Stránka 1 z 1

Preventivka

Napsal: 09 úno 2020 00:06
od Jarda62
Zdravím,

posílám log na preventivní kontrolu.
S PC problémy nejsou.

Děkuji


Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02-02-2020 02
Ran by jarda (administrator) on DESKTOP-JAROSLA (09-02-2020 00:01:56)
Running from C:\Users\jarda\Desktop
Loaded Profiles: jarda (Available Profiles: jarda)
Platform: Windows 10 Home Version 1909 18363.628 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] D:\WindowsApps\Microsoft.GamingApp_2001.1001.4.0_x64__8wekyb3d8bbwe\app\XboxAppServices.exe
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Z-Series\Sound Blaster Z-Series Control Panel\SBZ.exe
(Even Balance, Inc. -> ) C:\Windows\System32\PnkBstrA.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Charles Milette) C:\Program Files\WindowsApps\28017CharlesMilette.TranslucentTB_7.0.0.0_x86__v826wp6bftszj\TranslucentTB\TranslucentTB.exe
(Intel Corporation) [File not signed] C:\Windows\System32\IPROSetMonitor.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_1.37.23001.0_x64__8wekyb3d8bbwe\GamingServices.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_1.37.23001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12001.1001.5.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxApp_48.59.13001.0_x64__8wekyb3d8bbwe\XboxApp.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.37.29002.0_x64__8wekyb3d8bbwe\GameBar.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SecurityHealthHost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd) C:\Windows\SysWOW64\CtHdaSvc.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\NisSrv.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> ) C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(ShareX Team) [File not signed] C:\Program Files\ShareX\ShareX.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Ubisoft Entertainment Sweden AB -> Ubisoft) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\upc.exe
(Ubisoft Entertainment Sweden AB -> Ubisoft) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UplayWebCore.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16781312 2017-01-25] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [UpdReg] => C:\WINDOWS\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.) [File not signed]
HKLM-x32\...\Run: [Sound Blaster Z-Series Control Panel] => C:\Program Files (x86)\Creative\Sound Blaster Z-Series\Sound Blaster Z-Series Control Panel\SBZ.exe [877056 2014-11-24] (Creative Technology Ltd) [File not signed]
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3365840 2020-01-31] (Valve -> Valve Corporation)
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [71464072 2020-01-25] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\RunOnce: [Application Restart #0] => C:\Users\jarda\AppData\Roaming\Spotify\Spotify.exe [22240160 2020-01-31] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\Policies\Explorer: [NoPreviewPane] 0
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\MountPoints2: {4dfdfab2-f310-11e9-b3b3-7085c22fdfe2} - "E:\OnePlus_setup.exe" /s
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\MountPoints2: {ea1bf5cd-5f64-11e8-b170-7085c22fdfe2} - "E:\OnePlus_setup.exe" /s
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.87\Installer\chrmstp.exe [2020-02-05] (Google LLC -> Google LLC)
Lsa: [Authentication Packages] msv1_0 SshdPinAuthLsa
Startup: C:\Users\jarda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ShareX.lnk [2018-07-13]
ShortcutTarget: ShareX.lnk -> C:\Program Files\ShareX\ShareX.exe (ShareX Team) [File not signed]

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {200F19FB-5DE1-41AE-947D-8EF23179B0BA} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24607520 2020-01-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {20C0443C-80B3-490C-8D9E-5FF58062FD1B} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1354064 2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {2D30B7B3-9725-4742-B2A2-0CE4F310CE6C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4297536 2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {2F5E1397-05E6-4D82-9768-6000DF2E0723} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1354064 2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {379807AF-59A7-4F2C-873B-3C8E441DE266} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {405158E6-AA4B-4185-A476-8BE16C1BAF35} - System32\Tasks\Intel\Intel Telemetry 2 (x86) => C:\Program Files (x86)\Intel\Telemetry 2.0\lrio.exe [1328392 2015-11-20] (Intel(R) Software -> Intel Corporation)
Task: {448FD4D3-A598-4E28-BAF7-2165E6E9F0F0} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115440 2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {4A208AA1-655B-4D50-88E1-09407D85A4EE} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24607520 2020-01-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {673AA079-EC2D-4581-B2E5-E2C42D1BDFC7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8DDCC0F4-45FF-416D-8EB5-4F8FB798BA6F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C2DDF752-BD32-4E40-B0D4-356799BC5531} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4297536 2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {D8A168C4-DC44-4FDF-872E-F9EB0DC0EEBF} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115440 2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {D8B2EF64-72ED-4953-B570-E38E5B755126} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{0b1ba8e8-d7a0-4d8a-99fb-3fe1d94993c8}: [NameServer] 1.1.1.1,1.0.0.1
Tcpip\..\Interfaces\{0b1ba8e8-d7a0-4d8a-99fb-3fe1d94993c8}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{70205de8-f2dc-432d-9f7c-2364c17fa55d}: [DhcpNameServer] 192.168.42.129

Internet Explorer:
==================
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://google.cz/
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-01-13] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2020-01-13] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-02-06] (Microsoft Corporation -> Microsoft Corporation)

Edge:
======
DownloadDir: D:\Stažené soubory

FireFox:
========
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-12-06] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-01-13] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-12-17] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Default [2020-02-09]
CHR DownloadDir: D:\Stažené soubory
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxps://news.google.com/?hl=cs&gl=CZ&ceid=CZ%3Acs"
CHR Extension: (BetterTTV) - C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2020-02-07]
CHR Extension: (Seznam doplněk - Email) - C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2020-02-02]
CHR Extension: (uBlock Origin) - C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2020-02-06]
CHR Extension: (PocketTube: Youtube Subscription Manager) - C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdmnjgijlmjgmimahnillepgcgeemffb [2020-01-19]
CHR Extension: (Twitch Now) - C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlmbdmpjmlijibeockamioakdpmhjnpk [2020-01-01]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-03]
CHR Extension: (Chrome Media Router) - C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-02-05]
CHR Profile: C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Guest Profile [2019-09-29]
CHR Profile: C:\Users\jarda\AppData\Local\Google\Chrome\User Data\System Profile [2019-12-23]
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx <not found>

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8399040 2019-11-28] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11129712 2020-01-28] (Microsoft Corporation -> Microsoft Corporation)
S3 CLink4Service; C:\Program Files (x86)\CorsairLink4\CorsairLink4.Service.exe [34512 2018-03-30] (Corsair Components, Inc. -> Corsair Components, Inc.)
R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [423424 2012-10-08] (Creative Technology Ltd) [File not signed]
R2 CtHdaSvc; C:\WINDOWS\sysWow64\CtHdaSvc.exe [124008 2019-11-21] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803952 2020-01-16] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 GamingServices; C:\Program Files\WindowsApps\Microsoft.GamingServices_1.37.23001.0_x64__8wekyb3d8bbwe\GamingServices.exe [21432 2020-01-30] (Microsoft Corporation -> Microsoft Corporation)
R2 GamingServicesNet; C:\Program Files\WindowsApps\Microsoft.GamingServices_1.37.23001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe [21432 2020-01-30] (Microsoft Corporation -> Microsoft Corporation)
S3 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2018-03-28] (Hi-Rez Studios) [File not signed]
R2 Intel(R) PROSet Monitoring Service; C:\WINDOWS\system32\IProsetMonitor.exe [505856 2018-01-31] (Intel Corporation) [File not signed]
R2 LGHUBUpdaterService; C:\Program Files\LGHUB/lghub_updater.exe [9847944 2020-01-25] (Logitech Inc -> Logitech, Inc.)
S2 LxssManagerUser; C:\WINDOWS\system32\lxss\LxssManager.dll [632832 2020-01-15] (Microsoft Windows -> Microsoft Corporation)
R2 LxssManagerUser_27dc8; C:\WINDOWS\system32\svchost.exe [53744 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 LxssManagerUser_27dc8; C:\WINDOWS\SysWOW64\svchost.exe [45448 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6960640 2019-12-26] (Malwarebytes Inc -> Malwarebytes)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2505008 2020-02-02] (Electronic Arts, Inc. -> Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3427640 2020-02-02] (Electronic Arts, Inc. -> Electronic Arts)
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [76152 2019-08-15] (Even Balance, Inc. -> )
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [474256 2019-12-05] (Rockstar Games, Inc. -> Rockstar Games)
S3 sshd; C:\WINDOWS\System32\OpenSSH\sshd.exe [974848 2019-06-16] (Microsoft Windows -> )
S3 SshdBroker; C:\WINDOWS\System32\SshdBroker.dll [290816 2019-10-04] (Microsoft Windows -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13172752 2020-01-22] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 XTU3SERVICE; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe [18264 2017-02-23] (Intel(R) Extreme Tuning Utility -> Intel(R) Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AsrDrv101; C:\Windows\SysWOW64\Drivers\AsrDrv101.sys [22280 2017-04-20] (ASROCK Incorporation -> ASRock Incorporation)
S3 AsrDrv102; C:\WINDOWS\SysWOW64\Drivers\AsrDrv102.sys [22248 2018-09-28] (ASROCK Incorporation -> ASRock Incorporation) [File not signed]
S3 AVerPola; C:\WINDOWS\system32\DRIVERS\AVerPola.sys [871048 2016-12-13] (Microsoft Windows Hardware Compatibility Publisher -> AVerMedia TECHNOLOGIES, Inc.)
S3 BlueStacksDrv; C:\Program Files\BlueStacks\BstkDrv.sys [313112 2019-10-21] (Bluestack Systems, Inc. -> Bluestack System Inc. )
R3 cthda; C:\WINDOWS\system32\drivers\cthda.sys [1075600 2019-11-21] (Creative Technology Ltd -> Creative Technology Ltd)
R3 cthdb; C:\WINDOWS\system32\DRIVERS\cthdb.sys [43416 2019-11-21] (Creative Technology Ltd -> Creative Technology Ltd)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 gameflt; C:\WINDOWS\System32\DriverStore\FileRepository\gameflt.inf_amd64_1b1c9965dc1c6f0f\gameflt.sys [71000 2019-12-11] (Microsoft Windows -> Microsoft Corporation)
R2 iocbios2; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [37064 2016-08-24] (Intel Corporation -> Intel Corporation)
R2 LGHUBTemperatureService; C:\ProgramData\LGHUB\depots\35872\driver_cpu_temperature\logi_core_temp.sys [25448 2020-01-25] (Logitech Inc. -> Logitech)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [38136 2020-01-08] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [20624 2020-01-08] (WDKTestCert sqa,131523902232810150 -> Logitech, Inc.)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [66808 2020-01-08] (Logitech Inc -> Logitech)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-12-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [278344 2020-02-08] (Malwarebytes Inc -> Malwarebytes)
R1 MpKslDrv; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{D16EA3D9-6F3F-4F4E-8D11-9BF24B727034}\MpKslDrv.sys [43232 2020-02-08] (Microsoft Windows -> Microsoft Corporation)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_67c16e22f0dab361\nvlddmkm.sys [22734744 2019-10-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 P9Rdr; C:\WINDOWS\System32\drivers\p9rdr.sys [88888 2019-08-15] (Microsoft Windows -> Microsoft Corporation)
S3 rspLLL; C:\WINDOWS\System32\DRIVERS\rspLLL64.sys [26368 2015-07-13] (Daniel Terhell -> Resplendence Software Projects Sp.)
R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14024 2017-08-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [24576 2019-09-10] (Microsoft Windows -> Microsoft Corporation)
R0 VMSNPXY; C:\WINDOWS\System32\drivers\VmsProxyHNic.sys [39736 2020-01-30] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [45664 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [355760 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
R3 Xvdd; C:\WINDOWS\System32\DriverStore\FileRepository\xvdd.inf_amd64_3865f7cd0ca0fb7c\xvdd.sys [485720 2020-01-30] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-02-09 00:01 - 2020-02-09 00:02 - 000025410 _____ C:\Users\jarda\Desktop\FRST.txt
2020-02-09 00:01 - 2020-02-09 00:02 - 000000000 ____D C:\FRST
2020-02-09 00:00 - 2020-02-09 00:00 - 002279424 _____ (Farbar) C:\Users\jarda\Desktop\FRST64.exe
2020-02-08 23:54 - 2020-02-08 23:55 - 000000000 ____D C:\ProgramData\Norton
2020-02-08 23:54 - 2020-02-08 23:55 - 000000000 ____D C:\Program Files (x86)\NortonInstaller
2020-02-08 23:54 - 2020-02-08 23:54 - 000000000 ____D C:\ProgramData\NortonInstaller
2020-02-08 21:54 - 2020-02-08 21:54 - 000000678 _____ C:\Users\jarda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2020-02-08 21:54 - 2020-02-08 21:54 - 000000000 ____D C:\Users\jarda\AppData\Local\ESET
2020-02-03 19:59 - 2020-02-03 19:59 - 000000000 ____D C:\ProgramData\Samsung
2020-02-03 19:59 - 2020-02-03 19:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician
2020-02-03 19:59 - 2020-02-03 19:59 - 000000000 ____D C:\Program Files (x86)\Samsung
2020-01-30 20:34 - 2020-01-30 20:34 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 022635008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 019812864 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 018026496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 009926968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 007905208 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 007600656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 007259648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 006516648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 006435840 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 006285312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 006231200 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 006167552 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 006083832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 005914112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 005764664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 005112320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 004856832 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 004615376 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 004470784 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 004348616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 004005888 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 003967888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 003819008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 003729408 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 003591184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 003550208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 003372440 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 003243080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 003110400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002988552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 002801152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 002773776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002766088 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002703872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002584008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002493928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002399544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmswitch.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 002314952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002284544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002260176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002225160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002125904 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002084576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002071552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002032128 _____ C:\WINDOWS\system32\rdpnano.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001942016 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001916744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001858560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001841152 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001835128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-01-30 20:34 - 2020-01-30 20:34 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001743672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001726480 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001693184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001541632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 001512320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 001489064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001480192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 001417760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001413912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001412096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001399304 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 001394168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001372160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-01-30 20:34 - 2020-01-30 20:34 - 001300280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 001283592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2020-01-30 20:34 - 2020-01-30 20:34 - 001283584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001182232 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 001170960 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001154448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001151816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 001105776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001097216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001083904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001083392 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001073168 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 001051448 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001000960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000974336 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000961536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdp.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthSSO.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000928120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000913408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000895488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000892488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000891736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000890368 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000875144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000874512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000824848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000805376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000803840 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000788992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000768488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000747320 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000737280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000732200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000727040 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000716288 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000704512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000679160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000673080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000661816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000642008 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000637968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000637952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdp.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000637440 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000617784 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000598528 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000589592 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000587064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000568120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000545432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000536064 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000518184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000512000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000510768 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000500736 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2020-01-30 20:34 - 2020-01-30 20:34 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000490496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000477496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-01-30 20:34 - 2020-01-30 20:34 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000467648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000465208 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000459896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000453432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000441072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000437776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000421376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2020-01-30 20:34 - 2020-01-30 20:34 - 000416056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000415808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\DispBroker.Desktop.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000404912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000399360 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000375504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000366416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000324616 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000311096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000300392 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000296760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDirectoryClient.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\msutb.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000259984 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000248064 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-01-30 20:34 - 2020-01-30 20:34 - 000221200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000217600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msutb.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\regapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000194064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000192824 _____ (Microsoft Corporation) C:\WINDOWS\system32\nvspinfo.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000190464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\regapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000190256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2020-01-30 20:34 - 2020-01-30 20:34 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000143160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000117264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetDriverInstall.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000107832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingExperienceMEM.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000106808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000099712 _____ (Microsoft Corporation) C:\WINDOWS\system32\FsIso.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\compstui.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000093704 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000089912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000089328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000088352 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthSystray.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000084496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetDriverInstall.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedsbs.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000072816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\findnetprinters.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000063288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000059221 _____ C:\WINDOWS\system32\srms.dat
2020-01-30 20:34 - 2020-01-30 20:34 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcicda.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000048440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\VmsProxy.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000047208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000042512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000039736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\VmsProxyHNic.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcicda.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciwave.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciseq.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mciwave.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mciseq.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000021304 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000019768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedssync.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedssync.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2020-01-30 20:23 - 2020-02-08 21:51 - 000278344 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2020-01-30 20:23 - 2020-02-08 21:51 - 000216544 ____N (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2020-01-30 20:18 - 2020-02-03 18:58 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-01-26 10:01 - 2020-01-26 10:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2020-01-26 10:01 - 2020-01-26 10:01 - 000000000 ____D C:\Program Files\LGHUB
2020-01-25 18:14 - 2020-01-25 18:14 - 000000000 ____D C:\Users\jarda\AppData\Roaming\10tons
2020-01-22 18:14 - 2020-01-22 18:14 - 000001116 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer.lnk
2020-01-22 18:13 - 2020-02-08 09:14 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2020-01-22 18:06 - 2020-01-22 18:14 - 000000000 ____D C:\Users\jarda\AppData\Local\TeamViewer
2020-01-19 00:23 - 2020-01-19 00:23 - 000000000 ____D C:\Users\jarda\AppData\LocalLow\Noble Muffins
2020-01-16 23:02 - 2020-01-22 19:10 - 000000000 ____D C:\Users\jarda\Documents\Assassin's Creed Odyssey
2020-01-15 19:47 - 2020-01-15 19:47 - 025900032 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 008012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 007016448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 002870784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 002716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-01-15 19:47 - 2020-01-15 19:47 - 002561536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 002473976 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001985928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001655880 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001330952 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001106944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001098720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001020032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000921600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000852480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-01-15 19:47 - 2020-01-15 19:47 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000689664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000678712 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000670720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-01-15 19:47 - 2020-01-15 19:47 - 000646144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000571392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiaaut.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000542496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000432256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-01-15 19:47 - 2020-01-15 19:47 - 000400696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2020-01-15 19:47 - 2020-01-15 19:47 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000363840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-01-15 19:47 - 2020-01-15 19:47 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV1.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-01-15 19:47 - 2020-01-15 19:47 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-01-15 19:47 - 2020-01-15 19:47 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti_ci.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000162696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2020-01-15 19:47 - 2020-01-15 19:47 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiadss.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000127520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiadss.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2020-01-15 19:47 - 2020-01-15 19:47 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enterpriseresourcemanager.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WSDScan.sys
2020-01-15 19:47 - 2020-01-15 19:47 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiatrace.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiatrace.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2020-01-15 19:45 - 2019-12-10 06:15 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-01-15 19:45 - 2019-12-10 05:59 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-01-11 00:20 - 2020-01-11 00:20 - 000000000 ____D C:\Users\jarda\AppData\LocalLow\Crema
2020-01-11 00:20 - 2020-01-11 00:20 - 000000000 ____D C:\Users\jarda\AppData\Local\GameAnalytics

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-02-08 23:51 - 2017-04-23 08:42 - 000000000 ___RD C:\Users\jarda\Documents\  
2020-02-08 23:50 - 2017-04-21 23:50 - 000000000 ____D C:\Users\jarda\AppData\Roaming\uTorrent
2020-02-08 23:34 - 2017-09-08 14:42 - 000000000 ____D C:\Users\jarda\AppData\Roaming\discord
2020-02-08 23:30 - 2017-04-20 13:33 - 000000000 ____D C:\Program Files (x86)\Steam
2020-02-08 22:16 - 2017-04-20 14:02 - 000000000 ____D C:\Users\jarda\AppData\Local\Ubisoft Game Launcher
2020-02-08 21:51 - 2018-05-28 17:46 - 000007596 _____ C:\Users\jarda\AppData\Local\Resmon.ResmonCfg
2020-02-08 21:34 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-02-08 21:34 - 2018-07-19 10:22 - 000000000 ____D C:\Users\jarda\Documents\ShareX
2020-02-08 20:36 - 2019-06-16 10:09 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-02-08 17:25 - 2017-04-20 14:16 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner
2020-02-08 14:33 - 2017-08-28 22:33 - 000000000 ____D C:\Users\jarda\AppData\Local\Battle.net
2020-02-08 09:33 - 2017-11-19 00:34 - 000000000 ____D C:\Program Files\HWiNFO64
2020-02-08 09:32 - 2017-08-28 22:34 - 000000000 ____D C:\Program Files (x86)\Blizzard App
2020-02-08 09:20 - 2019-06-16 10:15 - 001702004 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-02-08 09:20 - 2019-03-19 12:55 - 000720162 _____ C:\WINDOWS\system32\perfh005.dat
2020-02-08 09:20 - 2019-03-19 12:55 - 000146270 _____ C:\WINDOWS\system32\perfc005.dat
2020-02-08 09:20 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
2020-02-08 09:17 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-02-08 09:14 - 2020-01-08 18:04 - 000000000 ____D C:\Users\jarda\AppData\Roaming\LGHUB
2020-02-08 09:14 - 2020-01-08 18:04 - 000000000 ____D C:\Users\jarda\AppData\Local\LGHUB
2020-02-08 09:14 - 2019-11-01 16:00 - 000000000 ____D C:\ProgramData\NVIDIA
2020-02-08 09:14 - 2019-06-16 10:14 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-02-07 23:29 - 2019-03-19 05:37 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2020-02-07 22:31 - 2019-12-11 19:30 - 000000000 ____D C:\Users\jarda\AppData\Roaming\Spotify
2020-02-07 17:23 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-02-07 17:21 - 2017-04-22 01:15 - 000000000 ____D C:\Users\jarda\AppData\Roaming\Origin
2020-02-07 17:20 - 2017-04-22 01:13 - 000000000 ____D C:\Users\jarda\AppData\Local\Origin
2020-02-07 17:20 - 2017-04-22 01:13 - 000000000 ____D C:\ProgramData\Origin
2020-02-06 21:48 - 2019-12-11 19:31 - 000000000 ____D C:\Users\jarda\AppData\Local\Spotify
2020-02-06 21:46 - 2017-04-23 08:42 - 000000000 ___RD C:\Users\jarda\Documents\ 
2020-02-06 20:50 - 2018-07-09 19:12 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2020-02-05 19:38 - 2017-04-27 21:15 - 000000000 ____D C:\Users\jarda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2020-02-05 18:06 - 2018-06-22 21:22 - 000000000 ____D C:\Program Files\TreeSizeFree
2020-02-05 11:22 - 2017-04-20 13:19 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-02-03 20:27 - 2018-06-13 18:59 - 000000000 ____D C:\Users\jarda\AppData\Local\D3DSCache
2020-02-03 20:05 - 2017-10-17 21:38 - 000000000 ____D C:\Users\jarda\AppData\Local\Packages
2020-02-03 19:31 - 2019-09-23 10:55 - 000000000 ____D C:\Users\jarda\AppData\Local\JxBrowser
2020-02-03 18:56 - 2019-04-09 16:17 - 000000000 ____D C:\Users\jarda\AppData\Local\Adobe
2020-02-02 15:51 - 2017-04-22 01:15 - 000000000 ____D C:\Program Files (x86)\Origin
2020-02-02 12:30 - 2018-07-14 10:56 - 000000000 ____D C:\Program Files\HDDScan
2020-01-31 17:06 - 2019-08-16 21:17 - 000000000 ____D C:\Users\jarda\AppData\Roaming\obs-studio
2020-01-31 16:55 - 2017-05-08 10:22 - 000000000 ____D C:\ProgramData\TruckersMP
2020-01-31 10:07 - 2019-04-09 16:17 - 000000000 ____D C:\ProgramData\Adobe
2020-01-31 09:55 - 2019-06-16 10:09 - 000438568 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-01-31 09:55 - 2017-10-19 18:34 - 000000000 ___RD C:\Users\jarda\3D Objects
2020-01-31 09:55 - 2017-04-20 13:09 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-01-31 02:29 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-01-31 02:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources
2020-01-31 02:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2020-01-31 02:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2020-01-31 02:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-01-31 02:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-01-30 20:36 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-01-30 20:18 - 2019-04-16 19:19 - 000000000 ____D C:\Users\jarda\AppData\LocalLow\Adobe
2020-01-30 20:18 - 2019-04-09 16:18 - 000000000 ____D C:\Program Files (x86)\Adobe
2020-01-30 20:18 - 2017-10-17 21:43 - 000000000 ____D C:\Users\jarda\AppData\Roaming\Adobe
2020-01-30 18:50 - 2019-06-29 01:22 - 001336248 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2020-01-30 18:49 - 2019-12-11 20:21 - 000052152 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2020-01-30 18:49 - 2019-10-09 21:43 - 000031672 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe
2020-01-30 18:49 - 2019-06-29 01:22 - 000149432 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2020-01-30 18:49 - 2019-06-29 01:22 - 000087992 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll
2020-01-26 23:58 - 2017-11-15 22:26 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2020-01-23 16:29 - 2017-04-20 13:19 - 000000000 ____D C:\ProgramData\Package Cache
2020-01-22 18:19 - 2017-06-02 17:57 - 000000000 ____D C:\Users\jarda\AppData\Roaming\TeamViewer
2020-01-16 00:22 - 2019-06-16 09:42 - 000000000 ___SD C:\WINDOWS\system32\lxss
2020-01-16 00:22 - 2019-03-19 05:52 - 000000000 ___SD C:\WINDOWS\system32\UNP
2020-01-15 19:50 - 2017-04-20 17:35 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-01-15 19:48 - 2017-04-20 17:35 - 120202352 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe

==================== Files in the root of some directories ========

2017-05-12 19:52 - 2019-02-15 23:37 - 001065984 _____ () C:\Users\jarda\AppData\Local\file__0.localstorage
2018-05-28 17:46 - 2020-02-08 21:51 - 000007596 _____ () C:\Users\jarda\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Re: Preventivka

Napsal: 09 úno 2020 01:05
od Conder
Ahoj :)

:arrow: Stiahni AdwCleaner: https://toolslib.net/downloads/finish/1/
  • Uloz na plochu a ukonci vsetky programy
  • Spusti AdwCleaner ako spravca
  • Odsuhlas licencne podmienky
  • Klikni na Skenovat nyni (Scan now) a pockaj na dokoncenie
  • Nechaj zaskrtnute vsetky nalezy
  • Klikni na Cisteni a opravy (Clean and Repair) a potvrd restart PC teraz
  • Po restartovani PC sa otvori AdwCleaner, klikni na Zobrazit soubor protokolu
  • Otvori sa log, jeho obsah sem skopiruj

Re: Preventivka

Napsal: 09 úno 2020 09:14
od Jarda62
Přeposílám log.
Opravdu je Seznam doplněk špatný? Používám ho každý den.


# -------------------------------
# Malwarebytes AdwCleaner 8.0.2.0
# -------------------------------
# Build: 01-27-2020
# Database: 2020-01-24.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 02-09-2020
# Duration: 00:00:00
# OS: Windows 10 Home
# Cleaned: 1
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

Deleted Seznam doplněk - Email

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1424 octets] - [09/02/2020 09:10:45]
AdwCleaner[S01].txt - [1485 octets] - [09/02/2020 09:12:49]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C01].txt ##########

Re: Preventivka

Napsal: 09 úno 2020 15:09
od Conder
Pokial Seznam doplnok vyuzivas, mozes ho kludne nechat. AdwCleaner ho detekuje ako adware, pretoze je casto instalovany bez vedomia uzivatela.

Poprosim o obidva nove logy z FRST.

Re: Preventivka

Napsal: 09 úno 2020 17:39
od Jarda62
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 02-02-2020 02
Ran by jarda (administrator) on DESKTOP-JAROSLA (09-02-2020 17:35:50)
Running from C:\Users\jarda\Desktop
Loaded Profiles: jarda (Available Profiles: jarda)
Platform: Windows 10 Home Version 1909 18363.628 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] D:\WindowsApps\Microsoft.GamingApp_2001.1001.4.0_x64__8wekyb3d8bbwe\app\XboxAppServices.exe
(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe
(Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Z-Series\Sound Blaster Z-Series Control Panel\SBZ.exe
(Even Balance, Inc. -> ) C:\Windows\System32\PnkBstrA.exe
(Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Charles Milette) C:\Program Files\WindowsApps\28017CharlesMilette.TranslucentTB_7.0.0.0_x86__v826wp6bftszj\TranslucentTB\TranslucentTB.exe
(Intel Corporation) [File not signed] C:\Windows\System32\IPROSetMonitor.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_1.37.23001.0_x64__8wekyb3d8bbwe\GamingServices.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingServices_1.37.23001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12001.1001.5.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxApp_48.59.13001.0_x64__8wekyb3d8bbwe\XboxApp.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_3.37.29002.0_x64__8wekyb3d8bbwe\GameBar.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd) C:\Windows\SysWOW64\CtHdaSvc.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.1911.3-0\NisSrv.exe
(MICRO-STAR INTERNATIONAL CO., LTD. -> ) C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(ShareX Team) [File not signed] C:\Program Files\ShareX\ShareX.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(Ubisoft Entertainment Sweden AB -> Ubisoft) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\upc.exe
(Ubisoft Entertainment Sweden AB -> Ubisoft) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UplayWebCore.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve -> Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16781312 2017-01-25] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM-x32\...\Run: [UpdReg] => C:\WINDOWS\UpdReg.EXE [90112 2000-05-11] (Creative Technology Ltd.) [File not signed]
HKLM-x32\...\Run: [Sound Blaster Z-Series Control Panel] => C:\Program Files (x86)\Creative\Sound Blaster Z-Series\Sound Blaster Z-Series Control Panel\SBZ.exe [877056 2014-11-24] (Creative Technology Ltd) [File not signed]
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3365840 2020-01-31] (Valve -> Valve Corporation)
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [71464072 2020-01-25] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\RunOnce: [Application Restart #0] => C:\Users\jarda\AppData\Roaming\Spotify\Spotify.exe [22240160 2020-01-31] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\Policies\Explorer: [NoPreviewPane] 0
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\MountPoints2: {4dfdfab2-f310-11e9-b3b3-7085c22fdfe2} - "E:\OnePlus_setup.exe" /s
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\MountPoints2: {ea1bf5cd-5f64-11e8-b170-7085c22fdfe2} - "E:\OnePlus_setup.exe" /s
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.87\Installer\chrmstp.exe [2020-02-05] (Google LLC -> Google LLC)
Lsa: [Authentication Packages] msv1_0 SshdPinAuthLsa
Startup: C:\Users\jarda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\ShareX.lnk [2018-07-13]
ShortcutTarget: ShareX.lnk -> C:\Program Files\ShareX\ShareX.exe (ShareX Team) [File not signed]

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {200F19FB-5DE1-41AE-947D-8EF23179B0BA} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24607520 2020-01-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {20C0443C-80B3-490C-8D9E-5FF58062FD1B} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1354064 2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {2D30B7B3-9725-4742-B2A2-0CE4F310CE6C} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4297536 2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {2F5E1397-05E6-4D82-9768-6000DF2E0723} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [1354064 2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {379807AF-59A7-4F2C-873B-3C8E441DE266} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {405158E6-AA4B-4185-A476-8BE16C1BAF35} - System32\Tasks\Intel\Intel Telemetry 2 (x86) => C:\Program Files (x86)\Intel\Telemetry 2.0\lrio.exe [1328392 2015-11-20] (Intel(R) Software -> Intel Corporation)
Task: {448FD4D3-A598-4E28-BAF7-2165E6E9F0F0} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115440 2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {4A208AA1-655B-4D50-88E1-09407D85A4EE} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24607520 2020-01-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {673AA079-EC2D-4581-B2E5-E2C42D1BDFC7} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {8DDCC0F4-45FF-416D-8EB5-4F8FB798BA6F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C2DDF752-BD32-4E40-B0D4-356799BC5531} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [4297536 2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {D83D5FC6-C03B-4778-B2DE-DC55FABE97CD} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [770344 2019-03-05] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
Task: {D8A168C4-DC44-4FDF-872E-F9EB0DC0EEBF} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [115440 2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {D8B2EF64-72ED-4953-B570-E38E5B755126} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MpCmdRun.exe [469648 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{0b1ba8e8-d7a0-4d8a-99fb-3fe1d94993c8}: [NameServer] 1.1.1.1,1.0.0.1
Tcpip\..\Interfaces\{0b1ba8e8-d7a0-4d8a-99fb-3fe1d94993c8}: [DhcpNameServer] 10.0.0.138
Tcpip\..\Interfaces\{70205de8-f2dc-432d-9f7c-2364c17fa55d}: [DhcpNameServer] 192.168.42.129

Internet Explorer:
==================
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://google.cz/
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2020-01-13] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2020-01-13] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-02-06] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2020-02-06] (Microsoft Corporation -> Microsoft Corporation)

Edge:
======
DownloadDir: D:\Stažené soubory

FireFox:
========
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-12-06] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-01-13] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2019-12-17] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Default [2020-02-09]
CHR DownloadDir: D:\Stažené soubory
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxps://news.google.com/?hl=cs&gl=CZ&ceid=CZ%3Acs"
CHR Extension: (BetterTTV) - C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2020-02-07]
CHR Extension: (Seznam doplněk - Email) - C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Default\Extensions\bgjpfhpjcgdppjbgnpnjllokbmcdllig [2020-02-09]
CHR Extension: (uBlock Origin) - C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Default\Extensions\cjpalhdlnbpafiamejdnhcphjbkeiagm [2020-02-06]
CHR Extension: (PocketTube: Youtube Subscription Manager) - C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Default\Extensions\kdmnjgijlmjgmimahnillepgcgeemffb [2020-01-19]
CHR Extension: (Twitch Now) - C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlmbdmpjmlijibeockamioakdpmhjnpk [2020-01-01]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-03]
CHR Extension: (Chrome Media Router) - C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-02-05]
CHR Profile: C:\Users\jarda\AppData\Local\Google\Chrome\User Data\Guest Profile [2019-09-29]
CHR Profile: C:\Users\jarda\AppData\Local\Google\Chrome\User Data\System Profile [2019-12-23]
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx <not found>

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8399040 2019-11-28] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11129712 2020-01-28] (Microsoft Corporation -> Microsoft Corporation)
S3 CLink4Service; C:\Program Files (x86)\CorsairLink4\CorsairLink4.Service.exe [34512 2018-03-30] (Corsair Components, Inc. -> Corsair Components, Inc.)
R2 CTAudSvcService; C:\Program Files (x86)\Creative\Shared Files\CTAudSvc.exe [423424 2012-10-08] (Creative Technology Ltd) [File not signed]
R2 CtHdaSvc; C:\WINDOWS\sysWow64\CtHdaSvc.exe [124008 2019-11-21] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803952 2020-01-16] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 GamingServices; C:\Program Files\WindowsApps\Microsoft.GamingServices_1.37.23001.0_x64__8wekyb3d8bbwe\GamingServices.exe [21432 2020-01-30] (Microsoft Corporation -> Microsoft Corporation)
R2 GamingServicesNet; C:\Program Files\WindowsApps\Microsoft.GamingServices_1.37.23001.0_x64__8wekyb3d8bbwe\GamingServicesNet.exe [21432 2020-01-30] (Microsoft Corporation -> Microsoft Corporation)
S3 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [9728 2018-03-28] (Hi-Rez Studios) [File not signed]
R2 Intel(R) PROSet Monitoring Service; C:\WINDOWS\system32\IProsetMonitor.exe [505856 2018-01-31] (Intel Corporation) [File not signed]
R2 LGHUBUpdaterService; C:\Program Files\LGHUB/lghub_updater.exe [9847944 2020-01-25] (Logitech Inc -> Logitech, Inc.)
S2 LxssManagerUser; C:\WINDOWS\system32\lxss\LxssManager.dll [632832 2020-01-15] (Microsoft Windows -> Microsoft Corporation)
R2 LxssManagerUser_77183; C:\WINDOWS\system32\svchost.exe [53744 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 LxssManagerUser_77183; C:\WINDOWS\SysWOW64\svchost.exe [45448 2019-03-19] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6960640 2019-12-26] (Malwarebytes Inc -> Malwarebytes)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2505008 2020-02-02] (Electronic Arts, Inc. -> Electronic Arts)
S2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3427640 2020-02-02] (Electronic Arts, Inc. -> Electronic Arts)
R2 PnkBstrA; C:\WINDOWS\system32\PnkBstrA.exe [76152 2019-08-15] (Even Balance, Inc. -> )
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [474256 2019-12-05] (Rockstar Games, Inc. -> Rockstar Games)
S3 sshd; C:\WINDOWS\System32\OpenSSH\sshd.exe [974848 2019-06-16] (Microsoft Windows -> )
S3 SshdBroker; C:\WINDOWS\System32\SshdBroker.dll [290816 2019-10-04] (Microsoft Windows -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13172752 2020-01-22] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 XTU3SERVICE; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe [18264 2017-02-23] (Intel(R) Extreme Tuning Utility -> Intel(R) Corporation)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AsrDrv101; C:\Windows\SysWOW64\Drivers\AsrDrv101.sys [22280 2017-04-20] (ASROCK Incorporation -> ASRock Incorporation)
S3 AsrDrv102; C:\WINDOWS\SysWOW64\Drivers\AsrDrv102.sys [22248 2018-09-28] (ASROCK Incorporation -> ASRock Incorporation) [File not signed]
S3 AVerPola; C:\WINDOWS\system32\DRIVERS\AVerPola.sys [871048 2016-12-13] (Microsoft Windows Hardware Compatibility Publisher -> AVerMedia TECHNOLOGIES, Inc.)
S3 BlueStacksDrv; C:\Program Files\BlueStacks\BstkDrv.sys [313112 2019-10-21] (Bluestack Systems, Inc. -> Bluestack System Inc. )
R3 cthda; C:\WINDOWS\system32\drivers\cthda.sys [1075600 2019-11-21] (Creative Technology Ltd -> Creative Technology Ltd)
R3 cthdb; C:\WINDOWS\system32\DRIVERS\cthdb.sys [43416 2019-11-21] (Creative Technology Ltd -> Creative Technology Ltd)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131712 2016-09-05] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 gameflt; C:\WINDOWS\System32\DriverStore\FileRepository\gameflt.inf_amd64_1b1c9965dc1c6f0f\gameflt.sys [71000 2019-12-11] (Microsoft Windows -> Microsoft Corporation)
R2 iocbios2; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [37064 2016-08-24] (Intel Corporation -> Intel Corporation)
R2 LGHUBTemperatureService; C:\ProgramData\LGHUB\depots\35872\driver_cpu_temperature\logi_core_temp.sys [25448 2020-01-25] (Logitech Inc. -> Logitech)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [38136 2020-01-08] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [20624 2020-01-08] (WDKTestCert sqa,131523902232810150 -> Logitech, Inc.)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [66808 2020-01-08] (Logitech Inc -> Logitech)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [20936 2019-12-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [278344 2020-02-08] (Malwarebytes Inc -> Malwarebytes)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_67c16e22f0dab361\nvlddmkm.sys [22734744 2019-10-17] (NVIDIA Corporation -> NVIDIA Corporation)
R3 P9Rdr; C:\WINDOWS\System32\drivers\p9rdr.sys [88888 2019-08-15] (Microsoft Windows -> Microsoft Corporation)
S3 rspLLL; C:\WINDOWS\System32\DRIVERS\rspLLL64.sys [26368 2015-07-13] (Daniel Terhell -> Resplendence Software Projects Sp.)
R3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14024 2017-08-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 usbrndis6; C:\WINDOWS\System32\drivers\usb80236.sys [24576 2019-09-10] (Microsoft Windows -> Microsoft Corporation)
R0 VMSNPXY; C:\WINDOWS\System32\drivers\VmsProxyHNic.sys [39736 2020-01-30] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [45664 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [355760 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
R3 Xvdd; C:\WINDOWS\System32\DriverStore\FileRepository\xvdd.inf_amd64_3865f7cd0ca0fb7c\xvdd.sys [485720 2020-01-30] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-02-09 17:35 - 2020-02-09 17:35 - 000000000 ____D C:\Users\jarda\Desktop\Nová složka
2020-02-09 09:09 - 2020-02-09 09:12 - 000000000 ____D C:\AdwCleaner
2020-02-09 09:09 - 2020-02-09 09:09 - 008356016 _____ (Malwarebytes) C:\Users\jarda\Desktop\adwcleaner_8.0.2.exe
2020-02-09 01:12 - 2020-02-09 01:12 - 000003142 _____ C:\WINDOWS\system32\Tasks\MSIAfterburner
2020-02-09 00:01 - 2020-02-09 17:36 - 000025002 _____ C:\Users\jarda\Desktop\FRST.txt
2020-02-09 00:01 - 2020-02-09 17:36 - 000000000 ____D C:\FRST
2020-02-09 00:00 - 2020-02-09 00:00 - 002279424 _____ (Farbar) C:\Users\jarda\Desktop\FRST64.exe
2020-02-08 23:54 - 2020-02-08 23:55 - 000000000 ____D C:\ProgramData\Norton
2020-02-08 23:54 - 2020-02-08 23:54 - 000000000 ____D C:\ProgramData\NortonInstaller
2020-02-08 21:54 - 2020-02-08 21:54 - 000000678 _____ C:\Users\jarda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2020-02-08 21:54 - 2020-02-08 21:54 - 000000000 ____D C:\Users\jarda\AppData\Local\ESET
2020-02-03 19:59 - 2020-02-03 19:59 - 000000000 ____D C:\ProgramData\Samsung
2020-02-03 19:59 - 2020-02-03 19:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician
2020-02-03 19:59 - 2020-02-03 19:59 - 000000000 ____D C:\Program Files (x86)\Samsung
2020-01-30 20:34 - 2020-01-30 20:34 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 022635008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 019812864 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 018026496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 009926968 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 007905208 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 007754240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 007600656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 007263992 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 007259648 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 006516648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 006435840 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 006285312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 006231200 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 006167552 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 006083832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 005914112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 005764664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 005112320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 004856832 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 004615376 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 004470784 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 004348616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 004005888 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 003967888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 003819008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 003729408 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 003703296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 003591184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 003550208 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 003372440 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 003243080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 003110400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002988552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 002801152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 002773776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002766088 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002703872 _____ (Microsoft Corporation) C:\WINDOWS\system32\WebRuntimeManager.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002584008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002493928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002399544 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vmswitch.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 002314952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msmpeg2vdec.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002284544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002260176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002225160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002125904 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002084576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002071552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 002032128 _____ C:\WINDOWS\system32\rdpnano.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001942016 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001916744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001858560 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001841152 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001835128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-01-30 20:34 - 2020-01-30 20:34 - 001748480 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001743672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001726480 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001693184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001610752 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001602560 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001541632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 001512320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 001489064 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001480192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 001417760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001413912 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001412096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001399304 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 001394168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001372160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001366128 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-01-30 20:34 - 2020-01-30 20:34 - 001300280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 001283592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2020-01-30 20:34 - 2020-01-30 20:34 - 001283584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001214976 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001182232 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 001170960 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001154448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001151816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001149712 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 001105776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001097216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001083904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001083392 _____ (Microsoft Corporation) C:\WINDOWS\system32\clusapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001073168 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 001051448 _____ (Microsoft Corporation) C:\WINDOWS\system32\pidgenx.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001027000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 001000960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Mirage.Internal.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000974336 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000961536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wdp.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthSSO.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000928120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeManager.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000916480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000913408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000895488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000892488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000891736 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000890368 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000875144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000874512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000824848 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000805376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clusapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000803840 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000788992 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000783480 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000768488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000750080 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000749568 _____ (Microsoft Corporation) C:\WINDOWS\system32\FrameServer.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000747320 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000737280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.System.Launcher.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000732200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_StorageSense.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000727040 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000716288 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000704512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.FileExplorer.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000679160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000673080 _____ (Microsoft Corporation) C:\WINDOWS\system32\comctl32.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000667136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EdgeManager.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000661816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000642008 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000637968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000637952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wdp.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000637440 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000623104 _____ (Microsoft Corporation) C:\WINDOWS\system32\resutils.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000617784 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000599552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000598528 _____ (Microsoft Corporation) C:\WINDOWS\system32\webio.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000589592 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000587064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000568120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comctl32.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000558592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000545432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000536064 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000521728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.System.Launcher.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000518184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000512000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000510768 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000500736 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2020-01-30 20:34 - 2020-01-30 20:34 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000490496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.FileExplorer.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000486912 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000477496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-01-30 20:34 - 2020-01-30 20:34 - 000476672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\resutils.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webio.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000467648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000465208 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000464384 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000459896 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000453432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000450048 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000441072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000437776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000435200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wincorlib.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000430080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000421376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2020-01-30 20:34 - 2020-01-30 20:34 - 000416056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\Classpnp.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000415808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000407040 _____ (Microsoft Corporation) C:\WINDOWS\system32\DispBroker.Desktop.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000404912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000399360 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000384000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000375504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000370688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieproxy.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000366416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsensorgroup.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000355840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000327680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000324616 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\FSClient.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000311096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000308736 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000307712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wincorlib.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000300392 _____ (Microsoft Corporation) C:\WINDOWS\system32\skci.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000296760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceDirectoryClient.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000285184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000282112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000281088 _____ (Microsoft Corporation) C:\WINDOWS\system32\msutb.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000277504 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_CapabilityAccess.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000259984 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000251904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000248064 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000226816 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000225280 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-01-30 20:34 - 2020-01-30 20:34 - 000221200 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000217600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msutb.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000210744 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000209920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhosdeployment.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000203776 _____ (Microsoft Corporation) C:\WINDOWS\system32\regapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000201728 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000199480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000194064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000193592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000192824 _____ (Microsoft Corporation) C:\WINDOWS\system32\nvspinfo.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000190464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\regapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000190256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000186880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2020-01-30 20:34 - 2020-01-30 20:34 - 000184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000172032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000155648 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_AppExecutionAlias.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BackgroundApps.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000143872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SpatialAudioLicenseSrv.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000143160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000138752 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\musdialoghandlers.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationControlCSP.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\system32\DafPrintProvider.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000119296 _____ (Microsoft Corporation) C:\WINDOWS\system32\compstui.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000117264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bindflt.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetDriverInstall.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000107832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000107008 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicePairingExperienceMEM.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000106808 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000099712 _____ (Microsoft Corporation) C:\WINDOWS\system32\FsIso.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\compstui.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000095232 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000093704 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000089912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000089328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DafPrintProvider.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000088352 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthSystray.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000084496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000080896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetDriverInstall.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000079872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedsbs.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\CustomInstallExec.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000072816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\UsoClient.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\findnetprinters.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\printui.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000063288 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\printui.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000059221 _____ C:\WINDOWS\system32\srms.dat
2020-01-30 20:34 - 2020-01-30 20:34 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\findnetprinters.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\mcicda.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000048440 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\VmsProxy.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000047208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000044544 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000042512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000039736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\VmsProxyHNic.sys
2020-01-30 20:34 - 2020-01-30 20:34 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000038400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mcicda.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciwave.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mciseq.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000027648 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mciwave.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mciseq.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000021304 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000019768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bindflt.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2020-01-30 20:34 - 2020-01-30 20:34 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedssync.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000013824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedssync.exe
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth9.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth8.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth7.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth6.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth5.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth4.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth3.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth2.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth12.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth11.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth10.bin
2020-01-30 20:34 - 2020-01-30 20:34 - 000000315 _____ C:\WINDOWS\system32\DrtmAuth1.bin
2020-01-30 20:23 - 2020-02-08 21:51 - 000278344 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2020-01-30 20:23 - 2020-02-08 21:51 - 000216544 ____N (Malwarebytes) C:\WINDOWS\system32\Drivers\MbamChameleon.sys
2020-01-30 20:18 - 2020-02-03 18:58 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-01-26 10:01 - 2020-01-26 10:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2020-01-26 10:01 - 2020-01-26 10:01 - 000000000 ____D C:\Program Files\LGHUB
2020-01-25 18:14 - 2020-01-25 18:14 - 000000000 ____D C:\Users\jarda\AppData\Roaming\10tons
2020-01-22 18:14 - 2020-01-22 18:14 - 000001116 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer.lnk
2020-01-22 18:13 - 2020-02-09 09:13 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2020-01-22 18:06 - 2020-01-22 18:14 - 000000000 ____D C:\Users\jarda\AppData\Local\TeamViewer
2020-01-19 00:23 - 2020-01-19 00:23 - 000000000 ____D C:\Users\jarda\AppData\LocalLow\Noble Muffins
2020-01-16 23:02 - 2020-01-22 19:10 - 000000000 ____D C:\Users\jarda\Documents\Assassin's Creed Odyssey
2020-01-15 19:47 - 2020-01-15 19:47 - 025900032 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 019849216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 008012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 007016448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 003263488 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 002870784 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 002716672 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-01-15 19:47 - 2020-01-15 19:47 - 002561536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 002473976 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 002305536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001985928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001697280 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001664896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001655880 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001458688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001330952 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001106944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001098720 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 001020032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000921600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000896512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MdmDiagnostics.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000852480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-01-15 19:47 - 2020-01-15 19:47 - 000842752 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000689664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000678712 _____ (Microsoft Corporation) C:\WINDOWS\system32\StructuredQuery.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaaut.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiaservc.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000670720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-01-15 19:47 - 2020-01-15 19:47 - 000646144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000571392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiaaut.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000542496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StructuredQuery.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000432256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-01-15 19:47 - 2020-01-15 19:47 - 000400696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2020-01-15 19:47 - 2020-01-15 19:47 - 000392192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000368128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000363840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-01-15 19:47 - 2020-01-15 19:47 - 000329216 _____ (Microsoft Corporation) C:\WINDOWS\system32\DiagnosticLogCSP.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000317440 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV1.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000299520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000294400 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000283136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000240640 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-01-15 19:47 - 2020-01-15 19:47 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000232448 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sti.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000211968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-01-15 19:47 - 2020-01-15 19:47 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\sti_ci.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000162696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcmnutils.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000160768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2020-01-15 19:47 - 2020-01-15 19:47 - 000147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiadss.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000127520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dmcmnutils.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptcatsvc.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000119808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiadss.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000102400 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000091136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterpriseresourcemanager.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiarpc.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2020-01-15 19:47 - 2020-01-15 19:47 - 000083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\clfsw32.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000066560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\clfsw32.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\enterpriseresourcemanager.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WSDScan.sys
2020-01-15 19:47 - 2020-01-15 19:47 - 000018432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wiatrace.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000015360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wiatrace.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2020-01-15 19:47 - 2020-01-15 19:47 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2020-01-15 19:45 - 2019-12-10 06:15 - 000492544 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-01-15 19:45 - 2019-12-10 05:59 - 000390656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-01-11 00:20 - 2020-01-11 00:20 - 000000000 ____D C:\Users\jarda\AppData\LocalLow\Crema
2020-01-11 00:20 - 2020-01-11 00:20 - 000000000 ____D C:\Users\jarda\AppData\Local\GameAnalytics

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-02-09 17:35 - 2017-04-20 14:16 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner
2020-02-09 17:34 - 2019-06-16 10:09 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-02-09 15:13 - 2019-03-19 05:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-02-09 13:12 - 2017-04-23 08:42 - 000000000 ___RD C:\Users\jarda\Documents\ 
2020-02-09 11:34 - 2017-04-27 21:15 - 000000000 ____D C:\Users\jarda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2020-02-09 11:34 - 2017-04-20 13:33 - 000000000 ____D C:\Program Files (x86)\Steam
2020-02-09 10:00 - 2017-04-20 14:02 - 000000000 ____D C:\Users\jarda\AppData\Local\Ubisoft Game Launcher
2020-02-09 09:19 - 2019-06-16 10:15 - 001702004 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-02-09 09:19 - 2019-03-19 12:55 - 000720162 _____ C:\WINDOWS\system32\perfh005.dat
2020-02-09 09:19 - 2019-03-19 12:55 - 000146270 _____ C:\WINDOWS\system32\perfc005.dat
2020-02-09 09:19 - 2019-03-19 05:50 - 000000000 ____D C:\WINDOWS\INF
2020-02-09 09:13 - 2020-01-08 18:04 - 000000000 ____D C:\Users\jarda\AppData\Roaming\LGHUB
2020-02-09 09:13 - 2020-01-08 18:04 - 000000000 ____D C:\Users\jarda\AppData\Local\LGHUB
2020-02-09 09:13 - 2019-11-01 16:00 - 000000000 ____D C:\ProgramData\NVIDIA
2020-02-09 09:13 - 2019-06-16 10:14 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-02-09 09:13 - 2019-03-19 05:37 - 000262144 _____ C:\WINDOWS\system32\config\BBI
2020-02-09 09:02 - 2017-04-21 23:50 - 000000000 ____D C:\Users\jarda\AppData\Roaming\uTorrent
2020-02-09 01:12 - 2018-07-19 10:22 - 000000000 ____D C:\Users\jarda\Documents\ShareX
2020-02-08 23:51 - 2017-04-23 08:42 - 000000000 ___RD C:\Users\jarda\Documents\  
2020-02-08 23:34 - 2017-09-08 14:42 - 000000000 ____D C:\Users\jarda\AppData\Roaming\discord
2020-02-08 21:51 - 2018-05-28 17:46 - 000007596 _____ C:\Users\jarda\AppData\Local\Resmon.ResmonCfg
2020-02-08 14:33 - 2017-08-28 22:33 - 000000000 ____D C:\Users\jarda\AppData\Local\Battle.net
2020-02-08 09:33 - 2017-11-19 00:34 - 000000000 ____D C:\Program Files\HWiNFO64
2020-02-08 09:32 - 2017-08-28 22:34 - 000000000 ____D C:\Program Files (x86)\Blizzard App
2020-02-08 09:17 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-02-07 22:31 - 2019-12-11 19:30 - 000000000 ____D C:\Users\jarda\AppData\Roaming\Spotify
2020-02-07 17:23 - 2019-03-19 05:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-02-07 17:21 - 2017-04-22 01:15 - 000000000 ____D C:\Users\jarda\AppData\Roaming\Origin
2020-02-07 17:20 - 2017-04-22 01:13 - 000000000 ____D C:\Users\jarda\AppData\Local\Origin
2020-02-07 17:20 - 2017-04-22 01:13 - 000000000 ____D C:\ProgramData\Origin
2020-02-06 21:48 - 2019-12-11 19:31 - 000000000 ____D C:\Users\jarda\AppData\Local\Spotify
2020-02-06 20:50 - 2018-07-09 19:12 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2020-02-05 18:06 - 2018-06-22 21:22 - 000000000 ____D C:\Program Files\TreeSizeFree
2020-02-05 11:22 - 2017-04-20 13:19 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-02-03 20:27 - 2018-06-13 18:59 - 000000000 ____D C:\Users\jarda\AppData\Local\D3DSCache
2020-02-03 20:05 - 2017-10-17 21:38 - 000000000 ____D C:\Users\jarda\AppData\Local\Packages
2020-02-03 19:31 - 2019-09-23 10:55 - 000000000 ____D C:\Users\jarda\AppData\Local\JxBrowser
2020-02-03 18:56 - 2019-04-09 16:17 - 000000000 ____D C:\Users\jarda\AppData\Local\Adobe
2020-02-02 15:51 - 2017-04-22 01:15 - 000000000 ____D C:\Program Files (x86)\Origin
2020-02-02 12:30 - 2018-07-14 10:56 - 000000000 ____D C:\Program Files\HDDScan
2020-01-31 17:06 - 2019-08-16 21:17 - 000000000 ____D C:\Users\jarda\AppData\Roaming\obs-studio
2020-01-31 16:55 - 2017-05-08 10:22 - 000000000 ____D C:\ProgramData\TruckersMP
2020-01-31 10:07 - 2019-04-09 16:17 - 000000000 ____D C:\ProgramData\Adobe
2020-01-31 09:55 - 2019-06-16 10:09 - 000438568 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-01-31 09:55 - 2017-10-19 18:34 - 000000000 ___RD C:\Users\jarda\3D Objects
2020-01-31 09:55 - 2017-04-20 13:09 - 000000000 __RHD C:\Users\Public\AccountPictures
2020-01-31 02:29 - 2019-03-19 05:52 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-01-31 02:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\SystemResources
2020-01-31 02:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2020-01-31 02:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2020-01-31 02:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-01-31 02:29 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-01-30 20:36 - 2019-03-19 05:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-01-30 20:18 - 2019-04-16 19:19 - 000000000 ____D C:\Users\jarda\AppData\LocalLow\Adobe
2020-01-30 20:18 - 2019-04-09 16:18 - 000000000 ____D C:\Program Files (x86)\Adobe
2020-01-30 20:18 - 2017-10-17 21:43 - 000000000 ____D C:\Users\jarda\AppData\Roaming\Adobe
2020-01-30 18:50 - 2019-06-29 01:22 - 001336248 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2020-01-30 18:49 - 2019-12-11 20:21 - 000052152 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2020-01-30 18:49 - 2019-10-09 21:43 - 000031672 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe
2020-01-30 18:49 - 2019-06-29 01:22 - 000149432 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2020-01-30 18:49 - 2019-06-29 01:22 - 000087992 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll
2020-01-26 23:58 - 2017-11-15 22:26 - 000000000 ____D C:\Program Files (x86)\RivaTuner Statistics Server
2020-01-23 16:29 - 2017-04-20 13:19 - 000000000 ____D C:\ProgramData\Package Cache
2020-01-22 18:19 - 2017-06-02 17:57 - 000000000 ____D C:\Users\jarda\AppData\Roaming\TeamViewer
2020-01-16 00:22 - 2019-06-16 09:42 - 000000000 ___SD C:\WINDOWS\system32\lxss
2020-01-16 00:22 - 2019-03-19 05:52 - 000000000 ___SD C:\WINDOWS\system32\UNP
2020-01-15 19:50 - 2017-04-20 17:35 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-01-15 19:48 - 2017-04-20 17:35 - 120202352 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe

==================== Files in the root of some directories ========

2017-05-12 19:52 - 2019-02-15 23:37 - 001065984 _____ () C:\Users\jarda\AppData\Local\file__0.localstorage
2018-05-28 17:46 - 2020-02-08 21:51 - 000007596 _____ () C:\Users\jarda\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Re: Preventivka

Napsal: 09 úno 2020 17:39
od Jarda62
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 02-02-2020 02
Ran by jarda (09-02-2020 17:36:31)
Running from C:\Users\jarda\Desktop
Windows 10 Home Version 1909 18363.628 (X64) (2019-06-16 09:14:12)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-1576612898-3511084868-1984252970-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1576612898-3511084868-1984252970-503 - Limited - Disabled)
Guest (S-1-5-21-1576612898-3511084868-1984252970-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1576612898-3511084868-1984252970-1003 - Limited - Enabled)
jarda (S-1-5-21-1576612898-3511084868-1984252970-1001 - Administrator - Enabled) => C:\Users\jarda
WDAGUtilityAccount (S-1-5-21-1576612898-3511084868-1984252970-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 19.021.20061 - Adobe Systems Incorporated)
Adobe Photoshop CC 2019 x64 (HKLM\...\{40F65A82-B0C2-464B-B913-A2954AFCC13D}_is1) (Version: 20.0.4.26077 - Adobe Systems Incorporated)
Adobe Premiere Pro 2019 (HKLM-x32\...\PPRO_13_1) (Version: 13.1 - Adobe Systems Incorporated)
Asmedia USB Host Controller Driver (HKLM-x32\...\{E4FB0B39-C991-4EE7-95DD-1A1A7857D33D}) (Version: 1.16.38.1 - Asmedia Technology)
Assassin's Creed Odyssey (HKLM-x32\...\Uplay Install 5059) (Version: - Ubisoft)
Balíček ovladače systému Windows - Corsair Components, Inc. (SIUSBXP) USB (07/14/2017 3.3) (HKLM\...\A2206C09905C467F30CB24DCBB49F056D7F0A290) (Version: 07/14/2017 3.3 - Corsair Components, Inc.)
Blizzard App (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
BlueStacks App Player (HKLM\...\BlueStacks) (Version: 4.140.12.1002 - BlueStack Systems, Inc.)
Call of Duty Modern Warfare (HKLM-x32\...\Call of Duty Modern Warfare) (Version: - Blizzard Entertainment)
CCleaner (HKLM\...\CCleaner) (Version: 5.62 - Piriform)
Corsair LINK 4 (HKLM-x32\...\{40036d0c-634b-4fc0-be89-13343b4bea96}) (Version: 4.9.7.35 - Corsair Components, Inc.)
Corsair LINK 4 (HKLM-x32\...\{D97F4B31-5A7D-4A07-AC85-16D64FAB93E1}) (Version: 4.9.7.35 - Corsair Components, Inc.) Hidden
Crucial Storage Executive (HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\Crucial Storage Executive 3.43.032017.05) (Version: 5.05.082019.02 - Crucial)
CrystalDiskInfo 7.5.2 (HKLM-x32\...\CrystalDiskInfo_is1) (Version: 7.5.2 - Crystal Dew World)
CrystalDiskMark 6.0.0 (HKLM\...\CrystalDiskMark6_is1) (Version: 6.0.0 - Crystal Dew World)
Discord (HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\Discord) (Version: 0.0.305 - Discord Inc.)
Dolby Digital Live Pack (HKLM-x32\...\Dolby Digital Live Pack) (Version: 3.03 - Creative Technology Limited)
DTS Connect Pack (HKLM-x32\...\DTS Connect Pack) (Version: 1.00 - Creative Technology Limited)
Epic Games Launcher (HKLM-x32\...\{A398FCC0-8E8B-409E-90E9-ACF4671633F2}) (Version: 1.1.183.0 - Epic Games, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 80.0.3987.87 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.441 - Google LLC) Hidden
HD Tune 2.55 (HKLM-x32\...\HD Tune_is1) (Version: - EFD Software)
Heaven Benchmark version 4.0 (HKLM-x32\...\Unigine Heaven Benchmark (Basic Edition)_is1) (Version: 4.0 - Unigine Corp.)
HiPatch (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000}) (Version: 5.1.2.0 - Hi-Rez Studios)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Intel Extreme Tuning Utility (HKLM-x32\...\{79E98F35-0524-446C-8EF5-4E863C4D87E2}) (Version: 6.2.0.24 - Intel Corporation) Hidden
Intel Extreme Tuning Utility (HKLM-x32\...\{7afa48c7-9901-40fa-8f9b-f0707e2bc5b6}) (Version: 6.2.0.24 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.6.0.1030 - Intel Corporation)
Intel(R) Network Connections 23.1.100.0 (HKLM\...\PROSetDX) (Version: 23.1.100.0 - Intel)
Intel® Chipset Device Software (HKLM-x32\...\{bb0592a7-5772-4736-9d55-2402740085db}) (Version: 10.1.1.38 - Intel(R) Corporation) Hidden
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: - Logitech)
Malwarebytes version 4.0.4.49 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.0.4.49 - Malwarebytes)
Microsoft Games for Windows - LIVE Redistributable (HKLM-x32\...\{42AA4CA8-DCD8-4308-BCAB-0B6D75856A9D}) (Version: 3.5.95.0 - Microsoft Corporation)
Microsoft Chart Controls for Microsoft .NET Framework 3.5 (HKLM-x32\...\{41785C66-90F2-40CE-8CB5-1C94BFC97280}) (Version: 3.5.0.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 - cs-cz (HKLM\...\ProPlusRetail - cs-cz) (Version: 16.0.12430.20184 - Microsoft Corporation)
Microsoft Sync Framework 2.0 Core Components (x64) ENU (HKLM\...\{8CCBEC22-D2DB-4DC9-A58A-E1A1F3A38C8A}) (Version: 2.0.1578.0 - Microsoft Corporation)
Microsoft Sync Framework 2.0 Provider Services (x64) ENU (HKLM\...\{03AC245F-4C64-425C-89CF-7783C1D3AB2C}) (Version: 2.0.1578.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6E8E85E8-CE4B-4FF5-91F7-04999C9FAE6A}) (Version: 8.0.50727.42 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
MPC-HC 1.7.13 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.13 - MPC-HC Team)
MSI Afterburner 4.6.0 (HKLM-x32\...\Afterburner) (Version: 4.6.0 - MSI Co., LTD)
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.5.9 - Notepad++ Team)
NVIDIA Ovladače grafiky 440.97 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 440.97 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 23.2.1 - OBS Project)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.12430.20120 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.12430.20120 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.12430.20184 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.12430.20120 - Microsoft Corporation) Hidden
OnePlus USB Drivers 1.00 (HKLM-x32\...\OnePlus USB Drivers 1.00) (Version: 1.00 - OnePlus, Inc)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Origin (HKLM-x32\...\Origin) (Version: 10.5.61.37414 - Electronic Arts, Inc.)
Ovládací panel NVIDIA 440.97 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 440.97 - NVIDIA Corporation) Hidden
PS4 Remote Play (HKLM-x32\...\{692D6A0A-FC43-4453-B469-D502946785C4}) (Version: 2.8.0.03041 - Sony Interactive Entertainment Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8051 - Realtek Semiconductor Corp.)
RivaTuner Statistics Server 7.2.2 (HKLM-x32\...\RTSS) (Version: 7.2.2 - Unwinder)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.17.199 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.4.3 - Rockstar Games)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 6.0.0.100 - Samsung Electronics)
ShareX (HKLM\...\82E6AC09-0FEF-4390-AD9F-0DD3F5561EFC_is1) (Version: 13.0.1 - ShareX Team)
SlimDX Runtime .NET 4.0 x64 (January 2012) (HKLM\...\{A2199A06-89C4-4187-AA4A-3A9676FB799D}) (Version: 2.0.13.43 - SlimDX Group)
Sound Blaster Z-Series (HKLM-x32\...\{DAB64FB1-0BBB-486E-9C57-A3E34F463AEB}) (Version: 1.01.10 - Creative Technology Limited)
Sound Blaster Z-Series Extras (HKLM-x32\...\{9D9DB4BA-E352-4AC8-AD2B-B10104F5AB80}) (Version: 1.0 - Creative Technology Limited)
SpeedFan (remove only) (HKLM-x32\...\SpeedFan) (Version: - )
Spotify (HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\Spotify) (Version: 1.1.25.559.g85cf5e4c - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
SyncToy 2.1 (x64) (HKLM\...\{88DAAF05-5A72-46D2-A7C5-C3759697E943}) (Version: 2.1.0 - Microsoft)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.1.4 - TeamSpeak Systems GmbH)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.2.2756 - TeamViewer)
TruckersMP Launcher 1.0.0.4 (HKLM\...\{A227B892-C548-4490-9C5D-DB341F8194A6}_is1) (Version: 1.0.0.4 - TruckersMP Team)
UE4 Prerequisites (x64) (HKLM\...\{F9EC45F9-074A-48BF-92E9-A8CADD56F693}) (Version: 1.0.11.0 - Epic Games, Inc.) Hidden
UE4 Prerequisites (x64) (HKLM-x32\...\{4e242cc8-5e3c-4b08-9d55-dbc62ddd1208}) (Version: 1.0.13.0 - Epic Games, Inc.) Hidden
Unreal Development Kit: 2012-07 (HKLM\...\UDK-1c87d94b-89f3-41fc-906b-44826a1d133f) (Version: - Epic Games, Inc.)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{C3ACFCEA-240F-4DCC-A0C3-DD55FEE6C3C2}) (Version: 2.58.0.0 - Microsoft Corporation)

Packages:
=========
1938 MG TA Midget -> C:\Program Files\WindowsApps\Microsoft.MGTA38_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
1966 Volkswagen Double Cab Pick-Up -> C:\Program Files\WindowsApps\Microsoft.VWDoubleCab61_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
1970 Triumph TR6 PI -> C:\Program Files\WindowsApps\Microsoft.TRITR670_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
1972 Lamborghini Jarama S -> C:\Program Files\WindowsApps\Microsoft.LAMJarama76_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
2017 Ferrari GTC4Lusso -> C:\Program Files\WindowsApps\Microsoft.ERGTC4Lusso_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
2018 Chevrolet Camaro ZL1 1LE -> C:\Program Files\WindowsApps\Microsoft.CHECamaro1LE18_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
2018 Morgan Aero GT -> C:\Program Files\WindowsApps\Microsoft.MORAeroGT19_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
2019 Chevrolet Corvette ZR1 -> C:\Program Files\WindowsApps\Microsoft.CHECorvetteZR_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
DirectX -> C:\Program Files\WindowsApps\Microsoft.DirectXRuntime_9.29.952.0_x64__8wekyb3d8bbwe [2019-06-29] (Microsoft Corporation)
DirectX -> C:\Program Files\WindowsApps\Microsoft.DirectXRuntime_9.29.952.0_x86__8wekyb3d8bbwe [2019-06-29] (Microsoft Corporation)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2019-10-18] (Microsoft Corporation)
EdgeDevtoolsPlugin -> C:\WINDOWS\SystemApps\Microsoft.EdgeDevtoolsPlugin_cw5n1h2txyewy [2019-11-14] (Microsoft Corporation)
Forza Horizon 4 1965 Peel Trident -> C:\Program Files\WindowsApps\Microsoft.PEETrident_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2005 Honda NSX-R GT -> C:\Program Files\WindowsApps\Microsoft.HONNSXRGT_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 -> C:\Program Files\WindowsApps\Microsoft.SunriseBaseGame_1.383.263.2_x64__8wekyb3d8bbwe [2020-01-15] (Microsoft Studios)
Forza Horizon 4 1929 Mercedes-Benz SSK -> C:\Program Files\WindowsApps\Microsoft.MercedesBenzSSK_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 1953 Jaguar C-Type -> C:\Program Files\WindowsApps\Microsoft.JAGCType_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 1959 Cadillac Eldorado Biarritz Convertible -> C:\Program Files\WindowsApps\Microsoft.CADElDorado_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 1959 Porsche 356A Coupe -> C:\Program Files\WindowsApps\Microsoft.ForzaHorizon41959Porsche356ACoupe_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 1962 Triumph TR3B -> C:\Program Files\WindowsApps\Microsoft.TriumphTR3B_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 1963 Opel Kadett A -> C:\Program Files\WindowsApps\Microsoft.OpelKadettA_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 1965 Ford Transit -> C:\Program Files\WindowsApps\Microsoft.FORTransit_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 1966 Hillman Imp -> C:\Program Files\WindowsApps\Microsoft.SUNImp_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 1968 Ford Mustang GT 2+2 Fastback -> C:\Program Files\WindowsApps\Microsoft.FORMustangGT390_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 1974 Honda Civic RS -> C:\Program Files\WindowsApps\Microsoft.HONCivicRS_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 1977 Hoonigan Ford Gymkhana 10 F-150 -> C:\Program Files\WindowsApps\Microsoft.FordGymkhana_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 1985 Porsche #186 959 Paris-Dakar -> C:\Program Files\WindowsApps\Microsoft.Porsche186ParisDakar_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 1993 Hoonigan Ford Escort Cosworth Group A -> C:\Program Files\WindowsApps\Microsoft.HooniganFordEscort_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 1993 Porsche 968 Turbo S -> C:\Program Files\WindowsApps\Microsoft.POR968TurboS_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2002 Mazda RX-7 Spirit R Type-A -> C:\Program Files\WindowsApps\Microsoft.MazdaRX7SpiritR_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2003 Honda S2000 -> C:\Program Files\WindowsApps\Microsoft.HondaS2000_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2004 Vauxhall VX220 -> C:\Program Files\WindowsApps\Microsoft.VauxhallVX220_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2005 Ferrari FXX -> C:\Program Files\WindowsApps\Microsoft.FerrariFXX_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2010 Vauxhall Insignia VXR -> C:\Program Files\WindowsApps\Microsoft.VauxhallInsigniaVXR_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2012 Lamborghini Gallardo LP570-4 Spyder Performante -> C:\Program Files\WindowsApps\Microsoft.LamborghiniGallardoLP5704_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2014 McLaren 650S Spider -> C:\Program Files\WindowsApps\Microsoft.MCL650SSpider_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2016 Honda Civic Coupe GRC -> C:\Program Files\WindowsApps\Microsoft.ForzaHorizon42016HondaCivicCoupeGRC_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2017 Koenigsegg Agera RS -> C:\Program Files\WindowsApps\Microsoft.ForzaHorizon42017KoenigseggAgeraRS_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2018 Alfa Romeo Stelvio Quadrifoglio -> C:\Program Files\WindowsApps\Microsoft.AlfaStevio_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2018 Aston Martin Vantage -> C:\Program Files\WindowsApps\Microsoft.ASTVantage18_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2018 Can-Am Maverick X3 X RS Turbo R -> C:\Program Files\WindowsApps\Microsoft.CanAmMaverick_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2018 Ford Deberti Design Mustang Fastback -> C:\Program Files\WindowsApps\Microsoft.ForzaHorizon2018FordDebertiDesignMustang_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2018 Chevrolet Silverado 1500 DeBerti Design Drift Truck -> C:\Program Files\WindowsApps\Microsoft.CHEDebertiDriftTruck_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2018 Nissan SentraNismo -> C:\Program Files\WindowsApps\Microsoft.ForzaHorizon42018NissanSentraNismo_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2018 TVR Griffith -> C:\Program Files\WindowsApps\Microsoft.TVRGriffith18_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2019 BMW i8 Roadster -> C:\Program Files\WindowsApps\Microsoft.BMWi8Roadster_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 2019 Porsche 911 Carrera S -> C:\Program Files\WindowsApps\Microsoft.POR992_1.0.0.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 Barrett Jackson Car Pack -> C:\Program Files\WindowsApps\Microsoft.BJCarPack_1.0.1.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 Best of Bond Car Pack -> C:\Program Files\WindowsApps\Microsoft.Day1CarPackBits_1.0.5.2_neutral__8wekyb3d8bbwe [2018-09-18] (Microsoft Studios)
Forza Horizon 4 Formula Drift Car Pack -> C:\Program Files\WindowsApps\Microsoft.FormulaDriftCarPack_1.0.3.2_neutral__8wekyb3d8bbwe [2018-09-17] (Microsoft Studios)
Forza Horizon 4 Fortune Island -> C:\Program Files\WindowsApps\Microsoft.Expansion1_1.225.171.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 LEGO Speed Champions -> C:\Program Files\WindowsApps\Microsoft.Expansion2_1.312.645.2_neutral__8wekyb3d8bbwe [2019-11-04] (Microsoft Studios)
Forza Horizon 4 VIP -> C:\Program Files\WindowsApps\Microsoft.ForzaHorizon4VIP_1.0.3.2_neutral__8wekyb3d8bbwe [2018-09-17] (Microsoft Studios)
Forza Hub -> C:\Program Files\WindowsApps\Microsoft.Lucille_1.0.4.0_x64__8wekyb3d8bbwe [2017-04-23] (Microsoft Studios)
Herní služby -> C:\Program Files\WindowsApps\Microsoft.GamingServices_1.37.23001.0_x64__8wekyb3d8bbwe [2020-01-30] (Microsoft Corporation)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_110.1.671.0_x64__v10z8vjag6ke6 [2020-02-07] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-10] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-10] (Microsoft Corporation) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.34.13393.0_x64__8wekyb3d8bbwe [2019-12-19] (Microsoft Corporation) [MS Ad]
TranslucentTB -> C:\Program Files\WindowsApps\28017CharlesMilette.TranslucentTB_7.0.0.0_x86__v826wp6bftszj [2019-07-25] (Charles Milette) [Startup Task]
Xbox (Beta) -> C:\Program Files\WindowsApps\Microsoft.GamingApp_2001.1001.4.0_x64__8wekyb3d8bbwe [2020-01-14] (Microsoft Corporation) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\system32\nvshext.dll [2019-10-16] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.RTV1] => c:\windows\system32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed]

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2019-03-05 15:06 - 2019-03-05 15:06 - 000232448 _____ () [File not signed] C:\Program Files (x86)\MSI Afterburner\RTCore.dll
2019-03-05 15:06 - 2019-03-05 15:06 - 000057344 _____ () [File not signed] C:\Program Files (x86)\MSI Afterburner\RTFC.dll
2019-03-05 15:07 - 2019-03-05 15:07 - 000642048 _____ () [File not signed] C:\Program Files (x86)\MSI Afterburner\RTHAL.dll
2019-03-05 15:06 - 2019-03-05 15:06 - 000072704 _____ () [File not signed] C:\Program Files (x86)\MSI Afterburner\RTMUI.dll
2019-03-05 15:06 - 2019-03-05 15:06 - 000364544 _____ () [File not signed] C:\Program Files (x86)\MSI Afterburner\RTUI.dll
2016-11-17 09:29 - 2019-05-11 15:24 - 085372416 _____ () [File not signed] C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\libcef.dll
2018-10-27 18:13 - 2018-10-27 18:13 - 000043520 _____ () [File not signed] C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\libUbiCustomEvent.dll
2019-07-25 17:39 - 2019-07-25 17:39 - 000060416 _____ (by nICO (chick80@libero.it) - 2004. Modified by TranslucentTB devs) [File not signed] C:\Program Files\WindowsApps\28017CharlesMilette.TranslucentTB_7.0.0.0_x86__v826wp6bftszj\TranslucentTB\CPicker.dll
2019-02-11 16:39 - 2009-03-18 16:00 - 000151552 ____N (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\ShareDLL\CADI\CTCadiEP.dll
2014-07-03 17:22 - 2014-07-03 17:22 - 000555008 _____ (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Z-Series\Sound Blaster Z-Series Control Panel\CTAudEp.dll
2011-09-16 17:04 - 2011-09-16 17:04 - 000238080 _____ (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Z-Series\Sound Blaster Z-Series Control Panel\CTLoadRs.dll
2013-02-27 11:29 - 2013-02-27 11:29 - 000251904 _____ (Creative Technology Ltd) [File not signed] C:\Program Files (x86)\Creative\Sound Blaster Z-Series\Sound Blaster Z-Series Control Panel\HKDetect.dll
2019-08-17 17:12 - 2019-02-21 17:00 - 000078336 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2017-07-11 22:01 - 2019-05-11 15:24 - 000518144 _____ (The Chromium Authors) [File not signed] C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\chrome_elf.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\jarda\Data aplikací:00e481b5e22dbe1f649fcddd505d3eb7 [394]
AlternateDataStreams: C:\Users\jarda\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394]

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2017-03-18 22:03 - 2017-03-18 22:01 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\jarda\Pictures\uv031el5tsmz.jpg
DNS Servers: 1.1.1.1 - 1.0.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: Hyper-V Extensible Virtual Switch -> vms_pp (disabled)

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

MSCONFIG\Services: CLink4Service => 3
MSCONFIG\Services: HiPatchService => 3
MSCONFIG\Services: MBAMService => 3
MSCONFIG\Services: Origin Web Helper Service => 2
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "Module Loader"
HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0"
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\StartupApproved\Run: => "ASRock A-Tuning"
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\StartupApproved\Run: => "OneDriveSetup"
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\StartupApproved\Run: => "Gaijin.Net Agent"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [OpenSSH-Server-In-TCP] => (Allow) %SystemRoot%\system32\OpenSSH\sshd.exe No File
FirewallRules: [UDP Query User{85EAB661-F026-45C7-80E7-D7474C3E8D2A}D:\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) D:\minecraft\runtime\jre-x64\bin\javaw.exe No File
FirewallRules: [TCP Query User{06B6A787-8FF3-496E-9714-BE29A98147C6}D:\minecraft\runtime\jre-x64\bin\javaw.exe] => (Allow) D:\minecraft\runtime\jre-x64\bin\javaw.exe No File
FirewallRules: [{3F2C56CD-BE0F-4533-AB02-6B4B94A7053D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mordhau\Mordhau.exe No File
FirewallRules: [{6FD4A119-B13A-4D6D-A20F-DF47701F2E30}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mordhau\Mordhau.exe No File
FirewallRules: [{C9844B29-6350-4CF6-A027-2CE2F6C0C841}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\Win64\UDK.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{A22A246D-2CA9-4CC8-B302-8121D155D4DD}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\Win64\UDK.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{FC277C0E-981A-4FBB-A239-E8C3B284AEB6}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\Win32\UDK.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{4A22A479-7133-4DBD-BBA1-85C862251360}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\Win32\UDK.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{7E59C493-E002-4269-8E85-EB83446F2509}] => (Allow) D:\Steam\steamapps\common\Risk of Rain 2\Risk of Rain 2.exe () [File not signed]
FirewallRules: [{83A288C7-F9C7-452C-8B6E-441717C0450C}] => (Allow) D:\Steam\steamapps\common\Risk of Rain 2\Risk of Rain 2.exe () [File not signed]
FirewallRules: [{A05FFA09-3AF7-4CF0-BFB8-BED2877ACBBC}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5B230AB9-3093-4C5B-8655-8131BEEB23B2}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{D74B056E-B75C-4D6C-BD51-0466C4B4D17D}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{3B3E9645-2AE7-4FCF-89EE-9FA19CA0E4F8}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{BF22AC1F-9B8B-427C-B069-8F18254939D0}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{D63DB5AB-76A8-461A-AF60-9D2B26C7CEF1}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{621CF085-8769-48F1-8B17-E2723EDE6B5F}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{4ACEC59F-D273-4F58-8D92-E6B346B7E013}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{73D88517-3953-4DE9-8813-F5EB2998112B}] => (Allow) D:\Steam\steamapps\common\Paladins\Binaries\Win64\PaladinsEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{2D35A437-4AEA-4FB6-801D-1237C96850F0}] => (Allow) D:\Steam\steamapps\common\Paladins\Binaries\Win64\PaladinsEAC.exe (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
FirewallRules: [{8F4866BE-AED2-4AFC-9909-7BE0545753FF}] => (Allow) D:\Steam\steamapps\common\TPH\TPH.exe () [File not signed]
FirewallRules: [{44CCB642-2004-47B6-A1B5-0CACB6660AAA}] => (Allow) D:\Steam\steamapps\common\TPH\TPH.exe () [File not signed]
FirewallRules: [{CFCCFFBB-5243-4061-9816-3E0F670B2B37}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe (Psyonix, Inc) [File not signed]
FirewallRules: [{499E502B-15BE-4298-B1E4-B11DA93C7A40}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe (Psyonix, Inc) [File not signed]
FirewallRules: [{1B4FB47B-6560-4607-BAEA-A362471B2A5C}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{FEBD895C-D0A9-4A06-8E89-D6A06B12FB11}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{93089038-6F53-4427-826E-7D7E83EA551E}] => (Allow) D:\Steam\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanet.exe (NADEO SASU -> Nadeo)
FirewallRules: [{6E5A1453-1A2F-472D-A9E2-2066FF219FEB}] => (Allow) D:\Steam\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanet.exe (NADEO SASU -> Nadeo)
FirewallRules: [{E48E2723-7284-420D-8158-65871CC611B9}] => (Allow) D:\Steam\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanetLauncher.exe (NADEO -> )
FirewallRules: [{57F38DB3-C3C9-4A53-8F88-154FDEC4FAFB}] => (Allow) D:\Steam\steamapps\common\ManiaPlanet_TMStadium\ManiaPlanetLauncher.exe (NADEO -> )
FirewallRules: [{D90D592F-30CF-4044-B831-23C923C764EC}] => (Allow) D:\Steam\steamapps\common\Dead Cells\deadcells_gl.exe () [File not signed]
FirewallRules: [{816BA7E4-B201-44A6-A973-9D125F05968B}] => (Allow) D:\Steam\steamapps\common\Dead Cells\deadcells_gl.exe () [File not signed]
FirewallRules: [{1C579831-42D1-49E0-ABE6-F230869023B0}] => (Allow) D:\Steam\steamapps\common\Dead Cells\deadcells.exe () [File not signed]
FirewallRules: [{079070C8-54D9-48BC-BD20-86053C5E170D}] => (Allow) D:\Steam\steamapps\common\Dead Cells\deadcells.exe () [File not signed]
FirewallRules: [{4DDF276C-22D4-499B-978C-9B2D60383C3E}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{50510D61-296C-48E3-8CF4-5AFD0BECED8F}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7B73EF07-09F4-4523-A56A-33CF7C34C545}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\Win64\UDK.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{5A2D5B41-39C9-4074-8BF7-2E8BBB76BD5B}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\Win64\UDK.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{304F5903-1EAF-4036-9A55-5BE795E1D8CE}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\Win32\UDK.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{78EE7FF2-409C-4B64-AE09-FC1B14229DE0}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\Win32\UDK.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{71FC8575-0B59-42E1-B59C-E522B978A882}C:\program files\crucial\crucial storage executive\java\bin\javaw.exe] => (Allow) C:\program files\crucial\crucial storage executive\java\bin\javaw.exe
FirewallRules: [TCP Query User{432B58D3-7D9E-447F-918B-5503F644FE11}C:\program files\crucial\crucial storage executive\java\bin\javaw.exe] => (Allow) C:\program files\crucial\crucial storage executive\java\bin\javaw.exe
FirewallRules: [{C03BFAA9-162F-4743-97BF-F092846F6315}] => (Allow) D:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{D5885F6A-0637-4A69-89D6-4B4BAB81CFC3}] => (Allow) D:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{FD0F3DAA-E55A-4B35-AAEE-6EFA8A884007}] => (Allow) D:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{BB1CDFB3-362A-4F1E-AED6-D92AFF6F88D7}] => (Allow) D:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [UDP Query User{3AEDDF59-E63B-4F4B-A190-8495DFD7F2D7}C:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe No File
FirewallRules: [TCP Query User{B296CE36-2B84-4C78-8D80-143BE9B141CB}C:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe No File
FirewallRules: [UDP Query User{47068F05-6406-4EAD-94BE-DE0228AB439D}D:\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win32\paladins.exe (Hi-Rez Studios, Inc. -> Hirez Studios, Inc.)
FirewallRules: [TCP Query User{DA5429F9-FACB-4F77-B7B8-0E4A9686BDFF}D:\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win32\paladins.exe (Hi-Rez Studios, Inc. -> Hirez Studios, Inc.)
FirewallRules: [UDP Query User{74037024-EBE5-4F30-8325-01753BE3D0AB}C:\users\jarda\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\jarda\appdata\roaming\utorrent\utorrent.exe No File
FirewallRules: [TCP Query User{BCCCFC47-AA52-4310-A7CA-09D63E919813}C:\users\jarda\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\jarda\appdata\roaming\utorrent\utorrent.exe No File
FirewallRules: [UDP Query User{F812E2AC-EC43-49DE-B4D2-F90CC19948A8}D:\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\steam\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [TCP Query User{5B36F012-43A8-4A76-BAFA-82DDB16B1A84}D:\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\steam\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [UDP Query User{82EB7769-0DFF-4C99-98A4-62F77562F334}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe No File
FirewallRules: [TCP Query User{5400665D-DC83-41B4-B2F7-1F726C581189}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe No File
FirewallRules: [{2826AF02-FDBB-4F6E-8CAF-9A7C67E76A5E}] => (Allow) D:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{8770BF07-CD70-47C3-8626-262D302E4E2B}] => (Allow) D:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{6A19AB76-1945-4A71-A184-1F1889BEBD30}] => (Allow) D:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{C19CAB4D-5833-47D9-8601-B362EB5AA72F}] => (Allow) D:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{E9EA3394-5866-4E0A-841A-98E954DB99D1}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe (Psyonix, Inc) [File not signed]
FirewallRules: [{4D0E8E87-3057-415E-A76D-EAB45139C54F}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe (Psyonix, Inc) [File not signed]
FirewallRules: [UDP Query User{507C33A9-DFAB-4488-AF16-A02399525C9A}D:\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win32\paladins.exe (Hi-Rez Studios, Inc. -> Hirez Studios, Inc.)
FirewallRules: [TCP Query User{035D415A-C6F3-4ADD-AF32-64973E898414}D:\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win32\paladins.exe (Hi-Rez Studios, Inc. -> Hirez Studios, Inc.)
FirewallRules: [UDP Query User{8A5240ED-1BA0-4FDE-90A8-E32826E9DC42}C:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe No File
FirewallRules: [TCP Query User{D0BBF74F-C991-4CAB-856F-FF10D906FEBF}C:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\arma 3\arma3_x64.exe No File
FirewallRules: [{52E37177-AB5A-4F7B-A752-F6450CBFBC3D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Arma 3\arma3launcher.exe No File
FirewallRules: [{7845D1DB-7DB8-4224-80DE-FDD319953B59}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Arma 3\arma3launcher.exe No File
FirewallRules: [UDP Query User{2A823FEB-4297-4450-9649-6429B9259F0E}C:\users\jarda\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\jarda\appdata\roaming\utorrent\utorrent.exe No File
FirewallRules: [TCP Query User{27BCA296-DF25-48D4-8977-971EC6A5693F}C:\users\jarda\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\jarda\appdata\roaming\utorrent\utorrent.exe No File
FirewallRules: [{625559B8-CBBC-4AC0-9072-27E9A93E6745}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\UDKLift.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{4F925373-360E-4ABF-8B77-109039BD9253}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\UDKLift.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{A57448CF-BEAF-4A9A-AC10-87082C1BB24D}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\Win64\UDK.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{41F90BAF-708C-44CC-9025-DFC3E19103FE}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\Win64\UDK.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{67F114A4-4192-4001-BEF3-0E0110A584A8}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\Win32\UDK.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{1B17C542-05F6-4F76-AF1C-3D3BD30C81E9}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\Win32\UDK.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{A5C717C3-B4DD-44AB-BB9E-4DEDADA8DA89}] => (Allow) D:\Steam\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe (Microsoft) [File not signed]
FirewallRules: [{30E792DD-B13E-4A43-B3DF-DEBA25D8722D}] => (Allow) D:\Steam\steamapps\common\Paladins\Binaries\Win32\HirezBridge.exe (Microsoft) [File not signed]
FirewallRules: [UDP Query User{BF9C0D34-13BB-45E9-9D47-540E1240FFBA}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe No File
FirewallRules: [TCP Query User{E67B799E-9EE2-4812-9DAA-C4625A0ED831}C:\program files\logitech gaming software\lcore.exe] => (Allow) C:\program files\logitech gaming software\lcore.exe No File
FirewallRules: [UDP Query User{52D206B5-F24B-45D1-9ADB-77460D32348A}D:\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\steam\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [TCP Query User{DBC78DE4-AED9-46AF-9A4C-3069477651C2}D:\steam\steamapps\common\grand theft auto v\gta5.exe] => (Allow) D:\steam\steamapps\common\grand theft auto v\gta5.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{2D5986D4-F408-4536-A323-51F481C8AE34}] => (Allow) D:\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{AC7835F1-E879-418A-A1FD-0C379AE1C06D}] => (Allow) D:\Steam\steamapps\common\Grand Theft Auto V\GTAVLauncher.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{751D8466-3709-4B41-A02C-4561C5CD7380}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{456D3397-2D70-4768-B5C4-5AB4992FE955}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [TCP Query User{AD6CFD36-8021-4805-9152-307DC48E4874}D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe (Hirez Studios, Inc.) [File not signed]
FirewallRules: [UDP Query User{C3A1A7CD-F2AA-4C0F-94ED-6C02AAA8B293}D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe] => (Allow) D:\steam\steamapps\common\paladins\binaries\win64\paladins.exe (Hirez Studios, Inc.) [File not signed]
FirewallRules: [{B50A855D-AD8D-405E-9303-A7CC7FCC246A}] => (Allow) C:\Program Files (x86)\Sony\PS4 Remote Play\RemotePlay.exe (Sony Interactive Entertainment Inc. -> Sony Interactive Entertainment Inc.)
FirewallRules: [{E7DB3E65-343F-4DA8-8625-B2024D159FCF}] => (Allow) D:\Steam\steamapps\common\TheRoomTwo\TheRoomTwo.exe () [File not signed]
FirewallRules: [{8E88C5EE-EEB5-4E85-B6F0-64A172BDE70D}] => (Allow) D:\Steam\steamapps\common\TheRoomTwo\TheRoomTwo.exe () [File not signed]
FirewallRules: [{FBA7D6A0-8C70-4F59-94DD-EEADF7A2E521}] => (Allow) D:\Steam\steamapps\common\TheRoomThree\TheRoomThree.exe () [File not signed]
FirewallRules: [{FD79C79E-2403-496D-BF51-A763A8F08354}] => (Allow) D:\Steam\steamapps\common\TheRoomThree\TheRoomThree.exe () [File not signed]
FirewallRules: [TCP Query User{DC152D86-2BC1-4044-A952-9E3D854148BA}D:\emulátory\cemu\usb helper\usbhelperlauncher.exe] => (Allow) D:\emulátory\cemu\usb helper\usbhelperlauncher.exe No File
FirewallRules: [UDP Query User{9770FD97-425F-473C-9EED-8C1792997F53}D:\emulátory\cemu\usb helper\usbhelperlauncher.exe] => (Allow) D:\emulátory\cemu\usb helper\usbhelperlauncher.exe No File
FirewallRules: [TCP Query User{3C19D83E-BF19-4965-9CAC-6B311AB623AD}D:\emulátory\cemu\usb helper\patched.exe] => (Allow) D:\emulátory\cemu\usb helper\patched.exe No File
FirewallRules: [UDP Query User{2D8F4C73-0916-4385-A3CC-A89EE9137900}D:\emulátory\cemu\usb helper\patched.exe] => (Allow) D:\emulátory\cemu\usb helper\patched.exe No File
FirewallRules: [{C5776FDB-E486-44FE-BA1D-9319850C47BF}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{A527A7DA-52BC-4A79-991D-882A4171C1F9}] => (Allow) C:\Windows\SysWOW64\PnkBstrA.exe (Even Balance, Inc. -> )
FirewallRules: [{107C8EF0-0CFC-434A-A9FB-A5B551993D45}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{A5B40B27-78C4-4A33-913E-0CEB7DCF76FB}] => (Allow) C:\Windows\SysWOW64\PnkBstrB.exe (Even Balance, Inc. -> )
FirewallRules: [{7802F4E0-00AF-4F80-A17F-56E2B4283824}] => (Allow) D:\Steam\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{28572D49-4659-40D6-B7AA-0D84071DB0F6}] => (Allow) D:\Steam\steamapps\common\Grand Theft Auto V\PlayGTAV.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{42C0ACF6-9570-44D9-86BC-A76FB58DF69E}] => (Allow) D:\Steam\steamapps\common\Crash Bandicoot - N Sane Trilogy\CrashBandicootNSaneTrilogy.exe (Activision Publishing Inc -> )
FirewallRules: [{D85B5490-4C14-4770-BDA5-CBE2CED33FF9}] => (Allow) D:\Steam\steamapps\common\Crash Bandicoot - N Sane Trilogy\CrashBandicootNSaneTrilogy.exe (Activision Publishing Inc -> )
FirewallRules: [{72603AAE-DFE4-455A-8E39-A72567F4F9EF}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\Win32\UDK.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{6F6E02AF-47A3-4B45-910D-BF03951247D9}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\Win32\UDK.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{1CB265B8-33BE-4B70-8363-3F6E7378E833}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\Win64\UDK.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{FC22EA60-A67E-42E9-9E41-FD3EA1F549A8}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\Win64\UDK.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{4B89CD77-D1C8-47B4-BBDC-92B664B66EAA}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\UDKLift.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{7DC56DD9-CF4F-45F6-9DF1-0A169BDD2734}] => (Allow) D:\Steam\steamapps\common\Viscera\Binaries\UDKLift.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{6BD9BC02-538B-46D4-9194-5D87244BD048}D:\battlenet\call of duty modern warfare\modernwarfare.exe] => (Allow) D:\battlenet\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision)
FirewallRules: [UDP Query User{C9AB91BC-ED7D-4D3A-A744-FD580665CCAA}D:\battlenet\call of duty modern warfare\modernwarfare.exe] => (Allow) D:\battlenet\call of duty modern warfare\modernwarfare.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{40EAD136-BAF1-4E33-8C1D-6D869A74A16E}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A603D91A-72F3-4A2A-8C2D-3C9930B9FBD8}] => (Allow) C:\Program Files\BlueStacks\HD-Player.exe (BlueStack Systems, Inc.) [File not signed]
FirewallRules: [TCP Query User{651C9E59-0510-48CB-8657-73637405F000}D:\superliminal\superliminal.exe] => (Block) D:\superliminal\superliminal.exe No File
FirewallRules: [UDP Query User{BC95F4D6-729A-4EE6-A7C5-9C8BD9EA77B7}D:\superliminal\superliminal.exe] => (Block) D:\superliminal\superliminal.exe No File
FirewallRules: [TCP Query User{3B15A806-7A78-4D91-BCC3-9716D4D9DD05}C:\users\jarda\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\jarda\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{60DE775B-092F-48B5-AD4C-595909707CBF}C:\users\jarda\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\jarda\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{AC0340E0-35BF-406A-84AC-BCE2D18956B1}C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe] => (Block) C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe No File
FirewallRules: [UDP Query User{A59FB125-A741-4870-A110-3E324E47015D}C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe] => (Block) C:\program files (x86)\steam\steamapps\common\grand theft auto iv\gtaiv\gtaiv.exe No File
FirewallRules: [{1F301FBF-EEEA-4E56-B1C0-DDD25BFAEA7D}] => (Allow) D:\Steam\steamapps\common\Drift86 V3\Drift86 V3.exe () [File not signed]
FirewallRules: [{D9B6DAAB-A646-4719-93ED-9321FDDFCE0C}] => (Allow) D:\Steam\steamapps\common\Drift86 V3\Drift86 V3.exe () [File not signed]
FirewallRules: [{88DE9E95-C3AA-427E-961F-7476868630CB}] => (Allow) D:\Steam\steamapps\common\Demolish & Build 2018\demolish.exe () [File not signed]
FirewallRules: [{683AB1F0-137C-4569-842F-D1FFC8C660E5}] => (Allow) D:\Steam\steamapps\common\Demolish & Build 2018\demolish.exe () [File not signed]
FirewallRules: [TCP Query User{E8986A92-6983-41C3-827F-54ACD9185D53}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [UDP Query User{8ED83392-ECF2-40E9-B807-5221EDD94A4F}C:\program files\lghub\lghub_agent.exe] => (Allow) C:\program files\lghub\lghub_agent.exe (Logitech Inc -> Logitech, Inc.)
FirewallRules: [{4EE97B53-EF29-49A3-987C-0C19D5B75324}] => (Allow) D:\Steam\steamapps\common\Game Dev Tycoon\nw.exe (Greenheart Games Pty. Ltd. -> )
FirewallRules: [{8DD2167C-73BE-4239-B8BC-5F462AE6D049}] => (Allow) D:\Steam\steamapps\common\Game Dev Tycoon\nw.exe (Greenheart Games Pty. Ltd. -> )
FirewallRules: [{0E1443C8-EB27-4BCA-8349-0D8789C404FE}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe (Psyonix, Inc) [File not signed]
FirewallRules: [{1EF28B3C-05E0-4BFB-B5CB-C85F1D909530}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe (Psyonix, Inc) [File not signed]
FirewallRules: [TCP Query User{5F46AA80-3C40-4AA8-8D43-7AB5527B5C93}D:\steam\steamapps\common\pandemic express\bin\win_x64\pandemicexpress.exe] => (Allow) D:\steam\steamapps\common\pandemic express\bin\win_x64\pandemicexpress.exe No File
FirewallRules: [UDP Query User{67F6007B-63EC-4E04-B42F-047E9C48A2EC}D:\steam\steamapps\common\pandemic express\bin\win_x64\pandemicexpress.exe] => (Allow) D:\steam\steamapps\common\pandemic express\bin\win_x64\pandemicexpress.exe No File
FirewallRules: [{43BCD1ED-3E50-4BD1-BA96-A0F96BEB9307}] => (Allow) D:\Steam\steamapps\common\SlayTheSpire\jre\bin\javaw.exe No File
FirewallRules: [{496AC519-0838-4665-8105-69317E578F2D}] => (Allow) D:\Steam\steamapps\common\SlayTheSpire\jre\bin\javaw.exe No File
FirewallRules: [{546113A6-473B-4929-A819-766011DFA0BB}] => (Allow) D:\Steam\steamapps\common\Hot Lava\archive\build\hotlava.exe () [File not signed]
FirewallRules: [{A74BB7CF-6883-41B7-B99E-17667FC800CC}] => (Allow) D:\Steam\steamapps\common\Hot Lava\archive\build\hotlava.exe () [File not signed]
FirewallRules: [{76806D7E-152E-468C-992E-A9EC983EB0E4}] => (Allow) D:\Steam\steamapps\common\Tennis in the Face\TennisInTheFace.exe () [File not signed]
FirewallRules: [{89D6FF2D-2114-491A-AF2B-3A49CF9C5EA8}] => (Allow) D:\Steam\steamapps\common\Tennis in the Face\TennisInTheFace.exe () [File not signed]
FirewallRules: [{8467F339-3A14-4713-8BF7-EE4539832CCF}] => (Allow) D:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{858DD67D-02E9-4106-BD84-E82048D5DD24}] => (Allow) D:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{86B5D8A5-DAC4-4E2A-A050-BD23B7B357E8}] => (Allow) D:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{FA4A8FAA-F31F-4937-AAB8-6F92BF593156}] => (Allow) D:\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{6DC4B4E1-22EF-4D17-BF0B-AABC13A742C4}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{EB448CEB-C951-41F1-8DF9-116C0246D910}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{86CDFBD5-0AD4-4FFD-AD18-6BA5E25F3AC8}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{05AB6915-B331-4EFA-8701-F4548177CCBC}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{1A243A15-0E40-4AC2-961A-9EB0DA8E541E}] => (Allow) D:\Steam\steamapps\common\Team Fortress 2\hl2.exe (Valve -> )
FirewallRules: [{4FFFD5B9-B2AD-431D-BECA-B657ECAC177A}] => (Allow) D:\Steam\steamapps\common\Team Fortress 2\hl2.exe (Valve -> )
FirewallRules: [{F57268D4-DB50-4C21-9577-A766EB8C5E7A}] => (Allow) E:\Hry\Steam\steamapps\common\Arma 3\arma3launcher.exe (BOHEMIA INTERACTIVE a.s. -> Bohemia Interactive)
FirewallRules: [{EDEF3ACA-7A40-48D3-9D28-519E9829BA48}] => (Allow) E:\Hry\Steam\steamapps\common\Arma 3\arma3launcher.exe (BOHEMIA INTERACTIVE a.s. -> Bohemia Interactive)
FirewallRules: [{FAF6D810-9B28-4E79-BDE5-307C4F1A5529}] => (Allow) E:\Hry\Steam\steamapps\common\Mordhau\Mordhau.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{85565E20-430F-459E-ADB8-6FA4798CD1B9}] => (Allow) E:\Hry\Steam\steamapps\common\Mordhau\Mordhau.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{F78E8E8C-5AFE-44E8-8AF1-1E8032AD2F29}] => (Allow) E:\Hry\Uplay\Assassin's Creed Odyssey\ACOdyssey_plus.exe (UBISOFT ENTERTAINMENT INC. -> )
FirewallRules: [{EBDFF16A-9330-486C-A9DB-5F6DEC44A358}] => (Allow) E:\Hry\Uplay\Assassin's Creed Odyssey\ACOdyssey_plus.exe (UBISOFT ENTERTAINMENT INC. -> )
FirewallRules: [{A8116B7A-9B52-4726-86E0-10A042F422C0}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{EF5C7B83-C832-427B-A06E-8F29A8618D44}] => (Allow) E:\Hry\Steam\steamapps\common\RailWorks\RailWorks.exe () [File not signed]
FirewallRules: [{01B62922-0C3A-4761-973E-7695C5397F6F}] => (Allow) E:\Hry\Steam\steamapps\common\RailWorks\RailWorks.exe () [File not signed]
FirewallRules: [{8AE0E535-7F85-47BE-AB55-CF50DBD4AB7A}] => (Allow) E:\Hry\Steam\steamapps\common\RailWorks\RailWorks64.exe () [File not signed]
FirewallRules: [{B5A10BAD-F149-4B54-8C18-4E92D278B829}] => (Allow) E:\Hry\Steam\steamapps\common\RailWorks\RailWorks64.exe () [File not signed]
FirewallRules: [{6AA18C10-8F78-4DD0-BEFF-203FCF16B5FC}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\RocketLeague.exe (Psyonix, Inc. -> Psyonix LLC)
FirewallRules: [{F1B1B85C-B87C-47D5-B323-661987B110B8}] => (Allow) D:\Steam\steamapps\common\rocketleague\Binaries\RocketLeague.exe (Psyonix, Inc. -> Psyonix LLC)
FirewallRules: [{64C86571-3BD9-4F0A-A05E-0656C8CF3EF1}] => (Allow) E:\Hry\Steam\steamapps\common\RollerCoaster Tycoon Deluxe\RCT.EXE () [File not signed]
FirewallRules: [{258870A4-8147-422D-B874-F378E65AD812}] => (Allow) E:\Hry\Steam\steamapps\common\RollerCoaster Tycoon Deluxe\RCT.EXE () [File not signed]

==================== Restore Points =========================

02-02-2020 11:00:33 Removed Minecraft Launcher

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (02/09/2020 03:18:33 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (11476,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (02/09/2020 01:56:30 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (11464,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (02/09/2020 01:22:11 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4056,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (02/09/2020 11:40:14 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (1160,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (02/09/2020 11:34:56 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7156,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (02/09/2020 10:05:51 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (11760,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (02/09/2020 09:55:23 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4020,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (02/09/2020 09:33:28 AM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (10760,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).


System errors:
=============
Error: (02/09/2020 09:12:59 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba LGHUB Updater Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (02/09/2020 09:12:54 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba Microsoft Office Klikni a spusť byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.

Error: (02/09/2020 09:12:54 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Steam Client Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (02/09/2020 09:12:54 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba LGHUB Updater Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 5000 milisekund: Restartovat službu.

Error: (02/09/2020 09:12:54 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Adobe Acrobat Update Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (02/09/2020 09:12:54 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) PROSet Monitoring Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (02/09/2020 09:12:54 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Sound Blaster Audio Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (02/09/2020 09:12:54 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba PnkBstrA byla neočekávaně ukončena. Tento stav nastal již 1krát.


Windows Defender:
===================================
Date: 2020-02-08 21:48:32.620
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {5787008A-6AD6-4EAB-A1F0-645CCECC6D13}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2020-02-06 20:58:15.258
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {BEDF4DED-5B67-4A74-8D5D-082FE8573864}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2020-01-29 17:17:57.316
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {B35A6840-6475-4C45-B783-92CF71E8681C}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2020-01-25 00:23:47.574
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {4C7917BD-8C2C-45DF-8AD5-09E8C5B15BA3}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2020-01-24 23:24:28.956
Description:
Prohledávání Antivirová ochrana v programu Windows Defender bylo zastaveno před dokončením.
ID prohledávání: {CDA6A558-C2C8-40F9-84A0-7AF6E89E1E49}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

CodeIntegrity:
===================================

Date: 2019-11-16 14:36:35.644
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-11-16 14:36:35.634
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-11-16 14:36:35.552
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-11-16 14:36:35.544
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\FlightSettings.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-11-16 14:36:35.530
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsreg.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-11-16 14:36:35.520
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\dsreg.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-11-16 14:36:35.256
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.

Date: 2019-11-16 14:36:35.237
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.

==================== Memory info ===========================

BIOS: American Megatrends Inc. P2.70 03/21/2018
Motherboard: ASRock Z270 Extreme4
Processor: Intel(R) Core(TM) i7-7700K CPU @ 4.20GHz
Percentage of memory in use: 26%
Total physical RAM: 16343.01 MB
Available physical RAM: 11970.92 MB
Total Virtual: 18775.01 MB
Available Virtual: 12475.27 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:231.93 GB) (Free:160.96 GB) NTFS
Drive d: (Nový svazek) (Fixed) (Total:931.51 GB) (Free:389.26 GB) NTFS
Drive e: (rychlik) (Fixed) (Total:931.51 GB) (Free:719.45 GB) NTFS

\\?\Volume{ed20bff4-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.49 GB) (Free:0.46 GB) NTFS
\\?\Volume{ed20bff4-0000-0000-0000-201b3a000000}\ () (Fixed) (Total:0.46 GB) (Free:0.07 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: ED20BFF4)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=231.9 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=471 MB) - (Type=27)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: BA27F81C)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==========================================================
Disk: 2 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: 7B4C07EE)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

Re: Preventivka

Napsal: 09 úno 2020 19:33
od Conder
:arrow: Otvor poznamkovy blok (Win+R -> notepad -> enter)
  • Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:

    Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
    HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\MountPoints2: {4dfdfab2-f310-11e9-b3b3-7085c22fdfe2} - "E:\OnePlus_setup.exe" /s
    HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\MountPoints2: {ea1bf5cd-5f64-11e8-b170-7085c22fdfe2} - "E:\OnePlus_setup.exe" /s
    CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx <not found>
    ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
    ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} =>  -> No File
    ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} =>  -> No File
    ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File
    ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} =>  -> No File
    ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
    ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} =>  -> No File
    ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} =>  -> No File
    ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
    ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} =>  -> No File
    ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} =>  -> No File
    AlternateDataStreams: C:\Users\jarda\Data aplikací:00e481b5e22dbe1f649fcddd505d3eb7 [394]
    AlternateDataStreams: C:\Users\jarda\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394]
    
    Hosts:
    EmptyTemp:
    End
  • Uloz na plochu s nazvom fixlist.txt
  • Spusti znovu FRST a klikni na Fix
  • Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
  • Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj

Re: Preventivka

Napsal: 09 úno 2020 20:36
od Jarda62
Provedeno.

Fix result of Farbar Recovery Scan Tool (x64) Version: 02-02-2020 02
Ran by jarda (09-02-2020 20:34:25) Run:1
Running from C:\Users\jarda\Desktop
Loaded Profiles: jarda (Available Profiles: jarda)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:

PowerShell: Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\MountPoints2: {4dfdfab2-f310-11e9-b3b3-7085c22fdfe2} - "E:\OnePlus_setup.exe" /s
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\...\MountPoints2: {ea1bf5cd-5f64-11e8-b170-7085c22fdfe2} - "E:\OnePlus_setup.exe" /s
CHR HKLM\...\Chrome\Extension: [ngpampappnmepgilojfohadhhmbhlaek] - C:\Program Files (x86)\Internet Download Manager\IDMGCExt.crx <not found>
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
AlternateDataStreams: C:\Users\jarda\Data aplikací:00e481b5e22dbe1f649fcddd505d3eb7 [394]
AlternateDataStreams: C:\Users\jarda\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394]

Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
Restore point was successfully created.

========= Get-ChildItem -Path "$ENV:USERPROFILE\Desktop" -Recurse -Force | Measure-Object -Property Length -Sum =========



Count : 11
Average :
Sum : 11095810
Maximum :
Minimum :
Property : Length




========= End of Powershell: =========

HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4dfdfab2-f310-11e9-b3b3-7085c22fdfe2} => removed successfully
HKU\S-1-5-21-1576612898-3511084868-1984252970-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{ea1bf5cd-5f64-11e8-b170-7085c22fdfe2} => removed successfully
HKLM\SOFTWARE\Google\Chrome\Extensions\ngpampappnmepgilojfohadhhmbhlaek => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ FileSyncEx => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
"HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}" => removed successfully
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ FileSyncEx => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Offline Files => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Offline Files => removed successfully
C:\Users\jarda\Data aplikací => ":00e481b5e22dbe1f649fcddd505d3eb7" ADS removed successfully
"C:\Users\jarda\AppData\Roaming" => ":00e481b5e22dbe1f649fcddd505d3eb7" ADS not found.
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

BITS transfer queue => 10510336 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 2139537282 B
Java, Flash, Steam htmlcache => 392538379 B
Windows/system/drivers => 10965047 B
Edge => 1322085 B
Chrome => 870370562 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 307044 B
jarda => 58520236 B

RecycleBin => 848828 B
EmptyTemp: => 3.2 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 20:34:50 ====

Re: Preventivka

Napsal: 09 úno 2020 23:02
od Conder
OK. Ako to vyzera s PC?

Re: Preventivka

Napsal: 09 úno 2020 23:14
od Jarda62
Všechno šlape dobře.

Re: Preventivka

Napsal: 10 úno 2020 22:16
od Conder
:arrow: Tak este upraceme po pouzitych nastrojoch:

Re: Preventivka

Napsal: 11 úno 2020 16:45
od Jarda62
Provedeno. Vše vyčištěno.

Děkuji moc za kontrolu. Můžeme uzavřít, pokud je to všechno.

Re: Preventivka

Napsal: 11 úno 2020 22:42
od Conder
Nie je zaco, rad som pomohol :)