Stránka 1 z 1

Preventivní kontrola

Napsal: 26 říj 2020 11:48
od Mirda74
Prosím o kontrolu.

Občasné "spadnutí" win 10

Vygenerované soubory v příloze

Díky
M.

Re: Preventivní kontrola

Napsal: 26 říj 2020 13:52
od Diallix
Dobry den.

:arrow: Stiahnite si na plochu nastroj AdwCleaner, link. na stiahnutie tu: https://toolslib.net/downloads/finish/1/
Pred spustenim nastroja povypinajte vsetke beziace okna programov, to su vsetke beziace programy pod desktopom.
Kliknite pravym tlacidlom mysi na program -> spustit ako Administrator.
Pokracujte kliknutim na tlacidlo Prehladaj teraz (Scan now) a pockajte, kym sa system doskenuje.
Po skene nechajte oznacene vsetky chlieviky, pripadne najdene hrozieby a pokracujte v dolnom pravom rohu tlacidlom Vycistit Teraz (Clean and Repair).
Po restartovani PC sa spusti nastroj AdwCleaner, kliknite na Zobrazit soubor protokolu.
Spusti sa log, jeho obsah skopirujte sem.

Re: Preventivní kontrola

Napsal: 16 lis 2020 15:58
od Mirda74
Dobrý den,

omlouvám se, že reaguji tak pozdě, ale byl jsem mimo PC.

log:

# -------------------------------
# Malwarebytes AdwCleaner 8.0.8.0
# -------------------------------
# Build: 10-08-2020
# Database: 2020-11-12.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 11-16-2020
# Duration: 00:00:03
# OS: Windows 10 Pro
# Cleaned: 2
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

Deleted HKLM\Software\Classes\Interface\{7697BC38-D0FA-454B-AC75-968B4CCABFCE}
Deleted HKLM\Software\Wow6432Node\\Classes\Interface\{7697BC38-D0FA-454B-AC75-968B4CCABFCE}

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

No Preinstalled Software cleaned.


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1588 octets] - [16/11/2020 15:45:10]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C00].txt ##########


Díky
M.

Re: Preventivní kontrola

Napsal: 16 lis 2020 18:06
od Diallix
Poprosim o nove logxy FRST a ADDITION-

Re: Preventivní kontrola

Napsal: 17 lis 2020 21:38
od Mirda74
nové logy:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-11-2020
Ran by Mira (administrator) on MIRA-PC-2020 (17-11-2020 21:31:43)
Running from C:\Users\Mira\Desktop
Loaded Profiles: Mira
Platform: Windows 10 Pro Version 2004 19041.630 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Autodesk, Inc. -> Autodesk Inc.) C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe
(Autodesk, Inc. -> Autodesk) C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AcWebBrowser\AcWebBrowser.exe <2>
(Autodesk, Inc. -> Autodesk) C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\10.2.0.4231\AdskLicensingService\AdskLicensingService.exe
(Autodesk, Inc. -> Autodesk, Inc.) C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(Flexera Software LLC -> Flexera) C:\Program Files (x86)\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService.exe
(Hewlett Packard -> HP Inc.) C:\Program Files\HP\HP PageWide MFP P57750\Bin\HPNetworkCommunicatorCom.exe
(Hewlett Packard -> HP Inc.) C:\Program Files\HP\HP PageWide MFP P57750\Bin\ScanToPCActivationApp.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Mira\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_2.2010.22653.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Speech_OneCore\common\SpeechRuntime.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(MiniTool Software Limited -> ) C:\Program Files\MiniTool Partition Wizard 12\updatechecker.exe
(NVIDIA Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_feed726c6560f7a7\Display.NvContainer\NVDisplay.Container.exe <2>
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(Software602 -> Software602) C:\Program Files (x86)\Software602\Print2PDF\Print2PDF.exe
(Software602 a.s.) [File not signed] C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe
(Sun Microsystems, Inc. -> Sun Microsystems, Inc.) C:\Program Files (x86)\Java\jre6\bin\jusched.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Desktop.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(Vero Software Limited) [File not signed] C:\Program Files (x86)\Common Files\Vero Software\2016.10\CLS\cls.exe
(ZONER software, a.s. -> ZONER software) C:\Program Files\Zoner\Photo Studio 17\Program32\ZPSTray.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [MTPW] => C:\Program Files\MiniTool Partition Wizard 12\updatechecker.exe [219616 2020-02-19] (MiniTool Software Limited -> )
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [185648 2020-08-06] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [Print2PDF Print Monitor] => C:\Program Files (x86)\Software602\Print2PDF\Print2PDF.exe [222776 2011-04-12] (Software602 -> Software602)
HKLM-x32\...\Run: [Autodesk Desktop App] => C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AutodeskDesktopApp.exe [664872 2020-03-04] (Autodesk, Inc. -> Autodesk, Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Java\jre6\bin\jusched.exe [149280 2020-04-16] (Sun Microsystems, Inc. -> Sun Microsystems, Inc.)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-396946655-2491402784-2302030934-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [30870200 2020-09-22] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-396946655-2491402784-2302030934-1001\...\Run: [HP PageWide MFP P57750 (NET)] => C:\Program Files\HP\HP PageWide MFP P57750\Bin\ScanToPCActivationApp.exe [3764360 2016-12-15] (Hewlett Packard -> HP Inc.)
HKU\S-1-5-21-396946655-2491402784-2302030934-1001\...\Run: [Zoner Photo Studio Autoupdate] => C:\PROGRAM FILES\ZONER\PHOTO STUDIO 17\Program32\ZPSTRAY.EXE [563416 2015-07-12] (ZONER software, a.s. -> ZONER software)
HKU\S-1-5-21-396946655-2491402784-2302030934-1001\...\RunOnce: [Application Restart #2] => C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe --flag-switches-begin --flag-switches-end --enable-audio-service-sandbox --restore-last-session -- microsoft-edge:?launchContext1=Microsof (the data entry has 334 more characters).
HKU\S-1-5-21-396946655-2491402784-2302030934-1001\...\Policies\Explorer: []
HKU\S-1-5-21-396946655-2491402784-2302030934-1001\...\MountPoints2: {67fb369a-7e22-11ea-b495-74d4350a2635} - "D:\HiSuiteDownLoader.exe"
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\86.0.4240.198\Installer\chrmstp.exe [2020-11-11] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> "C:\Program Files (x86)\Google\Chrome\Application\51.0.2704.103\Installer\chrmstp.exe" --configure-user-settings --verbose-logging --system-level --multi-install --chrome
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CLS 2016.10.lnk [2020-04-16]
ShortcutTarget: CLS 2016.10.lnk -> C:\Program Files (x86)\Common Files\Vero Software\2016.10\CLS\cls.exe (Vero Software Limited) [File not signed]

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {099DCF2A-70BE-4211-949D-B19EAD5DBE07} - System32\Tasks\Agent Activation Runtime\S-1-5-21-396946655-2491402784-2302030934-1001 => C:\WINDOWS\System32\AgentActivationRuntimeStarter.exe [13312 2020-10-14] (Microsoft Windows -> )
Task: {27B1FC27-F451-4A3A-A41D-021E423140E2} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144744 2020-11-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {3B46ACFA-C3AF-4901-97AF-FFC91CFDF302} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3D8FB502-7DA1-4EF8-A568-E3E9D35858CE} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [647656 2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4561AC24-8128-408F-A63D-42D3A2ED86EC} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1341008 2020-09-06] (Adobe Inc. -> Adobe Inc.)
Task: {4B5C7243-661D-43CE-8F1C-67417609445A} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5ACDE56F-601E-4ECA-AF3C-3DA1FEA16DE7} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [25492152 2020-09-22] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {6898E34E-A614-47E0-B748-8AD39F2D2224} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {68EF5E6A-122E-4BF7-98DC-035DC43E5BD5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2020-04-06] (Google Inc -> Google Inc.)
Task: {7287E936-DF1A-4D5F-9A00-6E6EE4C86F2C} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {773B8F1B-E466-45F1-A465-E5C047C4251F} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3294184 2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {83671619-A427-4877-B858-A232A816095C} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144744 2020-11-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {9216BFD4-6C23-4328-8591-3B460196413A} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1526680 2020-11-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {93D1C49D-BCB3-4D9A-B368-E30CA3ED285E} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {ABD32BAA-900A-4125-AB59-0D73A2660622} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [874472 2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvBackend\NvBatteryBoostCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerBatteryBoostCheck.log
Task: {C7E35B75-924C-4A2B-95D0-081FDCD102A8} - System32\Tasks\HPCustParticipation HP PageWide MFP P57750 => C:\Program Files\HP\HP PageWide MFP P57750\Bin\HPCustPartic.exe [6324360 2016-12-15] (Hewlett Packard -> HP Inc.)
Task: {C866C66F-F50D-4A9A-A950-737407031FA8} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22939528 2020-11-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {C98BC2F2-06B3-4B77-9E82-4536D299A8FE} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2020-04-06] (Google Inc -> Google Inc.)
Task: {D6184C44-50DB-44AC-AC7E-CCD59FE0C283} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [907240 2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {D703C8C4-FEA1-4645-9EC6-F763DFE449A8} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [686384 2020-09-22] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {E4C26E82-ACCA-4E9B-A1CC-9A704A8C5D23} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [22939528 2020-11-04] (Microsoft Corporation -> Microsoft Corporation)
Task: {E652686D-D323-40F4-AAD0-5901AB917395} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1126888 2020-10-01] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {F4EEFC63-764B-43BC-95F7-B3272E39F0C0} - System32\Tasks\MiniToolPartitionWizard => C:\Program Files\MiniTool Partition Wizard 12\updatechecker.exe [219616 2020-02-19] (MiniTool Software Limited -> )

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.100
Tcpip\..\Interfaces\{dee3d69c-9a80-426e-8732-3dd9a0d7bbf2}: [DhcpNameServer] 192.168.0.100

Edge:
======
Edge Profile: C:\Users\Mira\AppData\Local\Microsoft\Edge\User Data\Default [2020-10-26]

FireFox:
========
FF DefaultProfile: xfbmq2i6.default
FF ProfilePath: C:\Users\Mira\AppData\Roaming\Mozilla\Firefox\Profiles\xfbmq2i6.default [2020-11-17]
FF Homepage: Mozilla\Firefox\Profiles\xfbmq2i6.default -> www.seznam.cz
FF Extension: (Chrome Remote Desktop) - C:\Users\Mira\AppData\Roaming\Mozilla\Firefox\Profiles\xfbmq2i6.default\Extensions\remotedesktop@google.com.xpi [2020-07-22] [UpdateUrl:hxxps://www.gstatic.com/chromoting/firefox_exte ... pdate.json]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-09-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.4 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-04-23] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-04-23] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2020-04-23] (VideoLAN -> VideoLAN)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2020-09-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2020-09-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-10-22] (Adobe Inc. -> Adobe Systems Inc.)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2020-11-16]

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Mira\AppData\Local\Google\Chrome\User Data\Default [2020-10-26]
CHR DefaultSearchURL: Default -> hxxps://ssl.gstatic.com/chromoting/chromoting_logo_512.png
CHR Extension: (Prezentace) - C:\Users\Mira\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-04-06]
CHR Extension: (Dokumenty) - C:\Users\Mira\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-04-06]
CHR Extension: (Disk Google) - C:\Users\Mira\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-04-06]
CHR Extension: (YouTube) - C:\Users\Mira\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-04-06]
CHR Extension: (Chrome Remote Desktop) - C:\Users\Mira\AppData\Local\Google\Chrome\User Data\Default\Extensions\efmjfjelnicpmdcmfikempdhlmainjcb [2020-07-22]
CHR Extension: (Tabulky) - C:\Users\Mira\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-04-06]
CHR Extension: (Dokumenty Google offline) - C:\Users\Mira\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-10-07]
CHR Extension: (Chrome Remote Desktop) - C:\Users\Mira\AppData\Local\Google\Chrome\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2020-07-22]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Mira\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-04-06]
CHR Extension: (Gmail) - C:\Users\Mira\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-04-06]
CHR Extension: (Chrome Media Router) - C:\Users\Mira\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-10-07]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 602XML Updater; C:\Program Files (x86)\Common Files\soft602\602updsvc\602updsvc.exe [73728 2010-04-14] (Software602 a.s.) [File not signed]
R2 AdAppMgrSvc; C:\Program Files (x86)\Autodesk\Autodesk Desktop App\AdAppMgrSvc.exe [1046904 2020-03-04] (Autodesk, Inc. -> Autodesk Inc.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169544 2020-09-06] (Adobe Inc. -> Adobe Inc.)
R2 AdskLicensingService; C:\Program Files (x86)\Common Files\Autodesk Shared\AdskLicensing\Current\AdskLicensingService\AdskLicensingService.exe [18554456 2020-07-15] (Autodesk, Inc. -> Autodesk)
S3 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\87.0.4280.58\remoting_host.exe [73200 2020-11-10] (Google LLC -> Google Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9057136 2020-11-04] (Microsoft Corporation -> Microsoft Corporation)
S3 EHttpSrv; C:\Program Files\ESET\ESET Security\ehttpsrv.exe [57952 2020-08-06] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2364472 2020-08-06] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [2364472 2020-08-06] (ESET, spol. s r.o. -> ESET)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5101992 2020-11-11] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [13273104 2020-10-22] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\NisSrv.exe [2467088 2020-11-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2010.7-0\MsMpEng.exe [128376 2020-11-12] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_feed726c6560f7a7\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_feed726c6560f7a7\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [154344 2020-08-06] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [15288 2020-10-14] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [195464 2020-08-06] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [79536 2020-08-06] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [115976 2020-08-06] (ESET, spol. s r.o. -> ESET)
R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [19152 2019-11-08] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\Windows\system32\pwdspio.sys [12504 2019-11-08] (MiniTool Solution Ltd -> )
R2 Sentinel64; C:\WINDOWS\System32\Drivers\Sentinel64.sys [145448 2009-09-17] (SafeNet, Inc. -> SafeNet, Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [48536 2020-11-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [429288 2020-11-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [71912 2020-11-12] (Microsoft Windows -> Microsoft Corporation)
S3 MpKsld75429fb; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0AE06DE3-9CAD-4EFD-A65E-2B45E5624797}\MpKslDrv.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) ===================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-11-17 21:30 - 2020-11-17 21:30 - 000000000 ____D C:\Users\Mira\Desktop\FRST-OlderVersion
2020-11-16 15:44 - 2020-11-16 15:48 - 000000000 ____D C:\AdwCleaner
2020-11-16 15:43 - 2020-11-16 15:43 - 008447152 _____ (Malwarebytes) C:\Users\Mira\Downloads\adwcleaner_8.0.8.exe
2020-11-16 15:43 - 2020-11-16 15:43 - 008447152 _____ (Malwarebytes) C:\Users\Mira\Desktop\adwcleaner_8.0.8.exe
2020-11-16 15:36 - 2020-11-16 15:50 - 000000000 ____D C:\Program Files\Mozilla Firefox
2020-11-16 10:47 - 2020-11-16 10:48 - 029780016 _____ (TeamViewer Germany GmbH) C:\Users\Mira\Downloads\TeamViewer_Setup(1).exe
2020-11-11 12:22 - 2020-11-11 12:22 - 026274304 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 024265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 023452160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 019870720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 018083840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 008895680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 008235008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 007783936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 007621632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 007107584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 006422016 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 006001208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 005833216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 004902400 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 004830720 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 004783840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 004281856 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 004277248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 003869184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 003157816 _____ (Microsoft Corporation) C:\WINDOWS\system32\mispace.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 002760704 _____ (Microsoft Corporation) C:\WINDOWS\system32\storagewmi.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 002520056 _____ (Microsoft Corporation) C:\WINDOWS\system32\msmpeg2vdec.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 002477384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mispace.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 002426168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 002384696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.AppAgent.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 002268456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 002012672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\storagewmi.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 001683456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 001632056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.AppAgent.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 001557816 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2020-11-11 12:22 - 2020-11-11 12:22 - 001352240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 001272320 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdclt.exe
2020-11-11 12:22 - 2020-11-11 12:22 - 001256448 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 001255736 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2020-11-11 12:22 - 2020-11-11 12:22 - 001238528 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdengin2.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 001117328 _____ (Microsoft Corporation) C:\WINDOWS\system32\DolbyDecMFT.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000947712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Immersive.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000892416 _____ (Microsoft Corporation) C:\WINDOWS\system32\werconcpl.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000874496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000845312 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000805168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcblaunch.exe
2020-11-11 12:22 - 2020-11-11 12:22 - 000787968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2013CustomActions.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000779264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprddm.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000713728 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000540672 _____ (Microsoft Corporation) C:\WINDOWS\system32\IESettingSync.exe
2020-11-11 12:22 - 2020-11-11 12:22 - 000535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2013CustomActions.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000521088 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2020-11-11 12:22 - 2020-11-11 12:22 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtrmgr.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000495104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000441856 _____ (Microsoft Corporation) C:\WINDOWS\system32\WalletService.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000431616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasgcw.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000423224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSAudDecMFT.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000420864 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000413696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcLayers.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000413208 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsmf.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mprdim.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000403456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgeIso.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000357888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000344000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsmf.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000324096 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcLayers.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ListSvc.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000252928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msIso.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000248320 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\HoloShellRuntime.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\IndexedDbLegacy.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWWIN.EXE
2020-11-11 12:22 - 2020-11-11 12:22 - 000218936 _____ (Microsoft Corporation) C:\WINDOWS\system32\tcbloader.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000218112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinSCard.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000209408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000199680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasplap.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngOnline.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000189440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWWIN.EXE
2020-11-11 12:22 - 2020-11-11 12:22 - 000183296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\HoloShellRuntime.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000176128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IndexedDbLegacy.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtm.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000158208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000153600 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdrsvc.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakrathunk.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\sdshext.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000127488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wercplsupport.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netid.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000126976 _____ (Microsoft Corporation) C:\WINDOWS\system32\dbnetlib.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000121344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000117064 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvloader.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000113152 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdSSDP.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000109056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dbnetlib.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000105472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakrathunk.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000104760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\PktMon.sys
2020-11-11 12:22 - 2020-11-11 12:22 - 000095048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\hvservice.sys
2020-11-11 12:22 - 2020-11-11 12:22 - 000089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fdSSDP.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000086528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AcXtrnal.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsgqec.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\iemigplugin.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iemigplugin.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000054784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tsgqec.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000046080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft.Uev.Office2010CustomActions.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000042824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysResetErr.exe
2020-11-11 12:22 - 2020-11-11 12:22 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft.Uev.Office2010CustomActions.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000021320 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdhvcom.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000020280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ResetEngine.exe
2020-11-11 12:22 - 2020-11-11 12:22 - 000015872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AcXtrnal.dll
2020-11-11 12:22 - 2020-11-11 12:22 - 000009265 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2020-11-11 12:22 - 2020-11-11 12:22 - 000009216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iprtprio.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 010840904 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 010336904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 008009872 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 007990232 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 007636448 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 006368392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 006231040 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.pcshell.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 006196736 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 005430992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.StateRepository.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 004752896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 004732928 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 004651032 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 004629328 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppsvc.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 004069992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 004008448 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 003933696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 003893248 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 003851776 _____ (Microsoft Corporation) C:\WINDOWS\system32\tellib.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 003821064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreUAPCommonProxyStub.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 003815936 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 003811840 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 003779392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 003750400 _____ (Microsoft Corporation) C:\WINDOWS\system32\EdgeContent.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 003388928 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 003305984 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 003089920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 003070464 _____ (Microsoft Corporation) C:\WINDOWS\system32\FluencyDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 002983736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 002979840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 002942976 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 002850616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 002809776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 002749952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 002648576 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 002607104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tquery.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 002318848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssrch.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 002250240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 002048000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreShell.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 002024248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001953792 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001828352 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001827648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpserverbase.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001819640 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001751944 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppobjs.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001715200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Globalization.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001711104 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001702392 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001695728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001664160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001649664 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001590784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001590584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rdpserverbase.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001523712 _____ (Microsoft Corporation) C:\WINDOWS\system32\MoUsoCoreWorker.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 001516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001515520 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001495040 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001481216 _____ (Microsoft Corporation) C:\WINDOWS\system32\qmgr.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001478464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 001449984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001414656 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocoreworker.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 001391616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Input.Inking.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001361920 _____ (Microsoft Corporation) C:\WINDOWS\system32\tsf3gip.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001315328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Globalization.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001278464 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001255424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001245280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsreg.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001239040 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_IME.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001228800 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001210136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplyTrustOffline.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 001192096 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001128520 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001097216 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001094656 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskbarcpl.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001070392 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001058304 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001036288 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcRefreshTask.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001025768 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 001017472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsreg.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000988000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000983408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthService.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000980992 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000971776 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasmans.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000941568 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000928256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApiPublic.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000926720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprddm.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000904008 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000894776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000885248 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000883712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000882688 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntimewindows.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000877056 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000873272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000867328 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000866304 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000863232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000863232 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000860672 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofmsvc.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000859400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000857088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000849920 _____ (Microsoft Corporation) C:\WINDOWS\system32\agentactivationruntime.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000828432 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000820552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vhdmp.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000815616 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000803840 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActivationManager.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000802304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000783360 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000781312 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000763392 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000763344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rpcrt4.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000756680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Language.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000732448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000716288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchIndexer.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000712296 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000705008 _____ (Microsoft Corporation) C:\WINDOWS\system32\SHCore.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000702464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000700376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000697856 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000689024 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000677888 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ApplicationFrame.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000671232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000659456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActivationManager.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000648712 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000645632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntimewindows.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000635840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotifyIcon.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000628736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\agentactivationruntime.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000628224 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtrmgr.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000627200 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\XAudio2_9.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000616448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000614912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.ConversationalAgent.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000603448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000598016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000597504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XAudio2_9.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000596992 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000586240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000568632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WerFault.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000567296 _____ (Microsoft Corporation) C:\WINDOWS\system32\usosvc.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000553472 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasgcw.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000546968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SHCore.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChxAPDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000538952 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000534536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000520192 _____ (Microsoft Corporation) C:\WINDOWS\system32\mprdim.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000516096 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000515072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChxHAPDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000509792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000502584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2020-11-11 12:21 - 2020-11-11 12:21 - 000501760 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000493056 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneCoreCommonProxyStub.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000491520 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000489128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000488056 _____ (Microsoft Corporation) C:\WINDOWS\system32\Faultrep.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000482120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WerFault.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000475136 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtCangjieDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtBopomofoDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtHkStrokeDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000460800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChsStrokeDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000459264 _____ (Microsoft Corporation) C:\WINDOWS\system32\aadauthhelper.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtQuickDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000455168 _____ (Microsoft Corporation) C:\WINDOWS\system32\rascustom.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000454968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000453632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uxtheme.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000449024 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ks.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgeIso.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000443904 _____ (Microsoft Corporation) C:\WINDOWS\system32\AarSvc.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000442168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000430592 _____ (Microsoft Corporation) C:\WINDOWS\system32\SDDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000429712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000423224 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DataModel.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000410072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Faultrep.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000409408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000401920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000388608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000384512 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SpeechPrivacy.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000382712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000381952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssvp.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000381440 _____ (Microsoft Corporation) C:\WINDOWS\system32\jpndecoder.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000380728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msrpc.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000380416 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChxDecoder.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000378880 _____ (Microsoft Corporation) C:\WINDOWS\system32\SysFxUI.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000376120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthAgent.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000366080 _____ (Microsoft Corporation) C:\WINDOWS\system32\chxinputrouter.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\RasMediaManager.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000363008 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicSvc.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000361984 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedynos.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000343040 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.Ngc.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchProtocolHost.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000339456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AarSvc.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000329728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32k.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000324608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000320512 _____ (Microsoft Corporation) C:\WINDOWS\system32\vdsbas.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000319488 _____ (Microsoft Corporation) C:\WINDOWS\system32\MtfDecoder.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msIso.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\netplwiz.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000315392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srvnet.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000305472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000303104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssvp.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinSCard.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000298808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msiscsi.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\jpnranker.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkssvc.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000293376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardSvr.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcTok.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000288680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wintrust.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000286720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Search.ProtocolHandler.MAPI2.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiCloudStore.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000274432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedynos.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000272384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFilterHost.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdd.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000265728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.Ngc.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicCapsule.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000260920 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinesam.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000260800 _____ (Microsoft Corporation) C:\WINDOWS\system32\logoncli.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000253016 _____ (Microsoft Corporation) C:\WINDOWS\system32\weretw.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000250176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netvsc.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wersvc.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000236544 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasplap.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000233472 _____ (Microsoft Corporation) C:\WINDOWS\system32\XamlTileRender.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000231424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OneCoreCommonProxyStub.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000229376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFilterHost.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\netprofm.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000228680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000224768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000222720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netplwiz.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000220160 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDeviceRegistration.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000218112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfp.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssph.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000206336 _____ (Microsoft Corporation) C:\WINDOWS\system32\diskpart.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000205312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ScDeviceEnum.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000201536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\certprop.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000195400 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000195144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\weretw.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000194560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_InkingTypingPrivacy.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000190048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\logoncli.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtm.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000183808 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\diskpart.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000181760 _____ (Microsoft Corporation) C:\WINDOWS\system32\netid.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000180040 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\trie.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFFuzzyDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertPolEng.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\AdvancedEmojiDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000165376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssph.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDeviceRegistration.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.SharedPC.CredentialProvider.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msaudite.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000155136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaudite.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000153912 _____ (Microsoft Corporation) C:\WINDOWS\system32\setupcl.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000152576 _____ C:\WINDOWS\system32\EoAExperiences.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000151552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_BrowserDeclutter.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\shacct.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssprxy.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\usoapi.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertPolEng.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000137216 _____ (Microsoft Corporation) C:\WINDOWS\system32\CloudDomainJoinAUG.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000134968 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000133448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\setupcl.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000132744 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32u.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000132608 _____ (Microsoft Corporation) C:\WINDOWS\system32\VocabRoamingHandler.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerApi.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssitlb.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000128000 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSAssessment.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000125952 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000122880 _____ (Microsoft Corporation) C:\WINDOWS\system32\chxranker.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000118600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthProxyStub.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFSpellcheckDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000114176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssitlb.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000112640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shacct.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\HashtagDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChtAdvancedDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\MTFAppServiceDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000099840 _____ (Microsoft Corporation) C:\WINDOWS\system32\RuleBasedDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManagerApi.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000098120 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecurityHealthHost.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmk.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000092960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32u.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicAgent.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000084480 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardDlg.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000083968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usoapi.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\jpninputrouter.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\amsi.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncobjapi.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000070968 _____ (Microsoft Corporation) C:\WINDOWS\system32\GameInput.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000067072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\msscntrs.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msobjs.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\msobjs.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\TransliterationRanker.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000061760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GameInput.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmojiDS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssprxy.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\amsi.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncobjapi.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\SCardBi.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000049664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msscntrs.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000047616 _____ (Microsoft Corporation) C:\WINDOWS\system32\npmproxy.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\werdiagcontroller.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\devauthe.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\scfilter.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000041472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000039936 _____ (Microsoft Corporation) C:\WINDOWS\system32\gmsaclient.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000038912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werdiagcontroller.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mskssrv.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2020-11-11 12:21 - 2020-11-11 12:21 - 000033792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000032768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gmsaclient.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\KNetPwrDepBroker.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmproxy.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\FaxPrinterInstaller.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000029184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WaaSMedicPS.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000024792 _____ (Microsoft Corporation) C:\WINDOWS\system32\nsi.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dsregtask.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\nlmsprep.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000020144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\nsi.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dsregtask.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanhlp.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\iscsilog.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000016136 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\drmkaud.sys
2020-11-11 12:21 - 2020-11-11 12:21 - 000014848 _____ (Microsoft Corporation) C:\WINDOWS\system32\amsiproxy.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000011776 _____ (Microsoft Corporation) C:\WINDOWS\system32\iprtprio.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tzres.dll
2020-11-11 12:21 - 2020-11-11 12:21 - 000002560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzres.dll
2020-11-11 12:06 - 2020-10-15 04:22 - 000495616 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2020-11-11 12:06 - 2020-10-15 04:14 - 000391168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2020-10-26 11:47 - 2020-10-26 11:47 - 000056565 _____ C:\Users\Mira\Desktop\Preventivka.zip
2020-10-26 11:32 - 2020-10-26 11:34 - 000047608 _____ C:\Users\Mira\Desktop\Addition.txt
2020-10-26 11:29 - 2020-11-17 21:32 - 000022127 _____ C:\Users\Mira\Desktop\FRST.txt
2020-10-26 11:28 - 2020-11-17 21:32 - 000000000 ____D C:\FRST
2020-10-26 11:27 - 2020-11-17 21:30 - 002294784 _____ (Farbar) C:\Users\Mira\Desktop\FRST64.exe
2020-10-26 09:10 - 2020-10-26 09:10 - 000269715 _____ C:\Users\Mira\Downloads\Objednávka.pdf
2020-10-22 12:37 - 2020-10-22 12:37 - 000093976 _____ C:\Users\Mira\Downloads\Faktura_2010917.pdf
2020-10-22 05:51 - 2020-10-22 05:51 - 085482543 _____ C:\Users\Mira\Downloads\Obrázky_airmore_20201022_065112.zip
2020-10-19 08:22 - 2020-10-19 08:22 - 000003976 _____ C:\WINDOWS\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-10-19 08:22 - 2020-10-19 08:22 - 000003940 _____ C:\WINDOWS\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-10-19 08:22 - 2020-10-19 08:22 - 000001448 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2020-10-19 08:22 - 2020-10-19 08:22 - 000001448 _____ C:\ProgramData\Desktop\GeForce Experience.lnk
2020-10-19 08:22 - 2020-10-19 08:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2020-10-19 08:22 - 2020-10-01 08:14 - 002754024 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvspcap64.dll
2020-10-19 08:22 - 2020-10-01 08:14 - 002121016 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvspcap.dll
2020-10-19 08:22 - 2020-10-01 08:14 - 001295848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvRtmpStreamer64.dll
2020-10-19 08:21 - 2020-10-19 08:21 - 000004308 _____ C:\WINDOWS\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-10-19 08:21 - 2020-10-19 08:21 - 000004106 _____ C:\WINDOWS\system32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-10-19 08:21 - 2020-10-19 08:21 - 000003894 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-10-19 08:21 - 2020-10-19 08:21 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-10-19 08:21 - 2020-10-19 08:21 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-10-19 08:21 - 2020-10-19 08:21 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-10-19 08:21 - 2020-10-19 08:21 - 000003858 _____ C:\WINDOWS\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-10-19 08:21 - 2020-10-19 08:21 - 000003654 _____ C:\WINDOWS\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2020-10-19 08:21 - 2020-10-01 08:14 - 000169456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvaudcap64v.dll
2020-10-19 08:21 - 2020-10-01 08:14 - 000145392 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvaudcap32v.dll
2020-10-19 08:21 - 2020-10-01 08:14 - 000001951 _____ C:\WINDOWS\NvContainerRecovery.bat
2020-10-19 08:18 - 2020-10-01 08:14 - 001804784 _____ (Microsoft Corporation) C:\WINDOWS\system32\WdfCoInstaller01011.dll
2020-10-19 08:18 - 2020-10-01 08:14 - 000069840 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvad64v.sys
2020-10-19 08:18 - 2020-10-01 08:14 - 000067456 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvvhci.sys
2020-10-19 08:18 - 2020-10-01 08:14 - 000050592 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\NvModuleTracker.sys
2020-10-19 08:18 - 2020-10-01 08:14 - 000038632 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhdap64.dll
2020-10-19 07:59 - 2020-10-02 00:48 - 001769688 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2020-10-19 07:59 - 2020-10-02 00:48 - 001769688 _____ C:\WINDOWS\system32\vulkaninfo.exe
2020-10-19 07:59 - 2020-10-02 00:48 - 001370328 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2020-10-19 07:59 - 2020-10-02 00:48 - 001370328 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2020-10-19 07:59 - 2020-10-02 00:48 - 001054944 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2020-10-19 07:59 - 2020-10-02 00:48 - 001054944 _____ C:\WINDOWS\system32\vulkan-1.dll
2020-10-19 07:59 - 2020-10-02 00:48 - 000917728 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2020-10-19 07:59 - 2020-10-02 00:48 - 000917728 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2020-10-19 07:59 - 2020-10-02 00:48 - 000455408 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2020-10-19 07:59 - 2020-10-02 00:48 - 000351128 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2020-10-19 07:59 - 2020-10-02 00:46 - 001023216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2020-10-19 07:59 - 2020-10-02 00:46 - 000673520 _____ C:\WINDOWS\system32\nvofapi64.dll
2020-10-19 07:59 - 2020-10-02 00:46 - 000543128 _____ C:\WINDOWS\SysWOW64\nvofapi.dll
2020-10-19 07:59 - 2020-10-02 00:45 - 002098072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2020-10-19 07:59 - 2020-10-02 00:45 - 001585560 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2020-10-19 07:59 - 2020-10-02 00:45 - 001507224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2020-10-19 07:59 - 2020-10-02 00:45 - 001161112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2020-10-19 07:59 - 2020-10-02 00:45 - 000813464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2020-10-19 07:59 - 2020-10-02 00:45 - 000670616 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFROpenGL.dll
2020-10-19 07:59 - 2020-10-02 00:45 - 000657304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2020-10-19 07:59 - 2020-10-02 00:45 - 000589208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2020-10-19 07:59 - 2020-10-02 00:45 - 000555248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFROpenGL.dll
2020-10-19 07:59 - 2020-10-02 00:44 - 007707544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2020-10-19 07:59 - 2020-10-02 00:44 - 006860184 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2020-10-19 07:59 - 2020-10-02 00:44 - 005519600 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2020-10-19 07:59 - 2020-10-02 00:44 - 004174064 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2020-10-19 07:59 - 2020-10-02 00:44 - 002508528 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2020-10-19 07:59 - 2020-10-02 00:44 - 000849648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2020-10-19 07:59 - 2020-10-02 00:44 - 000445848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2020-10-19 07:59 - 2020-10-02 00:43 - 007001536 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2020-10-19 07:59 - 2020-10-02 00:43 - 005972824 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2020-10-19 07:59 - 2020-10-01 08:14 - 000080930 _____ C:\WINDOWS\system32\nvinfo.pb
2020-10-19 07:39 - 2020-10-19 07:45 - 640512440 _____ (NVIDIA Corporation) C:\Users\Mira\Downloads\456.71-desktop-win10-64bit-international-dch-whql.exe
2020-10-19 06:57 - 2020-10-19 06:57 - 000258135 _____ C:\Users\Mira\Documents\Scan_0004.pdf

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-11-17 21:29 - 2020-10-14 08:54 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-11-17 21:29 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-11-17 12:25 - 2020-04-06 12:02 - 000000000 ____D C:\ProgramData\NVIDIA
2020-11-17 12:11 - 2020-04-06 20:07 - 000000000 ____D C:\ProgramData\Autodesk
2020-11-17 00:11 - 2020-04-06 11:53 - 000000000 ____D C:\Program Files (x86)\Google
2020-11-16 23:20 - 2020-04-06 11:40 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2020-11-16 15:59 - 2020-10-14 09:14 - 000000000 ____D C:\WINDOWS\Minidump
2020-11-16 15:59 - 2020-04-16 08:10 - 000000000 ____D C:\Users\Mira\AppData\Local\CrashDumps
2020-11-16 15:59 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2020-11-16 15:58 - 2020-04-06 11:50 - 000000000 ____D C:\Users\Mira\AppData\LocalLow\Mozilla
2020-11-16 15:57 - 2020-10-14 09:08 - 001718688 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-11-16 15:57 - 2019-12-07 15:43 - 000726538 _____ C:\WINDOWS\system32\perfh005.dat
2020-11-16 15:57 - 2019-12-07 15:43 - 000148800 _____ C:\WINDOWS\system32\perfc005.dat
2020-11-16 15:50 - 2020-10-14 09:10 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-11-16 15:50 - 2020-10-14 08:53 - 000008192 ___SH C:\DumpStack.log.tmp
2020-11-16 15:50 - 2020-04-06 11:50 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2020-11-16 15:49 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2020-11-16 15:42 - 2020-04-06 11:50 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2020-11-16 10:54 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2020-11-16 10:53 - 2020-10-14 08:21 - 000000000 ____D C:\Users\Mira
2020-11-16 10:53 - 2020-04-06 11:40 - 000000000 ____D C:\Users\Mira\AppData\Roaming\TeamViewer
2020-11-16 07:56 - 2020-04-14 11:51 - 000000000 ____D C:\ProgramData\firebird
2020-11-16 07:51 - 2020-05-29 11:27 - 000000000 _____ C:\Users\Mira\Documents\HPPW5775_Fax_Port
2020-11-15 07:23 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-11-15 00:18 - 2020-06-05 12:48 - 000002424 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-11-15 00:18 - 2020-06-05 12:48 - 000002262 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2020-11-15 00:18 - 2020-06-05 12:48 - 000002262 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk
2020-11-15 00:18 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2020-11-14 12:06 - 2020-04-07 05:21 - 000000000 ____D C:\Program Files\Microsoft Office
2020-11-14 10:47 - 2020-10-14 06:10 - 000000000 ___DC C:\WINDOWS\Panther
2020-11-12 09:32 - 2020-04-06 11:12 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2020-11-12 09:31 - 2020-04-06 13:32 - 000795000 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2020-11-11 23:41 - 2020-10-14 08:54 - 000544336 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-11-11 23:38 - 2019-12-07 15:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2020-11-11 23:38 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2020-11-11 23:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2020-11-11 23:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2020-11-11 23:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2020-11-11 23:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2020-11-11 23:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2020-11-11 23:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2020-11-11 23:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2020-11-11 23:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2020-11-11 23:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-11-11 22:12 - 2020-04-06 11:54 - 000002306 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-11-11 22:12 - 2020-04-06 11:54 - 000002265 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-11-11 22:12 - 2020-04-06 11:54 - 000002265 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-11-11 12:25 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-11-11 12:21 - 2020-10-14 09:10 - 000004210 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2020-11-11 12:21 - 2020-10-14 08:56 - 002876928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2020-11-11 12:02 - 2020-04-07 02:58 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-11-11 11:57 - 2020-04-07 02:58 - 133736600 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2020-11-09 13:58 - 2020-04-06 11:25 - 000000000 ____D C:\Users\Mira\AppData\Local\Packages
2020-11-06 02:42 - 2020-10-14 09:17 - 000003490 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore1d6a200dab1e07a
2020-11-06 02:42 - 2020-10-14 09:10 - 000003584 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-11-04 15:59 - 2020-04-07 08:12 - 000002141 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-10-30 08:40 - 2020-04-06 12:27 - 000000000 ____D C:\Users\Mira\AppData\Local\NVIDIA Corporation
2020-10-27 05:24 - 2020-10-14 09:10 - 000003370 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-396946655-2491402784-2302030934-1001
2020-10-27 05:23 - 2020-10-14 08:21 - 000002363 _____ C:\Users\Mira\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-10-27 05:23 - 2020-04-06 11:28 - 000000000 ___RD C:\Users\Mira\OneDrive
2020-10-26 12:40 - 2020-04-21 13:12 - 000460933 _____ C:\Users\Mira\Documents\Print2PDF
2020-10-26 12:14 - 2020-04-06 20:35 - 000000000 ____D C:\ProgramData\boost_interprocess
2020-10-22 07:23 - 2020-04-06 12:27 - 000000000 ____D C:\Users\Mira\AppData\Local\NVIDIA
2020-10-20 07:46 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2020-10-19 08:22 - 2020-04-06 12:02 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2020-10-19 08:22 - 2020-04-06 11:35 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2020-10-19 08:22 - 2020-04-06 11:35 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2020-10-19 08:19 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Help
2020-10-19 07:22 - 2020-04-06 11:35 - 000010676 _____ C:\ProgramData\NVDisplay.ContainerLocalSystem.log_backup1
2020-10-19 07:21 - 2020-10-14 09:38 - 000006039 _____ C:\ProgramData\DisplaySessionContainer4.log_backup1
2020-10-19 07:12 - 2020-10-14 09:11 - 000006126 _____ C:\ProgramData\DisplaySessionContainer1.log_backup1
2020-10-19 07:07 - 2020-04-06 11:35 - 000139490 _____ C:\ProgramData\NVDisplayContainerWatchdog.log_backup1

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================



Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-11-2020
Ran by Mira (17-11-2020 21:34:39)
Running from C:\Users\Mira\Desktop
Windows 10 Pro Version 2004 19041.630 (X64) (2020-10-14 08:10:48)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-396946655-2491402784-2302030934-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-396946655-2491402784-2302030934-503 - Limited - Disabled)
Guest (S-1-5-21-396946655-2491402784-2302030934-501 - Limited - Disabled)
Mira (S-1-5-21-396946655-2491402784-2302030934-1001 - Administrator - Enabled) => C:\Users\Mira
WDAGUtilityAccount (S-1-5-21-396946655-2491402784-2302030934-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 20.00 alpha (x64) (HKLM\...\7-Zip) (Version: 20.00 alpha - Igor Pavlov)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 20.013.20064 - Adobe Systems Incorporated)
Adobe AIR (HKLM-x32\...\Adobe AIR) (Version: 32.0.0.125 - Adobe)
Aktualizace NVIDIA 38.0.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 38.0.5.0 - NVIDIA Corporation) Hidden
Alphacam 2016 R2 (HKLM-x32\...\{8FA7BB05-6402-4E9C-865F-DC11BE830863}) (Version: 15.1.100 - Vero Software) Hidden
Alphacam 2016 R2 (HKLM-x32\...\InstallShield_{8FA7BB05-6402-4E9C-865F-DC11BE830863}) (Version: 15.5.2.136 - Vero Software)
Altap Salamander 4.0 (x64) (HKLM\...\Altap Salamander 4.0 (x64)) (Version: 4.0 - ALTAP)
AutoCAD LT 2021 – Čeština (Czech) (HKLM\...\{28B89EEF-4109-0405-2102-CF3F3A09B77D}) (Version: 24.0.47.0 - Autodesk) Hidden
AutoCAD LT 2021 - English (HKLM\...\{28B89EEF-4109-0000-0102-CF3F3A09B77D}) (Version: 24.0.119.0 - Autodesk) Hidden
AutoCAD LT 2021 Language Pack – Čeština (Czech) (HKLM\...\{28B89EEF-4109-0405-1102-CF3F3A09B77D}) (Version: 24.0.117.0 - Autodesk) Hidden
Autodesk AutoCAD LT 2021 – Čeština (Czech) (HKLM\...\AutoCAD LT 2021 – Čeština (Czech)) (Version: 24.0.47.0 - Autodesk)
Autodesk AutoCAD LT 2021.1 Update (HKLM-x32\...\{f4f9ba0b-4109-0000-0102-f66cecb11900}) (Version: 24.0.119.0 - Autodesk)
Autodesk Genuine Service (HKLM-x32\...\{54A00624-3EF9-49A2-92A9-7244EADD0212}) (Version: 3.2.18 - Autodesk)
Autodesk Material Library 2021 (HKLM-x32\...\{6774FD60-7D4B-4D57-BE56-2702A07C9701}) (Version: 19.1.22.0 - Autodesk)
Autodesk Material Library Base Resolution Image Library 2021 (HKLM-x32\...\{6EFAD582-86C1-4AB2-97C5-2070D0B90E08}) (Version: 19.1.22.0 - Autodesk)
Autodesk Single Sign On Component (HKLM\...\{7F0FE09D-E25D-4C59-A1AA-DB17153FC353}) (Version: 11.3.0.1803 - Autodesk)
CCleaner (HKLM\...\CCleaner) (Version: 5.72 - Piriform)
Dassault Systemes Software VC11 Prerequisites x86-x64 (HKLM\...\{C857169D-3F1A-4530-99A0-CAE966CE267E}) (Version: 11.0.1 - Dassault Systemes)
ESET Endpoint Antivirus (HKLM\...\{D9D12973-95FB-4671-B4D6-CF7CE6EB5094}) (Version: 7.3.2041.0 - ESET, spol. s r.o.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 86.0.4240.198 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.31 - Google LLC) Hidden
HP Dropbox Plugin (HKLM-x32\...\{C532369A-0DB2-4955-99C2-15711A0EBA11}) (Version: 36.0.49.62779 - HP)
HP Google Drive Plugin (HKLM-x32\...\{E7AA21C9-D2D2-4AE0-9F61-D2FC755C933E}) (Version: 36.0.49.62779 - HP)
HP OneDrive Plugin (HKLM-x32\...\{D153F4F6-A6A7-459C-86F0-306052B34665}) (Version: 36.0.0.0 - HP)
HP PageWide MFP P57750 Nápověda (HKLM-x32\...\{13531513-DD03-4796-8BBC-ED65606EBC2A}) (Version: 39.0.0 - HP)
Chrome Remote Desktop Host (HKLM-x32\...\{9750FA29-18AB-41C9-B997-D7FBF7B790D6}) (Version: 87.0.4280.58 - Google Inc.)
I.R.I.S. OCR (HKLM-x32\...\{08AE1F44-18C4-4079-B8FF-8A9E6F1E4892}) (Version: 12.3.7.0 - HP)
Java(TM) 6 Update 16 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83216016FF}) (Version: 6.0.160 - Sun Microsystems, Inc.)
Microsoft 365 Apps pro firmy - cs-cz (HKLM\...\O365BusinessRetail - cs-cz) (Version: 16.0.13328.20356 - Microsoft Corporation)
Microsoft Access database engine 2010 (English) (HKLM\...\{90140000-00D1-0409-1000-0000000FF1CE}) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 86.0.622.69 - Microsoft Corporation)
Microsoft Edge Update (HKLM-x32\...\Microsoft Edge Update) (Version: 1.3.137.99 - )
Microsoft OneDrive (HKU\S-1-5-21-396946655-2491402784-2302030934-1001\...\OneDriveSetup.exe) (Version: 20.169.0823.0008 - Microsoft Corporation)
Microsoft SQL Server 2008 Setup Support Files (HKLM\...\{B40EE88B-400A-4266-A17B-E3DE64E94431}) (Version: 10.1.2731.0 - Microsoft Corporation)
Microsoft SQL Server 2012 (64-bit) (HKLM\...\Microsoft SQL Server SQLServer2012) (Version: - Microsoft Corporation)
Microsoft SQL Server 2012 Native Client (HKLM\...\{9AE22681-C27C-402A-A136-15854DFF693D}) (Version: 11.3.6020.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Setup (English) (HKLM\...\{BDF7F870-15E2-49A7-9123-65E8FF52ECAA}) (Version: 11.3.6020.0 - Microsoft Corporation)
Microsoft SQL Server 2012 Transact-SQL ScriptDom (HKLM\...\{076FF390-D283-4174-B602-B0B7B72BD024}) (Version: 11.3.6020.0 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-396946655-2491402784-2302030934-1001\...\Teams) (Version: 1.3.00.4461 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{97238E8A-4919-4A1E-965A-C6C36938F4CE}) (Version: 2.68.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.24.28127 (HKLM-x32\...\{282975d8-55fe-4991-bbbb-06a72581ce58}) (Version: 14.24.28127.4 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
MiniTool Partition Wizard Free 12 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: - MiniTool Software Limited)
Mozilla Firefox 82.0.3 (x64 cs) (HKLM\...\Mozilla Firefox 82.0.3 (x64 cs)) (Version: 82.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 68.7.0 - Mozilla)
Mozilla Thunderbird 68.12.1 (x86 cs) (HKLM-x32\...\Mozilla Thunderbird 68.12.1 (x86 cs)) (Version: 68.12.1 - Mozilla)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.27 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.20.4.15 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.20.4.15 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.38.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.38.35 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 456.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 456.71 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.19.0218 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.19.0218 - NVIDIA Corporation)
NvModuleTracker (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvModuleTracker.Driver) (Version: 6.14.24033.38719 - NVIDIA Corporation) Hidden
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.13328.20340 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.13328.20340 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.13328.20340 - Microsoft Corporation) Hidden
Optimik (HKLM-x32\...\Optimik_is1) (Version: - Rastislav Korytár - RK Software)
Optimik 4 (HKLM-x32\...\Optimik 4_is1) (Version: - Rastislav Korytár - RK Software)
Počítačová aplikace Autodesk (HKLM-x32\...\Autodesk Desktop App) (Version: 8.0.0.46 - Autodesk)
S2M Center 11 (HKLM-x32\...\{B7857928-955B-4554-89C3-C6FC4B2EBC21}) (Version: 11.00.0000 - ) Hidden
S2M Center 11 (HKLM-x32\...\InstallShield_{B7857928-955B-4554-89C3-C6FC4B2EBC21}) (Version: 11.2.0.168 - )
Sentinel System Driver Installer 7.5.9 (HKLM-x32\...\{D19BF240-59D1-4645-B7C3-BF9D9E585A24}) (Version: 7.5.9 - SafeNet, Inc.)
Service Pack 3 for SQL Server 2012 (KB3072779) (64-bit) (HKLM\...\KB3072779) (Version: 11.3.6020.0 - Microsoft Corporation)
Software602 Print2PDF (HKLM-x32\...\{32C74893-0243-4235-A6F3-201F0E5D2C03}) (Version: 9.1.11.0421 - Software602 a.s.)
Solid 11 (HKLM-x32\...\{2F00150D-5C86-40E1-B473-5B34EDBBAC85}) (Version: 11.00.0000 - ) Hidden
Solid 11 (HKLM-x32\...\InstallShield_{2F00150D-5C86-40E1-B473-5B34EDBBAC85}) (Version: 11.2.0.168 - )
Solidlink 2016.30 (HKLM\...\{ AD236116-8BC1-42FD-8653-1A1D8845B2F9 }_is1) (Version: 2016.30 - Vero Software Limited)
SQL Server 2012 Common Files (HKLM\...\{1D411379-9CE0-4B13-A19B-72D3222DD620}) (Version: 11.3.6020.0 - Microsoft Corporation) Hidden
SQL Server 2012 Common Files (HKLM\...\{202AAF1F-69AA-442A-B59F-6B54B1AD07C6}) (Version: 11.3.6020.0 - Microsoft Corporation) Hidden
SQL Server 2012 Database Engine Shared (HKLM\...\{54FF8FAB-DE27-4187-82F1-EBAE6AEE869A}) (Version: 11.3.6020.0 - Microsoft Corporation) Hidden
SQL Server 2012 Database Engine Shared (HKLM\...\{6603C2CE-3C54-4F1D-92F9-8390CD4CCCA8}) (Version: 11.3.6020.0 - Microsoft Corporation) Hidden
Studie vylepšování produktu HP PageWide MFP P57750 (HKLM\...\{9AE6F1AF-29A2-40CB-A701-4CE71D8C96DA}) (Version: 39.4.1978.16350 - HP Inc.)
Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.3.0.4461 - Microsoft Corporation)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.11.6 - TeamViewer)
Trachea OS (HKLM-x32\...\{AC33A791-6283-8967-6E2D-16C3B15C6001}) (Version: 5.3.189 - SOFTconsult spol. s r.o.) Hidden
Trachea OS (HKLM-x32\...\TracheaOS) (Version: 5.3.189 - SOFTconsult spol. s r.o.)
Uložit do služby Autodesk Web and Mobile (HKLM\...\{A9005AC0-4AD8-4E84-B1F7-EE38BB6BCC2D}) (Version: 3.0.26 - Autodesk)
Vero Software CLS 2016.10 (HKLM-x32\...\{1CE6F900-3AEE-4096-A75E-26B20051485A}) (Version: 2016.10.7.7942 - Vero Software Limited)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.10 - VideoLAN)
Wood Flash 2.9 (HKLM-x32\...\Wood Flash) (Version: 2.9 - T.P.A. S.p.A.)
Základní software zařízení HP PageWide MFP P57750 (HKLM\...\{BD4A2FF8-641B-4360-8ED4-BF8B867F1412}) (Version: 39.4.1978.16350 - HP Inc.)
Zoner Photo Studio 17 (HKLM\...\ZonerPhotoStudio17_CZ_is1) (Version: 17.0.1.12 - ZONER software)

Packages:
=========
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2020-04-06] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2020-04-06] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.7.10142.0_x64__8wekyb3d8bbwe [2020-10-24] (Microsoft Studios) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.958.0_x64__56jybvy8sckqj [2020-06-23] (NVIDIA Corp.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-396946655-2491402784-2302030934-1001_Classes\CLSID\{19A6E644-14E6-4A60-B8D7-DD20610A871D}\InprocServer32 -> C:\Users\Mira\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20031.2\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-396946655-2491402784-2302030934-1001_Classes\CLSID\{345D3165-3889-4694-AB75-A91A27B217E8}\localserver32 -> C:\Program Files\Autodesk\AutoCAD LT 2021\acadlt.exe (Autodesk, Inc. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-396946655-2491402784-2302030934-1001_Classes\CLSID\{74F5CC00-49A9-11CF-A2F9-444553540000}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD LT 2021\cs-CZ\acadltficn.dll (Autodesk Asia Pte. Ltd. -> Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-396946655-2491402784-2302030934-1001_Classes\CLSID\{CB965DF1-B8EA-49C7-BDAD-5457FDC1BF92}\InprocServer32 -> C:\Users\Mira\AppData\Local\Microsoft\TeamsMeetingAddin\1.0.20031.2\x64\Microsoft.Teams.AddinLoader.dll (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [AutoCAD Digital Signatures Icon Overlay Handler] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\Windows\system32\AcSignIcon.dll [2020-01-22] (Autodesk, Inc. -> Autodesk, Inc.)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2020-02-06] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AcShellExtension.AcContextMenuHandler] -> {2E7A2C6C-B938-40a4-BA1C-C7EC982DC202} => C:\Program Files\Common Files\Autodesk Shared\AcShellEx\AcShellExtension.dll [2020-01-22] (Autodesk, Inc. -> Autodesk)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-08-06] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [Print602] -> {D5F8CFC7-1A45-4517-A565-E42CDE7880CF} => C:\Program Files (x86)\Software602\Print2PDF\CtxMenu64.dll [2011-04-15] (Software602) [File not signed]
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-08-06] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2020-02-06] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_feed726c6560f7a7\nvshext.dll [2020-10-02] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2020-02-06] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2020-08-06] (ESET, spol. s r.o. -> ESET)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\Mira\Desktop\Chrome Remote Desktop.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=efmjfjelnicpmdcmfikempdhlmainjcb
ShortcutWithArgument: C:\Users\Mira\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Chrome Remote Desktop.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory=Default --app-id=efmjfjelnicpmdcmfikempdhlmainjcb

==================== Loaded Modules (Whitelisted) =============

2016-06-27 11:50 - 2016-06-27 11:50 - 000137728 _____ () [File not signed] C:\Program Files (x86)\Common Files\Vero Software\2016.10\CLS\dpwin32v.dll
2020-04-06 19:44 - 2014-09-09 12:30 - 000603648 _____ () [File not signed] C:\Program Files\Zoner\Photo Studio 17\Program32\SpiderMonkey.dll
2020-04-06 19:28 - 2010-12-02 01:13 - 000216576 _____ () [File not signed] C:\WINDOWS\system32\spool\DRIVERS\x64\3\Software602.dll
2020-04-06 19:28 - 2011-03-30 19:00 - 000967168 _____ (AMYUNI Technologies hxxp://www.amyuni.com) [File not signed] C:\WINDOWS\system32\spool\DRIVERS\x64\3\acpdf450.dll
2020-04-06 19:28 - 2011-03-30 19:00 - 000508928 _____ (AMYUNI Technologies hxxp://www.amyuni.com) [File not signed] C:\WINDOWS\system32\spool\DRIVERS\x64\3\acpdfui450.dll
2020-04-06 19:29 - 2020-02-06 14:00 - 000076800 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2016-06-27 11:52 - 2016-06-27 11:52 - 000118272 _____ (Rainbow Technologies, Inc.) [File not signed] C:\Program Files (x86)\Common Files\Vero Software\2016.10\CLS\NSLMS324.DLL
2016-06-27 11:52 - 2016-06-27 11:52 - 001081344 _____ (SafeNet, Inc.) [File not signed] C:\Program Files (x86)\Common Files\Vero Software\2016.10\CLS\lsapiw32.dll
2014-05-29 12:45 - 2008-11-14 15:15 - 000088576 _____ (Sharp Corporation) [File not signed] C:\WINDOWS\system32\spool\DRIVERS\x64\3\SE4BU.DLL
2020-04-06 19:28 - 2011-04-21 16:08 - 003971584 _____ (Software602 a.s.) [File not signed] C:\Program Files (x86)\Software602\Print2PDF\Print602.dll
2020-04-06 19:28 - 2011-04-15 12:13 - 000145920 _____ (Software602) [File not signed] C:\Program Files (x86)\Software602\Print2PDF\CtxMenu64.dll
2020-04-06 19:28 - 2011-04-14 10:26 - 000131584 _____ (Software602) [File not signed] C:\Program Files (x86)\Software602\Print2PDF\Pdf602.dll
2016-06-27 11:54 - 2016-06-27 11:54 - 000440832 _____ (Vero Software Limited) [File not signed] [File is in use] C:\Program Files (x86)\Common Files\Vero Software\2016.10\CLS\Utilities.dll
2020-04-16 08:12 - 2016-06-07 13:20 - 000030720 _____ (Vero Software Limited) [File not signed] C:\Program Files (x86)\Common Files\Vero Software\2016.10\Language\cs-CZ\CLS_res.dll
2020-04-16 08:12 - 2016-06-07 13:20 - 000056320 _____ (Vero Software Limited) [File not signed] C:\Program Files (x86)\Common Files\Vero Software\2016.10\Language\cs-CZ\lic_res.dll
2016-06-27 11:54 - 2016-06-27 11:54 - 001940992 _____ (Vero Software Ltd) [File not signed] C:\Program Files (x86)\Common Files\Vero Software\2016.10\CLS\EdgeLicExt.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)

HKU\S-1-5-21-396946655-2491402784-2302030934-1001\Software\Classes\.scr: AutoCADLTScriptFile =>

==================== Internet Explorer (Whitelisted) ==========

BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2020-09-03] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2020-09-03] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2020-04-16] (Sun Microsystems, Inc. -> Sun Microsystems, Inc.)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2020-10-31] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-396946655-2491402784-2302030934-1001\...\sharepoint.com -> hxxps://sprintzlincz-files.sharepoint.com

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 05:49 - 2019-03-19 05:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-396946655-2491402784-2302030934-1001\Control Panel\Desktop\\Wallpaper ->
DNS Servers: 192.168.0.100
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 0)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{4A3CC24C-4DC6-4CED-B315-60E9BC48FEDA}] => (Allow) C:\Users\Mira\AppData\Local\Temp\7zS595A\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{8B8B2907-CAC4-4CB0-8766-24AED58B34FE}] => (Allow) C:\Users\Mira\AppData\Local\Temp\7zS595A\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{730CB738-634E-47D4-8590-F88AF79542FF}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E14D0CAA-0342-444B-9949-40F9F79032DB}] => (Allow) C:\Program Files\HP\HP PageWide MFP P57750\Bin\HPNetworkCommunicatorCom.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{13EF8526-3776-44F8-BA7C-046C1995A07C}] => (Allow) LPort=5357
FirewallRules: [{888D339A-AE9E-485E-9DC8-C62EAF202B24}] => (Allow) C:\Program Files\HP\HP PageWide MFP P57750\Bin\DeviceSetup.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{42C841D6-B4F1-4506-AE6B-7DC729FCC4CA}] => (Allow) C:\Program Files\HP\HP PageWide MFP P57750\bin\FaxPrinterUtility.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{994A6C4E-B9F5-4136-BBE6-565B315DE374}] => (Allow) C:\Program Files\HP\HP PageWide MFP P57750\bin\SendAFax.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{010D38D1-429C-454A-BCBA-6FBE1597410C}] => (Allow) C:\Program Files\HP\HP PageWide MFP P57750\bin\DigitalWizards.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{20387487-7392-4AD6-963B-83E2DDE0EAF5}] => (Allow) C:\Program Files\HP\HP PageWide MFP P57750\bin\FaxApplications.exe (Hewlett Packard -> HP Inc.)
FirewallRules: [{9F401355-9B79-4684-9B5B-D75E83A3493F}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{7A09F4F4-2B2F-4E55-A38E-DB1F11C0D556}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{1238A393-64F9-4F39-94BF-5AF90562A441}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{68A46938-134B-4382-B7D7-E4F55E8F0A25}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{81D51224-9FD6-47B4-BA97-DE600CE0ED61}] => (Allow) C:\Cabinet Vision\Common\PKeyServerCLS.exe (Vero Software, Inc. -> Vero Software, Ltd.)
FirewallRules: [{C989DB6C-B7B3-43D0-9D06-E5078DFECB81}] => (Allow) C:\Cabinet Vision\Common\PKeyServerCLS.exe (Vero Software, Inc. -> Vero Software, Ltd.)
FirewallRules: [{12BBCB70-1563-46CC-8E5B-69B08AACB262}] => (Allow) C:\Cabinet Vision\Common\PKeyServerCLS.exe (Vero Software, Inc. -> Vero Software, Ltd.)
FirewallRules: [{51EC5092-A069-446C-96FD-B5642500F78B}] => (Allow) C:\Cabinet Vision\Common\PKeyServerCLS.exe (Vero Software, Inc. -> Vero Software, Ltd.)
FirewallRules: [{31ECF77B-0365-46E7-AEDD-0BB6B39F6B45}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{04153F84-298C-40C2-9AE5-F03325293B74}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{523F4F7B-156D-4880-A67A-E4129763B84B}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{BCEBC316-C8FC-4120-9D7E-C2C291CF720A}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{9693BDE1-2783-4246-AE04-871E5AA88924}] => (Allow) C:\Program Files\Zoner\Photo Studio 17\Program32\MediaServer.exe (ZONER software, a.s. -> ZONER software)
FirewallRules: [{6E3731A7-DC9A-4413-8536-32A5F9CD6F70}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E443BFAC-F86C-44FC-8203-D8BEA36DA845}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{120494A4-A37C-485A-8398-AE9ABEE6F191}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{F8F8EFBE-80A6-4E34-934B-9031EAEC75F7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{FF08C33D-5EED-47E9-88C1-C5E17566667A}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{D3D7AC21-62A0-4488-A5D2-86F8FAB60102}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{9802318F-435E-492B-92EF-D4CF8DD4F15C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{38F9F3B1-6A18-43E3-932F-EA19284F6B5E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{9EF89B38-A19B-46C2-913B-C7F99A59AEFB}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.74.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{54A64E5E-8DDA-4A82-B883-80103B8ACCE6}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.74.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{2F549EF6-CC34-46A9-BA50-F33FEF12B100}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.74.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{2BF23FF8-7AB0-42B4-BAAE-86946BBF3E8A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.66.74.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{38B7F2B6-19AA-4F92-9162-76DD79816FD1}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{153D859A-E90E-44BC-A869-3F498FB2AB2D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{97EDB0F2-D130-4AD4-B3F7-95E12D968726}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{8384277C-2838-41E9-B9B3-6C03827E378B}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{8406C3A3-159C-4A1A-97FF-73ADBF8436FA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{264DC358-B32A-4E80-AF83-A6A98A16BC54}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\87.0.4280.58\remoting_host.exe (Google LLC -> Google Inc.)

==================== Restore Points =========================

14-11-2020 10:53:09 Naplánovaný kontrolní bod

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (11/17/2020 09:14:00 PM) (Source: ESENT) (EventID: 467) (User: )
Description: svchost (3640,D,23) SRUJet: Databáze C:\WINDOWS\system32\SRU\SRUDB.dat: Index AutoIncIdIndex tabulky {5C8CF1C7-7257-4F13-B223-970EF5939312} je poškozený (0).

Error: (11/17/2020 08:13:00 PM) (Source: ESENT) (EventID: 467) (User: )
Description: svchost (3640,D,23) SRUJet: Databáze C:\WINDOWS\system32\SRU\SRUDB.dat: Index AutoIncIdIndex tabulky {5C8CF1C7-7257-4F13-B223-970EF5939312} je poškozený (0).

Error: (11/17/2020 07:13:00 PM) (Source: ESENT) (EventID: 467) (User: )
Description: svchost (3640,D,23) SRUJet: Databáze C:\WINDOWS\system32\SRU\SRUDB.dat: Index AutoIncIdIndex tabulky {5C8CF1C7-7257-4F13-B223-970EF5939312} je poškozený (0).

Error: (11/17/2020 06:12:00 PM) (Source: ESENT) (EventID: 467) (User: )
Description: svchost (3640,D,23) SRUJet: Databáze C:\WINDOWS\system32\SRU\SRUDB.dat: Index AutoIncIdIndex tabulky {5C8CF1C7-7257-4F13-B223-970EF5939312} je poškozený (0).

Error: (11/17/2020 05:11:00 PM) (Source: ESENT) (EventID: 467) (User: )
Description: svchost (3640,D,23) SRUJet: Databáze C:\WINDOWS\system32\SRU\SRUDB.dat: Index AutoIncIdIndex tabulky {5C8CF1C7-7257-4F13-B223-970EF5939312} je poškozený (0).

Error: (11/17/2020 04:10:00 PM) (Source: ESENT) (EventID: 467) (User: )
Description: svchost (3640,D,23) SRUJet: Databáze C:\WINDOWS\system32\SRU\SRUDB.dat: Index AutoIncIdIndex tabulky {5C8CF1C7-7257-4F13-B223-970EF5939312} je poškozený (0).

Error: (11/17/2020 03:09:00 PM) (Source: ESENT) (EventID: 467) (User: )
Description: svchost (3640,D,23) SRUJet: Databáze C:\WINDOWS\system32\SRU\SRUDB.dat: Index AutoIncIdIndex tabulky {5C8CF1C7-7257-4F13-B223-970EF5939312} je poškozený (0).

Error: (11/17/2020 02:08:00 PM) (Source: ESENT) (EventID: 467) (User: )
Description: svchost (3640,D,23) SRUJet: Databáze C:\WINDOWS\system32\SRU\SRUDB.dat: Index AutoIncIdIndex tabulky {5C8CF1C7-7257-4F13-B223-970EF5939312} je poškozený (0).


System errors:
=============
Error: (11/16/2020 04:19:47 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba SysMain byla neočekávaně ukončena. Tento stav nastal již 3krát.

Error: (11/16/2020 04:18:45 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba SysMain byla nečekaně ukončena. Stalo se to 2 krát. Následující opravná akce bude spuštěna za 60000 milisekund: Restartovat službu.

Error: (11/16/2020 04:16:31 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba SysMain byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 60000 milisekund: Restartovat službu.

Error: (11/16/2020 03:50:39 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba luafv neuspěla při spuštění v důsledku následující chyby:
Načtení tohoto ovladače je blokováno.

Error: (11/16/2020 03:49:20 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Autodesk Desktop Licensing Service neuspěla při spuštění v důsledku následující chyby:
Služba nebyla zahájena, protože se nepodařilo přihlásit.

Error: (11/16/2020 03:49:20 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Služba AdskLicensingService se nemohla přihlásit jako NT Authority\LocalService s aktuálně konfigurovaným heslem z důvodu následující chyby:
Požadavek není podporován.


Chcete-li zajistit správnou konfiguraci služby, použijte modul snap-in Služby konzoly Microsoft Management Console (MMC).

Error: (11/16/2020 03:49:17 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Autodesk Desktop Licensing Service byla nečekaně ukončena. Stalo se to 2 krát. Následující opravná akce bude spuštěna za 3000 milisekund: Restartovat službu.

Error: (11/16/2020 03:48:53 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba Microsoft Office Klikni a spusť byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.


Windows Defender:
===================================
Date: 2020-10-19 12:43:50.4460000Z
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {FF5E87E4-EBA9-4607-A6CD-040CDA32CA65}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2020-10-19 08:58:45.1700000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUA:Win32/PiriformBundler
ID: 277517
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_C:\Users\Mira\Downloads\ccsetup565.exe; file:_C:\Users\Mira\Downloads\ccsetup567.exe; file:_M:\Install\ccsetup549.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: MIRA-PC-2020\Mira
Název procesu: C:\Program Files\Altap Salamander\salamand.exe
Verze bezpečnostních informací: AV: 1.325.1034.0, AS: 1.325.1034.0, NIS: 1.325.1034.0
Verze modulu: AM: 1.1.17500.4, NIS: 1.1.17500.4

Date: 2020-10-19 08:58:42.8540000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUA:Win32/PiriformBundler
ID: 277517
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_C:\Users\Mira\Downloads\ccsetup565.exe; file:_M:\Install\ccsetup549.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: MIRA-PC-2020\Mira
Název procesu: C:\Program Files\Altap Salamander\salamand.exe
Verze bezpečnostních informací: AV: 1.325.1034.0, AS: 1.325.1034.0, NIS: 1.325.1034.0
Verze modulu: AM: 1.1.17500.4, NIS: 1.1.17500.4

Date: 2020-10-19 08:57:37.6480000Z
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUA:Win32/PiriformBundler
ID: 277517
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_M:\Install\ccsetup549.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: MIRA-PC-2020\Mira
Název procesu: C:\Program Files\Altap Salamander\salamand.exe
Verze bezpečnostních informací: AV: 1.325.1034.0, AS: 1.325.1034.0, NIS: 1.325.1034.0
Verze modulu: AM: 1.1.17500.4, NIS: 1.1.17500.4

Date: 2020-10-18 21:01:10.0810000Z
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {F3AE70F2-88EE-441E-BAE5-7610C45D0DB8}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2020-10-14 12:39:02.4180000Z
Description:
Modul programu Antivirová ochrana v programu Microsoft Defender byl ukončen v důsledku neočekávané chyby.
Typ chyby: Chyba
Kód výjimky: 0xc0000005
Zdroj: file:C:\Windows\Installer\9a6480.msi

CodeIntegrity:
===================================

Date: 2020-11-17 09:51:12.3940000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-11-17 09:51:12.3880000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-11-17 09:51:12.3800000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-11-17 09:51:12.3750000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-11-17 09:51:12.3610000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-11-17 09:51:09.8640000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-11-17 09:51:09.8590000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

Date: 2020-11-17 09:51:09.8510000Z
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume2\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.

==================== Memory info ===========================

BIOS: American Megatrends Inc. F11 07/31/2013
Motherboard: Gigabyte Technology Co., Ltd. H77M-D3H
Processor: Intel(R) Core(TM) i5-3470 CPU @ 3.20GHz
Percentage of memory in use: 42%
Total physical RAM: 8152.71 MB
Available physical RAM: 4713.21 MB
Total Virtual: 9432.71 MB
Available Virtual: 5982.23 MB

==================== Drives ================================

Drive c: (Win10) (Fixed) (Total:634.06 GB) (Free:538.85 GB) NTFS
Drive m: (Mira) (Fixed) (Total:296.89 GB) (Free:199.63 GB) NTFS
Drive p: () (Network) (Total:97.56 GB) (Free:5.85 GB) NTFS
Drive r: (Ruzne) (Network) (Total:172.69 GB) (Free:143.69 GB) NTFS
Drive s: (Sprint) (Network) (Total:195.31 GB) (Free:132.44 GB) NTFS

\\?\Volume{ab4b2194-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.57 GB) (Free:0.12 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 931.5 GB) (Disk ID: AB4B2194)
Partition 1: (Active) - (Size=579 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=634.1 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=296.9 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

Re: Preventivní kontrola

Napsal: 18 lis 2020 13:56
od Diallix
Do poznamkoveho bloku skopirujte obsah dole:

Kód: Vybrat vše

CloseProcesses:
CreateRestorePoint:

FirewallRules: [{13EF8526-3776-44F8-BA7C-046C1995A07C}] => (Allow) LPort=5357
FirewallRules: [{4A3CC24C-4DC6-4CED-B315-60E9BC48FEDA}] => (Allow) C:\Users\Mira\AppData\Local\Temp\7zS595A\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{8B8B2907-CAC4-4CB0-8766-24AED58B34FE}] => (Allow) C:\Users\Mira\AppData\Local\Temp\7zS595A\HPDiagnosticCoreUI.exe => No File
HKU\S-1-5-21-396946655-2491402784-2302030934-1001\Software\Classes\.scr: AutoCADLTScriptFile =>
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
S3 MpKsld75429fb; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0AE06DE3-9CAD-4EFD-A65E-2B45E5624797}\MpKslDrv.sys [X]
Task: {C98BC2F2-06B3-4B77-9E82-4536D299A8FE} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2020-04-06] (Google Inc -> Google Inc.)
Task: {68EF5E6A-122E-4BF7-98DC-035DC43E5BD5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2020-04-06] (Google Inc -> Google Inc.)
HKU\S-1-5-21-396946655-2491402784-2302030934-1001\...\Policies\Explorer: []
HKU\S-1-5-21-396946655-2491402784-2302030934-1001\...\MountPoints2: {67fb369a-7e22-11ea-b495-74d4350a2635} - "D:\HiSuiteDownLoader.exe"

EmptyTemp:
Poznamkovy blok ulozte pod nazvom fixlist.txt do umiestnenia kde je FRST.
Spustite FRST a odkliknite tlacidlo: Fix
Vykona sa funkcionalita po ktorej sa pocitac rebootuje. Po reboote sem vlozte obsah logu: fixlog.txt ulozeneho v umiestneni FRST.

Re: Preventivní kontrola

Napsal: 18 lis 2020 21:08
od Mirda74
Fix result of Farbar Recovery Scan Tool (x64) Version: 17-11-2020
Ran by Mira (18-11-2020 21:00:06) Run:1
Running from C:\Users\Mira\Desktop
Loaded Profiles: Mira
Boot Mode: Normal
==============================================

fixlist content:
*****************
CloseProcesses:
CreateRestorePoint:

FirewallRules: [{13EF8526-3776-44F8-BA7C-046C1995A07C}] => (Allow) LPort=5357
FirewallRules: [{4A3CC24C-4DC6-4CED-B315-60E9BC48FEDA}] => (Allow) C:\Users\Mira\AppData\Local\Temp\7zS595A\HPDiagnosticCoreUI.exe => No File
FirewallRules: [{8B8B2907-CAC4-4CB0-8766-24AED58B34FE}] => (Allow) C:\Users\Mira\AppData\Local\Temp\7zS595A\HPDiagnosticCoreUI.exe => No File
HKU\S-1-5-21-396946655-2491402784-2302030934-1001\Software\Classes\.scr: AutoCADLTScriptFile =>
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
S3 MpKsld75429fb; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{0AE06DE3-9CAD-4EFD-A65E-2B45E5624797}\MpKslDrv.sys [X]
Task: {C98BC2F2-06B3-4B77-9E82-4536D299A8FE} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2020-04-06] (Google Inc -> Google Inc.)
Task: {68EF5E6A-122E-4BF7-98DC-035DC43E5BD5} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [152216 2020-04-06] (Google Inc -> Google Inc.)
HKU\S-1-5-21-396946655-2491402784-2302030934-1001\...\Policies\Explorer: []
HKU\S-1-5-21-396946655-2491402784-2302030934-1001\...\MountPoints2: {67fb369a-7e22-11ea-b495-74d4350a2635} - "D:\HiSuiteDownLoader.exe"

EmptyTemp:

*****************

Processes closed successfully.
Restore point was successfully created.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{13EF8526-3776-44F8-BA7C-046C1995A07C}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4A3CC24C-4DC6-4CED-B315-60E9BC48FEDA}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8B8B2907-CAC4-4CB0-8766-24AED58B34FE}" => removed successfully
HKU\S-1-5-21-396946655-2491402784-2302030934-1001\Software\Classes\AutoCADLTScriptFile => removed successfully
HKU\S-1-5-21-396946655-2491402784-2302030934-1001\Software\Classes\.scr => removed successfully
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ANotepad++64 => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
"HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}" => removed successfully
HKLM\System\CurrentControlSet\Services\MpKsld75429fb => removed successfully
MpKsld75429fb => service removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{C98BC2F2-06B3-4B77-9E82-4536D299A8FE}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C98BC2F2-06B3-4B77-9E82-4536D299A8FE}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{68EF5E6A-122E-4BF7-98DC-035DC43E5BD5}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{68EF5E6A-122E-4BF7-98DC-035DC43E5BD5}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKU\S-1-5-21-396946655-2491402784-2302030934-1001\Software\Microsoft\Windows\CurrentVersion\Policies\Explorer\\" => removed successfully
HKU\S-1-5-21-396946655-2491402784-2302030934-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{67fb369a-7e22-11ea-b495-74d4350a2635} => removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 10248192 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 8441363 B
Java, Flash, Steam htmlcache => 397 B
Windows/system/drivers => 3527397 B
Edge => 45069 B
Chrome => 146369 B
Firefox => 26211103 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 0 B
Mira => 21716036 B

RecycleBin => 0 B
EmptyTemp: => 67.1 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 21:01:12 ====

Re: Preventivní kontrola

Napsal: 18 lis 2020 21:13
od Diallix
Ako je na tom pocitac?

Re: Preventivní kontrola

Napsal: 24 lis 2020 09:16
od Mirda74
Jsem opět po delší odmlce u PC, vyzkouším, prověřím. Dám vědět.
Děkuji za Váš čas.

M.

Re: Preventivní kontrola

Napsal: 27 lis 2020 21:38
od Diallix
Neaka zmena?