTorrent Web\utweb.exe" /MINIMIZED
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\MountPoints2: {1f227922-e4c9-11e9-9def-7085c262d76e} - "F:\setup.exe"
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\MountPoints2: {1f2279f8-e4c9-11e9-9def-7085c262d76e} - "H:\setup.exe"
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\MountPoints2: {905b0c76-eb1c-11e9-9df1-7085c262d76e} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\MountPoints2: {905b0cea-eb1c-11e9-9df1-7085c262d76e} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\MountPoints2: {958d3896-c7d9-11e9-9deb-7085c262d76e} - "D:\HiSuiteDownLoader.exe"
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\78.0.3904.108\Installer\chrmstp.exe [2019-11-18] (Google LLC -> Google LLC)
GroupPolicy: Restriction ? <==== ATTENTION
FF HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {1BE21F58-5ABA-4BD2-A933-740A397E494A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {323EB85A-D85B-4A18-B01F-D0424D370D34} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4AC36DA6-2067-4CF1-97B2-A79053400118} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4D8A2B39-A76D-42CC-82B9-986D86B87B98} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-05-29] (Google Inc -> Google LLC)
Task: {53613C80-4F8D-4C5D-B80F-E586D4AD7EE0} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1240656 2019-09-10] (Adobe Inc. -> Adobe Systems)
Task: {6ABE9BE7-7483-45D5-885D-1F5435439C95} - System32\Tasks\Opera scheduled Autoupdate 1555151344 => C:\Users\Hladk\AppData\Local\Programs\Opera\launcher.exe [1528344 2019-12-04] (Opera Software AS -> Opera Software)
Task: {6C0E15A0-5D86-4BC0-9909-C90DA6F6A00F} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1873288 2019-12-13] (AVAST Software s.r.o. -> AVAST Software)
Task: {AE07494F-EBB0-4279-A4BD-68F2FD588457} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B270A711-E269-48B0-B7D9-6AA86A5CC466} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-05-29] (Google Inc -> Google LLC)
Task: {E8C72051-86E7-4AFE-BAED-7A8FAF3DE2B4} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_303_pepper.exe [1453112 2019-12-10] (Adobe Inc. -> Adobe)
Task: {EFE8C7E5-AD9A-4060-8F5C-E86D93319995} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2019-12-10] (Adobe Inc. -> Adobe)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 213.46.172.36 213.46.172.37
Tcpip\..\Interfaces\{31f344b7-4480-4955-86df-c15fb8461db6}: [DhcpNameServer] 213.46.172.36 213.46.172.37

Internet Explorer:
==================
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://securesearch.org/homepage?hp=2&pId=BT171101&iDate=2019-12-13 05:50:16&bName=
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_231\bin\ssv.dll [2019-10-31] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_231\bin\jp2ssv.dll [2019-10-31] (Oracle America, Inc. -> Oracle Corporation)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.231.2 -> C:\Program Files\Java\jre1.8.0_231\bin\dtplugin\npDeployJava1.dll [2019-10-31] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.231.2 -> C:\Program Files\Java\jre1.8.0_231\bin\plugin2\npjp2.dll [2019-10-31] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2019-03-25] (NVIDIA Corporation -> NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2019-03-25] (NVIDIA Corporation -> NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-14] (Google LLC -> Google LLC)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.35.422\npGoogleUpdate3.dll [2019-12-14] (Google LLC -> Google LLC)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-12-02] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR Profile: C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default [2019-12-13]
CHR Extension: (Prezentace) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-05-29]
CHR Extension: (Dokumenty) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-05-29]
CHR Extension: (Disk Google) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2019-05-29]
CHR Extension: (YouTube) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-05-29]
CHR Extension: (Aliexpress SuperStar česky, Historie cen a koruny) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ciclollkolafellcaolgccmfjldgpolo [2019-12-05]
CHR Extension: (Tabulky) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-05-29]
CHR Extension: (Dokumenty Google offline) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2019-07-08]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-17]
CHR Extension: (Gmail) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2019-05-29]
CHR Extension: (Chrome Media Router) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2019-11-11]

Opera:
=======
OPR Notifications: hxxps://zdopravy.cz
OPR StartupUrls: "hxxp://www.idnes.cz/","hxxps://www.youtube.com ... Wv04H3oQ4k"
OPR Extension: (Bitwarden - Free Password Manager) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\ccnckbpmaceehanjmeomladnmlffdjgn [2019-12-05]
OPR Extension: (Clickable Links) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\eidoimalknnpbihckkopjgepkjmbmlhd [2019-04-13]
OPR Extension: (Dark Reader) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh [2019-12-07]
OPR Extension: (ČD Body - zitranavylet.cz) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\fedjfkcpbabccidicbfocikcpmohkpca [2019-06-09]
OPR Extension: (Notifier for Gmail™) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\flkijckbigolpahbkklilflpmkalfohc [2019-04-13]
OPR Extension: (Install Chrome Extensions) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi [2019-12-13]
OPR Extension: (Clickable Links) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\mgamelhnfokapndfdodnmfiningckjia [2019-04-13]
OPR Extension: (Hlídač Shopů) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\plmlonggbfebcjelncogcnclagkmkikk [2019-11-28]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD External Events Utility; C:\WINDOWS\System32\DriverStore\FileRepository\u0346830.inf_amd64_35731e557194973d\B345901\atiesrxx.exe [508000 2019-09-18] (Advanced Micro Devices, Inc. -> AMD)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4452456 2019-10-03] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-08-19] (Huawei Technologies Co., Ltd. -> ) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12097024 2019-11-06] (TeamViewer GmbH -> TeamViewer Germany GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-08] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 McAfee WebAdvisor; "C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe" [X]
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmd.inf_amd64_91da6d9092d2907a\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvmd.inf_amd64_91da6d9092d2907a\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
R2 NvTelemetryContainer; "C:\Program Files\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdgpio2; C:\WINDOWS\System32\drivers\amdgpio2.sys [45832 2019-10-01] (Advanced Micro Devices INC. -> Advanced Micro Devices, Inc)
S3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository\u0346830.inf_amd64_35731e557194973d\B345901\atikmdag.sys [55249504 2019-09-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
S3 amdkmdap; C:\WINDOWS\System32\DriverStore\FileRepository\u0346830.inf_amd64_35731e557194973d\B345901\atikmpag.sys [595040 2019-09-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R1 amdpsp; C:\WINDOWS\system32\DRIVERS\amdpsp.sys [239976 2017-06-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc. )
R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdWT6.sys [111112 2017-11-17] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2019-10-03] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2019-10-03] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2019-07-03] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
U5 hw_usbdev; C:\Windows\System32\Drivers\hw_usbdev.sys [116864 2019-08-19] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvmd.inf_amd64_91da6d9092d2907a\nvlddmkm.sys [21836248 2019-06-10] (NVIDIA Corporation -> NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [662528 2019-03-19] (Microsoft Windows -> Realtek )
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [45664 2019-12-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [355760 2019-12-08] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-08] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-12-14 08:58 - 2019-12-14 08:59 - 000021670 _____ C:\Users\Hladk\Desktop\FRST.txt
2019-12-14 08:58 - 2019-12-14 08:59 - 000000000 ____D C:\FRST
2019-12-14 08:55 - 2019-12-14 08:56 - 000000000 ____D C:\AdwCleaner
2019-12-14 08:50 - 2019-12-14 08:50 - 008218800 _____ (Malwarebytes) C:\Users\Hladk\Desktop\adwcleaner_8.0.0.exe
2019-12-14 08:29 - 2019-12-14 08:29 - 002263552 _____ (Farbar) C:\Users\Hladk\Desktop\FRST64.exe
2019-12-13 22:06 - 2019-12-13 22:11 - 000000000 ____D C:\Users\Hladk\AppData\Local\LarianLauncher
2019-12-13 22:06 - 2019-12-13 22:06 - 000000000 ____D C:\Users\Hladk\AppData\Roaming\NVIDIA
2019-12-13 20:58 - 2019-12-13 20:58 - 000000000 ____D C:\Program Files (x86)\Steam
2019-12-13 20:57 - 2019-12-13 20:57 - 000001925 _____ C:\Users\Public\Desktop\Divinity - Original Sin 2.lnk
2019-12-13 20:57 - 2019-12-13 20:57 - 000001925 _____ C:\ProgramData\Desktop\Divinity - Original Sin 2.lnk
2019-12-13 20:57 - 2019-12-13 20:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Divinity - Original Sin 2 [GOG.com]
2019-12-13 20:53 - 2019-12-13 20:53 - 000000000 ____D C:\ProgramData\GOG.com
2019-12-13 19:55 - 2019-12-13 19:55 - 000000000 ____D C:\GOG Games
2019-12-13 18:52 - 2019-12-13 18:52 - 000000000 _____ C:\WINDOWS\system32\last.dump
2019-12-13 18:51 - 2019-12-13 18:51 - 015458673 _____ C:\Users\Hladk\Downloads\DOS2-CZ.zip
2019-12-13 18:51 - 2019-12-13 18:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2019-12-13 18:51 - 2019-12-13 18:51 - 000000000 ____D C:\Program Files\Common Files\AVAST Software
2019-12-13 18:50 - 2019-12-14 08:10 - 000000000 ____D C:\Users\Hladk\AppData\Local\BitTorrentHelper
2019-12-13 18:50 - 2019-12-13 18:58 - 000001865 _____ C:\Users\Hladk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent Web.lnk
2019-12-13 18:50 - 2019-12-13 18:51 - 000000000 ____D C:\ProgramData\AVAST Software
2019-12-13 18:49 - 2019-12-13 18:49 - 018439208 _____ (BitTorrent, Inc.) C:\Users\Hladk\Downloads\utweb_installer.exe
2019-12-12 22:00 - 2019-12-12 22:00 - 000022055 _____ C:\Users\Hladk\Downloads\MetaStats-v0.0.2.zip
2019-12-11 21:20 - 2019-12-11 21:20 - 025443840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 018020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 009927992 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2019-12-11 21:20 - 2019-12-11 21:20 - 007905000 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 007600448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 007278592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 006516648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 006083832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 005943296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 005914112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 005764664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 004129416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 003729408 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2019-12-11 21:20 - 2019-12-11 21:20 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 002800640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2019-12-11 21:20 - 2019-12-11 21:20 - 002762296 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 002716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2019-12-11 21:20 - 2019-12-11 21:20 - 002698768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2019-12-11 21:20 - 2019-12-11 21:20 - 002494432 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 002284544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 002147328 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 002082208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 001757304 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2019-12-11 21:20 - 2019-12-11 21:20 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 001743888 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 001697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 001664904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 001656600 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 001647072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 001539584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 001512528 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2019-12-11 21:20 - 2019-12-11 21:20 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 001451520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2019-12-11 21:20 - 2019-12-11 21:20 - 001413840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 001399312 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2019-12-11 21:20 - 2019-12-11 21:20 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2019-12-11 21:20 - 2019-12-11 21:20 - 001261464 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 001182448 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2019-12-11 21:20 - 2019-12-11 21:20 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2019-12-11 21:20 - 2019-12-11 21:20 - 001098928 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 001072952 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2019-12-11 21:20 - 2019-12-11 21:20 - 001066496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 001054864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 001006904 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudExperienceHostCommon.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000986936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refsv1.sys
2019-12-11 21:20 - 2019-12-11 21:20 - 000921600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000878080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000842552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudExperienceHostCommon.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000826368 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelinesvc.exe
2019-12-11 21:20 - 2019-12-11 21:20 - 000822416 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2019-12-11 21:20 - 2019-12-11 21:20 - 000797112 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000774456 _____ (Microsoft Corporation) C:\WINDOWS\system32\securekernel.exe
2019-12-11 21:20 - 2019-12-11 21:20 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000674280 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2019-12-11 21:20 - 2019-12-11 21:20 - 000673456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2019-12-11 21:20 - 2019-12-11 21:20 - 000646144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2019-12-11 21:20 - 2019-12-11 21:20 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000593128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000578560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SppExtComObj.Exe
2019-12-11 21:20 - 2019-12-11 21:20 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2019-12-11 21:20 - 2019-12-11 21:20 - 000532480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000530944 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000524264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000513536 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2019-12-11 21:20 - 2019-12-11 21:20 - 000511000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wow64win.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000457216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cldflt.sys
2019-12-11 21:20 - 2019-12-11 21:20 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\system32\fhcfg.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000422712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\fastfat.sys
2019-12-11 21:20 - 2019-12-11 21:20 - 000406480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000404480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\exfat.sys
2019-12-11 21:20 - 2019-12-11 21:20 - 000342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\udfs.sys
2019-12-11 21:20 - 2019-12-11 21:20 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2019-12-11 21:20 - 2019-12-11 21:20 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000179712 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000139776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000127272 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000117248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cdfs.sys
2019-12-11 21:20 - 2019-12-11 21:20 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000097080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000089536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2019-12-11 21:20 - 2019-12-11 21:20 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdProxy.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000067112 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsManagementServiceWinRt.ProxyStub.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000046592 _____ (Microsoft Corporation) C:\WINDOWS\system32\printfilterpipelineprxy.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevQueryBroker.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000032056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2019-12-11 21:20 - 2019-12-11 21:20 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilotdiag.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2019-12-11 21:20 - 2019-12-11 21:20 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2019-12-05 19:27 - 2019-12-05 19:27 - 000108593 _____ C:\Users\Hladk\Downloads\Good-Boys(0000319419).srt
2019-12-01 18:46 - 2019-12-01 18:46 - 000001040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer.lnk
2019-12-01 18:46 - 2019-12-01 18:46 - 000001028 _____ C:\Users\Public\Desktop\TeamViewer.lnk
2019-12-01 18:46 - 2019-12-01 18:46 - 000001028 _____ C:\ProgramData\Desktop\TeamViewer.lnk
2019-11-15 06:21 - 2019-11-15 06:21 - 009711616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2019-11-15 06:21 - 2019-11-15 06:21 - 005501952 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2019-11-15 06:21 - 2019-11-15 06:21 - 004307968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2019-11-15 06:21 - 2019-11-15 06:21 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2019-11-15 06:21 - 2019-11-15 06:21 - 000249856 _____ (Gracenote, Inc.) C:\WINDOWS\SysWOW64\gnsdk_fp.dll
2019-11-15 06:21 - 2019-11-15 06:21 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\spwmp.dll
2019-11-15 06:21 - 2019-11-15 06:21 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msdxm.ocx
2019-11-15 06:21 - 2019-11-15 06:21 - 000005632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxmasf.dll
2019-11-15 06:21 - 2019-11-15 06:21 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL
2019-11-15 06:20 - 2019-11-15 06:20 - 025901056 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 022627840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 014816256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 008011264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 007195648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 007015936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 006232576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 005112320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 004578816 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 004150272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AI.MachineLearning.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 003967920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 003752960 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 003742544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 003487232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 002956472 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 002586816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 002576384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 002562048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 002399232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcGenral.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 002258848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 001916984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 001866272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 001691648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 001348096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 001312256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjet40.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 001283072 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 001189376 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Graphics.Display.DisplayEnhancementService.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 001154656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 001059840 _____ (Microsoft Corporation) C:\WINDOWS\HelpPane.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 001017680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 001007616 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000892696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000832000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000822072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000768528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000768488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000700416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000689664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000679152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000669696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000669352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000632320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000496640 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000487424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000477184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnphost.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000452920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000429568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000415544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000404904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000382976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000380944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000380928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000375720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcGenral.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000354816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Magnify.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000332288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnphost.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000251512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscapi.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptui.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000236032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmd.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2019-11-15 06:20 - 2019-11-15 06:20 - 000219136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscinterop.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagSvc.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\accessibilitycpl.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000193800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2019-11-15 06:20 - 2019-11-15 06:20 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscinterop.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincredui.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMapi.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmvdsitf.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000136536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\omadmapi.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2019-11-15 06:20 - 2019-11-15 06:20 - 000126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinHvPlatform.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000094720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Utilman.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EaseOfAccessDialog.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000093496 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcXtrnal.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000084488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winhvr.sys
2019-11-15 06:20 - 2019-11-15 06:20 - 000084488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2019-11-15 06:20 - 2019-11-15 06:20 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2019-11-15 06:20 - 2019-11-15 06:20 - 000081408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dtdump.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sethc.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usp10.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\reg.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000073024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\udhisapi.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2019-11-15 06:20 - 2019-11-15 06:20 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AtBroker.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ApiSetHost.AppExecutionAlias.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000061240 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvhostsvc.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000059392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\reg.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\udhisapi.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000040960 _____ (Microsoft Corporation) C:\WINDOWS\system32\upnpcont.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000035328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\upnpcont.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2019-11-15 06:20 - 2019-11-15 06:20 - 000033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\posetup.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msimsg.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msimsg.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000021304 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcXtrnal.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KBDJPN.DLL
2019-11-15 06:20 - 2019-11-15 06:20 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kbd106.dll
2019-11-15 06:20 - 2019-11-15 06:20 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 017787904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 007849424 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 006435840 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 006227104 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 006166016 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 005890048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AI.MachineLearning.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 004615616 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 004140544 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 004047360 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 004005888 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 003791360 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 003591208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 003387392 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 003371928 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 003105792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 003084800 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 002988344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 002871848 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 002870784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 002772272 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 002703872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 002126112 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 002120704 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 002114048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 001974824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\refs.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 001920512 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 001856512 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 001726480 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 001687040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 001428992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 001413912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 001394168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 001327064 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 001259416 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 001171704 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 001094656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 001070080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 001069064 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 001062912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000982840 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000975872 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000913920 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000911824 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000874936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000874536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 000864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000849920 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000844800 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000811536 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000765440 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000747320 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000657424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 000649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000644096 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpsvc.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000642560 _____ (Microsoft Corporation) C:\WINDOWS\system32\osk.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000638264 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000618496 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000604984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000598528 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000589592 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000586768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 000563712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnprv.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000552448 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000551736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Vid.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 000534528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Bluetooth.UserService.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000524800 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdpusersvc.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000522176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000517432 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000514576 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000513336 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000492032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Narrator.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000477712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2019-11-15 06:19 - 2019-11-15 06:19 - 000466928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000465208 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000461320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000446464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Magnify.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000416016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppLockerCSP.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000372752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\MbbCx.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 000350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000324624 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000322504 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000292664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 000291256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptui.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000280064 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmd.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 000247856 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\accessibilitycpl.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000220472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincredui.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000204816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spacedump.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000202552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmvdsitf.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000164776 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000164368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\splwow64.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\UtcDecoderHost.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Utilman.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\EaseOfAccessDialog.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 000113160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 000111104 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstSv.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000105488 _____ (Microsoft Corporation) C:\WINDOWS\system32\icfupgd.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sethc.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2019-11-15 06:19 - 2019-11-15 06:19 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000088568 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApiSetHost.AppExecutionAlias.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AtBroker.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\usp10.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000061952 _____ (Microsoft Corporation) C:\WINDOWS\system32\vss_ps.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AxInstUI.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nsiproxy.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 000047616 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000047208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthMini.SYS
2019-11-15 06:19 - 2019-11-15 06:19 - 000036368 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\winnsi.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsisvc.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000028344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winnsi.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscisvif.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\appidtel.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000024792 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000020352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscproxystub.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\applockerfltr.sys
2019-11-15 06:19 - 2019-11-15 06:19 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsilog.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\dstokenclean.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\pacjsworker.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscadminui.exe
2019-11-15 06:19 - 2019-11-15 06:19 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2019-11-15 06:19 - 2019-11-15 06:19 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tier2punctuations.dll
2019-11-15 06:03 - 2019-10-17 07:17 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2019-11-15 06:03 - 2019-10-17 07:01 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2019-12-14 08:57 - 2019-08-29 20:50 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2019-12-14 08:57 - 2019-04-23 21:36 - 000000000 ____D C:\ProgramData\NVIDIA
2019-12-14 08:57 - 2019-04-22 18:58 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2019-12-14 08:57 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2019-12-14 08:56 - 2019-07-12 19:41 - 000012920 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1
2019-12-14 08:56 - 2019-07-12 19:41 - 000008560 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1
2019-12-14 08:56 - 2019-03-19 05:37 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2019-12-14 08:24 - 2019-10-10 06:43 - 000000000 ____D C:\Users\Hladk\AppData\Local\ClassicShell
2019-12-14 08:13 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2019-12-14 08:11 - 2019-08-29 20:50 - 000003474 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2019-12-14 08:11 - 2019-08-29 20:50 - 000003350 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2019-12-14 08:10 - 2019-07-16 09:24 - 000006777 _____ C:\ProgramData\DisplaySessionContainer6.log_backup1
2019-12-13 22:15 - 2019-07-15 22:39 - 000007639 _____ C:\ProgramData\DisplaySessionContainer5.log_backup1
2019-12-13 22:06 - 2019-10-03 18:10 - 000000000 ____D C:\Users\Hladk\Documents\Larian Studios
2019-12-13 21:49 - 2019-08-29 20:43 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2019-12-13 20:53 - 2019-10-03 18:08 - 000000000 ____D C:\ProgramData\Package Cache
2019-12-13 20:44 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2019-12-13 19:40 - 2019-10-03 17:46 - 000000000 ____D C:\Users\Hladk\Downloads\Divinity Original Sin 2 MULTi5
2019-12-13 19:00 - 2019-08-14 18:39 - 000000000 ____D C:\ProgramData\Zoner
2019-12-13 18:51 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2019-12-13 06:47 - 2019-07-12 19:41 - 000005671 _____ C:\ProgramData\DisplaySessionContainer4.log_backup1
2019-12-13 05:57 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2019-12-12 22:57 - 2019-07-14 21:09 - 000007655 _____ C:\ProgramData\DisplaySessionContainer3.log_backup1
2019-12-12 22:56 - 2019-04-24 07:35 - 000000000 ____D C:\Users\Hladk\AppData\Local\Battle.net
2019-12-12 22:26 - 2019-04-23 22:35 - 000000000 ____D C:\Users\Hladk\AppData\Roaming\HearthstoneDeckTracker
2019-12-12 21:15 - 2019-04-24 07:36 - 000000000 ____D C:\Program Files (x86)\Hearthstone
2019-12-12 21:15 - 2019-04-23 22:35 - 000000000 ____D C:\Users\Hladk\AppData\Local\HearthstoneDeckTracker
2019-12-12 21:14 - 2019-04-23 22:35 - 000002571 _____ C:\Users\Hladk\Desktop\Hearthstone Deck Tracker.lnk
2019-12-12 21:14 - 2019-04-23 22:35 - 000000000 ____D C:\Users\Hladk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HearthSim
2019-12-12 21:14 - 2019-04-23 22:35 - 000000000 ____D C:\Users\Hladk\AppData\Local\SquirrelTemp
2019-12-12 20:26 - 2019-04-28 06:01 - 000000000 ____D C:\Users\Hladk\AppData\Roaming\vlc
2019-12-12 07:06 - 2019-07-13 09:55 - 000005673 _____ C:\ProgramData\DisplaySessionContainer2.log_backup1
2019-12-12 05:45 - 2019-07-13 06:51 - 000006561 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1
2019-12-12 00:01 - 2019-08-29 20:51 - 001693640 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2019-12-12 00:01 - 2019-03-19 12:55 - 000716944 _____ C:\WINDOWS\system32\perfh005.dat
2019-12-12 00:01 - 2019-03-19 12:55 - 000145024 _____ C:\WINDOWS\system32\perfc005.dat
2019-12-12 00:01 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
2019-12-11 23:57 - 2019-08-29 20:43 - 000258176 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2019-12-11 23:57 - 2019-04-13 10:00 - 000000000 __RHD C:\Users\Public\AccountPictures
2019-12-11 23:57 - 2019-04-13 10:00 - 000000000 ___RD C:\Users\Hladk\3D Objects
2019-12-11 23:56 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources
2019-12-11 23:56 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2019-12-11 23:56 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2019-12-11 21:23 - 2019-04-13 13:28 - 000000000 ____D C:\WINDOWS\system32\MRT
2019-12-11 21:22 - 2019-04-13 13:28 - 129221664 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2019-12-11 21:22 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2019-12-11 21:20 - 2019-04-13 10:54 - 000410830 __RSH C:\bootmgr
2019-12-11 06:03 - 2019-05-13 19:59 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2019-12-10 23:05 - 2019-07-19 05:47 - 000008041 _____ C:\ProgramData\DisplaySessionContainer12.log_backup1
2019-12-10 18:26 - 2019-08-29 20:50 - 000004624 _____ C:\WINDOWS\system32\Tasks\Adobe Flash Player PPAPI Notifier
2019-12-10 18:26 - 2019-05-13 19:57 - 000000000 ____D C:\Users\Hladk\AppData\Local\Adobe
2019-12-10 18:26 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2019-12-10 18:26 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Macromed
2019-12-10 06:49 - 2019-07-18 08:26 - 000008041 _____ C:\ProgramData\DisplaySessionContainer10.log_backup1
2019-12-09 22:54 - 2019-07-17 20:54 - 000007649 _____ C:\ProgramData\DisplaySessionContainer9.log_backup1
2019-12-09 21:15 - 2019-05-29 18:22 - 000000000 ____D C:\Users\Hladk\AppData\Local\Google
2019-12-09 06:47 - 2019-07-17 04:41 - 000008035 _____ C:\ProgramData\DisplaySessionContainer8.log_backup1
2019-12-08 22:15 - 2019-07-16 21:46 - 000007655 _____ C:\ProgramData\DisplaySessionContainer7.log_backup1
2019-12-08 07:04 - 2019-04-13 09:55 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2019-12-06 21:32 - 2019-08-29 20:50 - 000004206 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1555151344
2019-12-06 21:32 - 2019-04-13 11:29 - 000001403 _____ C:\Users\Hladk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2019-12-05 07:09 - 2019-08-07 05:47 - 000008033 _____ C:\ProgramData\DisplaySessionContainer16.log_backup1
2019-12-04 23:51 - 2019-08-06 21:32 - 000006059 _____ C:\ProgramData\DisplaySessionContainer15.log_backup1
2019-12-04 06:25 - 2019-08-06 06:06 - 000003414 _____ C:\ProgramData\DisplaySessionContainer14.log_backup1
2019-12-03 23:04 - 2019-08-05 21:50 - 000006564 _____ C:\ProgramData\DisplaySessionContainer13.log_backup1
2019-12-02 23:34 - 2019-07-18 21:45 - 000000000 _____ C:\ProgramData\DisplaySessionContainer11.log_backup1
2019-12-01 18:46 - 2019-04-22 19:00 - 000000000 ____D C:\Users\Hladk\AppData\Local\TeamViewer
2019-11-24 10:43 - 2019-04-24 07:34 - 000000000 ____D C:\Program Files (x86)\Battle.net
2019-11-18 21:24 - 2019-05-29 18:23 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2019-11-15 06:48 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\PrintDialog
2019-11-15 06:48 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2019-11-15 06:48 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\appraiser
2019-11-15 06:48 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellComponents
2019-11-15 06:48 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2019-11-15 06:48 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\DiagTrack

==================== Files in the root of some directories ========

2019-04-30 18:32 - 2018-10-25 21:00 - 000006026 _____ () C:\Program Files (x86)\current.btskin
2019-04-30 18:37 - 2019-04-30 18:43 - 000003754 _____ () C:\Program Files (x86)\dht.dat
2019-04-30 18:37 - 2019-04-30 18:37 - 000003676 _____ () C:\Program Files (x86)\dht.dat.old
2019-04-30 18:43 - 2019-04-30 18:37 - 000000058 _____ () C:\Program Files (x86)\resume.20190430.194316.dat
2019-04-30 18:37 - 2019-04-30 18:43 - 000000058 _____ () C:\Program Files (x86)\resume.dat
2019-04-30 18:37 - 2019-04-30 18:37 - 000000058 _____ () C:\Program Files (x86)\resume.dat.old
2019-04-30 18:37 - 2019-04-30 18:43 - 000000099 _____ () C:\Program Files (x86)\rss.dat
2019-04-30 18:37 - 2019-04-30 18:37 - 000000099 _____ () C:\Program Files (x86)\rss.dat.old
2019-04-30 18:32 - 2019-04-30 18:43 - 000005623 _____ () C:\Program Files (x86)\settings.dat.old
2019-04-30 18:32 - 2018-10-25 21:00 - 000027702 _____ () C:\Program Files (x86)\toolbar.bmp
2019-04-30 18:31 - 2018-08-28 18:30 - 000294384 _____ (emc) C:\Program Files (x86)\uninstall.exe
2019-04-30 18:32 - 2018-10-25 21:00 - 000189334 _____ () C:\Program Files (x86)\utorrent-221-25534.chm
2019-04-30 18:31 - 2018-10-25 19:00 - 000414656 _____ (BitTorrent, Inc.) C:\Program Files (x86)\utorrent.exe
2019-04-30 18:32 - 2018-10-25 21:00 - 000039237 _____ () C:\Program Files (x86)\utorrent.lng
2019-04-30 18:32 - 2018-10-25 21:00 - 000000049 _____ () C:\Program Files (x86)\utorrent.url
2019-04-30 18:32 - 2018-10-25 21:00 - 000184498 _____ () C:\Program Files (x86)\webui.zip

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Re: Prosím o kontrolu logu

Napsal: 15 pro 2019 00:36
od Conder
Ahoj :)

:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\MountPoints2: {1f227922-e4c9-11e9-9def-7085c262d76e} - "F:\setup.exe" 
    HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\MountPoints2: {1f2279f8-e4c9-11e9-9def-7085c262d76e} - "H:\setup.exe" 
    HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\MountPoints2: {905b0c76-eb1c-11e9-9df1-7085c262d76e} - "D:\HiSuiteDownLoader.exe" 
    HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\MountPoints2: {905b0cea-eb1c-11e9-9df1-7085c262d76e} - "D:\HiSuiteDownLoader.exe" 
    GroupPolicy: Restriction ? <==== ATTENTION
    HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://securesearch.org/homepage?hp=2&pId=BT171101&iDate=2019-12-13 05:50:16&bName=
    S2 McAfee WebAdvisor; "C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe" [X]
    C:\Program Files\McAfee
    CustomCLSID: HKU\S-1-5-21-1001266131-2733610755-3133150411-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Hladk\AppData\Local\Microsoft\OneDrive\19.033.0218.0011\amd64\FileSyncShell64.dll => No File
    CustomCLSID: HKU\S-1-5-21-1001266131-2733610755-3133150411-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Hladk\AppData\Local\Microsoft\OneDrive\19.033.0218.0011\amd64\FileSyncShell64.dll => No File
    CustomCLSID: HKU\S-1-5-21-1001266131-2733610755-3133150411-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Hladk\AppData\Local\Microsoft\OneDrive\19.033.0218.0011\amd64\FileSyncShell64.dll => No File
    ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
    ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
    ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File
    ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> No File
    ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
    ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> No File
    ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File
    ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
    ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
    ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
    
    Hosts:
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj

Re: Prosím o kontrolu logu

Napsal: 15 pro 2019 09:24
od kockopes
Dobré ráno :o
zde log:
Fix result of Farbar Recovery Scan Tool (x64) Version: 14-12-2019
Ran by Hladk (15-12-2019 09:24:11) Run:1
Running from C:\Users\Hladk\Desktop
Loaded Profiles: Hladk (Available Profiles: Hladk)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\MountPoints2: {1f227922-e4c9-11e9-9def-7085c262d76e} - "F:\setup.exe"
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\MountPoints2: {1f2279f8-e4c9-11e9-9def-7085c262d76e} - "H:\setup.exe"
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\MountPoints2: {905b0c76-eb1c-11e9-9df1-7085c262d76e} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\MountPoints2: {905b0cea-eb1c-11e9-9df1-7085c262d76e} - "D:\HiSuiteDownLoader.exe"
GroupPolicy: Restriction ? <==== ATTENTION
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://securesearch.org/homepage?hp=2&pId=BT171101&iDate=2019-12-13 05:50:16&bName=
S2 McAfee WebAdvisor; "C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe" [X]
C:\Program Files\McAfee
CustomCLSID: HKU\S-1-5-21-1001266131-2733610755-3133150411-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Hladk\AppData\Local\Microsoft\OneDrive\19.033.0218.0011\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-1001266131-2733610755-3133150411-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Hladk\AppData\Local\Microsoft\OneDrive\19.033.0218.0011\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-1001266131-2733610755-3133150411-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Hladk\AppData\Local\Microsoft\OneDrive\19.033.0218.0011\amd64\FileSyncShell64.dll => No File
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File

Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
Restore point was successfully created.

========= Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum =========



Count : 17
Average :
Sum : 21136542
Maximum :
Minimum :
Property : Length




========= End of Powershell: =========

HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{1f227922-e4c9-11e9-9def-7085c262d76e} => removed successfully
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{1f2279f8-e4c9-11e9-9def-7085c262d76e} => removed successfully
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{905b0c76-eb1c-11e9-9df1-7085c262d76e} => removed successfully
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{905b0cea-eb1c-11e9-9df1-7085c262d76e} => removed successfully
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\Software\Microsoft\Internet Explorer\Main\\"Start Page"="http://go.microsoft.com/fwlink/?LinkId=69157" => value restored successfully
HKLM\System\CurrentControlSet\Services\McAfee WebAdvisor => removed successfully
McAfee WebAdvisor => service removed successfully
"C:\Program Files\McAfee" => not found
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => removed successfully
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => removed successfully
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00asw => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ FileSyncEx => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
"HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}" => removed successfully
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ FileSyncEx => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Offline Files => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Offline Files => removed successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 10510336 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 58413980 B
Java, Flash, Steam htmlcache => 0 B
Windows/system/drivers => 1901357 B
Edge => 1332753 B
Chrome => 117553286 B
Firefox => 0 B
Opera => 401950514 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 7350 B
NetworkService => 216732 B
Hladk => 212377517 B

RecycleBin => 1927544 B
EmptyTemp: => 768.8 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 09:25:28 ====

Re: Prosím o kontrolu logu

Napsal: 15 pro 2019 16:37
od Conder
:arrow: Ako to vyzera s PC? Su nejake problemy?

:arrow: V PC je nainstalovana zastarala verzia Javy (Java 8 Update 231), odporucam odinstalovat. Ak Javu potrebujes, nainstaluj aktualnu verziu z https://java.com/en/download/

Re: Prosím o kontrolu logu

Napsal: 15 pro 2019 16:47
od kockopes
Zdravím, byla to jen preventivka po delší době, tudíž vše funguje, jak má. Javu upgraduju Děkuji :99: :closed:

Re: Prosím o kontrolu logu

Napsal: 15 pro 2019 16:51
od Conder
:arrow: Tak este upraceme po pouzitych nastrojoch:

Re: Prosím o kontrolu logu

Napsal: 15 pro 2019 16:53
od kockopes
je to tam.:
# DelFix v1.013 - Logfile created 15/12/2019 at 16:55:31
# Updated 17/04/2016 by Xplode
# Username : Hladk - DESKTOP-1T75NO9
# Operating System : Windows 10 Home (64 bits)

~ Removing disinfection tools ...

Deleted : C:\FRST
Deleted : C:\AdwCleaner
Deleted : C:\Users\Hladk\Desktop\FRST-OlderVersion
Deleted : C:\Users\Hladk\Desktop\Addition.txt
Deleted : C:\Users\Hladk\Desktop\AdwCleaner[C00].txt
Deleted : C:\Users\Hladk\Desktop\adwcleaner_8.0.0.exe
Deleted : C:\Users\Hladk\Desktop\Fixlog.txt
Deleted : C:\Users\Hladk\Desktop\FRST.txt
Deleted : C:\Users\Hladk\Desktop\FRST64.exe

########## - EOF - ##########
Díky :)
:thumbsup:

Re: Prosím o kontrolu logu

Napsal: 15 pro 2019 16:56
od Conder
Nie je zaco, rad som pomohol :)