Stránka 1 z 1

Pomalejší reakce ntb

Napsal: 14 dub 2020 17:27
od Hop
Dobrý den,
několik dnů pozoruji zpomalené reakce ntb, dokonce došlo k nečekanému restartu.
Dnes jsem z uložto stáhnul zip v příloze a po rozbalení kliknul na zástupce :-(((
Proto posílám logy a prosím o kontrolu.
Děkuji
Pavel Papežík

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-04-2020
Ran by papepa (administrator) on N-PED-W-01 (LENOVO 80QB) (14-04-2020 18:10:37)
Running from C:\Users\papepa\Downloads
Loaded Profiles: papepa (Available Profiles: papepa & lokadmin)
Platform: Windows 10 Pro Version 1909 18363.752 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Systems) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSettings.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0346830.inf_amd64_f723e13ffb3b2652\B345901\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\c0346830.inf_amd64_f723e13ffb3b2652\B345901\atiesrxx.exe
(Dassault Systèmes) [File not signed] C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\egui.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(Google LLC -> ) C:\Program Files\Google\Drive File Stream\38.0.15.0\crashpad_handler.exe <2>
(Google LLC -> Google, Inc.) C:\Program Files\Google\Drive File Stream\38.0.15.0\GoogleDriveFS.exe <5>
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_b9b9c39e4e2b88eb\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_b9b9c39e4e2b88eb\igfxEM.exe
(Intel(R) Wireless Connectivity Solutions -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.20022.11011.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wksprt.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated) C:\Program Files\Synaptics\SynFP\Shared\SensorDBSynch.exe
(Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe
(Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated) C:\Windows\System32\valWbioSyncSvc.exe
(OpenVPN Inc. -> ) C:\Program Files\OpenVPN\bin\openvpn-gui.exe
(OpenVPN Inc. -> The OpenVPN Project) C:\Program Files\OpenVPN\bin\openvpnserv.exe
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <2>
(Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16171784 2015-09-11] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1411864 2015-09-11] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1411864 2015-09-11] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [324352 2018-03-13] (ESET, spol. s r.o. -> ESET)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3947704 2015-08-13] (Synaptics Incorporated -> Synaptics Incorporated)
HKLM-x32\...\Run: [Opera Browser Assistant] => C:\Program Files\Opera\assistant\browser_assistant.exe [3024920 2020-04-08] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-2774596813-2351541506-2060952939-1285\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\38.0.15.0\GoogleDriveFS.exe [47522088 2020-04-08] (Google LLC -> Google, Inc.)
HKU\S-1-5-21-2774596813-2351541506-2060952939-1285\...\Run: [OPENVPN-GUI] => C:\Program Files\OpenVPN\bin\openvpn-gui.exe [669112 2019-10-31] (OpenVPN Inc. -> )
HKU\S-1-5-21-2774596813-2351541506-2060952939-1285\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [24552064 2019-10-16] (Piriform Software Ltd -> Piriform Ltd)
HKU\S-1-5-21-2774596813-2351541506-2060952939-1285\...\Policies\Explorer: [NoDrives] 1048576
HKLM\Software\Microsoft\Active Setup\Installed Components: [OpenVPN_UserSetup] -> reg add HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v OPENVPN-GUI /t REG_SZ /d "C:\Program Files\OpenVPN\bin\openvpn-gui.exe" /f
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\80.0.3987.163\Installer\chrmstp.exe [2020-04-03] (Google LLC -> Google LLC)
GroupPolicy: Restriction ? <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {1440591C-331C-4F5A-A0A4-6FA3D5E42BC5} - System32\Tasks\Microsoft\Windows\GroupPolicy\{3E0A038B-D834-4930-9981-E89C9BFF83AA} => C:\WINDOWS\system32\gpupdate.exe [29696 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Task: {1ECD7C36-E0B3-43C4-AF80-750E06CCC8F7} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [608384 2019-10-16] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {263D7637-1C33-45D0-A8B0-6C56985D550A} - System32\Tasks\Microsoft\Windows\RemoteApp and Desktop Connections Update\papepa@zs-vsechovice.local\Report update status => %SYSTEMROOT%\System32\RUNDLL32 tsworkspace,WorkspaceStatusNotify2
Task: {5BBC4AA3-FBD2-4402-B8A8-D92CD9B022DF} - System32\Tasks\Opera scheduled Autoupdate 1542820619 => C:\Program Files\Opera\launcher.exe [1538584 2020-03-27] (Opera Software AS -> Opera Software)
Task: {6A697895-8A4D-4B09-9199-8B62DEA1F8D3} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [18458752 2019-10-16] (Piriform Software Ltd -> Piriform Ltd)
Task: {6DBD0A32-1C37-4580-AB4C-FFA93E662C9A} - System32\Tasks\Microsoft\Windows\GroupPolicy\{A7719E0F-10DB-4640-AD8C-490CC6AD5202} => C:\WINDOWS\system32\gpupdate.exe [29696 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
Task: {6F8A13F3-D394-4740-9707-191115439541} - System32\Tasks\Microsoft\Windows\RemoteApp and Desktop Connections Update\papepa@zs-vsechovice.local\Process policy => {E444E1B9-502C-44F9-B714-30DA330D0E8E} C:\Windows\System32\tsworkspace.dll [1243648 2020-04-11] (Microsoft Windows -> Microsoft Corporation)
Task: {805BE745-50D2-4B63-BD87-0D9F2F4B20BA} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [68280 2019-08-16] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {8DF28B97-05C3-4668-9E3B-A2B8DDE987A0} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-11-19] (Google Inc -> Google Inc.)
Task: {98E636BB-299F-4952-B3AE-5823567B372C} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [153168 2018-11-19] (Google Inc -> Google Inc.)
Task: {99004552-CF42-4E47-BA8A-AB210AFCBA02} - System32\Tasks\Adobe Flash Player NPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_32_0_0_344_Plugin.exe [1458232 2020-03-11] (Adobe Inc. -> Adobe)
Task: {A2AFFABD-539E-45EF-BDEF-8E0E9113130C} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [335416 2020-03-11] (Adobe Inc. -> Adobe)
Task: {A3B9B962-4915-4869-9CC0-ECFAD0307124} - System32\Tasks\Opera scheduled Autoupdate 1542661691 => C:\Users\lokadmin\AppData\Local\Programs\Opera\launcher.exe [1367640 2018-11-14] (Opera Software AS -> Opera Software)
Task: {AF871075-E569-4276-AB19-24DAF645EAFB} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61112 2019-08-16] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {C4AA4992-D950-4B57-A119-B079AC73B42E} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1242704 2020-02-25] (Adobe Inc. -> Adobe Systems)
Task: {C72D4C24-BD9E-426B-A8E6-7E45DE0B5913} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {DACC5D04-B236-47CF-94A7-5191DA072C68} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe
Task: {DE4F3380-E774-47AB-BE3D-93837CCFBB7A} - System32\Tasks\Maxthon5 Update => C:\Program Files (x86)\Maxthon5\Bin\Maxthon.exe [170776 2019-01-20] (Maxthon Technology Co, Ltd. -> Maxthon International ltd.)
Task: {E8E5934D-19BB-4EE1-8ADB-31741B211248} - System32\Tasks\Opera scheduled assistant Autoupdate 1576843375 => C:\Program Files\Opera\launcher.exe [1538584 2020-03-27] (Opera Software AS -> Opera Software)
Task: {EE3A1061-85EE-4FDF-8298-6CF1E01F3F81} - System32\Tasks\Microsoft\Windows\RemoteApp and Desktop Connections Update\papepa@zs-vsechovice.local\Update connections => %SYSTEMROOT%\System32\RUNDLL32 tsworkspace,TaskUpdateWorkspaces2
Task: {EFE73344-1144-4829-8C3D-725B75123CAC} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {F5443121-7149-4526-8A2D-2204E6AC877C} - System32\Tasks\Microsoft\Windows\RemoteApp and Desktop Connections Update\papepa@zs-vsechovice.local\Start Workspace Runtime at logon => {4F1DFCA6-3AAD-48E1-8406-4BC21A501D7C} C:\WINDOWS\system32\wksprt.exe [464896 2019-03-19] (Microsoft Windows -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.10.1
Tcpip\..\Interfaces\{7a1c86fb-a20c-4cb4-b247-4129cb0e3742}: [DhcpNameServer] 192.168.10.1
Tcpip\..\Interfaces\{ac4194e0-48c2-4d06-aa14-17d846d93231}: [DhcpNameServer] 192.168.10.1

Internet Explorer:
==================
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2018-07-20] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_231\bin\ssv.dll [2019-10-23] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2018-07-22] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_231\bin\jp2ssv.dll [2019-10-23] (Oracle America, Inc. -> Oracle Corporation)
Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)

Edge:
======
DownloadDir: C:\Users\papepa\Downloads
Edge HomeButtonPage: HKU\S-1-5-21-2774596813-2351541506-2060952939-1285 -> hxxp://www.papeweb.cz/

FireFox:
========
FF DefaultProfile: hy6uwtq0.default
FF ProfilePath: C:\Users\papepa\AppData\Roaming\Mozilla\Firefox\Profiles\hy6uwtq0.default [2020-01-28]
FF ProfilePath: C:\Users\papepa\AppData\Roaming\Mozilla\Firefox\Profiles\jqgyklyv.default-release [2020-04-14]
FF Homepage: Mozilla\Firefox\Profiles\jqgyklyv.default-release -> http://www.papeweb.cz
FF Extension: (Mate Translate – translator, dictionary) - C:\Users\papepa\AppData\Roaming\Mozilla\Firefox\Profiles\jqgyklyv.default-release\Extensions\jid1-TMndP6cdKgxLcQ@jetpack.xpi [2020-03-15]
FF Extension: (Dark Wood Panels) - C:\Users\papepa\AppData\Roaming\Mozilla\Firefox\Profiles\jqgyklyv.default-release\Extensions\{f4ac0fe5-c396-464c-a302-fb4991582158}.xpi [2020-01-28]
FF HKLM-x32\...\Firefox\Extensions: [{8B1E27AE-119E-456b-B22E-08C61FACB097}] - C:\Program Files (x86)\Tomabo\MP4 Converter\MP4D_FF.xpi
FF Extension: (MP4 Downloader Extension) - C:\Program Files (x86)\Tomabo\MP4 Converter\MP4D_FF.xpi [2016-07-26] [Legacy]
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_32_0_0_344.dll [2020-03-11] (Adobe Inc. -> )
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_32_0_0_344.dll [2020-03-11] (Adobe Inc. -> )
FF Plugin-x32: @java.com/DTPlugin,version=11.231.2 -> C:\Program Files (x86)\Java\jre1.8.0_231\bin\dtplugin\npDeployJava1.dll [2019-10-23] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.231.2 -> C:\Program Files (x86)\Java\jre1.8.0_231\bin\plugin2\npjp2.dll [2019-10-23] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=3.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2017-11-01] (Adobe Systems, Incorporated -> Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\papepa\AppData\Local\Google\Chrome\User Data\Default [2020-04-14]
CHR Notifications: Default -> hxxps://chat.google.com; hxxps://meet.google.com; hxxps://www.viry.cz
CHR Extension: (Prezentace) - C:\Users\papepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-01-28]
CHR Extension: (Dokumenty) - C:\Users\papepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-01-28]
CHR Extension: (Disk Google) - C:\Users\papepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-01-28]
CHR Extension: (YouTube) - C:\Users\papepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-01-28]
CHR Extension: (Tabulky) - C:\Users\papepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-01-28]
CHR Extension: (Dokumenty Google offline) - C:\Users\papepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-03-10]
CHR Extension: (Application Launcher for Drive (by Google)) - C:\Users\papepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2020-01-28]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\papepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-01-28]
CHR Extension: (Gmail) - C:\Users\papepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-01-28]
CHR Extension: (Chrome Media Router) - C:\Users\papepa\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-04-03]
CHR HKU\S-1-5-21-2774596813-2351541506-2060952939-1285\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AMD External Events Utility; C:\WINDOWS\System32\DriverStore\FileRepository\c0346830.inf_amd64_f723e13ffb3b2652\B345901\atiesrxx.exe [508008 2019-09-18] (Advanced Micro Devices, Inc. -> AMD)
R2 DraftSight API Service; C:\Program Files\Dassault Systemes\DraftSight\bin\dsHttpApiService.exe [123392 2017-10-06] (Dassault Systèmes) [File not signed]
S3 EHttpSrv; C:\Program Files\ESET\ESET Security\ehttpsrv.exe [55928 2018-03-13] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2009184 2018-03-13] (ESET, spol. s r.o. -> ESET)
S3 eshasrv; C:\Program Files\ESET\ESET Security\eshasrv.exe [197240 2018-03-13] (ESET, spol. s r.o. -> ESET)
R2 ibtsiva; C:\WINDOWS\system32\ibtsiva.exe [542008 2018-10-14] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
S2 MxService; C:\Program Files (x86)\Maxthon5\Bin\MxService.exe [176928 2019-01-20] (Maxthon Technology Co, Ltd. -> Maxthon International ltd.)
R2 Net Driver HPZ12; C:\Windows\System32\HPZinw12.dll [50688 2011-04-13] (Hewlett-Packard) [File not signed]
S3 OpenVPNService; C:\Program Files\OpenVPN\bin\openvpnserv2.exe [24192 2018-03-06] (OpenVPN Technologies, Inc. -> )
R2 OpenVPNServiceInteractive; C:\Program Files\OpenVPN\bin\openvpnserv.exe [66488 2019-10-31] (OpenVPN Inc. -> The OpenVPN Project)
S3 OpenVPNServiceLegacy; C:\Program Files\OpenVPN\bin\openvpnserv.exe [66488 2019-10-31] (OpenVPN Inc. -> The OpenVPN Project)
R2 Pml Driver HPZ12; C:\Windows\System32\HPZipm12.dll [66048 2011-04-13] (Hewlett-Packard) [File not signed]
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5930136 2020-04-11] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [11294448 2018-03-09] (TeamViewer GmbH -> TeamViewer GmbH)
R2 valWBFPolicyService; C:\WINDOWS\system32\valWBFPolicyService.exe [86544 2016-07-13] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated)
R2 valWbioSyncSvc; C:\WINDOWS\system32\valWbioSyncSvc.exe [56848 2016-07-13] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4098056 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [113992 2019-03-19] (Microsoft Corporation -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdkmdag; C:\WINDOWS\System32\DriverStore\FileRepository\c0346830.inf_amd64_f723e13ffb3b2652\B345901\atikmdag.sys [55249512 2019-09-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 amdkmdap; C:\WINDOWS\System32\DriverStore\FileRepository\c0346830.inf_amd64_f723e13ffb3b2652\B345901\atikmpag.sys [595048 2019-09-18] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [131984 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [135368 2018-03-17] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15800 2019-06-05] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [180056 2018-03-17] (ESET, spol. s r.o. -> ESET)
R1 epfwwfpr; C:\WINDOWS\system32\DRIVERS\epfwwfpr.sys [78208 2018-03-17] (ESET, spol. s r.o. -> ESET)
R1 googledrivefs2985; C:\WINDOWS\System32\DRIVERS\googledrivefs2985.sys [126296 2020-02-25] (Google LLC -> Google, Inc.)
R1 googledrivefs3042; C:\WINDOWS\System32\DRIVERS\googledrivefs3042.sys [129880 2020-04-08] (Google LLC -> Google, Inc.)
R3 ibtusb; C:\WINDOWS\system32\DRIVERS\ibtusb.sys [143520 2018-10-14] (Intel(R) Wireless Connectivity Solutions -> Intel Corporation)
R3 MarvinBus; C:\WINDOWS\System32\drivers\MarvinBus64.sys [261120 2005-09-23] (Microsoft Windows Hardware Compatibility Publisher -> Pinnacle Systems GmbH)
R3 Netwtw04; C:\WINDOWS\System32\drivers\Netwtw04.sys [7708160 2019-03-19] (Microsoft Windows -> Intel Corporation)
R2 npf; C:\WINDOWS\System32\drivers\npf.sys [36600 2014-08-19] (Riverbed Technology, Inc. -> Riverbed Technology, Inc.)
R3 RSP2STOR; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [312048 2015-09-10] (Realtek Semiconductor Corp -> Realtek Semiconductor Corp.)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [662528 2019-03-19] (Microsoft Windows -> Realtek )
R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [44216 2015-08-13] (Synaptics Incorporated -> Synaptics Incorporated)
R1 SMIDriver; C:\WINDOWS\system32\DRIVERS\smi.sys [39488 2016-07-13] (Synaptics Inc. -> Synaptics Incorporated)
R3 SPUVCbv; C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys [744928 2015-10-26] (Sunplus Innovation Technology Inc. -> Sunplus)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [166288 2017-05-18] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [39920 2019-10-23] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S3 tapoas; C:\WINDOWS\System32\drivers\tapoas.sys [27136 2016-04-21] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46472 2019-03-19] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [333784 2019-03-19] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [62432 2019-03-19] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-04-14 18:10 - 2020-04-14 18:12 - 000023755 _____ C:\Users\papepa\Downloads\FRST.txt
2020-04-14 18:09 - 2020-04-14 18:11 - 000000000 ____D C:\FRST
2020-04-14 18:09 - 2020-04-14 18:09 - 000000000 ____D C:\Users\papepa\Downloads\FRST-OlderVersion
2020-04-14 18:00 - 2020-04-14 18:00 - 008196784 _____ (Malwarebytes) C:\Users\papepa\Downloads\adwcleaner_8.0.4.exe
2020-04-14 17:47 - 2020-04-08 13:31 - 000129880 _____ (Google, Inc.) C:\WINDOWS\system32\Drivers\googledrivefs3042.sys
2020-04-14 17:17 - 2020-04-14 17:17 - 000064866 _____ C:\Users\papepa\Desktop\V siti.zip
2020-04-14 17:13 - 2020-04-14 17:13 - 002110741 _____ C:\Users\papepa\Downloads\kybersikana- aktivity.pdf
2020-04-14 17:13 - 2020-04-14 17:13 - 000605284 _____ C:\Users\papepa\Downloads\sexting-aktivity.pdf
2020-04-14 17:11 - 2020-04-14 17:11 - 000224319 _____ C:\Users\papepa\Downloads\Doporučení DKC k filmu V síti.pdf
2020-04-14 17:09 - 2020-04-14 17:09 - 001231370 _____ C:\Users\papepa\Downloads\METODIKA FINAL.pdf
2020-04-14 17:08 - 2020-04-14 17:08 - 000238675 _____ C:\Users\papepa\Downloads\vyjadreni_kopecky_vsiti.pdf
2020-04-14 16:10 - 2020-04-14 16:10 - 000301043 _____ C:\Users\papepa\Downloads\Prirodoveda.pdf
2020-04-14 13:54 - 2020-04-14 13:54 - 000001486 _____ C:\Users\papepa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\4K Video Downloader.lnk
2020-04-14 13:36 - 2020-04-14 13:37 - 082571264 _____ C:\Users\papepa\Downloads\4kvideodownloader_4.12.0_x64.msi
2020-04-14 10:13 - 2020-04-14 10:13 - 000311182 _____ C:\Users\papepa\Downloads\48-bio-cd-zadani-vstupnich-ukolu (1).pdf
2020-04-14 10:08 - 2020-04-14 10:08 - 000311182 _____ C:\Users\papepa\Downloads\48-bio-cd-zadani-vstupnich-ukolu.pdf
2020-04-14 09:13 - 2020-04-14 09:13 - 000644492 _____ C:\Users\papepa\Desktop\dotacni-prilezitosti-2020-v-oblasti-skolstvi.pdf
2020-04-13 19:43 - 2020-04-13 20:08 - 000000677 _____ C:\Users\papepa\Desktop\procenta.txt
2020-04-11 08:42 - 2020-04-11 08:42 - 025444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 019813376 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramWorld.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 018027008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 008013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 007017472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 004129416 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 002494744 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 002369576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.AppAgent.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 002188600 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystems64.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 001659408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.AppAgent.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 001610240 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 001545216 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstsc.exe
2020-04-11 08:42 - 2020-04-11 08:42 - 001495864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppVEntSubsystems32.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 001386296 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppVEntSubsystemController.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 001264640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstsc.exe
2020-04-11 08:42 - 2020-04-11 08:42 - 000744960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2013CustomActions.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Mirage.Internal.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 000689152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CPFilters.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\nltest.exe
2020-04-11 08:42 - 2020-04-11 08:42 - 000514560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 000456192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2020-04-11 08:42 - 2020-04-11 08:42 - 000452096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpclip.exe
2020-04-11 08:42 - 2020-04-11 08:42 - 000321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbadmin.exe
2020-04-11 08:42 - 2020-04-11 08:42 - 000227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 000187392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasrad.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 000179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.XamlHost.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 000175616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.XamlHost.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 000090624 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 000070144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iasacct.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2010CustomActions.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 000040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iaspolcy.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2010CustomActions.dll
2020-04-11 08:42 - 2020-04-11 08:42 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ias.dll
2020-04-11 08:41 - 2020-04-11 08:42 - 022636544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 014818816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 009930552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-04-11 08:41 - 2020-04-11 08:41 - 007604584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 006525424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 004563200 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-04-11 08:41 - 2020-04-11 08:41 - 003799552 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 003753472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 003742544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 003547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 002986808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-04-11 08:41 - 2020-04-11 08:41 - 002800128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-04-11 08:41 - 2020-04-11 08:41 - 002768440 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 002087168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 001945600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 001835008 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 001757096 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-04-11 08:41 - 2020-04-11 08:41 - 001587712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aadtb.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 001512832 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2020-04-11 08:41 - 2020-04-11 08:41 - 001477112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 001397560 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-04-11 08:41 - 2020-04-11 08:41 - 001368576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 001368576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 001300280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2020-04-11 08:41 - 2020-04-11 08:41 - 001261808 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 001257472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcss.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 001245184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBroker.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 001243648 _____ (Microsoft Corporation) C:\WINDOWS\system32\TSWorkspace.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 001081856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.Vpn.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 001077264 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-04-11 08:41 - 2020-04-11 08:41 - 001055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000993280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TSWorkspace.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000980832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webservices.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000974336 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000924672 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000923136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Management.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000912896 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000892416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000865280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Security.Authentication.Web.Core.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000865280 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000811320 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000785920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000759272 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FlightSettings.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000701440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BTAGService.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000673704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000665088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000647680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Management.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000638480 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000632832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000628408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kernel32.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000618296 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000555008 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2020-04-11 08:41 - 2020-04-11 08:41 - 000538160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000530432 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcext.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000515600 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcntel.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000513576 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000507152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000498688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000491008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppcext.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000487784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000477496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-04-11 08:41 - 2020-04-11 08:41 - 000456504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdbss.sys
2020-04-11 08:41 - 2020-04-11 08:41 - 000415760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\aepic.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000410112 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000406480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Enumeration.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\es.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000381440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000336384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\es.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2020-04-11 08:41 - 2020-04-11 08:41 - 000324408 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-04-11 08:41 - 2020-04-11 08:41 - 000323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcommdlg.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000277864 _____ (Microsoft Corporation) C:\WINDOWS\system32\LsaIso.exe
2020-04-11 08:41 - 2020-04-11 08:41 - 000259776 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000251704 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasrad.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000211256 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\LanguageComponentsInstaller.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000197632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Win32CompatibilityAppraiserCSP.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000190048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000185952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000178192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\partmgr.sys
2020-04-11 08:41 - 2020-04-11 08:41 - 000164368 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2020-04-11 08:41 - 2020-04-11 08:41 - 000163840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\updatepolicy.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000147696 _____ (Microsoft Corporation) C:\WINDOWS\system32\smss.exe
2020-04-11 08:41 - 2020-04-11 08:41 - 000142544 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicensingUI.exe
2020-04-11 08:41 - 2020-04-11 08:41 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\slc.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppc.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000123952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KerbClientShared.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slc.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000115120 _____ (Microsoft Corporation) C:\WINDOWS\system32\phoneactivate.exe
2020-04-11 08:41 - 2020-04-11 08:41 - 000105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\utcutil.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000102216 _____ (Microsoft Corporation) C:\WINDOWS\system32\changepk.exe
2020-04-11 08:41 - 2020-04-11 08:41 - 000101888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sppc.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000093712 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000089536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\iasacct.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000084280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-04-11 08:41 - 2020-04-11 08:41 - 000071680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Custom.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000066624 _____ (Microsoft Corporation) C:\WINDOWS\system32\iumcrypt.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000050544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CloudNotifications.exe
2020-04-11 08:41 - 2020-04-11 08:41 - 000050176 _____ (Microsoft Corporation) C:\WINDOWS\system32\iaspolcy.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tbauth.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpgradeResultsUI.exe
2020-04-11 08:41 - 2020-04-11 08:41 - 000036152 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2020-04-11 08:41 - 2020-04-11 08:41 - 000033080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hwpolicy.sys
2020-04-11 08:41 - 2020-04-11 08:41 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wksprtPS.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ias.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cmintegrator.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TokenBrokerCookies.exe
2020-04-11 08:41 - 2020-04-11 08:41 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\slcext.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000021520 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000019968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\slcext.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000017920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wksprtPS.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Custom.ps.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000010752 _____ (Microsoft Corporation) C:\WINDOWS\system32\DMAlertListener.ProxyStub.dll
2020-04-11 08:41 - 2020-04-11 08:41 - 000007680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DMAlertListener.ProxyStub.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 017790464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 007849216 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 006168064 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 003728384 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-04-11 08:40 - 2020-04-11 08:40 - 003708928 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 003586872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-04-11 08:40 - 2020-04-11 08:40 - 003109376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 002871608 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2020-04-11 08:40 - 2020-04-11 08:40 - 002114560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.CloudStore.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 001960448 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadtb.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 001918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wevtsvc.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 001783296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 001726264 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 001497600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 001480192 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-04-11 08:40 - 2020-04-11 08:40 - 001427456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Vpn.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 001378528 _____ (Microsoft Corporation) C:\WINDOWS\system32\webservices.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 001180672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 001136128 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 001083904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 001011200 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000915192 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000874512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-04-11 08:40 - 2020-04-11 08:40 - 000840704 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000747320 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000722072 _____ (Microsoft Corporation) C:\WINDOWS\system32\kernel32.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000684560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000605184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-04-11 08:40 - 2020-04-11 08:40 - 000604984 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000550400 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-04-11 08:40 - 2020-04-11 08:40 - 000524264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Enumeration.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-04-11 08:40 - 2020-04-11 08:40 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000465208 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000459688 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-04-11 08:40 - 2020-04-11 08:40 - 000441144 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-04-11 08:40 - 2020-04-11 08:40 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000259072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000256000 _____ (Microsoft Corporation) C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000231912 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000200192 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatepolicy.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000152408 _____ (Microsoft Corporation) C:\WINDOWS\system32\KerbClientShared.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000127064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000071480 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32appinventorycsp.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\keepaliveprovider.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcadm.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000057856 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcalua.exe
2020-04-11 08:40 - 2020-04-11 08:40 - 000047208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2020-04-11 08:40 - 2020-04-11 08:40 - 000045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\cmintegrator.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.Common.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2020-04-11 08:40 - 2020-04-11 08:40 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Custom.ps.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sbservicetrigger.dll
2020-04-11 08:40 - 2020-04-11 08:40 - 000012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaevts.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 003977216 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 002143232 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcDesktopMonSvc.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 002126144 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 001942528 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 001762816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 001719808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 001413704 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 001263856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2020-04-11 08:39 - 2020-04-11 08:39 - 001127424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 001071616 _____ (Microsoft Corporation) C:\WINDOWS\system32\BTAGService.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 000893952 _____ (Microsoft Corporation) C:\WINDOWS\system32\FlightSettings.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 000879616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Service.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 000735744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 000654912 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 000637240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2020-04-11 08:39 - 2020-04-11 08:39 - 000589384 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2020-04-11 08:39 - 2020-04-11 08:39 - 000416016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 000355328 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcApi.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 000278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2020-04-11 08:39 - 2020-04-11 08:39 - 000251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\winnat.sys
2020-04-11 08:39 - 2020-04-11 08:39 - 000169472 _____ (Microsoft Corporation) C:\WINDOWS\system32\SpatialAudioLicenseSrv.exe
2020-04-11 08:39 - 2020-04-11 08:39 - 000108032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 000088352 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 000076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\autopilot.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.EnrollmentStatusTracking.ConfigProvider.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 000060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudNotifications.exe
2020-04-11 08:39 - 2020-04-11 08:39 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\audioresourceregistrar.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 000039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcProxyStubs.dll
2020-04-11 08:39 - 2020-04-11 08:39 - 000030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2020-04-11 08:38 - 2020-04-11 08:38 - 000437560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2020-04-11 08:38 - 2020-04-11 08:38 - 000297272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2020-04-11 08:38 - 2020-04-11 08:38 - 000193848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2020-04-11 08:38 - 2020-04-11 08:38 - 000151352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scmbus.sys
2020-04-11 08:38 - 2020-04-11 08:38 - 000089912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\volmgr.sys
2020-04-11 08:38 - 2020-04-11 08:38 - 000059192 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2020-04-11 08:38 - 2020-04-11 08:38 - 000028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\flpydisk.sys
2020-04-11 08:38 - 2020-04-11 08:38 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sfloppy.sys
2020-04-10 13:32 - 2020-04-14 16:41 - 000000000 ____D C:\Users\papepa\Desktop\květy - rozbor
2020-04-08 20:28 - 2020-04-08 20:28 - 000000000 ____D C:\Users\papepa\AppData\Local\ESET
2020-04-08 20:16 - 2020-04-08 20:16 - 005374264 _____ (Smart Projects ) C:\Users\papepa\Downloads\isobuster_install.exe
2020-04-08 20:11 - 2020-04-08 20:11 - 002487224 _____ (Jihosoft Studio ) C:\Users\papepa\Downloads\JihosoftISOMaker.exe
2020-04-08 10:10 - 2020-04-14 16:13 - 000000000 ____D C:\Users\papepa\Desktop\Uhlíkový cyklus
2020-04-08 09:51 - 2020-04-08 10:05 - 198022319 _____ C:\Users\papepa\Desktop\Trojčlenka2.mp4
2020-04-08 06:43 - 2020-04-08 19:08 - 000686239 _____ C:\Users\papepa\Desktop\Trojčlenka2.pptx
2020-04-07 22:20 - 2020-04-14 18:09 - 002281472 _____ (Farbar) C:\Users\papepa\Downloads\FRST64.exe
2020-04-07 19:30 - 2020-04-07 19:30 - 000103118 _____ C:\Users\papepa\Downloads\Certificate Office 2016 Home and Student.pdf
2020-04-07 16:40 - 2020-04-07 16:40 - 000000000 ___HD C:\$Windows.~WS
2020-04-07 14:41 - 2020-04-07 14:41 - 019255000 _____ (Microsoft Corporation) C:\Users\papepa\Downloads\MediaCreationTool1909.exe
2020-04-07 10:03 - 2020-04-10 13:23 - 000000000 ____D C:\Users\papepa\Desktop\žížalky
2020-04-06 23:10 - 2020-04-06 23:10 - 000355822 _____ C:\Users\papepa\Downloads\profi-6-podzemni-instalace-high.pdf
2020-04-06 22:59 - 2020-04-06 22:59 - 000039545 _____ C:\Users\papepa\Downloads\Akumulace_(_shromazdovani)_vody_u_domu (1).pdf
2020-04-06 22:54 - 2020-04-06 22:54 - 000039545 _____ C:\Users\papepa\Downloads\Akumulace_(_shromazdovani)_vody_u_domu.pdf
2020-04-06 22:53 - 2020-04-06 23:15 - 000000000 ____D C:\Users\papepa\Desktop\sucho 9
2020-04-06 22:15 - 2020-04-06 22:48 - 000000000 ____D C:\Users\papepa\Desktop\poznávačka
2020-04-06 09:57 - 2020-04-06 09:57 - 008196784 _____ (Malwarebytes) C:\Users\papepa\Desktop\adwcleaner_8.0.4.exe
2020-04-05 20:21 - 2020-04-05 20:43 - 303944443 _____ C:\Users\papepa\Desktop\Trojčlenka 1.mp4
2020-04-05 18:07 - 2020-04-05 18:07 - 000633842 _____ C:\Users\papepa\Desktop\Trojčlenka do PDF.pptx
2020-04-05 18:06 - 2020-04-05 18:08 - 000575190 _____ C:\Users\papepa\Desktop\Trojčlenka.pdf
2020-04-03 10:02 - 2020-04-03 10:02 - 000166093 _____ C:\Users\papepa\Downloads\Scan.pdf
2020-04-02 11:33 - 2020-04-02 11:33 - 000000000 ____D C:\Users\papepa\AppData\Local\ElevatedDiagnostics
2020-04-01 21:08 - 2020-04-01 21:08 - 000000000 ____D C:\Users\papepa\AppData\Local\OneDrive
2020-04-01 13:47 - 2020-04-05 21:29 - 032426788 _____ C:\Users\papepa\Desktop\Trojčlenka1.pptx
2020-04-01 11:50 - 2020-04-01 13:01 - 000000000 ____D C:\Users\papepa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Grammarly
2020-04-01 11:50 - 2020-04-01 13:01 - 000000000 ____D C:\Users\papepa\AppData\Local\GrammarlyForWindows
2020-04-01 11:50 - 2020-04-01 11:51 - 000000000 ____D C:\Users\papepa\AppData\Roaming\Grammarly
2020-04-01 11:50 - 2020-04-01 11:50 - 000000000 ____D C:\Users\papepa\AppData\Local\SquirrelTemp
2020-03-31 14:29 - 2020-03-31 14:29 - 001787394 _____ C:\Users\papepa\Downloads\c4ca2118-aa1f-4f03-a27e-063d10263d0d.tmp
2020-03-31 14:05 - 2020-03-31 14:05 - 002023082 _____ C:\Users\papepa\Downloads\e2308cb8-2bb0-4800-97f5-a7fc9374e5d8.tmp
2020-03-31 13:56 - 2020-03-31 13:56 - 002023082 _____ C:\Users\papepa\Downloads\a0593c58-01ce-45e6-a206-62aae843fef2.tmp
2020-03-31 13:52 - 2020-03-31 13:52 - 003970447 _____ C:\Users\papepa\Downloads\237dbe36-3633-4f56-82a3-ebcc03f8e6ff.tmp
2020-03-31 13:51 - 2020-03-31 13:51 - 004624806 _____ C:\Users\papepa\Downloads\374c87ec-f4eb-4710-a8db-7a9a19d51f2f.tmp
2020-03-30 14:46 - 2020-03-30 14:46 - 000092148 _____ C:\Users\papepa\Downloads\Jak žít spolu a s virem Covid-19_20-3-2020.pdf
2020-03-30 14:46 - 2020-03-30 14:46 - 000088942 _____ C:\Users\papepa\Desktop\Jak žít spolu a s virem Covid-19_20-3-2020.pdf
2020-03-30 13:50 - 2020-04-14 17:25 - 000000041 _____ C:\Users\papepa\Desktop\nic.txt
2020-03-30 13:50 - 2020-03-30 13:50 - 000000000 ____D C:\Users\papepa\Documents\My Drawings
2020-03-30 13:50 - 2020-03-30 13:50 - 000000000 ____D C:\Users\papepa\AppData\Roaming\DraftSight
2020-03-30 13:50 - 2020-03-30 13:50 - 000000000 ____D C:\Users\papepa\AppData\Local\Dassault Systemes
2020-03-30 13:50 - 2020-03-30 13:50 - 000000000 ____D C:\Users\papepa\AppData\Local\CrashRpt
2020-03-30 12:08 - 2020-03-30 12:08 - 011391588 _____ C:\Users\papepa\Desktop\Studijni_materialy_k_terennimu_cviceni_ze_zoologie_-_bezobratli.pdf
2020-03-29 21:54 - 2020-03-30 17:07 - 000000000 ____D C:\Users\papepa\Desktop\Listy v praxi
2020-03-29 21:35 - 2020-03-31 10:27 - 000000000 ____D C:\Users\papepa\Desktop\fenologická pozorování
2020-03-28 23:16 - 2020-03-28 23:16 - 000000000 ____D C:\Users\papepa\AppData\Roaming\4kdownload.com
2020-03-28 12:48 - 2020-03-28 12:48 - 000000000 ____D C:\Users\papepa\AppData\Local\4kdownload.com
2020-03-27 18:00 - 2020-04-10 11:41 - 000000000 ____D C:\Users\papepa\Desktop\soustava souřadnic
2020-03-27 15:06 - 2020-03-27 15:06 - 000141112 _____ C:\Users\papepa\Downloads\fe55e426-ca32-44bb-9897-00d6951e45d1.tmp
2020-03-26 13:36 - 2020-03-27 12:44 - 000000000 ____D C:\Users\papepa\Desktop\chemie
2020-03-26 12:31 - 2020-03-26 12:31 - 000141112 _____ C:\Users\papepa\Downloads\acd4e480-0fe3-4030-b774-790798d78c5f.tmp
2020-03-26 12:26 - 2020-03-26 12:26 - 000141112 _____ C:\Users\papepa\Downloads\b47d559d-7870-49a4-8cfb-6e416f25bc2c.tmp
2020-03-26 12:23 - 2020-04-01 10:44 - 000000000 ____D C:\Users\papepa\Desktop\šneci
2020-03-25 15:41 - 2020-03-25 15:41 - 000001483 _____ C:\Users\papepa\Desktop\cerveny (CERNY) – zástupce.lnk
2020-03-25 15:24 - 2020-03-25 15:26 - 000000000 ____D C:\matika
2020-03-25 15:23 - 2020-03-25 15:23 - 000000000 ____D C:\My Web Sites
2020-03-25 15:21 - 2020-03-25 15:21 - 000001104 _____ C:\Users\papepa\Desktop\HTTrack Website Copier.lnk
2020-03-25 15:21 - 2020-03-25 15:21 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinHTTrack
2020-03-25 15:20 - 2020-03-25 15:21 - 000000000 ____D C:\Program Files (x86)\WinHTTrack
2020-03-25 15:12 - 2020-03-25 15:12 - 000910890 _____ C:\Users\papepa\Desktop\webdownloader.zip
2020-03-25 15:02 - 2020-03-25 15:02 - 000093696 _____ C:\Users\papepa\Desktop\m7_pomer02.pps
2020-03-25 14:14 - 2020-03-29 21:41 - 000069721 _____ C:\Users\papepa\Desktop\Výkaz_práce_MAP_II_březen_2020_xxx.xlsx
2020-03-25 09:22 - 2020-03-25 10:22 - 000002407 _____ C:\Users\papepa\Desktop\listy v praxi.txt
2020-03-25 08:21 - 2020-03-25 08:21 - 000000000 ____D C:\Users\papepa\Desktop\epson návody
2020-03-24 11:33 - 2020-03-29 22:16 - 000000000 ____D C:\Users\papepa\Desktop\klíčení semen
2020-03-24 09:39 - 2020-04-01 10:47 - 000002003 _____ C:\Users\papepa\Desktop\práce žáků – zástupce.lnk
2020-03-23 19:34 - 2020-03-24 13:05 - 000000000 ____D C:\Users\papepa\Desktop\__Ŕád ICT
2020-03-23 17:52 - 2020-03-23 17:54 - 000000294 _____ C:\Users\papepa\Desktop\VPN.txt
2020-03-23 09:58 - 2020-04-02 11:57 - 000000000 ____D C:\Users\papepa\Desktop\pokojíčky
2020-03-22 23:46 - 2020-03-23 19:59 - 000000000 ____D C:\Users\papepa\Desktop\nová informatika
2020-03-22 15:43 - 2020-03-22 20:04 - 000000000 ____D C:\Users\papepa\AppData\Roaming\Zoner
2020-03-21 19:50 - 2020-03-25 15:35 - 000007629 _____ C:\Users\papepa\AppData\Local\Resmon.ResmonCfg
2020-03-21 08:59 - 2020-03-21 09:12 - 000000000 ____D C:\Users\papepa\AppData\Roaming\PhotoFiltre 7
2020-03-20 19:26 - 2020-03-20 19:26 - 000000000 ___RD C:\Users\papepa\Downloads\Microsoft.SkypeApp_kzf8qxf38zg5c!App
2020-03-19 18:03 - 2020-03-19 22:47 - 000000755 _____ C:\Users\papepa\Desktop\hlísti.txt
2020-03-18 10:39 - 2020-03-18 10:39 - 001278851 _____ C:\Users\papepa\Desktop\matika 7 procvičování.pdf
2020-03-18 09:31 - 2020-03-25 17:42 - 000000068 _____ C:\Users\papepa\Desktop\odkaz do CASD Hranice.txt
2020-03-17 22:28 - 2020-03-17 22:34 - 000000000 ____D C:\Users\papepa\Desktop\grant 2020
2020-03-16 23:20 - 2020-03-16 23:21 - 061017903 _____ C:\Users\papepa\Desktop\moodle-latest-37.zip
2020-03-15 19:16 - 2020-03-15 19:16 - 000000000 ____D C:\Users\papepa\AppData\Local\Dassault_Systèmes
2020-03-15 18:20 - 2020-03-15 18:20 - 000000000 ____D C:\Users\papepa\AppData\Roaming\IsolatedStorage
2020-03-15 18:20 - 2020-03-15 18:20 - 000000000 ____D C:\Users\papepa\AppData\Roaming\BIOVIA
2020-03-15 18:19 - 2020-03-15 18:19 - 000002081 _____ C:\Users\Public\Desktop\BIOVIA Draw 2019.lnk
2020-03-15 18:19 - 2020-03-15 18:19 - 000002081 _____ C:\ProgramData\Desktop\BIOVIA Draw 2019.lnk
2020-03-15 18:19 - 2020-03-15 18:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BIOVIA
2020-03-15 18:19 - 2020-03-15 18:19 - 000000000 ____D C:\ISISBASEDIR
2020-03-15 18:17 - 2020-03-15 18:17 - 000000000 ____D C:\Users\papepa\AppData\Local\Downloaded Installations
2020-03-15 18:17 - 2020-03-15 18:17 - 000000000 ____D C:\Program Files\BIOVIA
2020-03-15 15:53 - 2020-03-16 16:29 - 000000995 _____ C:\Users\papepa\Desktop\alkoholy.txt
2020-03-15 15:38 - 2020-03-26 12:11 - 000000741 _____ C:\Users\papepa\Desktop\sulfidy.txt

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-04-14 18:08 - 2020-01-01 11:34 - 001693640 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-04-14 18:08 - 2019-03-19 13:57 - 000718198 _____ C:\WINDOWS\system32\perfh005.dat
2020-04-14 18:08 - 2019-03-19 13:57 - 000145242 _____ C:\WINDOWS\system32\perfc005.dat
2020-04-14 18:08 - 2019-03-19 06:50 - 000000000 ____D C:\WINDOWS\INF
2020-04-14 18:04 - 2020-01-28 10:53 - 000000000 __SHD C:\Users\papepa\IntelGraphicsProfiles
2020-04-14 18:03 - 2020-01-01 11:48 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-04-14 18:03 - 2019-03-19 06:52 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-04-14 18:03 - 2018-11-19 23:13 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2020-04-14 18:03 - 2018-11-19 19:02 - 000000000 ____D C:\ProgramData\Synaptics
2020-04-14 18:02 - 2019-03-19 06:37 - 001310720 _____ C:\WINDOWS\system32\config\BBI
2020-04-14 17:47 - 2018-11-21 09:58 - 000002088 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Drive File Stream.lnk
2020-04-14 17:37 - 2018-11-21 16:14 - 000000000 ____D C:\TEMP
2020-04-14 17:27 - 2020-01-16 00:30 - 000000000 ____D C:\WINDOWS\Minidump
2020-04-14 17:27 - 2020-01-01 09:51 - 000000000 ___DC C:\WINDOWS\Panther
2020-04-14 17:25 - 2020-01-01 11:48 - 000002886 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2020-04-14 17:21 - 2020-01-28 10:53 - 000000000 ____D C:\Users\papepa
2020-04-14 17:18 - 2020-03-04 20:35 - 000001414 _____ C:\Users\papepa\Desktop\V síti (Original NO CENSORED).lnk
2020-04-14 16:05 - 2020-02-27 21:25 - 000000000 ____D C:\Users\papepa\AppData\Roaming\IrfanView
2020-04-14 14:57 - 2020-01-01 11:10 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-04-14 09:46 - 2019-03-19 06:52 - 000000000 ___HD C:\Program Files\WindowsApps
2020-04-14 09:46 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-04-12 15:38 - 2020-01-28 11:43 - 000000000 ____D C:\Users\papepa\AppData\LocalLow\Mozilla
2020-04-12 14:56 - 2020-03-13 18:37 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-04-11 08:59 - 2020-01-01 11:10 - 000633464 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-04-11 08:58 - 2018-11-21 19:16 - 000000000 ____D C:\Program Files\Opera
2020-04-11 08:55 - 2019-03-19 13:59 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2020-04-11 08:55 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\SystemResources
2020-04-11 08:55 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2020-04-11 08:55 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-04-11 08:55 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\Provisioning
2020-04-11 08:55 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2020-04-11 08:55 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-04-11 08:53 - 2019-03-19 06:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-04-08 17:56 - 2020-01-01 11:48 - 000004168 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1576843375
2020-04-07 18:35 - 2019-01-03 21:39 - 000000000 ____D C:\ESD
2020-04-06 23:12 - 2020-01-28 10:53 - 000000000 ____D C:\Users\papepa\AppData\Local\Packages
2020-04-04 08:09 - 2020-01-01 11:48 - 000003956 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1542820619
2020-04-04 08:09 - 2018-11-21 19:17 - 000001107 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2020-04-03 08:55 - 2018-11-19 21:28 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-04-03 08:55 - 2018-11-19 21:28 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-04-03 08:55 - 2018-11-19 21:28 - 000002260 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-03-30 08:45 - 2019-03-19 06:52 - 000000000 ____D C:\WINDOWS\system32\NDF
2020-03-30 08:33 - 2020-01-01 11:48 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2020-03-26 12:35 - 2018-11-19 21:31 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-03-23 17:34 - 2018-11-21 16:03 - 000000152 _____ C:\WINDOWS\system32\config\netlogon.ftl
2020-03-22 15:43 - 2020-01-28 10:53 - 000000000 ____D C:\Users\papepa\AppData\Local\VirtualStore
2020-03-21 08:37 - 2020-01-28 10:57 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2774596813-2351541506-2060952939-1285
2020-03-21 08:37 - 2020-01-28 10:57 - 000000000 ___RD C:\Users\papepa\OneDrive
2020-03-21 08:37 - 2020-01-28 10:53 - 000002368 _____ C:\Users\papepa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-03-21 08:34 - 2020-01-01 11:48 - 000003474 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2020-03-21 08:34 - 2020-01-01 11:48 - 000003350 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2020-03-15 21:48 - 2018-11-19 21:31 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-03-15 11:16 - 2020-01-01 11:48 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task

==================== Files in the root of some directories ========

2020-03-21 19:50 - 2020-03-25 15:35 - 000007629 _____ () C:\Users\papepa\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-04-2020
Ran by papepa (14-04-2020 18:15:08)
Running from C:\Users\papepa\Downloads
Windows 10 Pro Version 1909 18363.752 (X64) (2020-01-01 09:50:12)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3901443880-969369956-3173321830-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3901443880-969369956-3173321830-503 - Limited - Disabled)
Guest (S-1-5-21-3901443880-969369956-3173321830-501 - Limited - Disabled)
lokadmin (S-1-5-21-3901443880-969369956-3173321830-1001 - Administrator - Enabled) => C:\Users\lokadmin
WDAGUtilityAccount (S-1-5-21-3901443880-969369956-3173321830-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Endpoint Antivirus (Enabled - Up to date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70}
AS: ESET Endpoint Antivirus (Enabled - Up to date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

4K Video Downloader 4.4 (HKLM\...\{62C59C21-F5F5-41A1-B575-DE37FEAA285B}) (Version: 4.4.11.2412 - Open Media LLC)
4K YouTube to MP3 3.3 (HKLM\...\{6D4D8F4D-DDD6-4D31-BD57-50C5BA2362A8}) (Version: 3.3.10.1914 - Open Media LLC)
64 Bit HP CIO Components Installer (HKLM\...\{BC741628-0AFC-405C-8946-DD46D1005A0A}) (Version: 8.2.4 - Hewlett-Packard) Hidden
7-Zip 18.05 (x64) (HKLM\...\7-Zip) (Version: 18.05 - Igor Pavlov)
Adobe Flash Player 32 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 32.0.0.344 - Adobe)
Adobe Reader XI (11.0.23) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.23 - Adobe Systems Incorporated)
AMD Settings (HKLM\...\WUCCCApp) (Version: 2019.0816.1152.21357 - Advanced Micro Devices, Inc.)
Ashampoo Burning Studio 6 FREE v.6.84 (HKLM-x32\...\{91B33C97-3ED1-03EA-A67B-244AA4D7B559}_is1) (Version: 6.8.4 - Ashampoo GmbH & Co. KG)
Audacity 2.3.0 (HKLM-x32\...\Audacity_is1) (Version: 2.3.0 - Audacity Team)
BIOVIA Draw 2019 (HKLM\...\{59F76C5F-3249-4CBA-8E6D-2475D99FD7E9}) (Version: 19.1.0.1792 - Dassault Systemes)
Catalyst Control Center Next Localization BR (HKLM\...\{E7AA1A02-575C-14C6-FBEF-4BE6D46A5B74}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CS (HKLM\...\{36EDC500-E4C0-371C-9865-08450415C1E9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DA (HKLM\...\{4C2FB7FD-89FD-BA5C-585A-3811F326AD34}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization DE (HKLM\...\{D74218A3-C503-57EF-AC9F-2220082E7ADE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization EL (HKLM\...\{DA433FCF-90A1-19A5-65A7-FDF82DE4826D}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization ES (HKLM\...\{949F125B-A6CC-5A5E-EEE7-4AC50305C1FA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FI (HKLM\...\{20D46801-147B-30AD-7C5A-AC4560A79096}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization FR (HKLM\...\{22C39711-2747-D264-319A-1550BEEAAEC6}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization HU (HKLM\...\{1DBACFDB-5E43-7882-36BD-53526D34BD22}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHS (HKLM\...\{EB6C44F1-0F78-FE10-BC63-90BA50AB0CE9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization CHT (HKLM\...\{B26D75B8-FAB7-6F8B-767F-BAF975383D91}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization IT (HKLM\...\{A91FC4BF-C1EC-ADCA-79D1-F4F0671F1D60}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization JA (HKLM\...\{ED75A775-03A7-F214-868D-497748707968}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization KO (HKLM\...\{07BFBD5C-2F63-6828-1B61-B41A44113F3B}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NL (HKLM\...\{E6038D3E-5D87-8DF7-6D05-BE7532C3E73E}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization NO (HKLM\...\{DFAD9DAC-4768-C8BB-4E0E-5239605A9BEA}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization PL (HKLM\...\{FFBFBD1F-B160-A119-7C43-8584FA2E5665}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization RU (HKLM\...\{4D1D5407-9B69-6422-629C-8518A26004A4}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization SV (HKLM\...\{A8379BAB-59A9-C0A3-8BCC-4852EA403692}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TH (HKLM\...\{24DF617A-CD23-6E6A-126B-23630D2781CE}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
Catalyst Control Center Next Localization TR (HKLM\...\{83DDDFD8-AD42-72F9-E4F1-5456FDB304C9}) (Version: 2017.0424.2119.36535 - Advanced Micro Devices, Inc.) Hidden
CCleaner (HKLM\...\CCleaner) (Version: 5.61 - Piriform)
DeepBurner v1.6.0.198 (HKLM-x32\...\{1ADE23D7-7A1E-4AEC-BA5D-EB8A01BED943}) (Version: - )
DraftSight 2018 SP0 x64 (HKLM\...\{99275069-64ED-476E-A87B-756DC6C8BA59}) (Version: 18.0.2051 - Dassault Systemes)
Epson Print Admin Driver (HKLM-x32\...\{beb4b9b0-1b06-44ab-b492-d9e29ea4901a}) (Version: 3.1.4 - Seiko Epson Corporation)
ESET Endpoint Antivirus (HKLM\...\{3BC53507-500A-4BA0-8750-121C78057EED}) (Version: 6.6.2078.5 - ESET, spol. s r.o.)
EVEREST Ultimate Edition v5.50 (HKLM-x32\...\EVEREST Ultimate Edition_is1) (Version: 5.50 - FinalWire Ltd.)
FileZilla Client 3.41.2 (HKLM-x32\...\FileZilla Client) (Version: 3.41.2 - Tim Kosse)
Free M4a to MP3 Converter 5.9 (HKLM-x32\...\Free M4a to MP3 Converter_is1) (Version: - ManiacTools.com)
FreeCommander XE (HKLM-x32\...\FreeCommander XE_is1) (Version: - Marek Jasinski)
FreeMind (HKLM-x32\...\B991B020-2968-11D8-AF23-444553540000_is1) (Version: 0.9.0 - )
GIMP 2.10.8 (HKLM\...\GIMP-2_is1) (Version: 2.10.8 - The GIMP Team)
Google Drive File Stream (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 38.0.15.0 - Google, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 80.0.3987.163 - Google LLC)
Google SketchUp 6 (HKLM-x32\...\{98736A65-3C79-49EC-B7E9-A3C77774B0E6}) (Version: 6.4.247 - Google) Hidden
Google SketchUp 6 (HKLM-x32\...\{B3D8B2F8-3C2C-45BC-933E-8B60E78F6684}) (Version: 6.0.01623 - Google)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.35.451 - Google LLC) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.169 - Google Inc.) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 21.20.16.4627 - Intel Corporation)
IrfanView 4.50 (32-bit) (HKLM-x32\...\IrfanView) (Version: 4.50 - Irfan Skiljan)
Java 8 Update 231 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180231F0}) (Version: 8.0.2310.11 - Oracle Corporation)
Lamer (HKLM-x32\...\Lamer) (Version: - )
LEGO MINDSTORMS Education EV3 (HKLM-x32\...\{475ECBAB-E4BD-4958-B063-A9822C242CA7}) (Version: 1.4.5 - The LEGO Group) Hidden
LEGO MINDSTORMS Education EV3 Content (HKLM-x32\...\{2E1AE8F6-2110-40CC-8FAF-9DD120654DFB}) (Version: 1.4.5 - The LEGO Group) Hidden
LEGO MINDSTORMS Education EV3 Teacher Mode (HKLM-x32\...\{164DBE44-C437-4842-85EF-B765A23295E3}) (Version: 1.0.387 - The LEGO Group) Hidden
LEGO MINDSTORMS Education EV3 UK English Support (HKLM-x32\...\{3F03F994-5AB5-4703-8214-6546DC0DD56A}) (Version: 1.4.3 - The LEGO Group) Hidden
LEGO MINDSTORMS EV3 (HKLM-x32\...\LEGO_SW.{5B0CB826-E499-4E6B-94F0-75B6327ED934}) (Version: 1.0.0 - The LEGO Group)
LEGO MINDSTORMS EV3 Uninstaller (HKLM-x32\...\{5F3092B9-4240-4037-A287-BF6F9A2996BC}) (Version: 1.0.11 - The LEGO Group) Hidden
LEGO MINDSTORMS NXT x64 Driver (HKLM\...\{0189C6FA-7333-4873-8E0B-3A1BE8E6726B}) (Version: 1.31.5.0 - LEGO)
LibreOffice 6.1.3.2 (HKLM\...\{70F02214-8FF6-48DF-AF3E-7D1A5F7A6BAC}) (Version: 6.1.3.2 - The Document Foundation)
Lightworks (HKLM-x32\...\{E94DD4E4-7746-472c-AA7B-1242FED0CFC8}) (Version: 14.5.0.0 - EditShare)
Matik 6-9 (HKLM-x32\...\{2DF8D09C-7D3C-4164-96DF-08EBF6E881C2}) (Version: 1.00.0000 - Matik Liberec)
Microsoft Office Standard 2016 (HKLM-x32\...\Office16.STANDARD) (Version: 16.0.4266.1001 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2774596813-2351541506-2060952939-1285\...\OneDriveSetup.exe) (Version: 19.232.1124.0010 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.14.26429 (HKLM-x32\...\{80586c77-db42-44bb-bfc8-7aebbb220c00}) (Version: 14.14.26429.4 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.14.26429 (HKLM-x32\...\{2019b6a0-8533-4a04-ac0e-b2c10bdb9841}) (Version: 14.14.26429.4 - Microsoft Corporation)
Moo0 Audio Converter 1.32 (HKLM-x32\...\Moo0 AudioTypeConverter) (Version: - )
Mount Blue - verze 1.0.11.0 (HKLM-x32\...\{121F184B-05AD-43F1-9F20-6075B9E6DFCA}_is1) (Version: 1.0.11.0 - Mount Blue s.r.o.)
Mozilla Firefox 74.0 (x64 cs) (HKLM\...\Mozilla Firefox 74.0 (x64 cs)) (Version: 74.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 63.0.1 - Mozilla)
MP4 Converter 3 (HKLM-x32\...\MP4 Converter_is1) (Version: - Tomabo)
MPC-HC 1.7.10 (64-bit) (HKLM\...\{2ACBF1FA-F5C3-4B19-A774-B22A31F231B9}_is1) (Version: 1.7.10 - MPC-HC Team)
MuseScore 2 (HKLM-x32\...\{7D01160E-D30F-4E88-8872-4A0A0A782E2E}) (Version: 2.3.2 - Werner Schweer and Others)
MX5 (HKLM-x32\...\Maxthon5) (Version: 5.2.6.1000 - Maxthon International Limited)
Nástroje kontroly pravopisu pro Microsoft Office 2016 – čeština (HKLM-x32\...\{90160000-001F-0405-0000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2016 - slovenčina (HKLM-x32\...\{90160000-001F-041B-0000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
NI .NET Framework 4.0 (HKLM-x32\...\{0C43BB65-C604-4D94-A83A-54DCB42780B8}) (Version: 4.01.49154 - National Instruments) Hidden
NI EulaDepot (HKLM-x32\...\{87F60C46-07E2-46B4-B872-680DE4184C0A}) (Version: 3.20.363 - National Instruments) Hidden
NI MDF Support (HKLM-x32\...\{FA35D849-889D-4454-9532-6BE2008D2CDF}) (Version: 3.20.363 - National Instruments) Hidden
NI Security Update (KB 67L8LCQW) (64-bit) (HKLM\...\{4A78D9E6-D349-4CCA-9295-45B12BE5BC6C}) (Version: 1.0.29.0 - National Instruments) Hidden
NI Security Update (KB 67L8LCQW) (HKLM-x32\...\{20124E21-206B-485F-838F-14BB88161045}) (Version: 1.0.29.0 - National Instruments) Hidden
NI Uninstaller (HKLM-x32\...\{C7743231-5899-418D-8CA5-22B0F654D894}) (Version: 3.20.363 - National Instruments) Hidden
NI VC2008MSMs x64 (HKLM\...\{07E00E94-7A78-40FA-9BEF-71C190E98041}) (Version: 9.0.401 - National Instruments) Hidden
NI VC2008MSMs x86 (HKLM-x32\...\{E84997A1-4D6F-4C0B-B60D-F85B360D2666}) (Version: 9.0.401 - National Instruments) Hidden
OpenShot Video Editor verze 2.4.4 (HKLM\...\{4BB0DCDC-BC24-49EC-8937-72956C33A470}_is1) (Version: 2.4.4 - OpenShot Studios, LLC)
OpenVPN 2.4.8-I602-Win10 (HKLM\...\OpenVPN) (Version: 2.4.8-I602-Win10 - OpenVPN Technologies, Inc.)
Opera Stable 67.0.3575.115 (HKLM-x32\...\Opera 67.0.3575.115) (Version: 67.0.3575.115 - Opera Software)
Ovladače videa společnosti Pinnacle (HKLM\...\{6DE721A5-5E89-4D74-994C-652BB3C0672E}) (Version: 12.1.0.029 - Pinnacle Systems)
PDFrizator 0.6.0.28 (HKLM-x32\...\PDFrizator_is1) (Version: - RTT)
Pomocník s aktualizací Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.9200.22925 - Microsoft Corporation)
PSPad editor (HKLM-x32\...\PSPad editor_is1) (Version: 5.0.3.377 - Jan Fiala)
Puran File Recovery 1.1 (HKLM\...\Puran File Recovery_is1) (Version: - Puran Software)
PuTTY release 0.71 (HKLM-x32\...\{D7AE1036-21C9-4204-9D03-0976390B6D37}) (Version: 0.71.0.0 - Simon Tatham)
Python 3.7.1 Add to Path (32-bit) (HKLM-x32\...\{76CFD900-77BD-4974-9464-249B93C3A3EF}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 Core Interpreter (32-bit) (HKLM-x32\...\{5439005C-640E-473B-8374-5AA6BA9F8780}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 Development Libraries (32-bit) (HKLM-x32\...\{D1F1A0E0-328E-438D-A18C-ACE71BCE10B7}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 Documentation (32-bit) (HKLM-x32\...\{DAB8D967-E729-443C-96A7-BFE581D8B0B0}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 Executables (32-bit) (HKLM-x32\...\{FFE80953-6126-49BF-9CC0-57113A8AAA37}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 pip Bootstrap (32-bit) (HKLM-x32\...\{4CAAB4B2-69D4-437A-870B-9AB2D0703E56}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 Standard Library (32-bit) (HKLM-x32\...\{E8A32F30-F5EC-4724-8F99-A51B69176B2F}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 Tcl/Tk Support (32-bit) (HKLM-x32\...\{AC008439-97C6-4079-B451-069A1AC86C9D}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 Test Suite (32-bit) (HKLM-x32\...\{A9C09A2F-4ABC-41EF-B3F7-629C8178186B}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python 3.7.1 Utility Scripts (32-bit) (HKLM-x32\...\{D3397B2B-DC1F-4EDF-BFAE-827431206FB6}) (Version: 3.7.1150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{C3A1C6B1-9096-47A7-AB5C-09114002A996}) (Version: 3.7.6501.0 - Python Software Foundation)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7564 - Realtek Semiconductor Corp.)
Recuva (HKLM\...\Recuva) (Version: 1.53 - Piriform)
RekenTest 4.3 (HKLM-x32\...\1C4071FC-5574-4B4A-A310-24D36EB28C20_is1) (Version: 4.3 - 4x4 Software)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.17.7 - Synaptics Incorporated)
TAP-Windows 9.24.2 (HKLM\...\TAP-Windows) (Version: 9.24.2 - OpenVPN Technologies, Inc.)
TeamViewer 13 (HKLM-x32\...\TeamViewer) (Version: 13.1.1548 - TeamViewer)
Theophilos 3 (HKLM-x32\...\Theophilos_is1) (Version: - )
Ubiquiti UniFi (remove only) (HKLM-x32\...\Ubiquiti UniFi) (Version: - )
Update for Skype for Business 2016 (KB4484286) 32-Bit Edition (HKLM-x32\...\{90160000-0012-0000-0000-0000000FF1CE}_Office16.STANDARD_{3C07D08B-47AC-414D-B49F-FCBB383425EB}) (Version: - Microsoft)
Update for Skype for Business 2016 (KB4484286) 32-Bit Edition (HKLM-x32\...\{90160000-002A-0000-1000-0000000FF1CE}_Office16.STANDARD_{3C07D08B-47AC-414D-B49F-FCBB383425EB}) (Version: - Microsoft)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.8 - VideoLAN)
Vulkan Run Time Libraries 1.0.33.0 (HKLM\...\VulkanRT1.0.33.0) (Version: 1.0.33.0 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.33.0 (HKLM\...\VulkanRT1.0.33.0-2) (Version: 1.0.33.0 - LunarG, Inc.)
WeDo 2.0 32bit (HKLM-x32\...\{55D378FA-8979-4A05-8D26-A34FBF2104EF}_is1) (Version: 1.9.24 - LEGO Education)
Windows 7 USB/DVD Download Tool (HKLM-x32\...\{F92064F6-BDE8-46FC-A19F-4E12D311BE3A}) (Version: 1.0.30 - Microsoft Corporation)
WinHTTrack Website Copier 3.49-2 (HKLM-x32\...\WinHTTrack Website Copier_is1) (Version: 3.49.2 - HTTrack)
WinPcap 4.1.3 (HKLM-x32\...\WinPcapInst) (Version: 4.1.0.2980 - CACE Technologies)
Yamaha Steinberg USB Driver (HKLM\...\{6A205817-537F-4CF5-AD78-23D47FE224C4}) (Version: 1.10.2 - Yamaha Corporation) Hidden
Yamaha Steinberg USB Driver (HKLM-x32\...\yUninstall_{2938B185-2D57-47B0-9FC8-C90A67BA9277}) (Version: 1.10.2 - Yamaha Corporation)
Zoner Callisto 5 FREE (HKLM-x32\...\ZonerCallisto5_CZ_is1) (Version: 5.0.5000.16 - ZONER software)

Packages:
=========
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.2.140.0_x64__rz1tebttyb220 [2020-04-12] (Dolby Laboratories)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_110.1.671.0_x64__v10z8vjag6ke6 [2020-02-07] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-11] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-11] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.6.4030.0_x64__8wekyb3d8bbwe [2020-04-14] (Microsoft Studios) [MS Ad]
MSN Počasí -> C:\Program Files\WindowsApps\Microsoft.BingWeather_4.36.20714.0_x64__8wekyb3d8bbwe [2020-03-24] (Microsoft Corporation) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\38.0.15.0\drivefsext.dll [2020-04-08] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\38.0.15.0\drivefsext.dll [2020-04-08] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\38.0.15.0\drivefsext.dll [2020-04-08] (Google LLC -> Google, Inc.)
ShellIconOverlayIdentifiers: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\38.0.15.0\drivefsext.dll [2020-04-08] (Google LLC -> Google, Inc.)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-04-30] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\38.0.15.0\drivefsext.dll [2020-04-08] (Google LLC -> Google, Inc.)
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2018-03-13] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [Tomabo.MP4Converter] -> {67A979E9-C5A6-4C0F-B0B7-FB516406FA9E} => C:\Program Files (x86)\Tomabo\MP4 Converter\MP4C_WS.dll [2015-07-21] (Tomabo) [File not signed]
ContextMenuHandlers1: [Tomabo.MP4Player] -> {DA4F8B8B-91CF-43AD-BB0B-B52BF770DA3E} => C:\Program Files (x86)\Tomabo\MP4 Converter\MP4P_WS.dll [2015-07-21] (Tomabo) [File not signed]
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2018-03-13] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-04-30] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\38.0.15.0\drivefsext.dll [2020-04-08] (Google LLC -> Google, Inc.)
ContextMenuHandlers4: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files\AMD\CNext\CNext\atiacm64.dll [2019-08-16] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\38.0.15.0\drivefsext.dll [2020-04-08] (Google LLC -> Google, Inc.)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\System32\DriverStore\FileRepository\igdlh64.inf_amd64_b9b9c39e4e2b88eb\igfxDTCM.dll [2017-04-21] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2018-04-30] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2018-03-13] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [RecuvaShellExt] -> {435E5DF5-2510-463C-B223-BDA47006D002} => C:\Program Files\Recuva\RecuvaShell64.dll [2016-06-06] (Piriform Ltd -> Piriform Ltd)
ContextMenuHandlers6: [Tomabo.MP4Converter] -> {67A979E9-C5A6-4C0F-B0B7-FB516406FA9E} => C:\Program Files (x86)\Tomabo\MP4 Converter\MP4C_WS.dll [2015-07-21] (Tomabo) [File not signed]
ContextMenuHandlers6: [Tomabo.MP4Player] -> {DA4F8B8B-91CF-43AD-BB0B-B52BF770DA3E} => C:\Program Files (x86)\Tomabo\MP4 Converter\MP4P_WS.dll [2015-07-21] (Tomabo) [File not signed]

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\papepa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default

==================== Loaded Modules (Whitelisted) =============

2019-06-28 18:32 - 2019-06-28 18:32 - 000017920 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libEGL.DLL
2019-06-28 18:32 - 2019-06-28 18:32 - 003598336 _____ () [File not signed] C:\Program Files\AMD\CNext\CNext\libGLESv2.dll
2011-04-13 17:08 - 2011-04-13 17:08 - 000050688 _____ (Hewlett-Packard) [File not signed] c:\windows\system32\hpzinw12.dll
2011-04-13 17:08 - 2011-04-13 17:08 - 000066048 _____ (Hewlett-Packard) [File not signed] c:\windows\system32\hpzipm12.dll
2020-01-22 13:50 - 2018-10-22 12:49 - 005592064 _____ (Microsoft) [File not signed] C:\WINDOWS\System32\casablanca120.dll
2020-01-22 13:50 - 2019-05-31 10:25 - 000831488 _____ (Seiko Epson Corporation) [File not signed] C:\WINDOWS\System32\epscpmon.dll
2017-10-06 16:40 - 2017-10-06 16:40 - 005584896 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Dassault Systemes\DraftSight\bin\Qt5Core.dll
2017-10-06 16:40 - 2017-10-06 16:40 - 001065472 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Dassault Systemes\DraftSight\bin\Qt5Network.dll
2017-10-06 16:40 - 2017-10-06 16:40 - 000193536 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Dassault Systemes\DraftSight\bin\Qt5Xml.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qgif.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 000040960 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qicns.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qico.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 000414208 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qjpeg.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qsvg.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qtga.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 000023552 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwbmp.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 000516608 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\imageformats\qwebp.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 001441280 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\platforms\qwindows.dll
2019-08-16 12:49 - 2019-08-16 12:49 - 005999104 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Core.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 006413824 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Gui.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 001141760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Network.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 000339968 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Positioning.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 004143104 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Qml.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 003840000 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Quick.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 000332800 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Svg.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 000349184 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngine.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 080959488 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebEngineCore.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 000113152 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WebChannel.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 005622272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Widgets.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 000463360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5WinExtras.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 000190464 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5Xml.dll
2019-06-28 18:32 - 2019-06-28 18:32 - 002825216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt5XmlPatterns.dll
2019-06-28 18:33 - 2019-06-28 18:33 - 000053760 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\private\qtgraphicaleffectsprivate.dll
2019-06-28 18:33 - 2019-06-28 18:33 - 000059392 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtGraphicalEffects\qtgraphicaleffectsplugin.dll
2019-06-28 18:33 - 2019-06-28 18:33 - 000017408 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick.2\qtquick2plugin.dll
2019-06-28 18:33 - 2019-06-28 18:33 - 000330752 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Controls\qtquickcontrolsplugin.dll
2019-06-28 18:33 - 2019-06-28 18:33 - 000137216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Dialogs\dialogplugin.dll
2019-06-28 18:33 - 2019-06-28 18:33 - 000090112 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Layouts\qquicklayoutsplugin.dll
2019-06-28 18:33 - 2019-06-28 18:33 - 000017920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\QtQuick\Window.2\windowplugin.dll
2019-06-28 18:33 - 2019-06-28 18:33 - 000136192 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\styles\qwindowsvistastyle.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer trusted/restricted ==========

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-09-15 09:31 - 2019-12-23 10:24 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Program Files (x86)\Python37-32\Scripts\;C:\Program Files (x86)\Python37-32\;C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\PuTTY\;C:\Program Files (x86)\IVI Foundation\VISA\WinNT\Bin;%DRAW_DEPLOY_PATH%
HKU\S-1-5-21-2774596813-2351541506-2060952939-1285\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.10.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-2774596813-2351541506-2060952939-1285\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-2774596813-2351541506-2060952939-1285\...\StartupApproved\Run: => "OneDrive"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{53902BCA-6048-476C-A1DB-17690D6311FF}] => (Allow) C:\Program Files (x86)\WeDo 2.0\WeDo 2.0.exe () [File not signed]
FirewallRules: [{86B95D20-0C20-4687-9B47-E1DE882F25C2}] => (Allow) C:\Program Files (x86)\WeDo 2.0\WeDo 2.0.exe () [File not signed]
FirewallRules: [UDP Query User{6A334EF1-F562-44DB-A810-CD8CEDDE433F}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{BDB4C961-60CF-403D-9551-2BE41954BED2}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [{333EDB76-9BEA-49FF-9F8E-141F24C27E6F}] => (Allow) C:\Users\papepa1\Ubiquiti UniFi\bin\mongod.exe (MongoDB, Inc) [File not signed]
FirewallRules: [{B1D591BC-DE5D-4DB9-BF75-9A1CA1A7EF90}] => (Allow) C:\Users\papepa1\Ubiquiti UniFi\bin\mongod.exe (MongoDB, Inc) [File not signed]
FirewallRules: [UDP Query User{D62B574F-8A9B-44D0-9B5E-5D47CB8FA7F2}C:\program files\openshot video editor\launch.exe] => (Block) C:\program files\openshot video editor\launch.exe () [File not signed]
FirewallRules: [TCP Query User{43FF810B-D5D3-4EBA-A980-CB58C5A0AB25}C:\program files\openshot video editor\launch.exe] => (Block) C:\program files\openshot video editor\launch.exe () [File not signed]
FirewallRules: [{8DA6C245-3CA5-43A3-AA3B-C4FF05AFDD03}] => (Allow) C:\Program Files (x86)\Maxthon5\Bin\Maxthon.exe (Maxthon Technology Co, Ltd. -> Maxthon International ltd.)
FirewallRules: [{A67F8BAB-0E71-402C-A20C-2DBCD718DEFD}] => (Allow) C:\Program Files (x86)\Maxthon5\Bin\Maxthon.exe (Maxthon Technology Co, Ltd. -> Maxthon International ltd.)
FirewallRules: [{7B276AD1-974D-4CDD-96A9-EF2BEFBD7FDE}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{7410F104-83AB-45B8-A7AC-7712EFC856B6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{1ED6AC60-5881-4DE2-A640-17F52078C855}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{424590EA-17F3-44AE-8798-5303221B192B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{A2357EA8-CB5E-40BB-87D8-2B295BB849FC}] => (Allow) C:\Program Files\Lightworks\ntcardvt.exe (EditShare EMEA (X-Edit Limited) -> Editshare EMEA)
FirewallRules: [{48C5E923-56A5-47A5-B2A9-9339DAD02064}] => (Allow) C:\Program Files\Lightworks\ntcardvt.exe (EditShare EMEA (X-Edit Limited) -> Editshare EMEA)
FirewallRules: [{C88AE04F-229A-4AE0-8875-C6746E929A22}] => (Allow) C:\Program Files\Lightworks\lightworks.exe (EditShare EMEA (X-Edit Limited) -> )
FirewallRules: [{A84D63D3-7910-48CB-B7D1-695EA867114A}] => (Allow) C:\Program Files\Lightworks\lightworks.exe (EditShare EMEA (X-Edit Limited) -> )
FirewallRules: [{B55CBFF9-3DEB-490A-8186-323B3AD5AC47}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{7F1B6393-9EDC-45BE-90FE-E51A38B46966}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{075ECCBB-7AEB-4612-B2F6-0747C79F9E37}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [{5B687D62-5B29-4042-B43D-9332E7B3FEF8}] => (Allow) C:\Program Files\CCleaner\CCUpdate.exe (Piriform Software Ltd -> Piriform Software Ltd)
FirewallRules: [TCP Query User{2E54147C-7326-4880-8E6C-2A220A7BCFC7}C:\program files\openshot video editor\launch.exe] => (Allow) C:\program files\openshot video editor\launch.exe () [File not signed]
FirewallRules: [UDP Query User{EBB840F3-5185-4569-B4AC-3A26167C9B93}C:\program files\openshot video editor\launch.exe] => (Allow) C:\program files\openshot video editor\launch.exe () [File not signed]
FirewallRules: [{E30C283E-1A74-4D5A-AC81-72B3FE31E091}] => (Allow) C:\Program Files (x86)\LEGO Software\LEGO MINDSTORMS Edu EV3\MindstormsEV3.exe (National Instruments) [File not signed]
FirewallRules: [{FBA1322D-7723-478A-A163-BE443A921C1A}] => (Allow) C:\Program Files (x86)\LEGO Software\LEGO MINDSTORMS Edu EV3\MindstormsEV3.exe (National Instruments) [File not signed]
FirewallRules: [TCP Query User{6B3E1077-6E35-47E2-A267-D0E4A53F19A6}C:\program files (x86)\lego software\lego mindstorms edu ev3\mindstormsev3.exe] => (Allow) C:\program files (x86)\lego software\lego mindstorms edu ev3\mindstormsev3.exe (National Instruments) [File not signed]
FirewallRules: [UDP Query User{DDD24014-0DC4-491F-99AF-8C035939C250}C:\program files (x86)\lego software\lego mindstorms edu ev3\mindstormsev3.exe] => (Allow) C:\program files (x86)\lego software\lego mindstorms edu ev3\mindstormsev3.exe (National Instruments) [File not signed]
FirewallRules: [{D88CB8A2-C07A-4258-A0A9-D16EC0B59150}] => (Allow) C:\Program Files\Opera\67.0.3575.97\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{57EFCBEA-ACD8-494A-8019-4F04588DBD8B}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{8F378F55-6229-4A31-B215-FF09959FDD7B}] => (Allow) C:\Program Files\Opera\67.0.3575.115\opera.exe (Opera Software AS -> Opera Software)
StandardProfile\AuthorizedApplications: [C:\Program Files (x86)\Tomabo\MP4 Converter\MP4Downloader.exe] => Enabled:MP4 Downloader

==================== Restore Points =========================

25-03-2020 20:12:25 Naplánovaný kontrolní bod
02-04-2020 09:52:53 AdwCleaner_BeforeCleaning_02/04/2020_09:52:52
10-04-2020 11:52:46 Windows Update

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (04/14/2020 06:15:44 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (3932,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (04/14/2020 06:00:37 PM) (Source: Microsoft-Windows-Perflib) (EventID: 1020) (User: NT AUTHORITY)
Description: Velikost požadované vyrovnávací paměti je větší než velikost vyrovnávací paměti předané do funkce Collect knihovny DLL rozšiřitelných čítačů C:\Windows\System32\perfts.dll pro službu LSM. Velikost dané vyrovnávací paměti: 27168; požadovaná velikost: 33040.

Error: (04/14/2020 05:56:11 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2400,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (04/14/2020 05:42:55 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (6472,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (04/14/2020 05:26:47 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4552,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (04/14/2020 04:44:56 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (8576,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (04/14/2020 03:39:58 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (6524,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (04/14/2020 01:41:44 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (12296,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).


System errors:
=============
Error: (04/14/2020 06:08:05 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (04/14/2020 06:08:01 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (04/14/2020 06:07:57 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (04/14/2020 06:07:53 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (04/14/2020 06:07:48 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (04/14/2020 06:07:44 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (04/14/2020 06:07:40 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (04/14/2020 06:07:36 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.


CodeIntegrity:
===================================

Date: 2020-04-14 18:08:07.515
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-04-14 18:08:07.471
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-04-14 18:08:07.436
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-04-14 18:08:07.408
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-04-14 18:08:07.358
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-04-14 18:08:07.350
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-04-14 18:08:07.339
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements.

Date: 2020-04-14 18:08:07.130
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume4\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Microsoft signing level requirements.

==================== Memory info ===========================

BIOS: LENOVO D7CN28WW(V3.01) 01/27/2016
Motherboard: LENOVO Lenovo E51-80
Processor: Intel(R) Core(TM) i5-6200U CPU @ 2.30GHz
Percentage of memory in use: 36%
Total physical RAM: 8050.77 MB
Available physical RAM: 5079.19 MB
Total Virtual: 9330.77 MB
Available Virtual: 6477.01 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:930.33 GB) (Free:446.6 GB) NTFS
Drive g: (Google Drive File Stream) (Fixed) (Total:930.33 GB) (Free:424.27 GB) FAT32

\\?\Volume{81f06608-7c1b-43fa-940a-b757654afd86}\ (Obnovení) (Fixed) (Total:0.49 GB) (Free:0.47 GB) NTFS
\\?\Volume{ab3fbdd8-eb4f-43df-9434-330cec86dbd6}\ () (Fixed) (Total:0.58 GB) (Free:0.08 GB) NTFS
\\?\Volume{7b6b801d-1f95-4142-aca2-b355b0ea2003}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 11964BCC)

Partition: GPT.

==================== End of Addition.txt =======================

Re: Pomalejší reakce ntb

Napsal: 14 dub 2020 17:42
od JaRon
Ahoj,
stiahni HDTune free, vloz vysledky obrazok z casti benchmark + error
Urcite neuskodi zprikazoveho riadku spustit
chkdsk c: /r

Re: Pomalejší reakce ntb

Napsal: 15 dub 2020 07:48
od Hop
Dobrý den,
nejdříve jsem spustil příkaz chkdsk c: /r
Trvalo to dost dlouho, ale ntb byl pak o poznání svižnější - děkuji! Co tento příkaz s ntb vlastně udělal?
Kdy je vhodné ho používat a kdy ne? Děkuji za vaši odpověď.

Spustil jsem i HD tune, zde je log:
HD Tune: ST1000LM014-SSHD Benchmark

Transfer Rate Minimum : 11.4 MB/sec
Transfer Rate Maximum : 109.6 MB/sec
Transfer Rate Average : 86.1 MB/sec
Access Time : 17.2 ms
Burst Rate : 68.9 MB/sec
CPU Usage : 13.9%

HD Tune: ST1000LM014-SSHD Error Scan

Scanned data : 953488 MB
Damaged Blocks : 0.0 %
Elapsed Time : 194:52

Náhledy jsou v příloze.

Re: Pomalejší reakce ntb

Napsal: 15 dub 2020 08:56
od JaRon
Error: (04/14/2020 06:07:48 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

disk mal problem, chkdsk pokial je to mozne chyby opravi
doporucujem obcas pozriet disk s HDTune, ak by cervene sektory pribudali,
radim vymenu disku
ak ostane len jeden, postaci preventivne spustit chkdsk/r
- pokial ziadne chyby nenajde nic nebude opravovat :)

P.S. obcas = 1xmesacne

Re: Pomalejší reakce ntb

Napsal: 15 dub 2020 09:22
od Hop
Dobrý den,
děkuji Vám za Vaši pomoc!
S pozdravem
Pavel Papežík

Re: Pomalejší reakce ntb

Napsal: 15 dub 2020 09:23
od JaRon
rado sa stalo
pekny den :thumbsup: