Mizí ovladač grafiky
Napsal: 18 kvě 2021 13:05
Zdravím, po restartu mi zmizne ovladač grafiky AMD. posílám logy ke kontrole děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-05-2021
Ran by norst (administrator) on DESKTOP-G9081FQ (Micro-Star International Co., Ltd MS-7B86) (18-05-2021 14:01:08)
Running from C:\Users\norst\OneDrive\Plocha
Loaded Profiles: norst
Platform: Windows 10 Pro Version 20H2 19042.985 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\Bloody ToneMaker1.exe
() [File not signed] C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\SDK\CM_LibraryIO.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0366490.inf_amd64_c0dea8a43cb81731\B366217\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0366490.inf_amd64_c0dea8a43cb81731\B366217\atiesrxx.exe
(Advanced Micro Devices, Inc.) [File not signed] C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe
(Electronic Arts, Inc. -> ) D:\Origin\QtWebEngineProcess.exe <2>
(Electronic Arts, Inc. -> Electronic Arts) D:\Origin\Origin.exe
(Electronic Arts, Inc. -> Electronic Arts) D:\Origin\OriginClientService.exe
(Electronic Arts, Inc. -> Electronic Arts) D:\Origin\OriginWebHelperService.exe
(Epic Games Inc. -> Epic Games, Inc.) D:\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2>
(Epic Games Inc. -> Epic Games, Inc.) D:\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <13>
(Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.2\avp.exe
(Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.2\avpui.exe
(Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksde.exe
(Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksdeui.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3>
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.549981c3f5f10_2.2103.17603.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowsstore_12104.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_f31d3fd59f245137\RtkAudUService64.exe <2>
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(Valve -> Valve Corporation) D:\steam\bin\cef\cef.win7x64\steamwebhelper.exe <7>
(Valve -> Valve Corporation) D:\steam\steam.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_f31d3fd59f245137\RtkAudUService64.exe [1255264 2021-05-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-21-1109018477-935340851-3643946210-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [123792288 2021-05-12] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-1109018477-935340851-3643946210-1001\...\Run: [EADM] => D:\Origin\Origin.exe [3144760 2021-05-12] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-1109018477-935340851-3643946210-1001\...\Run: [Steam] => D:\steam\steam.exe [4087528 2021-05-15] (Valve -> Valve Corporation)
HKU\S-1-5-21-1109018477-935340851-3643946210-1001\...\Run: [EpicGamesLauncher] => D:\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33029600 2021-05-14] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-1109018477-935340851-3643946210-1001\...\Run: [BloodyToneMaker] => C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\Bloody ToneMaker1.exe [8555008 2017-10-16] () [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\90.0.4430.212\Installer\chrmstp.exe [2021-05-12] (Google LLC -> Google LLC)
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {004B6DDD-CA27-4D3D-B59E-D28A01AF6F40} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1713952 2021-04-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {0CD6B31D-D74C-4718-BEE1-8E906F41A9C2} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1713952 2021-04-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {19FC12AB-53D6-44A8-8E8B-838F305484E6} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [62752 2021-04-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {2036C9EC-D22C-4FA5-9365-D2B4073B7A63} - System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} => C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe [791232 2021-05-12] (Kaspersky Lab -> AO Kaspersky Lab)
Task: {5F324CB9-C0F1-4D70-9897-02E7DBBDB655} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-05-12] (Google LLC -> Google LLC)
Task: {686A364B-46BE-4DBC-B60A-C3110519974F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-05-12] (Google LLC -> Google LLC)
Task: {8C8BA78E-1A44-4D3E-96F6-B4A62E44F8C2} - System32\Tasks\AMDRyzenMasterSDKTask => C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe [44544 2021-04-13] (Advanced Micro Devices, Inc.) [File not signed]
Task: {B4903267-67C9-4D18-882E-595D1005E783} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [268576 2021-04-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {BD20934B-19FF-4861-B2DE-6DC4D963AF5D} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1713952 2021-04-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{621e87a9-3514-4a0d-9ed1-3b834c3e8be8}: [DhcpNameServer] 192.168.0.1
Edge:
=======
Edge Profile: C:\Users\norst\AppData\Local\Microsoft\Edge\User Data\Default [2021-05-15]
Edge Extension: (Ochrana Kaspersky) - C:\Users\norst\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2021-05-14]
Edge HKU\S-1-5-21-1109018477-935340851-3643946210-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm]
FireFox:
========
FF HKLM\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.2\FFExt\light_plugin_firefox\addon.xpi => not found
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.2\FFExt\light_plugin_firefox\addon.xpi => not found
Chrome:
=======
CHR Profile: C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default [2021-05-18]
CHR Notifications: Default -> hxxps://meet.google.com
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR Extension: (Prezentace) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-05-12]
CHR Extension: (Dokumenty) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-05-12]
CHR Extension: (Disk Google) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-05-12]
CHR Extension: (YouTube) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-05-12]
CHR Extension: (Ochrana Kaspersky 20.0) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\elhpdacimkjpccooodognopfhbdgnpbk [2021-05-12]
CHR Extension: (Tabulky) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-05-12]
CHR Extension: (Dokumenty Google offline) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-05-12]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-05-12]
CHR Extension: (Gmail) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-05-12]
CHR Extension: (Chrome Media Router) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-05-12]
CHR HKLM\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm
CHR HKLM-x32\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AVP21.2; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.2\avp.exe [381928 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8901968 2021-05-13] (BattlEye Innovations e.K. -> )
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [818304 2021-05-13] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 klvssbridge64_21.2; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.2\x64\vssbridge64.exe [467352 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R2 KSDE5.3; C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksde.exe [646520 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [10618272 2021-05-12] (Logitech Inc -> Logitech, Inc.)
R3 Origin Client Service; D:\Origin\OriginClientService.exe [2546776 2021-05-12] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; D:\Origin\OriginWebHelperService.exe [3486808 2021-05-12] (Electronic Arts, Inc. -> Electronic Arts)
R2 RtkAudioUniversalService; C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_f31d3fd59f245137\RtkAudUService64.exe [1255264 2021-05-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5393288 2021-05-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2103.7-0\NisSrv.exe [2624104 2021-05-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2103.7-0\MsMpEng.exe [128376 2021-05-12] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AMDSAFD; C:\Windows\System32\DriverStore\FileRepository\amdsafd.inf_amd64_8e2568524f674315\amdsafd.sys [100768 2021-03-29] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 amdwddmg; C:\Windows\System32\DriverStore\FileRepository\u0366490.inf_amd64_c0dea8a43cb81731\B366217\amdkmdag.sys [82677888 2021-04-19] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\Windows\System32\drivers\amdxe.sys [62056 2020-07-27] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 CMUAC; C:\Windows\system32\DRIVERS\Headset6400x1.SYS [387072 2013-10-03] (C-MEDIA ELECTRONICS INC. -> A4Tech Inc.)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [251608 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klbackupdisk; C:\Windows\system32\DRIVERS\klbackupdisk.sys [110392 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [212280 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [127288 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [37496 2020-10-21] (Microsoft Windows Early Launch Anti-malware Publisher -> AO Kaspersky Lab)
R1 klflt; C:\Windows\system32\DRIVERS\klflt.sys [523576 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klgse; C:\Windows\System32\DRIVERS\klgse.sys [657696 2021-03-15] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klhk; C:\Windows\system32\DRIVERS\klhk.sys [1400600 2021-03-15] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klids; C:\ProgramData\Kaspersky Lab\AVP21.2\Bases\klids.sys [245304 2021-05-12] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [1025336 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klim6; C:\Windows\system32\DRIVERS\klim6.sys [95544 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [113464 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [113464 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [85288 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klpnpflt; C:\Windows\system32\DRIVERS\klpnpflt.sys [97080 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 kltap; C:\Windows\System32\drivers\kltap.sys [55592 2020-10-21] (AnchorFree Inc -> The OpenVPN Project)
R0 klupd_klif_arkmon; C:\Windows\System32\Drivers\klupd_klif_arkmon.sys [263888 2021-05-12] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S3 klupd_klif_klark; C:\Windows\System32\Drivers\klupd_klif_klark.sys [309104 2021-05-12] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R0 klupd_klif_klbg; C:\Windows\System32\Drivers\klupd_klif_klbg.sys [115744 2021-05-12] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klupd_klif_mark; C:\Windows\System32\Drivers\klupd_klif_mark.sys [224880 2021-05-12] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [153400 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [250168 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S3 KMWDFILTER; C:\Windows\System32\drivers\KMWDFILTER.sys [30208 2009-04-29] (MLK Technologies Limited -> Windows (R) Codename Longhorn DDK provider)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [300856 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R2 LGHUBTemperatureService; C:\Program Files\LGHUB\logi_core_temp.sys [22864 2021-05-12] (Logitech Inc -> Logitech)
R3 logi_joy_bus_enum; C:\Windows\system32\drivers\logi_joy_bus_enum.sys [37200 2021-05-09] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\Windows\system32\drivers\logi_joy_vir_hid.sys [25928 2021-05-09] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\Windows\system32\drivers\logi_joy_xlcore.sys [66896 2021-05-09] (Logitech Inc -> Logitech)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49560 2021-05-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [421088 2021-05-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [72928 2021-05-12] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-05-18 14:01 - 2021-05-18 14:01 - 000000000 ____D C:\FRST
2021-05-18 13:53 - 2021-05-18 13:57 - 000003126 _____ C:\Windows\system32\Tasks\AMDInstallLauncher
2021-05-18 13:53 - 2021-05-18 13:53 - 000002620 _____ C:\Windows\system32\Tasks\AMDRyzenMasterSDKTask
2021-05-18 13:53 - 2021-05-18 13:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Software
2021-05-18 13:53 - 2021-05-18 13:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Link For Windows
2021-05-18 13:53 - 2021-05-18 13:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Bug Report Tool
2021-05-18 13:52 - 2021-04-19 20:52 - 001865864 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2021-05-18 13:52 - 2021-04-19 20:52 - 001865864 _____ C:\Windows\system32\vulkaninfo.exe
2021-05-18 13:52 - 2021-04-19 20:52 - 001446528 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2021-05-18 13:52 - 2021-04-19 20:52 - 001446528 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2021-05-18 13:52 - 2021-04-19 20:52 - 001101728 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 001101728 _____ C:\Windows\system32\vulkan-1.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000954912 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000954912 _____ C:\Windows\SysWOW64\vulkan-1.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000744584 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Rapidfire64.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000628872 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\Rapidfire.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000504472 _____ C:\Windows\system32\GameManager64.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000500888 _____ C:\Windows\system32\dgtrayicon.exe
2021-05-18 13:52 - 2021-04-19 20:52 - 000440440 _____ C:\Windows\system32\EEURestart.exe
2021-05-18 13:52 - 2021-04-19 20:52 - 000387736 _____ C:\Windows\SysWOW64\GameManager32.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000194688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000174224 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000164496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000150168 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000098440 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mcl64.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000083080 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mcl32.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000054408 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\RapidFireServer64.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000051328 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\RapidFireServer.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 005808792 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amfrt64.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 005528200 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amfrt32.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 001510024 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiacm64.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000829080 _____ (AMD) C:\Windows\system32\atieclxx.exe
2021-05-18 13:52 - 2021-04-19 20:51 - 000476320 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000464040 _____ C:\Windows\system32\atieah64.exe
2021-05-18 13:52 - 2021-04-19 20:51 - 000359584 _____ C:\Windows\SysWOW64\atieah32.exe
2021-05-18 13:52 - 2021-04-19 20:51 - 000354448 _____ C:\Windows\system32\clinfo.exe
2021-05-18 13:52 - 2021-04-19 20:51 - 000253080 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000220840 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000190112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000174752 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000174240 _____ (AMD) C:\Windows\system32\atimuixx.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000166376 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000148632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000133280 _____ C:\Windows\system32\atidxx64.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000115360 _____ C:\Windows\SysWOW64\atidxx32.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000077960 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ati2erec.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000027888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\detoured.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000027888 _____ (Microsoft Corporation) C:\Windows\system32\detoured.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 081591440 _____ C:\Windows\system32\amd_comgr.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 072489608 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdhip64.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 067170960 _____ C:\Windows\SysWOW64\amd_comgr32.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000948872 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdlvr64.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000776320 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdlvr32.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000474248 _____ C:\Windows\system32\amdlogum.exe
2021-05-18 13:52 - 2021-04-19 20:50 - 000210144 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdihk64.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000177680 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdihk32.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000157832 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000143496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdxc64.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000139576 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000138904 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000123544 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdxc32.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000117280 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 001708432 _____ (AMD) C:\Windows\system32\amf-mft-mjpeg-decoder64.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 001384944 _____ (AMD) C:\Windows\SysWOW64\amf-mft-mjpeg-decoder32.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 000559704 _____ C:\Windows\system32\amdmiracast.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 000497288 _____ C:\Windows\system32\amdgfxinfo64.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 000387712 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 000145304 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 000139576 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 000129464 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 000117296 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2021-05-18 13:52 - 2021-04-19 20:19 - 059070488 _____ C:\Windows\system32\amdxc64.so
2021-05-18 13:52 - 2021-04-19 20:19 - 003471376 _____ C:\Windows\SysWOW64\atiumdva.cap
2021-05-18 13:52 - 2021-04-19 20:19 - 003437632 _____ C:\Windows\system32\atiumd6a.cap
2021-05-18 13:52 - 2021-04-19 20:19 - 000557888 _____ C:\Windows\SysWOW64\atiapfxx.blb
2021-05-18 13:52 - 2021-04-19 20:19 - 000557888 _____ C:\Windows\system32\atiapfxx.blb
2021-05-16 18:09 - 2021-05-16 18:09 - 000002322 _____ C:\ProgramData\Plocha\ToneMaker 1.lnk
2021-05-16 18:09 - 2021-05-16 18:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bloody
2021-05-16 18:09 - 2021-05-16 18:09 - 000000000 ____D C:\Program Files (x86)\BloodyToneMaker
2021-05-15 07:42 - 2021-05-15 07:57 - 000000256 _____ C:\Users\norst\AppData\LocalLow\rbxcsettings.rbx
2021-05-15 07:42 - 2021-05-15 07:47 - 000000000 ____D C:\Users\norst\AppData\Local\Roblox
2021-05-15 07:42 - 2021-05-15 07:43 - 000000000 ____D C:\Users\norst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2021-05-15 07:42 - 2021-05-15 07:42 - 001659904 _____ (Roblox Corporation) C:\Users\norst\Downloads\RobloxPlayerLauncher.exe
2021-05-14 20:30 - 2021-05-14 20:30 - 000000000 ___SH C:\Users\Public\Shared Files
2021-05-14 20:24 - 2021-05-14 20:24 - 000000000 ____D C:\Users\norst\AppData\Local\FortniteGame
2021-05-14 20:24 - 2021-05-14 20:24 - 000000000 ____D C:\Users\norst\AppData\Local\CrashReportClient
2021-05-14 19:06 - 2021-05-16 18:55 - 000000000 ____D C:\Users\norst\AppData\Roaming\TS3Client
2021-05-14 19:06 - 2021-05-14 19:06 - 090699776 _____ (TeamSpeak Systems GmbH) C:\Users\norst\Downloads\TeamSpeak3-Client-win64-3.5.6.exe
2021-05-14 19:06 - 2021-05-14 19:06 - 000001008 _____ C:\ProgramData\Plocha\TeamSpeak 3 Client.lnk
2021-05-14 19:06 - 2021-05-14 19:06 - 000000970 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk
2021-05-14 19:06 - 2021-05-14 19:06 - 000000000 ____D C:\Users\norst\AppData\Local\TeamSpeak 3
2021-05-14 19:06 - 2021-05-14 19:06 - 000000000 ____D C:\Program Files\TeamSpeak 3 Client
2021-05-14 13:12 - 2021-05-14 13:12 - 000000000 ____D C:\Users\norst\AppData\LocalLow\SteelRaven7
2021-05-14 08:57 - 2021-05-14 08:57 - 000000000 ____D C:\Windows\system32\Tasks\Agent Activation Runtime
2021-05-13 18:58 - 2021-05-14 20:24 - 000000000 ____D C:\Users\norst\AppData\Roaming\EasyAntiCheat
2021-05-13 18:53 - 2021-05-14 20:24 - 000000000 ____D C:\Users\norst\AppData\Local\NVIDIA Corporation
2021-05-13 18:52 - 2021-05-14 20:24 - 000000000 ____D C:\Users\norst\AppData\Local\UnrealEngine
2021-05-13 18:52 - 2021-05-13 18:52 - 000000000 ____D C:\Users\norst\AppData\Local\UnrealEngineLauncher
2021-05-13 18:52 - 2021-05-13 18:52 - 000000000 ____D C:\Users\norst\AppData\Local\EpicGamesLauncher
2021-05-13 18:51 - 2021-05-14 21:46 - 000000000 ____D C:\ProgramData\Epic
2021-05-13 18:51 - 2021-05-13 18:51 - 056791040 _____ C:\Users\norst\Downloads\EpicInstaller-12.1.7-a31bf7fcdd1e42c481f9daa5cd27f3dd.msi
2021-05-13 18:51 - 2021-05-13 18:51 - 000000789 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2021-05-13 15:17 - 2021-05-13 15:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky VPN
2021-05-13 15:03 - 2021-05-13 15:03 - 000000000 ____D C:\Users\norst\AppData\Local\PeerDistRepub
2021-05-13 11:14 - 2021-05-13 11:14 - 000000000 ____D C:\Users\norst\AppData\LocalLow\OldBlood Productions
2021-05-13 11:08 - 2021-05-14 13:11 - 000000000 ____D C:\Users\norst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2021-05-12 17:13 - 2021-05-13 18:58 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2021-05-12 17:13 - 2021-05-12 17:13 - 000000000 ___HD C:\Program Files\Common Files\EAInstaller
2021-05-12 17:13 - 2021-05-12 17:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apex Legends
2021-05-12 16:38 - 2021-05-18 13:57 - 000003078 _____ C:\Windows\system32\Tasks\AMDLinkUpdate
2021-05-12 16:38 - 2021-05-18 13:53 - 000003488 _____ C:\Windows\system32\Tasks\ModifyLinkUpdate
2021-05-12 16:38 - 2021-05-18 13:53 - 000003160 _____ C:\Windows\system32\Tasks\StartCN
2021-05-12 16:38 - 2021-05-18 13:53 - 000003080 _____ C:\Windows\system32\Tasks\StartDVR
2021-05-12 16:38 - 2021-04-13 19:00 - 002261024 _____ (AMD Inc.) C:\Windows\SysWOW64\AMDBugReportTool.exe
2021-05-12 16:35 - 2021-05-18 13:51 - 000000000 ____D C:\Users\norst\AppData\Local\AMD_Common
2021-05-12 16:35 - 2021-05-12 16:40 - 000000000 ____D C:\ProgramData\AMD
2021-05-12 16:34 - 2021-05-12 16:34 - 035328832 _____ (AMD Inc.) C:\Users\norst\Downloads\radeon-software-adrenalin-2020-21.5.1-minimalsetup-210505_web.exe
2021-05-12 16:18 - 2021-05-12 16:46 - 000000000 ____D C:\Program Files (x86)\Origin Games
2021-05-12 16:16 - 2021-05-05 15:14 - 000108056 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\amdkmpfd.sys
2021-05-12 16:07 - 2021-05-12 16:07 - 000000000 ____D C:\Users\norst\AppData\Local\Steam
2021-05-12 16:07 - 2021-05-12 16:07 - 000000000 ____D C:\Users\norst\AppData\Local\CEF
2021-05-12 16:06 - 2021-05-12 16:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2021-05-12 16:05 - 2021-05-12 16:05 - 001770744 _____ C:\Users\norst\Downloads\SteamSetup.exe
2021-05-12 16:03 - 2021-05-12 17:50 - 000000000 ____D C:\ProgramData\Electronic Arts
2021-05-12 16:02 - 2021-05-18 13:57 - 000000000 ____D C:\Users\norst\AppData\Roaming\Origin
2021-05-12 16:02 - 2021-05-18 13:57 - 000000000 ____D C:\Users\norst\AppData\Local\Origin
2021-05-12 16:02 - 2021-05-18 13:57 - 000000000 ____D C:\ProgramData\Origin
2021-05-12 16:02 - 2021-05-12 16:02 - 000000000 ____D C:\Users\norst\.QtWebEngineProcess
2021-05-12 16:02 - 2021-05-12 16:02 - 000000000 ____D C:\Users\norst\.Origin
2021-05-12 16:02 - 2021-05-12 16:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2021-05-12 16:01 - 2021-05-12 16:02 - 063661072 _____ (Electronic Arts) C:\Users\norst\Downloads\OriginThinSetup.exe
2021-05-12 15:54 - 2021-05-18 13:57 - 000000000 ____D C:\Users\norst\AppData\Roaming\LGHUB
2021-05-12 15:54 - 2021-05-18 13:57 - 000000000 ____D C:\Users\norst\AppData\Local\LGHUB
2021-05-12 15:54 - 2021-05-12 15:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2021-05-12 15:54 - 2021-05-12 15:54 - 000000000 ____D C:\ProgramData\Logishrd
2021-05-12 15:53 - 2021-05-12 15:54 - 000000000 ____D C:\ProgramData\LGHUB
2021-05-12 15:53 - 2021-05-12 15:54 - 000000000 ____D C:\Program Files\LGHUB
2021-05-12 15:53 - 2021-05-12 15:53 - 041148832 _____ (Logitech, Inc.) C:\Users\norst\Downloads\lghub_installer.exe
2021-05-12 15:50 - 2021-05-12 15:48 - 045160768 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2021-05-12 15:50 - 2021-05-12 15:48 - 006437368 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2021-05-12 15:50 - 2021-05-12 15:48 - 002877104 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2021-05-12 15:48 - 2021-05-12 15:50 - 000000000 ___HD C:\Program Files (x86)\Temp
2021-05-12 15:47 - 2021-05-12 15:50 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2021-05-12 15:47 - 2021-05-12 15:48 - 000000000 ____D C:\Program Files (x86)\Realtek
2021-05-12 15:47 - 2021-05-12 15:46 - 001147352 _____ (Realtek ) C:\Windows\system32\Drivers\rt640x64.sys
2021-05-12 15:42 - 2021-05-12 15:42 - 000000000 ____D C:\Users\norst\AppData\Local\RadeonInstaller
2021-05-12 15:41 - 2021-05-12 15:41 - 011144581 _____ C:\Users\norst\Downloads\realtek_pcielan_w10.zip
2021-05-12 15:40 - 2021-05-12 15:40 - 052283830 _____ C:\Users\norst\Downloads\realtek_audio_R.zip
2021-05-12 15:38 - 2021-05-12 15:39 - 585236501 _____ C:\Users\norst\Downloads\amd_vga_driver.zip
2021-05-12 15:33 - 2021-05-12 16:40 - 000000000 ____D C:\Users\norst\AppData\Local\cache
2021-05-12 15:33 - 2021-05-12 15:33 - 000000000 ____D C:\Users\norst\AppData\Roaming\AMD
2021-05-12 15:33 - 2021-05-12 15:33 - 000000000 ____D C:\Users\norst\AppData\Local\setup
2021-05-12 15:33 - 2021-05-12 15:33 - 000000000 ____D C:\Program Files (x86)\AMD
2021-05-12 15:32 - 2021-05-18 13:50 - 000000000 ____D C:\AMD
2021-05-12 15:32 - 2021-05-13 18:53 - 000000000 ____D C:\ProgramData\Package Cache
2021-05-12 15:32 - 2021-05-12 15:32 - 051206789 _____ C:\Users\norst\Downloads\amd_chipset_drivers_am4_tr4.zip
2021-05-12 15:32 - 2021-05-12 15:32 - 000000000 ____D C:\Users\norst\Downloads\amd_chipset_drivers_am4_tr4
2021-05-12 15:31 - 2021-05-12 15:31 - 001124520 _____ C:\Users\norst\Downloads\AM4_RAID_Driver_WT.zip
2021-05-12 15:19 - 2021-05-12 15:19 - 000309104 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_klark.sys
2021-05-12 15:16 - 2021-05-12 15:16 - 000263888 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_arkmon.sys
2021-05-12 15:16 - 2021-05-12 15:16 - 000224880 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_mark.sys
2021-05-12 15:16 - 2021-05-12 15:16 - 000115744 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_klbg.sys
2021-05-12 15:16 - 2021-05-12 15:16 - 000003392 _____ C:\Windows\system32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}
2021-05-12 15:16 - 2021-05-12 15:16 - 000000000 ____D C:\Program Files\Common Files\AV
2021-05-12 15:15 - 2021-05-17 16:00 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2021-05-12 15:15 - 2021-05-13 15:17 - 000000000 ____D C:\Program Files (x86)\Kaspersky Lab
2021-05-12 15:15 - 2021-05-12 15:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Total Security
2021-05-12 15:15 - 2020-10-21 23:12 - 000110176 _____ (Kaspersky Lab ZAO) C:\Windows\system32\klfphc.dll
2021-05-12 15:15 - 2020-10-21 23:11 - 001025336 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klif.sys
2021-05-12 15:15 - 2020-10-21 23:11 - 000523576 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klflt.sys
2021-05-12 15:13 - 2021-05-12 15:13 - 002812640 _____ (Kaspersky) C:\Users\norst\Downloads\kts20.0.14.1085abccs_20943.exe
2021-05-12 15:13 - 2021-05-12 15:13 - 000000000 ____D C:\ProgramData\Kaspersky Lab Setup Files
2021-05-12 15:04 - 2021-05-12 15:04 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2021-05-12 15:04 - 2021-05-12 15:04 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2021-05-12 15:04 - 2021-05-12 15:04 - 001823816 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2021-05-12 15:04 - 2021-05-12 15:04 - 001687040 _____ C:\Windows\system32\libcrypto.dll
2021-05-12 15:04 - 2021-05-12 15:04 - 001393504 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2021-05-12 15:04 - 2021-05-12 15:04 - 001314120 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2021-05-12 15:04 - 2021-05-12 15:04 - 001163776 _____ C:\Windows\system32\MBR2GPT.EXE
2021-05-12 15:04 - 2021-05-12 15:04 - 000700928 _____ C:\Windows\system32\FsNVSDeviceSource.dll
2021-05-12 15:04 - 2021-05-12 15:04 - 000165888 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe
2021-05-12 15:04 - 2021-05-12 15:04 - 000157184 _____ C:\Windows\system32\uwfcsp.dll
2021-05-12 15:04 - 2021-05-12 15:04 - 000153600 _____ C:\Windows\system32\uwfcfgmgmt.dll
2021-05-12 15:04 - 2021-05-12 15:04 - 000060928 _____ C:\Windows\system32\runexehelper.exe
2021-05-12 15:04 - 2021-05-12 15:04 - 000013312 _____ C:\Windows\system32\agentactivationruntimestarter.exe
2021-05-12 15:04 - 2021-05-12 15:04 - 000011351 _____ C:\Windows\system32\DrtmAuthTxt.wim
2021-05-12 15:01 - 2021-05-12 15:01 - 000002319 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-05-12 15:00 - 2021-05-12 15:14 - 000000000 ____D C:\Users\norst\AppData\Local\Google
2021-05-12 15:00 - 2021-05-12 15:00 - 001310832 _____ (Google LLC) C:\Users\norst\Downloads\ChromeSetup.exe
2021-05-12 15:00 - 2021-05-12 15:00 - 001310832 _____ (Google LLC) C:\Users\norst\Downloads\ChromeSetup (1).exe
2021-05-12 15:00 - 2021-05-12 15:00 - 000003472 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2021-05-12 15:00 - 2021-05-12 15:00 - 000003348 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2021-05-12 15:00 - 2021-05-12 15:00 - 000000000 ____D C:\Program Files\Google
2021-05-12 15:00 - 2021-05-12 15:00 - 000000000 ____D C:\Program Files (x86)\Google
2021-05-12 14:58 - 2021-05-12 14:58 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-05-12 14:57 - 2021-05-12 14:58 - 000000000 ____D C:\Windows\system32\MRT
2021-05-12 14:54 - 2021-05-12 14:54 - 000000000 ____D C:\Users\norst\AppData\Local\OneDrive
2021-05-12 14:50 - 2021-05-12 14:50 - 000000000 ____D C:\Users\norst\AppData\Local\Comms
2021-05-12 14:47 - 2021-05-12 14:47 - 000000000 ___HD C:\$WinREAgent
2021-05-12 14:46 - 2021-05-12 16:31 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\Wondershare MediaServer
2021-05-12 14:46 - 2021-05-12 16:31 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\DAVAProject
2021-05-12 14:46 - 2021-05-12 16:31 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\Conqueror's Blade
2021-05-12 14:46 - 2021-05-12 16:31 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\Adobe
2021-05-12 14:46 - 2021-05-12 14:46 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\Wastelands-Interactive
2021-05-12 14:46 - 2021-05-12 14:46 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\Vlastní šablony Office
2021-05-12 14:46 - 2021-05-12 14:46 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\theHunter
2021-05-12 14:46 - 2021-05-12 14:46 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\Rockstar Games
2021-05-12 14:46 - 2021-05-12 14:46 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\Overwatch
2021-05-12 14:46 - 2021-05-12 14:46 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\My ISO Files
2021-05-12 14:46 - 2021-05-12 14:46 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\My Games
2021-05-12 14:46 - 2021-05-12 14:46 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\Mount&Blade Warband Savegames
2021-05-12 14:46 - 2020-09-20 19:20 - 000000121 ____R C:\Users\norst\OneDrive\Dokumenty\Poznámkový blok uživatele Jan.url
2021-05-11 23:29 - 2021-05-13 08:49 - 000000000 ____D C:\Users\norst\AppData\Local\PlaceholderTileLogoFolder
2021-05-11 23:29 - 2021-05-12 16:31 - 000000000 ___RD C:\Users\norst\OneDrive
2021-05-11 23:29 - 2021-05-11 23:29 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2021-05-11 23:28 - 2021-05-18 13:54 - 000000000 ____D C:\Users\norst\AppData\Local\AMD
2021-05-11 23:28 - 2021-05-11 23:28 - 000000000 ____D C:\Users\norst\AppData\Local\Publishers
2021-05-11 23:27 - 2021-05-18 13:57 - 000000000 ____D C:\Users\norst\AppData\LocalLow\AMD
2021-05-11 23:27 - 2021-05-14 09:09 - 000000000 ____D C:\Users\norst\AppData\Local\D3DSCache
2021-05-11 23:27 - 2021-05-13 15:03 - 000000000 ____D C:\Users\norst\AppData\Local\Packages
2021-05-11 23:27 - 2021-05-12 14:48 - 000000000 ____D C:\ProgramData\Packages
2021-05-11 23:27 - 2021-05-12 14:45 - 000000000 ____D C:\Users\norst\AppData\Local\ConnectedDevicesPlatform
2021-05-11 23:27 - 2021-05-11 23:29 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-05-11 23:27 - 2021-05-11 23:27 - 000000000 ___RD C:\Users\norst\3D Objects
2021-05-11 23:27 - 2021-05-11 23:27 - 000000000 ____D C:\Users\norst\AppData\Roaming\Adobe
2021-05-11 23:27 - 2021-05-11 23:27 - 000000000 ____D C:\Users\norst\AppData\Local\VirtualStore
2021-05-11 23:25 - 2021-05-12 16:02 - 000000000 ____D C:\Users\norst
2021-05-11 23:25 - 2021-05-11 23:25 - 000000020 ___SH C:\Users\norst\ntuser.ini
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\Šablony
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\Soubory cookie
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\Poslední
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\Okolní tiskárny
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\Okolní síť
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\Nabídka Start
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\Dokumenty
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\Data aplikací
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\AppData\Local\Data aplikací
2021-05-11 23:01 - 2021-05-18 13:47 - 001693136 _____ C:\Windows\system32\PerfStringBackup.INI
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\Šablony
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\Poslední
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\Okolní síť
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\Dokumenty
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\Data aplikací
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\ProgramData\Šablony
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\ProgramData\Plocha
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\ProgramData\Dokumenty
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\ProgramData\Data aplikací
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Documents and Settings
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 ____D C:\Windows\CSC
2021-05-11 22:50 - 2021-05-18 13:56 - 000065536 _____ C:\Windows\system32\spu_storage.bin
2021-05-11 22:50 - 2021-05-18 13:53 - 000000000 ____D C:\Program Files\AMD
2021-05-11 22:50 - 2021-05-11 22:50 - 000000000 ____D C:\ProgramData\HP
2021-05-11 22:49 - 2021-05-18 13:56 - 000008192 ___SH C:\DumpStack.log.tmp
2021-05-11 22:49 - 2021-05-18 13:56 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2021-05-11 22:49 - 2021-05-18 13:40 - 000000000 ____D C:\Windows\system32\SleepStudy
2021-05-11 22:49 - 2021-05-18 13:33 - 000000000 ____D C:\Windows\system32\AMD
2021-05-11 22:49 - 2021-05-15 17:43 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-05-11 22:49 - 2021-05-12 15:48 - 000000000 ____D C:\Windows\SysWOW64\RTCOM
2021-05-11 22:49 - 2021-05-12 15:48 - 000000000 ____D C:\Windows\system32\DAX3
2021-05-11 22:49 - 2021-05-12 15:48 - 000000000 ____D C:\Windows\system32\DAX2
2021-05-11 22:49 - 2021-05-12 15:08 - 000258096 _____ C:\Windows\system32\FNTCACHE.DAT
2021-05-11 22:49 - 2021-05-12 15:04 - 000000000 ____D C:\Windows\system32\Drivers\wd
2021-05-11 22:49 - 2021-05-11 22:50 - 000003584 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-05-11 22:49 - 2021-05-11 22:50 - 000003460 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-05-11 22:49 - 2021-05-11 22:49 - 000000000 ____H C:\ProgramData\DP45977C.lfl
2021-05-11 22:49 - 2021-05-11 22:49 - 000000000 ____D C:\Windows\ServiceProfiles
2021-05-11 22:49 - 2021-05-11 22:49 - 000000000 _____ C:\Windows\system32\fpfftResultsFile.txt
2021-05-11 21:25 - 2021-05-11 22:57 - 000000000 ____D C:\Windows\Panther
2021-05-11 21:22 - 2021-05-11 21:22 - 000000000 ____D C:\ProgramData\ssh
2021-05-11 21:19 - 2021-05-11 21:19 - 004898144 _____ (Microsoft Corporation) C:\Windows\system32\rtmpltfm.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 003860832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpltfm.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 001354080 _____ (Microsoft Corporation) C:\Windows\system32\rtmpal.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 001091936 _____ (Microsoft Corporation) C:\Windows\system32\rtmcodecs.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 001032544 _____ (Microsoft Corporation) C:\Windows\system32\ortcengine.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000980320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpal.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000915296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmcodecs.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000732000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ortcengine.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000729600 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx
2021-05-11 21:19 - 2021-05-11 21:19 - 000611952 _____ C:\Windows\SysWOW64\TextShaping.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000595968 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000581120 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr
2021-05-11 21:19 - 2021-05-11 21:19 - 000575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhctrl.ocx
2021-05-11 21:19 - 2021-05-11 21:19 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr
2021-05-11 21:19 - 2021-05-11 21:19 - 000480256 _____ C:\Windows\system32\AssignedAccessCsp.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000469504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000455680 _____ C:\Windows\SysWOW64\WindowManagementAPI.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000446976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000422912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2021-05-11 21:19 - 2021-05-11 21:19 - 000330752 _____ C:\Windows\SysWOW64\ssdm.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000304128 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2021-05-11 21:19 - 2021-05-11 21:19 - 000266240 _____ C:\Windows\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000266240 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2021-05-11 21:19 - 2021-05-11 21:19 - 000240640 _____ C:\Windows\SysWOW64\CoreMas.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000235520 _____ C:\Windows\SysWOW64\HeatCore.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000234496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax
2021-05-11 21:19 - 2021-05-11 21:19 - 000221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax
2021-05-11 21:19 - 2021-05-11 21:19 - 000182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000178688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000170496 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax
2021-05-11 21:19 - 2021-05-11 21:19 - 000138056 _____ C:\Windows\system32\HvsiManagementApi.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBICodec.ax
2021-05-11 21:19 - 2021-05-11 21:19 - 000112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\activeds.tlb
2021-05-11 21:19 - 2021-05-11 21:19 - 000101704 _____ C:\Windows\SysWOW64\HvsiManagementApi.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000100864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncpa.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000095744 _____ C:\Windows\system32\VirtualMonitorManager.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2021-05-11 21:19 - 2021-05-11 21:19 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2021-05-11 21:19 - 2021-05-11 21:19 - 000067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000067072 _____ C:\Windows\system32\BWContextHandler.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000056672 _____ (Microsoft Corporation) C:\Windows\system32\rtmmvrortc.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000055376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmmvrortc.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000053760 _____ C:\Windows\SysWOW64\BWContextHandler.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000047472 _____ C:\Windows\SysWOW64\umpdc.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000045880 _____ C:\Windows\system32\HvSocket.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000039936 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msacm32.drv
2021-05-11 21:19 - 2021-05-11 21:19 - 000010752 _____ C:\Windows\SysWOW64\agentactivationruntimestarter.exe
2021-05-11 21:18 - 2021-05-11 21:18 - 004227116 _____ C:\Windows\system32\DefaultHrtfs.bin
2021-05-11 21:18 - 2021-05-11 21:18 - 002260992 _____ C:\Windows\system32\TextInputMethodFormatter.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 002260480 _____ (The ICU Project) C:\Windows\system32\icu.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 002254336 _____ C:\Windows\system32\dwmscene.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000707016 _____ C:\Windows\system32\TextShaping.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000643072 _____ C:\Windows\system32\WindowManagementAPI.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000562688 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2021-05-11 21:18 - 2021-05-11 21:18 - 000544768 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl
2021-05-11 21:18 - 2021-05-11 21:18 - 000455168 _____ C:\Windows\system32\ssdm.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000363520 _____ C:\Windows\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000306688 _____ C:\Windows\system32\HeatCore.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000287232 _____ C:\Windows\system32\CoreMas.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000266752 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
2021-05-11 21:18 - 2021-05-11 21:18 - 000243200 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2021-05-11 21:18 - 2021-05-11 21:18 - 000238592 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl
2021-05-11 21:18 - 2021-05-11 21:18 - 000231248 _____ C:\Windows\system32\containerdevicemanagement.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000197632 _____ C:\Windows\system32\IHDS.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000190976 _____ C:\Windows\system32\BthpanContextHandler.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000152064 _____ C:\Windows\system32\EoAExperiences.exe
2021-05-11 21:18 - 2021-05-11 21:18 - 000112128 _____ (Microsoft Corporation) C:\Windows\system32\activeds.tlb
2021-05-11 21:18 - 2021-05-11 21:18 - 000102912 _____ (Microsoft Corporation) C:\Windows\system32\ncpa.cpl
2021-05-11 21:18 - 2021-05-11 21:18 - 000091136 _____ C:\Windows\system32\Drivers\cimfs.sys
2021-05-11 21:18 - 2021-05-11 21:18 - 000089088 _____ C:\Windows\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000074240 _____ C:\Windows\system32\rdsxvmaudio.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000073216 _____ C:\Windows\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000064552 _____ C:\Windows\system32\umpdc.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000048640 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\msacm32.drv
2021-05-11 21:18 - 2021-05-11 21:18 - 000029696 _____ (The ICU Project) C:\Windows\system32\icuuc.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000025088 _____ (The ICU Project) C:\Windows\system32\icuin.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000001370 _____ C:\Windows\system32\ThirdPartyNoticesBySHS.txt
2021-05-11 21:11 - 2021-05-11 21:11 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer
2021-05-11 21:11 - 2021-05-11 21:11 - 000000000 ____D C:\Program Files\Reference Assemblies
2021-05-11 21:11 - 2021-05-11 21:11 - 000000000 ____D C:\Program Files\MSBuild
2021-05-11 21:11 - 2021-05-11 21:11 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2021-05-11 21:11 - 2021-05-11 21:11 - 000000000 ____D C:\Program Files (x86)\MSBuild
2021-05-11 21:05 - 2021-05-11 21:05 - 000008192 _____ C:\Windows\system32\config\userdiff
2021-05-11 19:38 - 2021-05-11 23:30 - 000000000 ___HD C:\$SysReset
2021-05-09 09:04 - 2021-05-09 09:04 - 000066896 _____ (Logitech) C:\Windows\system32\Drivers\logi_joy_xlcore.sys
2021-05-09 09:04 - 2021-05-09 09:04 - 000037200 _____ (Logitech) C:\Windows\system32\Drivers\logi_joy_bus_enum.sys
2021-05-09 09:04 - 2021-05-09 09:04 - 000025928 _____ (Logitech) C:\Windows\system32\Drivers\logi_joy_vir_hid.sys
2021-05-07 19:11 - 2021-05-05 15:14 - 001748800 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2021-05-07 19:11 - 2021-05-05 15:14 - 001331520 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2021-05-07 19:11 - 2021-05-05 15:14 - 001331520 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll
2021-05-07 19:11 - 2021-04-30 16:34 - 000204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2021-05-07 19:11 - 2021-04-30 16:34 - 000204952 _____ C:\Windows\system32\ativvsvl.dat
2021-05-07 19:11 - 2021-04-30 16:34 - 000157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2021-05-07 19:11 - 2021-04-30 16:34 - 000157144 _____ C:\Windows\system32\ativvsva.dat
2021-05-07 19:11 - 2020-12-08 22:15 - 000128048 _____ C:\Windows\system32\kapp_ci.sbin
2021-05-07 19:11 - 2020-12-02 08:56 - 000012344 _____ C:\Windows\system32\brandingRSX.bmp
2021-05-07 19:11 - 2020-10-22 06:36 - 000012344 _____ C:\Windows\system32\brandingWS_RSX.bmp
2021-05-07 19:11 - 2020-08-05 09:50 - 000011014 _____ C:\Windows\system32\atiacmLocalisation.ini
2021-05-07 19:11 - 2020-07-17 20:29 - 000076237 _____ C:\Windows\system32\AMDKernelEvents.man
2021-05-07 19:11 - 2020-05-22 17:23 - 000000822 _____ C:\Windows\system32\branding.bmp
2021-05-07 19:11 - 2019-01-12 00:27 - 000121168 _____ C:\Windows\system32\kapp_si.sbin
2021-05-07 19:11 - 2016-09-02 17:24 - 000154384 _____ C:\Windows\system32\samu_krnl_ci.sbin
2021-05-07 19:11 - 2013-12-12 15:53 - 000138832 _____ C:\Windows\system32\samu_krnl_isv_ci.sbin
2021-04-23 18:56 - 2021-01-20 00:35 - 000034528 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\AMDPCIDev.sys
2021-04-23 18:46 - 2021-03-25 13:35 - 000517560 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdfendrsr.exe
2021-04-23 18:46 - 2021-03-25 13:35 - 000116432 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\amdfendr.sys
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-05-18 13:57 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-05-18 13:56 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2021-05-18 13:56 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2021-05-18 13:53 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2021-05-18 13:47 - 2019-12-07 16:43 - 000716726 _____ C:\Windows\system32\perfh005.dat
2021-05-18 13:47 - 2019-12-07 16:43 - 000144904 _____ C:\Windows\system32\perfc005.dat
2021-05-18 13:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\LiveKernelReports
2021-05-17 17:02 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-05-17 17:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2021-05-14 20:30 - 2019-12-07 11:14 - 000000000 __SHD C:\Users\Public\Libraries
2021-05-12 16:03 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2021-05-12 15:52 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2021-05-12 15:15 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2021-05-12 15:15 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM
2021-05-12 15:10 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2021-05-12 15:07 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2021-05-12 15:07 - 2019-12-07 16:44 - 000000000 ____D C:\Windows\system32\OpenSSH
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\setup
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\oobe
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lt-LT
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lt-LT
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\DiagTrack
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2021-05-12 15:06 - 2019-12-07 16:47 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\OEMDefaultAssociations.dll
2021-05-12 15:06 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2021-05-12 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender
2021-05-12 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\appcompat
2021-05-11 23:30 - 2019-12-07 11:14 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2021-05-11 23:25 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2021-05-11 22:58 - 2019-12-07 16:45 - 000000000 ____D C:\Windows\system32\FxsTmp
2021-05-11 22:57 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT
2021-05-11 22:50 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\spool
2021-05-11 22:50 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate
2021-05-11 21:22 - 2019-12-07 16:47 - 000000000 ___SD C:\Windows\system32\AppV
2021-05-11 21:22 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-05-11 21:22 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\SysWOW64\F12
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\UNP
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\F12
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\PerceptionSimulation
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\migwiz
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Keywords
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Com
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\AdvancedInstallers
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Sysprep
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\ShellExperiences
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lv-LV
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Keywords
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\et-EE
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\es-MX
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Com
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\appraiser
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\AdvancedInstallers
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellComponents
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\IME
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2021-05-11 21:21 - 2019-12-07 16:47 - 000020908 _____ C:\Windows\system32\OEMDefaultAssociations.xml
2021-05-11 21:11 - 2019-12-07 16:45 - 000000000 ____D C:\Windows\OCR
2021-05-11 21:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\MUI
2021-05-11 21:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\MUI
2021-05-11 21:10 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\SysWOW64\winrm
2021-05-11 21:10 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\SysWOW64\WCN
2021-05-11 21:10 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\SysWOW64\slmgr
2021-05-11 21:10 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts
2021-05-11 21:10 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\system32\winrm
2021-05-11 21:10 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\system32\WCN
2021-05-11 21:10 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\system32\slmgr
2021-05-11 21:10 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\system32\Printing_Admin_Scripts
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-05-2021
Ran by norst (administrator) on DESKTOP-G9081FQ (Micro-Star International Co., Ltd MS-7B86) (18-05-2021 14:01:08)
Running from C:\Users\norst\OneDrive\Plocha
Loaded Profiles: norst
Platform: Windows 10 Pro Version 20H2 19042.985 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\Bloody ToneMaker1.exe
() [File not signed] C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\SDK\CM_LibraryIO.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0366490.inf_amd64_c0dea8a43cb81731\B366217\atieclxx.exe
(Advanced Micro Devices, Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0366490.inf_amd64_c0dea8a43cb81731\B366217\atiesrxx.exe
(Advanced Micro Devices, Inc.) [File not signed] C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe
(Electronic Arts, Inc. -> ) D:\Origin\QtWebEngineProcess.exe <2>
(Electronic Arts, Inc. -> Electronic Arts) D:\Origin\Origin.exe
(Electronic Arts, Inc. -> Electronic Arts) D:\Origin\OriginClientService.exe
(Electronic Arts, Inc. -> Electronic Arts) D:\Origin\OriginWebHelperService.exe
(Epic Games Inc. -> Epic Games, Inc.) D:\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2>
(Epic Games Inc. -> Epic Games, Inc.) D:\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <13>
(Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.2\avp.exe
(Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.2\avpui.exe
(Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksde.exe
(Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksdeui.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub.exe <3>
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.549981c3f5f10_2.2103.17603.0_x64__8wekyb3d8bbwe\Cortana.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowsstore_12104.1001.1.0_x64__8wekyb3d8bbwe\WinStore.App.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wbem\WMIADAP.exe
(Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_f31d3fd59f245137\RtkAudUService64.exe <2>
(Valve -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(Valve -> Valve Corporation) D:\steam\bin\cef\cef.win7x64\steamwebhelper.exe <7>
(Valve -> Valve Corporation) D:\steam\steam.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_f31d3fd59f245137\RtkAudUService64.exe [1255264 2021-05-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-21-1109018477-935340851-3643946210-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\lghub.exe [123792288 2021-05-12] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-1109018477-935340851-3643946210-1001\...\Run: [EADM] => D:\Origin\Origin.exe [3144760 2021-05-12] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-1109018477-935340851-3643946210-1001\...\Run: [Steam] => D:\steam\steam.exe [4087528 2021-05-15] (Valve -> Valve Corporation)
HKU\S-1-5-21-1109018477-935340851-3643946210-1001\...\Run: [EpicGamesLauncher] => D:\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [33029600 2021-05-14] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-1109018477-935340851-3643946210-1001\...\Run: [BloodyToneMaker] => C:\Program Files (x86)\BloodyToneMaker\BloodyToneMaker\Bloody ToneMaker1.exe [8555008 2017-10-16] () [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\90.0.4430.212\Installer\chrmstp.exe [2021-05-12] (Google LLC -> Google LLC)
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {004B6DDD-CA27-4D3D-B59E-D28A01AF6F40} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1713952 2021-04-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {0CD6B31D-D74C-4718-BEE1-8E906F41A9C2} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1713952 2021-04-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {19FC12AB-53D6-44A8-8E8B-838F305484E6} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [62752 2021-04-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {2036C9EC-D22C-4FA5-9365-D2B4073B7A63} - System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} => C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe [791232 2021-05-12] (Kaspersky Lab -> AO Kaspersky Lab)
Task: {5F324CB9-C0F1-4D70-9897-02E7DBBDB655} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-05-12] (Google LLC -> Google LLC)
Task: {686A364B-46BE-4DBC-B60A-C3110519974F} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154456 2021-05-12] (Google LLC -> Google LLC)
Task: {8C8BA78E-1A44-4D3E-96F6-B4A62E44F8C2} - System32\Tasks\AMDRyzenMasterSDKTask => C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe [44544 2021-04-13] (Advanced Micro Devices, Inc.) [File not signed]
Task: {B4903267-67C9-4D18-882E-595D1005E783} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [268576 2021-04-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
Task: {BD20934B-19FF-4861-B2DE-6DC4D963AF5D} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1713952 2021-04-13] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{621e87a9-3514-4a0d-9ed1-3b834c3e8be8}: [DhcpNameServer] 192.168.0.1
Edge:
=======
Edge Profile: C:\Users\norst\AppData\Local\Microsoft\Edge\User Data\Default [2021-05-15]
Edge Extension: (Ochrana Kaspersky) - C:\Users\norst\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2021-05-14]
Edge HKU\S-1-5-21-1109018477-935340851-3643946210-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm]
FireFox:
========
FF HKLM\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.2\FFExt\light_plugin_firefox\addon.xpi => not found
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.2\FFExt\light_plugin_firefox\addon.xpi => not found
Chrome:
=======
CHR Profile: C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default [2021-05-18]
CHR Notifications: Default -> hxxps://meet.google.com
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR Extension: (Prezentace) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-05-12]
CHR Extension: (Dokumenty) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2021-05-12]
CHR Extension: (Disk Google) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-05-12]
CHR Extension: (YouTube) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-05-12]
CHR Extension: (Ochrana Kaspersky 20.0) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\elhpdacimkjpccooodognopfhbdgnpbk [2021-05-12]
CHR Extension: (Tabulky) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-05-12]
CHR Extension: (Dokumenty Google offline) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-05-12]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-05-12]
CHR Extension: (Gmail) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-05-12]
CHR Extension: (Chrome Media Router) - C:\Users\norst\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2021-05-12]
CHR HKLM\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm
CHR HKLM-x32\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AVP21.2; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.2\avp.exe [381928 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8901968 2021-05-13] (BattlEye Innovations e.K. -> )
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [818304 2021-05-13] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 klvssbridge64_21.2; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Total Security 21.2\x64\vssbridge64.exe [467352 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R2 KSDE5.3; C:\Program Files (x86)\Kaspersky Lab\Kaspersky VPN 5.3\ksde.exe [646520 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [10618272 2021-05-12] (Logitech Inc -> Logitech, Inc.)
R3 Origin Client Service; D:\Origin\OriginClientService.exe [2546776 2021-05-12] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; D:\Origin\OriginWebHelperService.exe [3486808 2021-05-12] (Electronic Arts, Inc. -> Electronic Arts)
R2 RtkAudioUniversalService; C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_f31d3fd59f245137\RtkAudUService64.exe [1255264 2021-05-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5393288 2021-05-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2103.7-0\NisSrv.exe [2624104 2021-05-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2103.7-0\MsMpEng.exe [128376 2021-05-12] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AMDSAFD; C:\Windows\System32\DriverStore\FileRepository\amdsafd.inf_amd64_8e2568524f674315\amdsafd.sys [100768 2021-03-29] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices)
R3 amdwddmg; C:\Windows\System32\DriverStore\FileRepository\u0366490.inf_amd64_c0dea8a43cb81731\B366217\amdkmdag.sys [82677888 2021-04-19] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\Windows\System32\drivers\amdxe.sys [62056 2020-07-27] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.)
R3 CMUAC; C:\Windows\system32\DRIVERS\Headset6400x1.SYS [387072 2013-10-03] (C-MEDIA ELECTRONICS INC. -> A4Tech Inc.)
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [251608 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klbackupdisk; C:\Windows\system32\DRIVERS\klbackupdisk.sys [110392 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [212280 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [127288 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [37496 2020-10-21] (Microsoft Windows Early Launch Anti-malware Publisher -> AO Kaspersky Lab)
R1 klflt; C:\Windows\system32\DRIVERS\klflt.sys [523576 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klgse; C:\Windows\System32\DRIVERS\klgse.sys [657696 2021-03-15] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klhk; C:\Windows\system32\DRIVERS\klhk.sys [1400600 2021-03-15] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klids; C:\ProgramData\Kaspersky Lab\AVP21.2\Bases\klids.sys [245304 2021-05-12] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [1025336 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klim6; C:\Windows\system32\DRIVERS\klim6.sys [95544 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [113464 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [113464 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [85288 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klpnpflt; C:\Windows\system32\DRIVERS\klpnpflt.sys [97080 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 kltap; C:\Windows\System32\drivers\kltap.sys [55592 2020-10-21] (AnchorFree Inc -> The OpenVPN Project)
R0 klupd_klif_arkmon; C:\Windows\System32\Drivers\klupd_klif_arkmon.sys [263888 2021-05-12] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S3 klupd_klif_klark; C:\Windows\System32\Drivers\klupd_klif_klark.sys [309104 2021-05-12] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R0 klupd_klif_klbg; C:\Windows\System32\Drivers\klupd_klif_klbg.sys [115744 2021-05-12] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R3 klupd_klif_mark; C:\Windows\System32\Drivers\klupd_klif_mark.sys [224880 2021-05-12] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [153400 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R1 klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [250168 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S3 KMWDFILTER; C:\Windows\System32\drivers\KMWDFILTER.sys [30208 2009-04-29] (MLK Technologies Limited -> Windows (R) Codename Longhorn DDK provider)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [300856 2020-10-21] (Kaspersky Lab JSC -> AO Kaspersky Lab)
R2 LGHUBTemperatureService; C:\Program Files\LGHUB\logi_core_temp.sys [22864 2021-05-12] (Logitech Inc -> Logitech)
R3 logi_joy_bus_enum; C:\Windows\system32\drivers\logi_joy_bus_enum.sys [37200 2021-05-09] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\Windows\system32\drivers\logi_joy_vir_hid.sys [25928 2021-05-09] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\Windows\system32\drivers\logi_joy_xlcore.sys [66896 2021-05-09] (Logitech Inc -> Logitech)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49560 2021-05-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [421088 2021-05-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [72928 2021-05-12] (Microsoft Windows -> Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-05-18 14:01 - 2021-05-18 14:01 - 000000000 ____D C:\FRST
2021-05-18 13:53 - 2021-05-18 13:57 - 000003126 _____ C:\Windows\system32\Tasks\AMDInstallLauncher
2021-05-18 13:53 - 2021-05-18 13:53 - 000002620 _____ C:\Windows\system32\Tasks\AMDRyzenMasterSDKTask
2021-05-18 13:53 - 2021-05-18 13:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Radeon Software
2021-05-18 13:53 - 2021-05-18 13:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Link For Windows
2021-05-18 13:53 - 2021-05-18 13:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Bug Report Tool
2021-05-18 13:52 - 2021-04-19 20:52 - 001865864 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2021-05-18 13:52 - 2021-04-19 20:52 - 001865864 _____ C:\Windows\system32\vulkaninfo.exe
2021-05-18 13:52 - 2021-04-19 20:52 - 001446528 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2021-05-18 13:52 - 2021-04-19 20:52 - 001446528 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2021-05-18 13:52 - 2021-04-19 20:52 - 001101728 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 001101728 _____ C:\Windows\system32\vulkan-1.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000954912 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000954912 _____ C:\Windows\SysWOW64\vulkan-1.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000744584 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Rapidfire64.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000628872 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\Rapidfire.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000504472 _____ C:\Windows\system32\GameManager64.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000500888 _____ C:\Windows\system32\dgtrayicon.exe
2021-05-18 13:52 - 2021-04-19 20:52 - 000440440 _____ C:\Windows\system32\EEURestart.exe
2021-05-18 13:52 - 2021-04-19 20:52 - 000387736 _____ C:\Windows\SysWOW64\GameManager32.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000194688 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantle64.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000174224 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mantleaxl64.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000164496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantle32.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000150168 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mantleaxl32.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000098440 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\mcl64.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000083080 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\mcl32.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000054408 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\RapidFireServer64.dll
2021-05-18 13:52 - 2021-04-19 20:52 - 000051328 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\RapidFireServer.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 005808792 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amfrt64.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 005528200 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amfrt32.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 001510024 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiacm64.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000829080 _____ (AMD) C:\Windows\system32\atieclxx.exe
2021-05-18 13:52 - 2021-04-19 20:51 - 000476320 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atidemgy.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000464040 _____ C:\Windows\system32\atieah64.exe
2021-05-18 13:52 - 2021-04-19 20:51 - 000359584 _____ C:\Windows\SysWOW64\atieah32.exe
2021-05-18 13:52 - 2021-04-19 20:51 - 000354448 _____ C:\Windows\system32\clinfo.exe
2021-05-18 13:52 - 2021-04-19 20:51 - 000253080 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atig6txx.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000220840 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atigktxx.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000190112 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\aticfx64.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000174752 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atisamu64.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000174240 _____ (AMD) C:\Windows\system32\atimuixx.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000166376 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\aticfx32.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000148632 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atisamu32.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000133280 _____ C:\Windows\system32\atidxx64.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000115360 _____ C:\Windows\SysWOW64\atidxx32.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000077960 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\ati2erec.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000027888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\detoured.dll
2021-05-18 13:52 - 2021-04-19 20:51 - 000027888 _____ (Microsoft Corporation) C:\Windows\system32\detoured.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 081591440 _____ C:\Windows\system32\amd_comgr.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 072489608 _____ (Advanced Micro Devices Inc.) C:\Windows\system32\amdhip64.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 067170960 _____ C:\Windows\SysWOW64\amd_comgr32.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000948872 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdlvr64.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000776320 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdlvr32.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000474248 _____ C:\Windows\system32\amdlogum.exe
2021-05-18 13:52 - 2021-04-19 20:50 - 000210144 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdihk64.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000177680 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\amdihk32.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000157832 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000143496 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdxc64.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000139576 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\atimpc64.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000138904 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000123544 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdxc32.dll
2021-05-18 13:52 - 2021-04-19 20:50 - 000117280 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\atimpc32.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 001708432 _____ (AMD) C:\Windows\system32\amf-mft-mjpeg-decoder64.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 001384944 _____ (AMD) C:\Windows\SysWOW64\amf-mft-mjpeg-decoder32.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 000559704 _____ C:\Windows\system32\amdmiracast.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 000497288 _____ C:\Windows\system32\amdgfxinfo64.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 000387712 _____ C:\Windows\SysWOW64\amdgfxinfo32.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 000145304 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdave64.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 000139576 _____ (Advanced Micro Devices, Inc. ) C:\Windows\system32\amdpcom64.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 000129464 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdave32.dll
2021-05-18 13:52 - 2021-04-19 20:49 - 000117296 _____ (Advanced Micro Devices, Inc. ) C:\Windows\SysWOW64\amdpcom32.dll
2021-05-18 13:52 - 2021-04-19 20:19 - 059070488 _____ C:\Windows\system32\amdxc64.so
2021-05-18 13:52 - 2021-04-19 20:19 - 003471376 _____ C:\Windows\SysWOW64\atiumdva.cap
2021-05-18 13:52 - 2021-04-19 20:19 - 003437632 _____ C:\Windows\system32\atiumd6a.cap
2021-05-18 13:52 - 2021-04-19 20:19 - 000557888 _____ C:\Windows\SysWOW64\atiapfxx.blb
2021-05-18 13:52 - 2021-04-19 20:19 - 000557888 _____ C:\Windows\system32\atiapfxx.blb
2021-05-16 18:09 - 2021-05-16 18:09 - 000002322 _____ C:\ProgramData\Plocha\ToneMaker 1.lnk
2021-05-16 18:09 - 2021-05-16 18:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bloody
2021-05-16 18:09 - 2021-05-16 18:09 - 000000000 ____D C:\Program Files (x86)\BloodyToneMaker
2021-05-15 07:42 - 2021-05-15 07:57 - 000000256 _____ C:\Users\norst\AppData\LocalLow\rbxcsettings.rbx
2021-05-15 07:42 - 2021-05-15 07:47 - 000000000 ____D C:\Users\norst\AppData\Local\Roblox
2021-05-15 07:42 - 2021-05-15 07:43 - 000000000 ____D C:\Users\norst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2021-05-15 07:42 - 2021-05-15 07:42 - 001659904 _____ (Roblox Corporation) C:\Users\norst\Downloads\RobloxPlayerLauncher.exe
2021-05-14 20:30 - 2021-05-14 20:30 - 000000000 ___SH C:\Users\Public\Shared Files
2021-05-14 20:24 - 2021-05-14 20:24 - 000000000 ____D C:\Users\norst\AppData\Local\FortniteGame
2021-05-14 20:24 - 2021-05-14 20:24 - 000000000 ____D C:\Users\norst\AppData\Local\CrashReportClient
2021-05-14 19:06 - 2021-05-16 18:55 - 000000000 ____D C:\Users\norst\AppData\Roaming\TS3Client
2021-05-14 19:06 - 2021-05-14 19:06 - 090699776 _____ (TeamSpeak Systems GmbH) C:\Users\norst\Downloads\TeamSpeak3-Client-win64-3.5.6.exe
2021-05-14 19:06 - 2021-05-14 19:06 - 000001008 _____ C:\ProgramData\Plocha\TeamSpeak 3 Client.lnk
2021-05-14 19:06 - 2021-05-14 19:06 - 000000970 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk
2021-05-14 19:06 - 2021-05-14 19:06 - 000000000 ____D C:\Users\norst\AppData\Local\TeamSpeak 3
2021-05-14 19:06 - 2021-05-14 19:06 - 000000000 ____D C:\Program Files\TeamSpeak 3 Client
2021-05-14 13:12 - 2021-05-14 13:12 - 000000000 ____D C:\Users\norst\AppData\LocalLow\SteelRaven7
2021-05-14 08:57 - 2021-05-14 08:57 - 000000000 ____D C:\Windows\system32\Tasks\Agent Activation Runtime
2021-05-13 18:58 - 2021-05-14 20:24 - 000000000 ____D C:\Users\norst\AppData\Roaming\EasyAntiCheat
2021-05-13 18:53 - 2021-05-14 20:24 - 000000000 ____D C:\Users\norst\AppData\Local\NVIDIA Corporation
2021-05-13 18:52 - 2021-05-14 20:24 - 000000000 ____D C:\Users\norst\AppData\Local\UnrealEngine
2021-05-13 18:52 - 2021-05-13 18:52 - 000000000 ____D C:\Users\norst\AppData\Local\UnrealEngineLauncher
2021-05-13 18:52 - 2021-05-13 18:52 - 000000000 ____D C:\Users\norst\AppData\Local\EpicGamesLauncher
2021-05-13 18:51 - 2021-05-14 21:46 - 000000000 ____D C:\ProgramData\Epic
2021-05-13 18:51 - 2021-05-13 18:51 - 056791040 _____ C:\Users\norst\Downloads\EpicInstaller-12.1.7-a31bf7fcdd1e42c481f9daa5cd27f3dd.msi
2021-05-13 18:51 - 2021-05-13 18:51 - 000000789 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2021-05-13 15:17 - 2021-05-13 15:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky VPN
2021-05-13 15:03 - 2021-05-13 15:03 - 000000000 ____D C:\Users\norst\AppData\Local\PeerDistRepub
2021-05-13 11:14 - 2021-05-13 11:14 - 000000000 ____D C:\Users\norst\AppData\LocalLow\OldBlood Productions
2021-05-13 11:08 - 2021-05-14 13:11 - 000000000 ____D C:\Users\norst\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2021-05-12 17:13 - 2021-05-13 18:58 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2021-05-12 17:13 - 2021-05-12 17:13 - 000000000 ___HD C:\Program Files\Common Files\EAInstaller
2021-05-12 17:13 - 2021-05-12 17:13 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apex Legends
2021-05-12 16:38 - 2021-05-18 13:57 - 000003078 _____ C:\Windows\system32\Tasks\AMDLinkUpdate
2021-05-12 16:38 - 2021-05-18 13:53 - 000003488 _____ C:\Windows\system32\Tasks\ModifyLinkUpdate
2021-05-12 16:38 - 2021-05-18 13:53 - 000003160 _____ C:\Windows\system32\Tasks\StartCN
2021-05-12 16:38 - 2021-05-18 13:53 - 000003080 _____ C:\Windows\system32\Tasks\StartDVR
2021-05-12 16:38 - 2021-04-13 19:00 - 002261024 _____ (AMD Inc.) C:\Windows\SysWOW64\AMDBugReportTool.exe
2021-05-12 16:35 - 2021-05-18 13:51 - 000000000 ____D C:\Users\norst\AppData\Local\AMD_Common
2021-05-12 16:35 - 2021-05-12 16:40 - 000000000 ____D C:\ProgramData\AMD
2021-05-12 16:34 - 2021-05-12 16:34 - 035328832 _____ (AMD Inc.) C:\Users\norst\Downloads\radeon-software-adrenalin-2020-21.5.1-minimalsetup-210505_web.exe
2021-05-12 16:18 - 2021-05-12 16:46 - 000000000 ____D C:\Program Files (x86)\Origin Games
2021-05-12 16:16 - 2021-05-05 15:14 - 000108056 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\amdkmpfd.sys
2021-05-12 16:07 - 2021-05-12 16:07 - 000000000 ____D C:\Users\norst\AppData\Local\Steam
2021-05-12 16:07 - 2021-05-12 16:07 - 000000000 ____D C:\Users\norst\AppData\Local\CEF
2021-05-12 16:06 - 2021-05-12 16:06 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2021-05-12 16:05 - 2021-05-12 16:05 - 001770744 _____ C:\Users\norst\Downloads\SteamSetup.exe
2021-05-12 16:03 - 2021-05-12 17:50 - 000000000 ____D C:\ProgramData\Electronic Arts
2021-05-12 16:02 - 2021-05-18 13:57 - 000000000 ____D C:\Users\norst\AppData\Roaming\Origin
2021-05-12 16:02 - 2021-05-18 13:57 - 000000000 ____D C:\Users\norst\AppData\Local\Origin
2021-05-12 16:02 - 2021-05-18 13:57 - 000000000 ____D C:\ProgramData\Origin
2021-05-12 16:02 - 2021-05-12 16:02 - 000000000 ____D C:\Users\norst\.QtWebEngineProcess
2021-05-12 16:02 - 2021-05-12 16:02 - 000000000 ____D C:\Users\norst\.Origin
2021-05-12 16:02 - 2021-05-12 16:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2021-05-12 16:01 - 2021-05-12 16:02 - 063661072 _____ (Electronic Arts) C:\Users\norst\Downloads\OriginThinSetup.exe
2021-05-12 15:54 - 2021-05-18 13:57 - 000000000 ____D C:\Users\norst\AppData\Roaming\LGHUB
2021-05-12 15:54 - 2021-05-18 13:57 - 000000000 ____D C:\Users\norst\AppData\Local\LGHUB
2021-05-12 15:54 - 2021-05-12 15:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Logi
2021-05-12 15:54 - 2021-05-12 15:54 - 000000000 ____D C:\ProgramData\Logishrd
2021-05-12 15:53 - 2021-05-12 15:54 - 000000000 ____D C:\ProgramData\LGHUB
2021-05-12 15:53 - 2021-05-12 15:54 - 000000000 ____D C:\Program Files\LGHUB
2021-05-12 15:53 - 2021-05-12 15:53 - 041148832 _____ (Logitech, Inc.) C:\Users\norst\Downloads\lghub_installer.exe
2021-05-12 15:50 - 2021-05-12 15:48 - 045160768 _____ C:\Windows\system32\Drivers\RTAIODAT.DAT
2021-05-12 15:50 - 2021-05-12 15:48 - 006437368 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2021-05-12 15:50 - 2021-05-12 15:48 - 002877104 _____ (Realtek Semiconductor Corp.) C:\Windows\RtlExUpd.dll
2021-05-12 15:48 - 2021-05-12 15:50 - 000000000 ___HD C:\Program Files (x86)\Temp
2021-05-12 15:47 - 2021-05-12 15:50 - 000000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2021-05-12 15:47 - 2021-05-12 15:48 - 000000000 ____D C:\Program Files (x86)\Realtek
2021-05-12 15:47 - 2021-05-12 15:46 - 001147352 _____ (Realtek ) C:\Windows\system32\Drivers\rt640x64.sys
2021-05-12 15:42 - 2021-05-12 15:42 - 000000000 ____D C:\Users\norst\AppData\Local\RadeonInstaller
2021-05-12 15:41 - 2021-05-12 15:41 - 011144581 _____ C:\Users\norst\Downloads\realtek_pcielan_w10.zip
2021-05-12 15:40 - 2021-05-12 15:40 - 052283830 _____ C:\Users\norst\Downloads\realtek_audio_R.zip
2021-05-12 15:38 - 2021-05-12 15:39 - 585236501 _____ C:\Users\norst\Downloads\amd_vga_driver.zip
2021-05-12 15:33 - 2021-05-12 16:40 - 000000000 ____D C:\Users\norst\AppData\Local\cache
2021-05-12 15:33 - 2021-05-12 15:33 - 000000000 ____D C:\Users\norst\AppData\Roaming\AMD
2021-05-12 15:33 - 2021-05-12 15:33 - 000000000 ____D C:\Users\norst\AppData\Local\setup
2021-05-12 15:33 - 2021-05-12 15:33 - 000000000 ____D C:\Program Files (x86)\AMD
2021-05-12 15:32 - 2021-05-18 13:50 - 000000000 ____D C:\AMD
2021-05-12 15:32 - 2021-05-13 18:53 - 000000000 ____D C:\ProgramData\Package Cache
2021-05-12 15:32 - 2021-05-12 15:32 - 051206789 _____ C:\Users\norst\Downloads\amd_chipset_drivers_am4_tr4.zip
2021-05-12 15:32 - 2021-05-12 15:32 - 000000000 ____D C:\Users\norst\Downloads\amd_chipset_drivers_am4_tr4
2021-05-12 15:31 - 2021-05-12 15:31 - 001124520 _____ C:\Users\norst\Downloads\AM4_RAID_Driver_WT.zip
2021-05-12 15:19 - 2021-05-12 15:19 - 000309104 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_klark.sys
2021-05-12 15:16 - 2021-05-12 15:16 - 000263888 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_arkmon.sys
2021-05-12 15:16 - 2021-05-12 15:16 - 000224880 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_mark.sys
2021-05-12 15:16 - 2021-05-12 15:16 - 000115744 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klupd_klif_klbg.sys
2021-05-12 15:16 - 2021-05-12 15:16 - 000003392 _____ C:\Windows\system32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901}
2021-05-12 15:16 - 2021-05-12 15:16 - 000000000 ____D C:\Program Files\Common Files\AV
2021-05-12 15:15 - 2021-05-17 16:00 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2021-05-12 15:15 - 2021-05-13 15:17 - 000000000 ____D C:\Program Files (x86)\Kaspersky Lab
2021-05-12 15:15 - 2021-05-12 15:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Total Security
2021-05-12 15:15 - 2020-10-21 23:12 - 000110176 _____ (Kaspersky Lab ZAO) C:\Windows\system32\klfphc.dll
2021-05-12 15:15 - 2020-10-21 23:11 - 001025336 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klif.sys
2021-05-12 15:15 - 2020-10-21 23:11 - 000523576 _____ (AO Kaspersky Lab) C:\Windows\system32\Drivers\klflt.sys
2021-05-12 15:13 - 2021-05-12 15:13 - 002812640 _____ (Kaspersky) C:\Users\norst\Downloads\kts20.0.14.1085abccs_20943.exe
2021-05-12 15:13 - 2021-05-12 15:13 - 000000000 ____D C:\ProgramData\Kaspersky Lab Setup Files
2021-05-12 15:04 - 2021-05-12 15:04 - 002755584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2021-05-12 15:04 - 2021-05-12 15:04 - 002755584 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2021-05-12 15:04 - 2021-05-12 15:04 - 001823816 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2021-05-12 15:04 - 2021-05-12 15:04 - 001687040 _____ C:\Windows\system32\libcrypto.dll
2021-05-12 15:04 - 2021-05-12 15:04 - 001393504 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2021-05-12 15:04 - 2021-05-12 15:04 - 001314120 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2021-05-12 15:04 - 2021-05-12 15:04 - 001163776 _____ C:\Windows\system32\MBR2GPT.EXE
2021-05-12 15:04 - 2021-05-12 15:04 - 000700928 _____ C:\Windows\system32\FsNVSDeviceSource.dll
2021-05-12 15:04 - 2021-05-12 15:04 - 000165888 _____ C:\Windows\system32\DataStoreCacheDumpTool.exe
2021-05-12 15:04 - 2021-05-12 15:04 - 000157184 _____ C:\Windows\system32\uwfcsp.dll
2021-05-12 15:04 - 2021-05-12 15:04 - 000153600 _____ C:\Windows\system32\uwfcfgmgmt.dll
2021-05-12 15:04 - 2021-05-12 15:04 - 000060928 _____ C:\Windows\system32\runexehelper.exe
2021-05-12 15:04 - 2021-05-12 15:04 - 000013312 _____ C:\Windows\system32\agentactivationruntimestarter.exe
2021-05-12 15:04 - 2021-05-12 15:04 - 000011351 _____ C:\Windows\system32\DrtmAuthTxt.wim
2021-05-12 15:01 - 2021-05-12 15:01 - 000002319 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2021-05-12 15:00 - 2021-05-12 15:14 - 000000000 ____D C:\Users\norst\AppData\Local\Google
2021-05-12 15:00 - 2021-05-12 15:00 - 001310832 _____ (Google LLC) C:\Users\norst\Downloads\ChromeSetup.exe
2021-05-12 15:00 - 2021-05-12 15:00 - 001310832 _____ (Google LLC) C:\Users\norst\Downloads\ChromeSetup (1).exe
2021-05-12 15:00 - 2021-05-12 15:00 - 000003472 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2021-05-12 15:00 - 2021-05-12 15:00 - 000003348 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2021-05-12 15:00 - 2021-05-12 15:00 - 000000000 ____D C:\Program Files\Google
2021-05-12 15:00 - 2021-05-12 15:00 - 000000000 ____D C:\Program Files (x86)\Google
2021-05-12 14:58 - 2021-05-12 14:58 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2021-05-12 14:57 - 2021-05-12 14:58 - 000000000 ____D C:\Windows\system32\MRT
2021-05-12 14:54 - 2021-05-12 14:54 - 000000000 ____D C:\Users\norst\AppData\Local\OneDrive
2021-05-12 14:50 - 2021-05-12 14:50 - 000000000 ____D C:\Users\norst\AppData\Local\Comms
2021-05-12 14:47 - 2021-05-12 14:47 - 000000000 ___HD C:\$WinREAgent
2021-05-12 14:46 - 2021-05-12 16:31 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\Wondershare MediaServer
2021-05-12 14:46 - 2021-05-12 16:31 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\DAVAProject
2021-05-12 14:46 - 2021-05-12 16:31 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\Conqueror's Blade
2021-05-12 14:46 - 2021-05-12 16:31 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\Adobe
2021-05-12 14:46 - 2021-05-12 14:46 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\Wastelands-Interactive
2021-05-12 14:46 - 2021-05-12 14:46 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\Vlastní šablony Office
2021-05-12 14:46 - 2021-05-12 14:46 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\theHunter
2021-05-12 14:46 - 2021-05-12 14:46 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\Rockstar Games
2021-05-12 14:46 - 2021-05-12 14:46 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\Overwatch
2021-05-12 14:46 - 2021-05-12 14:46 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\My ISO Files
2021-05-12 14:46 - 2021-05-12 14:46 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\My Games
2021-05-12 14:46 - 2021-05-12 14:46 - 000000000 ____D C:\Users\norst\OneDrive\Dokumenty\Mount&Blade Warband Savegames
2021-05-12 14:46 - 2020-09-20 19:20 - 000000121 ____R C:\Users\norst\OneDrive\Dokumenty\Poznámkový blok uživatele Jan.url
2021-05-11 23:29 - 2021-05-13 08:49 - 000000000 ____D C:\Users\norst\AppData\Local\PlaceholderTileLogoFolder
2021-05-11 23:29 - 2021-05-12 16:31 - 000000000 ___RD C:\Users\norst\OneDrive
2021-05-11 23:29 - 2021-05-11 23:29 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2021-05-11 23:28 - 2021-05-18 13:54 - 000000000 ____D C:\Users\norst\AppData\Local\AMD
2021-05-11 23:28 - 2021-05-11 23:28 - 000000000 ____D C:\Users\norst\AppData\Local\Publishers
2021-05-11 23:27 - 2021-05-18 13:57 - 000000000 ____D C:\Users\norst\AppData\LocalLow\AMD
2021-05-11 23:27 - 2021-05-14 09:09 - 000000000 ____D C:\Users\norst\AppData\Local\D3DSCache
2021-05-11 23:27 - 2021-05-13 15:03 - 000000000 ____D C:\Users\norst\AppData\Local\Packages
2021-05-11 23:27 - 2021-05-12 14:48 - 000000000 ____D C:\ProgramData\Packages
2021-05-11 23:27 - 2021-05-12 14:45 - 000000000 ____D C:\Users\norst\AppData\Local\ConnectedDevicesPlatform
2021-05-11 23:27 - 2021-05-11 23:29 - 000000000 __RHD C:\Users\Public\AccountPictures
2021-05-11 23:27 - 2021-05-11 23:27 - 000000000 ___RD C:\Users\norst\3D Objects
2021-05-11 23:27 - 2021-05-11 23:27 - 000000000 ____D C:\Users\norst\AppData\Roaming\Adobe
2021-05-11 23:27 - 2021-05-11 23:27 - 000000000 ____D C:\Users\norst\AppData\Local\VirtualStore
2021-05-11 23:25 - 2021-05-12 16:02 - 000000000 ____D C:\Users\norst
2021-05-11 23:25 - 2021-05-11 23:25 - 000000020 ___SH C:\Users\norst\ntuser.ini
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\Šablony
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\Soubory cookie
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\Poslední
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\Okolní tiskárny
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\Okolní síť
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\Nabídka Start
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\Dokumenty
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\Data aplikací
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-05-11 23:25 - 2021-05-11 23:25 - 000000000 _SHDL C:\Users\norst\AppData\Local\Data aplikací
2021-05-11 23:01 - 2021-05-18 13:47 - 001693136 _____ C:\Windows\system32\PerfStringBackup.INI
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\Šablony
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\Poslední
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\Okolní síť
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\Dokumenty
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\Data aplikací
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\ProgramData\Šablony
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\ProgramData\Plocha
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\ProgramData\Dokumenty
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\ProgramData\Data aplikací
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 _SHDL C:\Documents and Settings
2021-05-11 22:57 - 2021-05-11 22:57 - 000000000 ____D C:\Windows\CSC
2021-05-11 22:50 - 2021-05-18 13:56 - 000065536 _____ C:\Windows\system32\spu_storage.bin
2021-05-11 22:50 - 2021-05-18 13:53 - 000000000 ____D C:\Program Files\AMD
2021-05-11 22:50 - 2021-05-11 22:50 - 000000000 ____D C:\ProgramData\HP
2021-05-11 22:49 - 2021-05-18 13:56 - 000008192 ___SH C:\DumpStack.log.tmp
2021-05-11 22:49 - 2021-05-18 13:56 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2021-05-11 22:49 - 2021-05-18 13:40 - 000000000 ____D C:\Windows\system32\SleepStudy
2021-05-11 22:49 - 2021-05-18 13:33 - 000000000 ____D C:\Windows\system32\AMD
2021-05-11 22:49 - 2021-05-15 17:43 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2021-05-11 22:49 - 2021-05-12 15:48 - 000000000 ____D C:\Windows\SysWOW64\RTCOM
2021-05-11 22:49 - 2021-05-12 15:48 - 000000000 ____D C:\Windows\system32\DAX3
2021-05-11 22:49 - 2021-05-12 15:48 - 000000000 ____D C:\Windows\system32\DAX2
2021-05-11 22:49 - 2021-05-12 15:08 - 000258096 _____ C:\Windows\system32\FNTCACHE.DAT
2021-05-11 22:49 - 2021-05-12 15:04 - 000000000 ____D C:\Windows\system32\Drivers\wd
2021-05-11 22:49 - 2021-05-11 22:50 - 000003584 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2021-05-11 22:49 - 2021-05-11 22:50 - 000003460 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2021-05-11 22:49 - 2021-05-11 22:49 - 000000000 ____H C:\ProgramData\DP45977C.lfl
2021-05-11 22:49 - 2021-05-11 22:49 - 000000000 ____D C:\Windows\ServiceProfiles
2021-05-11 22:49 - 2021-05-11 22:49 - 000000000 _____ C:\Windows\system32\fpfftResultsFile.txt
2021-05-11 21:25 - 2021-05-11 22:57 - 000000000 ____D C:\Windows\Panther
2021-05-11 21:22 - 2021-05-11 21:22 - 000000000 ____D C:\ProgramData\ssh
2021-05-11 21:19 - 2021-05-11 21:19 - 004898144 _____ (Microsoft Corporation) C:\Windows\system32\rtmpltfm.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 003860832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpltfm.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 001354080 _____ (Microsoft Corporation) C:\Windows\system32\rtmpal.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 001333760 _____ C:\Windows\SysWOW64\TextInputMethodFormatter.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 001091936 _____ (Microsoft Corporation) C:\Windows\system32\rtmcodecs.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 001032544 _____ (Microsoft Corporation) C:\Windows\system32\ortcengine.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000980320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmpal.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000915296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmcodecs.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000732000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ortcengine.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000729600 _____ (Microsoft Corporation) C:\Windows\system32\hhctrl.ocx
2021-05-11 21:19 - 2021-05-11 21:19 - 000611952 _____ C:\Windows\SysWOW64\TextShaping.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000595968 _____ (Microsoft Corporation) C:\Windows\system32\appwiz.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000581120 _____ (Microsoft Corporation) C:\Windows\system32\PhotoScreensaver.scr
2021-05-11 21:19 - 2021-05-11 21:19 - 000575488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\hhctrl.ocx
2021-05-11 21:19 - 2021-05-11 21:19 - 000499200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoScreensaver.scr
2021-05-11 21:19 - 2021-05-11 21:19 - 000480256 _____ C:\Windows\system32\AssignedAccessCsp.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000469504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appwiz.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000455680 _____ C:\Windows\SysWOW64\WindowManagementAPI.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000446976 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mmsys.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000422912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2021-05-11 21:19 - 2021-05-11 21:19 - 000330752 _____ C:\Windows\SysWOW64\ssdm.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000304128 _____ (Microsoft Corporation) C:\Windows\system32\ksproxy.ax
2021-05-11 21:19 - 2021-05-11 21:19 - 000266240 _____ C:\Windows\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000266240 _____ (Microsoft Corporation) C:\Windows\system32\mpg2splt.ax
2021-05-11 21:19 - 2021-05-11 21:19 - 000240640 _____ C:\Windows\SysWOW64\CoreMas.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000235520 _____ C:\Windows\SysWOW64\HeatCore.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000234496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ksproxy.ax
2021-05-11 21:19 - 2021-05-11 21:19 - 000221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000204800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mpg2splt.ax
2021-05-11 21:19 - 2021-05-11 21:19 - 000182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\timedate.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000178688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\intl.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000170496 _____ (Microsoft Corporation) C:\Windows\system32\VBICodec.ax
2021-05-11 21:19 - 2021-05-11 21:19 - 000138056 _____ C:\Windows\system32\HvsiManagementApi.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000135168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\VBICodec.ax
2021-05-11 21:19 - 2021-05-11 21:19 - 000112128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\activeds.tlb
2021-05-11 21:19 - 2021-05-11 21:19 - 000101704 _____ C:\Windows\SysWOW64\HvsiManagementApi.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000100864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncpa.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000095744 _____ C:\Windows\system32\VirtualMonitorManager.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2021-05-11 21:19 - 2021-05-11 21:19 - 000084992 _____ (Microsoft Corporation) C:\Windows\system32\wscui.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000072704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2021-05-11 21:19 - 2021-05-11 21:19 - 000067584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wscui.cpl
2021-05-11 21:19 - 2021-05-11 21:19 - 000067072 _____ C:\Windows\system32\BWContextHandler.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000056672 _____ (Microsoft Corporation) C:\Windows\system32\rtmmvrortc.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000055376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtmmvrortc.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000053760 _____ C:\Windows\SysWOW64\BWContextHandler.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000047472 _____ C:\Windows\SysWOW64\umpdc.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000045880 _____ C:\Windows\system32\HvSocket.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000039936 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2021-05-11 21:19 - 2021-05-11 21:19 - 000023552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msacm32.drv
2021-05-11 21:19 - 2021-05-11 21:19 - 000010752 _____ C:\Windows\SysWOW64\agentactivationruntimestarter.exe
2021-05-11 21:18 - 2021-05-11 21:18 - 004227116 _____ C:\Windows\system32\DefaultHrtfs.bin
2021-05-11 21:18 - 2021-05-11 21:18 - 002260992 _____ C:\Windows\system32\TextInputMethodFormatter.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 002260480 _____ (The ICU Project) C:\Windows\system32\icu.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 002254336 _____ C:\Windows\system32\dwmscene.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000707016 _____ C:\Windows\system32\TextShaping.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000643072 _____ C:\Windows\system32\WindowManagementAPI.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000562688 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2021-05-11 21:18 - 2021-05-11 21:18 - 000544768 _____ (Microsoft Corporation) C:\Windows\system32\mmsys.cpl
2021-05-11 21:18 - 2021-05-11 21:18 - 000455168 _____ C:\Windows\system32\ssdm.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000363520 _____ C:\Windows\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000306688 _____ C:\Windows\system32\HeatCore.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000287232 _____ C:\Windows\system32\CoreMas.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000266752 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
2021-05-11 21:18 - 2021-05-11 21:18 - 000243200 _____ (Microsoft Corporation) C:\Windows\system32\timedate.cpl
2021-05-11 21:18 - 2021-05-11 21:18 - 000238592 _____ (Microsoft Corporation) C:\Windows\system32\intl.cpl
2021-05-11 21:18 - 2021-05-11 21:18 - 000231248 _____ C:\Windows\system32\containerdevicemanagement.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000197632 _____ C:\Windows\system32\IHDS.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000190976 _____ C:\Windows\system32\BthpanContextHandler.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000152064 _____ C:\Windows\system32\EoAExperiences.exe
2021-05-11 21:18 - 2021-05-11 21:18 - 000112128 _____ (Microsoft Corporation) C:\Windows\system32\activeds.tlb
2021-05-11 21:18 - 2021-05-11 21:18 - 000102912 _____ (Microsoft Corporation) C:\Windows\system32\ncpa.cpl
2021-05-11 21:18 - 2021-05-11 21:18 - 000091136 _____ C:\Windows\system32\Drivers\cimfs.sys
2021-05-11 21:18 - 2021-05-11 21:18 - 000089088 _____ C:\Windows\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000074240 _____ C:\Windows\system32\rdsxvmaudio.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000073216 _____ C:\Windows\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000064552 _____ C:\Windows\system32\umpdc.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000048640 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\msacm32.drv
2021-05-11 21:18 - 2021-05-11 21:18 - 000029696 _____ (The ICU Project) C:\Windows\system32\icuuc.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000025088 _____ (The ICU Project) C:\Windows\system32\icuin.dll
2021-05-11 21:18 - 2021-05-11 21:18 - 000001370 _____ C:\Windows\system32\ThirdPartyNoticesBySHS.txt
2021-05-11 21:11 - 2021-05-11 21:11 - 000000000 ____D C:\Windows\SysWOW64\XPSViewer
2021-05-11 21:11 - 2021-05-11 21:11 - 000000000 ____D C:\Program Files\Reference Assemblies
2021-05-11 21:11 - 2021-05-11 21:11 - 000000000 ____D C:\Program Files\MSBuild
2021-05-11 21:11 - 2021-05-11 21:11 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2021-05-11 21:11 - 2021-05-11 21:11 - 000000000 ____D C:\Program Files (x86)\MSBuild
2021-05-11 21:05 - 2021-05-11 21:05 - 000008192 _____ C:\Windows\system32\config\userdiff
2021-05-11 19:38 - 2021-05-11 23:30 - 000000000 ___HD C:\$SysReset
2021-05-09 09:04 - 2021-05-09 09:04 - 000066896 _____ (Logitech) C:\Windows\system32\Drivers\logi_joy_xlcore.sys
2021-05-09 09:04 - 2021-05-09 09:04 - 000037200 _____ (Logitech) C:\Windows\system32\Drivers\logi_joy_bus_enum.sys
2021-05-09 09:04 - 2021-05-09 09:04 - 000025928 _____ (Logitech) C:\Windows\system32\Drivers\logi_joy_vir_hid.sys
2021-05-07 19:11 - 2021-05-05 15:14 - 001748800 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\atiadlxx.dll
2021-05-07 19:11 - 2021-05-05 15:14 - 001331520 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxy.dll
2021-05-07 19:11 - 2021-05-05 15:14 - 001331520 _____ (Advanced Micro Devices, Inc.) C:\Windows\SysWOW64\atiadlxx.dll
2021-05-07 19:11 - 2021-04-30 16:34 - 000204952 _____ C:\Windows\SysWOW64\ativvsvl.dat
2021-05-07 19:11 - 2021-04-30 16:34 - 000204952 _____ C:\Windows\system32\ativvsvl.dat
2021-05-07 19:11 - 2021-04-30 16:34 - 000157144 _____ C:\Windows\SysWOW64\ativvsva.dat
2021-05-07 19:11 - 2021-04-30 16:34 - 000157144 _____ C:\Windows\system32\ativvsva.dat
2021-05-07 19:11 - 2020-12-08 22:15 - 000128048 _____ C:\Windows\system32\kapp_ci.sbin
2021-05-07 19:11 - 2020-12-02 08:56 - 000012344 _____ C:\Windows\system32\brandingRSX.bmp
2021-05-07 19:11 - 2020-10-22 06:36 - 000012344 _____ C:\Windows\system32\brandingWS_RSX.bmp
2021-05-07 19:11 - 2020-08-05 09:50 - 000011014 _____ C:\Windows\system32\atiacmLocalisation.ini
2021-05-07 19:11 - 2020-07-17 20:29 - 000076237 _____ C:\Windows\system32\AMDKernelEvents.man
2021-05-07 19:11 - 2020-05-22 17:23 - 000000822 _____ C:\Windows\system32\branding.bmp
2021-05-07 19:11 - 2019-01-12 00:27 - 000121168 _____ C:\Windows\system32\kapp_si.sbin
2021-05-07 19:11 - 2016-09-02 17:24 - 000154384 _____ C:\Windows\system32\samu_krnl_ci.sbin
2021-05-07 19:11 - 2013-12-12 15:53 - 000138832 _____ C:\Windows\system32\samu_krnl_isv_ci.sbin
2021-04-23 18:56 - 2021-01-20 00:35 - 000034528 _____ (Advanced Micro Devices) C:\Windows\system32\Drivers\AMDPCIDev.sys
2021-04-23 18:46 - 2021-03-25 13:35 - 000517560 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\amdfendrsr.exe
2021-04-23 18:46 - 2021-03-25 13:35 - 000116432 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\amdfendr.sys
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2021-05-18 13:57 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2021-05-18 13:56 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2021-05-18 13:56 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2021-05-18 13:53 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2021-05-18 13:47 - 2019-12-07 16:43 - 000716726 _____ C:\Windows\system32\perfh005.dat
2021-05-18 13:47 - 2019-12-07 16:43 - 000144904 _____ C:\Windows\system32\perfc005.dat
2021-05-18 13:34 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\LiveKernelReports
2021-05-17 17:02 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2021-05-17 17:02 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2021-05-14 20:30 - 2019-12-07 11:14 - 000000000 __SHD C:\Users\Public\Libraries
2021-05-12 16:03 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2021-05-12 15:52 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2021-05-12 15:15 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2021-05-12 15:15 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM
2021-05-12 15:10 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2021-05-12 15:07 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2021-05-12 15:07 - 2019-12-07 16:44 - 000000000 ____D C:\Windows\system32\OpenSSH
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\setup
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\oobe
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lt-LT
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SystemResetPlatform
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lt-LT
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\DiagTrack
2021-05-12 15:07 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2021-05-12 15:06 - 2019-12-07 16:47 - 000023552 _____ (Microsoft Corporation) C:\Windows\system32\OEMDefaultAssociations.dll
2021-05-12 15:06 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2021-05-12 15:04 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender
2021-05-12 14:48 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\appcompat
2021-05-11 23:30 - 2019-12-07 11:14 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2021-05-11 23:25 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2021-05-11 22:58 - 2019-12-07 16:45 - 000000000 ____D C:\Windows\system32\FxsTmp
2021-05-11 22:57 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT
2021-05-11 22:50 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\spool
2021-05-11 22:50 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate
2021-05-11 21:22 - 2019-12-07 16:47 - 000000000 ___SD C:\Windows\system32\AppV
2021-05-11 21:22 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2021-05-11 21:22 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\SysWOW64\F12
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\SysWOW64\DiagSvcs
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\UNP
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\F12
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\DiagSvcs
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\PerceptionSimulation
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\migwiz
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Keywords
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Com
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\AdvancedInstallers
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Sysprep
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\ShellExperiences
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lv-LV
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Keywords
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\et-EE
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\es-MX
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Com
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\appraiser
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\AdvancedInstallers
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellComponents
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\IME
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2021-05-11 21:22 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2021-05-11 21:21 - 2019-12-07 16:47 - 000020908 _____ C:\Windows\system32\OEMDefaultAssociations.xml
2021-05-11 21:11 - 2019-12-07 16:45 - 000000000 ____D C:\Windows\OCR
2021-05-11 21:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\MUI
2021-05-11 21:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\MUI
2021-05-11 21:10 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\SysWOW64\winrm
2021-05-11 21:10 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\SysWOW64\WCN
2021-05-11 21:10 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\SysWOW64\slmgr
2021-05-11 21:10 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\SysWOW64\Printing_Admin_Scripts
2021-05-11 21:10 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\system32\winrm
2021-05-11 21:10 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\system32\WCN
2021-05-11 21:10 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\system32\slmgr
2021-05-11 21:10 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\system32\Printing_Admin_Scripts
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================