Stránka 1 z 1

Preventivni kontrola logu

Napsal: 14 bře 2021 16:09
od Awandalor
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-03-2021
Ran by pohlr (administrator) on DESKTOP-SOUARL0 (LENOVO 20079) (14-03-2021 16:01:52)
Running from C:\Users\pohlr\OneDrive\Skrivebord
Loaded Profiles: pohlr
Platform: Windows 10 Home Version 20H2 19042.867 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler64.exe
(Hewlett-Packard Company -> HP) C:\Windows\System32\HPSIsvc.exe
(HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(Huawei Technologies Co., Ltd. -> ) C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(Lenovo (Beijing) Limited -> Lenovo Group Limited) C:\Users\pohlr\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe
(Lenovo -> ) C:\Program Files (x86)\Lenovo\System Update\SUService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\pohlr\AppData\Local\Microsoft\OneDrive\21.030.0211.0002\FileCoAuth.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\pohlr\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_2.2102.8653.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsStore_12011.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.521.2012.0_x64__8wekyb3d8bbwe\GameBar.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_5.521.2012.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(Microsoft Windows Hardware Compatibility Publisher -> Vimicro) C:\Program Files (x86)\USB Camera\VM331STI.EXE
(NortonLifeLock Inc. -> NortonLifeLock Inc.) C:\Program Files\Norton Security\Engine\22.21.1.151\nsWscSvc.exe
(NortonLifeLock Inc. -> Symantec Corporation) C:\Program Files\Norton Security\Engine\22.21.1.151\NortonSecurity.exe <2>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3951280 2016-01-07] (Synaptics Incorporated -> Synaptics Incorporated)
HKLM-x32\...\Run: [HPUsageTrackingLEDM] => "C:\Program Files (x86)\HP\HP UT LEDM\bin\hppusg.exe" "C:\Program Files (x86)\HP\HP UT LEDM\"
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706680 2020-12-09] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [331BigDog] => C:\Program Files (x86)\USB Camera\VM331STI.EXE [570408 2015-09-03] (Microsoft Windows Hardware Compatibility Publisher -> Vimicro)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-21-3488671587-1816662609-4276607936-1001\...\Run: [Adobe Reader Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5536424 2021-03-06] (Adobe Inc. -> Adobe Systems Incorporated)
HKLM\...\Windows x64\Print Processors\BJ Print Processor4: C:\Windows\System32\spool\prtprocs\x64\CNBPP4.DLL [84992 2011-08-30] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\HP1100PrintProc: C:\Windows\System32\spool\prtprocs\x64\HP1100PP.DLL [74240 2012-08-31] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Print\Monitors\Advanced TCP/IP Port Monitor: C:\WINDOWS\system32\mvtcpmon.dll [541184 2009-06-25] (Marvell Semiconductor, Inc.) [File not signed]
HKLM\...\Print\Monitors\BJ Language Monitor4: C:\WINDOWS\system32\CNBLM4.DLL [267776 2011-08-30] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\HP1100LM: C:\WINDOWS\system32\HP1100LM.DLL [288768 2012-08-31] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.82\Installer\chrmstp.exe [2021-03-12] (Google LLC -> Google LLC)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {20ADF99E-475C-42E6-8718-EF5F195FE928} - System32\Tasks\Norton 360\Norton 360 Error Processor => C:\Program Files\Norton Security\Engine\22.21.1.151\SymErr.exe [115608 2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc)
Task: {3AAC8086-FB5F-450B-BA9D-BA28A4ADEF58} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.)
Task: {7E77DAAC-EA85-433B-A2CB-DCA0FF62707E} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [124624 2020-06-14] (Mozilla Corporation -> Mozilla Foundation)
Task: {87D08DB2-C4EC-4986-B6D0-EE35C4225D21} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Norton 360\Upgrade.exe [2344568 2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
Task: {8B435A8A-1AB3-466A-A0D0-3830D0515EB5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16494464 2019-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {8B63141B-EF8A-4C4A-BB47-2B90AE623125} - System32\Tasks\Norton Security with Backup\Norton Security Autofix => C:\Program Files\Norton Security\Engine\22.20.4.57\SymErr.exe
Task: {940379CF-370F-4DA2-B104-EDA221261A5C} - System32\Tasks\Norton Security with Backup\Norton Security Error Processor => C:\Program Files\Norton Security\Engine\22.20.4.57\SymErr.exe
Task: {A3FDF8D4-530D-4CC4-9FF7-EBB40CDA15FD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2019-12-14] (Google LLC -> Google LLC)
Task: {A9D3A5E8-1C49-46CC-AD80-95E059EF6BA2} - System32\Tasks\Norton Security with Backup\Norton Security Error Analyzer => C:\Program Files\Norton Security\Engine\22.20.4.57\SymErr.exe
Task: {BA19EB13-669B-4930-AB28-98AABEBF67FE} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1758536 2018-03-26] (Lenovo -> )
Task: {BBFCCBF7-C172-4DC8-B765-9D6FAE021333} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2019-12-14] (Google LLC -> Google LLC)
Task: {BEF6A155-925E-44E1-82C8-765104EA0CB0} - System32\Tasks\Norton WSC Integration => C:\Program Files\Norton Security\Engine\22.21.1.151\WSCStub.exe [643544 2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
Task: {CE750B2E-2430-4B87-8D22-48BBF724CB5A} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-3488671587-1816662609-4276607936-1001 => C:\Users\pohlr\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [87848 2021-01-22] (Lenovo (Beijing) Limited -> Lenovo Group Limited)
Task: {E6E36089-1C90-41E4-88B1-FB5CDDDFC796} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1706496 2020-11-23] () [File not signed]
Task: {EA498DA5-3F2B-4277-A336-9FA6451C7270} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe [1758536 2018-03-26] (Lenovo -> )
Task: {ECBB679C-7E83-4078-B531-D0BC05F73854} - System32\Tasks\Norton 360\Norton 360 Error Analyzer => C:\Program Files\Norton Security\Engine\22.21.1.151\SymErr.exe [115608 2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc)
Task: {F90CD09C-7CDF-4738-B56E-865D1EE20C5F} - System32\Tasks\Norton 360\Norton 360 Autofix => C:\Program Files\Norton Security\Engine\22.21.1.151\SymErr.exe [115608 2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.2 8.8.8.8
Tcpip\..\Interfaces\{5bba42fc-c0e7-4c1a-9d97-597bfa426025}: [DhcpNameServer] 192.168.1.2 8.8.8.8

Edge:
=======
Edge Profile: C:\Users\pohlr\AppData\Local\Microsoft\Edge\User Data\Default [2021-03-14]

FireFox:
========
FF DefaultProfile: rp0gqbi0.default
FF ProfilePath: C:\Users\pohlr\AppData\Roaming\Mozilla\Firefox\Profiles\rp0gqbi0.default [2020-05-11]
FF ProfilePath: C:\Users\pohlr\AppData\Roaming\Mozilla\Firefox\Profiles\o9c7kv1u.default-release [2021-02-06]
FF Extension: (Český slovník pro kontrolu pravopisu) - C:\Users\pohlr\AppData\Roaming\Mozilla\Firefox\Profiles\o9c7kv1u.default-release\Extensions\cs@dictionaries.addons.mozilla.org.xpi [2020-05-11]
FF Extension: (Czech (CZ) Language Pack) - C:\Users\pohlr\AppData\Roaming\Mozilla\Firefox\Profiles\o9c7kv1u.default-release\Extensions\langpack-cs@firefox.mozilla.org.xpi [2020-06-24]
FF Extension: (Video DownloadHelper) - C:\Users\pohlr\AppData\Roaming\Mozilla\Firefox\Profiles\o9c7kv1u.default-release\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2020-05-11]
FF Plugin: @java.com/DTPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\dtplugin\npDeployJava1.dll [2021-03-12] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\plugin2\npjp2.dll [2021-03-12] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-03-06] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default [2021-03-14]
CHR Notifications: Default -> hxxps://brnensky.denik.cz; hxxps://www.automobilovedily24.cz; hxxps://www.banggood.com; hxxps://www.dakar.com; hxxps://www.mall.tv; hxxps://www.phaserfpv.com.au
CHR HomePage: Default -> hxxps://www.google.com/
CHR DefaultSearchURL: Default -> hxxps://www.seznam.cz/media/img/seznam-icons/favicon-16x16.png
CHR DefaultSearchKeyword: Default -> nortonsafe
CHR DefaultSuggestURL: Default -> hxxps://ss-sym.search.ask.com/ss?limit=10&li=ff&hl=cs&q={searchTerms}
CHR Session Restore: Default -> is enabled.
CHR Extension: (Unknown Space) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpjdbdbhiomamecfnjahemfimgjamhjd [2019-12-14]
CHR Extension: (Seznam.cz) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkncgicdohgfdncecojfiapgebmlnaoc [2020-02-28]
CHR Extension: (Adobe Acrobat) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-03-01]
CHR Extension: (Norton Safe Search) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\eogpedgkejfmehnklhahflpmplhiceal [2020-08-26]
CHR Extension: (Google) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbochjjnialhlgmhpbdmilbekahpdofk [2019-12-14]
CHR Extension: (Norton Safe Web) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnpbeacklnhmkkilekogeiekaglbmmka [2021-02-12]
CHR Extension: (GPX Viewer, Reader) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcoebkjfbobjheeoclnjkfgginlaefnb [2019-12-14]
CHR Extension: (Video DownloadHelper) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2021-03-04]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Chrome Media Router) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-03-13]
CHR Extension: (Hlídač Shopů) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\plmlonggbfebcjelncogcnclagkmkikk [2021-03-06]
CHR Profile: C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1 [2021-03-12]
CHR Notifications: Profile 1 -> hxxps://www.kosik.cz
CHR HomePage: Profile 1 -> hxxp://www.google.com/
CHR StartupUrls: Profile 1 -> "hxxp://google.com/"
CHR DefaultSearchURL: Profile 1 -> hxxps://nortonsafe.search.ask.com/web?omnisearch=yes&q={searchTerms}
CHR DefaultSearchKeyword: Profile 1 -> Norton
CHR DefaultSuggestURL: Profile 1 -> hxxps://ss-sym.search.ask.com/ss?limit=10&li=ff&hl=cs&q={searchTerms}
CHR Session Restore: Profile 1 -> is enabled.
CHR Extension: (Prezentace) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-12-15]
CHR Extension: (Norton Password Manager) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\admmjipmmciaobhojoghlmleefbicajg [2021-02-21]
CHR Extension: (Sudoku) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\agdhembpgcpfegeigidembjopfhghnpj [2019-12-15]
CHR Extension: (Dokumenty) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2019-12-15]
CHR Extension: (Disk Google) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-23]
CHR Extension: (YouTube) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-12-15]
CHR Extension: (Adobe Acrobat) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-03-11]
CHR Extension: (Tabulky) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-12-15]
CHR Extension: (Causality Games) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\femoooemgmjaebeodbbikbkmhlafenpl [2019-12-15]
CHR Extension: (Full Screen Weather) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fkkaebihfmbofclegkcfkkemepfehibg [2019-12-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-03-03]
CHR Extension: (Cut the Rope) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gkddaofiamhgfjmaccfcfpfolpgbeomj [2019-12-15]
CHR Extension: (Norton Safe Search) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gkjahlcnbjiangkneanonnndppicobbd [2020-08-27]
CHR Extension: (FormApps Extension) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2020-10-21]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Equalizer for YouTube™) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oggiagogblgafoilijjdhcmflgekfmja [2021-02-12]
CHR Extension: (Gmail) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23]
CHR Extension: (Chrome Media Router) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-02-01]
CHR Extension: (Hlídač Shopů) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\plmlonggbfebcjelncogcnclagkmkikk [2021-03-06]
CHR Profile: C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\System Profile [2021-02-06]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.)
S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2021-03-13] (BitRaider LLC -> BitRaider, LLC)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811120 2020-05-10] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [1741384 2020-12-09] (GOG Sp. z o.o. -> GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6821960 2020-02-24] (GOG Sp. z o.o. -> GOG.com)
S3 GameforgeClientService; C:\Program Files (x86)\GameforgeClient\gfservice.exe [568480 2021-03-09] (Gameforge 4D GmbH -> )
S2 HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [136704 2009-06-24] (HP) [File not signed]
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [284808 2021-02-05] (HP Inc. -> HP Inc.)
R2 HPSIService; C:\Windows\system32\HPSIsvc.exe [126880 2012-09-27] (Hewlett-Packard Company -> HP)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [236864 2020-12-05] (Huawei Technologies Co., Ltd. -> )
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [File not signed]
S3 mracsvc; C:\Windows\System32\mracsvc.exe [20417696 2020-07-27] (Mail.Ru LLC -> LLC Mail.Ru)
R2 NortonSecurity; C:\Program Files\Norton Security\Engine\22.21.1.151\NortonSecurity.exe [343296 2021-02-22] (NortonLifeLock Inc. -> Symantec Corporation)
R2 nsWscSvc; C:\Program Files\Norton Security\Engine\22.21.1.151\nsWscSvc.exe [1054496 2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12727576 2021-02-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WsDrvInst; C:\Program Files (x86)\Wondershare\Video Converter Ultimate\Transfer\DriverInstall.exe [107624 2018-12-06] (Wondershare Technology Co.,Ltd -> Wondershare)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AmdTools64; C:\WINDOWS\System32\drivers\AmdTools64.sys [47160 2008-04-28] (Advanced Micro Devices, Inc. -> AMD, Inc.)
S3 ampa; C:\Windows\system32\ampa.sys [38320 2017-02-28] (CHENGDU AOMEI Tech Co., Ltd. -> )
R1 BHDrvx64; C:\Program Files\Norton Security\NortonData\22.18.0.213\Definitions\BASHDefs\20210310.005\BHDrvx64.sys [1991536 2020-11-03] (Symantec Corporation -> Broadcom)
R3 busenum; C:\WINDOWS\System32\drivers\busenum.sys [57824 2012-08-03] (Synology Inc. -> Windows (R) Win 7 DDK provider)
R1 ccSet_NGC; C:\WINDOWS\System32\drivers\NGCx64\1615010.097\ccSetx64.sys [192248 2021-02-22] (Symantec Corporation -> Symantec Corporation)
S3 ddmdrv; C:\Windows\system32\ddmdrv.sys [35760 2016-12-27] (CHENGDU AOMEI Tech Co., Ltd. -> )
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [516168 2021-01-28] (Symantec Corporation -> Broadcom)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [153672 2021-02-06] (Symantec Corporation -> Broadcom)
R1 IDSVia64; C:\Program Files\Norton Security\NortonData\22.18.0.213\Definitions\IPSDefs\20210311.061\IDSvia64.sys [1479536 2021-01-18] (Symantec Corporation -> Broadcom)
S3 libusb0; C:\WINDOWS\system32\DRIVERS\libusb0.sys [61696 2019-09-08] (Travis Lee Robinson -> hxxp://libusb-win32.sourceforge.net)
S3 mracdrv; C:\WINDOWS\System32\drivers\mracdrv1.sys [19647520 2020-07-27] (Mail.Ru LLC -> LLC Mail.Ru)
S3 mvusbews; C:\WINDOWS\System32\Drivers\mvusbews.sys [20480 2012-09-26] (Microsoft Windows Hardware Compatibility Publisher -> Marvell Semiconductor, Inc.)
S3 OSFMount; C:\Program Files\OSFMount\OSFMount.sys [1299384 2014-02-07] (PassMark Software Pty Ltd -> PassMark Software)
R3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions)
S2 SecDrv; C:\WINDOWS\SysWOW64\drivers\SECDRV.SYS [11376 2003-09-09] () [File not signed]
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R3 SRTSP; C:\WINDOWS\System32\drivers\NGCx64\1615010.097\SRTSP64.SYS [889712 2021-02-22] (Symantec Corporation -> Symantec Corporation)
R1 SRTSPX; C:\WINDOWS\System32\drivers\NGCx64\1615010.097\SRTSPX64.SYS [51056 2021-02-22] (Symantec Corporation -> Symantec Corporation)
S3 STTub30; C:\WINDOWS\System32\Drivers\STTub30.sys [44184 2012-07-20] (STMicroelectronics -> STMicroelectronics)
R0 SymEFASI; C:\WINDOWS\System32\drivers\NGCx64\1615010.097\SYMEFASI64.SYS [2060656 2021-02-22] (Symantec Corporation -> Broadcom)
S0 SymELAM; C:\WINDOWS\System32\drivers\NGCx64\1615010.097\SymELAM.sys [25080 2021-02-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Broadcom Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [99848 2019-12-14] (Symantec Corporation -> Symantec Corporation)
R3 SymEvnt; C:\Program Files\Norton Security\NortonData\22.18.0.213\SymPlatform\SymEvnt.sys [712368 2020-01-13] (Symantec Corporation -> Symantec Corporation)
R1 SymIRON; C:\WINDOWS\System32\drivers\NGCx64\1615010.097\Ironx64.SYS [316488 2021-02-22] (Symantec Corporation -> Symantec Corporation)
R1 SymNetS; C:\WINDOWS\System32\drivers\NGCx64\1615010.097\symnets.sys [575328 2021-02-22] (Symantec Corporation -> Symantec Corporation)
R3 vm331avs; C:\WINDOWS\System32\Drivers\vm331avs.sys [648872 2015-09-03] (Microsoft Windows Hardware Compatibility Publisher -> Vimicro Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2019-12-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2019-12-14] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-14] (Microsoft Windows -> Microsoft Corporation)
R1 wpCtrlDrv_NGC; C:\WINDOWS\System32\drivers\NGCx64\1615010.097\wpCtrlDrv.sys [1013792 2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
S3 BRDriver64_1_3_3_E02B25FC; \??\C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-03-14 16:00 - 2021-03-14 16:02 - 000000000 ____D C:\FRST
2021-03-14 16:00 - 2021-03-14 16:00 - 002300928 _____ (Farbar) C:\Users\pohlr\Downloads\FRST64.exe
2021-03-14 14:47 - 2021-03-14 14:47 - 000000000 ____D C:\WINDOWS\system32\Tasks\Remediation
2021-03-14 11:47 - 2021-03-14 15:01 - 000001722 _____ C:\WINDOWS\ntbtlog.txt
2021-03-14 11:29 - 2021-03-14 11:29 - 000000000 ____D C:\NPE
2021-03-14 11:17 - 2021-03-14 11:33 - 000000000 ____D C:\Users\pohlr\AppData\Local\NPE
2021-03-14 00:11 - 2021-03-14 15:55 - 000000000 ____D C:\Program Files (x86)\World of Warcraft
2021-03-14 00:11 - 2021-03-14 00:11 - 000000000 ____D C:\Users\pohlr\AppData\Local\cache
2021-03-14 00:09 - 2021-03-14 00:09 - 000000000 ____D C:\ProgramData\Blizzard Entertainment
2021-03-14 00:08 - 2021-03-14 15:56 - 000000000 ____D C:\Users\pohlr\AppData\Local\Battle.net
2021-03-14 00:08 - 2021-03-14 00:11 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Battle.net
2021-03-14 00:08 - 2021-03-14 00:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2021-03-14 00:04 - 2021-03-14 00:09 - 000000000 ____D C:\Program Files (x86)\Battle.net
2021-03-14 00:04 - 2021-03-14 00:04 - 000000000 ____D C:\Users\pohlr\AppData\Local\Blizzard Entertainment
2021-03-14 00:03 - 2021-03-14 00:03 - 004950512 _____ (Blizzard Entertainment) C:\Users\pohlr\Downloads\World-of-Warcraft-Setup.exe
2021-03-14 00:03 - 2021-03-14 00:03 - 000000000 ____D C:\ProgramData\Battle.net
2021-03-13 20:25 - 2021-03-13 20:25 - 000117916 _____ C:\Users\pohlr\Downloads\multi-stm-serial-aetr-v1.3.2.58.bin
2021-03-13 20:17 - 2021-03-13 20:37 - 121241644 _____ C:\Users\pohlr\Downloads\sdcard-480x272-2.3V0035.zip
2021-03-13 18:59 - 2021-03-13 18:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games
2021-03-13 18:59 - 2003-09-09 05:30 - 000011376 ____R C:\WINDOWS\SysWOW64\Drivers\SECDRV.SYS
2021-03-13 18:23 - 2021-03-13 18:23 - 000000000 ____D C:\ProgramData\BitRaider
2021-03-13 18:19 - 2021-03-13 18:19 - 000000000 ____D C:\Users\pohlr\AppData\Local\SWTORPerf
2021-03-13 11:22 - 2021-03-13 11:22 - 000000000 ____D C:\Users\pohlr\OneDrive\Dokumenty\MOHW
2021-03-13 11:19 - 2021-03-13 11:19 - 000000000 ____D C:\WINDOWS\SysWOW64\directx
2021-03-13 10:47 - 2021-03-13 10:47 - 007561794 _____ C:\Users\pohlr\Downloads\Extra-330SC_RC7_RC8.zip
2021-03-13 09:00 - 2021-03-13 09:00 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime
2021-03-13 08:58 - 2021-03-13 08:58 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2021-03-13 08:58 - 2021-03-13 08:58 - 000000000 ____D C:\ProgramData\ATI
2021-03-13 08:55 - 2021-03-13 08:55 - 000000020 ___SH C:\Users\pohlr\ntuser.ini
2021-03-13 08:53 - 2021-03-13 08:53 - 000007623 _____ C:\WINDOWS\diagwrn.xml
2021-03-13 08:53 - 2021-03-13 08:53 - 000007623 _____ C:\WINDOWS\diagerr.xml
2021-03-13 08:52 - 2021-03-14 11:36 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-03-13 08:51 - 2021-03-14 15:14 - 000004212 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{D9883A39-0BA1-4892-9711-0A8418AD1EFF}
2021-03-13 08:51 - 2021-03-14 11:36 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton 360
2021-03-13 08:51 - 2021-03-14 11:29 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-03-13 08:51 - 2021-03-13 08:51 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-03-13 08:51 - 2021-03-13 08:51 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2021-03-13 08:51 - 2021-03-13 08:51 - 000003400 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2021-03-13 08:51 - 2021-03-13 08:51 - 000003288 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-03-13 08:51 - 2021-03-13 08:51 - 000003176 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2021-03-13 08:51 - 2021-03-13 08:51 - 000003080 _____ C:\WINDOWS\system32\Tasks\klcp_update
2021-03-13 08:51 - 2021-03-13 08:51 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3488671587-1816662609-4276607936-1001
2021-03-13 08:51 - 2021-03-13 08:51 - 000002614 _____ C:\WINDOWS\system32\Tasks\Norton WSC Integration
2021-03-13 08:51 - 2021-03-13 08:51 - 000002238 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2021-03-13 08:51 - 2021-03-13 08:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\TVT
2021-03-13 08:51 - 2021-03-13 08:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton Security with Backup
2021-03-13 08:51 - 2021-03-13 08:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-03-13 08:51 - 2021-03-13 08:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo
2021-03-13 08:46 - 2021-03-13 08:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2021-03-13 08:46 - 2021-03-13 08:46 - 000000000 ____D C:\Program Files\ATI Technologies
2021-03-13 08:46 - 2021-03-13 08:46 - 000000000 ____D C:\Program Files (x86)\ATI Technologies
2021-03-13 08:43 - 2021-03-14 11:28 - 000008192 ___SH C:\DumpStack.log.tmp
2021-03-13 08:43 - 2021-03-14 11:05 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-03-13 08:43 - 2021-03-13 08:43 - 000337552 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-03-13 08:42 - 2021-03-13 08:54 - 000000000 ____D C:\Windows.old
2021-03-13 02:11 - 2021-03-13 08:42 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2021-03-13 02:10 - 2021-03-13 08:55 - 000000000 ____D C:\Users\pohlr
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\Šablony
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\Soubory cookie
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\Poslední
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\Okolní tiskárny
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\Okolní síť
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\Nabídka Start
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\Dokumenty
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\Data aplikací
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\AppData\Local\Data aplikací
2021-03-13 02:10 - 2019-12-07 10:10 - 000001105 _____ C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-03-13 02:09 - 2021-03-13 02:11 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2021-03-13 02:07 - 2021-03-13 02:07 - 000000000 ____D C:\ProgramData\ssh
2021-03-13 02:02 - 2021-03-13 02:02 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2021-03-13 02:02 - 2021-03-13 02:02 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2021-03-13 02:02 - 2021-03-13 02:02 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2021-03-13 02:02 - 2021-03-13 02:02 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax
2021-03-13 02:02 - 2021-03-13 02:02 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax
2021-03-13 02:02 - 2021-03-13 02:02 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll
2021-03-13 02:02 - 2021-03-13 02:02 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-03-13 02:01 - 2021-03-13 02:01 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-03-13 02:01 - 2021-03-13 02:01 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 001314128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-03-13 02:01 - 2021-03-13 02:01 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-03-13 02:01 - 2021-03-13 02:01 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2021-03-13 02:01 - 2021-03-13 02:01 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2021-03-13 02:01 - 2021-03-13 02:01 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 000455680 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2021-03-13 02:01 - 2021-03-13 02:01 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2021-03-13 02:01 - 2021-03-13 02:01 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax
2021-03-13 02:01 - 2021-03-13 02:01 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax
2021-03-13 02:01 - 2021-03-13 02:01 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb
2021-03-13 02:01 - 2021-03-13 02:01 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2021-03-13 02:01 - 2021-03-13 02:01 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2021-03-13 02:01 - 2021-03-13 02:01 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv
2021-03-13 02:01 - 2021-03-13 02:01 - 000011359 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-03-13 02:01 - 2021-03-13 02:01 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe
2021-03-13 02:00 - 2021-03-13 02:00 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 001822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-03-13 02:00 - 2021-03-13 02:00 - 001394024 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-03-13 02:00 - 2021-03-13 02:00 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000643072 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2021-03-13 02:00 - 2021-03-13 02:00 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2021-03-13 02:00 - 2021-03-13 02:00 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2021-03-13 02:00 - 2021-03-13 02:00 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-03-13 02:00 - 2021-03-13 02:00 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe
2021-03-13 02:00 - 2021-03-13 02:00 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb
2021-03-13 02:00 - 2021-03-13 02:00 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2021-03-13 02:00 - 2021-03-13 02:00 - 000091136 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2021-03-13 02:00 - 2021-03-13 02:00 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-03-13 02:00 - 2021-03-13 02:00 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2021-03-13 01:59 - 2021-03-13 01:59 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2021-03-13 01:59 - 2021-03-13 01:59 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2021-03-13 01:59 - 2021-03-13 01:59 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2021-03-13 01:59 - 2021-03-13 01:59 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2021-03-13 01:59 - 2021-03-13 01:59 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2021-03-13 01:59 - 2021-03-13 01:59 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2021-03-13 01:59 - 2021-03-13 01:59 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2021-03-13 01:59 - 2021-03-13 01:59 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll
2021-03-13 01:59 - 2021-03-13 01:59 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2021-03-13 01:59 - 2021-03-13 01:59 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2021-03-13 01:59 - 2021-03-13 01:59 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2021-03-13 01:59 - 2021-03-13 01:59 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2021-03-13 01:46 - 2021-03-13 01:46 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2021-03-13 01:46 - 2021-03-13 01:46 - 000000000 ____D C:\Program Files\Reference Assemblies
2021-03-13 01:46 - 2021-03-13 01:46 - 000000000 ____D C:\Program Files\MSBuild
2021-03-13 01:46 - 2021-03-13 01:46 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2021-03-13 01:46 - 2021-03-13 01:46 - 000000000 ____D C:\Program Files (x86)\MSBuild
2021-03-13 01:37 - 2021-03-13 01:37 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2021-03-13 00:39 - 2021-03-13 08:55 - 000000000 ___DC C:\WINDOWS\Panther
2021-03-13 00:31 - 2021-03-13 00:31 - 000000000 ___HD C:\$WinREAgent
2021-03-12 22:12 - 2021-03-12 22:12 - 000001983 _____ C:\Users\pohlr\Downloads\vrio.lua
2021-03-12 21:34 - 2021-03-12 21:34 - 000241470 _____ C:\Users\pohlr\Downloads\FlySkyRx-master.zip
2021-03-12 17:24 - 2021-03-12 17:24 - 000000000 ____D C:\ProgramData\Gameforge4d
2021-03-12 17:16 - 2021-03-12 17:16 - 000001290 _____ C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gameforge Client.lnk
2021-03-12 17:16 - 2021-03-12 17:16 - 000000037 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Gameforge Client.url
2021-03-12 17:16 - 2021-03-12 17:16 - 000000000 ____D C:\Users\pohlr\AppData\Local\Gameforge4d
2021-03-12 17:16 - 2021-03-12 17:16 - 000000000 ____D C:\Program Files (x86)\GameforgeClient
2021-03-12 17:11 - 2021-03-12 17:11 - 002261328 _____ C:\Users\pohlr\Downloads\GameforgeInstaller.exe
2021-03-10 18:19 - 2021-03-10 18:19 - 000000000 ____D C:\Users\pohlr\OneDrive\Dokumenty\Audacity
2021-03-10 18:16 - 2021-03-10 18:30 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\audacity
2021-03-10 18:16 - 2021-03-10 18:16 - 000001092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk
2021-03-10 18:16 - 2021-03-10 18:16 - 000000000 ____D C:\Users\pohlr\AppData\Local\Audacity
2021-03-10 18:16 - 2021-03-10 18:16 - 000000000 ____D C:\Program Files (x86)\Audacity
2021-03-10 18:15 - 2021-03-10 18:15 - 028141904 _____ (Audacity Team ) C:\Users\pohlr\Downloads\audacity-win-2.4.2.exe
2021-03-09 10:04 - 2021-03-09 10:05 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\dunelegacy
2021-03-09 10:00 - 2021-03-09 10:00 - 000000000 ____D C:\Users\pohlr\OneDrive\Dokumenty\w3chart
2021-03-08 12:00 - 2021-03-13 08:43 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security
2021-03-07 16:24 - 2021-03-07 16:24 - 005159349 _____ C:\Users\pohlr\Downloads\karak-regent-pravidla-web-3389.pdf
2021-03-04 19:07 - 2021-03-04 19:07 - 000335959 _____ C:\Users\pohlr\Downloads\grunt_rx_10.epub
2021-03-04 19:05 - 2021-03-04 19:05 - 000797838 _____ C:\Users\pohlr\Downloads\nocni_mury_nespi.epub
2021-03-04 19:03 - 2021-03-04 19:03 - 001266895 _____ C:\Users\pohlr\Downloads\lord_mord.epub
2021-03-04 18:59 - 2021-03-04 18:59 - 000457065 _____ C:\Users\pohlr\Downloads\vzpoura_v_zoo.epub
2021-03-04 18:59 - 2021-03-04 18:59 - 000437613 _____ C:\Users\pohlr\Downloads\my.epub
2021-03-02 20:34 - 2021-03-02 20:34 - 001092007 _____ C:\Users\pohlr\Downloads\datasheet.pdf
2021-03-02 19:17 - 2021-03-02 19:17 - 000298974 _____ C:\Users\pohlr\Downloads\LEDka_lab.pdf
2021-03-02 19:17 - 2021-03-02 19:17 - 000248642 _____ C:\Users\pohlr\Downloads\Měření s polovodičovou diodou - Aleš Jančář.pdf
2021-03-02 19:07 - 2021-03-02 19:07 - 000057403 _____ C:\Users\pohlr\Downloads\led_resistor_calculator.zip
2021-03-02 19:07 - 2021-03-02 19:07 - 000036613 _____ C:\Users\pohlr\Downloads\led_kalkulacka.zip
2021-03-02 18:40 - 2021-03-02 18:40 - 000107996 _____ C:\Users\pohlr\Downloads\COVID19-okresy_-_VZOR-Cestne_prohlaseni_-_20210227.pdf
2021-02-23 14:18 - 2021-02-23 14:18 - 003374092 _____ C:\Users\pohlr\Downloads\mikina_raglan_polohovani.pdf
2021-02-23 14:18 - 2021-02-23 14:18 - 002197124 _____ C:\Users\pohlr\Downloads\A4_mikina_raglan_sikmy_zip_v02_CB.pdf
2021-02-20 22:15 - 2021-02-20 22:16 - 000659231 _____ C:\Users\pohlr\Downloads\vmt.zip
2021-02-16 21:28 - 2021-02-16 21:28 - 005682144 _____ C:\Users\pohlr\Downloads\LJP1100_P1560_P1600_FW_Upgrade_Security-20150114.exe
2021-02-15 19:22 - 2021-02-15 19:22 - 000000000 ____D C:\Program Files\HPPrintScanDoctor
2021-02-15 19:11 - 2021-02-15 19:11 - 000000000 ____D C:\ProgramData\HPSSUPPLY
2021-02-15 19:11 - 2021-02-15 19:11 - 000000000 ____D C:\ProgramData\Hewlett-Packard
2021-02-15 19:11 - 2021-02-15 19:11 - 000000000 ____D C:\Program Files (x86)\HP
2021-02-15 19:00 - 2021-03-13 08:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2021-02-15 19:00 - 2012-09-27 01:27 - 000126880 _____ (HP) C:\WINDOWS\system32\HPSIsvc.exe
2021-02-15 19:00 - 2012-08-31 15:10 - 000350720 _____ C:\WINDOWS\system32\mvhlewsi.DLL
2021-02-15 19:00 - 2012-08-31 15:03 - 001696256 _____ C:\WINDOWS\system32\HP1100SM.EXE
2021-02-15 19:00 - 2012-08-31 15:03 - 000288768 _____ C:\WINDOWS\system32\HP1100LM.DLL
2021-02-15 18:59 - 2021-03-13 02:11 - 000000000 ____D C:\Program Files\HP
2021-02-15 18:58 - 2021-02-15 18:58 - 000000000 ____D C:\LJP1100_P1560_P1600_Full_Solution
2021-02-15 18:58 - 2012-09-26 06:45 - 000082944 _____ C:\WINDOWS\system32\mvusbews.dll
2021-02-15 18:58 - 2012-09-26 06:45 - 000050688 _____ C:\WINDOWS\system32\HP1100SMs.dll
2021-02-15 18:58 - 2012-09-26 06:45 - 000020480 _____ (Marvell Semiconductor, Inc.) C:\WINDOWS\system32\Drivers\mvusbews.sys
2021-02-15 18:35 - 2021-02-15 18:36 - 005629312 _____ C:\Users\pohlr\Downloads\HP_P1102w_P1109_FW_Update_20201012.exe
2021-02-14 21:12 - 2021-02-14 21:12 - 000007906 _____ C:\Users\pohlr\Downloads\tiskarna.jfif
2021-02-14 15:45 - 2021-03-13 02:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2021-02-14 15:45 - 2021-02-14 15:45 - 005824024 _____ C:\Users\pohlr\Downloads\mypr-win-3_3_0-ea11_2.exe
2021-02-14 15:45 - 2021-02-14 15:45 - 000000000 ____D C:\Program Files\Canon
2021-02-14 15:45 - 2021-02-14 15:45 - 000000000 ____D C:\Program Files (x86)\Canon
2021-02-13 14:26 - 2021-02-13 14:26 - 001568184 _____ C:\Users\pohlr\Downloads\TX16S_RotorRiot_Gimbal_Brace_v1.STL

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-03-14 15:54 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-03-14 11:36 - 2019-12-07 15:41 - 000717850 _____ C:\WINDOWS\system32\perfh005.dat
2021-03-14 11:36 - 2019-12-07 15:41 - 000144992 _____ C:\WINDOWS\system32\perfc005.dat
2021-03-14 11:36 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2021-03-14 11:33 - 2019-12-22 11:33 - 000000000 ____D C:\hry
2021-03-14 11:29 - 2020-10-03 19:41 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-03-14 11:29 - 2019-12-14 09:20 - 000000000 ___RD C:\Users\pohlr\OneDrive
2021-03-14 11:26 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-03-14 11:17 - 2019-12-14 19:45 - 000000000 ____D C:\ProgramData\Norton
2021-03-14 10:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-03-14 03:20 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\appcompat
2021-03-14 01:40 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-03-14 01:35 - 2020-09-19 03:39 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-03-14 01:35 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-03-14 00:14 - 2019-12-14 19:43 - 000000000 ____D C:\Program Files (x86)\Steam
2021-03-13 19:56 - 2019-12-16 20:20 - 000000000 ____D C:\Users\pohlr\AppData\Local\CrashDumps
2021-03-13 19:00 - 2020-02-02 11:25 - 000000000 ____D C:\Users\pohlr\OneDrive\Dokumenty\My Games
2021-03-13 18:24 - 2019-12-14 19:14 - 000000000 ____D C:\ProgramData\Package Cache
2021-03-13 10:28 - 2019-12-14 09:20 - 000000000 ____D C:\Users\pohlr\AppData\Local\D3DSCache
2021-03-13 09:12 - 2019-12-14 09:17 - 000000000 ____D C:\Users\pohlr\AppData\Local\Packages
2021-03-13 09:12 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-03-13 08:59 - 2019-12-14 09:19 - 000000000 ____D C:\Users\pohlr\AppData\Local\PlaceholderTileLogoFolder
2021-03-13 08:56 - 2019-12-14 19:17 - 000000000 ____D C:\ProgramData\Packages
2021-03-13 08:56 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-03-13 08:56 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-03-13 08:55 - 2019-12-14 09:17 - 000000000 ___RD C:\Users\pohlr\3D Objects
2021-03-13 08:54 - 2020-02-06 23:05 - 000000270 __RSH C:\ProgramData\ntuser.pol
2021-03-13 08:54 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-03-13 08:54 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate
2021-03-13 08:54 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2021-03-13 08:53 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender
2021-03-13 08:52 - 2020-06-06 20:35 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-03-13 08:52 - 2019-12-14 09:22 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-03-13 08:45 - 2019-12-14 19:14 - 000000000 ____D C:\AMD
2021-03-13 08:45 - 2019-12-14 09:16 - 000000000 ____D C:\Program Files (x86)\USB Camera
2021-03-13 08:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\System
2021-03-13 08:43 - 2020-12-09 22:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher Enhanced Edition [GOG.com]
2021-03-13 08:43 - 2020-10-02 18:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OSFMount
2021-03-13 08:43 - 2020-08-12 20:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\lenovo
2021-03-13 08:43 - 2020-08-10 18:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TPFanControl
2021-03-13 08:43 - 2020-06-10 17:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB Disk Storage Format Tool 5.3
2021-03-13 08:43 - 2020-02-10 21:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealFlight G5
2021-03-13 08:43 - 2020-02-06 23:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PicaSim
2021-03-13 08:43 - 2020-01-16 19:45 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.7
2021-03-13 08:43 - 2019-12-16 20:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPhoneExplorer
2021-03-13 08:43 - 2019-12-14 19:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2021-03-13 08:43 - 2019-12-07 10:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2021-03-13 08:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2021-03-13 08:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2021-03-13 08:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\spool
2021-03-13 08:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2021-03-13 08:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-03-13 08:43 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2021-03-13 08:42 - 2021-02-06 20:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2021-03-13 08:42 - 2020-12-16 15:13 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiSuite
2021-03-13 08:42 - 2020-12-16 14:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CEWE FOTOLAB fotosvet
2021-03-13 08:42 - 2020-11-07 17:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiSuite
2021-03-13 08:42 - 2020-10-02 05:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image Writer
2021-03-13 08:42 - 2020-09-30 19:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Partition Assistant 8.10
2021-03-13 08:42 - 2020-08-12 20:11 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo
2021-03-13 08:42 - 2020-08-06 16:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2021-03-13 08:42 - 2020-07-09 10:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CogniView
2021-03-13 08:42 - 2020-06-22 21:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eSpeak
2021-03-13 08:42 - 2020-06-03 17:28 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenTX Companion 2.3
2021-03-13 08:42 - 2020-05-30 11:16 - 000000000 ____D C:\Program Files\UNP
2021-03-13 08:42 - 2020-05-30 10:30 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DashWare
2021-03-13 08:42 - 2020-05-24 11:32 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LinuxLive USB Creator
2021-03-13 08:42 - 2020-05-24 11:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HDD Low Level Format Tool
2021-03-13 08:42 - 2020-03-29 14:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gwent [GOG.com]
2021-03-13 08:42 - 2020-03-01 18:50 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Equalizer APO 1.2.1
2021-03-13 08:42 - 2020-02-27 18:22 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Autodesk
2021-03-13 08:42 - 2020-02-13 07:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dieselpower
2021-03-13 08:42 - 2020-02-11 18:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AeroFly Professional Deluxe
2021-03-13 08:42 - 2019-12-22 13:52 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TechPowerUp GPU-Z
2021-03-13 08:42 - 2019-12-15 13:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2021-03-13 08:42 - 2019-12-14 19:25 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2021-03-13 08:42 - 2019-12-14 09:22 - 000000000 ____D C:\Program Files\AMD
2021-03-13 08:42 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2021-03-13 08:42 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2021-03-13 08:42 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2021-03-13 08:41 - 2019-12-07 10:18 - 000000000 ____D C:\WINDOWS\Setup
2021-03-13 02:11 - 2020-05-27 21:18 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\u-blox
2021-03-13 02:11 - 2020-05-03 21:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VEGAS
2021-03-13 02:11 - 2020-03-28 13:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2021-03-13 02:11 - 2020-02-11 17:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhoenixRC
2021-03-13 02:11 - 2019-12-15 12:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2021-03-13 02:11 - 2019-12-14 09:22 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies
2021-03-13 02:11 - 2019-12-14 09:16 - 000000000 ____D C:\Program Files\Synaptics
2021-03-13 02:07 - 2019-12-07 15:44 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-03-13 02:07 - 2019-12-07 15:44 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Com
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\IME
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2021-03-13 02:07 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2021-03-13 02:05 - 2019-12-07 15:44 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2021-03-13 02:05 - 2019-12-07 15:44 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2021-03-13 01:51 - 2019-12-07 15:43 - 000000000 ____D C:\WINDOWS\OCR
2021-03-13 01:49 - 2019-12-07 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2021-03-13 01:49 - 2019-12-07 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2021-03-13 01:49 - 2019-12-07 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2021-03-13 01:49 - 2019-12-07 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2021-03-13 01:49 - 2019-12-07 15:41 - 000000000 ____D C:\WINDOWS\system32\winrm
2021-03-13 01:49 - 2019-12-07 15:41 - 000000000 ____D C:\WINDOWS\system32\WCN
2021-03-13 01:49 - 2019-12-07 15:41 - 000000000 ____D C:\WINDOWS\system32\slmgr
2021-03-13 01:49 - 2019-12-07 15:41 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2021-03-13 01:46 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2021-03-13 01:46 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\MUI
2021-03-12 12:58 - 2020-08-06 16:59 - 000000000 ____D C:\Program Files\Java
2021-03-12 12:57 - 2020-08-06 16:59 - 000192168 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2021-03-10 20:13 - 2021-01-30 11:42 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2021-03-10 11:41 - 2019-12-14 19:57 - 131005360 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-03-10 11:41 - 2019-12-14 19:57 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-03-10 09:17 - 2020-05-23 16:48 - 000000000 ____D C:\Users\pohlr\OneDrive\Dokumenty\ArduinoData
2021-03-09 09:55 - 2019-12-14 09:17 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Adobe
2021-03-08 12:26 - 2019-12-14 21:04 - 000000000 ____D C:\Program Files\Common Files\AV
2021-03-08 12:00 - 2019-12-14 20:35 - 000000000 ____D C:\WINDOWS\system32\Drivers\NGCx64
2021-02-28 20:49 - 2020-09-30 19:36 - 000031763 _____ C:\WINDOWS\GA_OF.dat
2021-02-28 20:49 - 2020-09-30 19:36 - 000001024 ____H C:\AMTAG.BIN
2021-02-28 19:15 - 2020-09-30 19:36 - 000000000 ____D C:\Program Files (x86)\AOMEI Partition Assistant
2021-02-25 07:31 - 2020-10-03 19:42 - 000000000 ____D C:\Users\pohlr\AppData\Local\TeamViewer
2021-02-25 07:09 - 2019-12-15 13:49 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\MPC-HC

==================== Files in the root of some directories ========

2020-05-24 11:07 - 2020-05-24 11:07 - 000000001 _____ () C:\Users\pohlr\AppData\Local\llftool.4.40.agreement

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================


Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-03-2021
Ran by pohlr (14-03-2021 16:04:48)
Running from C:\Users\pohlr\OneDrive\Skrivebord
Windows 10 Home Version 20H2 19042.867 (X64) (2021-03-13 07:54:13)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3488671587-1816662609-4276607936-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3488671587-1816662609-4276607936-503 - Limited - Disabled)
Guest (S-1-5-21-3488671587-1816662609-4276607936-501 - Limited - Disabled)
pohlr (S-1-5-21-3488671587-1816662609-4276607936-1001 - Administrator - Enabled) => C:\Users\pohlr
WDAGUtilityAccount (S-1-5-21-3488671587-1816662609-4276607936-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Norton 360 (Enabled - Up to date) {1122B19A-E671-38EC-8EAC-87048FD4528D}
AV: Norton Security (Enabled - Up to date) {A2708B76-6835-6565-CB96-694212954A75}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Norton 360 (Enabled - Up to date) {9E3FD331-C4C2-7AC4-0537-131EEF1B1F8A}
FW: Norton Security (Enabled) {9A4B0A53-225A-643D-E0C9-C077EC460D0E}
FW: Norton 360 (Enabled) {A6045214-8EAD-7B9C-2E68-BA2B11C858F1}
FW: Norton 360 (Enabled) {291930BF-AC1E-39B4-A5F3-2E31710715F6}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 21.001.20145 - Adobe Systems Incorporated)
Adobe Photoshop CC 2018 (HKLM-x32\...\PHSP_19_0) (Version: 19.0 - Adobe Systems Incorporated)
AeroFly Professional Deluxe (HKLM-x32\...\{4689C255-3373-4A61-8E3C-3E9C92EFA4E5}) (Version: 1.9.7.11 - IPACS)
aerofly RC 7 Ultimate Edition (HKLM-x32\...\YWVyb2ZseVJDN1VsdGltYXRlRWRpdGlvbg==_is1) (Version: 1 - )
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Catalyst Install Manager (HKLM\...\{66AFB595-BC05-2913-7696-6D58F9B733E1}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
AOMEI Partition Assistant 8.10 (HKLM-x32\...\{02F850ED-FD0E-4ED1-BE0B-54981f5BD3D4}_is1) (Version: - AOMEI International Network Limited.)
Audacity 2.4.2 (HKLM-x32\...\Audacity_is1) (Version: 2.4.2 - Audacity Team)
Autodesk Fusion 360 (HKU\S-1-5-21-3488671587-1816662609-4276607936-1001\...\73e72ada57b7480280f7a6f4a289729f) (Version: 2.0.7463 - Autodesk, Inc.)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC)
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.3.0 - Canon Inc.)
CCleaner (HKLM\...\{DCC7ED81-4222-4555-87F4-AE3E8B0C10D6}_is1) (Version: 5.55.7108 - Piriform)
CEWE FOTOLAB fotosvet (HKLM-x32\...\CEWE FOTOLAB fotosvet) (Version: 7.0.4 - CEWE Stiftung u Co. KGaA)
DashWare (HKLM\...\DashWare) (Version: 1.9.1 - GoPro, Inc.)
DidaktaCZ 1.0.0 (HKLM-x32\...\7e81f6ca-38af-5207-b03c-2ecbe5f1ce8e) (Version: 1.0.0 - SILCOM Multimedia, s.r.o.)
Epic Games Launcher (HKLM-x32\...\{C69A2919-0662-4390-9418-67C931B44C18}) (Version: 1.1.236.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Equalizer APO (HKLM\...\EqualizerAPO) (Version: 1.2.1 - )
eSpeak version 1.48.04 (HKLM-x32\...\eSpeak_is1) (Version: - )
FormApps Signing Extension (HKLM-x32\...\{2ADAFEB7-56C5-497F-8960-67DA46A81838}) (Version: 2.27.0.46 - Software602 a.s.)
Gameforge Client (HKLM-x32\...\{d3b2a0c1-f0d0-4888-ae0b-1c5e1febdafb}_is1) (Version: 2.1.25.933 - Gameforge)
GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 89.0.4389.82 - Google LLC)
Gwent (HKLM-x32\...\1971477531_is1) (Version: 8.0 - GOG.com)
Hard Disk Low Level Format Tool 4.40 (HKLM-x32\...\Hard Disk Low Level Format Tool_is1) (Version: - HDDGURU)
HiSuite (HKLM-x32\...\Hi Suite) (Version: 11.0.0.500 - Huawei Technologies Co., Ltd.)
HP LaserJet Professional P1100-P1560-P1600 Series (HKLM\...\HP LaserJet Professional P1100-P1560-P1600 Series) (Version: - )
HPSSupply (HKLM-x32\...\{7902E313-FF0F-4493-ACB1-A8147B78DCD0}) (Version: 2.1.1.0000 - Hewlett Packard Development Company L.P.)
Java 8 Update 281 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180281F0}) (Version: 8.0.2810.9 - Oracle Corporation)
K-Lite Codec Pack 15.9.0 Standard (HKLM-x32\...\KLiteCodecPack_is1) (Version: 15.9.0 - KLCP)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Lenovo EasyCamera (HKLM-x32\...\{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0332}) (Version: 3.15.0414.1 - Vimicro)
Lenovo Service Bridge (HKU\S-1-5-21-3488671587-1816662609-4276607936-1001\...\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1) (Version: 5.0.1.7 - Lenovo)
Lenovo System Update (HKLM-x32\...\TVSU_is1) (Version: 5.07.0072 - Lenovo)
LinuxLive USB Creator (HKLM-x32\...\LinuxLive USB Creator) (Version: 2.9 - Thibaut Lauziere)
LogView (HKLM-x32\...\{C896A23B-9BD1-4BCD-8FB5-79078DD94B98}) (Version: 1.6.1.1 - DIESELPOWER s.r.o.)
Metin2 cs-CZ (HKLM-x32\...\{fab180a3-cd65-4b7e-bd0e-2ef77fd0c258.cs-CZ}) (Version: - Gameforge)
Metin2 tr-TR (HKLM-x32\...\{fab180a3-cd65-4b7e-bd0e-2ef77fd0c258.tr-TR}) (Version: - Gameforge)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 89.0.774.50 - Microsoft Corporation)
Microsoft Flight Simulator X: Acceleration (HKLM-x32\...\FlightSim_{A9729B90-D37B-4A69-B66A-7436AC1F7274}) (Version: 10.0.61637.0 - Microsoft Game Studios)
Microsoft Halo (HKLM-x32\...\Halo) (Version: - Microsoft)
Microsoft OneDrive (HKU\S-1-5-21-3488671587-1816662609-4276607936-1001\...\OneDriveSetup.exe) (Version: 21.030.0211.0002 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{99FAF70F-9B61-4AB0-9EC0-B31F98FFDC4A}) (Version: 2.75.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Mozilla Firefox 77.0.1 (x64 en-US) (HKLM\...\Mozilla Firefox 77.0.1 (x64 en-US)) (Version: 77.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 76.0.1 - Mozilla)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.12 - F.J. Wechselberger)
Norton 360 (HKLM-x32\...\NGC) (Version: 22.21.1.151 - Symantec Corporation)
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.9 - Notepad++ Team)
OpenOffice 4.1.7 (HKLM-x32\...\{E3E3C1D4-6886-4EDB-9F12-335641465055}) (Version: 4.17.9800 - Apache Software Foundation)
OpenTX Companion 2.3 (HKLM-x32\...\OpenTX Companion 2.3) (Version: 2.3.11 - OpenTX)
OSFMount v1.5 (HKLM\...\OSFMount_is1) (Version: 1.5.1015 - Passmark Software)
PDF2XL (HKLM-x32\...\{5C063551-6D4A-4928-9414-0A577F6CB4EB}) (Version: 8.0.2 - CogniView)
PicaSim (HKLM-x32\...\PicaSim_is1) (Version: - )
qBittorrent 4.2.0 (HKLM-x32\...\qBittorrent) (Version: 4.2.0 - The qBittorrent project)
RealFlight G5 R/C Simulator (HKLM-x32\...\RealFlightG5Pro) (Version: - )
Smart View (HKLM-x32\...\{1800D8A5-F7B2-4C20-868E-1CF55CBBDF21}) (Version: 1.0.0.0 - Samsung )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.19.1 - Synaptics Incorporated)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.3.2 - TeamSpeak Systems GmbH)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.15.5 - TeamViewer)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp)
The Witcher Enhanced Edition Director's Cut (HKLM-x32\...\1207658924_is1) (Version: 2.1.0.15 - GOG.com)
Theme Hospital (HKLM-x32\...\Theme Hospital_is1) (Version: - GOG.com)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.22a - Ghisler Software GmbH)
TPFanControl v0.61 (HKLM\...\{717F5741-5C2E-4469-BDA0-B5EC2243646F}_is1) (Version: - troubadix)
u-center_v20.01 (HKLM-x32\...\u-center_v20.01) (Version: 20.01 - u-blox)
USB Disk Storage Format Tool 5.3 (HKLM\...\USB Disk Storage Format Tool_is1) (Version: - Authorsoft Corporation)
VdhCoApp 1.5.0 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper)
VEGAS Pro 14.0 (64-bit) (HKLM\...\{4C79D80F-79F9-11E6-8402-BB95F5A309BD}) (Version: 14.0.161 - VEGAS)
Win32DiskImager version 1.0.0 (HKLM-x32\...\{3DFFA293-DF2C-4B23-92E5-3433BDC310E1}}_is1) (Version: 1.0.0 - ImageWriter Developers)
Wondershare Helper Compact 2.5.3 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.5.3 - Wondershare)
Wondershare Video Converter Ultimate(Build 10.4.1.188) (HKLM-x32\...\Video Converter Ultimate_is1) (Version: 10.4.1.188 - Wondershare Software)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment)

Packages:
=========
Arduino IDE -> C:\Program Files\WindowsApps\ArduinoLLC.ArduinoIDE_1.8.42.0_x86__mdqgnx93n4wtt [2020-07-23] (Arduino LLC)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_122.3.838.0_x64__v10z8vjag6ke6 [2021-03-13] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-03-13] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-03-13] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.9.1252.0_x64__8wekyb3d8bbwe [2021-03-13] (Microsoft Studios) [MS Ad]
Photo Editor | Polarr -> C:\Program Files\WindowsApps\613EBCEA.PolarrPhotoEditorAcademicEdition_5.10.200.0_x64__jb41c8remg0x2 [2020-05-30] (Polarr)
Text-to-Voice -> C:\Program Files\WindowsApps\21724Alexander-Bielecki.d.Text-to-Voice_1.4.4.0_x64__ahjyqznyj4z5y [2020-06-22] (www.Alexander-Bielecki.de) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3488671587-1816662609-4276607936-1001_Classes\CLSID\{C4F0910E-E0B4-4E68-8086-452730C7A26A}\InprocServer32 -> C:\Users\pohlr\AppData\Local\Autodesk\webdeploy\production\128340bb0c272cfb06c5653400939c91abb2a80a\NPreview10.dll (Autodesk, Inc. -> )
ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.21.1.151\buShell.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.21.1.151\buShell.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.21.1.151\buShell.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.21.1.151\buShell.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.21.1.151\buShell.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.21.1.151\buShell.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2020-09-24] (Notepad++ -> )
ContextMenuHandlers1: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.21.1.151\buShell.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1-x32: [MyPhoneExplorer] -> {A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} => C:\Program Files (x86)\MyPhoneExplorer\DLL\ShellMgr.dll [2010-03-30] (F.J. Wechselberger) [File not signed]
ContextMenuHandlers1: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.21.1.151\NavShExt.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers2: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.21.1.151\NavShExt.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\WINDOWS\system32\igfxpph.dll [2017-03-09] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.21.1.151\buShell.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers6: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.21.1.151\NavShExt.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\pohlr\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Michaela (Miška) - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"
ShortcutWithArgument: C:\Users\pohlr\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default

==================== Loaded Modules (Whitelisted) =============

2021-03-14 10:02 - 2021-03-14 10:02 - 000031232 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\A4.Foundation\299bf2e4e23af02175445e6a26f183b3\A4.Foundation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000022528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Actions5dc83b46#\a24c26eba4ea3ddce65e74fa4668e293\AEM.Actions.CCAA.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.0a1309f7#\b1c480fea6a1f23d52c3e56efa0e3568\AEM.Plugin.EEU.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.2b6a6775#\ab84ec371d67664b2b3835984aa2dce2\AEM.Plugin.Hotkeys.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000016384 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.54d8abe3#\067d1b4cc2a05184c6e0a89aaee60af6\AEM.Plugin.DPPE.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000281600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.5d945b6b#\e6806d3dfa2372f274fedc400ecaea29\AEM.Plugin.Source.Kit.Server.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000014848 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.674d2b8a#\20e43f89b55b6c6d58c04b22890cbbc3\AEM.Plugin.WinMessages.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.88aba5d2#\2cb21aaa54b1116e4ceda042a9d4ce1e\AEM.Plugin.REG.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000011776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.GD.Shared\a0c3b8ce9c35481a6521f517227bbbe2\AEM.Plugin.GD.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server.Shared\6cfd22563e0e2c727f094a3de46cf569\AEM.Server.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000267776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server\8e824043be59343847600763c50d6229\AEM.Server.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000055808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Foundation\8b0dfc591b480594610bbaa94430d4db\APM.Foundation.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000122880 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ATICCCom\4f9523253033d141734969c0866c932c\ATICCCom.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000204288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CCC.Implementation\af1df7a28635d8dc2019da4ad419ebaa\CCC.Implementation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000154112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.21d2ac78#\d18e017d86840cf4e291065a203bf595\CLI.Aspect.PowerPlayDPPE.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000128000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3399d0ec#\c473afacd64a10cb325e6c9ac524f824\CLI.Aspect.CustomFormats.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.37d3d968#\1de0b258089f746ad04d1233cf969b29\CLI.Aspect.AMDHome.Graphics.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000045568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.382a3def#\dd5cc863637abdfb436e9ceaee87b61a\CLI.Aspect.AMDOverDrive.Platform.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000107008 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3a6f1658#\119e8f5a6e9313af4844f1cb23d04601\CLI.Aspect.TransCode.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.46819220#\bf72cdb8017728ac2915993a05842fee\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4bbb0755#\ec62501776136c97cc7f8ede3f99c6d9\CLI.Aspect.TransCode.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.52c6dbaa#\7ee8d68f2500cbf06d0e1339d0509d76\CLI.Aspect.FPS.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.59a12d95#\ea99ad5efa6b77f631f17f3f6514113d\CLI.Aspect.PowerPlayDPPE.Graphics.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000263168 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.73911eb5#\b25d1017d66178bbb77c5038da1e5327\CLI.Aspect.WirelessDisplay.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000365056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.7ec2db45#\e51ade072914adc16c9cc1a4eb929b0b\CLI.Aspect.DeviceDFP.Graphics.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000064000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8350f5c6#\af53ba99fab78381ec29e55adfd889b7\CLI.Aspect.UpdateNotification.Graphics.Runtime.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000678912 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.846fa813#\1946be912a1389e3b2e8e684bdb2c6fa\CLI.Aspect.MMVideo.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000745472 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8d333b6b#\528e8766b99ec47ea476e036a210492b\CLI.Aspect.Radeon3D.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000449536 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8e996306#\b3107cf758db9f29066e5548859e950a\CLI.Aspect.CrossDisplay.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000089088 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9cd1e9e7#\6d4486fb59307bec3ac8923aebc72ef1\CLI.Aspect.FPS.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000057856 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a6cd7fff#\ebccb64be88b1b07b48f2652531555a7\CLI.Aspect.FPS.Graphics.Runtime.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000082944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a765109e#\e7f1c1a772858f2bc0d52f6c35e98cf6\CLI.Aspect.UpdateNotification.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000150528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.abe74207#\bfefe6dfe3acf243f345e070179cf31f\CLI.Aspect.MultiVPU2.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000462336 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.acb9d930#\59f37443a686efbf0c52772f1db24e0e\CLI.Aspect.DeviceProperty.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000067072 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b0a7c1fb#\12c979ab0dac8ba20586fa52ec4c5cef\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000340992 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c7aaa0f8#\3e009bed5e4d5046f36f132a1b75aa95\CLI.Aspect.OverDrive5.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c854b457#\e62039c5f426da0d2aa0415ba6806c9e\CLI.Aspect.HotkeysHandling.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000096256 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d4f2f79c#\73b0f1411d421cf80be838629e17ed37\CLI.Aspect.CrossFireX.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000276480 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e8635fc7#\b0e1ae0abff9a1471337ff4e5cb5f5f6\CLI.Aspect.InfoCentre.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 003312640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e9fd7406#\4c50ca884ddb173946e52d51eeb28571\CLI.Aspect.Radeon3D.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000240640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.eda8935e#\44b63310c195cfc86fdc7b385b24d1af\CLI.Aspect.MMVideo.Graphics.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000047616 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ef3eaa4d#\2597fa5cfc6bbd186558dd3ddb3875f3\CLI.Aspect.TransCode.Graphics.Runtime.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000050688 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f480a2f3#\0e5e46fe8262765fc01f531393cea826\CLI.Aspect.UpdateNotification.Graphics.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000051200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Runtime\1b793612380f60d287e5c5f86122e89c\CLI.Caste.A4.Runtime.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Shared\0f047cf9e2239851a811b935d7b109d0\CLI.Caste.A4.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Af820fedc#\ad42a31ed395b0ecbe316f65491d24af\CLI.Caste.A4.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F24de14fe#\756be47d421c14309af0c8d9dddc6a29\CLI.Caste.Fuel.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000311296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F36b07a2b#\237f6779fe63e0a2c1d282dcaae5138d\CLI.Caste.Fuel.Runtime.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Ff3085433#\9da73010c1ac2627c98cd659770a1f1e\CLI.Caste.Fuel.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60338cc0#\a5e2e36025e5e42aeff913bbda1aa6d6\CLI.Caste.Graphics.Runtime.Shared.Private.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 001555456 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gd9d9b43b#\d9023f90cb9c233a1ef9d29afe619a5d\CLI.Caste.Graphics.Dashboard.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000587776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gee7d2dbc#\2c859919bad3bef7b22e820c8331e258\CLI.Caste.Graphics.Dashboard.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000045056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H18c99613#\67666baee565c9b0f6a67df38462c2f3\CLI.Caste.HydraVision.Runtime.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H92ba4e46#\be62787dd2bab6bbe758bb473b72c8e4\CLI.Caste.HydraVision.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Hbb906c0b#\c0e53f1337994c1667cf8986471b8253\CLI.Caste.HydraVision.Dashboard.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pac40511b#\0552c276520bab46992e3d931c858708\CLI.Caste.Platform.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000044032 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pdb36d56e#\753c0337e60bbef84ae2e4d415b423f7\CLI.Caste.Platform.Runtime.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000024064 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pfeefa2b6#\8cc70011780cd7107d94671bcc46c204\CLI.Caste.Platform.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone1b4a8c97#\0619ae2c3e8cc53377fbecef51f243ed\CLI.Component.Runtime.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000901632 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone26c9c557#\dfff39149c8e27593d1a824546fc918b\CLI.Component.Systemtray.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000173568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone29e547cc#\197bf5cf7fb1b4891e579ec04e9eef33\CLI.Component.Dashboard.ProfileManager2.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000151040 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone59f353b4#\780c8bd8339ff2def14b0207cd808a3b\CLI.Component.Runtime.Shared.Private.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componeb4d0485c#\c2b5ee81f835f248ac92e192a11b37f2\CLI.Component.Runtime.Extension.EEU.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 001609728 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componec89c3bec#\e0ac251c51c9ce70532e3b80d17036b1\CLI.Component.Dashboard.Shared.Private.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000018432 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componef1fd67b2#\5627e1355102d34ea0fb784888ab8e34\CLI.Component.Client.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000085504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componef4cf054f#\007e57a69242e84ff334564a788165c0\CLI.Component.Dashboard.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000495104 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Component.Eeu\729b0074739149770459424c54b32cfe\CLI.Component.Eeu.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000089600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat3d5d3945#\a0a2b615cdc294c7d3af29f42d6f3369\CLI.Foundation.Private.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000061440 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat60cdf5df#\4e50f43f222133081bca51d4ec374497\CLI.Foundation.XManifest.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000091136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat619559bd#\bcdee5c6fe25466f8c29767f6b2b1294\CLI.Foundation.CoreAudioAPI.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 001079808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundatd3771151#\e71d9ac8050ddbc61de0d405425ffb71\CLI.Foundation.Client.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000301568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundation\f427fb4249819cdad708ab341925f176\CLI.Foundation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Foundation\5d12a5ba7cfcf92e2bdedb9c65064c74\DEM.Foundation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000115200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0601\5658790b6d8ee4f840d1ca57866316ce\DEM.Graphics.I0601.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000015360 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics\dfa1099aca23fc47444238db01432d1e\DEM.Graphics.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Fuel.Foundation\7224c4f48b25b446a37e68bf70496628\Fuel.Foundation.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000296960 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundat03490438#\e8caa0b0ef82e5f8b64cc8d85740b649\LOG.Foundation.Implementation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000150016 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundat5023f8e7#\bb140c3f749aad3e194c37b732486584\LOG.Foundation.Private.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000087552 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundatcaafa75b#\941a6700366b94ec64b62cc506f95d74\LOG.Foundation.Implementation.Private.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundation\14a13de1f3708f74c0de29e5d486a6de\LOG.Foundation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Foundation\c718fcd8c25b703ccad4cb802f9c7dca\MOM.Foundation.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000402944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Implementation\942416935b21cacc907f56d100506704\MOM.Implementation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000055296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\NEWAEM.Foundation\ae9a13269043d55e4140d5868270661d\NEWAEM.Foundation.ni.dll
2015-11-04 16:40 - 2015-11-04 16:40 - 000005120 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiamcsy.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000897024 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ADL.Foundation\79c00831b1c30bf18fb586d85535361d\ADL.Foundation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000256000 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Server\11725f354a5e8c6ce052906bd4a8e5e8\APM.Server.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000783872 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.79734f7a#\ee4275611386e7caa8525721f42d22b6\CLI.Aspect.PowerXpress.Graphics.Runtime.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000357888 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b3da5a8f#\8115c9f4be5c153a71dc876fbb8dd313\CLI.Aspect.PowerXpress.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000595456 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d4846ba2#\4b2f4a30c7c2dd195fd6e39df3e80028\CLI.Aspect.PowerXpress.Graphics.Dashboard.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 008027648 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Combine0616f305#\9290d5fffa3771fc564d5a494bbaef80\CLI.Combined.Graphics.Aspects1.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000136704 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone168638d1#\4a1483e26ec981cde398a218ac363ad1\CLI.Component.Client.Shared.Private.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000234496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone6692ca50#\e6ebbe99ad169505a7b1614029784799\CLI.Component.Runtime.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000929280 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone6bf88b08#\de0138b3d17f3b789606957fedfe666f\CLI.Component.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000011264 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0702\b412bf450c79457c9c6e02719fef3a99\DEM.Graphics.I0702.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000084480 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0709\5252f14189e3677767b454164fb541cf\DEM.Graphics.I0709.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000009728 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0710\8eeed39b8e461125c3b64ec004190ba5\DEM.Graphics.I0710.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000012288 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0712\5e93aedbce33eb9d7f84de52de38623c\DEM.Graphics.I0712.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000018432 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0804\aa9984e9a16523bb1fd71b855c687aa6\DEM.Graphics.I0804.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000009728 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0901\2fe32ec8719bc5e139d20434f117fd6f\DEM.Graphics.I0901.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0906\58c6e0a82fa1629f5583fd56b7323d3c\DEM.Graphics.I0906.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000035840 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I1010\4fe945ea0f126bb4dccba474e3ee74dd\DEM.Graphics.I1010.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 001139200 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Localizatio01dbc1c0#\850f9ba397907bdd65f8b39b38d30802\Localization.Foundation.Private.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000244736 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ResourceMan446ca0e5#\728cdf3754ae85033dd79ad186800036\ResourceManagement.Foundation.Implementation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000023552 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ResourceManf163905a#\1c70dcc4229d6020dee4a1dec7d82013\ResourceManagement.Foundation.Private.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000091648 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ec8786e5#\cf90b853c4e28581c7cc59c5383c17ba\CLI.Aspect.AMDHome.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 002845696 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60a7b4d1#\279fe6e0d04379447e1fe91e00e0f1ab\CLI.Caste.Graphics.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 003268096 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G962aa464#\38fb846f3a344f93b10dfd7394da66e1\CLI.Caste.Graphics.Runtime.ni.dll
2009-06-25 09:27 - 2009-06-25 09:27 - 000541184 _____ (Marvell Semiconductor, Inc.) [File not signed] C:\WINDOWS\System32\mvtcpmon.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000335360 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Microsoft.W8090224c#\4f0fd874313da401477c46c3cec85dc9\Microsoft.WindowsAPICodePack.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 002546688 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Microsoft.Wfbf9373c#\a8c5a476b51666456f23a36508ee97da\Microsoft.WindowsAPICodePack.Shell.ni.dll
2009-06-25 09:25 - 2009-06-25 09:25 - 000144896 _____ (OpenSLP) [File not signed] C:\WINDOWS\System32\slp64.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:182F0EEA [260]
AlternateDataStreams: C:\ProgramData\TEMP:838D4792 [132]

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: Norton Password Manager -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Norton Security\Engine\22.21.1.151\coIEPlg.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_281\bin\ssv.dll [2021-03-12] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_281\bin\jp2ssv.dll [2021-03-12] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Norton Password Manager -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Norton Security\Engine32\22.21.1.151\coIEPlg.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Security\Engine\22.21.1.151\coIEPlg.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Security\Engine32\22.21.1.151\coIEPlg.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 05:49 - 2019-03-19 05:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\AMD\ATI.ACE\Core-Static
HKU\S-1-5-21-3488671587-1816662609-4276607936-1001\Control Panel\Desktop\\Wallpaper -> D:\FOTO\Fotky Miška\fotky beruška 2020\DSC_4930.JPG
DNS Servers: 192.168.1.2 - 8.8.8.8
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{94A2C192-0AC9-496F-BA22-7E2E05E5F4EB}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{C300E2A0-7209-4008-B6C3-640D36646300}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Metin2\config.exe (WEBZEN Inc. -> )
FirewallRules: [{46235FB2-A439-4DB0-A652-597FC7F8E883}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Metin2\config.exe (WEBZEN Inc. -> )
FirewallRules: [{39C4B6C1-458A-4272-BF80-E04663F8178C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Metin2\steam_launcher.exe (Gameforge 4D GmbH -> )
FirewallRules: [{7AFC97B3-985C-4654-B438-1ED2CC71EE68}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Metin2\steam_launcher.exe (Gameforge 4D GmbH -> )
FirewallRules: [{160F34BC-DF8E-47CA-BD1A-E473FF55FE5A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{51E822D9-9995-4CC3-92AA-3E7D03F852DF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{CF82441B-A31D-4B09-A488-08DA180E3CAC}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{687F17B4-C41A-4759-A4F2-5C6886A93C3C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{48E0FF44-B98F-4DB6-95CA-954E7008B575}] => (Allow) LPort=161
FirewallRules: [{EAB8CA75-3549-4BFD-BB80-41F983AE90FE}] => (Allow) LPort=427
FirewallRules: [{A03EFB26-4261-47C6-A146-FC7657EBB0C2}] => (Allow) LPort=9100
FirewallRules: [{3BCA20F0-86FB-4565-805F-EFFE33EC1E09}] => (Allow) C:\Program Files\HP\HP LaserJet P1100 Series\wificonfig.exe (Hewlett-Packard Company -> Hewlett Packard)
FirewallRules: [{9186AAAF-284A-42F5-9E81-2D4451C578AE}] => (Allow) C:\Program Files\HP\HP LaserJet P1100 Series\wificonfig.exe (Hewlett-Packard Company -> Hewlett Packard)
FirewallRules: [{CF953D75-0319-46F1-B77E-1203E8B05ADD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{56699C4E-14B3-4D74-B23A-E17C9D996BF8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A9714164-97EF-42E6-9FDE-5E0680176319}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E601F153-3324-434C-B37D-89824FDB6EFA}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F3CF6B28-4446-499D-A356-08B411C6B19C}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> )
FirewallRules: [{53DA9D88-0DD5-4F62-83CB-10E8670E01D6}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> )
FirewallRules: [{A5529F6C-322C-4908-867D-905E69C67768}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{539B3D72-228F-4B0F-B5A7-A5ECBB176009}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{208001BF-5E4B-4A51-94E6-8C6C969C0294}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shakes and Fidget Remastered\shakesandfidget.exe () [File not signed]
FirewallRules: [{6FBCBAFA-2EF0-48F4-84F5-9421C3433DF9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shakes and Fidget Remastered\shakesandfidget.exe () [File not signed]
FirewallRules: [{F4C665CF-1C27-4DF4-8961-BB20AB1D0A7B}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{A744C3D0-AB18-4814-A3D7-6F4AA825575C}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{6E93FFAF-E151-48EC-A372-7949E2743577}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{F04D47DD-1A5E-43D5-B7C8-B73A49C427D7}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{AA5253FF-5E11-4208-A855-1499B9C1837E}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{121666E9-D7E9-4956-867E-1C3F6F65C310}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{3A5373D4-63CD-49DD-B11A-6E22BF211015}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{1E93A323-BF1A-4018-ABC1-48427B4D3D32}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)

==================== Restore Points =========================

13-03-2021 18:23:25 Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (03/14/2021 01:57:41 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (03/14/2021 01:57:41 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (03/13/2021 07:56:29 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: halo.exe, verze: 1.0.1.580, časové razítko: 0x21544c66
Název chybujícího modulu: combase.dll, verze: 10.0.19041.844, časové razítko: 0x98fb6ff0
Kód výjimky: 0xc0000602
Posun chyby: 0x0007655b
ID chybujícího procesu: 0x147c
Čas spuštění chybující aplikace: 0x01d71832be6d9273
Cesta k chybující aplikaci: C:\hry\Halo\halo.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\combase.dll
ID zprávy: 84f6ecc5-e7de-4286-adb2-4f8fe3ab3494
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (03/13/2021 06:24:10 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny QueryFullProcessImageNameW došlo k neočekávané chybě. hr= 0x80070006, Neplatný popisovač.
.


Operace:
Spouštění asynchronní operace

Kontext:
Aktuální stav: DoSnapshotSet

Error: (03/13/2021 01:52:48 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Generování kontextu aktivace pro C:\Program Files (x86)\Steam\steamapps\common\Metin2\gsl_metin2.exe se nezdařilo. Chyba v souboru manifestu nebo zásad na řádku .
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.844_none_11adecdf30011423.manifest.
Součást 2: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.844_none_ca00b6081b84eb1d.manifest.

Error: (03/13/2021 08:46:08 AM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\AMD\WU-CCC2\ccc2_install\VC12RTx64\vcredist_x64.exe /q /norestart; Popis = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727; Chyba = 0x80042302).

Error: (03/13/2021 08:46:08 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x80070422, Zvolenou službu nelze spustit, protože není povolena nebo s ní není spojeno žádné povolené zařízení.
.


Operace:
Vytvoření instance serveru VSS

Error: (03/13/2021 08:46:08 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {e579ab5f-1cc4-44b4-bed9-de0991ff0623} a názvem IVssCoordinatorEx2 nelze spustit. [0x80070422, Zvolenou službu nelze spustit, protože není povolena nebo s ní není spojeno žádné povolené zařízení.
]


Operace:
Vytvoření instance serveru VSS


System errors:
=============
Error: (03/14/2021 03:27:32 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-SOUARL0)
Description: Server Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/14/2021 11:59:26 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-SOUARL0)
Description: Server Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/14/2021 11:30:40 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-SOUARL0)
Description: Server Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/14/2021 11:29:36 AM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba HP LaserJet Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (03/14/2021 11:29:33 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-SOUARL0)
Description: Server Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/14/2021 11:29:24 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SecDrv neuspěla při spuštění v důsledku následující chyby:
Načtení tohoto ovladače je blokováno.

Error: (03/14/2021 11:29:24 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\WINDOWS\SysWow64\drivers\SECDRV.SYS

Error: (03/14/2021 11:25:22 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba NPEService je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.


CodeIntegrity:
===============
Date: 2021-03-14 11:32:30
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\Norton Security\Engine\22.21.1.151\symamsi.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO 40CN33WW(V2.19) 08/14/2012
Motherboard: LENOVO Base Board Product Name
Processor: Intel(R) Core(TM) i7-2670QM CPU @ 2.20GHz
Percentage of memory in use: 56%
Total physical RAM: 8135.86 MB
Available physical RAM: 3566.31 MB
Total Virtual: 9415.86 MB
Available Virtual: 4321.56 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:464.61 GB) (Free:163.56 GB) NTFS
Drive d: (DATA) (Fixed) (Total:596.17 GB) (Free:65.76 GB) NTFS

\\?\Volume{e73c83d3-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.57 GB) (Free:0.53 GB) NTFS
\\?\Volume{e73c83d3-0000-0000-0000-104b74000000}\ () (Fixed) (Total:0.59 GB) (Free:0.08 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: E73C83D3)
Partition 1: (Active) - (Size=579 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=464.6 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=601 MB) - (Type=27)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 596.2 GB) (Disk ID: 9FD8FEA1)
Partition 1: (Not Active) - (Size=596.2 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

Re: Preventivni kontrola logu

Napsal: 14 bře 2021 17:58
od Diallix
Dobry den.

:arrow: Stiahnite si na plochu nastroj AdwCleaner, link. na stiahnutie tu: https://toolslib.net/downloads/finish/1/
Pred spustenim nastroja povypinajte vsetke beziace okna programov, to su vsetke beziace programy pod desktopom.
Kliknite pravym tlacidlom mysi na program -> spustit ako Administrator.
Pokracujte kliknutim na tlacidlo Prehladaj teraz (Scan now) a pockajte, kym sa system doskenuje.
Po skene nechajte oznacene vsetky chlieviky, pripadne najdene hrozieby a pokracujte v dolnom pravom rohu tlacidlom Vycistit Teraz (Clean and Repair).
Po restartovani PC sa spusti nastroj AdwCleaner, kliknite na Zobrazit soubor protokolu.
Spusti sa log, jeho obsah skopirujte sem.

Re: Preventivni kontrola logu

Napsal: 14 bře 2021 18:56
od Awandalor
# -------------------------------
# Malwarebytes AdwCleaner 8.1.0.0
# -------------------------------
# Build: 02-15-2021
# Database: 2021-01-11.1 (Local)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 03-14-2021
# Duration: 00:00:02
# OS: Windows 10 Home
# Cleaned: 12
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

No malicious folders cleaned.

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries cleaned.

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

Deleted Preinstalled.HPUsageTrackingLEDM Folder C:\Program Files (x86)\HP\HP UT LEDM\BIN
Deleted Preinstalled.HPUsageTrackingLEDM Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Run|HPUsageTrackingLEDM
Deleted Preinstalled.HPUsageTrackingLEDM Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{853F464A-B2B8-404E-BA3E-B98FF6862C41}
Deleted Preinstalled.LenovoEasyCamera Folder C:\Program Files (x86)\USB CAMERA
Deleted Preinstalled.LenovoEasyCamera Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|331BigDog
Deleted Preinstalled.LenovoEasyCamera Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Run|331BigDog
Deleted Preinstalled.LenovoEasyCamera Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{ADE16A9D-FBDC-4ecc-B6BD-9C31E51D0332}
Deleted Preinstalled.LenovoServiceBridge Folder C:\Users\pohlr\AppData\Local\PROGRAMS\LENOVO\LENOVO SERVICE BRIDGE
Deleted Preinstalled.LenovoServiceBridge Registry HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1
Deleted Preinstalled.LenovoUpdate Folder C:\Program Files (x86)\LENOVO\SYSTEM UPDATE
Deleted Preinstalled.LenovoUpdate Registry HKLM\Software\Wow6432Node\\Classes\CLSID\{03C6CC92-68F2-4961-9A73-CAECA350BD08}
Deleted Preinstalled.LenovoUpdate Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\TVSU_is1


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [2817 octets] - [14/03/2021 18:51:42]
AdwCleaner[S01].txt - [2878 octets] - [14/03/2021 18:54:09]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C01].txt ##########

Re: Preventivni kontrola logu

Napsal: 14 bře 2021 19:06
od Diallix
Poprosim o nove logy FRST + ADDITION.

Re: Preventivni kontrola logu

Napsal: 14 bře 2021 20:00
od Awandalor
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-03-2021
Ran by pohlr (administrator) on DESKTOP-SOUARL0 (LENOVO 20079) (14-03-2021 19:55:29)
Running from C:\Users\pohlr\OneDrive\Skrivebord
Loaded Profiles: pohlr
Platform: Windows 10 Home Version 20H2 19042.867 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe <2>
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.72\GoogleCrashHandler64.exe
(Hewlett-Packard Company -> HP) C:\Windows\System32\HPSIsvc.exe
(HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(Huawei Technologies Co., Ltd. -> ) C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\pohlr\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_2.2102.8653.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(NortonLifeLock Inc. -> NortonLifeLock Inc.) C:\Program Files\Norton Security\Engine\22.21.1.151\nsWscSvc.exe
(NortonLifeLock Inc. -> Symantec Corporation) C:\Program Files\Norton Security\Engine\22.21.1.151\NortonSecurity.exe <2>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [3951280 2016-01-07] (Synaptics Incorporated -> Synaptics Incorporated)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706680 2020-12-09] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-21-3488671587-1816662609-4276607936-1001\...\Run: [Adobe Reader Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5536424 2021-03-06] (Adobe Inc. -> Adobe Systems Incorporated)
HKLM\...\Windows x64\Print Processors\BJ Print Processor4: C:\Windows\System32\spool\prtprocs\x64\CNBPP4.DLL [84992 2011-08-30] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\HP1100PrintProc: C:\Windows\System32\spool\prtprocs\x64\HP1100PP.DLL [74240 2012-08-31] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Print\Monitors\Advanced TCP/IP Port Monitor: C:\WINDOWS\system32\mvtcpmon.dll [541184 2009-06-25] (Marvell Semiconductor, Inc.) [File not signed]
HKLM\...\Print\Monitors\BJ Language Monitor4: C:\WINDOWS\system32\CNBLM4.DLL [267776 2011-08-30] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\HP1100LM: C:\WINDOWS\system32\HP1100LM.DLL [288768 2012-08-31] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\89.0.4389.82\Installer\chrmstp.exe [2021-03-12] (Google LLC -> Google LLC)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {20ADF99E-475C-42E6-8718-EF5F195FE928} - System32\Tasks\Norton 360\Norton 360 Error Processor => C:\Program Files\Norton Security\Engine\22.21.1.151\SymErr.exe [115608 2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc)
Task: {2607387C-B7B4-4969-BF74-5403BED4A871} - System32\Tasks\Norton 360\Norton 360 Autofix => C:\Program Files\Norton Security\Engine\22.21.1.151\SymErr.exe [115608 2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc)
Task: {3AAC8086-FB5F-450B-BA9D-BA28A4ADEF58} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.)
Task: {7E77DAAC-EA85-433B-A2CB-DCA0FF62707E} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [124624 2020-06-14] (Mozilla Corporation -> Mozilla Foundation)
Task: {87D08DB2-C4EC-4986-B6D0-EE35C4225D21} - System32\Tasks\Remediation\AntimalwareMigrationTask => C:\Program Files\Common Files\AV\Norton 360\Upgrade.exe [2344568 2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
Task: {8B435A8A-1AB3-466A-A0D0-3830D0515EB5} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [16494464 2019-03-11] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {8B63141B-EF8A-4C4A-BB47-2B90AE623125} - System32\Tasks\Norton Security with Backup\Norton Security Autofix => C:\Program Files\Norton Security\Engine\22.20.4.57\SymErr.exe
Task: {940379CF-370F-4DA2-B104-EDA221261A5C} - System32\Tasks\Norton Security with Backup\Norton Security Error Processor => C:\Program Files\Norton Security\Engine\22.20.4.57\SymErr.exe
Task: {A3FDF8D4-530D-4CC4-9FF7-EBB40CDA15FD} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2019-12-14] (Google LLC -> Google LLC)
Task: {A9D3A5E8-1C49-46CC-AD80-95E059EF6BA2} - System32\Tasks\Norton Security with Backup\Norton Security Error Analyzer => C:\Program Files\Norton Security\Engine\22.20.4.57\SymErr.exe
Task: {BA19EB13-669B-4930-AB28-98AABEBF67FE} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe
Task: {BBFCCBF7-C172-4DC8-B765-9D6FAE021333} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156104 2019-12-14] (Google LLC -> Google LLC)
Task: {BEF6A155-925E-44E1-82C8-765104EA0CB0} - System32\Tasks\Norton WSC Integration => C:\Program Files\Norton Security\Engine\22.21.1.151\WSCStub.exe [643544 2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
Task: {CE750B2E-2430-4B87-8D22-48BBF724CB5A} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-3488671587-1816662609-4276607936-1001 => C:\Users\pohlr\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe
Task: {E6E36089-1C90-41E4-88B1-FB5CDDDFC796} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [1706496 2020-11-23] () [File not signed]
Task: {EA498DA5-3F2B-4277-A336-9FA6451C7270} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe
Task: {ECBB679C-7E83-4078-B531-D0BC05F73854} - System32\Tasks\Norton 360\Norton 360 Error Analyzer => C:\Program Files\Norton Security\Engine\22.21.1.151\SymErr.exe [115608 2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.2 8.8.8.8
Tcpip\..\Interfaces\{5bba42fc-c0e7-4c1a-9d97-597bfa426025}: [DhcpNameServer] 192.168.1.2 8.8.8.8

Edge:
=======
Edge Profile: C:\Users\pohlr\AppData\Local\Microsoft\Edge\User Data\Default [2021-03-14]

FireFox:
========
FF DefaultProfile: rp0gqbi0.default
FF ProfilePath: C:\Users\pohlr\AppData\Roaming\Mozilla\Firefox\Profiles\rp0gqbi0.default [2020-05-11]
FF ProfilePath: C:\Users\pohlr\AppData\Roaming\Mozilla\Firefox\Profiles\o9c7kv1u.default-release [2021-02-06]
FF Extension: (Český slovník pro kontrolu pravopisu) - C:\Users\pohlr\AppData\Roaming\Mozilla\Firefox\Profiles\o9c7kv1u.default-release\Extensions\cs@dictionaries.addons.mozilla.org.xpi [2020-05-11]
FF Extension: (Czech (CZ) Language Pack) - C:\Users\pohlr\AppData\Roaming\Mozilla\Firefox\Profiles\o9c7kv1u.default-release\Extensions\langpack-cs@firefox.mozilla.org.xpi [2020-06-24]
FF Extension: (Video DownloadHelper) - C:\Users\pohlr\AppData\Roaming\Mozilla\Firefox\Profiles\o9c7kv1u.default-release\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2020-05-11]
FF Plugin: @java.com/DTPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\dtplugin\npDeployJava1.dll [2021-03-12] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.281.2 -> C:\Program Files\Java\jre1.8.0_281\bin\plugin2\npjp2.dll [2021-03-12] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-03-06] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default [2021-03-14]
CHR Notifications: Default -> hxxps://brnensky.denik.cz; hxxps://www.automobilovedily24.cz; hxxps://www.banggood.com; hxxps://www.dakar.com; hxxps://www.mall.tv; hxxps://www.phaserfpv.com.au
CHR HomePage: Default -> hxxps://www.google.com/
CHR DefaultSearchURL: Default -> hxxps://www.seznam.cz/media/img/seznam-icons/favicon-16x16.png
CHR DefaultSearchKeyword: Default -> nortonsafe
CHR DefaultSuggestURL: Default -> hxxps://ss-sym.search.ask.com/ss?limit=10&li=ff&hl=cs&q={searchTerms}
CHR Session Restore: Default -> is enabled.
CHR Extension: (Unknown Space) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\bpjdbdbhiomamecfnjahemfimgjamhjd [2019-12-14]
CHR Extension: (Seznam.cz) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\dkncgicdohgfdncecojfiapgebmlnaoc [2020-02-28]
CHR Extension: (Adobe Acrobat) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-03-01]
CHR Extension: (Norton Safe Search) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\eogpedgkejfmehnklhahflpmplhiceal [2020-08-26]
CHR Extension: (Google) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\fbochjjnialhlgmhpbdmilbekahpdofk [2019-12-14]
CHR Extension: (Norton Safe Web) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\fnpbeacklnhmkkilekogeiekaglbmmka [2021-02-12]
CHR Extension: (GPX Viewer, Reader) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\jcoebkjfbobjheeoclnjkfgginlaefnb [2019-12-14]
CHR Extension: (Video DownloadHelper) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2021-03-04]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Chrome Media Router) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-03-13]
CHR Extension: (Hlídač Shopů) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Default\Extensions\plmlonggbfebcjelncogcnclagkmkikk [2021-03-06]
CHR Profile: C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1 [2021-03-12]
CHR Notifications: Profile 1 -> hxxps://www.kosik.cz
CHR HomePage: Profile 1 -> hxxp://www.google.com/
CHR StartupUrls: Profile 1 -> "hxxp://google.com/"
CHR DefaultSearchURL: Profile 1 -> hxxps://nortonsafe.search.ask.com/web?omnisearch=yes&q={searchTerms}
CHR DefaultSearchKeyword: Profile 1 -> Norton
CHR DefaultSuggestURL: Profile 1 -> hxxps://ss-sym.search.ask.com/ss?limit=10&li=ff&hl=cs&q={searchTerms}
CHR Session Restore: Profile 1 -> is enabled.
CHR Extension: (Prezentace) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-12-15]
CHR Extension: (Norton Password Manager) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\admmjipmmciaobhojoghlmleefbicajg [2021-02-21]
CHR Extension: (Sudoku) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\agdhembpgcpfegeigidembjopfhghnpj [2019-12-15]
CHR Extension: (Dokumenty) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2019-12-15]
CHR Extension: (Disk Google) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-23]
CHR Extension: (YouTube) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-12-15]
CHR Extension: (Adobe Acrobat) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2021-03-11]
CHR Extension: (Tabulky) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-12-15]
CHR Extension: (Causality Games) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\femoooemgmjaebeodbbikbkmhlafenpl [2019-12-15]
CHR Extension: (Full Screen Weather) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\fkkaebihfmbofclegkcfkkemepfehibg [2019-12-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-03-03]
CHR Extension: (Cut the Rope) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gkddaofiamhgfjmaccfcfpfolpgbeomj [2019-12-15]
CHR Extension: (Norton Safe Search) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gkjahlcnbjiangkneanonnndppicobbd [2020-08-27]
CHR Extension: (FormApps Extension) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2020-10-21]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Equalizer for YouTube™) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\oggiagogblgafoilijjdhcmflgekfmja [2021-02-12]
CHR Extension: (Gmail) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-23]
CHR Extension: (Chrome Media Router) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-02-01]
CHR Extension: (Hlídač Shopů) - C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\plmlonggbfebcjelncogcnclagkmkikk [2021-03-06]
CHR Profile: C:\Users\pohlr\AppData\Local\Google\Chrome\User Data\System Profile [2021-02-06]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169672 2021-01-25] (Adobe Inc. -> Adobe Inc.)
S3 BRSptStub; C:\ProgramData\BitRaider\BRSptStub.exe [363208 2021-03-13] (BitRaider LLC -> BitRaider, LLC)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [811120 2020-05-10] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [1741384 2020-12-09] (GOG Sp. z o.o. -> GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6821960 2020-02-24] (GOG Sp. z o.o. -> GOG.com)
S3 GameforgeClientService; C:\Program Files (x86)\GameforgeClient\gfservice.exe [568480 2021-03-09] (Gameforge 4D GmbH -> )
S2 HP LaserJet Service; C:\Program Files (x86)\HP\HPLaserJetService\HPLaserJetService.exe [136704 2009-06-24] (HP) [File not signed]
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [284808 2021-02-05] (HP Inc. -> HP Inc.)
R2 HPSIService; C:\Windows\system32\HPSIsvc.exe [126880 2012-09-27] (Hewlett-Packard Company -> HP)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [236864 2020-12-05] (Huawei Technologies Co., Ltd. -> )
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [File not signed]
S3 mracsvc; C:\Windows\System32\mracsvc.exe [20417696 2020-07-27] (Mail.Ru LLC -> LLC Mail.Ru)
R2 NortonSecurity; C:\Program Files\Norton Security\Engine\22.21.1.151\NortonSecurity.exe [343296 2021-02-22] (NortonLifeLock Inc. -> Symantec Corporation)
R2 nsWscSvc; C:\Program Files\Norton Security\Engine\22.21.1.151\nsWscSvc.exe [1054496 2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12727576 2021-02-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\NisSrv.exe [3206472 2019-12-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1911.3-0\MsMpEng.exe [103376 2019-12-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WsDrvInst; C:\Program Files (x86)\Wondershare\Video Converter Ultimate\Transfer\DriverInstall.exe [107624 2018-12-06] (Wondershare Technology Co.,Ltd -> Wondershare)
S3 SUService; "C:\Program Files (x86)\Lenovo\System Update\SUService.exe" [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AmdTools64; C:\WINDOWS\System32\drivers\AmdTools64.sys [47160 2008-04-28] (Advanced Micro Devices, Inc. -> AMD, Inc.)
S3 ampa; C:\Windows\system32\ampa.sys [38320 2017-02-28] (CHENGDU AOMEI Tech Co., Ltd. -> )
R1 BHDrvx64; C:\Program Files\Norton Security\NortonData\22.18.0.213\Definitions\BASHDefs\20210310.005\BHDrvx64.sys [1991536 2020-11-03] (Symantec Corporation -> Broadcom)
R3 busenum; C:\WINDOWS\System32\drivers\busenum.sys [57824 2012-08-03] (Synology Inc. -> Windows (R) Win 7 DDK provider)
R1 ccSet_NGC; C:\WINDOWS\System32\drivers\NGCx64\1615010.097\ccSetx64.sys [192248 2021-02-22] (Symantec Corporation -> Symantec Corporation)
S3 ddmdrv; C:\Windows\system32\ddmdrv.sys [35760 2016-12-27] (CHENGDU AOMEI Tech Co., Ltd. -> )
R1 eeCtrl; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\eeCtrl64.sys [516168 2021-01-28] (Symantec Corporation -> Broadcom)
R3 EraserUtilRebootDrv; C:\Program Files (x86)\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [153672 2021-02-06] (Symantec Corporation -> Broadcom)
R1 IDSVia64; C:\Program Files\Norton Security\NortonData\22.18.0.213\Definitions\IPSDefs\20210311.061\IDSvia64.sys [1479536 2021-01-18] (Symantec Corporation -> Broadcom)
S3 libusb0; C:\WINDOWS\system32\DRIVERS\libusb0.sys [61696 2019-09-08] (Travis Lee Robinson -> hxxp://libusb-win32.sourceforge.net)
S3 mracdrv; C:\WINDOWS\System32\drivers\mracdrv1.sys [19647520 2020-07-27] (Mail.Ru LLC -> LLC Mail.Ru)
S3 mvusbews; C:\WINDOWS\System32\Drivers\mvusbews.sys [20480 2012-09-26] (Microsoft Windows Hardware Compatibility Publisher -> Marvell Semiconductor, Inc.)
S3 OSFMount; C:\Program Files\OSFMount\OSFMount.sys [1299384 2014-02-07] (PassMark Software Pty Ltd -> PassMark Software)
R3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [39168 2013-05-19] (Bruce James -> Scarlet.Crush Productions)
S2 SecDrv; C:\WINDOWS\SysWOW64\drivers\SECDRV.SYS [11376 2003-09-09] () [File not signed]
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
R3 SRTSP; C:\WINDOWS\System32\drivers\NGCx64\1615010.097\SRTSP64.SYS [889712 2021-02-22] (Symantec Corporation -> Symantec Corporation)
R1 SRTSPX; C:\WINDOWS\System32\drivers\NGCx64\1615010.097\SRTSPX64.SYS [51056 2021-02-22] (Symantec Corporation -> Symantec Corporation)
S3 STTub30; C:\WINDOWS\System32\Drivers\STTub30.sys [44184 2012-07-20] (STMicroelectronics -> STMicroelectronics)
R0 SymEFASI; C:\WINDOWS\System32\drivers\NGCx64\1615010.097\SYMEFASI64.SYS [2060656 2021-02-22] (Symantec Corporation -> Broadcom)
S0 SymELAM; C:\WINDOWS\System32\drivers\NGCx64\1615010.097\SymELAM.sys [25080 2021-02-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Broadcom Corporation)
R3 SymEvent; C:\Windows\system32\Drivers\SYMEVENT64x86.SYS [99848 2019-12-14] (Symantec Corporation -> Symantec Corporation)
R3 SymEvnt; C:\Program Files\Norton Security\NortonData\22.18.0.213\SymPlatform\SymEvnt.sys [712368 2020-01-13] (Symantec Corporation -> Symantec Corporation)
R1 SymIRON; C:\WINDOWS\System32\drivers\NGCx64\1615010.097\Ironx64.SYS [316488 2021-02-22] (Symantec Corporation -> Symantec Corporation)
R1 SymNetS; C:\WINDOWS\System32\drivers\NGCx64\1615010.097\symnets.sys [575328 2021-02-22] (Symantec Corporation -> Symantec Corporation)
R3 vm331avs; C:\WINDOWS\System32\Drivers\vm331avs.sys [648872 2015-09-03] (Microsoft Windows Hardware Compatibility Publisher -> Vimicro Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [45664 2019-12-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [355760 2019-12-14] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [54192 2019-12-14] (Microsoft Windows -> Microsoft Corporation)
R1 wpCtrlDrv_NGC; C:\WINDOWS\System32\drivers\NGCx64\1615010.097\wpCtrlDrv.sys [1013792 2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
S3 BRDriver64_1_3_3_E02B25FC; \??\C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-03-14 18:51 - 2021-03-14 18:54 - 000000000 ____D C:\AdwCleaner
2021-03-14 18:50 - 2021-03-14 18:50 - 008463216 _____ (Malwarebytes) C:\Users\pohlr\Downloads\adwcleaner_8.1 (1).exe
2021-03-14 18:48 - 2021-03-14 18:48 - 008463216 _____ (Malwarebytes) C:\Users\pohlr\Downloads\adwcleaner_8.1.exe
2021-03-14 16:00 - 2021-03-14 19:55 - 000000000 ____D C:\FRST
2021-03-14 16:00 - 2021-03-14 16:00 - 002300928 _____ (Farbar) C:\Users\pohlr\Downloads\FRST64.exe
2021-03-14 14:47 - 2021-03-14 14:47 - 000000000 ____D C:\WINDOWS\system32\Tasks\Remediation
2021-03-14 11:47 - 2021-03-14 18:34 - 000004012 _____ C:\WINDOWS\ntbtlog.txt
2021-03-14 11:29 - 2021-03-14 11:29 - 000000000 ____D C:\NPE
2021-03-14 11:17 - 2021-03-14 11:33 - 000000000 ____D C:\Users\pohlr\AppData\Local\NPE
2021-03-14 00:11 - 2021-03-14 17:58 - 000000000 ____D C:\Program Files (x86)\World of Warcraft
2021-03-14 00:11 - 2021-03-14 00:11 - 000000000 ____D C:\Users\pohlr\AppData\Local\cache
2021-03-14 00:09 - 2021-03-14 00:09 - 000000000 ____D C:\ProgramData\Blizzard Entertainment
2021-03-14 00:08 - 2021-03-14 18:50 - 000000000 ____D C:\Users\pohlr\AppData\Local\Battle.net
2021-03-14 00:08 - 2021-03-14 00:11 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Battle.net
2021-03-14 00:08 - 2021-03-14 00:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Battle.net
2021-03-14 00:04 - 2021-03-14 00:09 - 000000000 ____D C:\Program Files (x86)\Battle.net
2021-03-14 00:04 - 2021-03-14 00:04 - 000000000 ____D C:\Users\pohlr\AppData\Local\Blizzard Entertainment
2021-03-14 00:03 - 2021-03-14 00:03 - 004950512 _____ (Blizzard Entertainment) C:\Users\pohlr\Downloads\World-of-Warcraft-Setup.exe
2021-03-14 00:03 - 2021-03-14 00:03 - 000000000 ____D C:\ProgramData\Battle.net
2021-03-13 20:25 - 2021-03-13 20:25 - 000117916 _____ C:\Users\pohlr\Downloads\multi-stm-serial-aetr-v1.3.2.58.bin
2021-03-13 20:17 - 2021-03-13 20:37 - 121241644 _____ C:\Users\pohlr\Downloads\sdcard-480x272-2.3V0035.zip
2021-03-13 18:59 - 2021-03-13 18:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games
2021-03-13 18:59 - 2003-09-09 05:30 - 000011376 ____R C:\WINDOWS\SysWOW64\Drivers\SECDRV.SYS
2021-03-13 18:23 - 2021-03-13 18:23 - 000000000 ____D C:\ProgramData\BitRaider
2021-03-13 18:19 - 2021-03-13 18:19 - 000000000 ____D C:\Users\pohlr\AppData\Local\SWTORPerf
2021-03-13 11:22 - 2021-03-13 11:22 - 000000000 ____D C:\Users\pohlr\OneDrive\Dokumenty\MOHW
2021-03-13 11:19 - 2021-03-13 11:19 - 000000000 ____D C:\WINDOWS\SysWOW64\directx
2021-03-13 10:47 - 2021-03-13 10:47 - 007561794 _____ C:\Users\pohlr\Downloads\Extra-330SC_RC7_RC8.zip
2021-03-13 09:00 - 2021-03-13 09:00 - 000000000 ____D C:\WINDOWS\system32\Tasks\Agent Activation Runtime
2021-03-13 08:58 - 2021-03-13 08:58 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2021-03-13 08:58 - 2021-03-13 08:58 - 000000000 ____D C:\ProgramData\ATI
2021-03-13 08:55 - 2021-03-13 08:55 - 000000020 ___SH C:\Users\pohlr\ntuser.ini
2021-03-13 08:53 - 2021-03-13 08:53 - 000007623 _____ C:\WINDOWS\diagwrn.xml
2021-03-13 08:53 - 2021-03-13 08:53 - 000007623 _____ C:\WINDOWS\diagerr.xml
2021-03-13 08:52 - 2021-03-14 11:36 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2021-03-13 08:51 - 2021-03-14 19:54 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2021-03-13 08:51 - 2021-03-14 18:15 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton 360
2021-03-13 08:51 - 2021-03-14 15:14 - 000004212 _____ C:\WINDOWS\system32\Tasks\User_Feed_Synchronization-{D9883A39-0BA1-4892-9711-0A8418AD1EFF}
2021-03-13 08:51 - 2021-03-13 08:51 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-03-13 08:51 - 2021-03-13 08:51 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2021-03-13 08:51 - 2021-03-13 08:51 - 000003400 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2021-03-13 08:51 - 2021-03-13 08:51 - 000003288 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-03-13 08:51 - 2021-03-13 08:51 - 000003176 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2021-03-13 08:51 - 2021-03-13 08:51 - 000003080 _____ C:\WINDOWS\system32\Tasks\klcp_update
2021-03-13 08:51 - 2021-03-13 08:51 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3488671587-1816662609-4276607936-1001
2021-03-13 08:51 - 2021-03-13 08:51 - 000002614 _____ C:\WINDOWS\system32\Tasks\Norton WSC Integration
2021-03-13 08:51 - 2021-03-13 08:51 - 000002238 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC
2021-03-13 08:51 - 2021-03-13 08:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\TVT
2021-03-13 08:51 - 2021-03-13 08:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton Security with Backup
2021-03-13 08:51 - 2021-03-13 08:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2021-03-13 08:51 - 2021-03-13 08:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo
2021-03-13 08:46 - 2021-03-13 08:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2021-03-13 08:46 - 2021-03-13 08:46 - 000000000 ____D C:\Program Files\ATI Technologies
2021-03-13 08:46 - 2021-03-13 08:46 - 000000000 ____D C:\Program Files (x86)\ATI Technologies
2021-03-13 08:43 - 2021-03-14 19:52 - 000008192 ___SH C:\DumpStack.log.tmp
2021-03-13 08:43 - 2021-03-14 19:36 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2021-03-13 08:43 - 2021-03-13 08:43 - 000337552 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2021-03-13 08:42 - 2021-03-13 08:54 - 000000000 ____D C:\Windows.old
2021-03-13 02:11 - 2021-03-13 08:42 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2021-03-13 02:10 - 2021-03-13 08:55 - 000000000 ____D C:\Users\pohlr
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\Šablony
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\Soubory cookie
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\Poslední
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\Okolní tiskárny
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\Okolní síť
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\Nabídka Start
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\Dokumenty
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\Data aplikací
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-03-13 02:10 - 2021-03-13 02:10 - 000000000 _SHDL C:\Users\pohlr\AppData\Local\Data aplikací
2021-03-13 02:10 - 2019-12-07 10:10 - 000001105 _____ C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2021-03-13 02:09 - 2021-03-13 02:11 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2021-03-13 02:07 - 2021-03-13 02:07 - 000000000 ____D C:\ProgramData\ssh
2021-03-13 02:02 - 2021-03-13 02:02 - 000581120 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhotoScreensaver.scr
2021-03-13 02:02 - 2021-03-13 02:02 - 000499200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhotoScreensaver.scr
2021-03-13 02:02 - 2021-03-13 02:02 - 000234496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2021-03-13 02:02 - 2021-03-13 02:02 - 000204800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mpg2splt.ax
2021-03-13 02:02 - 2021-03-13 02:02 - 000135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VBICodec.ax
2021-03-13 02:02 - 2021-03-13 02:02 - 000095744 _____ C:\WINDOWS\system32\VirtualMonitorManager.dll
2021-03-13 02:02 - 2021-03-13 02:02 - 000067584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wscui.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 004898144 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpltfm.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 003860832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpltfm.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2021-03-13 02:01 - 2021-03-13 02:01 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2021-03-13 02:01 - 2021-03-13 02:01 - 001354080 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmpal.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 001333760 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 001314128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2021-03-13 02:01 - 2021-03-13 02:01 - 001163776 _____ C:\WINDOWS\system32\MBR2GPT.EXE
2021-03-13 02:01 - 2021-03-13 02:01 - 001091936 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmcodecs.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 001032544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ortcengine.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000980320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmpal.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000915296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmcodecs.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000732000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ortcengine.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000729600 _____ (Microsoft Corporation) C:\WINDOWS\system32\hhctrl.ocx
2021-03-13 02:01 - 2021-03-13 02:01 - 000611952 _____ C:\WINDOWS\SysWOW64\TextShaping.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000595968 _____ (Microsoft Corporation) C:\WINDOWS\system32\appwiz.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 000575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hhctrl.ocx
2021-03-13 02:01 - 2021-03-13 02:01 - 000469504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\appwiz.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 000455680 _____ C:\WINDOWS\SysWOW64\WindowManagementAPI.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000446976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mmsys.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2021-03-13 02:01 - 2021-03-13 02:01 - 000330752 _____ C:\WINDOWS\SysWOW64\ssdm.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2021-03-13 02:01 - 2021-03-13 02:01 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mpg2splt.ax
2021-03-13 02:01 - 2021-03-13 02:01 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000235520 _____ C:\WINDOWS\SysWOW64\HeatCore.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000221184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bthprops.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 000182272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\timedate.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 000178688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\intl.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 000170496 _____ (Microsoft Corporation) C:\WINDOWS\system32\VBICodec.ax
2021-03-13 02:01 - 2021-03-13 02:01 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\activeds.tlb
2021-03-13 02:01 - 2021-03-13 02:01 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 000087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2021-03-13 02:01 - 2021-03-13 02:01 - 000084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscui.cpl
2021-03-13 02:01 - 2021-03-13 02:01 - 000072704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2021-03-13 02:01 - 2021-03-13 02:01 - 000067072 _____ C:\WINDOWS\system32\BWContextHandler.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000056672 _____ (Microsoft Corporation) C:\WINDOWS\system32\rtmmvrortc.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000055376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rtmmvrortc.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000053760 _____ C:\WINDOWS\SysWOW64\BWContextHandler.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000047472 _____ C:\WINDOWS\SysWOW64\umpdc.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000045880 _____ C:\WINDOWS\system32\HvSocket.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2021-03-13 02:01 - 2021-03-13 02:01 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msacm32.drv
2021-03-13 02:01 - 2021-03-13 02:01 - 000011359 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2021-03-13 02:01 - 2021-03-13 02:01 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe
2021-03-13 02:00 - 2021-03-13 02:00 - 002260992 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 002260480 _____ (The ICU Project) C:\WINDOWS\system32\icu.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 002254336 _____ C:\WINDOWS\system32\dwmscene.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 001822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2021-03-13 02:00 - 2021-03-13 02:00 - 001394024 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2021-03-13 02:00 - 2021-03-13 02:00 - 000707016 _____ C:\WINDOWS\system32\TextShaping.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000643072 _____ C:\WINDOWS\system32\WindowManagementAPI.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000544768 _____ (Microsoft Corporation) C:\WINDOWS\system32\mmsys.cpl
2021-03-13 02:00 - 2021-03-13 02:00 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000306688 _____ C:\WINDOWS\system32\HeatCore.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\bthprops.cpl
2021-03-13 02:00 - 2021-03-13 02:00 - 000238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\intl.cpl
2021-03-13 02:00 - 2021-03-13 02:00 - 000231248 _____ C:\WINDOWS\system32\containerdevicemanagement.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000190976 _____ C:\WINDOWS\system32\BthpanContextHandler.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000165888 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2021-03-13 02:00 - 2021-03-13 02:00 - 000152064 _____ C:\WINDOWS\system32\EoAExperiences.exe
2021-03-13 02:00 - 2021-03-13 02:00 - 000112128 _____ (Microsoft Corporation) C:\WINDOWS\system32\activeds.tlb
2021-03-13 02:00 - 2021-03-13 02:00 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2021-03-13 02:00 - 2021-03-13 02:00 - 000091136 _____ C:\WINDOWS\system32\Drivers\cimfs.sys
2021-03-13 02:00 - 2021-03-13 02:00 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2021-03-13 02:00 - 2021-03-13 02:00 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000029696 _____ (The ICU Project) C:\WINDOWS\system32\icuuc.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000025088 _____ (The ICU Project) C:\WINDOWS\system32\icuin.dll
2021-03-13 02:00 - 2021-03-13 02:00 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2021-03-13 01:59 - 2021-03-13 01:59 - 004227116 _____ C:\WINDOWS\system32\DefaultHrtfs.bin
2021-03-13 01:59 - 2021-03-13 01:59 - 000562688 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2021-03-13 01:59 - 2021-03-13 01:59 - 000455168 _____ C:\WINDOWS\system32\ssdm.dll
2021-03-13 01:59 - 2021-03-13 01:59 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2021-03-13 01:59 - 2021-03-13 01:59 - 000243200 _____ (Microsoft Corporation) C:\WINDOWS\system32\timedate.cpl
2021-03-13 01:59 - 2021-03-13 01:59 - 000197632 _____ C:\WINDOWS\system32\IHDS.dll
2021-03-13 01:59 - 2021-03-13 01:59 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2021-03-13 01:59 - 2021-03-13 01:59 - 000074240 _____ C:\WINDOWS\system32\rdsxvmaudio.dll
2021-03-13 01:59 - 2021-03-13 01:59 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2021-03-13 01:59 - 2021-03-13 01:59 - 000064552 _____ C:\WINDOWS\system32\umpdc.dll
2021-03-13 01:59 - 2021-03-13 01:59 - 000030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\msacm32.drv
2021-03-13 01:59 - 2021-03-13 01:59 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2021-03-13 01:46 - 2021-03-13 01:46 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2021-03-13 01:46 - 2021-03-13 01:46 - 000000000 ____D C:\Program Files\Reference Assemblies
2021-03-13 01:46 - 2021-03-13 01:46 - 000000000 ____D C:\Program Files\MSBuild
2021-03-13 01:46 - 2021-03-13 01:46 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2021-03-13 01:46 - 2021-03-13 01:46 - 000000000 ____D C:\Program Files (x86)\MSBuild
2021-03-13 01:37 - 2021-03-13 01:37 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2021-03-13 00:39 - 2021-03-13 08:55 - 000000000 ___DC C:\WINDOWS\Panther
2021-03-13 00:31 - 2021-03-13 00:31 - 000000000 ___HD C:\$WinREAgent
2021-03-12 22:12 - 2021-03-12 22:12 - 000001983 _____ C:\Users\pohlr\Downloads\vrio.lua
2021-03-12 21:34 - 2021-03-12 21:34 - 000241470 _____ C:\Users\pohlr\Downloads\FlySkyRx-master.zip
2021-03-12 17:24 - 2021-03-12 17:24 - 000000000 ____D C:\ProgramData\Gameforge4d
2021-03-12 17:16 - 2021-03-12 17:16 - 000001290 _____ C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Gameforge Client.lnk
2021-03-12 17:16 - 2021-03-12 17:16 - 000000037 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Gameforge Client.url
2021-03-12 17:16 - 2021-03-12 17:16 - 000000000 ____D C:\Users\pohlr\AppData\Local\Gameforge4d
2021-03-12 17:16 - 2021-03-12 17:16 - 000000000 ____D C:\Program Files (x86)\GameforgeClient
2021-03-12 17:11 - 2021-03-12 17:11 - 002261328 _____ C:\Users\pohlr\Downloads\GameforgeInstaller.exe
2021-03-10 18:19 - 2021-03-10 18:19 - 000000000 ____D C:\Users\pohlr\OneDrive\Dokumenty\Audacity
2021-03-10 18:16 - 2021-03-10 18:30 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\audacity
2021-03-10 18:16 - 2021-03-10 18:16 - 000001092 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Audacity.lnk
2021-03-10 18:16 - 2021-03-10 18:16 - 000000000 ____D C:\Users\pohlr\AppData\Local\Audacity
2021-03-10 18:16 - 2021-03-10 18:16 - 000000000 ____D C:\Program Files (x86)\Audacity
2021-03-10 18:15 - 2021-03-10 18:15 - 028141904 _____ (Audacity Team ) C:\Users\pohlr\Downloads\audacity-win-2.4.2.exe
2021-03-09 10:04 - 2021-03-09 10:05 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\dunelegacy
2021-03-09 10:00 - 2021-03-09 10:00 - 000000000 ____D C:\Users\pohlr\OneDrive\Dokumenty\w3chart
2021-03-08 12:00 - 2021-03-13 08:43 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Security
2021-03-07 16:24 - 2021-03-07 16:24 - 005159349 _____ C:\Users\pohlr\Downloads\karak-regent-pravidla-web-3389.pdf
2021-03-04 19:07 - 2021-03-04 19:07 - 000335959 _____ C:\Users\pohlr\Downloads\grunt_rx_10.epub
2021-03-04 19:05 - 2021-03-04 19:05 - 000797838 _____ C:\Users\pohlr\Downloads\nocni_mury_nespi.epub
2021-03-04 19:03 - 2021-03-04 19:03 - 001266895 _____ C:\Users\pohlr\Downloads\lord_mord.epub
2021-03-04 18:59 - 2021-03-04 18:59 - 000457065 _____ C:\Users\pohlr\Downloads\vzpoura_v_zoo.epub
2021-03-04 18:59 - 2021-03-04 18:59 - 000437613 _____ C:\Users\pohlr\Downloads\my.epub
2021-03-02 20:34 - 2021-03-02 20:34 - 001092007 _____ C:\Users\pohlr\Downloads\datasheet.pdf
2021-03-02 19:17 - 2021-03-02 19:17 - 000298974 _____ C:\Users\pohlr\Downloads\LEDka_lab.pdf
2021-03-02 19:17 - 2021-03-02 19:17 - 000248642 _____ C:\Users\pohlr\Downloads\Měření s polovodičovou diodou - Aleš Jančář.pdf
2021-03-02 19:07 - 2021-03-02 19:07 - 000057403 _____ C:\Users\pohlr\Downloads\led_resistor_calculator.zip
2021-03-02 19:07 - 2021-03-02 19:07 - 000036613 _____ C:\Users\pohlr\Downloads\led_kalkulacka.zip
2021-03-02 18:40 - 2021-03-02 18:40 - 000107996 _____ C:\Users\pohlr\Downloads\COVID19-okresy_-_VZOR-Cestne_prohlaseni_-_20210227.pdf
2021-02-23 14:18 - 2021-02-23 14:18 - 003374092 _____ C:\Users\pohlr\Downloads\mikina_raglan_polohovani.pdf
2021-02-23 14:18 - 2021-02-23 14:18 - 002197124 _____ C:\Users\pohlr\Downloads\A4_mikina_raglan_sikmy_zip_v02_CB.pdf
2021-02-20 22:15 - 2021-02-20 22:16 - 000659231 _____ C:\Users\pohlr\Downloads\vmt.zip
2021-02-16 21:28 - 2021-02-16 21:28 - 005682144 _____ C:\Users\pohlr\Downloads\LJP1100_P1560_P1600_FW_Upgrade_Security-20150114.exe
2021-02-15 19:22 - 2021-02-15 19:22 - 000000000 ____D C:\Program Files\HPPrintScanDoctor
2021-02-15 19:11 - 2021-02-15 19:11 - 000000000 ____D C:\ProgramData\HPSSUPPLY
2021-02-15 19:11 - 2021-02-15 19:11 - 000000000 ____D C:\ProgramData\Hewlett-Packard
2021-02-15 19:11 - 2021-02-15 19:11 - 000000000 ____D C:\Program Files (x86)\HP
2021-02-15 19:00 - 2021-03-13 08:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2021-02-15 19:00 - 2012-09-27 01:27 - 000126880 _____ (HP) C:\WINDOWS\system32\HPSIsvc.exe
2021-02-15 19:00 - 2012-08-31 15:10 - 000350720 _____ C:\WINDOWS\system32\mvhlewsi.DLL
2021-02-15 19:00 - 2012-08-31 15:03 - 001696256 _____ C:\WINDOWS\system32\HP1100SM.EXE
2021-02-15 19:00 - 2012-08-31 15:03 - 000288768 _____ C:\WINDOWS\system32\HP1100LM.DLL
2021-02-15 18:59 - 2021-03-13 02:11 - 000000000 ____D C:\Program Files\HP
2021-02-15 18:58 - 2021-02-15 18:58 - 000000000 ____D C:\LJP1100_P1560_P1600_Full_Solution
2021-02-15 18:58 - 2012-09-26 06:45 - 000082944 _____ C:\WINDOWS\system32\mvusbews.dll
2021-02-15 18:58 - 2012-09-26 06:45 - 000050688 _____ C:\WINDOWS\system32\HP1100SMs.dll
2021-02-15 18:58 - 2012-09-26 06:45 - 000020480 _____ (Marvell Semiconductor, Inc.) C:\WINDOWS\system32\Drivers\mvusbews.sys
2021-02-15 18:35 - 2021-02-15 18:36 - 005629312 _____ C:\Users\pohlr\Downloads\HP_P1102w_P1109_FW_Update_20201012.exe
2021-02-14 21:12 - 2021-02-14 21:12 - 000007906 _____ C:\Users\pohlr\Downloads\tiskarna.jfif
2021-02-14 15:45 - 2021-03-13 02:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Canon Utilities
2021-02-14 15:45 - 2021-02-14 15:45 - 005824024 _____ C:\Users\pohlr\Downloads\mypr-win-3_3_0-ea11_2.exe
2021-02-14 15:45 - 2021-02-14 15:45 - 000000000 ____D C:\Program Files\Canon
2021-02-14 15:45 - 2021-02-14 15:45 - 000000000 ____D C:\Program Files (x86)\Canon
2021-02-13 14:26 - 2021-02-13 14:26 - 001568184 _____ C:\Users\pohlr\Downloads\TX16S_RotorRiot_Gimbal_Brace_v1.STL

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2021-03-14 19:54 - 2020-10-03 19:41 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2021-03-14 19:54 - 2019-12-14 09:20 - 000000000 ___RD C:\Users\pohlr\OneDrive
2021-03-14 19:54 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-03-14 19:51 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2021-03-14 18:54 - 2020-08-12 20:12 - 000000000 ____D C:\Program Files (x86)\Lenovo
2021-03-14 11:36 - 2019-12-07 15:41 - 000717850 _____ C:\WINDOWS\system32\perfh005.dat
2021-03-14 11:36 - 2019-12-07 15:41 - 000144992 _____ C:\WINDOWS\system32\perfc005.dat
2021-03-14 11:36 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2021-03-14 11:33 - 2019-12-22 11:33 - 000000000 ____D C:\hry
2021-03-14 11:17 - 2019-12-14 19:45 - 000000000 ____D C:\ProgramData\Norton
2021-03-14 10:01 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2021-03-14 03:20 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\appcompat
2021-03-14 01:40 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-03-14 01:35 - 2020-09-19 03:39 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-03-14 01:35 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2021-03-14 00:14 - 2019-12-14 19:43 - 000000000 ____D C:\Program Files (x86)\Steam
2021-03-13 19:56 - 2019-12-16 20:20 - 000000000 ____D C:\Users\pohlr\AppData\Local\CrashDumps
2021-03-13 19:00 - 2020-02-02 11:25 - 000000000 ____D C:\Users\pohlr\OneDrive\Dokumenty\My Games
2021-03-13 18:24 - 2019-12-14 19:14 - 000000000 ____D C:\ProgramData\Package Cache
2021-03-13 10:28 - 2019-12-14 09:20 - 000000000 ____D C:\Users\pohlr\AppData\Local\D3DSCache
2021-03-13 09:12 - 2019-12-14 09:17 - 000000000 ____D C:\Users\pohlr\AppData\Local\Packages
2021-03-13 09:12 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2021-03-13 08:59 - 2019-12-14 09:19 - 000000000 ____D C:\Users\pohlr\AppData\Local\PlaceholderTileLogoFolder
2021-03-13 08:56 - 2019-12-14 19:17 - 000000000 ____D C:\ProgramData\Packages
2021-03-13 08:56 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2021-03-13 08:56 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2021-03-13 08:55 - 2019-12-14 09:17 - 000000000 ___RD C:\Users\pohlr\3D Objects
2021-03-13 08:54 - 2020-02-06 23:05 - 000000270 __RSH C:\ProgramData\ntuser.pol
2021-03-13 08:54 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2021-03-13 08:54 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\USOPrivate
2021-03-13 08:54 - 2019-12-07 10:03 - 000032768 _____ C:\WINDOWS\system32\config\ELAM
2021-03-13 08:53 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender
2021-03-13 08:52 - 2020-06-06 20:35 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-03-13 08:52 - 2019-12-14 09:22 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-03-13 08:45 - 2019-12-14 19:14 - 000000000 ____D C:\AMD
2021-03-13 08:45 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\System
2021-03-13 08:43 - 2020-12-09 22:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher Enhanced Edition [GOG.com]
2021-03-13 08:43 - 2020-10-02 18:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OSFMount
2021-03-13 08:43 - 2020-08-12 20:12 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\lenovo
2021-03-13 08:43 - 2020-08-10 18:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TPFanControl
2021-03-13 08:43 - 2020-06-10 17:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\USB Disk Storage Format Tool 5.3
2021-03-13 08:43 - 2020-02-10 21:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealFlight G5
2021-03-13 08:43 - 2020-02-06 23:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PicaSim
2021-03-13 08:43 - 2020-01-16 19:45 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.7
2021-03-13 08:43 - 2019-12-16 20:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MyPhoneExplorer
2021-03-13 08:43 - 2019-12-14 19:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2021-03-13 08:43 - 2019-12-07 10:14 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2021-03-13 08:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\GroupPolicy
2021-03-13 08:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2021-03-13 08:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\spool
2021-03-13 08:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\NDF
2021-03-13 08:43 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2021-03-13 08:43 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2021-03-13 08:42 - 2021-02-06 20:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2021-03-13 08:42 - 2020-12-16 15:13 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\HiSuite
2021-03-13 08:42 - 2020-12-16 14:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CEWE FOTOLAB fotosvet
2021-03-13 08:42 - 2020-11-07 17:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HiSuite
2021-03-13 08:42 - 2020-10-02 05:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Image Writer
2021-03-13 08:42 - 2020-09-30 19:36 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AOMEI Partition Assistant 8.10
2021-03-13 08:42 - 2020-08-12 20:11 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Lenovo
2021-03-13 08:42 - 2020-08-06 16:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2021-03-13 08:42 - 2020-07-09 10:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CogniView
2021-03-13 08:42 - 2020-06-22 21:05 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\eSpeak
2021-03-13 08:42 - 2020-06-03 17:28 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OpenTX Companion 2.3
2021-03-13 08:42 - 2020-05-30 11:16 - 000000000 ____D C:\Program Files\UNP
2021-03-13 08:42 - 2020-05-30 10:30 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DashWare
2021-03-13 08:42 - 2020-05-24 11:32 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\LinuxLive USB Creator
2021-03-13 08:42 - 2020-05-24 11:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HDD Low Level Format Tool
2021-03-13 08:42 - 2020-03-29 14:43 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Gwent [GOG.com]
2021-03-13 08:42 - 2020-03-01 18:50 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Equalizer APO 1.2.1
2021-03-13 08:42 - 2020-02-27 18:22 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Autodesk
2021-03-13 08:42 - 2020-02-13 07:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dieselpower
2021-03-13 08:42 - 2020-02-11 18:16 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AeroFly Professional Deluxe
2021-03-13 08:42 - 2019-12-22 13:52 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TechPowerUp GPU-Z
2021-03-13 08:42 - 2019-12-15 13:10 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2021-03-13 08:42 - 2019-12-14 19:25 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2021-03-13 08:42 - 2019-12-14 09:22 - 000000000 ____D C:\Program Files\AMD
2021-03-13 08:42 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2021-03-13 08:42 - 2019-03-19 05:52 - 000000000 ___HD C:\WINDOWS\system32\GroupPolicy
2021-03-13 08:42 - 2019-03-19 05:52 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2021-03-13 08:41 - 2019-12-07 10:18 - 000000000 ____D C:\WINDOWS\Setup
2021-03-13 02:11 - 2020-05-27 21:18 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\u-blox
2021-03-13 02:11 - 2020-05-03 21:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VEGAS
2021-03-13 02:11 - 2020-03-28 13:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOG.com
2021-03-13 02:11 - 2020-02-11 17:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PhoenixRC
2021-03-13 02:11 - 2019-12-15 12:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wondershare
2021-03-13 02:11 - 2019-12-14 09:22 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies
2021-03-13 02:11 - 2019-12-14 09:16 - 000000000 ____D C:\Program Files\Synaptics
2021-03-13 02:07 - 2019-12-07 15:44 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-03-13 02:07 - 2019-12-07 15:44 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\SysWOW64\DiagSvcs
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\UNP
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\F12
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Keywords
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Com
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Keywords
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\es-MX
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Com
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\appraiser
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\Provisioning
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\IME
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\DiagTrack
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-03-13 02:07 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2021-03-13 02:07 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\servicing
2021-03-13 02:05 - 2019-12-07 15:44 - 000023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\OEMDefaultAssociations.dll
2021-03-13 02:05 - 2019-12-07 15:44 - 000020908 _____ C:\WINDOWS\system32\OEMDefaultAssociations.xml
2021-03-13 01:51 - 2019-12-07 15:43 - 000000000 ____D C:\WINDOWS\OCR
2021-03-13 01:49 - 2019-12-07 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\winrm
2021-03-13 01:49 - 2019-12-07 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\WCN
2021-03-13 01:49 - 2019-12-07 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\slmgr
2021-03-13 01:49 - 2019-12-07 15:41 - 000000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2021-03-13 01:49 - 2019-12-07 15:41 - 000000000 ____D C:\WINDOWS\system32\winrm
2021-03-13 01:49 - 2019-12-07 15:41 - 000000000 ____D C:\WINDOWS\system32\WCN
2021-03-13 01:49 - 2019-12-07 15:41 - 000000000 ____D C:\WINDOWS\system32\slmgr
2021-03-13 01:49 - 2019-12-07 15:41 - 000000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2021-03-13 01:46 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2021-03-13 01:46 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\MUI
2021-03-12 12:58 - 2020-08-06 16:59 - 000000000 ____D C:\Program Files\Java
2021-03-12 12:57 - 2020-08-06 16:59 - 000192168 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge-64.dll
2021-03-10 20:13 - 2021-01-30 11:42 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2021-03-10 11:41 - 2019-12-14 19:57 - 131005360 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2021-03-10 11:41 - 2019-12-14 19:57 - 000000000 ____D C:\WINDOWS\system32\MRT
2021-03-10 09:17 - 2020-05-23 16:48 - 000000000 ____D C:\Users\pohlr\OneDrive\Dokumenty\ArduinoData
2021-03-09 09:55 - 2019-12-14 09:17 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\Adobe
2021-03-08 12:26 - 2019-12-14 21:04 - 000000000 ____D C:\Program Files\Common Files\AV
2021-03-08 12:00 - 2019-12-14 20:35 - 000000000 ____D C:\WINDOWS\system32\Drivers\NGCx64
2021-02-28 20:49 - 2020-09-30 19:36 - 000031763 _____ C:\WINDOWS\GA_OF.dat
2021-02-28 20:49 - 2020-09-30 19:36 - 000001024 ____H C:\AMTAG.BIN
2021-02-28 19:15 - 2020-09-30 19:36 - 000000000 ____D C:\Program Files (x86)\AOMEI Partition Assistant
2021-02-25 07:31 - 2020-10-03 19:42 - 000000000 ____D C:\Users\pohlr\AppData\Local\TeamViewer
2021-02-25 07:09 - 2019-12-15 13:49 - 000000000 ____D C:\Users\pohlr\AppData\Roaming\MPC-HC

==================== Files in the root of some directories ========

2020-05-24 11:07 - 2020-05-24 11:07 - 000000001 _____ () C:\Users\pohlr\AppData\Local\llftool.4.40.agreement

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================




Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-03-2021
Ran by pohlr (14-03-2021 19:58:19)
Running from C:\Users\pohlr\OneDrive\Skrivebord
Windows 10 Home Version 20H2 19042.867 (X64) (2021-03-13 07:54:13)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3488671587-1816662609-4276607936-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3488671587-1816662609-4276607936-503 - Limited - Disabled)
Guest (S-1-5-21-3488671587-1816662609-4276607936-501 - Limited - Disabled)
pohlr (S-1-5-21-3488671587-1816662609-4276607936-1001 - Administrator - Enabled) => C:\Users\pohlr
WDAGUtilityAccount (S-1-5-21-3488671587-1816662609-4276607936-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Norton 360 (Enabled - Up to date) {1122B19A-E671-38EC-8EAC-87048FD4528D}
AV: Norton Security (Enabled - Up to date) {A2708B76-6835-6565-CB96-694212954A75}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Norton 360 (Enabled - Up to date) {9E3FD331-C4C2-7AC4-0537-131EEF1B1F8A}
FW: Norton Security (Enabled) {9A4B0A53-225A-643D-E0C9-C077EC460D0E}
FW: Norton 360 (Enabled) {A6045214-8EAD-7B9C-2E68-BA2B11C858F1}
FW: Norton 360 (Enabled) {291930BF-AC1E-39B4-A5F3-2E31710715F6}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 21.001.20145 - Adobe Systems Incorporated)
Adobe Photoshop CC 2018 (HKLM-x32\...\PHSP_19_0) (Version: 19.0 - Adobe Systems Incorporated)
AeroFly Professional Deluxe (HKLM-x32\...\{4689C255-3373-4A61-8E3C-3E9C92EFA4E5}) (Version: 1.9.7.11 - IPACS)
aerofly RC 7 Ultimate Edition (HKLM-x32\...\YWVyb2ZseVJDN1VsdGltYXRlRWRpdGlvbg==_is1) (Version: 1 - )
AMD Catalyst Control Center (HKLM-x32\...\WUCCCApp) (Version: 1.00.0000 - AMD)
AMD Catalyst Install Manager (HKLM\...\{66AFB595-BC05-2913-7696-6D58F9B733E1}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
AOMEI Partition Assistant 8.10 (HKLM-x32\...\{02F850ED-FD0E-4ED1-BE0B-54981f5BD3D4}_is1) (Version: - AOMEI International Network Limited.)
Audacity 2.4.2 (HKLM-x32\...\Audacity_is1) (Version: 2.4.2 - Audacity Team)
Autodesk Fusion 360 (HKU\S-1-5-21-3488671587-1816662609-4276607936-1001\...\73e72ada57b7480280f7a6f4a289729f) (Version: 2.0.7463 - Autodesk, Inc.)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
BitRaider Streaming Client (HKLM-x32\...\BitRaider Streaming Client) (Version: 1.3.3.4098 - BitRaider, LLC)
Canon My Printer (HKLM-x32\...\CanonMyPrinter) (Version: 3.3.0 - Canon Inc.)
CCleaner (HKLM\...\{DCC7ED81-4222-4555-87F4-AE3E8B0C10D6}_is1) (Version: 5.55.7108 - Piriform)
CEWE FOTOLAB fotosvet (HKLM-x32\...\CEWE FOTOLAB fotosvet) (Version: 7.0.4 - CEWE Stiftung u Co. KGaA)
DashWare (HKLM\...\DashWare) (Version: 1.9.1 - GoPro, Inc.)
DidaktaCZ 1.0.0 (HKLM-x32\...\7e81f6ca-38af-5207-b03c-2ecbe5f1ce8e) (Version: 1.0.0 - SILCOM Multimedia, s.r.o.)
Epic Games Launcher (HKLM-x32\...\{C69A2919-0662-4390-9418-67C931B44C18}) (Version: 1.1.236.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Equalizer APO (HKLM\...\EqualizerAPO) (Version: 1.2.1 - )
eSpeak version 1.48.04 (HKLM-x32\...\eSpeak_is1) (Version: - )
FormApps Signing Extension (HKLM-x32\...\{2ADAFEB7-56C5-497F-8960-67DA46A81838}) (Version: 2.27.0.46 - Software602 a.s.)
Gameforge Client (HKLM-x32\...\{d3b2a0c1-f0d0-4888-ae0b-1c5e1febdafb}_is1) (Version: 2.1.25.933 - Gameforge)
GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 89.0.4389.82 - Google LLC)
Gwent (HKLM-x32\...\1971477531_is1) (Version: 8.0 - GOG.com)
Hard Disk Low Level Format Tool 4.40 (HKLM-x32\...\Hard Disk Low Level Format Tool_is1) (Version: - HDDGURU)
HiSuite (HKLM-x32\...\Hi Suite) (Version: 11.0.0.500 - Huawei Technologies Co., Ltd.)
HP LaserJet Professional P1100-P1560-P1600 Series (HKLM\...\HP LaserJet Professional P1100-P1560-P1600 Series) (Version: - )
HPSSupply (HKLM-x32\...\{7902E313-FF0F-4493-ACB1-A8147B78DCD0}) (Version: 2.1.1.0000 - Hewlett Packard Development Company L.P.)
Java 8 Update 281 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180281F0}) (Version: 8.0.2810.9 - Oracle Corporation)
K-Lite Codec Pack 15.9.0 Standard (HKLM-x32\...\KLiteCodecPack_is1) (Version: 15.9.0 - KLCP)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
LinuxLive USB Creator (HKLM-x32\...\LinuxLive USB Creator) (Version: 2.9 - Thibaut Lauziere)
LogView (HKLM-x32\...\{C896A23B-9BD1-4BCD-8FB5-79078DD94B98}) (Version: 1.6.1.1 - DIESELPOWER s.r.o.)
Metin2 cs-CZ (HKLM-x32\...\{fab180a3-cd65-4b7e-bd0e-2ef77fd0c258.cs-CZ}) (Version: - Gameforge)
Metin2 tr-TR (HKLM-x32\...\{fab180a3-cd65-4b7e-bd0e-2ef77fd0c258.tr-TR}) (Version: - Gameforge)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 89.0.774.50 - Microsoft Corporation)
Microsoft Flight Simulator X: Acceleration (HKLM-x32\...\FlightSim_{A9729B90-D37B-4A69-B66A-7436AC1F7274}) (Version: 10.0.61637.0 - Microsoft Game Studios)
Microsoft Halo (HKLM-x32\...\Halo) (Version: - Microsoft)
Microsoft OneDrive (HKU\S-1-5-21-3488671587-1816662609-4276607936-1001\...\OneDriveSetup.exe) (Version: 21.030.0211.0002 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{99FAF70F-9B61-4AB0-9EC0-B31F98FFDC4A}) (Version: 2.75.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127 (HKLM-x32\...\{e31cb1a4-76b5-46a5-a084-3fa419e82201}) (Version: 14.24.28127.4 - Microsoft Corporation)
Mozilla Firefox 77.0.1 (x64 en-US) (HKLM\...\Mozilla Firefox 77.0.1 (x64 en-US)) (Version: 77.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 76.0.1 - Mozilla)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
MyPhoneExplorer (HKLM-x32\...\MPE) (Version: 1.8.12 - F.J. Wechselberger)
Norton 360 (HKLM-x32\...\NGC) (Version: 22.21.1.151 - Symantec Corporation)
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.9 - Notepad++ Team)
OpenOffice 4.1.7 (HKLM-x32\...\{E3E3C1D4-6886-4EDB-9F12-335641465055}) (Version: 4.17.9800 - Apache Software Foundation)
OpenTX Companion 2.3 (HKLM-x32\...\OpenTX Companion 2.3) (Version: 2.3.11 - OpenTX)
OSFMount v1.5 (HKLM\...\OSFMount_is1) (Version: 1.5.1015 - Passmark Software)
PDF2XL (HKLM-x32\...\{5C063551-6D4A-4928-9414-0A577F6CB4EB}) (Version: 8.0.2 - CogniView)
PicaSim (HKLM-x32\...\PicaSim_is1) (Version: - )
qBittorrent 4.2.0 (HKLM-x32\...\qBittorrent) (Version: 4.2.0 - The qBittorrent project)
RealFlight G5 R/C Simulator (HKLM-x32\...\RealFlightG5Pro) (Version: - )
Smart View (HKLM-x32\...\{1800D8A5-F7B2-4C20-868E-1CF55CBBDF21}) (Version: 1.0.0.0 - Samsung )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.0.19.1 - Synaptics Incorporated)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.3.2 - TeamSpeak Systems GmbH)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.15.5 - TeamViewer)
TechPowerUp GPU-Z (HKLM-x32\...\TechPowerUp GPU-Z) (Version: - TechPowerUp)
The Witcher Enhanced Edition Director's Cut (HKLM-x32\...\1207658924_is1) (Version: 2.1.0.15 - GOG.com)
Theme Hospital (HKLM-x32\...\Theme Hospital_is1) (Version: - GOG.com)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.22a - Ghisler Software GmbH)
TPFanControl v0.61 (HKLM\...\{717F5741-5C2E-4469-BDA0-B5EC2243646F}_is1) (Version: - troubadix)
u-center_v20.01 (HKLM-x32\...\u-center_v20.01) (Version: 20.01 - u-blox)
USB Disk Storage Format Tool 5.3 (HKLM\...\USB Disk Storage Format Tool_is1) (Version: - Authorsoft Corporation)
VdhCoApp 1.5.0 (HKLM\...\weh-iss-net.downloadhelper.coapp_is1) (Version: - DownloadHelper)
VEGAS Pro 14.0 (64-bit) (HKLM\...\{4C79D80F-79F9-11E6-8402-BB95F5A309BD}) (Version: 14.0.161 - VEGAS)
Win32DiskImager version 1.0.0 (HKLM-x32\...\{3DFFA293-DF2C-4B23-92E5-3433BDC310E1}}_is1) (Version: 1.0.0 - ImageWriter Developers)
Wondershare Helper Compact 2.5.3 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.5.3 - Wondershare)
Wondershare Video Converter Ultimate(Build 10.4.1.188) (HKLM-x32\...\Video Converter Ultimate_is1) (Version: 10.4.1.188 - Wondershare Software)
World of Warcraft (HKLM-x32\...\World of Warcraft) (Version: - Blizzard Entertainment)

Packages:
=========
Arduino IDE -> C:\Program Files\WindowsApps\ArduinoLLC.ArduinoIDE_1.8.42.0_x86__mdqgnx93n4wtt [2020-07-23] (Arduino LLC)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_122.3.838.0_x64__v10z8vjag6ke6 [2021-03-13] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-03-13] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-03-13] (Microsoft Corporation) [MS Ad]
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.9.1252.0_x64__8wekyb3d8bbwe [2021-03-13] (Microsoft Studios) [MS Ad]
Photo Editor | Polarr -> C:\Program Files\WindowsApps\613EBCEA.PolarrPhotoEditorAcademicEdition_5.10.200.0_x64__jb41c8remg0x2 [2020-05-30] (Polarr)
Text-to-Voice -> C:\Program Files\WindowsApps\21724Alexander-Bielecki.d.Text-to-Voice_1.4.4.0_x64__ahjyqznyj4z5y [2020-06-22] (www.Alexander-Bielecki.de) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3488671587-1816662609-4276607936-1001_Classes\CLSID\{C4F0910E-E0B4-4E68-8086-452730C7A26A}\InprocServer32 -> C:\Users\pohlr\AppData\Local\Autodesk\webdeploy\production\128340bb0c272cfb06c5653400939c91abb2a80a\NPreview10.dll (Autodesk, Inc. -> )
ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.21.1.151\buShell.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.21.1.151\buShell.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.21.1.151\buShell.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton Security\Engine\22.21.1.151\buShell.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton Security\Engine\22.21.1.151\buShell.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ShellIconOverlayIdentifiers-x32: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton Security\Engine\22.21.1.151\buShell.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2020-09-24] (Notepad++ -> )
ContextMenuHandlers1: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.21.1.151\buShell.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers1-x32: [MyPhoneExplorer] -> {A372C6DF-7A85-41B1-B3B0-D1E24073DCBF} => C:\Program Files (x86)\MyPhoneExplorer\DLL\ShellMgr.dll [2010-03-30] (F.J. Wechselberger) [File not signed]
ContextMenuHandlers1: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.21.1.151\NavShExt.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers2: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.21.1.151\NavShExt.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\atiacm64.dll [2015-11-04] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => C:\WINDOWS\system32\igfxpph.dll [2017-03-09] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [BUContextMenu] -> {F7CAA2A1-67A2-44BB-B20F-202FD8EB1DAB} => C:\Program Files\Norton Security\Engine\22.21.1.151\buShell.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
ContextMenuHandlers6: [NortonLifeLock.Norton.Antivirus.IEContextMenu] -> {FAD61B3D-699D-49B2-BE16-7F82CB4C59CA} => C:\Program Files\Norton Security\Engine\22.21.1.151\NavShExt.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\pohlr\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Michaela (Miška) - Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"
ShortcutWithArgument: C:\Users\pohlr\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\d249d9ddd424b688\Google Chrome.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory=Default

==================== Loaded Modules (Whitelisted) =============

2021-03-14 10:02 - 2021-03-14 10:02 - 000031232 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\A4.Foundation\299bf2e4e23af02175445e6a26f183b3\A4.Foundation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000022528 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Actions5dc83b46#\a24c26eba4ea3ddce65e74fa4668e293\AEM.Actions.CCAA.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.0a1309f7#\b1c480fea6a1f23d52c3e56efa0e3568\AEM.Plugin.EEU.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.2b6a6775#\ab84ec371d67664b2b3835984aa2dce2\AEM.Plugin.Hotkeys.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000016384 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.54d8abe3#\067d1b4cc2a05184c6e0a89aaee60af6\AEM.Plugin.DPPE.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000281600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.5d945b6b#\e6806d3dfa2372f274fedc400ecaea29\AEM.Plugin.Source.Kit.Server.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000014848 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.674d2b8a#\20e43f89b55b6c6d58c04b22890cbbc3\AEM.Plugin.WinMessages.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000012800 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.88aba5d2#\2cb21aaa54b1116e4ceda042a9d4ce1e\AEM.Plugin.REG.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000011776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Plugin.GD.Shared\a0c3b8ce9c35481a6521f517227bbbe2\AEM.Plugin.GD.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000013312 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server.Shared\6cfd22563e0e2c727f094a3de46cf569\AEM.Server.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000267776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\AEM.Server\8e824043be59343847600763c50d6229\AEM.Server.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000055808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Foundation\8b0dfc591b480594610bbaa94430d4db\APM.Foundation.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000122880 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ATICCCom\4f9523253033d141734969c0866c932c\ATICCCom.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000204288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CCC.Implementation\af1df7a28635d8dc2019da4ad419ebaa\CCC.Implementation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000154112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.21d2ac78#\d18e017d86840cf4e291065a203bf595\CLI.Aspect.PowerPlayDPPE.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000128000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3399d0ec#\c473afacd64a10cb325e6c9ac524f824\CLI.Aspect.CustomFormats.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000026112 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.37d3d968#\1de0b258089f746ad04d1233cf969b29\CLI.Aspect.AMDHome.Graphics.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000045568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.382a3def#\dd5cc863637abdfb436e9ceaee87b61a\CLI.Aspect.AMDOverDrive.Platform.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000107008 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.3a6f1658#\119e8f5a6e9313af4844f1cb23d04601\CLI.Aspect.TransCode.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.46819220#\bf72cdb8017728ac2915993a05842fee\CLI.Aspect.PowerPlayDPPE.Graphics.Runtime.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.4bbb0755#\ec62501776136c97cc7f8ede3f99c6d9\CLI.Aspect.TransCode.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000037888 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.52c6dbaa#\7ee8d68f2500cbf06d0e1339d0509d76\CLI.Aspect.FPS.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000074752 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.59a12d95#\ea99ad5efa6b77f631f17f3f6514113d\CLI.Aspect.PowerPlayDPPE.Graphics.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000263168 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.73911eb5#\b25d1017d66178bbb77c5038da1e5327\CLI.Aspect.WirelessDisplay.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000365056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.7ec2db45#\e51ade072914adc16c9cc1a4eb929b0b\CLI.Aspect.DeviceDFP.Graphics.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000064000 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8350f5c6#\af53ba99fab78381ec29e55adfd889b7\CLI.Aspect.UpdateNotification.Graphics.Runtime.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000678912 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.846fa813#\1946be912a1389e3b2e8e684bdb2c6fa\CLI.Aspect.MMVideo.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000745472 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8d333b6b#\528e8766b99ec47ea476e036a210492b\CLI.Aspect.Radeon3D.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000449536 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.8e996306#\b3107cf758db9f29066e5548859e950a\CLI.Aspect.CrossDisplay.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000089088 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.9cd1e9e7#\6d4486fb59307bec3ac8923aebc72ef1\CLI.Aspect.FPS.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000057856 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a6cd7fff#\ebccb64be88b1b07b48f2652531555a7\CLI.Aspect.FPS.Graphics.Runtime.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000082944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.a765109e#\e7f1c1a772858f2bc0d52f6c35e98cf6\CLI.Aspect.UpdateNotification.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000462336 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.acb9d930#\59f37443a686efbf0c52772f1db24e0e\CLI.Aspect.DeviceProperty.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000067072 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b0a7c1fb#\12c979ab0dac8ba20586fa52ec4c5cef\CLI.Aspect.DisplaysOptions.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000340992 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c7aaa0f8#\3e009bed5e4d5046f36f132a1b75aa95\CLI.Aspect.OverDrive5.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000017920 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.c854b457#\e62039c5f426da0d2aa0415ba6806c9e\CLI.Aspect.HotkeysHandling.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000096256 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d4f2f79c#\73b0f1411d421cf80be838629e17ed37\CLI.Aspect.CrossFireX.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000276480 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e8635fc7#\b0e1ae0abff9a1471337ff4e5cb5f5f6\CLI.Aspect.InfoCentre.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 003312640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.e9fd7406#\4c50ca884ddb173946e52d51eeb28571\CLI.Aspect.Radeon3D.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000240640 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.eda8935e#\44b63310c195cfc86fdc7b385b24d1af\CLI.Aspect.MMVideo.Graphics.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000047616 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ef3eaa4d#\2597fa5cfc6bbd186558dd3ddb3875f3\CLI.Aspect.TransCode.Graphics.Runtime.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000050688 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.f480a2f3#\0e5e46fe8262765fc01f531393cea826\CLI.Aspect.UpdateNotification.Graphics.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000051200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Runtime\1b793612380f60d287e5c5f86122e89c\CLI.Caste.A4.Runtime.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.A4.Shared\0f047cf9e2239851a811b935d7b109d0\CLI.Caste.A4.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Af820fedc#\ad42a31ed395b0ecbe316f65491d24af\CLI.Caste.A4.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000044544 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F24de14fe#\756be47d421c14309af0c8d9dddc6a29\CLI.Caste.Fuel.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000311296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.F36b07a2b#\237f6779fe63e0a2c1d282dcaae5138d\CLI.Caste.Fuel.Runtime.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000027136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Ff3085433#\9da73010c1ac2627c98cd659770a1f1e\CLI.Caste.Fuel.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60338cc0#\a5e2e36025e5e42aeff913bbda1aa6d6\CLI.Caste.Graphics.Runtime.Shared.Private.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 001555456 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gd9d9b43b#\d9023f90cb9c233a1ef9d29afe619a5d\CLI.Caste.Graphics.Dashboard.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000587776 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Gee7d2dbc#\2c859919bad3bef7b22e820c8331e258\CLI.Caste.Graphics.Dashboard.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000045056 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H18c99613#\67666baee565c9b0f6a67df38462c2f3\CLI.Caste.HydraVision.Runtime.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.H92ba4e46#\be62787dd2bab6bbe758bb473b72c8e4\CLI.Caste.HydraVision.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Hbb906c0b#\c0e53f1337994c1667cf8986471b8253\CLI.Caste.HydraVision.Dashboard.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000030720 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pac40511b#\0552c276520bab46992e3d931c858708\CLI.Caste.Platform.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000044032 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pdb36d56e#\753c0337e60bbef84ae2e4d415b423f7\CLI.Caste.Platform.Runtime.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000024064 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.Pfeefa2b6#\8cc70011780cd7107d94671bcc46c204\CLI.Caste.Platform.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone1b4a8c97#\0619ae2c3e8cc53377fbecef51f243ed\CLI.Component.Runtime.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000901632 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone26c9c557#\dfff39149c8e27593d1a824546fc918b\CLI.Component.Systemtray.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000173568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone29e547cc#\197bf5cf7fb1b4891e579ec04e9eef33\CLI.Component.Dashboard.ProfileManager2.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000151040 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone59f353b4#\780c8bd8339ff2def14b0207cd808a3b\CLI.Component.Runtime.Shared.Private.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000017408 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componeb4d0485c#\c2b5ee81f835f248ac92e192a11b37f2\CLI.Component.Runtime.Extension.EEU.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 001609728 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componec89c3bec#\e0ac251c51c9ce70532e3b80d17036b1\CLI.Component.Dashboard.Shared.Private.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000018432 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componef1fd67b2#\5627e1355102d34ea0fb784888ab8e34\CLI.Component.Client.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000085504 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Componef4cf054f#\007e57a69242e84ff334564a788165c0\CLI.Component.Dashboard.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000089600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat3d5d3945#\a0a2b615cdc294c7d3af29f42d6f3369\CLI.Foundation.Private.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000061440 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat60cdf5df#\4e50f43f222133081bca51d4ec374497\CLI.Foundation.XManifest.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000091136 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundat619559bd#\bcdee5c6fe25466f8c29767f6b2b1294\CLI.Foundation.CoreAudioAPI.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 001079808 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundatd3771151#\e71d9ac8050ddbc61de0d405425ffb71\CLI.Foundation.Client.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000301568 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Foundation\f427fb4249819cdad708ab341925f176\CLI.Foundation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000025600 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Foundation\5d12a5ba7cfcf92e2bdedb9c65064c74\DEM.Foundation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000115200 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0601\5658790b6d8ee4f840d1ca57866316ce\DEM.Graphics.I0601.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000015360 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics\dfa1099aca23fc47444238db01432d1e\DEM.Graphics.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000037376 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Fuel.Foundation\7224c4f48b25b446a37e68bf70496628\Fuel.Foundation.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000296960 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundat03490438#\e8caa0b0ef82e5f8b64cc8d85740b649\LOG.Foundation.Implementation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000150016 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundat5023f8e7#\bb140c3f749aad3e194c37b732486584\LOG.Foundation.Private.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000087552 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundatcaafa75b#\941a6700366b94ec64b62cc506f95d74\LOG.Foundation.Implementation.Private.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000132608 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\LOG.Foundation\14a13de1f3708f74c0de29e5d486a6de\LOG.Foundation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000012288 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Foundation\c718fcd8c25b703ccad4cb802f9c7dca\MOM.Foundation.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000402944 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\MOM.Implementation\942416935b21cacc907f56d100506704\MOM.Implementation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000055296 _____ (Advanced Micro Devices Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\NEWAEM.Foundation\ae9a13269043d55e4140d5868270661d\NEWAEM.Foundation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000897024 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ADL.Foundation\79c00831b1c30bf18fb586d85535361d\ADL.Foundation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000256000 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\APM.Server\11725f354a5e8c6ce052906bd4a8e5e8\APM.Server.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000783872 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.79734f7a#\ee4275611386e7caa8525721f42d22b6\CLI.Aspect.PowerXpress.Graphics.Runtime.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000357888 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.b3da5a8f#\8115c9f4be5c153a71dc876fbb8dd313\CLI.Aspect.PowerXpress.Graphics.Shared.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000595456 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.d4846ba2#\4b2f4a30c7c2dd195fd6e39df3e80028\CLI.Aspect.PowerXpress.Graphics.Dashboard.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 008027648 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Combine0616f305#\9290d5fffa3771fc564d5a494bbaef80\CLI.Combined.Graphics.Aspects1.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000136704 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone168638d1#\4a1483e26ec981cde398a218ac363ad1\CLI.Component.Client.Shared.Private.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000234496 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone6692ca50#\e6ebbe99ad169505a7b1614029784799\CLI.Component.Runtime.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000929280 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Compone6bf88b08#\de0138b3d17f3b789606957fedfe666f\CLI.Component.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000011264 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0702\b412bf450c79457c9c6e02719fef3a99\DEM.Graphics.I0702.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000084480 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0709\5252f14189e3677767b454164fb541cf\DEM.Graphics.I0709.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000009728 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0710\8eeed39b8e461125c3b64ec004190ba5\DEM.Graphics.I0710.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000012288 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0712\5e93aedbce33eb9d7f84de52de38623c\DEM.Graphics.I0712.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000018432 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0804\aa9984e9a16523bb1fd71b855c687aa6\DEM.Graphics.I0804.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000009728 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0901\2fe32ec8719bc5e139d20434f117fd6f\DEM.Graphics.I0901.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000013312 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I0906\58c6e0a82fa1629f5583fd56b7323d3c\DEM.Graphics.I0906.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000035840 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\DEM.Graphics.I1010\4fe945ea0f126bb4dccba474e3ee74dd\DEM.Graphics.I1010.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 001139200 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Localizatio01dbc1c0#\850f9ba397907bdd65f8b39b38d30802\Localization.Foundation.Private.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 000244736 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ResourceMan446ca0e5#\728cdf3754ae85033dd79ad186800036\ResourceManagement.Foundation.Implementation.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000023552 _____ (Advanced Micro Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\ResourceManf163905a#\1c70dcc4229d6020dee4a1dec7d82013\ResourceManagement.Foundation.Private.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000091648 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Aspect.ec8786e5#\cf90b853c4e28581c7cc59c5383c17ba\CLI.Aspect.AMDHome.Graphics.Dashboard.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 002845696 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G60a7b4d1#\279fe6e0d04379447e1fe91e00e0f1ab\CLI.Caste.Graphics.Shared.ni.dll
2021-03-14 10:03 - 2021-03-14 10:03 - 003268096 _____ (Advanced Mirco Devices, Inc.) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\CLI.Caste.G962aa464#\38fb846f3a344f93b10dfd7394da66e1\CLI.Caste.Graphics.Runtime.ni.dll
2009-06-25 09:27 - 2009-06-25 09:27 - 000541184 _____ (Marvell Semiconductor, Inc.) [File not signed] C:\WINDOWS\System32\mvtcpmon.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 000335360 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Microsoft.W8090224c#\4f0fd874313da401477c46c3cec85dc9\Microsoft.WindowsAPICodePack.ni.dll
2021-03-14 10:02 - 2021-03-14 10:02 - 002546688 _____ (Microsoft) [File not signed] C:\WINDOWS\assembly\NativeImages_v4.0.30319_64\Microsoft.Wfbf9373c#\a8c5a476b51666456f23a36508ee97da\Microsoft.WindowsAPICodePack.Shell.ni.dll
2009-06-25 09:25 - 2009-06-25 09:25 - 000144896 _____ (OpenSLP) [File not signed] C:\WINDOWS\System32\slp64.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:182F0EEA [260]
AlternateDataStreams: C:\ProgramData\TEMP:838D4792 [132]

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: Norton Password Manager -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Norton Security\Engine\22.21.1.151\coIEPlg.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_281\bin\ssv.dll [2021-03-12] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_281\bin\jp2ssv.dll [2021-03-12] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Norton Password Manager -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Norton Security\Engine32\22.21.1.151\coIEPlg.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Security\Engine\22.21.1.151\coIEPlg.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
Toolbar: HKLM-x32 - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton Security\Engine32\22.21.1.151\coIEPlg.dll [2021-02-22] (NortonLifeLock Inc. -> NortonLifeLock Inc.)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 05:49 - 2019-03-19 05:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static;C:\Program Files (x86)\AMD\ATI.ACE\Core-Static
HKU\S-1-5-21-3488671587-1816662609-4276607936-1001\Control Panel\Desktop\\Wallpaper -> D:\FOTO\Fotky Miška\fotky beruška 2020\DSC_4930.JPG
DNS Servers: 192.168.1.2 - 8.8.8.8
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "Wondershare Helper Compact.exe"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{94A2C192-0AC9-496F-BA22-7E2E05E5F4EB}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{C300E2A0-7209-4008-B6C3-640D36646300}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Metin2\config.exe (WEBZEN Inc. -> )
FirewallRules: [{46235FB2-A439-4DB0-A652-597FC7F8E883}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Metin2\config.exe (WEBZEN Inc. -> )
FirewallRules: [{39C4B6C1-458A-4272-BF80-E04663F8178C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Metin2\steam_launcher.exe (Gameforge 4D GmbH -> )
FirewallRules: [{7AFC97B3-985C-4654-B438-1ED2CC71EE68}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Metin2\steam_launcher.exe (Gameforge 4D GmbH -> )
FirewallRules: [{160F34BC-DF8E-47CA-BD1A-E473FF55FE5A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{51E822D9-9995-4CC3-92AA-3E7D03F852DF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{CF82441B-A31D-4B09-A488-08DA180E3CAC}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{687F17B4-C41A-4759-A4F2-5C6886A93C3C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{48E0FF44-B98F-4DB6-95CA-954E7008B575}] => (Allow) LPort=161
FirewallRules: [{EAB8CA75-3549-4BFD-BB80-41F983AE90FE}] => (Allow) LPort=427
FirewallRules: [{A03EFB26-4261-47C6-A146-FC7657EBB0C2}] => (Allow) LPort=9100
FirewallRules: [{3BCA20F0-86FB-4565-805F-EFFE33EC1E09}] => (Allow) C:\Program Files\HP\HP LaserJet P1100 Series\wificonfig.exe (Hewlett-Packard Company -> Hewlett Packard)
FirewallRules: [{9186AAAF-284A-42F5-9E81-2D4451C578AE}] => (Allow) C:\Program Files\HP\HP LaserJet P1100 Series\wificonfig.exe (Hewlett-Packard Company -> Hewlett Packard)
FirewallRules: [{CF953D75-0319-46F1-B77E-1203E8B05ADD}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{56699C4E-14B3-4D74-B23A-E17C9D996BF8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A9714164-97EF-42E6-9FDE-5E0680176319}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E601F153-3324-434C-B37D-89824FDB6EFA}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F3CF6B28-4446-499D-A356-08B411C6B19C}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe => No File
FirewallRules: [{53DA9D88-0DD5-4F62-83CB-10E8670E01D6}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe => No File
FirewallRules: [{A5529F6C-322C-4908-867D-905E69C67768}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{539B3D72-228F-4B0F-B5A7-A5ECBB176009}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{208001BF-5E4B-4A51-94E6-8C6C969C0294}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shakes and Fidget Remastered\shakesandfidget.exe () [File not signed]
FirewallRules: [{6FBCBAFA-2EF0-48F4-84F5-9421C3433DF9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Shakes and Fidget Remastered\shakesandfidget.exe () [File not signed]
FirewallRules: [{F4C665CF-1C27-4DF4-8961-BB20AB1D0A7B}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{A744C3D0-AB18-4814-A3D7-6F4AA825575C}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve -> Valve Corporation)
FirewallRules: [{6E93FFAF-E151-48EC-A372-7949E2743577}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{F04D47DD-1A5E-43D5-B7C8-B73A49C427D7}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{AA5253FF-5E11-4208-A855-1499B9C1837E}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{121666E9-D7E9-4956-867E-1C3F6F65C310}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{3A5373D4-63CD-49DD-B11A-6E22BF211015}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)
FirewallRules: [{1E93A323-BF1A-4018-ABC1-48427B4D3D32}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve -> Valve Corporation)

==================== Restore Points =========================

13-03-2021 18:23:25 Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.24.28127
14-03-2021 18:54:39 AdwCleaner_BeforeCleaning_14/03/2021_18:54:39

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (03/14/2021 07:51:20 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (03/14/2021 07:51:20 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (03/14/2021 01:57:41 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (03/14/2021 01:57:41 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (03/13/2021 07:56:29 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: halo.exe, verze: 1.0.1.580, časové razítko: 0x21544c66
Název chybujícího modulu: combase.dll, verze: 10.0.19041.844, časové razítko: 0x98fb6ff0
Kód výjimky: 0xc0000602
Posun chyby: 0x0007655b
ID chybujícího procesu: 0x147c
Čas spuštění chybující aplikace: 0x01d71832be6d9273
Cesta k chybující aplikaci: C:\hry\Halo\halo.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\combase.dll
ID zprávy: 84f6ecc5-e7de-4286-adb2-4f8fe3ab3494
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (03/13/2021 06:24:10 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny QueryFullProcessImageNameW došlo k neočekávané chybě. hr= 0x80070006, Neplatný popisovač.
.


Operace:
Spouštění asynchronní operace

Kontext:
Aktuální stav: DoSnapshotSet

Error: (03/13/2021 01:52:48 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Generování kontextu aktivace pro C:\Program Files (x86)\Steam\steamapps\common\Metin2\gsl_metin2.exe se nezdařilo. Chyba v souboru manifestu nebo zásad na řádku .
Verze součásti požadovaná aplikací je v konfliktu s jinou verzí součásti, která je již aktivní.
Konfliktní součásti:
Součást 1: C:\WINDOWS\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.844_none_11adecdf30011423.manifest.
Součást 2: C:\WINDOWS\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.19041.844_none_ca00b6081b84eb1d.manifest.

Error: (03/13/2021 08:46:08 AM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\AMD\WU-CCC2\ccc2_install\VC12RTx64\vcredist_x64.exe /q /norestart; Popis = Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727; Chyba = 0x80042302).


System errors:
=============
Error: (03/14/2021 07:55:17 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-SOUARL0)
Description: Server Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/14/2021 07:54:12 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba HP LaserJet Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (03/14/2021 07:54:10 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-SOUARL0)
Description: Server Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/14/2021 07:54:01 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba SecDrv neuspěla při spuštění v důsledku následující chyby:
Načtení tohoto ovladače je blokováno.

Error: (03/14/2021 07:54:01 PM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\WINDOWS\SysWow64\drivers\SECDRV.SYS

Error: (03/14/2021 07:27:32 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-SOUARL0)
Description: Server Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/14/2021 07:20:34 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-SOUARL0)
Description: Server Microsoft.SkypeApp_15.68.96.0_x86__kzf8qxf38zg5c!App.AppXtwmqn4em5r5dpafgj4t4yyxgjfe0hr50.mca se v daném časovém limitu neregistroval u služby DCOM.

Error: (03/14/2021 06:54:58 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba System Update byla neočekávaně ukončena. Tento stav nastal již 1krát.


CodeIntegrity:
===============
Date: 2021-03-14 19:57:07
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume2\Program Files\Norton Security\Engine\22.21.1.151\symamsi.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO 40CN33WW(V2.19) 08/14/2012
Motherboard: LENOVO Base Board Product Name
Processor: Intel(R) Core(TM) i7-2670QM CPU @ 2.20GHz
Percentage of memory in use: 41%
Total physical RAM: 8135.86 MB
Available physical RAM: 4741.51 MB
Total Virtual: 9415.86 MB
Available Virtual: 5803.08 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:464.61 GB) (Free:152.07 GB) NTFS
Drive d: (DATA) (Fixed) (Total:596.17 GB) (Free:65.76 GB) NTFS

\\?\Volume{e73c83d3-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.57 GB) (Free:0.53 GB) NTFS
\\?\Volume{e73c83d3-0000-0000-0000-104b74000000}\ () (Fixed) (Total:0.59 GB) (Free:0.08 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: E73C83D3)
Partition 1: (Active) - (Size=579 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=464.6 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=601 MB) - (Type=27)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 596.2 GB) (Disk ID: 9FD8FEA1)
Partition 1: (Not Active) - (Size=596.2 GB) - (Type=07 NTFS)

==================== End of Addition.txt =======================

Re: Preventivni kontrola logu

Napsal: 14 bře 2021 20:08
od Diallix
Do poznamkoveho bloku skopirujte obsah dole:

Kód: Vybrat vše

CloseProcesses:
CreateRestorePoint:

HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706680 2020-12-09] (Oracle America, Inc. -> Oracle Corporation)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
Task: {3AAC8086-FB5F-450B-BA9D-BA28A4ADEF58} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.)
CHR DefaultSuggestURL: Default -> hxxps://ss-sym.search.ask.com/ss?limit=10&li=ff&hl=cs&q={searchTerms}
S3 SUService; "C:\Program Files (x86)\Lenovo\System Update\SUService.exe" [X]
S3 BRDriver64_1_3_3_E02B25FC; \??\C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [X]
AlternateDataStreams: C:\ProgramData\TEMP:182F0EEA [260]
AlternateDataStreams: C:\ProgramData\TEMP:838D4792 [132]
FirewallRules: [{48E0FF44-B98F-4DB6-95CA-954E7008B575}] => (Allow) LPort=161
FirewallRules: [{EAB8CA75-3549-4BFD-BB80-41F983AE90FE}] => (Allow) LPort=427
FirewallRules: [{A03EFB26-4261-47C6-A146-FC7657EBB0C2}] => (Allow) LPort=9100
FirewallRules: [{F3CF6B28-4446-499D-A356-08B411C6B19C}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe => No File
FirewallRules: [{53DA9D88-0DD5-4F62-83CB-10E8670E01D6}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe => No File
FirewallRules: [{6E93FFAF-E151-48EC-A372-7949E2743577}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{F04D47DD-1A5E-43D5-B7C8-B73A49C427D7}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File

EmptyTemp:

Poznamkovy blok ulozte pod nazvom fixlist.txt do umiestnenia kde je FRST.
Spustite FRST a odkliknite tlacidlo: Fix
Vykona sa funkcionalita po ktorej sa pocitac rebootuje. Po reboote sem vlozte obsah logu: fixlog.txt ulozeneho v umiestneni FRST.

Re: Preventivni kontrola logu

Napsal: 14 bře 2021 20:42
od Awandalor
Trosku mi to rozhazelo chrome (doplnky, uzivatele a jejich zastupci) ale už jsem to dal dokupy.


Fix result of Farbar Recovery Scan Tool (x64) Version: 14-03-2021
Ran by pohlr (14-03-2021 20:14:52) Run:1
Running from C:\Users\pohlr\OneDrive\Skrivebord
Loaded Profiles: pohlr
Boot Mode: Normal
==============================================

fixlist content:
*****************
CloseProcesses:
CreateRestorePoint:

HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706680 2020-12-09] (Oracle America, Inc. -> Oracle Corporation)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
Task: {3AAC8086-FB5F-450B-BA9D-BA28A4ADEF58} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1557200 2021-01-25] (Adobe Inc. -> Adobe Inc.)
CHR DefaultSuggestURL: Default -> hxxps://ss-sym.search.ask.com/ss?limit=10&li=ff&hl=cs&q={searchTerms}
S3 SUService; "C:\Program Files (x86)\Lenovo\System Update\SUService.exe" [X]
S3 BRDriver64_1_3_3_E02B25FC; \??\C:\ProgramData\BitRaider\support\1.3.3\E02B25FC\BRDriver64.sys [X]
AlternateDataStreams: C:\ProgramData\TEMP:182F0EEA [260]
AlternateDataStreams: C:\ProgramData\TEMP:838D4792 [132]
FirewallRules: [{48E0FF44-B98F-4DB6-95CA-954E7008B575}] => (Allow) LPort=161
FirewallRules: [{EAB8CA75-3549-4BFD-BB80-41F983AE90FE}] => (Allow) LPort=427
FirewallRules: [{A03EFB26-4261-47C6-A146-FC7657EBB0C2}] => (Allow) LPort=9100
FirewallRules: [{F3CF6B28-4446-499D-A356-08B411C6B19C}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe => No File
FirewallRules: [{53DA9D88-0DD5-4F62-83CB-10E8670E01D6}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe => No File
FirewallRules: [{6E93FFAF-E151-48EC-A372-7949E2743577}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File
FirewallRules: [{F04D47DD-1A5E-43D5-B7C8-B73A49C427D7}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe => No File

EmptyTemp:
*****************

Processes closed successfully.
Restore point was successfully created.
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched" => removed successfully
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
C:\ProgramData\NTUSER.pol => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3AAC8086-FB5F-450B-BA9D-BA28A4ADEF58}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3AAC8086-FB5F-450B-BA9D-BA28A4ADEF58}" => removed successfully
C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Acrobat Update Task" => removed successfully
"Chrome DefaultSuggestURL" => removed successfully
HKLM\System\CurrentControlSet\Services\SUService => removed successfully
SUService => service removed successfully
HKLM\System\CurrentControlSet\Services\BRDriver64_1_3_3_E02B25FC => removed successfully
BRDriver64_1_3_3_E02B25FC => service removed successfully
C:\ProgramData\TEMP => ":182F0EEA" ADS removed successfully
C:\ProgramData\TEMP => ":838D4792" ADS removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{48E0FF44-B98F-4DB6-95CA-954E7008B575}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EAB8CA75-3549-4BFD-BB80-41F983AE90FE}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A03EFB26-4261-47C6-A146-FC7657EBB0C2}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F3CF6B28-4446-499D-A356-08B411C6B19C}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{53DA9D88-0DD5-4F62-83CB-10E8670E01D6}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6E93FFAF-E151-48EC-A372-7949E2743577}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F04D47DD-1A5E-43D5-B7C8-B73A49C427D7}" => removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 10510336 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 42306591 B
Java, Flash, Steam htmlcache => 490768983 B
Windows/system/drivers => 1432060 B
Edge => 102938 B
Chrome => 1157725126 B
Firefox => 30487604 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 6656 B
ProgramData => 6656 B
Public => 6656 B
systemprofile => 6656 B
systemprofile32 => 6656 B
LocalService => 48694 B
NetworkService => 56540 B
pohlr => 12147791 B

RecycleBin => 0 B
EmptyTemp: => 1.6 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 20:16:36 ====

Re: Preventivni kontrola logu

Napsal: 14 bře 2021 20:46
od Diallix
Zmazalo co malo.

Ako je na tom pocitac?

Re: Preventivni kontrola logu

Napsal: 14 bře 2021 20:55
od Awandalor
Počítač je asi ok, nepozoruju rozdíl, byla tam nějaká závažná havěť?

Re: Preventivni kontrola logu

Napsal: 14 bře 2021 21:02
od Diallix
AdwCleaner zmazal to, co tam byt nemalo, prostrednictvom scriptov sme docistili zbytok :]]