Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Oznámení ve Windows "Upozornění na kritický virus" crashbox.ru

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Flanagan1916
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 11 lis 2022 19:30

Oznámení ve Windows "Upozornění na kritický virus" crashbox.ru

#1 Příspěvek od Flanagan1916 »

Dobrý den,
windows mi píše toto oznámení. Avast, CCleaner a ADWCleaner nic nenašel.

http://leteckaposta.cz/677442236


==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastUI.exe <5>
(C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe
(C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTInk.exe ->) (SMART Technologies ULC -> SMART Technologies) C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\Office\SMARTInk-SBSDKProxy.exe
(C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTInk.exe ->) (SMART Technologies ULC -> SMART Technologies) C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTInkPrivilegedAccess.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe <3>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(cmd.exe ->) (Lenovo (Beijing) Limited -> Lenovo Group Limited) C:\Users\trisk\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSB.exe
(DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe ->) (Dolby Laboratories, Inc. -> ) C:\ProgramData\Dolby\DAX3\RADARHOST\DSRHost.exe
(DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\DAX3_S~1.INF\DAX3API.exe
(DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_eea2c15eb4860b4b\LenovoUtilityService.exe ->) (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_eea2c15eb4860b4b\FnHotkeyUtility.exe
(explorer.exe ->) (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTAgent.exe
(explorer.exe ->) (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <13>
(explorer.exe ->) (Hanvon Ugee Technology Co., Ltd. -> XPPEN TECHNOLOGY CO.) C:\Program Files\Pentablet\PenTablet.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv.exe
(Joyent, Inc) [File not signed] C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\sbsdk-server\SBWDKService.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileCoAuth.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(services.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe
(services.exe ->) (HP Inc. -> ) C:\Windows\SysWOW64\spdsvc.exe
(services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\SurSvc.exe
(services.exe ->) (Intel Corporation -> ) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe
(services.exe ->) (Lenovo -> Lenovo(beijing) Limited) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_eea2c15eb4860b4b\LenovoUtilityService.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_663d96a36405ba10\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\RtkAudUService64.exe <2>
(services.exe ->) (Samsung Electronics CO., LTD. -> ) C:\Windows\SysWOW64\SecUPDUtilSvc.exe
(services.exe ->) (SMART Technologies ULC -> SMART Technologies) C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTHelperService.exe
(SMART Technologies ULC -> SMART Technologies) C:\Program Files (x86)\Common Files\SMART Technologies\SystemMenu\SMARTSystemMenu.exe
(SMART Technologies ULC -> SMART Technologies) C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTBoardService.exe
(SMART Technologies ULC -> SMART Technologies) C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTInk.exe
(SMART Technologies ULC -> SMART Technologies) C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTNotification.exe
(smartscreen.exe ->) (Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22092.211.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\RtkAudUService64.exe [1138976 2020-08-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [212184 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\Run: [PenTablet] => C:\Program Files\Pentablet\PenTablet.exe [870136 2021-10-28] (Hanvon Ugee Technology Co., Ltd. -> XPPEN TECHNOLOGY CO.)
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [366944 2022-09-27] (Apple Inc. -> Apple Inc.)
HKLM-x32\...\Run: [SMARTNotification] => C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTNotification.exe [211496 2022-05-23] (SMART Technologies ULC -> SMART Technologies)
HKLM-x32\...\Run: [SMART Board Service] => C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTBoardService.exe [2813992 2022-05-23] (SMART Technologies ULC -> SMART Technologies)
HKLM-x32\...\Run: [SMART Tray Tools] => C:\Program Files (x86)\Common Files\SMART Technologies\SystemMenu\SMARTSystemMenu.exe [649784 2021-06-25] (SMART Technologies ULC -> SMART Technologies)
HKLM-x32\...\Run: [sbsdk-server] => C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\sbsdk-server\NodeLauncher.exe [68544 2019-11-08] (SMART Technologies ULC -> SMART Technologies)
HKLM-x32\...\Run: [SMART Ink] => C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTInk.exe [289320 2022-07-21] (SMART Technologies ULC -> SMART Technologies)
HKLM-x32\...\Run: [Intel Driver & Support Assistant] => C:\Program Files (x86)\Intel\Driver and Support Assistant\DSATray.exe [292120 2022-10-26] (Intel Corporation -> Intel)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-571745533-3586649985-1602090759-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [2626480 2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-571745533-3586649985-1602090759-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4234088 2022-10-19] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-571745533-3586649985-1602090759-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38789456 2022-10-20] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-571745533-3586649985-1602090759-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [479632 2021-10-31] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-571745533-3586649985-1602090759-1001\...\Run: [MicrosoftEdgeAutoLaunch_FB350C16BCDF254309F9AF42A7CD1519] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start /prefetch:5 [3891624 2022-11-03] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-571745533-3586649985-1602090759-1001\...\MountPoints2: {49e75218-3a31-11ec-901d-c03c59a8ca2c} - "F:\LM_setup.exe"
HKU\S-1-5-21-571745533-3586649985-1602090759-1001\...\MountPoints2: {f0da1296-bfb3-11eb-8fe2-c03c59a8ca2c} - "D:\Install.exe"
HKLM\...\Windows x64\Print Processors\Canon TS5000 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDDF.DLL [30720 2017-12-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Windows x64\Print Processors\us015PC: C:\Windows\System32\spool\prtprocs\x64\us015pc.dll [52088 2019-08-26] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\Canon BJ Language Monitor TS5000 series: C:\Windows\system32\CNMLMDF.DLL [485376 2017-12-18] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\SMART Local Port: C:\Windows\system32\smrtlocalmon.dll [39976 2022-07-07] (SMART Technologies ULC -> SMART Technologies ULC)
HKLM\...\Print\Monitors\us015 Langmon: C:\Windows\system32\us015lm.dll [31096 2019-08-26] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\107.0.5304.107\Installer\chrmstp.exe [2022-11-11] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0493F332-92B8-4779-8AE7-DD981BBCFF09} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-01] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {06265040-C3D1-418C-9E97-646C05ADC065} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {1212EC98-51CC-4972-8B9B-E76607ABEDCF} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144312 2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {181AF907-4836-4C11-8F96-BDC24EC6F719} - System32\Tasks\CCleanerSkipUAC - trisk => C:\Program Files\CCleaner\CCleaner.exe [32472400 2022-10-20] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {202B799D-7842-440C-B197-4E4ACE272817} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe PendingTask (No File)
Task: {284A8984-B87B-49B0-91C6-4AE88A21638E} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {346B9F6E-C736-47C7-A6D7-D9EB16C8869C} - System32\Tasks\Lenovo\Lenovo Service Bridge\S-1-5-21-571745533-3586649985-1602090759-1001 => C:\Users\trisk\AppData\Local\Programs\Lenovo\Lenovo Service Bridge\LSBUpdater.exe [89096 2022-10-19] (Lenovo (Beijing) Limited -> Lenovo Group Limited)
Task: {3C1EBBFE-C5BA-4994-9360-541B8810B13B} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {4CDBAF7D-5FA9-40B0-8938-508F7D3E2085} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4189064 2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
Task: {6B43489E-B8B4-4FDD-8F9F-F85915D6C7DF} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2022-10-20] (Piriform Software Ltd -> Piriform)
Task: {7342D772-C27C-476C-8553-F2E72AD9DF47} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4669264 2022-10-20] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "0330e754-32bc-41bc-9e9c-f65f673249ab" --version "6.05.10110" --silent
Task: {7860CD11-848E-4E93-BE56-26EE74A706AC} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-571745533-3586649985-1602090759-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4189064 2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
Task: {7B4EFCE6-2253-4D66-9BBC-17D523BF6D9A} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe /CM -search R -action INSTALL -includerebootpackages 1,3,4,5 -noicon -noreboot -nolicense -defaultupdate -schtask (No File)
Task: {7E40FDD0-2806-48F6-A22F-BC97F11238D2} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [144312 2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {830E1E5C-BFA0-4625-91B7-6883282E74F1} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1552376 2022-09-26] (Adobe Inc. -> Adobe Inc.)
Task: {85347BAF-D6DB-4F3C-9853-90042268A483} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2250576 2022-05-24] (Avast Software s.r.o. -> Avast Software)
Task: {9031F416-89B4-47E9-835F-C8425C19484B} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\VFS\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [66936 2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {9749ECF7-4B01-42B1-9405-098AF4FEBF47} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26154960 2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {9C7DF71D-038E-404C-8F2A-20D0ED650ACA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2021-05-02] (Google Inc -> Google LLC)
Task: {9DD8CFC1-4599-4638-B789-278C8C12A664} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [906752 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {9F1B0ADA-1E8B-44F0-9D0F-674A72D339D4} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\Explorer.exe /NOUACCHECK
Task: {ACFE3FCF-830D-46F6-AC38-E8195EF11EB6} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {AD689588-F374-44BD-BEB6-0266D238D8F8} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342080 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {AED576DE-EE91-4846-B8EB-A650F5E620D6} - System32\Tasks\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [4936920 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
Task: {BC23FBC5-9223-4620-B738-AED420906D46} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [617096 2022-02-25] (Apple Inc. -> Apple Inc.)
Task: {CA8FD705-62F8-491C-9659-63AF1C7D73AE} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3231104 2022-05-02] (Intel Corporation -> Intel Corporation)
Task: {CBBC336F-E3F4-44E3-A2C4-357D4B97825D} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26154960 2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {CE876744-6F40-4E25-9042-640517EC458F} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646344 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {D56ED3B3-3EB3-4C91-AF26-3E388491F657} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1654272 2022-03-30] (Nvidia Corporation -> NVIDIA Corporation)
Task: {E7BACE32-9A12-4315-9E38-73FC6AD30829} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2021-05-02] (Google Inc -> Google LLC)
Task: {EEA85C06-B187-44D6-A13F-AC666A6E05AE} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => "C:\Windows\System32\Wscript.exe" //B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\x64\task.vbs"
Task: {F08E0EE5-E903-4755-AAD7-C13C7352B105} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (No File)
Task: {F0A6296B-9ABE-4528-A083-09A13841904D} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [3231104 2022-05-02] (Intel Corporation -> Intel Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{94c94fb4-37fb-47ba-84b3-4dcc162f1ddc}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\trisk\AppData\Local\Microsoft\Edge\User Data\Default [2022-11-11]

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2022-10-16] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\trisk\AppData\Local\Google\Chrome\User Data\Default [2022-11-11]
CHR Notifications: Default -> hxxps://crashbox.ru; hxxps://meet.google.com
CHR HomePage: Default -> hxxp://www.google.com
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxps://www.google.com/"
CHR Extension: (Avast Passwords) - C:\Users\trisk\AppData\Local\Google\Chrome\User Data\Default\Extensions\emhginjpijfggbofeediiojmdlmlkoik [2021-05-21]
CHR Extension: (Dokumenty Google offline) - C:\Users\trisk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-11-03]
CHR Extension: (Avast Online Security & Privacy) - C:\Users\trisk\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2022-10-04]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\trisk\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-05-21]
CHR Profile: C:\Users\trisk\AppData\Local\Google\Chrome\User Data\Guest Profile [2022-11-11]
CHR Profile: C:\Users\trisk\AppData\Local\Google\Chrome\User Data\System Profile [2022-11-11]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2022-09-26] (Adobe Inc. -> Adobe Inc.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [103280 2022-09-01] (Apple Inc. -> Apple Inc.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8539152 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [592600 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2018008 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [592600 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2021-06-01] (Avast Software s.r.o. -> AVAST Software)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1185616 2022-10-20] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [12516280 2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
S3 dcsvc; C:\Windows\system32\dcsvc.dll [785408 2022-11-10] (Microsoft Windows -> Microsoft Corporation)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4955536 2021-10-31] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R2 DolbyDAXAPI; C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_fe9531bca29258f3\DAX3API.exe [1928648 2020-05-19] (Dolby Laboratories, Inc. -> Dolby Laboratories)
R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAService.exe [41240 2022-10-26] (Intel Corporation -> Intel)
R3 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\DSAUpdateService.exe [201496 2022-10-26] (Intel Corporation -> Intel)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncHelper.exe [3476368 2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
R2 FMAPOService; C:\Windows\System32\FMService64.exe [390400 2020-05-21] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
R2 LenovoFnAndFunctionKeys; C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_eea2c15eb4860b4b\LenovoUtilityService.exe [241904 2022-08-11] (Lenovo -> Lenovo(beijing) Limited)
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [860640 2022-11-10] (McAfee, LLC -> McAfee, LLC)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\22.225.1026.0001\OneDriveUpdaterService.exe [3842480 2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [2017072 2022-01-15] (Rockstar Games, Inc. -> Rockstar Games)
R2 Samsung Printer Dianostics Service; C:\Windows\SysWOW64\\spdsvc.exe [508488 2018-05-24] (HP Inc. -> )
R2 SamsungUPDUtilSvc; C:\Windows\SysWOW64\SecUPDUtilSvc.exe [143664 2021-05-04] (Samsung Electronics CO., LTD. -> )
R2 SMARTHelperService; C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTHelperService.exe [639528 2022-05-23] (SMART Technologies ULC -> SMART Technologies)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_663d96a36405ba10\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_663d96a36405ba10\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 ApkbfiltrService; C:\Windows\System32\drivers\Apkbfiltr.sys [31016 2021-08-19] (Alps Electric Co., LTD. -> Alps Electric Co., Ltd.)
S3 AppleKmdfFilter; C:\Windows\System32\drivers\AppleKmdfFilter.sys [20032 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
S3 AppleLowerFilter; C:\Windows\System32\drivers\AppleLowerFilter.sys [35976 2020-10-09] (WDKTestCert build,132303256403278908 -> Apple Inc.)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [238152 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [390096 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [306128 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [105936 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [25576 2022-10-13] (Microsoft Windows Early Launch Anti-malware Publisher -> AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [48512 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [276520 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [564304 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [114464 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [90008 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [862936 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [672272 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [221944 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [327896 2022-11-09] (Avast Software s.r.o. -> AVAST Software)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [42256 2021-10-31] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [63696 2021-10-31] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 hanvonugeemfilter; C:\Windows\System32\drivers\hanvonugeemfilter.sys [9728 2021-10-07] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R3 ITEHIDfilter; C:\Windows\System32\drivers\ITEHIDfilter.sys [28104 2021-05-02] (ITE Tech. Inc. -> ITE Tech. Inc.)
S3 Netaapl; C:\Windows\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [48552 2021-11-01] (Microsoft Windows Hardware Compatibility Publisher -> NVIDIA Corporation)
R3 SMARTMouseFilterx64; C:\Windows\System32\drivers\SMARTMouseFilterx64.sys [18952 2022-05-23] (Microsoft Windows Hardware Compatibility Publisher -> SMART Technologies)
R3 SMARTVHidMiniVistaAmd64; C:\Windows\System32\drivers\SMARTVHidMiniVistaAmd64.sys [28168 2022-05-23] (Microsoft Windows Hardware Compatibility Publisher -> SMART Technologies)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
R3 XPPenTablet; C:\Windows\System32\drivers\XPPenTablet.sys [10752 2021-10-07] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
S3 cpuz145; \??\C:\Windows\temp\cpuz145\cpuz145_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

NETSVC: DcSvc -> C:\Windows\system32\dcsvc.dll (Microsoft Corporation)

==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-11-11 19:32 - 2022-11-11 19:32 - 000000000 ____D C:\FRST
2022-11-11 19:28 - 2022-11-11 19:28 - 000003416 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting
2022-11-11 19:28 - 2022-11-11 19:28 - 000000760 _____ C:\Windows\Tasks\CCleanerCrashReporting.job
2022-11-11 19:23 - 2022-11-11 19:25 - 000000000 ____D C:\AdwCleaner
2022-11-11 19:23 - 2022-11-11 19:23 - 008791352 _____ (Malwarebytes) C:\Users\trisk\Downloads\adwcleaner.exe
2022-11-10 21:57 - 2022-11-10 21:57 - 000001427 _____ C:\Windows\system32\default_error_stack-000048-000000.txt
2022-11-10 21:54 - 2022-11-10 21:54 - 000688128 _____ C:\Windows\system32\FsNVSDeviceSource.dll
2022-11-10 21:54 - 2022-11-10 21:54 - 000288768 _____ C:\Windows\system32\Windows.Management.InprocObjects.dll
2022-11-10 21:54 - 2022-11-10 21:54 - 000073216 _____ C:\Windows\system32\nettraceex.dll
2022-11-10 21:54 - 2022-11-10 21:54 - 000012253 _____ C:\Windows\system32\DrtmAuthTxt.wim
2022-11-10 21:50 - 2022-11-10 21:50 - 000000000 ___HD C:\$WinREAgent
2022-11-10 20:23 - 2022-11-10 22:47 - 000002716 _____ C:\Windows\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2022-11-10 20:23 - 2022-11-10 20:23 - 000002140 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-11-09 20:24 - 2022-11-09 20:24 - 000862936 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2022-11-09 20:24 - 2022-11-09 20:24 - 000672272 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2022-11-09 20:24 - 2022-11-09 20:24 - 000564304 _____ (AVAST Software) C:\Windows\system32\Drivers\aswNetHub.sys
2022-11-09 20:24 - 2022-11-09 20:24 - 000390096 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdriver.sys
2022-11-09 20:24 - 2022-11-09 20:24 - 000327896 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2022-11-09 20:24 - 2022-11-09 20:24 - 000306128 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsh.sys
2022-11-09 20:24 - 2022-11-09 20:24 - 000276520 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2022-11-09 20:24 - 2022-11-09 20:24 - 000270552 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2022-11-09 20:24 - 2022-11-09 20:24 - 000238152 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2022-11-09 20:24 - 2022-11-09 20:24 - 000221944 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2022-11-09 20:24 - 2022-11-09 20:24 - 000114464 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2022-11-09 20:24 - 2022-11-09 20:24 - 000105936 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniv.sys
2022-11-09 20:24 - 2022-11-09 20:24 - 000090008 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2022-11-09 20:24 - 2022-11-09 20:24 - 000048512 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2022-11-09 20:24 - 2022-11-09 20:24 - 000003990 _____ C:\Windows\system32\Tasks\Avast Emergency Update
2022-11-03 18:35 - 2022-11-03 18:35 - 000060173 _____ C:\Users\trisk\Downloads\POZVÁNKA NA T. S. 9. 11. 2022_VR.pdf
2022-11-02 19:11 - 2022-11-02 19:11 - 001130169 _____ C:\Users\trisk\Downloads\eTicket_1040321.pdf
2022-11-02 18:31 - 2022-11-02 18:31 - 000075157 _____ C:\Users\trisk\Downloads\3b21f03e-5ad4-11ed-9bbd-9e966f951e90.pdf
2022-11-02 18:24 - 2022-11-02 18:24 - 000001538 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Driver & Support Assistant.lnk
2022-11-02 17:14 - 2022-11-02 17:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2022-11-02 17:14 - 2022-11-02 17:14 - 000000000 ____D C:\Program Files\iTunes
2022-10-26 07:11 - 2022-11-10 22:47 - 000002988 _____ C:\Windows\system32\Tasks\CCleaner Update
2022-10-26 06:56 - 2022-10-26 06:56 - 000131314 _____ C:\Users\trisk\Downloads\Invoice 55064.pdf
2022-10-24 16:36 - 2022-10-24 16:36 - 000812065 _____ C:\Users\trisk\Downloads\Jak sdělovat kritiku a nepříjemné informace.pdf
2022-10-23 17:13 - 2022-11-10 22:47 - 000003482 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2022-10-23 17:13 - 2022-10-23 17:13 - 000002075 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2022-10-17 17:28 - 2022-10-17 17:28 - 001201410 _____ C:\Users\trisk\Downloads\II_Kurikiulum_ZV_test v3.pdf
2022-10-17 16:22 - 2022-10-17 16:22 - 000046080 _____ C:\Users\trisk\Downloads\07_ukazka_dotazniku_1.xls
2022-10-17 16:22 - 2022-10-17 16:22 - 000041472 _____ C:\Users\trisk\Downloads\08_ukazka_dotazniku_2.xls
2022-10-17 16:21 - 2022-10-17 16:21 - 000030208 _____ C:\Users\trisk\Downloads\06_jednoducha_tabulka_-_zamereni_autoevalucnich_cinnosti.xls
2022-10-17 16:20 - 2022-10-17 16:20 - 000033280 _____ C:\Users\trisk\Downloads\05_ramec_autoevaluacnich_cinnosti.xls
2022-10-17 16:20 - 2022-10-17 16:20 - 000032256 _____ C:\Users\trisk\Downloads\04_planovani_zamereni_na_ruzne_oblasti_zivota_skoly (1).xls
2022-10-17 16:06 - 2022-10-17 16:06 - 000032256 _____ C:\Users\trisk\Downloads\04_planovani_zamereni_na_ruzne_oblasti_zivota_skoly.xls
2022-10-17 15:42 - 2022-10-17 15:42 - 000025600 _____ C:\Users\trisk\Downloads\02_jednoduchy_nastroj_pro_orientacni_posouzeni_urovne_zajisteni_kvality.xls
2022-10-17 15:35 - 2022-10-17 15:37 - 000033280 _____ C:\Users\trisk\Downloads\01_dotaznik_-_vlastni_hodnoceni_skoly.xls
2022-10-16 14:43 - 2022-10-16 14:43 - 002922441 _____ C:\Users\trisk\Downloads\Protokol z 1. LP (L2) (18. Sep 2022 at 22_31)
2022-10-16 14:43 - 2022-10-16 14:43 - 000850470 _____ C:\Users\trisk\Downloads\Edited - Protokol z 1. LP (L2) (18. Sep 2022 at 21_53)
2022-10-16 14:43 - 2022-10-16 14:43 - 000061152 _____ C:\Users\trisk\Downloads\Edited - Protokol z 1. LP (L2) (18. Sep 2022 at 22_28)
2022-10-14 20:02 - 2022-10-14 20:02 - 000049908 _____ C:\Users\trisk\Downloads\confirmation_20221014205507 (1).pdf
2022-10-14 19:55 - 2022-10-14 19:55 - 000049908 _____ C:\Users\trisk\Downloads\confirmation_20221014205507.pdf
2022-10-13 19:42 - 2022-10-13 19:42 - 000000000 ____D C:\Users\trisk\AppData\Local\DBG
2022-10-13 19:38 - 2022-10-07 04:01 - 000129000 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2022-10-13 19:38 - 2022-10-07 04:01 - 000041984 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhdap64.dll
2022-10-13 17:46 - 2022-10-11 06:00 - 001967904 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2022-10-13 17:46 - 2022-10-11 06:00 - 001967904 _____ C:\Windows\system32\vulkaninfo.exe
2022-10-13 17:46 - 2022-10-11 06:00 - 001524488 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2022-10-13 17:46 - 2022-10-11 06:00 - 001524488 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2022-10-13 17:46 - 2022-10-11 06:00 - 001471992 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2022-10-13 17:46 - 2022-10-11 06:00 - 001432320 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2022-10-13 17:46 - 2022-10-11 06:00 - 001432320 _____ C:\Windows\system32\vulkan-1.dll
2022-10-13 17:46 - 2022-10-11 06:00 - 001214000 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2022-10-13 17:46 - 2022-10-11 06:00 - 001145608 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2022-10-13 17:46 - 2022-10-11 06:00 - 001145608 _____ C:\Windows\SysWOW64\vulkan-1.dll
2022-10-13 17:46 - 2022-10-11 05:56 - 000870928 _____ C:\Windows\system32\nvofapi64.dll
2022-10-13 17:46 - 2022-10-11 05:56 - 000823312 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2022-10-13 17:46 - 2022-10-11 05:56 - 000693760 _____ C:\Windows\SysWOW64\nvofapi.dll
2022-10-13 17:46 - 2022-10-11 05:55 - 002246664 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2022-10-13 17:46 - 2022-10-11 05:55 - 001653248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2022-10-13 17:46 - 2022-10-11 05:55 - 001523216 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2022-10-13 17:46 - 2022-10-11 05:55 - 001261064 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2022-10-13 17:46 - 2022-10-11 05:55 - 001185272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2022-10-13 17:46 - 2022-10-11 05:55 - 000987672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2022-10-13 17:46 - 2022-10-11 05:55 - 000709640 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2022-10-13 17:46 - 2022-10-11 05:54 - 015218688 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2022-10-13 17:46 - 2022-10-11 05:54 - 012540912 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2022-10-13 17:46 - 2022-10-11 05:54 - 005429248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2022-10-13 17:46 - 2022-10-11 05:54 - 003101176 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2022-10-13 17:46 - 2022-10-11 05:54 - 000457232 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2022-10-13 17:46 - 2022-10-11 05:53 - 005906416 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll
2022-10-13 17:46 - 2022-10-11 05:53 - 005753360 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2022-10-13 17:46 - 2022-10-11 05:52 - 000853552 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2022-10-13 17:46 - 2022-10-11 05:51 - 007587792 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2022-10-13 17:46 - 2022-10-11 05:51 - 006457800 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2022-10-13 17:46 - 2022-10-07 04:01 - 000095170 _____ C:\Windows\system32\nvinfo.pb
2022-10-13 17:45 - 2022-10-13 17:45 - 000025576 _____ (AVAST Software) C:\Windows\system32\Drivers\aswElam.sys
2022-10-13 16:21 - 2022-11-10 22:47 - 000003398 _____ C:\Windows\system32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-10-13 16:21 - 2022-11-10 22:47 - 000003152 _____ C:\Windows\system32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-10-13 16:21 - 2022-11-10 22:47 - 000002984 _____ C:\Windows\system32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-10-13 16:21 - 2022-11-10 22:47 - 000002948 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-10-13 16:21 - 2022-11-10 22:47 - 000002948 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-10-13 16:21 - 2022-11-10 22:47 - 000002948 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-10-13 16:21 - 2022-11-10 22:47 - 000002948 _____ C:\Windows\system32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-10-13 16:21 - 2022-11-10 22:47 - 000002914 _____ C:\Windows\system32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-10-13 16:21 - 2022-11-10 22:47 - 000002744 _____ C:\Windows\system32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2022-10-13 16:21 - 2022-03-30 18:55 - 002200272 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2022-10-13 16:21 - 2022-03-30 18:54 - 002859264 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2022-10-12 19:04 - 2022-10-12 19:04 - 000001426 _____ C:\Windows\system32\default_error_stack-000047-000000.txt
2022-10-12 17:38 - 2022-10-12 17:38 - 000060928 _____ C:\Windows\system32\runexehelper.exe

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-11-11 19:32 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-11-11 19:31 - 2021-05-02 15:16 - 001693984 _____ C:\Windows\system32\PerfStringBackup.INI
2022-11-11 19:31 - 2019-12-07 15:41 - 000718210 _____ C:\Windows\system32\perfh005.dat
2022-11-11 19:31 - 2019-12-07 15:41 - 000145352 _____ C:\Windows\system32\perfc005.dat
2022-11-11 19:31 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2022-11-11 19:30 - 2021-10-31 10:58 - 000004210 _____ C:\Windows\system32\Tasks\User_Feed_Synchronization-{37B55C51-AD14-423A-83DC-0DDE22B6B337}
2022-11-11 19:28 - 2021-05-02 15:55 - 000000000 ____D C:\Program Files\CCleaner
2022-11-11 19:28 - 2021-05-02 15:54 - 000000000 ____D C:\Program Files (x86)\Steam
2022-11-11 19:28 - 2021-05-02 15:27 - 000000000 ____D C:\Program Files (x86)\Google
2022-11-11 19:28 - 2021-05-02 15:17 - 000000000 ___RD C:\Users\trisk\OneDrive
2022-11-11 19:26 - 2022-07-02 18:54 - 000008192 ___SH C:\DumpStack.log.tmp
2022-11-11 19:26 - 2021-05-02 19:26 - 000000000 ____D C:\ProgramData\NVIDIA
2022-11-11 19:26 - 2021-05-02 15:25 - 000000000 ____D C:\ProgramData\Avast Software
2022-11-11 19:26 - 2020-11-19 00:30 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2022-11-11 19:26 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-11-11 19:26 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2022-11-11 19:25 - 2021-05-02 20:07 - 000000000 ____D C:\Users\trisk\AppData\Roaming\IObit
2022-11-11 19:25 - 2019-12-07 10:03 - 000786432 _____ C:\Windows\system32\config\BBI
2022-11-11 19:21 - 2021-05-02 19:39 - 000000000 ____D C:\Users\trisk\AppData\Local\CrashDumps
2022-11-11 18:14 - 2022-08-26 17:43 - 000000000 ____D C:\Users\trisk\AppData\Local\Deployment
2022-11-11 18:14 - 2021-05-02 15:16 - 000000000 ____D C:\Users\trisk\AppData\Local\Packages
2022-11-11 17:58 - 2020-11-18 23:29 - 000000000 ____D C:\Windows\system32\SleepStudy
2022-11-11 17:28 - 2021-05-02 15:29 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-11-10 22:47 - 2022-05-22 17:26 - 000002970 _____ C:\Windows\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132
2022-11-10 22:47 - 2022-05-22 17:26 - 000002678 _____ C:\Windows\system32\Tasks\USER_ESRV_SVC_QUEENCREEK
2022-11-10 22:47 - 2022-05-22 17:26 - 000002604 _____ C:\Windows\system32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon
2022-11-10 22:47 - 2021-12-11 14:37 - 000003066 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-571745533-3586649985-1602090759-1001
2022-11-10 22:47 - 2021-08-18 19:05 - 000002252 _____ C:\Windows\system32\Tasks\CCleanerSkipUAC - trisk
2022-11-10 22:47 - 2021-08-14 16:13 - 000003042 _____ C:\Windows\system32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473
2022-11-10 22:47 - 2021-05-02 20:21 - 000002588 _____ C:\Windows\system32\Tasks\CreateExplorerShellUnelevatedTask
2022-11-10 22:47 - 2021-05-02 15:27 - 000003402 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2022-11-10 22:47 - 2021-05-02 15:27 - 000003178 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2022-11-10 22:47 - 2021-05-02 15:26 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2022-11-10 22:47 - 2020-11-19 00:32 - 000003568 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-11-10 22:47 - 2020-11-19 00:32 - 000003344 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-11-10 21:58 - 2021-09-14 22:31 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2022-11-10 21:58 - 2020-11-18 23:29 - 000660672 _____ C:\Windows\system32\FNTCACHE.DAT
2022-11-10 21:57 - 2019-12-07 10:14 - 000000000 ___SD C:\Windows\system32\UNP
2022-11-10 21:57 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2022-11-10 21:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2022-11-10 21:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources
2022-11-10 21:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe
2022-11-10 21:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Dism
2022-11-10 21:57 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr
2022-11-10 21:56 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp
2022-11-10 21:54 - 2020-11-19 00:32 - 003014656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2022-11-10 21:45 - 2021-05-04 12:40 - 000000000 ____D C:\Windows\system32\MRT
2022-11-10 21:43 - 2021-05-04 12:40 - 146960040 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2022-11-10 15:43 - 2021-05-02 15:18 - 000000000 ____D C:\Users\trisk\OneDrive\Dokumenty\SMART Notebook
2022-11-09 20:24 - 2019-12-07 10:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2022-11-06 21:10 - 2022-08-24 18:08 - 000000000 ____D C:\ProgramData\SMART Technologies
2022-11-06 13:03 - 2021-12-03 15:24 - 000000000 ____D C:\Users\trisk\AppData\Roaming\msihmdt
2022-11-06 09:45 - 2020-11-19 00:32 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-11-02 18:24 - 2021-07-01 18:11 - 000000000 ____D C:\Program Files (x86)\Intel
2022-11-02 18:24 - 2021-05-28 18:26 - 000000000 ____D C:\ProgramData\Package Cache
2022-11-02 17:13 - 2021-05-02 15:34 - 000000000 ____D C:\Program Files\Microsoft Office
2022-10-29 19:01 - 2021-11-08 09:03 - 000000000 ____D C:\Users\trisk\AppData\Roaming\Pentablet V3
2022-10-26 06:59 - 2021-05-02 19:58 - 000000000 ____D C:\Users\trisk\AppData\Local\LenovoServiceBridge
2022-10-23 19:25 - 2021-05-21 20:42 - 000000000 ____D C:\Users\trisk\AppData\Local\VirtualStore
2022-10-19 17:37 - 2021-05-04 19:26 - 000000000 ____D C:\Users\trisk\AppData\Roaming\Samsung
2022-10-19 17:33 - 2021-05-04 19:31 - 000000000 ____D C:\ProgramData\boost_interprocess
2022-10-13 19:46 - 2021-05-02 15:16 - 000000000 ____D C:\Users\trisk\AppData\Local\D3DSCache
2022-10-13 19:41 - 2021-05-02 19:26 - 000000000 ____D C:\Users\trisk\AppData\Local\NVIDIA
2022-10-13 19:40 - 2021-05-02 19:26 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2022-10-13 16:21 - 2021-05-02 19:26 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2022-10-13 16:21 - 2021-05-02 19:26 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2022-10-12 19:04 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation

==================== Files in the root of some directories ========

2021-05-30 08:20 - 2021-05-30 08:20 - 095884942 _____ () C:\Users\trisk\AppData\Roaming\gta5_patch.bin
2021-05-30 08:20 - 2021-05-30 08:20 - 000332800 _____ () C:\Users\trisk\AppData\Roaming\patcher.dll

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-11-2022 01
Ran by trisk (11-11-2022 19:34:08)
Running from C:\Users\trisk\OneDrive\Plocha
Microsoft Windows 10 Home Version 21H2 19044.2251 (X64) (2021-05-02 14:12:42)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-571745533-3586649985-1602090759-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-571745533-3586649985-1602090759-503 - Limited - Disabled)
Guest (S-1-5-21-571745533-3586649985-1602090759-501 - Limited - Disabled)
trisk (S-1-5-21-571745533-3586649985-1602090759-1001 - Administrator - Enabled) => C:\Users\trisk
WDAGUtilityAccount (S-1-5-21-571745533-3586649985-1602090759-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
FW: Avast Antivirus (Enabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

ACD/Labs 2017 Freeware in C:\ACD2017FREE\ (HKLM-x32\...\ACDLabs in C__ACD2017FREE_) (Version: v14.00, FREE - "ACD/Labs")
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 22.003.20263 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601032}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Apple Mobile Device Support (HKLM\...\{065D0CC8-C382-48AF-8A88-0DD3366EB26C}) (Version: 16.0.0.25 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{B292D163-23D2-4523-A699-1ABEC1875609}) (Version: 2.7.0.3 - Apple Inc.)
Avast Premium Security (HKLM\...\Avast Antivirus) (Version: 22.10.6038 - Avast Software)
Balíček ovladače systému Windows - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\29DE0EDA6D3934C320738A786038F6A659246EE2) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Balíček ovladače systému Windows - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\5C2CA2E78E0549DAD5A8D092CC9B1280E6918AF0) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Balíček ovladače systému Windows - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\87289D5FED0A52C9CF1632E5C312356FF0CE502B) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Balíček ovladače systému Windows - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\9EB1D222C06E311A5B97457292EC1BACC8BD3E1C) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Balíček ovladače systému Windows - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\A5E55D4D1E9B0296BDF8BE93E5FA539478E93E3A) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Balíček ovladače systému Windows - Ocean Optics, Inc. (WinUSB) OceanOpticsUSBDevice (07/15/2010 1.2.0) (HKLM\...\E99E4F0F1A2992FB6BA9E272A967C402C47329C9) (Version: 07/15/2010 1.2.0 - Ocean Optics, Inc.)
Balíček ovladače systému Windows - PASCO Scientific (WinUSB) Pasco Interface (08/14/2008 1.0.0.0) (HKLM\...\AD4AD0F184940E4712E96652A58ADDC47894E622) (Version: 08/14/2008 1.0.0.0 - PASCO Scientific)
Balíček ovladače systému Windows - usb_device (WinUSB) USB Devices (06/18/2013 6.1.7600.16385) (HKLM\...\89C8826C3CE03A4013F2F6A758681CA362C6EC1A) (Version: 06/18/2013 6.1.7600.16385 - usb_device)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 6.05 - Piriform)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 11.0.0.1920 - Disc Soft Ltd)
Documentation Manager (HKLM\...\{669FA6D8-9A73-40F5-907C-9C8CCE1BB091}) (Version: 22.160.0.4 - Intel Corporation) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 107.0.5304.107 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.13 - Google LLC) Hidden
Grand Theft Auto V (HKLM-x32\...\{5EFC6C07-6B87-43FC-9524-F9E967241741}) (Version: 1.0.2545.0 - Rockstar Games)
Graphics Rules Maker (HKLM-x32\...\Graphics Rules Maker) (Version: 2-0-0 - SimsNetwork.com)
Intel Driver && Support Assistant (HKLM-x32\...\{578E6A4F-CA2B-42D1-BDA7-0890885BD753}) (Version: 22.7.44.6 - Intel) Hidden
Intel(R) Computing Improvement Program (HKLM\...\{D17293BC-1678-4281-B94E-DBCF66AE7611}) (Version: 2.4.08919 - Intel Corporation)
Intel(R) SUR QC Software Asset Manager (HKLM\...\{B3804557-9824-4918-AA88-0DFAC94CD3B5}) (Version: 3.5.5033 - Intel Corporation) Hidden
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00000160-0220-1029-84C8-B8D95FA3C8C3}) (Version: 22.160.0.4 - Intel Corporation)
Intel® Driver & Support Assistant (HKLM-x32\...\{27a1a209-4130-486f-a220-0f1495f7f325}) (Version: 22.7.44.6 - Intel)
Intel® Software Installer (HKLM-x32\...\{097f6fe6-d6f8-4204-b004-1e255f6cf68b}) (Version: 22.160.0.4 - Intel Corporation) Hidden
iTunes (HKLM\...\{F51B24B8-AE01-462A-B884-AE6B7C100C22}) (Version: 12.12.6.1 - Apple Inc.)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Lenovo Service Bridge (HKU\S-1-5-21-571745533-3586649985-1602090759-1001\...\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1) (Version: 5.0.2.13 - Lenovo)
LibreOffice 7.1.3.2 (HKLM\...\{76B2DBF3-5773-4463-9EEB-D4A099EB6265}) (Version: 7.1.3.2 - The Document Foundation)
LocoMania (HKLM-x32\...\{FF351DFF-5C83-4D1B-B4FE-838D6E8ACF45}_is1) (Version: 1.0 - US - ACTION, s.r.o.)
Microsoft .NET Core Host - 3.1.28 (x64) (HKLM\...\{26ECE92F-518E-40AF-9108-7B7B444A46DE}) (Version: 24.112.31513 - Microsoft Corporation) Hidden
Microsoft .NET Core Host FX Resolver - 3.1.28 (x64) (HKLM\...\{CDEA72F4-1367-4E0A-AC5F-0EBAF7C6825A}) (Version: 24.112.31513 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.28 (x64) (HKLM\...\{3691148D-EF42-4812-8956-AE11FC413B8D}) (Version: 24.112.31513 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.28 (x64) (HKLM-x32\...\{231e3b76-4d0f-4e60-9d69-f11c9c448630}) (Version: 3.1.28.31513 - Microsoft Corporation)
Microsoft 365 - cs-cz (HKLM\...\O365HomePremRetail - cs-cz) (Version: 16.0.15726.20174 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 107.0.1418.35 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 107.0.1418.35 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 22.225.1026.0001 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{7B1FCD52-8F6B-4F12-A143-361EA39F5E7C}) (Version: 3.67.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.32.31332 (HKLM-x32\...\{3746f21b-c990-4045-bb33-1cf98cff7a68}) (Version: 14.32.31332.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.32.31332 (HKLM-x32\...\{a98dc6ff-d360-4878-9f0a-915eba86eaf3}) (Version: 14.32.31332.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.13.26020 (HKLM-x32\...\{7474cd6e-76cc-4257-837e-5b9261e526af}) (Version: 14.13.26020.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.13.26020 (HKLM-x32\...\{5c045b7f-e561-4794-91f8-c6cda0893107}) (Version: 14.13.26020.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.32.31332 (HKLM\...\{F4499EE3-A166-496C-81BB-51D1BCDC70A9}) (Version: 14.32.31332 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.32.31332 (HKLM\...\{3407B900-37F5-4CC2-B612-5CD5D580A163}) (Version: 14.32.31332 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.32.31332 (HKLM-x32\...\{8972AC25-452E-4FFE-945A-EB9E28C20322}) (Version: 14.32.31332 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.32.31332 (HKLM-x32\...\{AEAA18F7-9C96-4A43-BC07-8B88A4913EEB}) (Version: 14.32.31332 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
NVIDIA FrameView SDK 1.2.7521.31103277 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.2.7521.31103277 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.25.1.27 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.25.1.27 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.39.16 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.39.16 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 522.25 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 522.25 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
NVIDIA USBC Driver 1.50.831.832 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_USBC) (Version: 1.50.831.832 - NVIDIA Corporation)
Ocean Optics USB Drivers (HKLM-x32\...\OOUsbDrivers) (Version: 1.1.0.0 - PASCO scientific)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.15726.20096 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.15726.20096 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Pasco USB Driver (HKLM-x32\...\PascoUSBDriver) (Version: 1.2.0.0 - PASCO scientific)
PascoCommonFiles (HKLM-x32\...\PascoCommonFiles) (Version: 3.7.0 - PASCO scientific)
Pentablet verze 3.2.2.211028 (HKLM\...\{5DAB8C1A-6D8E-467D-BE62-AC13087AA950}_is1) (Version: 3.2.2.211028 - XP-PEN Technology)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.44.403 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.9.3 - Rockstar Games)
RWS Jedlová 2.7 (HKLM-x32\...\ST5UNST #1) (Version: - )
Samsung Diagnostika tiskárny Samsung (HKLM-x32\...\Samsung Printer Diagnostics) (Version: 1.0.4.28 - HP Printing Korea Co., Ltd.)
Samsung Easy Document Creator (HKLM-x32\...\Samsung Easy Document Creator) (Version: 2.02.53 (30.05.2018) - HP Printing Korea Co., Ltd.)
Samsung Scan Process Machine (HKLM-x32\...\Samsung Scan Process Machine) (Version: 1.03.05.32 - Samsung Electronics Co., Ltd.) Hidden
SMART Czech Handwriting Resources (HKLM-x32\...\{65A75580-36A0-4490-8181-0967DD6C1464}) (Version: 15.1.10.0 - SMART Technologies ULC)
SMART Gallery Essentials (HKLM-x32\...\{13777035-D240-4AB9-9E9E-AA6855550E26}) (Version: 2.0.4.0 - SMART Technologies ULC)
SMART Ink (HKLM-x32\...\{96989BE4-A46F-4B61-BFD4-C1719BC4CF6F}) (Version: 5.12.339.1 - SMART Technologies ULC)
SMART Lesson Activity Toolkit (HKLM-x32\...\{8AD57A09-153E-4F6D-A269-0AD8AC54B82A}) (Version: 2.0.7.0 - SMART Technologies ULC)
SMART Notebook (HKLM-x32\...\{4732F22D-F132-46B9-B4C9-D70C73FD0217}) (Version: 22.0.3209.1 - SMART Technologies ULC)
SMART Ovladače produktů (HKLM-x32\...\{AB7AFF22-65C1-4F92-9CB7-85068DEB493A}) (Version: 12.19.211.0 - SMART Technologies ULC)
Spectrometry (HKLM-x32\...\{8DBDD6F2-CC06-4A2C-A9AD-32E835E1F189}) (Version: 2.4.0.5 - PASCO scientific)
Splinter Cell CZ 1.0 (HKLM-x32\...\Splinter Cell CZ 1.0_is1) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TechSmith Screen Capture Codec (HKLM-x32\...\{84FE50F5-B0F3-4D18-8BE8-A4DEEE0C37AD}) (Version: 4.1.1.0 - TechSmith Corporation) Hidden
The Sims 2 Ultimate Collection version 1.17.0.66 (HKLM-x32\...\The Sims 2 Ultimate Collection_is1) (Version: 1.17.0.66 - Mr DJ)
Trainz Paint Shed (HKLM-x32\...\{6202DCFE-2F03-445C-9885-CB54B062BC0F}) (Version: 1.6 - )
TRS2004 (HKLM-x32\...\{BDE1289F-4025-41A5-AD17-101DB4D82CA7}) (Version: 1.00.000 - )
Uninstall Samsung Printer Software (HKLM-x32\...\TotalUninstaller) (Version: 4.0.0.93 - Samsung Electronics CO., LTD.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.12 - VideoLAN)
WebAdvisor od společnosti McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.777 - McAfee, LLC)
WinRAR 6.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.01.0 - win.rar GmbH)
Zoom (HKU\S-1-5-21-571745533-3586649985-1602090759-1001\...\ZoomUMX) (Version: 5.11.11 (8425) - Zoom Video Communications, Inc.)

Packages:
=========
Canon Inkjet Print Utility -> C:\Program Files\WindowsApps\34791E63.CanonInkjetPrintUtility_3.1.0.0_neutral__6e5tt8cgb93ep [2021-08-23] (Canon Inc.)
Dolby Atmos for Gaming -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAtmosforGaming_3.20602.609.0_x64__rz1tebttyb220 [2021-05-02] (Dolby Laboratories)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-08-30] (Microsoft Corporation)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.14.9130.0_x64__8wekyb3d8bbwe [2022-09-18] (Microsoft Studios) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.963.0_x64__56jybvy8sckqj [2022-10-18] (NVIDIA Corp.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.15.227.0_x64__dt26b99r8h8gj [2021-05-02] (Realtek Semiconductor Corp)
Samsung Printer Experience -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.SamsungPrinterExperience_1.3.15.0_x64__3c1yjt4zspk6g [2021-05-04] (Samsung Electronics Co. Ltd.)
Wacom Inkspace App -> C:\Program Files\WindowsApps\D91E29CF.InkspaceApp_3.0.8.0_x64__38kynpdw5g1aw [2022-06-13] (Wacom Europe GmbH)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncShell64.dll [2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncShell64.dll [2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncShell64.dll [2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncShell64.dll [2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncShell64.dll [2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncShell64.dll [2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncShell64.dll [2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-11-09] (Avast Software s.r.o. -> AVAST Software)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncShell64.dll [2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncShell64.dll [2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncShell64.dll [2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncShell64.dll [2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncShell64.dll [2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncShell64.dll [2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncShell64.dll [2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-11-09] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncShell64.dll [2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-11-09] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2021-04-07] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext32.dll [2021-04-07] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2021-10-31] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-11-09] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2021-10-31] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncShell64.dll [2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\22.225.1026.0001\FileSyncShell64.dll [2022-11-10] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_663d96a36405ba10\nvshext.dll [2022-10-11] (Nvidia Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2022-11-09] (Avast Software s.r.o. -> AVAST Software)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext.dll [2021-04-07] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files (x86)\WinRAR\rarext32.dll [2021-04-07] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2022-08-09 15:02 - 2022-08-09 15:02 - 005998080 _____ () [File not signed] C:\Program Files (x86)\Intel\Driver and Support Assistant\irmfuu_module_win32.dll
2019-11-08 12:52 - 2019-11-08 12:52 - 000015872 _____ () [File not signed] C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\sbsdk-server\node_modules\SessionNotification.node
2021-05-04 19:26 - 2016-08-10 12:07 - 002847744 ____N () [File not signed] C:\Windows\system32\DlgSearchEngine.dll
2018-05-17 09:07 - 2018-05-17 09:07 - 000087552 ____N () [File not signed] C:\Windows\system32\SSDEVM64.DLL
2018-03-16 14:48 - 2018-03-16 14:48 - 000907776 _____ (Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\QtPlugins\5.4.1\platforms\qwindows.dll
2017-03-02 15:19 - 2017-03-02 15:19 - 000310272 ____N (easyhook.codeplex.com) [File not signed] C:\ProgramData\Dolby\DAX3\RADARHOST\EasyHook64.dll
2021-05-21 14:04 - 2021-05-21 14:04 - 000130048 _____ (Sam Grogan) [File not signed] C:\Program Files (x86)\Intel\Driver and Support Assistant\NotifyIconWin32.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 004370576 _____ (SMART Technologies ULC -> ) [File not signed] C:\Windows\WinSxS\x86_smarttech.angle.vc141.1.0_e7e76aadd9f46776_1.0.18.0_none_4a00a6445b7efc21\libGLESv2.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000045720 _____ (SMART Technologies ULC -> ) [File not signed] C:\Windows\WinSxS\x86_smarttech.boost.vc120.1.56_e7e76aadd9f46776_1.0.1.0_none_cacd116f976dee85\boost_date_time-vc120-mt-1_56.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000106136 _____ (SMART Technologies ULC -> ) [File not signed] C:\Windows\WinSxS\x86_smarttech.boost.vc120.1.56_e7e76aadd9f46776_1.0.1.0_none_cacd116f976dee85\boost_filesystem-vc120-mt-1_56.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000030872 _____ (SMART Technologies ULC -> ) [File not signed] C:\Windows\WinSxS\x86_smarttech.boost.vc120.1.56_e7e76aadd9f46776_1.0.1.0_none_cacd116f976dee85\boost_chrono-vc120-mt-1_56.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000633496 _____ (SMART Technologies ULC -> ) [File not signed] C:\Windows\WinSxS\x86_smarttech.boost.vc120.1.56_e7e76aadd9f46776_1.0.1.0_none_cacd116f976dee85\boost_regex-vc120-mt-1_56.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000022168 _____ (SMART Technologies ULC -> ) [File not signed] C:\Windows\WinSxS\x86_smarttech.boost.vc120.1.56_e7e76aadd9f46776_1.0.1.0_none_cacd116f976dee85\boost_system-vc120-mt-1_56.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000087704 _____ (SMART Technologies ULC -> ) [File not signed] C:\Windows\WinSxS\x86_smarttech.boost.vc120.1.56_e7e76aadd9f46776_1.0.1.0_none_cacd116f976dee85\boost_thread-vc120-mt-1_56.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000047256 _____ (SMART Technologies ULC -> ) [File not signed] C:\Windows\WinSxS\x86_smarttech.boost.vc141.1.67_e7e76aadd9f46776_1.0.30.0_none_3a3f0db2cb9ccaaa\boost_date_time-vc141-mt-x32-1_67.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000114328 _____ (SMART Technologies ULC -> ) [File not signed] C:\Windows\WinSxS\x86_smarttech.boost.vc141.1.67_e7e76aadd9f46776_1.0.30.0_none_3a3f0db2cb9ccaaa\boost_filesystem-vc141-mt-x32-1_67.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000723096 _____ (SMART Technologies ULC -> ) [File not signed] C:\Windows\WinSxS\x86_smarttech.boost.vc141.1.67_e7e76aadd9f46776_1.0.30.0_none_3a3f0db2cb9ccaaa\boost_regex-vc141-mt-x32-1_67.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000024216 _____ (SMART Technologies ULC -> ) [File not signed] C:\Windows\WinSxS\x86_smarttech.boost.vc141.1.67_e7e76aadd9f46776_1.0.30.0_none_3a3f0db2cb9ccaaa\boost_system-vc141-mt-x32-1_67.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000084120 _____ (SMART Technologies ULC -> ) [File not signed] C:\Windows\WinSxS\x86_smarttech.boost.vc141.1.67_e7e76aadd9f46776_1.0.30.0_none_3a3f0db2cb9ccaaa\boost_thread-vc141-mt-x32-1_67.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 001460880 _____ (SMART Technologies ULC -> ) [File not signed] C:\Windows\WinSxS\x86_smarttech.qt.vc120.5.4_e7e76aadd9f46776_5.4.31.2_none_7def3e6efb0eb133\libGLESv2.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 001648280 _____ (SMART Technologies ULC -> Apache Software Foundation) [File not signed] C:\Windows\WinSxS\x86_smarttech.log4cxx.vc120.0.10.1_e7e76aadd9f46776_1.0.65.1_none_79eb498bf0428b80\log4cxx-vc120-mt-x86.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 001705624 _____ (SMART Technologies ULC -> Apache Software Foundation) [File not signed] C:\Windows\WinSxS\x86_smarttech.log4cxx.vc141.0.10.1_e7e76aadd9f46776_1.0.53.1_none_7ee05d2b860fe232\log4cxx-vc141-mt-x86.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 004057232 _____ (SMART Technologies ULC -> Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Windows\WinSxS\x86_smarttech.qt.vc120.5.4_e7e76aadd9f46776_5.4.31.2_none_7def3e6efb0eb133\Qt5Core.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 003452048 _____ (SMART Technologies ULC -> Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Windows\WinSxS\x86_smarttech.qt.vc120.5.4_e7e76aadd9f46776_5.4.31.2_none_7def3e6efb0eb133\Qt5Gui.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000803472 _____ (SMART Technologies ULC -> Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Windows\WinSxS\x86_smarttech.qt.vc120.5.4_e7e76aadd9f46776_5.4.31.2_none_7def3e6efb0eb133\Qt5Network.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 004404368 _____ (SMART Technologies ULC -> Digia Plc and/or its subsidiary(-ies)) [File not signed] C:\Windows\WinSxS\x86_smarttech.qt.vc120.5.4_e7e76aadd9f46776_5.4.31.2_none_7def3e6efb0eb133\Qt5Widgets.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000649360 _____ (SMART Technologies ULC -> Microsoft Corporation) [File not signed] C:\Windows\WinSxS\amd64_smarttech.ms.vc120.crt_e7e76aadd9f46776_1.0.19.0_none_affc467131f8f86a\MSVCP120.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000952464 _____ (SMART Technologies ULC -> Microsoft Corporation) [File not signed] C:\Windows\WinSxS\amd64_smarttech.ms.vc120.crt_e7e76aadd9f46776_1.0.19.0_none_affc467131f8f86a\MSVCR120.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000444560 _____ (SMART Technologies ULC -> Microsoft Corporation) [File not signed] C:\Windows\WinSxS\x86_smarttech.ms.vc120.crt_e7e76aadd9f46776_1.0.19.0_none_f7a97d4846752170\MSVCP120.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000960144 _____ (SMART Technologies ULC -> Microsoft Corporation) [File not signed] C:\Windows\WinSxS\x86_smarttech.ms.vc120.crt_e7e76aadd9f46776_1.0.19.0_none_f7a97d4846752170\MSVCR120.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000451216 _____ (SMART Technologies ULC -> Microsoft Corporation) [File not signed] C:\Windows\WinSxS\x86_smarttech.ms.vc141.crt_e7e76aadd9f46776_1.0.19.0_none_6b50da4e49873c31\MSVCP140.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000075920 _____ (SMART Technologies ULC -> Microsoft Corporation) [File not signed] C:\Windows\WinSxS\x86_smarttech.ms.vc141.crt_e7e76aadd9f46776_1.0.19.0_none_6b50da4e49873c31\VCRUNTIME140.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 005165200 _____ (SMART Technologies ULC -> Microsoft Corporation) [File not signed] C:\Windows\WinSxS\x86_smarttech.ms.vc141.mfc_e7e76aadd9f46776_1.0.19.0_none_66b56f024c6a2b26\mfc140u.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000219808 _____ (SMART Technologies ULC -> SMART Technologies) [File not signed] C:\Windows\WinSxS\x86_smarttech.crashreporterclient.vc120.1.0_e7e76aadd9f46776_1.0.270.0_none_f47a802f410fb58a\crashreporterclient-vc120-mt-x86.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000198448 _____ (SMART Technologies ULC -> SMART Technologies) [File not signed] C:\Windows\WinSxS\x86_smarttech.crashreporterclient.vc141.1.0_e7e76aadd9f46776_1.0.204.0_none_4fd9e35c960cf3c6\crashreporterclient-vc141-mt-x86.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000235664 _____ (SMART Technologies ULC -> SMART Technologies) [File not signed] C:\Windows\WinSxS\x86_smarttech.hwr.vc120.2.3_e7e76aadd9f46776_2.3.216.1_none_bccbf5e0646e9e77\hwr-vc120-mt-x86.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000234128 _____ (SMART Technologies ULC -> SMART Technologies) [File not signed] C:\Windows\WinSxS\x86_smarttech.hwr.vc141.2.3_e7e76aadd9f46776_2.3.27.1_none_f3011bb6dadf1258\hwr-vc141-mt-x86.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000148120 _____ (SMART Technologies ULC -> SMART Technologies) [File not signed] C:\Windows\WinSxS\x86_smarttech.localization.vc120.2.0_e7e76aadd9f46776_2.0.238.0_none_5769b4cee387d544\localization-vc120-mt-x86.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000148120 _____ (SMART Technologies ULC -> SMART Technologies) [File not signed] C:\Windows\WinSxS\x86_smarttech.localization.vc120.2.0_e7e76aadd9f46776_2.0.242.0_none_576992a2e387fffb\localization-vc120-mt-x86.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000147264 _____ (SMART Technologies ULC -> SMART Technologies) [File not signed] C:\Windows\WinSxS\x86_smarttech.localization.vc141.2.0_e7e76aadd9f46776_2.0.24.0_none_1c86164450dcb222\localization-vc141-mt-x86.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000092824 _____ (SMART Technologies ULC -> SMART Technologies) [File not signed] C:\Windows\WinSxS\x86_smarttech.preference.vc120.1.0_e7e76aadd9f46776_1.0.101.0_none_a2784f94627c5a19\preference-vc120-mt-x86.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000093336 _____ (SMART Technologies ULC -> SMART Technologies) [File not signed] C:\Windows\WinSxS\x86_smarttech.preference.vc120.1.0_e7e76aadd9f46776_1.0.83.0_none_b1478425eec204ba\preference-vc120-mt-x86.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000360600 _____ (SMART Technologies ULC -> SMART Technologies) [File not signed] C:\Windows\WinSxS\x86_smarttech.preference.vc141.1.0_e7e76aadd9f46776_1.0.23.0_none_24e8df6ff1d98771\filestore-vc141-mt-x86.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000091800 _____ (SMART Technologies ULC -> SMART Technologies) [File not signed] C:\Windows\WinSxS\x86_smarttech.preference.vc141.1.0_e7e76aadd9f46776_1.0.23.0_none_24e8df6ff1d98771\preference-vc141-mt-x86.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000474936 _____ (SMART Technologies ULC -> SMART Technologies) [File not signed] C:\Windows\WinSxS\x86_smarttech.regionlib.vc141.2.0_e7e76aadd9f46776_2.0.270.0_none_a7fad232242a9343\regionlib-vc141-mt-x86.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 021533872 _____ (SMART Technologies ULC -> The ICU Project) [File not signed] C:\Windows\WinSxS\x86_smarttech.icu.vc120.53_e7e76aadd9f46776_1.0.25.0_none_49a9c4e0c2af1e3b\icudt53.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 001631408 _____ (SMART Technologies ULC -> The ICU Project) [File not signed] C:\Windows\WinSxS\x86_smarttech.icu.vc120.53_e7e76aadd9f46776_1.0.25.0_none_49a9c4e0c2af1e3b\icuin53.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 001118896 _____ (SMART Technologies ULC -> The ICU Project) [File not signed] C:\Windows\WinSxS\x86_smarttech.icu.vc120.53_e7e76aadd9f46776_1.0.25.0_none_49a9c4e0c2af1e3b\icuuc53.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 025676432 _____ (SMART Technologies ULC -> The ICU Project) [File not signed] C:\Windows\WinSxS\x86_smarttech.icu.vc141.57_e7e76aadd9f46776_1.0.41.0_none_a4578b16feac341e\icudt57.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 001861776 _____ (SMART Technologies ULC -> The ICU Project) [File not signed] C:\Windows\WinSxS\x86_smarttech.icu.vc141.57_e7e76aadd9f46776_1.0.41.0_none_a4578b16feac341e\icuin57.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 001265296 _____ (SMART Technologies ULC -> The ICU Project) [File not signed] C:\Windows\WinSxS\x86_smarttech.icu.vc141.57_e7e76aadd9f46776_1.0.41.0_none_a4578b16feac341e\icuuc57.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 001341592 _____ (SMART Technologies ULC -> The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Windows\WinSxS\x86_smarttech.openssl.vc120.1.0.1_e7e76aadd9f46776_1.0.201.0_none_64e9176b7193c898\LIBEAY32.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000280728 _____ (SMART Technologies ULC -> The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Windows\WinSxS\x86_smarttech.openssl.vc120.1.0.1_e7e76aadd9f46776_1.0.201.0_none_64e9176b7193c898\SSLEAY32.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 001374520 _____ (SMART Technologies ULC -> The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Windows\WinSxS\x86_smarttech.openssl.vc141.1.0.2_e7e76aadd9f46776_1.0.31.0_none_cefaa93139748669\LIBEAY32.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000288056 _____ (SMART Technologies ULC -> The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Windows\WinSxS\x86_smarttech.openssl.vc141.1.0.2_e7e76aadd9f46776_1.0.31.0_none_cefaa93139748669\SSLEAY32.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 004096816 _____ (SMART Technologies ULC -> The Qt Company Ltd) [File not signed] C:\Windows\WinSxS\x86_smarttech.qt.vc141.5.5_e7e76aadd9f46776_5.5.100.1_none_b24a83acb5f2dd18\Qt5Core.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 003509552 _____ (SMART Technologies ULC -> The Qt Company Ltd) [File not signed] C:\Windows\WinSxS\x86_smarttech.qt.vc141.5.5_e7e76aadd9f46776_5.5.100.1_none_b24a83acb5f2dd18\Qt5Gui.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000820016 _____ (SMART Technologies ULC -> The Qt Company Ltd) [File not signed] C:\Windows\WinSxS\x86_smarttech.qt.vc141.5.5_e7e76aadd9f46776_5.5.100.1_none_b24a83acb5f2dd18\Qt5Network.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 004434224 _____ (SMART Technologies ULC -> The Qt Company Ltd) [File not signed] C:\Windows\WinSxS\x86_smarttech.qt.vc141.5.5_e7e76aadd9f46776_5.5.100.1_none_b24a83acb5f2dd18\Qt5Widgets.dll
2022-08-24 18:08 - 2022-08-24 18:08 - 000152880 _____ (SMART Technologies ULC -> The Qt Company Ltd) [File not signed] C:\Windows\WinSxS\x86_smarttech.qt.vc141.5.5_e7e76aadd9f46776_5.5.100.1_none_b24a83acb5f2dd18\Qt5Xml.dll
2022-05-05 16:44 - 2022-05-05 16:44 - 002122240 _____ (SQLite Development Team) [File not signed] C:\Program Files\Intel\SUR\QUEENCREEK\x64\sqlite3.dll
2021-02-17 15:55 - 2021-02-17 15:55 - 000965632 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Common Files\SMART Technologies\SystemMenu\QtPlugins\5.5.1\platforms\qwindows.dll
2021-11-08 09:04 - 2019-12-30 22:01 - 000036352 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Pentablet\imageformats\qdds.dll
2021-11-08 09:04 - 2019-12-30 22:00 - 000022016 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Pentablet\imageformats\qgif.dll
2021-11-08 09:04 - 2019-12-30 22:01 - 000029184 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Pentablet\imageformats\qicns.dll
2021-11-08 09:04 - 2019-12-30 22:00 - 000022528 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Pentablet\imageformats\qico.dll
2021-11-08 09:04 - 2019-12-30 22:00 - 000206848 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Pentablet\imageformats\qjpeg.dll
2021-11-08 09:04 - 2019-12-30 22:12 - 000016896 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Pentablet\imageformats\qsvg.dll
2021-11-08 09:04 - 2019-12-30 22:01 - 000016384 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Pentablet\imageformats\qtga.dll
2021-11-08 09:04 - 2019-12-30 22:02 - 000310272 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Pentablet\imageformats\qtiff.dll
2021-11-08 09:04 - 2019-12-30 22:02 - 000015360 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Pentablet\imageformats\qwbmp.dll
2021-11-08 09:04 - 2019-12-30 22:03 - 000287232 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Pentablet\imageformats\qwebp.dll
2021-11-08 09:04 - 2019-12-30 22:00 - 000966144 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Pentablet\platforms\qwindows.dll
2021-11-08 09:03 - 2019-12-31 13:35 - 004686848 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Pentablet\Qt5Core.dll
2021-11-08 09:03 - 2019-12-30 21:33 - 005035008 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Pentablet\Qt5Gui.dll
2021-11-08 09:04 - 2019-12-30 21:24 - 000674816 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Pentablet\Qt5Network.dll
2021-11-08 09:04 - 2019-12-30 22:12 - 000251392 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Pentablet\Qt5Svg.dll
2021-11-08 09:04 - 2019-12-30 21:49 - 004518912 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Pentablet\Qt5Widgets.dll
2021-11-08 09:04 - 2019-12-30 21:24 - 000151040 _____ (The Qt Company Ltd) [File not signed] C:\Program Files\Pentablet\Qt5Xml.dll
2021-11-08 09:04 - 2020-04-13 15:24 - 000146944 _____ (TODO: <公司名>) [File not signed] C:\Windows\system32\wintab32.dll
2019-11-08 12:43 - 2019-11-08 12:43 - 000597504 _____ (Vision Objects) [File not signed] C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\sbsdk-server\MyScript\engine\bin\win-x86\MyScriptEngine.dll
2019-11-08 12:43 - 2019-11-08 12:43 - 000326656 _____ (Vision Objects) [File not signed] C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\sbsdk-server\MyScript\engine\bin\win-x86\MyScriptShape.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2022-07-20] (McAfee, LLC -> McAfee, LLC)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2022-07-20] (McAfee, LLC -> McAfee, LLC)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2022-11-02] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2021-05-21 20:31 - 2021-05-21 20:31 - 000000753 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1 localhost

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-571745533-3586649985-1602090759-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\trisk\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\motoráček na plochu.png
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{4F713DEC-4BCB-4144-9C16-1B49B5ECFF4A}] => (Allow) C:\Users\trisk\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{07EDEB23-A6C4-4918-B4DD-54E70347B4FC}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{495385EA-445F-495E-9C93-0E100E7CB057}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{79BDFA1B-992A-473F-A860-CF65FCF20A38}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{694A029F-9D34-4B00-B3F0-4FB603B66652}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{A3CFC56E-2972-40D7-94F7-CAD80E30EFA0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planet Zoo\PlanetZoo.exe (Frontier Developments) [File not signed]
FirewallRules: [{0E5B0655-136B-4028-973A-404D0297653B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planet Zoo\PlanetZoo.exe (Frontier Developments) [File not signed]
FirewallRules: [{C655D532-1EAD-49FC-BA75-9BC9021F55CE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Transport Fever 2\TransportFever2.exe () [File not signed]
FirewallRules: [{E7E77492-F6F1-44A4-9818-B32F19224647}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Transport Fever 2\TransportFever2.exe () [File not signed]
FirewallRules: [{E61E0B89-C9B9-46F7-8467-BED0E2F42EF9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{379D0A3F-285B-4CA2-B8F4-775882C12804}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{AC941976-0D3D-4F6F-8561-21D472A38AE2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Game.exe (Illusion Softworks) [File not signed]
FirewallRules: [{C1EEC382-D790-4196-883B-BD3BF4ECA3F2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Game.exe (Illusion Softworks) [File not signed]
FirewallRules: [{1C7A33EC-1DC1-468A-9740-6F5A91FF952E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Setup.exe () [File not signed]
FirewallRules: [{68AAE103-5353-404D-8CEB-8F57ED78A26D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mafia\Mafia\Setup.exe () [File not signed]
FirewallRules: [{DE3550B1-A346-47A9-B573-34B2256621E7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto San Andreas\gta-sa.exe () [File not signed]
FirewallRules: [{ADFCB74A-EE36-4AC3-9A54-259579FD4A42}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Grand Theft Auto San Andreas\gta-sa.exe () [File not signed]
FirewallRules: [{C018401F-A387-4345-B19A-119B4A5E876C}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Printer Center\SamsungPrinterCenter.exe (HP Inc. -> Samsung Electronics Co., Ltd.)
FirewallRules: [{8AAE100E-5A4E-4D33-A915-29D80EE20F02}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ScanCDLM.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{70F25F31-71B8-4792-B4B7-799F720F84E7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks.exe () [File not signed]
FirewallRules: [{57A6B9C9-5F02-4975-9B36-04144F5D4F7B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks.exe () [File not signed]
FirewallRules: [{7328682C-E40B-424F-8BFF-E62AFFC41044}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks64.exe () [File not signed]
FirewallRules: [{AD12398D-A3CF-482D-AF2C-ABE04E484B75}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\RailWorks\RailWorks64.exe () [File not signed]
FirewallRules: [{425BD633-8920-48BE-9CCE-F7CCAC725DA6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sherlock Holmes - The Devil's Daughter\Binaries\Win64\Sherlock.exe (Frogwares Ireland ltd -> Frogwares, Inc.)
FirewallRules: [{A20536A2-F2D1-481E-8CE7-3BB4585DF1D3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sherlock Holmes - The Devil's Daughter\Binaries\Win64\Sherlock.exe (Frogwares Ireland ltd -> Frogwares, Inc.)
FirewallRules: [{AC087CF9-232D-4893-9BD7-DF4CE0E37EAE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Heroes of Might and Magic 5\bin\H5_Game.exe () [File not signed]
FirewallRules: [{243E771B-030C-4732-8E76-77EA5CEA2103}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Heroes of Might and Magic 5\bin\H5_Game.exe () [File not signed]
FirewallRules: [{EBB5F3B9-1A7A-4630-B4D9-F46069F16029}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sherlock Holmes - Crimes and Punishments\Binaries\Win32\Sherlock.exe (Frogwares, Inc.) [File not signed]
FirewallRules: [{320A271B-F348-4006-9D61-D6166FE207F3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sherlock Holmes - Crimes and Punishments\Binaries\Win32\Sherlock.exe (Frogwares, Inc.) [File not signed]
FirewallRules: [{AF6FDB80-14F4-4BBE-A884-03D88F4593CD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\OMSI 2\Launcher.exe () [File not signed]
FirewallRules: [{65578EE5-1C68-4A9B-9450-C2DE2144E962}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\OMSI 2\Launcher.exe () [File not signed]
FirewallRules: [{6BCAC053-118C-4ADF-8CD6-4B283B66CBE0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Return to Castle Wolfenstein\WolfSP.exe () [File not signed]
FirewallRules: [{03C46347-BAB9-4A3C-AF15-E02F6DDBBBD6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Return to Castle Wolfenstein\WolfSP.exe () [File not signed]
FirewallRules: [{72B028BE-42D1-438D-9FE3-52CC2822F216}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Return to Castle Wolfenstein\WolfMP.exe () [File not signed]
FirewallRules: [{41B1835E-9C78-406A-B6FB-784651A047C0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Return to Castle Wolfenstein\WolfMP.exe () [File not signed]
FirewallRules: [{5E633DAE-0C06-4D68-AB08-FB7DED07C1AF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Wolfenstein.The.New.Order\WolfNewOrder_x64.exe (MachineGames) [File not signed]
FirewallRules: [{EBEEC4F8-F111-4504-9A5B-3690A5A21C70}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Wolfenstein.The.New.Order\WolfNewOrder_x64.exe (MachineGames) [File not signed]
FirewallRules: [{C2DC3C91-CAC2-4204-BC7D-485153528FD2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Traffic Giant\trafficgiant.exe () [File not signed]
FirewallRules: [{9760DCD1-FDD1-4845-B284-C5E32FDDFEA8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Traffic Giant\trafficgiant.exe () [File not signed]
FirewallRules: [{765A5196-7493-45B9-8706-085D7D56DC7F}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Printer Center\SamsungPrinterCenter.exe (HP Inc. -> Samsung Electronics Co., Ltd.)
FirewallRules: [{4128B949-8B26-4F51-9643-7DB664485635}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDCApp.exe (HP Inc. -> )
FirewallRules: [{15D27ECF-1E5B-4CBC-B3D9-7E42E8B0AB6B}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDCApp.exe (HP Inc. -> )
FirewallRules: [{E31BB5F7-64DE-49C2-843E-49016CC59EDB}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe (HP Inc. -> )
FirewallRules: [{2F8655E0-61AA-48E0-B1B2-D6255C0E2F94}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe (HP Inc. -> )
FirewallRules: [{5C88E142-15DA-4836-B3BE-09A92BCE48DB}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{7536964D-1060-4760-8C43-DB903F0E10FF}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> AVAST Software)
FirewallRules: [{DC3CC2E2-D4B7-47CA-AF10-60D8DBCD0E6B}] => (Allow) C:\Program Files (x86)\The Sims 2 Ultimate Collection\The Sims 2 Mansion and Garden Stuff\TSBin\Sims2EP9.exe (Maxis, a division of Electronic Arts Inc.) [File not signed]
FirewallRules: [{177E734A-AD89-4997-99A2-B594CE2AA8D4}] => (Allow) C:\Program Files (x86)\The Sims 2 Ultimate Collection\The Sims 2 Mansion and Garden Stuff\TSBin\Sims2EP9.exe (Maxis, a division of Electronic Arts Inc.) [File not signed]
FirewallRules: [{D7C315BF-554A-4ABC-A0E1-67A2AB94A77A}] => (Allow) C:\Program Files (x86)\The Sims 2 Ultimate Collection\The Sims 2 Mansion and Garden Stuff\CSBin\TS2BodyShop.exe (Maxis, a division of Electronic Arts Inc.) [File not signed]
FirewallRules: [{6849153B-701A-45BD-9DE0-77A8C2FCC807}] => (Allow) C:\Program Files (x86)\The Sims 2 Ultimate Collection\The Sims 2 Mansion and Garden Stuff\CSBin\TS2BodyShop.exe (Maxis, a division of Electronic Arts Inc.) [File not signed]
FirewallRules: [{0B448A93-DB27-4864-B73C-CDD6D74CAE41}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{BA083E6F-3C9A-40B1-A0F1-473B028FD4E5}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{DA7289E6-7ECD-43D7-8A3E-01AF942B05DD}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D98F2617-0D5B-4F03-BFFB-AA09F338D1F7}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{D452A920-5407-4836-90F9-172D9AE0FE16}C:\program files (x86)\age of mythology\age of mythology v2.6.1155148.7\aomx.exe] => (Allow) C:\program files (x86)\age of mythology\age of mythology v2.6.1155148.7\aomx.exe (Microsoft Corp) [File not signed]
FirewallRules: [UDP Query User{A48ADA29-D7E3-445E-A545-91B494E47AAE}C:\program files (x86)\age of mythology\age of mythology v2.6.1155148.7\aomx.exe] => (Allow) C:\program files (x86)\age of mythology\age of mythology v2.6.1155148.7\aomx.exe (Microsoft Corp) [File not signed]
FirewallRules: [{AD697EAD-42AC-4A3F-A358-F83EF48EA5EE}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{61DA30D0-C08C-4A06-AB43-1C645B4D95AD}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{C177AE06-B074-494E-943B-486AFF31B78B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Medal of Honor\Binaries\moh.exe (Electronic Arts Inc.) [File not signed]
FirewallRules: [{A0A92028-EFB2-43B0-8EF3-A327F1B05AAC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Medal of Honor\Binaries\moh.exe (Electronic Arts Inc.) [File not signed]
FirewallRules: [{68F1CE11-50E3-4852-B361-5DA5AAD35161}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trainz Railroad Simulator 2019\TRS19.exe (N3V Games Pty Ltd -> N3V Games Pty Ltd)
FirewallRules: [{E36C1215-BC73-49AD-BCB6-0150B988B261}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Trainz Railroad Simulator 2019\TRS19.exe (N3V Games Pty Ltd -> N3V Games Pty Ltd)
FirewallRules: [{E0A8CA7C-11E7-498B-91B4-1CE890B3CFAC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sherlock Holmes Chapter One\SH9\Binaries\Win64\SHCO.exe (Frogwares Ireland ltd -> Frogwares)
FirewallRules: [{B4C36145-C098-4E70-9672-AAFE4F89F91B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Sherlock Holmes Chapter One\SH9\Binaries\Win64\SHCO.exe (Frogwares Ireland ltd -> Frogwares)
FirewallRules: [{FB10685F-9C83-4C57-982C-9BC07D625979}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{7232479C-B068-40F3-A3FF-3C82F626F9B6}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel Corporation -> )
FirewallRules: [{289B4FD9-5E69-4BC6-B4A7-F1512081C25D}] => (Block) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel Corporation -> )
FirewallRules: [{A33775EB-CB0F-4DFC-A268-988354BB56A8}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel Corporation -> )
FirewallRules: [{8170B8E7-4CA9-41D8-9A43-924C84026243}] => (Allow) C:\Program Files\Intel\SUR\QUEENCREEK\x64\esrv_svc.exe (Intel Corporation -> )
FirewallRules: [{889BA713-CC2A-4936-AE9B-69A1513C0553}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Splinter Cell\system\splintercell.exe () [File not signed]
FirewallRules: [{2C1A4CFF-59F0-4D9B-B533-2FF414AE3D6D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Splinter Cell\system\splintercell.exe () [File not signed]
FirewallRules: [{89D1931C-BD63-49A6-8BD0-724AD3AEDFFA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Wolfenstein The Old Blood\WolfOldBlood_x64.exe (MachineGames) [File not signed]
FirewallRules: [{F3C39CA6-7C30-49D2-ABF7-25B6271FD3A4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Wolfenstein The Old Blood\WolfOldBlood_x64.exe (MachineGames) [File not signed]
FirewallRules: [{FFDEBC01-A51E-4219-955A-BC91475FE28E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Wolfenstein.II.The.New.Colossus\NewColossus_x64vk.exe (MachineGames Sweden AB) [File not signed]
FirewallRules: [{F9B4DFEC-AB27-48A2-884E-4954084EA366}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Wolfenstein.II.The.New.Colossus\NewColossus_x64vk.exe (MachineGames Sweden AB) [File not signed]
FirewallRules: [{0820E8A5-275F-47A0-A581-BC68AFC3FAFC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Wolfenstein Youngblood\Youngblood_x64vk.exe (MachineGames Sweden AB) [File not signed]
FirewallRules: [{B3A96EB6-4C66-4DEF-920B-5359BF2BE5F6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Wolfenstein Youngblood\Youngblood_x64vk.exe (MachineGames Sweden AB) [File not signed]
FirewallRules: [{2542A7E7-5523-4DF0-8E53-F1C896D95EB5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe => No File
FirewallRules: [{FA457A07-C6A4-4BBC-8A56-9EFE521FA43C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe => No File
FirewallRules: [{A5143549-9E48-4EDC-ABA9-0F03F348E6F3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe => No File
FirewallRules: [{C3C00731-2859-4D81-ADB8-FDB08D25FE66}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe => No File
FirewallRules: [{E77D3A4B-584A-450A-8E78-8225422C63B8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe => No File
FirewallRules: [{728A7205-B307-4271-BC39-D5F9DA5DFD4B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe => No File
FirewallRules: [{DA6B48A0-B019-4D0C-96B2-BCC24E04C684}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe => No File
FirewallRules: [{DCE85BEE-7052-4D85-B100-6F08AF187C55}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe => No File
FirewallRules: [{F32C47AF-7125-47B7-B9E4-BBBD5C161DAD}] => (Allow) C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\UCGui.exe (SMART Technologies ULC -> SMART Technologies)
FirewallRules: [{7C91E25E-89AE-4A65-9BE3-0F9553B5E266}] => (Allow) C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\UCGui.exe (SMART Technologies ULC -> SMART Technologies)
FirewallRules: [{27DE9E59-8129-4959-B6E4-5FD7C924D4E3}] => (Allow) C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\UCService.exe (SMART Technologies ULC -> SMART Technologies)
FirewallRules: [{E5962038-CF4B-40C7-BBE5-007CE568A8AE}] => (Allow) C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\UCService.exe (SMART Technologies ULC -> SMART Technologies)
FirewallRules: [{287D7697-52A5-48F9-9CED-C0EAB9617764}] => (Allow) C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTSNMPAgent.exe (SMART Technologies ULC -> SMART Technologies)
FirewallRules: [{C66413C9-18F0-46C5-86AB-8E150DB17B6A}] => (Allow) C:\Program Files (x86)\SMART Technologies\SMART Product Drivers\SMARTSNMPAgent.exe (SMART Technologies ULC -> SMART Technologies)
FirewallRules: [{96B90236-B095-43BE-90AC-64F73982922A}] => (Allow) C:\Users\trisk\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{AC852C01-D048-4F51-87DF-E4E605ADA1FC}] => (Allow) C:\Users\trisk\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{C2AD899B-D606-4720-8EC9-F48AC25E2FBD}] => (Allow) C:\Users\trisk\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{2D7F08A9-9E11-4522-8806-CC7BDD3635BA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{1186B91E-E7DE-4CE1-BCED-033957C1C6B4}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{F491F357-4B06-458F-AB53-DA5341FB0D7F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{1CA7DE03-9F43-4B19-B532-8C6E9C54E47E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{57A949DA-F58F-401B-B8BF-7F134F50D7D1}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{6E741BBA-C866-4F56-A748-5A50D9F0E752}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{AA8B637F-53E5-4B25-A700-BFB29BEF6453}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{177DD324-B789-4539-86AF-EF244E67A04D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{7F647B10-FE1A-4A81-A182-98E7E923CFD6}] => (Allow) C:\Program Files\iTunes\iTunes.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{7D75AD91-D1B2-41F4-9BBD-689ECE76BBDB}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\107.0.1418.35\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4E0F334A-C6CA-4D1F-A01C-7A914D3C24AA}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{7620F1A1-DB23-408E-AAA0-0FABFECA873E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.90.3407.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{2979A261-F8A0-4393-82D0-33E34282CF05}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.90.3407.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{0067D1E6-A3BE-46B1-A631-F0D9CEF24040}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.90.3407.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{98D31A0F-AC9A-4CD4-8B86-C67EED40A208}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.90.3407.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{14A849F6-B707-4F7C-9EA7-F370AEA2DEC9}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{EF5FCACC-BB5B-4D92-85BD-56E4C8B75258}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{CA7528FA-525D-416C-AE3E-02DCECF5B221}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{9C1F5245-FD1F-41DA-A79B-7F37624FA7C6}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)

==================== Restore Points =========================

10-11-2022 21:48:46 Naplánovaný kontrolní bod
10-11-2022 21:48:47 Instalační služba modulů systému Windows
10-11-2022 21:50:06 Instalační služba modulů systému Windows
10-11-2022 21:50:28 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices ============

Name: Logitech Cordless Device
Description: Logitech Cordless Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.

Name: Logitech Cordless Device
Description: Logitech Cordless Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: ========================

Application errors:
==================
Error: (11/11/2022 07:30:30 PM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: DESKTOP-OJ1L5P6)
Description: Nelze otevřít objekt výkonu služby serveru. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (11/11/2022 07:26:34 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\DESKTOP-OJ1L5P6$ přes https://AMD-KeyId-52fb59e29aa83a962fb9e ... s/Aik/scep se nepovedla:

GetCACaps

Metoda: GET(93ms)
Fáze: GetCACaps
Nelze rozpoznat název nebo adresu serveru. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED)

Error: (11/11/2022 05:32:04 PM) (Source: Microsoft-Windows-PerfNet) (EventID: 2004) (User: DESKTOP-OJ1L5P6)
Description: Nelze otevřít objekt výkonu služby serveru. Vrácený kód stavu představují první čtyři bajty (DWORD) datové části.

Error: (11/10/2022 09:58:33 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\DESKTOP-OJ1L5P6$ přes https://AMD-KeyId-52fb59e29aa83a962fb9e ... s/Aik/scep se nepovedla:

GetCACaps

Metoda: GET(15ms)
Fáze: GetCACaps
Nelze rozpoznat název nebo adresu serveru. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED)

Error: (11/10/2022 09:57:25 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (11/10/2022 09:57:25 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (11/10/2022 09:57:25 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]

Error: (11/10/2022 09:57:25 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.


System errors:
=============
Error: (11/11/2022 07:26:17 PM) (Source: TPM) (EventID: 15) (User: NT AUTHORITY)
Description: V hardwaru čipu TPM (Trusted Platform Module) došlo k neobnovitelné chybě ovladače zařízení, která brání používání služeb TPM (například šifrování dat). Budete-li potřebovat další pomoc, obraťte se na výrobce počítače.

Error: (11/11/2022 07:25:02 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Bonjour Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (11/11/2022 07:25:02 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba Microsoft Office Klikni a spusť byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.

Error: (11/11/2022 07:25:02 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba NVIDIA LocalSystem Container byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 6000 milisekund: Restartovat službu.

Error: (11/11/2022 07:25:02 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) System Usage Report Service SystemUsageReportSvc_QUEENCREEK byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (11/11/2022 07:25:02 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Driver & Support Assistant byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (11/11/2022 07:25:02 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Disc Soft Lite Bus Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (11/11/2022 07:25:02 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba McAfee WebAdvisor byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 1 milisekund: Restartovat službu.


CodeIntegrity:
===============
Date: 2022-11-11 19:32:35
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Avast Software\Avast\aswidsagent.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2022-11-11 19:30:59
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2022-11-11 19:30:24
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Program Files\Avast Software\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2022-11-11 19:29:25
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Avast Software\Avast\aswAMSI.dll that did not meet the Windows signing level requirements.

Date: 2022-11-11 19:29:09
Description:
Code Integrity determined that a process (\Device\HarddiskVolume2\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume2\Program Files\Bonjour\mdnsNSP.dll that did not meet the Windows signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO FSCN18WW 01/01/2021
Motherboard: LENOVO LNVNB161216
Processor: AMD Ryzen 7 4800H with Radeon Graphics
Percentage of memory in use: 37%
Total physical RAM: 15741.31 MB
Available physical RAM: 9822.39 MB
Total Virtual: 18173.31 MB
Available Virtual: 10018.68 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:952.89 GB) (Free:384.25 GB) (Model: SKHynix_HFS001TD9TNI-L2A0B) NTFS

\\?\Volume{d9fa2484-0000-0000-0000-100000000000}\ () (Fixed) (Total:0.97 GB) (Free:0.95 GB) FAT32

==================== MBR & Partition Table ====================

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119399
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Oznámení ve Windows "Upozornění na kritický virus" crashbox.ru

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Flanagan1916
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 11 lis 2022 19:30

Re: Oznámení ve Windows "Upozornění na kritický virus" crashbox.ru

#3 Příspěvek od Flanagan1916 »

# -------------------------------
# Malwarebytes AdwCleaner 8.4.0.0
# -------------------------------
# Build: 08-30-2022
# Database: 2022-10-10.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 11-11-2022
# Duration: 00:00:05
# OS: Windows 10 (Build 19044.2251)
# Scanned: 32102
# Detected: 4


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

No malicious registry entries found.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

Preinstalled.LenovoServiceBridge Folder C:\Users\trisk\AppData\Local\PROGRAMS\LENOVO\LENOVO SERVICE BRIDGE
Preinstalled.LenovoServiceBridge Registry HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1
Preinstalled.SamsungEasyDocumentCreator Folder C:\Program Files (x86)\SAMSUNG\EASY DOCUMENT CREATOR
Preinstalled.SamsungEasyDocumentCreator Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Samsung Easy Document Creator


AdwCleaner[S00].txt - [1909 octets] - [11/11/2022 22:16:51]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S01].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119399
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Oznámení ve Windows "Upozornění na kritický virus" crashbox.ru

#4 Příspěvek od Rudy »

Toto je OK. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-571745533-3586649985-1602090759-1001\...\MountPoints2: {49e75218-3a31-11ec-901d-c03c59a8ca2c} - "F:\LM_setup.exe"
HKU\S-1-5-21-571745533-3586649985-1602090759-1001\...\MountPoints2: {f0da1296-bfb3-11eb-8fe2-c03c59a8ca2c} - "D:\Install.exe"
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {202B799D-7842-440C-B197-4E4ACE272817} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe PendingTask (No File)
Task: {7B4EFCE6-2253-4D66-9BBC-17D523BF6D9A} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe /CM -search R -action INSTALL -includerebootpackages 1,3,4,5 -noicon -noreboot -nolicense -defaultupdate -schtask (No File)
Task: {9C7DF71D-038E-404C-8F2A-20D0ED650ACA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2021-05-02] (Google Inc -> Google LLC)
Task: {E7BACE32-9A12-4315-9E38-73FC6AD30829} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2021-05-02] (Google Inc -> Google LLC)
Task: {F08E0EE5-E903-4755-AAD7-C13C7352B105} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (No File)
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
FirewallRules: [{2542A7E7-5523-4DF0-8E53-F1C896D95EB5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe => No File
FirewallRules: [{FA457A07-C6A4-4BBC-8A56-9EFE521FA43C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe => No File
FirewallRules: [{A5143549-9E48-4EDC-ABA9-0F03F348E6F3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe => No File
FirewallRules: [{C3C00731-2859-4D81-ADB8-FDB08D25FE66}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe => No File
FirewallRules: [{E77D3A4B-584A-450A-8E78-8225422C63B8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe => No File
FirewallRules: [{728A7205-B307-4271-BC39-D5F9DA5DFD4B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe => No File
FirewallRules: [{DA6B48A0-B019-4D0C-96B2-BCC24E04C684}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe => No File
FirewallRules: [{DCE85BEE-7052-4D85-B100-6F08AF187C55}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe => No File

EmptyTemp:
End
Uložte do C:\Users\trisk\OneDrive\Plocha jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Flanagan1916
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 11 lis 2022 19:30

Re: Oznámení ve Windows "Upozornění na kritický virus" crashbox.ru

#5 Příspěvek od Flanagan1916 »

Fix result of Farbar Recovery Scan Tool (x64) Version: 12-11-2022
Ran by trisk (12-11-2022 13:01:02) Run:1
Running from C:\Users\trisk\OneDrive\Plocha
Loaded Profiles: trisk
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-571745533-3586649985-1602090759-1001\...\MountPoints2: {49e75218-3a31-11ec-901d-c03c59a8ca2c} - "F:\LM_setup.exe"
HKU\S-1-5-21-571745533-3586649985-1602090759-1001\...\MountPoints2: {f0da1296-bfb3-11eb-8fe2-c03c59a8ca2c} - "D:\Install.exe"
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {202B799D-7842-440C-B197-4E4ACE272817} - System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe PendingTask (No File)
Task: {7B4EFCE6-2253-4D66-9BBC-17D523BF6D9A} - System32\Tasks\TVT\TVSUUpdateTask => C:\Program Files (x86)\Lenovo\System Update\tvsuShim.exe /CM -search R -action INSTALL -includerebootpackages 1,3,4,5 -noicon -noreboot -nolicense -defaultupdate -schtask (No File)
Task: {9C7DF71D-038E-404C-8F2A-20D0ED650ACA} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2021-05-02] (Google Inc -> Google LLC)
Task: {E7BACE32-9A12-4315-9E38-73FC6AD30829} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2021-05-02] (Google Inc -> Google LLC)
Task: {F08E0EE5-E903-4755-AAD7-C13C7352B105} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (No File)
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
FirewallRules: [{2542A7E7-5523-4DF0-8E53-F1C896D95EB5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe => No File
FirewallRules: [{FA457A07-C6A4-4BBC-8A56-9EFE521FA43C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe => No File
FirewallRules: [{A5143549-9E48-4EDC-ABA9-0F03F348E6F3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe => No File
FirewallRules: [{C3C00731-2859-4D81-ADB8-FDB08D25FE66}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe => No File
FirewallRules: [{E77D3A4B-584A-450A-8E78-8225422C63B8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe => No File
FirewallRules: [{728A7205-B307-4271-BC39-D5F9DA5DFD4B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\busdriver.exe => No File
FirewallRules: [{DA6B48A0-B019-4D0C-96B2-BCC24E04C684}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe => No File
FirewallRules: [{DCE85BEE-7052-4D85-B100-6F08AF187C55}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Bus Driver\bin\win_x86\launcher.exe => No File

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully
HKU\S-1-5-21-571745533-3586649985-1602090759-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{49e75218-3a31-11ec-901d-c03c59a8ca2c} => removed successfully
HKU\S-1-5-21-571745533-3586649985-1602090759-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f0da1296-bfb3-11eb-8fe2-c03c59a8ca2c} => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{202B799D-7842-440C-B197-4E4ACE272817}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{202B799D-7842-440C-B197-4E4ACE272817}" => removed successfully
C:\Windows\System32\Tasks\TVT\TVSUUpdateTask_UserLogOn => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\TVT\TVSUUpdateTask_UserLogOn" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7B4EFCE6-2253-4D66-9BBC-17D523BF6D9A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7B4EFCE6-2253-4D66-9BBC-17D523BF6D9A}" => removed successfully
C:\Windows\System32\Tasks\TVT\TVSUUpdateTask => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\TVT\TVSUUpdateTask" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{9C7DF71D-038E-404C-8F2A-20D0ED650ACA}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{9C7DF71D-038E-404C-8F2A-20D0ED650ACA}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E7BACE32-9A12-4315-9E38-73FC6AD30829}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E7BACE32-9A12-4315-9E38-73FC6AD30829}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F08E0EE5-E903-4755-AAD7-C13C7352B105}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F08E0EE5-E903-4755-AAD7-C13C7352B105}" => removed successfully
C:\Windows\System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473" => removed successfully
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA" => not found
"C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2542A7E7-5523-4DF0-8E53-F1C896D95EB5}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FA457A07-C6A4-4BBC-8A56-9EFE521FA43C}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A5143549-9E48-4EDC-ABA9-0F03F348E6F3}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C3C00731-2859-4D81-ADB8-FDB08D25FE66}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E77D3A4B-584A-450A-8E78-8225422C63B8}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{728A7205-B307-4271-BC39-D5F9DA5DFD4B}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DA6B48A0-B019-4D0C-96B2-BCC24E04C684}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DCE85BEE-7052-4D85-B100-6F08AF187C55}" => removed successfully

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 15009103 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 387876803 B
Windows/system/drivers => 4708533 B
Edge => 0 B
Chrome => 532417449 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 56163518 B
systemprofile32 => 56163518 B
LocalService => 56173850 B
NetworkService => 56173850 B
trisk => 79192682 B

RecycleBin => 24323244 B
EmptyTemp: => 1.2 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 13:01:18 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119399
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Oznámení ve Windows "Upozornění na kritický virus" crashbox.ru

#6 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Flanagan1916
Návštěvník
Návštěvník
Příspěvky: 4
Registrován: 11 lis 2022 19:30

Re: Oznámení ve Windows "Upozornění na kritický virus" crashbox.ru

#7 Příspěvek od Flanagan1916 »

Zdravím,
ano, upozornění už zmizelo.

Děkuji :-)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119399
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Oznámení ve Windows "Upozornění na kritický virus" crashbox.ru

#8 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno