Keď som zapol znova firewall a antivirus, našlo mi to malvér a zmizol súbor zoek, zostal len log. Takže asi bol nejak napadnutý.
inak všetko prebehlo v pohode
Zemana nenašiel nič
--------------------------------------
Zemana AntiMalware 2.74.2.150 (inštalačná verzia)
-------------------------------------------------------
Scan Result : Dokončené
Scan Date : 2018.7.17
Operating System : Windows 10 64-bit
Processor : 4X Intel(R) Core(TM) i5-6400 CPU @ 2.70GHz
BIOS Mode : UEFI
CUID : 1212D98325CEF3555A19F4
Scan Type : Kontrola systému
Duration : 3m 28s
Scanned Objects : 270783
Detected Objects : 0
Excluded Objects : 0
Read Level : SCSI
Auto Upload : Zapnuté
Detect All Extensions : Vypnuté
Scan Documents : Vypnuté
Domain Info : WORKGROUP,0,2
Detected Objects
-------------------------------------------------------
Neboli zistené žiadne hrozby
Prosím o kontrolu logu
Re: Prosím o kontrolu logu
doska: ASUS B150 PRE GAMING
ram: Kingston 16 GB DDR4 2133 MHz CL14 HyperX Fury Black Series
Graf.karta: ASUS TURBO GTX 1060 6 GB GDDR5
SSD: KINGSTON SSDNow UV400 240GB
disk: Seagate Barracuda 1TB
Procesor: Intel Core i5-6400 2,7 GHz
chladič: Cooler Master Hyper TX3i alebo Cooler Master Hyper 103
zdroj: Corsair VS450
bedna: Zalman Z1 Neo
ram: Kingston 16 GB DDR4 2133 MHz CL14 HyperX Fury Black Series
Graf.karta: ASUS TURBO GTX 1060 6 GB GDDR5
SSD: KINGSTON SSDNow UV400 240GB
disk: Seagate Barracuda 1TB
Procesor: Intel Core i5-6400 2,7 GHz
chladič: Cooler Master Hyper TX3i alebo Cooler Master Hyper 103
zdroj: Corsair VS450
bedna: Zalman Z1 Neo
Re: Prosím o kontrolu logu
Nový log HJT
--------------------------------------------------
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:07:39, on 17.7.2018
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.2007)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe
C:\Users\Zanterw0w\Desktop\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_171\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_171\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
O4 - HKLM\..\Run: [Adobe Creative Cloud] "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AdobeUpdateService - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
O23 - Service: Adobe Genuine Monitor Service (AGMService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GalaxyClientService - GOG.com - C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe
O23 - Service: GalaxyCommunication - GOG.com - C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Unknown owner - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Security Assist - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
O23 - Service: Intel(R) Security Assist Helper (isaHelperSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Malwarebytes Service (MBAMService) - Malwarebytes - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: Razer Game Scanner (Razer Game Scanner Service) - Unknown owner - C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\Windows\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\Windows\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) Extreme Tuning Utility Service (XTU3SERVICE) - Intel(R) Corporation - C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe
O23 - Service: ZAM Controller Service (ZAMSvc) - Copyright 2017. - C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe
--
End of file - 10452 bytes
--------------------------------------------------
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:07:39, on 17.7.2018
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.14393.2007)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe
C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe
C:\Users\Zanterw0w\Desktop\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_171\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_171\bin\jp2ssv.dll
O4 - HKLM\..\Run: [Razer Synapse] "C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe"
O4 - HKLM\..\Run: [Adobe Creative Cloud] "C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe" --showwindow=false --onOSstartup=true
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: AdobeUpdateService - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
O23 - Service: Adobe Genuine Monitor Service (AGMService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
O23 - Service: Adobe Genuine Software Integrity Service (AGSService) - Adobe Systems, Incorporated - C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: BattlEye Service (BEService) - Unknown owner - C:\Program Files (x86)\Common Files\BattlEye\BEService.exe
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\Windows\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: EasyAntiCheat - EasyAntiCheat Ltd - C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: GalaxyClientService - GOG.com - C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe
O23 - Service: GalaxyCommunication - GOG.com - C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe
O23 - Service: Služba Aktualizace Google (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Aktualizace Google (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Hi-Rez Studios Authenticate and Update Service (HiPatchService) - Unknown owner - C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) PROSet Monitoring Service - Unknown owner - C:\Windows\system32\IProsetMonitor.exe (file missing)
O23 - Service: Intel(R) Security Assist - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
O23 - Service: Intel(R) Security Assist Helper (isaHelperSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Malwarebytes Service (MBAMService) - Malwarebytes - C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: nProtect GameGuard Service (npggsvc) - Unknown owner - C:\Windows\system32\GameMon.des.exe (file missing)
O23 - Service: NVIDIA LocalSystem Container (NvContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA NetworkService Container (NvContainerNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: NVIDIA Telemetry Container (NvTelemetryContainer) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
O23 - Service: Razer Game Scanner (Razer Game Scanner Service) - Unknown owner - C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\Windows\System32\SensorDataService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\Windows\system32\TieringEngineService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) Extreme Tuning Utility Service (XTU3SERVICE) - Intel(R) Corporation - C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe
O23 - Service: ZAM Controller Service (ZAMSvc) - Copyright 2017. - C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe
--
End of file - 10452 bytes
doska: ASUS B150 PRE GAMING
ram: Kingston 16 GB DDR4 2133 MHz CL14 HyperX Fury Black Series
Graf.karta: ASUS TURBO GTX 1060 6 GB GDDR5
SSD: KINGSTON SSDNow UV400 240GB
disk: Seagate Barracuda 1TB
Procesor: Intel Core i5-6400 2,7 GHz
chladič: Cooler Master Hyper TX3i alebo Cooler Master Hyper 103
zdroj: Corsair VS450
bedna: Zalman Z1 Neo
ram: Kingston 16 GB DDR4 2133 MHz CL14 HyperX Fury Black Series
Graf.karta: ASUS TURBO GTX 1060 6 GB GDDR5
SSD: KINGSTON SSDNow UV400 240GB
disk: Seagate Barracuda 1TB
Procesor: Intel Core i5-6400 2,7 GHz
chladič: Cooler Master Hyper TX3i alebo Cooler Master Hyper 103
zdroj: Corsair VS450
bedna: Zalman Z1 Neo
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43060
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
zoek - špatná identifikace antivirů , zoek je bezpečný..
Zavři ostatní aplikace a prohlížeče, odpoj se od netu a fixni v HJT:
Návod
co problémy?
Zavři ostatní aplikace a prohlížeče, odpoj se od netu a fixni v HJT:
Návod
Kód: Vybrat vše
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=C:\Windows\system32\userinit.exe
O1 - Hosts: ::1 localhost
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
co problémy?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
spravil som vsetko, ale co sa tyka mojho problemu tak stale mam procesor na 100%.
Nebude najlepsie celkovo preinstalovat windows?
Nebude najlepsie celkovo preinstalovat windows?
doska: ASUS B150 PRE GAMING
ram: Kingston 16 GB DDR4 2133 MHz CL14 HyperX Fury Black Series
Graf.karta: ASUS TURBO GTX 1060 6 GB GDDR5
SSD: KINGSTON SSDNow UV400 240GB
disk: Seagate Barracuda 1TB
Procesor: Intel Core i5-6400 2,7 GHz
chladič: Cooler Master Hyper TX3i alebo Cooler Master Hyper 103
zdroj: Corsair VS450
bedna: Zalman Z1 Neo
ram: Kingston 16 GB DDR4 2133 MHz CL14 HyperX Fury Black Series
Graf.karta: ASUS TURBO GTX 1060 6 GB GDDR5
SSD: KINGSTON SSDNow UV400 240GB
disk: Seagate Barracuda 1TB
Procesor: Intel Core i5-6400 2,7 GHz
chladič: Cooler Master Hyper TX3i alebo Cooler Master Hyper 103
zdroj: Corsair VS450
bedna: Zalman Z1 Neo
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43060
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Ještě otestujeme.
Stáhni si Memtest:
Políčko , ve kterém je napsáno:
All unused RAM , změň na 2048.
-dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.
V případě vyšších kapacit RAM je třeba Memtest spustit několikrát , pro 2GB ( jednotlivá největší kapacita RAM) 2x , pro 4GB 3x , pro 8Gb 4x ap.
poklepej na Memtest , pak znovu a znovu , do políček všech Memtestů napiš 2048 , pak dej u všech Memtestů "Start".
Ještě zkontrolovat HDD na chyby ,popř. zkusit jeho defragmentaci ..
Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit FarbarRecovery Scan Tool (FrSt)
32bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/
64bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/
a ulož jej na plochu. ,pak spusť FrSt.
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Stáhni si Memtest:
Políčko , ve kterém je napsáno:
All unused RAM , změň na 2048.
-dej Start , nech nejméně 2h běžet , pokud bude po 2h stále 0 errors , jsou v pořádku.
V případě vyšších kapacit RAM je třeba Memtest spustit několikrát , pro 2GB ( jednotlivá největší kapacita RAM) 2x , pro 4GB 3x , pro 8Gb 4x ap.
poklepej na Memtest , pak znovu a znovu , do políček všech Memtestů napiš 2048 , pak dej u všech Memtestů "Start".
Ještě zkontrolovat HDD na chyby ,popř. zkusit jeho defragmentaci ..
Stáhni si CrystalDiskInfo
Spusť program a klikni na Úpravy-Kopírovat. Poté sem vlož pomocí Ctrl+V obsah logu.
Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit FarbarRecovery Scan Tool (FrSt)
32bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/
64bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/
a ulož jej na plochu. ,pak spusť FrSt.
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
po mensej neaktivite som tu takze memtest nenasiel nic ale myslel som si ze mi to rovno odpali PC pretoze to bolo tak pretazene vsetko ale nenaslo nic
Crystaldisk dufam ze je toto ono takze prikladam log a este spravim ten farbar
----------------------------------------------------------------------------
CrystalDiskInfo 7.6.1 (C) 2008-2018 hiyohiyo
Crystal Dew World : https://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 10 [10.0 Build 14393] (x64)
Date : 2018/07/21 20:09:13
-- Controller Map ----------------------------------------------------------
+ Standard SATA AHCI Controller [ATA]
- KINGSTON SUV400S37240G
- ST1000DM010-2EP102
- ASUS DRW-24D5MT
- Microsoft Storage Spaces Controller [SCSI]
-- Disk List ---------------------------------------------------------------
(1) KINGSTON SUV400S37240G : 240,0 GB [0/0/0, pd1]
(2) ST1000DM010-2EP102 : 1000,2 GB [1/0/0, pd1] - st
----------------------------------------------------------------------------
(1) KINGSTON SUV400S37240G
----------------------------------------------------------------------------
Model : KINGSTON SUV400S37240G
Firmware : 0C3J96R9
Serial Number : 50026B776C004BEC
Disk Size : 240,0 GB (8,4/137,4/240,0/240,0)
Buffer Size : Unknown
Queue Depth : 32
# of Sectors : 468862128
Rotation Rate : ---- (SSD)
Interface : Serial ATA
Major Version :
Minor Version : ATA8-ACS version 6
Transfer Mode : SATA/600 | SATA/600
Power On Hours : 5926 hours
Power On Count : 578 count
Temperature : 32 C (89 F)
Health Status : Good
Features : S.M.A.R.T., APM, 48bit LBA, NCQ, TRIM
APM Level : 0000h [OFF]
AAM Level : ----
Drive Letter : C:
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 __0 000000000001 Read Error Rate
05 100 100 _10 000000000000 Reallocated Sectors Count
09 100 100 __0 000000001726 Power-On Hours
0C 100 100 __0 000000000242 Power Cycle Count
64 100 100 __0 0000009A27A0 Vendor Specific
65 100 100 __0 0000000DBCC0 Vendor Specific
AA 100 100 __0 000000000000 Vendor Specific
AB 100 100 __0 000000000000 Vendor Specific
AC 100 100 __0 000000000000 Vendor Specific
AE 100 100 __0 000000000015 Vendor Specific
AF 100 100 __0 000000000000 Vendor Specific
B0 100 100 __0 000000000000 Vendor Specific
B1 _92 _92 __0 000000000BA2 Vendor Specific
B2 100 100 __0 000000000000 Vendor Specific
B4 100 100 __0 00000000051E Vendor Specific
B7 _96 _96 __0 000000000015 Vendor Specific
BB 100 100 __0 000000000000 Vendor Specific
C2 _32 100 __0 002C00100020 Temperature
C3 100 100 __0 000000000001 Vendor Specific
C4 100 100 __0 000000000000 Reallocation Event Count
C5 100 100 __0 000000000000 Current Pending Sector Count
C7 100 100 __0 000000000000 Vendor Specific
C9 100 100 __0 000000000000 Vendor Specific
CC 100 100 __0 000000000001 Vendor Specific
E7 _92 _92 __0 000000000008 Vendor Specific
E9 100 100 __0 000000004720 Vendor Specific
EA 100 100 __0 00000000138C Vendor Specific
F1 100 100 __0 000000002F8F Total Host Writes
F2 100 100 __0 000000002ACA Total Host Reads
FA 100 100 __0 000000000001 Vendor Specific
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 3530 3032 3642 3737 3643 3030 3442 4543 2020 2020
020: 0000 0000 0000 3043 334A 3936 5239 4B49 4E47 5354
030: 4F4E 2053 5556 3430 3053 3337 3234 3047 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0000 0000 0007 3FFF 0010 003F FC10 00FB B910
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 4D18
070: 0000 0000 0000 0000 0000 001F E70E 0006 00CC 0040
080: 0FFE 0028 746B 7409 4163 7069 B401 4167 207F 0002
090: 0002 0000 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 44B0 1BF2 0000 0000 0000 0008 6003 0000 0550 3804
110: 4001 0000 0000 0000 0000 0000 0000 0000 0000 4358
120: 4018 0000 0000 0000 0000 0000 0000 0000 0029 4D52
130: 564C 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 3933 3539 2020 2020 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0007 0001
170: 2020 2020 2020 2020 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 003D 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 0001 0000 0000
220: 0000 0000 107F 0051 0000 0000 0000 0000 0000 0000
230: 44B0 1BF2 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 5DA5
-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 30 00 01 2F 00 64 64 01 00 00 00 00 00 00 05 33
010: 00 64 64 00 00 00 00 00 00 0A 09 32 00 64 64 26
020: 17 00 00 00 00 00 0C 32 00 64 64 42 02 00 00 00
030: 00 00 64 32 00 64 64 A0 27 9A 00 00 00 00 65 32
040: 00 64 64 C0 BC 0D 00 00 00 00 AA 32 00 64 64 00
050: 00 00 00 00 00 00 AB 32 00 64 64 00 00 00 00 00
060: 00 00 AC 32 00 64 64 00 00 00 00 00 00 00 AE 32
070: 00 64 64 15 00 00 00 00 00 00 AF 32 00 64 64 00
080: 00 00 00 00 00 00 B0 32 00 64 64 00 00 00 00 00
090: 00 00 B1 32 00 5C 5C A2 0B 00 00 00 00 00 B2 02
0A0: 00 64 64 00 00 00 00 00 00 00 B4 02 00 64 64 1E
0B0: 05 00 00 00 00 00 B7 32 00 60 60 15 00 00 00 00
0C0: 00 00 BB 33 00 64 64 00 00 00 00 00 00 00 C2 22
0D0: 00 20 64 20 00 10 00 2C 00 00 C3 32 00 64 64 01
0E0: 00 00 00 00 00 00 C4 32 00 64 64 00 00 00 00 00
0F0: 00 00 C5 32 00 64 64 00 00 00 00 00 00 00 C7 12
100: 00 64 64 00 00 00 00 00 00 00 C9 32 00 64 64 00
110: 00 00 00 00 00 00 CC 32 00 64 64 01 00 00 00 00
120: 00 00 E7 32 00 5C 5C 08 00 00 00 00 00 00 E9 32
130: 00 64 64 20 47 00 00 00 00 00 EA 32 00 64 64 8C
140: 13 00 00 00 00 00 F1 32 00 64 64 8F 2F 00 00 00
150: 00 00 F2 32 00 64 64 CA 2A 00 00 00 00 00 FA 32
160: 00 64 64 01 00 00 00 00 00 00 00 00 05 00 01 71
170: 03 00 01 00 02 05 00 00 00 00 00 00 00 00 00 00
180: 00 00 60 00 00 00 00 00 00 00 00 00 22 01 00 00
190: 00 00 00 00 00 00 00 00 70 11 00 00 00 00 00 00
1A0: 36 B9 F1 F1 05 00 00 00 00 00 30 4E 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 24 EB 5D 59 05 00 00 00
1C0: B0 D4 7C 12 01 00 00 00 1E 05 00 00 02 00 00 00
1D0: 05 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 2E A6 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 04 10 00 00 00 00 00 AD
-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 04 00 01 00 00 00 00 00 00 00 00 00 00 00 05 0A
010: 00 00 00 00 00 00 00 00 00 00 09 00 00 00 00 00
020: 00 00 00 00 00 00 0C 00 00 00 00 00 00 00 00 00
030: 00 00 64 00 00 00 00 00 00 00 00 00 00 00 65 00
040: 00 00 00 00 00 00 00 00 00 00 AA 00 00 00 00 00
050: 00 00 00 00 00 00 AB 00 00 00 00 00 00 00 00 00
060: 00 00 AC 00 00 00 00 00 00 00 00 00 00 00 AE 00
070: 00 00 00 00 00 00 00 00 00 00 AF 00 00 00 00 00
080: 00 00 00 00 00 00 B0 00 00 00 00 00 00 00 00 00
090: 00 00 B1 00 00 00 00 00 00 00 00 00 00 00 B2 00
0A0: 00 00 00 00 00 00 00 00 00 00 B4 00 00 00 00 00
0B0: 00 00 00 00 00 00 B7 00 00 00 00 00 00 00 00 00
0C0: 00 00 BB 00 00 00 00 00 00 00 00 00 00 00 C2 00
0D0: 00 00 00 00 00 00 00 00 00 00 C3 00 00 00 00 00
0E0: 00 00 00 00 00 00 C4 00 00 00 00 00 00 00 00 00
0F0: 00 00 C5 00 00 00 00 00 00 00 00 00 00 00 C7 00
100: 00 00 00 00 00 00 00 00 00 00 C9 00 00 00 00 00
110: 00 00 00 00 00 00 CC 00 00 00 00 00 00 00 00 00
120: 00 00 E7 00 00 00 00 00 00 00 00 00 00 00 E9 00
130: 00 00 00 00 00 00 00 00 00 00 EA 00 00 00 00 00
140: 00 00 00 00 00 00 F1 00 00 00 00 00 00 00 00 00
150: 00 00 F2 00 00 00 00 00 00 00 00 00 00 00 FA 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 76
----------------------------------------------------------------------------
(2) ST1000DM010-2EP102
----------------------------------------------------------------------------
Model : ST1000DM010-2EP102
Firmware : CC43
Serial Number : Z9A8ZX75
Disk Size : 1000,2 GB (8,4/137,4/1000,2/1000,2)
Buffer Size : Unknown
Queue Depth : 32
# of Sectors : 1953525168
Rotation Rate : 7200 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 4
Transfer Mode : SATA/600 | SATA/600
Power On Hours : 5921 hours
Power On Count : 582 count
Temperature : 34 C (93 F)
Health Status : Good
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 8080h [ON]
AAM Level : ----
Drive Letter : D:
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 _83 _63 __6 00000D787BDA Read Error Rate
03 _97 _97 __0 000000000000 Spin-Up Time
04 100 100 _20 000000000246 Start/Stop Count
05 100 100 _10 000000000000 Reallocated Sectors Count
07 _63 _60 _45 000000278ED4 Seek Error Rate
09 _94 _94 __0 000000001721 Power-On Hours
0A 100 100 _97 000000000000 Spin Retry Count
0C 100 100 _20 000000000246 Power Cycle Count
B7 100 100 __0 000000000000 Vendor Specific
B8 100 100 _99 000000000000 End-to-End Error
BB 100 100 __0 000000000000 Reported Uncorrectable Errors
BC 100 100 __0 000000000000 Command Timeout
BD 100 100 __0 000000000000 High Fly Writes
BE _66 _64 _40 000022180022 Airflow Temperature
C1 100 100 __0 000000000246 Load/Unload Cycle Count
C2 _34 _11 __0 000B00000022 Temperature
C3 __7 __1 __0 00000D787BDA Hardware ECC recovered
C5 100 100 __0 000000000000 Current Pending Sector Count
C6 100 100 __0 000000000000 Uncorrectable Sector Count
C7 200 200 __0 000000000000 UltraDMA CRC Error Count
F0 100 253 __0 8B800000171F Head Flying Hours
F1 100 253 __0 000089FB2BCE Total Host Writes
F2 100 253 __0 00003D02C5E8 Total Host Reads
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0C5A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 2020 5A39 4138 5A58 3735
020: 0000 0000 0000 4343 3433 2020 2020 5354 3130 3030
030: 444D 3031 302D 3245 5031 3032 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 850E 0006 00CC 0040
080: 01F0 0029 346B 7D69 4163 3469 BC49 4163 207F 0036
090: 0036 8080 FFFE 0000 D0D0 0000 0000 0000 0000 0000
100: 6DB0 7470 0000 0000 0000 0000 6003 0000 5000 C500
110: 936D FAAB 0000 0000 0000 0000 0000 0000 0000 401E
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 6DB0
130: 7470 6DB0 7470 2020 0002 0140 0100 5000 3C06 3C0A
140: 0000 003C 0000 0008 0000 0000 FDFF 0280 0000 0000
150: 0008 0000 0000 0000 0000 8000 0000 0184 9400 8000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0002 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 1085 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 1C20 0000 0000
220: 0000 0000 1020 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 22A5
-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0A 00 01 0F 00 53 3F DA 7B 78 0D 00 00 00 03 03
010: 00 61 61 00 00 00 00 00 00 00 04 32 00 64 64 46
020: 02 00 00 00 00 00 05 33 00 64 64 00 00 00 00 00
030: 00 00 07 0F 00 3F 3C D4 8E 27 00 00 00 00 09 32
040: 00 5E 5E 21 17 00 00 00 00 00 0A 13 00 64 64 00
050: 00 00 00 00 00 00 0C 32 00 64 64 46 02 00 00 00
060: 00 00 B7 32 00 64 64 00 00 00 00 00 00 00 B8 32
070: 00 64 64 00 00 00 00 00 00 00 BB 32 00 64 64 00
080: 00 00 00 00 00 00 BC 32 00 64 64 00 00 00 00 00
090: 00 00 BD 3A 00 64 64 00 00 00 00 00 00 00 BE 22
0A0: 00 42 40 22 00 18 22 00 00 00 C1 32 00 64 64 46
0B0: 02 00 00 00 00 00 C2 22 00 22 0B 22 00 00 00 0B
0C0: 00 00 C3 1A 00 07 01 DA 7B 78 0D 00 00 00 C5 12
0D0: 00 64 64 00 00 00 00 00 00 00 C6 10 00 64 64 00
0E0: 00 00 00 00 00 00 C7 3E 00 C8 C8 00 00 00 00 00
0F0: 00 00 F0 00 00 64 FD 1F 17 00 00 80 8B 35 F1 00
100: 00 64 FD CE 2B FB 89 00 00 00 F2 00 00 64 FD E8
110: C5 02 3D 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 73
170: 03 00 01 00 01 6A 02 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 65 07 00 00 06 03 03 03 03 03 03 03
190: 03 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 91 83 C8 1C 63 13 00 00
1B0: 00 00 00 00 01 00 5F 00 CE 2B FB 89 00 00 00 00
1C0: E8 C5 02 3D 00 00 00 00 00 00 00 00 62 F2 DC 02
1D0: 00 00 00 00 00 00 00 00 B6 00 00 00 06 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 07
1F0: 00 00 00 00 00 00 00 00 00 00 14 17 00 00 00 38
-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 01 00 01 06 00 00 00 00 00 00 00 00 00 00 03 00
010: 00 00 00 00 00 00 00 00 00 00 04 14 00 00 00 00
020: 00 00 00 00 00 00 05 0A 00 00 00 00 00 00 00 00
030: 00 00 07 2D 00 00 00 00 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 61 00 00 00 00
050: 00 00 00 00 00 00 0C 14 00 00 00 00 00 00 00 00
060: 00 00 B7 00 00 00 00 00 00 00 00 00 00 00 B8 63
070: 00 00 00 00 00 00 00 00 00 00 BB 00 00 00 00 00
080: 00 00 00 00 00 00 BC 00 00 00 00 00 00 00 00 00
090: 00 00 BD 00 00 00 00 00 00 00 00 00 00 00 BE 28
0A0: 00 00 00 00 00 00 00 00 00 00 C1 00 00 00 00 00
0B0: 00 00 00 00 00 00 C2 00 00 00 00 00 00 00 00 00
0C0: 00 00 C3 00 00 00 00 00 00 00 00 00 00 00 C5 00
0D0: 00 00 00 00 00 00 00 00 00 00 C6 00 00 00 00 00
0E0: 00 00 00 00 00 00 C7 00 00 00 00 00 00 00 00 00
0F0: 00 00 F0 00 00 00 00 00 00 00 00 00 00 00 F1 00
100: 00 00 00 00 00 00 00 00 00 00 F2 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 AF
Crystaldisk dufam ze je toto ono takze prikladam log a este spravim ten farbar
----------------------------------------------------------------------------
CrystalDiskInfo 7.6.1 (C) 2008-2018 hiyohiyo
Crystal Dew World : https://crystalmark.info/
----------------------------------------------------------------------------
OS : Windows 10 [10.0 Build 14393] (x64)
Date : 2018/07/21 20:09:13
-- Controller Map ----------------------------------------------------------
+ Standard SATA AHCI Controller [ATA]
- KINGSTON SUV400S37240G
- ST1000DM010-2EP102
- ASUS DRW-24D5MT
- Microsoft Storage Spaces Controller [SCSI]
-- Disk List ---------------------------------------------------------------
(1) KINGSTON SUV400S37240G : 240,0 GB [0/0/0, pd1]
(2) ST1000DM010-2EP102 : 1000,2 GB [1/0/0, pd1] - st
----------------------------------------------------------------------------
(1) KINGSTON SUV400S37240G
----------------------------------------------------------------------------
Model : KINGSTON SUV400S37240G
Firmware : 0C3J96R9
Serial Number : 50026B776C004BEC
Disk Size : 240,0 GB (8,4/137,4/240,0/240,0)
Buffer Size : Unknown
Queue Depth : 32
# of Sectors : 468862128
Rotation Rate : ---- (SSD)
Interface : Serial ATA
Major Version :
Minor Version : ATA8-ACS version 6
Transfer Mode : SATA/600 | SATA/600
Power On Hours : 5926 hours
Power On Count : 578 count
Temperature : 32 C (89 F)
Health Status : Good
Features : S.M.A.R.T., APM, 48bit LBA, NCQ, TRIM
APM Level : 0000h [OFF]
AAM Level : ----
Drive Letter : C:
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 100 100 __0 000000000001 Read Error Rate
05 100 100 _10 000000000000 Reallocated Sectors Count
09 100 100 __0 000000001726 Power-On Hours
0C 100 100 __0 000000000242 Power Cycle Count
64 100 100 __0 0000009A27A0 Vendor Specific
65 100 100 __0 0000000DBCC0 Vendor Specific
AA 100 100 __0 000000000000 Vendor Specific
AB 100 100 __0 000000000000 Vendor Specific
AC 100 100 __0 000000000000 Vendor Specific
AE 100 100 __0 000000000015 Vendor Specific
AF 100 100 __0 000000000000 Vendor Specific
B0 100 100 __0 000000000000 Vendor Specific
B1 _92 _92 __0 000000000BA2 Vendor Specific
B2 100 100 __0 000000000000 Vendor Specific
B4 100 100 __0 00000000051E Vendor Specific
B7 _96 _96 __0 000000000015 Vendor Specific
BB 100 100 __0 000000000000 Vendor Specific
C2 _32 100 __0 002C00100020 Temperature
C3 100 100 __0 000000000001 Vendor Specific
C4 100 100 __0 000000000000 Reallocation Event Count
C5 100 100 __0 000000000000 Current Pending Sector Count
C7 100 100 __0 000000000000 Vendor Specific
C9 100 100 __0 000000000000 Vendor Specific
CC 100 100 __0 000000000001 Vendor Specific
E7 _92 _92 __0 000000000008 Vendor Specific
E9 100 100 __0 000000004720 Vendor Specific
EA 100 100 __0 00000000138C Vendor Specific
F1 100 100 __0 000000002F8F Total Host Writes
F2 100 100 __0 000000002ACA Total Host Reads
FA 100 100 __0 000000000001 Vendor Specific
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0040 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 3530 3032 3642 3737 3643 3030 3442 4543 2020 2020
020: 0000 0000 0000 3043 334A 3936 5239 4B49 4E47 5354
030: 4F4E 2053 5556 3430 3053 3337 3234 3047 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4000 0000 0000 0007 3FFF 0010 003F FC10 00FB B910
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 4D18
070: 0000 0000 0000 0000 0000 001F E70E 0006 00CC 0040
080: 0FFE 0028 746B 7409 4163 7069 B401 4167 207F 0002
090: 0002 0000 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 44B0 1BF2 0000 0000 0000 0008 6003 0000 0550 3804
110: 4001 0000 0000 0000 0000 0000 0000 0000 0000 4358
120: 4018 0000 0000 0000 0000 0000 0000 0000 0029 4D52
130: 564C 0000 0000 0000 0000 0000 0000 0000 0000 0000
140: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 3933 3539 2020 2020 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0007 0001
170: 2020 2020 2020 2020 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 003D 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 0001 0000 0000
220: 0000 0000 107F 0051 0000 0000 0000 0000 0000 0000
230: 44B0 1BF2 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 5DA5
-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 30 00 01 2F 00 64 64 01 00 00 00 00 00 00 05 33
010: 00 64 64 00 00 00 00 00 00 0A 09 32 00 64 64 26
020: 17 00 00 00 00 00 0C 32 00 64 64 42 02 00 00 00
030: 00 00 64 32 00 64 64 A0 27 9A 00 00 00 00 65 32
040: 00 64 64 C0 BC 0D 00 00 00 00 AA 32 00 64 64 00
050: 00 00 00 00 00 00 AB 32 00 64 64 00 00 00 00 00
060: 00 00 AC 32 00 64 64 00 00 00 00 00 00 00 AE 32
070: 00 64 64 15 00 00 00 00 00 00 AF 32 00 64 64 00
080: 00 00 00 00 00 00 B0 32 00 64 64 00 00 00 00 00
090: 00 00 B1 32 00 5C 5C A2 0B 00 00 00 00 00 B2 02
0A0: 00 64 64 00 00 00 00 00 00 00 B4 02 00 64 64 1E
0B0: 05 00 00 00 00 00 B7 32 00 60 60 15 00 00 00 00
0C0: 00 00 BB 33 00 64 64 00 00 00 00 00 00 00 C2 22
0D0: 00 20 64 20 00 10 00 2C 00 00 C3 32 00 64 64 01
0E0: 00 00 00 00 00 00 C4 32 00 64 64 00 00 00 00 00
0F0: 00 00 C5 32 00 64 64 00 00 00 00 00 00 00 C7 12
100: 00 64 64 00 00 00 00 00 00 00 C9 32 00 64 64 00
110: 00 00 00 00 00 00 CC 32 00 64 64 01 00 00 00 00
120: 00 00 E7 32 00 5C 5C 08 00 00 00 00 00 00 E9 32
130: 00 64 64 20 47 00 00 00 00 00 EA 32 00 64 64 8C
140: 13 00 00 00 00 00 F1 32 00 64 64 8F 2F 00 00 00
150: 00 00 F2 32 00 64 64 CA 2A 00 00 00 00 00 FA 32
160: 00 64 64 01 00 00 00 00 00 00 00 00 05 00 01 71
170: 03 00 01 00 02 05 00 00 00 00 00 00 00 00 00 00
180: 00 00 60 00 00 00 00 00 00 00 00 00 22 01 00 00
190: 00 00 00 00 00 00 00 00 70 11 00 00 00 00 00 00
1A0: 36 B9 F1 F1 05 00 00 00 00 00 30 4E 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 24 EB 5D 59 05 00 00 00
1C0: B0 D4 7C 12 01 00 00 00 1E 05 00 00 02 00 00 00
1D0: 05 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 2E A6 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 04 10 00 00 00 00 00 AD
-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 04 00 01 00 00 00 00 00 00 00 00 00 00 00 05 0A
010: 00 00 00 00 00 00 00 00 00 00 09 00 00 00 00 00
020: 00 00 00 00 00 00 0C 00 00 00 00 00 00 00 00 00
030: 00 00 64 00 00 00 00 00 00 00 00 00 00 00 65 00
040: 00 00 00 00 00 00 00 00 00 00 AA 00 00 00 00 00
050: 00 00 00 00 00 00 AB 00 00 00 00 00 00 00 00 00
060: 00 00 AC 00 00 00 00 00 00 00 00 00 00 00 AE 00
070: 00 00 00 00 00 00 00 00 00 00 AF 00 00 00 00 00
080: 00 00 00 00 00 00 B0 00 00 00 00 00 00 00 00 00
090: 00 00 B1 00 00 00 00 00 00 00 00 00 00 00 B2 00
0A0: 00 00 00 00 00 00 00 00 00 00 B4 00 00 00 00 00
0B0: 00 00 00 00 00 00 B7 00 00 00 00 00 00 00 00 00
0C0: 00 00 BB 00 00 00 00 00 00 00 00 00 00 00 C2 00
0D0: 00 00 00 00 00 00 00 00 00 00 C3 00 00 00 00 00
0E0: 00 00 00 00 00 00 C4 00 00 00 00 00 00 00 00 00
0F0: 00 00 C5 00 00 00 00 00 00 00 00 00 00 00 C7 00
100: 00 00 00 00 00 00 00 00 00 00 C9 00 00 00 00 00
110: 00 00 00 00 00 00 CC 00 00 00 00 00 00 00 00 00
120: 00 00 E7 00 00 00 00 00 00 00 00 00 00 00 E9 00
130: 00 00 00 00 00 00 00 00 00 00 EA 00 00 00 00 00
140: 00 00 00 00 00 00 F1 00 00 00 00 00 00 00 00 00
150: 00 00 F2 00 00 00 00 00 00 00 00 00 00 00 FA 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 76
----------------------------------------------------------------------------
(2) ST1000DM010-2EP102
----------------------------------------------------------------------------
Model : ST1000DM010-2EP102
Firmware : CC43
Serial Number : Z9A8ZX75
Disk Size : 1000,2 GB (8,4/137,4/1000,2/1000,2)
Buffer Size : Unknown
Queue Depth : 32
# of Sectors : 1953525168
Rotation Rate : 7200 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ATA8-ACS version 4
Transfer Mode : SATA/600 | SATA/600
Power On Hours : 5921 hours
Power On Count : 582 count
Temperature : 34 C (93 F)
Health Status : Good
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 8080h [ON]
AAM Level : ----
Drive Letter : D:
-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 _83 _63 __6 00000D787BDA Read Error Rate
03 _97 _97 __0 000000000000 Spin-Up Time
04 100 100 _20 000000000246 Start/Stop Count
05 100 100 _10 000000000000 Reallocated Sectors Count
07 _63 _60 _45 000000278ED4 Seek Error Rate
09 _94 _94 __0 000000001721 Power-On Hours
0A 100 100 _97 000000000000 Spin Retry Count
0C 100 100 _20 000000000246 Power Cycle Count
B7 100 100 __0 000000000000 Vendor Specific
B8 100 100 _99 000000000000 End-to-End Error
BB 100 100 __0 000000000000 Reported Uncorrectable Errors
BC 100 100 __0 000000000000 Command Timeout
BD 100 100 __0 000000000000 High Fly Writes
BE _66 _64 _40 000022180022 Airflow Temperature
C1 100 100 __0 000000000246 Load/Unload Cycle Count
C2 _34 _11 __0 000B00000022 Temperature
C3 __7 __1 __0 00000D787BDA Hardware ECC recovered
C5 100 100 __0 000000000000 Current Pending Sector Count
C6 100 100 __0 000000000000 Uncorrectable Sector Count
C7 200 200 __0 000000000000 UltraDMA CRC Error Count
F0 100 253 __0 8B800000171F Head Flying Hours
F1 100 253 __0 000089FB2BCE Total Host Writes
F2 100 253 __0 00003D02C5E8 Total Host Reads
-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 0C5A 3FFF C837 0010 0000 0000 003F 0000 0000 0000
010: 2020 2020 2020 2020 2020 2020 5A39 4138 5A58 3735
020: 0000 0000 0000 4343 3433 2020 2020 5354 3130 3030
030: 444D 3031 302D 3245 5031 3032 2020 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 4000 2F00
050: 4000 0200 0200 0007 3FFF 0010 003F FC10 00FB 0110
060: FFFF 0FFF 0000 0007 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 001F 850E 0006 00CC 0040
080: 01F0 0029 346B 7D69 4163 3469 BC49 4163 207F 0036
090: 0036 8080 FFFE 0000 D0D0 0000 0000 0000 0000 0000
100: 6DB0 7470 0000 0000 0000 0000 6003 0000 5000 C500
110: 936D FAAB 0000 0000 0000 0000 0000 0000 0000 401E
120: 401C 0000 0000 0000 0000 0000 0000 0000 0029 6DB0
130: 7470 6DB0 7470 2020 0002 0140 0100 5000 3C06 3C0A
140: 0000 003C 0000 0008 0000 0000 FDFF 0280 0000 0000
150: 0008 0000 0000 0000 0000 8000 0000 0184 9400 8000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0002 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 0000 1085 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 1C20 0000 0000
220: 0000 0000 1020 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 22A5
-- SMART_READ_DATA ---------------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 0A 00 01 0F 00 53 3F DA 7B 78 0D 00 00 00 03 03
010: 00 61 61 00 00 00 00 00 00 00 04 32 00 64 64 46
020: 02 00 00 00 00 00 05 33 00 64 64 00 00 00 00 00
030: 00 00 07 0F 00 3F 3C D4 8E 27 00 00 00 00 09 32
040: 00 5E 5E 21 17 00 00 00 00 00 0A 13 00 64 64 00
050: 00 00 00 00 00 00 0C 32 00 64 64 46 02 00 00 00
060: 00 00 B7 32 00 64 64 00 00 00 00 00 00 00 B8 32
070: 00 64 64 00 00 00 00 00 00 00 BB 32 00 64 64 00
080: 00 00 00 00 00 00 BC 32 00 64 64 00 00 00 00 00
090: 00 00 BD 3A 00 64 64 00 00 00 00 00 00 00 BE 22
0A0: 00 42 40 22 00 18 22 00 00 00 C1 32 00 64 64 46
0B0: 02 00 00 00 00 00 C2 22 00 22 0B 22 00 00 00 0B
0C0: 00 00 C3 1A 00 07 01 DA 7B 78 0D 00 00 00 C5 12
0D0: 00 64 64 00 00 00 00 00 00 00 C6 10 00 64 64 00
0E0: 00 00 00 00 00 00 C7 3E 00 C8 C8 00 00 00 00 00
0F0: 00 00 F0 00 00 64 FD 1F 17 00 00 80 8B 35 F1 00
100: 00 64 FD CE 2B FB 89 00 00 00 F2 00 00 64 FD E8
110: C5 02 3D 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 73
170: 03 00 01 00 01 6A 02 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 65 07 00 00 06 03 03 03 03 03 03 03
190: 03 00 00 00 00 00 00 00 00 01 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 91 83 C8 1C 63 13 00 00
1B0: 00 00 00 00 01 00 5F 00 CE 2B FB 89 00 00 00 00
1C0: E8 C5 02 3D 00 00 00 00 00 00 00 00 62 F2 DC 02
1D0: 00 00 00 00 00 00 00 00 B6 00 00 00 06 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 07
1F0: 00 00 00 00 00 00 00 00 00 00 14 17 00 00 00 38
-- SMART_READ_THRESHOLD ----------------------------------------------------
+0 +1 +2 +3 +4 +5 +6 +7 +8 +9 +A +B +C +D +E +F
000: 01 00 01 06 00 00 00 00 00 00 00 00 00 00 03 00
010: 00 00 00 00 00 00 00 00 00 00 04 14 00 00 00 00
020: 00 00 00 00 00 00 05 0A 00 00 00 00 00 00 00 00
030: 00 00 07 2D 00 00 00 00 00 00 00 00 00 00 09 00
040: 00 00 00 00 00 00 00 00 00 00 0A 61 00 00 00 00
050: 00 00 00 00 00 00 0C 14 00 00 00 00 00 00 00 00
060: 00 00 B7 00 00 00 00 00 00 00 00 00 00 00 B8 63
070: 00 00 00 00 00 00 00 00 00 00 BB 00 00 00 00 00
080: 00 00 00 00 00 00 BC 00 00 00 00 00 00 00 00 00
090: 00 00 BD 00 00 00 00 00 00 00 00 00 00 00 BE 28
0A0: 00 00 00 00 00 00 00 00 00 00 C1 00 00 00 00 00
0B0: 00 00 00 00 00 00 C2 00 00 00 00 00 00 00 00 00
0C0: 00 00 C3 00 00 00 00 00 00 00 00 00 00 00 C5 00
0D0: 00 00 00 00 00 00 00 00 00 00 C6 00 00 00 00 00
0E0: 00 00 00 00 00 00 C7 00 00 00 00 00 00 00 00 00
0F0: 00 00 F0 00 00 00 00 00 00 00 00 00 00 00 F1 00
100: 00 00 00 00 00 00 00 00 00 00 F2 00 00 00 00 00
110: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
120: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
130: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
140: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
150: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
160: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
170: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
180: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
190: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1A0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1B0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1C0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1D0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1E0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00
1F0: 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 AF
doska: ASUS B150 PRE GAMING
ram: Kingston 16 GB DDR4 2133 MHz CL14 HyperX Fury Black Series
Graf.karta: ASUS TURBO GTX 1060 6 GB GDDR5
SSD: KINGSTON SSDNow UV400 240GB
disk: Seagate Barracuda 1TB
Procesor: Intel Core i5-6400 2,7 GHz
chladič: Cooler Master Hyper TX3i alebo Cooler Master Hyper 103
zdroj: Corsair VS450
bedna: Zalman Z1 Neo
ram: Kingston 16 GB DDR4 2133 MHz CL14 HyperX Fury Black Series
Graf.karta: ASUS TURBO GTX 1060 6 GB GDDR5
SSD: KINGSTON SSDNow UV400 240GB
disk: Seagate Barracuda 1TB
Procesor: Intel Core i5-6400 2,7 GHz
chladič: Cooler Master Hyper TX3i alebo Cooler Master Hyper 103
zdroj: Corsair VS450
bedna: Zalman Z1 Neo
Re: Prosím o kontrolu logu
frts
----
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21.07.2018
Ran by Zanterw0w (administrator) on DESKTOP-ONLULOH (21-07-2018 20:12:29)
Running from C:\Users\Zanterw0w\Desktop
Loaded Profiles: Zanterw0w (Available Profiles: defaultuser0 & Zanterw0w)
Platform: Windows 10 Home Version 1607 14393.2189 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
() C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MsMpEng.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\NisSrv.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Corporation) C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
() C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe
(Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MpCmdRun.exe
() C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
() C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1705.1301.1000_x64__8wekyb3d8bbwe\Calculator.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8899592 2016-08-22] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2017-04-28] (Microsoft Corporation)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [316392 2018-05-11] (Adobe Systems, Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [596640 2017-04-13] (Razer Inc.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2384984 2016-12-09] (Adobe Systems Incorporated)
HKU\S-1-5-21-465800105-2052830454-3610181450-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3201312 2018-06-09] (Valve Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{96712fdf-6cab-4199-b3c0-d791f0239d36}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
SearchScopes: HKU\S-1-5-21-465800105-2052830454-3610181450-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\ssv.dll [2018-04-22] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\jp2ssv.dll [2018-04-22] (Oracle Corporation)
FireFox:
========
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-12-09] (Adobe Systems)
FF Plugin-x32: @java.com/DTPlugin,version=11.171.2 -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\dtplugin\npDeployJava1.dll [2018-04-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.171.2 -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\plugin2\npjp2.dll [2018-04-22] (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-06-24] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-06-24] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader 2015\Reader\AIR\nppdf32.dll [2018-06-29] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-12-09] (Adobe Systems)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default [2018-07-21]
CHR Extension: (Prezentace) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-07-17]
CHR Extension: (BetterTTV) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2018-07-17]
CHR Extension: (Dokumenty) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-07-17]
CHR Extension: (Disk Google) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-07-17]
CHR Extension: (YouTube) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-07-17]
CHR Extension: (Tabulky) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-07-17]
CHR Extension: (Dokumenty Google offline) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-07-17]
CHR Extension: (AdBlock) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-07-19]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-07-17]
CHR Extension: (Gmail) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-07-17]
CHR Extension: (Chrome Media Router) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-07-17]
CHR Profile: C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\System Profile [2018-07-17]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [753240 2016-12-09] (Adobe Systems Incorporated)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2321384 2018-05-11] (Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2128872 2018-05-11] (Adobe Systems, Incorporated)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6076936 2018-06-09] ()
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [610464 2018-01-18] (EasyAntiCheat Ltd)
S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [284224 2016-12-03] (GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6625856 2016-12-03] (GOG.com)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [974632 2016-02-19] (Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335360 2016-03-18] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-03-18] (Intel Corporation) [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [209184 2016-05-25] (Intel Corporation)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [7987104 2017-04-10] (INCA Internet Co., Ltd.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764896 2018-05-20] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764896 2018-05-20] (NVIDIA Corporation)
R2 osrss; C:\Windows\system32\osrss.dll [131288 2018-06-27] (Microsoft Corporation)
R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [189264 2016-09-25] ()
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\NisSrv.exe [3925648 2018-06-26] (Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MsMpEng.exe [100080 2018-06-26] (Microsoft Corporation)
R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe [18264 2017-09-27] (Intel(R) Corporation)
S2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [X]
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] ()
R1 ESEADriver2; C:\Users\Zanterw0w\AppData\Local\Temp\ESEADriver2.sys [3542608 2018-07-19] () <==== ATTENTION
R0 FACEIT; C:\Windows\System32\Drivers\FACEIT.sys [10537960 2018-07-01] ()
R2 iocbios2; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [38424 2017-09-15] (Intel Corporation)
S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nvaki.inf_amd64_ac5431fc854f39b1\nvlddmkm.sys [17200392 2018-06-25] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [31200 2018-05-20] (NVIDIA Corporation)
S3 NVSWCFilter; C:\Windows\System32\drivers\nvswcfilter.sys [35272 2016-10-01] (Windows (R) Win 7 DDK provider)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [67432 2018-03-15] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [68112 2018-04-28] (NVIDIA Corporation)
S3 Phosgene; C:\Windows\system32\DRIVERS\Phosgene.sys [34136 2015-09-02] (Adoriasoft LLC)
R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [50392 2015-08-13] (Razer Inc)
R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [44144 2016-09-17] (Razer, Inc.)
R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [137840 2016-10-08] (Razer, Inc.)
S3 ssdevfactory; C:\Windows\System32\drivers\ssdevfactory.sys [41824 2016-11-03] (SteelSeries ApS)
S3 sshid; C:\Windows\System32\drivers\sshid.sys [45928 2017-01-13] (SteelSeries ApS)
R3 VBAudioVMAUXVAIOMME; C:\Windows\system32\DRIVERS\vbaudio_vmauxvaio64_win7.sys [41192 2017-11-18] (Windows (R) Win 7 DDK provider)
R3 VBAudioVMVAIOMME; C:\Windows\system32\DRIVERS\vbaudio_vmvaio64_win7.sys [41192 2017-02-24] (Windows (R) Win 7 DDK provider)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [46592 2018-06-26] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [340008 2018-06-26] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [59944 2018-06-26] (Microsoft Corporation)
R1 ZAM_Guard; C:\Windows\System32\drivers\zamguard64.sys [203680 2018-07-17] (Zemana Ltd.)
S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\NZXT\CAM\CAM_V3.sys [X]
S1 ZAM; \??\C:\Windows\System32\drivers\zam64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-07-21 20:12 - 2018-07-21 20:12 - 000016793 _____ C:\Users\Zanterw0w\Desktop\FRST.txt
2018-07-21 20:12 - 2018-07-21 20:12 - 000000000 ____D C:\FRST
2018-07-21 20:11 - 2018-07-21 20:11 - 002412544 _____ (Farbar) C:\Users\Zanterw0w\Desktop\FRST64.exe
2018-07-20 17:56 - 2018-07-20 17:56 - 000001030 _____ C:\Users\Public\Desktop\Minecraft.lnk
2018-07-20 17:56 - 2018-07-20 17:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft
2018-07-19 19:35 - 2018-07-19 19:40 - 000000000 ____D C:\Users\Zanterw0w\Desktop\Matadia.pl
2018-07-19 11:58 - 2018-07-19 11:58 - 000000000 _____ C:\Windows\cd_127
2018-07-18 20:30 - 2018-07-18 20:30 - 000016850 _____ C:\Users\Zanterw0w\Downloads\MemTest.zip
2018-07-18 11:37 - 2018-07-18 11:46 - 000000000 ____D C:\Users\Zanterw0w\AppData\Roaming\slobs-client
2018-07-17 09:59 - 2018-07-21 20:12 - 000781588 _____ C:\Windows\ZAM_Guard.krnl.trace
2018-07-17 09:59 - 2018-07-18 10:51 - 000000000 ____D C:\Program Files (x86)\Zemana AntiMalware
2018-07-17 09:59 - 2018-07-18 10:48 - 000048524 _____ C:\Windows\ZAM.krnl.trace
2018-07-17 09:59 - 2018-07-17 09:59 - 000203680 _____ (Zemana Ltd.) C:\Windows\system32\Drivers\zamguard64.sys
2018-07-17 09:59 - 2018-07-17 09:59 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Zemana
2018-07-17 09:50 - 2014-02-13 23:59 - 000024064 _____ C:\Windows\zoek-delete.exe
2018-07-17 09:16 - 2018-07-17 09:46 - 000000000 ____D C:\zoek_backup
2018-07-16 13:15 - 2018-07-17 08:52 - 000028272 _____ C:\Windows\system32\Drivers\TrueSight.sys
2018-07-16 13:14 - 2018-07-16 13:42 - 000000000 ____D C:\ProgramData\RogueKiller
2018-07-16 12:15 - 2018-07-16 12:15 - 000000000 ____D C:\ProgramData\Sophos
2018-07-14 23:17 - 2018-07-16 11:57 - 000000000 ____D C:\AdwCleaner
2018-07-13 14:01 - 2018-07-13 14:01 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignbe0d97a7ddb1f43c
2018-07-13 14:01 - 2018-07-13 14:01 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign653bccb6173e5057
2018-07-13 08:44 - 2018-07-13 08:47 - 000000000 ____D C:\Windows\UpdateAssistant
2018-07-12 17:53 - 2018-07-12 17:53 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign3de94e08769c8c79
2018-07-12 17:53 - 2018-07-12 17:53 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign1b2f5f2d0506b0d3
2018-07-12 17:52 - 2018-07-12 17:52 - 019991118 _____ C:\Users\Zanterw0w\Downloads\Golden Streaming Cam.psd
2018-07-12 16:19 - 2018-07-12 16:19 - 000000000 ____D C:\Users\Zanterw0w\AppData\LocalLow\Fishing Planet LLC
2018-07-12 12:51 - 2018-07-12 12:51 - 000000000 ____D C:\$WINDOWS.~BT
2018-07-12 12:50 - 2018-07-12 12:51 - 000000000 ___HD C:\$SysReset
2018-07-12 11:25 - 2018-07-12 11:25 - 000000000 ____D C:\Users\Zanterw0w\Downloads\Nový priečinok (3)
2018-07-09 20:59 - 2018-07-09 20:59 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignade8a30f65c0bde5
2018-07-09 20:59 - 2018-07-09 20:59 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign29b84125c6d8adec
2018-07-07 01:08 - 2018-07-07 01:08 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignbcede1d50eab8eef
2018-07-07 01:08 - 2018-07-07 01:08 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign4948c956ebe0546d
2018-07-06 19:19 - 2018-07-06 19:19 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign563e58fd1a6778a7
2018-07-06 19:19 - 2018-07-06 19:19 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign557522c80949d0eb
2018-07-06 18:06 - 2018-07-06 18:06 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignc7c14334e6b29807
2018-07-06 18:06 - 2018-07-06 18:06 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign2f625bb0a7d788b7
2018-07-06 17:35 - 2018-07-06 17:35 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsigndfbdf9a8396b8b24
2018-07-06 17:35 - 2018-07-06 17:35 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignd371f08582c1b0eb
2018-07-05 20:10 - 2018-07-05 20:10 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign564f1970de2de82c
2018-07-05 20:10 - 2018-07-05 20:10 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign2606674212263bb0
2018-07-05 18:55 - 2018-07-05 18:55 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign72eff975eee1e3d0
2018-07-05 18:55 - 2018-07-05 18:55 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign122027e42afe94d0
2018-07-03 11:41 - 2018-07-03 11:41 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign9c70c6f22b4189f0
2018-07-03 11:41 - 2018-07-03 11:41 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign8ff6d97c9aca7c39
2018-07-03 10:56 - 2018-07-03 10:56 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign66651c791676f15c
2018-07-03 10:56 - 2018-07-03 10:56 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign1619653e4c70c8a6
2018-07-02 15:08 - 2018-07-02 15:08 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign3c15c20259826c06
2018-07-02 15:08 - 2018-07-02 15:08 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign23a59d7f6ffc1cb8
2018-07-01 20:13 - 2018-07-01 20:13 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign9bf65b626f097844
2018-07-01 20:13 - 2018-07-01 20:13 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign219ff4f1fbd0f7b6
2018-07-01 19:36 - 2018-07-05 20:13 - 000000000 ____D C:\Users\Zanterw0w\Downloads\Nový priečinok (2)
2018-07-01 18:53 - 2018-07-01 18:53 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsigneba864e27d19915b
2018-07-01 18:53 - 2018-07-01 18:53 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign21f622e9e48d41d2
2018-07-01 12:30 - 2018-07-01 12:30 - 000003476 _____ C:\Windows\System32\Tasks\CAM
2018-07-01 10:46 - 2018-07-01 10:46 - 000001976 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Streamlabs OBS.lnk
2018-07-01 10:46 - 2018-07-01 10:46 - 000001964 _____ C:\Users\Public\Desktop\Streamlabs OBS.lnk
2018-07-01 10:45 - 2018-07-12 17:28 - 000000000 ____D C:\Program Files\Streamlabs OBS
2018-06-30 19:06 - 2018-06-30 19:06 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign90a0c4ae015f5fe8
2018-06-30 19:06 - 2018-06-30 19:06 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign486a0aef09f38cea
2018-06-30 14:12 - 2018-06-30 14:12 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign5aff059da38adb97
2018-06-30 14:12 - 2018-06-30 14:12 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign1796e2d13098ee99
2018-06-29 22:18 - 2018-06-29 22:18 - 000000000 ____D C:\Users\Zanterw0w\Documents\League of Legends
2018-06-29 10:30 - 2018-06-29 10:33 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner
2018-06-29 09:14 - 2018-06-29 09:14 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignfc2c1ce0aef344d2
2018-06-29 09:14 - 2018-06-29 09:14 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsigne7a16fe2431089fb
2018-06-27 09:27 - 2018-06-24 17:40 - 000132032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2018-06-27 09:25 - 2018-06-25 19:25 - 040346984 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 035250256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 031244248 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 013728120 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 011273632 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 004350040 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 003760672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 002013784 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6439836.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 001563392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 001468448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6439836.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 001419200 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 001216872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 001092360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 000749472 _____ (NVIDIA Corporation) C:\Windows\system32\nvDecMFTMjpeg.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 000626616 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 000608512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvDecMFTMjpeg.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 000518208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 025961336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 017750344 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 015165008 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 004126128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 001356816 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFThevc.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 001347664 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 001157392 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 001069416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFThevc.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 001063216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 000904720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 000814616 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 000652344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 000634760 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcumd.dll
2018-06-27 08:46 - 2018-06-27 08:46 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign82eef4e4b7abc911
2018-06-27 08:46 - 2018-06-27 08:46 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign5d6490ce7ad61f00
2018-06-26 21:58 - 2018-06-26 21:58 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsigna0428f2464aa4da1
2018-06-26 21:58 - 2018-06-26 21:58 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign711ee1e4ac55c2c2
2018-06-26 19:25 - 2018-06-26 19:25 - 000000000 ____D C:\Program Files\Core Temp
2018-06-26 13:22 - 2018-06-26 13:22 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign50150df2e082e91f
2018-06-26 13:22 - 2018-06-26 13:22 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign1ba9e9e23a10a4bf
2018-06-26 11:03 - 2018-06-26 11:03 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignc45e1b8db7fbbefd
2018-06-26 11:03 - 2018-06-26 11:03 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign90321148c34fed00
2018-06-26 09:08 - 2018-06-26 09:08 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsigneb22e00859b9f6ca
2018-06-26 09:08 - 2018-06-26 09:08 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign3e4c8ac53317a5ee
2018-06-26 08:39 - 2018-06-26 08:39 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsigndb13768bd6bcb611
2018-06-26 08:39 - 2018-06-26 08:39 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign43fbf4e021c421b4
2018-06-25 21:07 - 2018-06-25 21:07 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignfa2224294460328a
2018-06-25 21:07 - 2018-06-25 21:07 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign3b0c767d60563b7f
2018-06-25 20:14 - 2018-06-25 20:14 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignf77dd8de0c38ff5d
2018-06-25 20:14 - 2018-06-25 20:14 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign19c7d4fb2254e0d1
2018-06-25 19:44 - 2018-06-25 19:44 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignec39263be88a4001
2018-06-25 19:44 - 2018-06-25 19:44 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignd53e3edfddba9818
2018-06-25 16:39 - 2018-06-25 16:39 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign6823e2eb5100c222
2018-06-25 16:39 - 2018-06-25 16:39 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign1983508cadc8ca48
2018-06-25 16:36 - 2018-06-25 16:36 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignecab1ca253ed124d
2018-06-25 16:36 - 2018-06-25 16:36 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign901cddeabe9308bf
2018-06-24 15:07 - 2018-06-24 15:07 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsigneea43e6ae002cdeb
2018-06-24 15:07 - 2018-06-24 15:07 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign44f5d83f8fabc0c4
2018-06-22 18:39 - 2018-06-22 18:39 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign3f04a243afc506d5
2018-06-22 18:39 - 2018-06-22 18:39 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign03b6118a3ea6a4c2
2018-06-21 21:56 - 2018-06-21 21:57 - 000000000 ____D C:\Users\Zanterw0w\AppData\Roaming\Valium
2018-06-21 10:27 - 2018-06-21 10:27 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignca8f1dcf73bdb218
2018-06-21 10:27 - 2018-06-21 10:27 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign5b0345604f24255b
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-07-21 19:36 - 2017-02-24 18:07 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\CrashDumps
2018-07-21 19:26 - 2017-02-21 16:08 - 000000000 ____D C:\Users\Zanterw0w\AppData\Roaming\.minecraft
2018-07-21 18:38 - 2017-02-23 17:22 - 000000000 ____D C:\Users\Zanterw0w\AppData\Roaming\TS3Client
2018-07-21 16:25 - 2016-10-26 14:52 - 000000000 ____D C:\Program Files (x86)\Steam
2018-07-21 15:24 - 2017-02-21 16:14 - 000004218 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{14099683-9033-4AB4-AF56-3F86198B2A8C}
2018-07-21 12:25 - 2016-10-26 14:25 - 000000000 ____D C:\ProgramData\NVIDIA
2018-07-21 09:27 - 2016-07-16 13:47 - 000000000 ___HD C:\Program Files\WindowsApps
2018-07-21 09:27 - 2016-07-16 13:47 - 000000000 ____D C:\Windows\AppReadiness
2018-07-21 09:14 - 2017-02-28 09:34 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Adobe
2018-07-21 09:13 - 2017-02-21 14:08 - 000000000 ____D C:\Users\Zanterw0w
2018-07-20 18:15 - 2017-12-11 22:07 - 000000000 ____D C:\Users\Zanterw0w\AppData\Roaming\obs-studio
2018-07-20 17:57 - 2017-02-21 16:08 - 000000000 ____D C:\Program Files (x86)\Minecraft
2018-07-20 17:04 - 2018-03-31 10:21 - 000000000 ____D C:\Users\Zanterw0w\Desktop\Nový priečinok
2018-07-20 16:52 - 2016-10-26 13:20 - 000000000 ____D C:\Windows\system32\SleepStudy
2018-07-19 22:43 - 2018-06-19 15:40 - 000000088 _____ C:\Users\Zanterw0w\Desktop\Matadia.txt
2018-07-19 12:04 - 2017-02-22 16:18 - 003081428 _____ C:\Windows\system32\perfh01B.dat
2018-07-19 12:04 - 2017-02-22 16:18 - 000954988 _____ C:\Windows\system32\perfc01B.dat
2018-07-19 12:04 - 2016-10-26 14:02 - 007175278 _____ C:\Windows\system32\PerfStringBackup.INI
2018-07-19 11:58 - 2016-10-26 13:20 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-07-19 11:57 - 2016-07-16 08:04 - 000524288 _____ C:\Windows\system32\config\BBI
2018-07-17 15:32 - 2017-02-24 18:20 - 000034111 _____ C:\Users\Zanterw0w\AppData\Roaming\VoiceMeeterDefault.xml
2018-07-17 14:47 - 2018-03-28 09:40 - 000000167 _____ C:\Users\Zanterw0w\Documents\ClownfishForTeamspeak.ini
2018-07-17 09:45 - 2016-07-16 13:47 - 000000000 ___HD C:\Windows\system32\GroupPolicy
2018-07-17 09:13 - 2017-07-20 11:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GS Auto Clicker
2018-07-17 09:13 - 2017-07-20 11:22 - 000000000 ____D C:\Program Files (x86)\GSAutoClicker3
2018-07-17 08:01 - 2017-02-21 15:01 - 000563832 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2018-07-14 11:15 - 2016-07-16 13:36 - 000000000 ____D C:\Windows\CbsTemp
2018-07-12 18:42 - 2017-10-01 20:12 - 000000000 ____D C:\Users\Zanterw0w\Desktop\vecicky
2018-07-12 17:32 - 2017-02-24 18:13 - 000000000 ____D C:\Users\Zanterw0w\AppData\Roaming\vlc
2018-07-12 12:56 - 2016-07-16 13:47 - 000000000 ____D C:\Windows\System
2018-07-12 12:50 - 2016-07-16 13:45 - 000000000 ____D C:\Windows\INF
2018-07-11 12:58 - 2017-02-21 15:02 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Battle.net
2018-07-11 12:58 - 2016-10-26 15:17 - 000000000 ____D C:\Program Files (x86)\Battle.net
2018-07-11 09:41 - 2017-02-21 18:48 - 000000000 ____D C:\Windows\system32\MRT
2018-07-11 09:40 - 2017-02-21 18:48 - 134675576 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2018-07-11 09:40 - 2016-12-03 12:33 - 000004562 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2018-07-11 09:40 - 2016-12-03 12:33 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2018-07-06 17:17 - 2018-04-26 18:01 - 000000000 ____D C:\Users\Zanterw0w\Desktop\xoffieN
2018-07-05 20:13 - 2018-06-20 13:06 - 000000000 ____D C:\Users\Zanterw0w\Downloads\Nový priečinok
2018-07-01 17:27 - 2018-05-24 13:01 - 010537960 _____ C:\Windows\system32\Drivers\FACEIT.sys
2018-07-01 12:30 - 2016-10-26 14:09 - 000000000 ____D C:\ProgramData\Intel
2018-07-01 12:29 - 2016-10-26 14:09 - 000000000 ____D C:\Program Files (x86)\Intel
2018-06-29 14:47 - 2016-10-26 13:20 - 000814800 _____ C:\Windows\system32\FNTCACHE.DAT
2018-06-29 10:30 - 2016-10-26 17:58 - 000000000 ____D C:\Windows\SysWOW64\directx
2018-06-27 18:20 - 2017-02-21 14:09 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\NVIDIA
2018-06-27 12:10 - 2018-02-09 14:23 - 000131288 _____ (Microsoft Corporation) C:\Windows\system32\osrss.dll
2018-06-27 09:28 - 2016-10-26 14:25 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2018-06-27 09:27 - 2018-05-25 12:57 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2018-06-26 18:14 - 2018-05-23 19:01 - 000000000 ____D C:\Program Files\FACEIT AC
2018-06-26 14:59 - 2018-02-21 17:13 - 000000000 ____D C:\Windows\system32\Drivers\wd
2018-06-26 08:21 - 2016-10-26 15:00 - 000002313 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-06-26 08:21 - 2016-10-26 15:00 - 000002272 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-06-25 19:24 - 2016-10-26 14:23 - 004856232 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2018-06-24 19:27 - 2016-10-26 14:23 - 000044271 _____ C:\Windows\system32\nvinfo.pb
2018-06-24 17:39 - 2017-12-22 10:04 - 000001951 _____ C:\Windows\NvContainerRecovery.bat
2018-06-24 17:31 - 2016-10-26 14:25 - 005947520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2018-06-24 17:31 - 2016-10-26 14:25 - 002612624 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2018-06-24 17:31 - 2016-10-26 14:25 - 001767360 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2018-06-24 17:31 - 2016-10-26 14:25 - 000633792 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2018-06-24 17:31 - 2016-10-26 14:25 - 000451144 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2018-06-24 17:31 - 2016-10-26 14:25 - 000124200 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2018-06-24 17:31 - 2016-10-26 14:25 - 000083424 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2018-06-23 22:05 - 2018-01-15 19:33 - 000000000 ____D C:\Users\Zanterw0w\AppData\Roaming\EasyAntiCheat
2018-06-23 11:25 - 2016-07-16 13:47 - 000000000 __SHD C:\Users\Public\Libraries
==================== Files in the root of some directories =======
2017-07-22 19:29 - 2017-11-19 15:01 - 000000112 _____ () C:\Users\Zanterw0w\AppData\Roaming\JP2K CS6 Prefs
2017-02-24 18:20 - 2018-07-17 15:32 - 000034111 _____ () C:\Users\Zanterw0w\AppData\Roaming\VoiceMeeterDefault.xml
2017-02-21 15:17 - 2018-05-08 20:23 - 000007601 _____ () C:\Users\Zanterw0w\AppData\Local\Resmon.ResmonCfg
2018-06-02 22:24 - 2018-06-02 22:36 - 000000059 _____ () C:\Users\Zanterw0w\AppData\Local\UserProducts.xml
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2018-07-17 08:56
==================== End of FRST.txt ============================
----
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21.07.2018
Ran by Zanterw0w (administrator) on DESKTOP-ONLULOH (21-07-2018 20:12:29)
Running from C:\Users\Zanterw0w\Desktop
Loaded Profiles: Zanterw0w (Available Profiles: defaultuser0 & Zanterw0w)
Platform: Windows 10 Home Version 1607 14393.2189 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Edge)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
() C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MsMpEng.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\NisSrv.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel(R) Corporation) C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Razer Inc.) C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\IPC\AdobeIPCBroker.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ADS\Adobe Desktop Service.exe
() C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\CCXProcess.exe
(Node.js) C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\libs\node.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MpCmdRun.exe
() C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
(Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
() C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
() C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1705.1301.1000_x64__8wekyb3d8bbwe\Calculator.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8899592 2016-08-22] (Realtek Semiconductor)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [508128 2016-07-01] (Adobe Systems Incorporated)
HKLM\...\Run: [WindowsDefender] => C:\Program Files\Windows Defender\MSASCuiL.exe [631808 2017-04-28] (Microsoft Corporation)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [316392 2018-05-11] (Adobe Systems, Incorporated)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [Razer Synapse] => C:\Program Files (x86)\Razer\Synapse\RzSynapse.exe [596640 2017-04-13] (Razer Inc.)
HKLM-x32\...\Run: [Adobe Creative Cloud] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe [2384984 2016-12-09] (Adobe Systems Incorporated)
HKU\S-1-5-21-465800105-2052830454-3610181450-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3201312 2018-06-09] (Valve Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{96712fdf-6cab-4199-b3c0-d791f0239d36}: [DhcpNameServer] 192.168.0.1
Internet Explorer:
==================
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
SearchScopes: HKU\S-1-5-21-465800105-2052830454-3610181450-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\ssv.dll [2018-04-22] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\jp2ssv.dll [2018-04-22] (Oracle Corporation)
FireFox:
========
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2016-12-09] (Adobe Systems)
FF Plugin-x32: @java.com/DTPlugin,version=11.171.2 -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\dtplugin\npDeployJava1.dll [2018-04-22] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.171.2 -> C:\Program Files (x86)\Java\jre1.8.0_171\bin\plugin2\npjp2.dll [2018-04-22] (Oracle Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-06-24] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-06-24] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-05-17] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2016-06-01] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader 2015\Reader\AIR\nppdf32.dll [2018-06-29] (Adobe Systems Inc.)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2016-12-09] (Adobe Systems)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default [2018-07-21]
CHR Extension: (Prezentace) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-07-17]
CHR Extension: (BetterTTV) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2018-07-17]
CHR Extension: (Dokumenty) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-07-17]
CHR Extension: (Disk Google) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-07-17]
CHR Extension: (YouTube) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-07-17]
CHR Extension: (Tabulky) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-07-17]
CHR Extension: (Dokumenty Google offline) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-07-17]
CHR Extension: (AdBlock) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2018-07-19]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-07-17]
CHR Extension: (Gmail) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-07-17]
CHR Extension: (Chrome Media Router) - C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-07-17]
CHR Profile: C:\Users\Zanterw0w\AppData\Local\Google\Chrome\User Data\System Profile [2018-07-17]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [753240 2016-12-09] (Adobe Systems Incorporated)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [2321384 2018-05-11] (Adobe Systems, Incorporated)
R2 AGSService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [2128872 2018-05-11] (Adobe Systems, Incorporated)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [6076936 2018-06-09] ()
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [610464 2018-01-18] (EasyAntiCheat Ltd)
S3 GalaxyClientService; C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [284224 2016-12-03] (GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [6625856 2016-12-03] (GOG.com)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [974632 2016-02-19] (Intel(R) Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335360 2016-03-18] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [8704 2016-03-18] (Intel Corporation) [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [209184 2016-05-25] (Intel Corporation)
S3 npggsvc; C:\Windows\SysWOW64\GameMon.des [7987104 2017-04-10] (INCA Internet Co., Ltd.)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764896 2018-05-20] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [764896 2018-05-20] (NVIDIA Corporation)
R2 osrss; C:\Windows\system32\osrss.dll [131288 2018-06-27] (Microsoft Corporation)
R2 Razer Game Scanner Service; C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe [189264 2016-09-25] ()
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\NisSrv.exe [3925648 2018-06-26] (Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MsMpEng.exe [100080 2018-06-26] (Microsoft Corporation)
R2 XTU3SERVICE; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\XtuService.exe [18264 2017-09-27] (Intel(R) Corporation)
S2 HiPatchService; C:\Program Files (x86)\Hi-Rez Studios\HiPatchService.exe [X]
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15232 2014-09-09] ()
R1 ESEADriver2; C:\Users\Zanterw0w\AppData\Local\Temp\ESEADriver2.sys [3542608 2018-07-19] () <==== ATTENTION
R0 FACEIT; C:\Windows\System32\Drivers\FACEIT.sys [10537960 2018-07-01] ()
R2 iocbios2; C:\Program Files (x86)\Intel\Intel(R) Extreme Tuning Utility\Drivers\IocDriver\64bit\iocbios2.sys [38424 2017-09-15] (Intel Corporation)
S3 NetAdapterCx; C:\Windows\System32\drivers\NetAdapterCx.sys [90624 2016-07-16] ()
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nvaki.inf_amd64_ac5431fc854f39b1\nvlddmkm.sys [17200392 2018-06-25] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [31200 2018-05-20] (NVIDIA Corporation)
S3 NVSWCFilter; C:\Windows\System32\drivers\nvswcfilter.sys [35272 2016-10-01] (Windows (R) Win 7 DDK provider)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [67432 2018-03-15] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [68112 2018-04-28] (NVIDIA Corporation)
S3 Phosgene; C:\Windows\system32\DRIVERS\Phosgene.sys [34136 2015-09-02] (Adoriasoft LLC)
R3 rzendpt; C:\Windows\System32\drivers\rzendpt.sys [50392 2015-08-13] (Razer Inc)
R2 rzpmgrk; C:\Windows\system32\drivers\rzpmgrk.sys [44144 2016-09-17] (Razer, Inc.)
R2 rzpnk; C:\Windows\system32\drivers\rzpnk.sys [137840 2016-10-08] (Razer, Inc.)
S3 ssdevfactory; C:\Windows\System32\drivers\ssdevfactory.sys [41824 2016-11-03] (SteelSeries ApS)
S3 sshid; C:\Windows\System32\drivers\sshid.sys [45928 2017-01-13] (SteelSeries ApS)
R3 VBAudioVMAUXVAIOMME; C:\Windows\system32\DRIVERS\vbaudio_vmauxvaio64_win7.sys [41192 2017-11-18] (Windows (R) Win 7 DDK provider)
R3 VBAudioVMVAIOMME; C:\Windows\system32\DRIVERS\vbaudio_vmvaio64_win7.sys [41192 2017-02-24] (Windows (R) Win 7 DDK provider)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [46592 2018-06-26] (Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [340008 2018-06-26] (Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [59944 2018-06-26] (Microsoft Corporation)
R1 ZAM_Guard; C:\Windows\System32\drivers\zamguard64.sys [203680 2018-07-17] (Zemana Ltd.)
S3 WinRing0_1_2_0; \??\C:\Program Files (x86)\NZXT\CAM\CAM_V3.sys [X]
S1 ZAM; \??\C:\Windows\System32\drivers\zam64.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-07-21 20:12 - 2018-07-21 20:12 - 000016793 _____ C:\Users\Zanterw0w\Desktop\FRST.txt
2018-07-21 20:12 - 2018-07-21 20:12 - 000000000 ____D C:\FRST
2018-07-21 20:11 - 2018-07-21 20:11 - 002412544 _____ (Farbar) C:\Users\Zanterw0w\Desktop\FRST64.exe
2018-07-20 17:56 - 2018-07-20 17:56 - 000001030 _____ C:\Users\Public\Desktop\Minecraft.lnk
2018-07-20 17:56 - 2018-07-20 17:56 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft
2018-07-19 19:35 - 2018-07-19 19:40 - 000000000 ____D C:\Users\Zanterw0w\Desktop\Matadia.pl
2018-07-19 11:58 - 2018-07-19 11:58 - 000000000 _____ C:\Windows\cd_127
2018-07-18 20:30 - 2018-07-18 20:30 - 000016850 _____ C:\Users\Zanterw0w\Downloads\MemTest.zip
2018-07-18 11:37 - 2018-07-18 11:46 - 000000000 ____D C:\Users\Zanterw0w\AppData\Roaming\slobs-client
2018-07-17 09:59 - 2018-07-21 20:12 - 000781588 _____ C:\Windows\ZAM_Guard.krnl.trace
2018-07-17 09:59 - 2018-07-18 10:51 - 000000000 ____D C:\Program Files (x86)\Zemana AntiMalware
2018-07-17 09:59 - 2018-07-18 10:48 - 000048524 _____ C:\Windows\ZAM.krnl.trace
2018-07-17 09:59 - 2018-07-17 09:59 - 000203680 _____ (Zemana Ltd.) C:\Windows\system32\Drivers\zamguard64.sys
2018-07-17 09:59 - 2018-07-17 09:59 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Zemana
2018-07-17 09:50 - 2014-02-13 23:59 - 000024064 _____ C:\Windows\zoek-delete.exe
2018-07-17 09:16 - 2018-07-17 09:46 - 000000000 ____D C:\zoek_backup
2018-07-16 13:15 - 2018-07-17 08:52 - 000028272 _____ C:\Windows\system32\Drivers\TrueSight.sys
2018-07-16 13:14 - 2018-07-16 13:42 - 000000000 ____D C:\ProgramData\RogueKiller
2018-07-16 12:15 - 2018-07-16 12:15 - 000000000 ____D C:\ProgramData\Sophos
2018-07-14 23:17 - 2018-07-16 11:57 - 000000000 ____D C:\AdwCleaner
2018-07-13 14:01 - 2018-07-13 14:01 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignbe0d97a7ddb1f43c
2018-07-13 14:01 - 2018-07-13 14:01 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign653bccb6173e5057
2018-07-13 08:44 - 2018-07-13 08:47 - 000000000 ____D C:\Windows\UpdateAssistant
2018-07-12 17:53 - 2018-07-12 17:53 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign3de94e08769c8c79
2018-07-12 17:53 - 2018-07-12 17:53 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign1b2f5f2d0506b0d3
2018-07-12 17:52 - 2018-07-12 17:52 - 019991118 _____ C:\Users\Zanterw0w\Downloads\Golden Streaming Cam.psd
2018-07-12 16:19 - 2018-07-12 16:19 - 000000000 ____D C:\Users\Zanterw0w\AppData\LocalLow\Fishing Planet LLC
2018-07-12 12:51 - 2018-07-12 12:51 - 000000000 ____D C:\$WINDOWS.~BT
2018-07-12 12:50 - 2018-07-12 12:51 - 000000000 ___HD C:\$SysReset
2018-07-12 11:25 - 2018-07-12 11:25 - 000000000 ____D C:\Users\Zanterw0w\Downloads\Nový priečinok (3)
2018-07-09 20:59 - 2018-07-09 20:59 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignade8a30f65c0bde5
2018-07-09 20:59 - 2018-07-09 20:59 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign29b84125c6d8adec
2018-07-07 01:08 - 2018-07-07 01:08 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignbcede1d50eab8eef
2018-07-07 01:08 - 2018-07-07 01:08 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign4948c956ebe0546d
2018-07-06 19:19 - 2018-07-06 19:19 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign563e58fd1a6778a7
2018-07-06 19:19 - 2018-07-06 19:19 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign557522c80949d0eb
2018-07-06 18:06 - 2018-07-06 18:06 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignc7c14334e6b29807
2018-07-06 18:06 - 2018-07-06 18:06 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign2f625bb0a7d788b7
2018-07-06 17:35 - 2018-07-06 17:35 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsigndfbdf9a8396b8b24
2018-07-06 17:35 - 2018-07-06 17:35 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignd371f08582c1b0eb
2018-07-05 20:10 - 2018-07-05 20:10 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign564f1970de2de82c
2018-07-05 20:10 - 2018-07-05 20:10 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign2606674212263bb0
2018-07-05 18:55 - 2018-07-05 18:55 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign72eff975eee1e3d0
2018-07-05 18:55 - 2018-07-05 18:55 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign122027e42afe94d0
2018-07-03 11:41 - 2018-07-03 11:41 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign9c70c6f22b4189f0
2018-07-03 11:41 - 2018-07-03 11:41 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign8ff6d97c9aca7c39
2018-07-03 10:56 - 2018-07-03 10:56 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign66651c791676f15c
2018-07-03 10:56 - 2018-07-03 10:56 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign1619653e4c70c8a6
2018-07-02 15:08 - 2018-07-02 15:08 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign3c15c20259826c06
2018-07-02 15:08 - 2018-07-02 15:08 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign23a59d7f6ffc1cb8
2018-07-01 20:13 - 2018-07-01 20:13 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign9bf65b626f097844
2018-07-01 20:13 - 2018-07-01 20:13 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign219ff4f1fbd0f7b6
2018-07-01 19:36 - 2018-07-05 20:13 - 000000000 ____D C:\Users\Zanterw0w\Downloads\Nový priečinok (2)
2018-07-01 18:53 - 2018-07-01 18:53 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsigneba864e27d19915b
2018-07-01 18:53 - 2018-07-01 18:53 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign21f622e9e48d41d2
2018-07-01 12:30 - 2018-07-01 12:30 - 000003476 _____ C:\Windows\System32\Tasks\CAM
2018-07-01 10:46 - 2018-07-01 10:46 - 000001976 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Streamlabs OBS.lnk
2018-07-01 10:46 - 2018-07-01 10:46 - 000001964 _____ C:\Users\Public\Desktop\Streamlabs OBS.lnk
2018-07-01 10:45 - 2018-07-12 17:28 - 000000000 ____D C:\Program Files\Streamlabs OBS
2018-06-30 19:06 - 2018-06-30 19:06 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign90a0c4ae015f5fe8
2018-06-30 19:06 - 2018-06-30 19:06 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign486a0aef09f38cea
2018-06-30 14:12 - 2018-06-30 14:12 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign5aff059da38adb97
2018-06-30 14:12 - 2018-06-30 14:12 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign1796e2d13098ee99
2018-06-29 22:18 - 2018-06-29 22:18 - 000000000 ____D C:\Users\Zanterw0w\Documents\League of Legends
2018-06-29 10:30 - 2018-06-29 10:33 - 000000000 ____D C:\Program Files (x86)\MSI Afterburner
2018-06-29 09:14 - 2018-06-29 09:14 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignfc2c1ce0aef344d2
2018-06-29 09:14 - 2018-06-29 09:14 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsigne7a16fe2431089fb
2018-06-27 09:27 - 2018-06-24 17:40 - 000132032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2018-06-27 09:25 - 2018-06-25 19:25 - 040346984 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 035250256 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 031244248 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 013728120 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 011273632 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 004350040 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 003760672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 002013784 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6439836.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 001563392 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 001468448 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6439836.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 001419200 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 001216872 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 001092360 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 000749472 _____ (NVIDIA Corporation) C:\Windows\system32\nvDecMFTMjpeg.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 000626616 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 000608512 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvDecMFTMjpeg.dll
2018-06-27 09:25 - 2018-06-25 19:25 - 000518208 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 025961336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 017750344 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 015165008 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 004126128 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 001356816 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFThevc.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 001347664 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 001157392 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 001069416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFThevc.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 001063216 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 000904720 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 000814616 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 000652344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2018-06-27 09:25 - 2018-06-25 19:24 - 000634760 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcumd.dll
2018-06-27 08:46 - 2018-06-27 08:46 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign82eef4e4b7abc911
2018-06-27 08:46 - 2018-06-27 08:46 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign5d6490ce7ad61f00
2018-06-26 21:58 - 2018-06-26 21:58 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsigna0428f2464aa4da1
2018-06-26 21:58 - 2018-06-26 21:58 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign711ee1e4ac55c2c2
2018-06-26 19:25 - 2018-06-26 19:25 - 000000000 ____D C:\Program Files\Core Temp
2018-06-26 13:22 - 2018-06-26 13:22 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign50150df2e082e91f
2018-06-26 13:22 - 2018-06-26 13:22 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign1ba9e9e23a10a4bf
2018-06-26 11:03 - 2018-06-26 11:03 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignc45e1b8db7fbbefd
2018-06-26 11:03 - 2018-06-26 11:03 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign90321148c34fed00
2018-06-26 09:08 - 2018-06-26 09:08 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsigneb22e00859b9f6ca
2018-06-26 09:08 - 2018-06-26 09:08 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign3e4c8ac53317a5ee
2018-06-26 08:39 - 2018-06-26 08:39 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsigndb13768bd6bcb611
2018-06-26 08:39 - 2018-06-26 08:39 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign43fbf4e021c421b4
2018-06-25 21:07 - 2018-06-25 21:07 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignfa2224294460328a
2018-06-25 21:07 - 2018-06-25 21:07 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign3b0c767d60563b7f
2018-06-25 20:14 - 2018-06-25 20:14 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignf77dd8de0c38ff5d
2018-06-25 20:14 - 2018-06-25 20:14 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign19c7d4fb2254e0d1
2018-06-25 19:44 - 2018-06-25 19:44 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignec39263be88a4001
2018-06-25 19:44 - 2018-06-25 19:44 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignd53e3edfddba9818
2018-06-25 16:39 - 2018-06-25 16:39 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign6823e2eb5100c222
2018-06-25 16:39 - 2018-06-25 16:39 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign1983508cadc8ca48
2018-06-25 16:36 - 2018-06-25 16:36 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignecab1ca253ed124d
2018-06-25 16:36 - 2018-06-25 16:36 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign901cddeabe9308bf
2018-06-24 15:07 - 2018-06-24 15:07 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsigneea43e6ae002cdeb
2018-06-24 15:07 - 2018-06-24 15:07 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign44f5d83f8fabc0c4
2018-06-22 18:39 - 2018-06-22 18:39 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign3f04a243afc506d5
2018-06-22 18:39 - 2018-06-22 18:39 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign03b6118a3ea6a4c2
2018-06-21 21:56 - 2018-06-21 21:57 - 000000000 ____D C:\Users\Zanterw0w\AppData\Roaming\Valium
2018-06-21 10:27 - 2018-06-21 10:27 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsignca8f1dcf73bdb218
2018-06-21 10:27 - 2018-06-21 10:27 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Tempzxpsign5b0345604f24255b
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-07-21 19:36 - 2017-02-24 18:07 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\CrashDumps
2018-07-21 19:26 - 2017-02-21 16:08 - 000000000 ____D C:\Users\Zanterw0w\AppData\Roaming\.minecraft
2018-07-21 18:38 - 2017-02-23 17:22 - 000000000 ____D C:\Users\Zanterw0w\AppData\Roaming\TS3Client
2018-07-21 16:25 - 2016-10-26 14:52 - 000000000 ____D C:\Program Files (x86)\Steam
2018-07-21 15:24 - 2017-02-21 16:14 - 000004218 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{14099683-9033-4AB4-AF56-3F86198B2A8C}
2018-07-21 12:25 - 2016-10-26 14:25 - 000000000 ____D C:\ProgramData\NVIDIA
2018-07-21 09:27 - 2016-07-16 13:47 - 000000000 ___HD C:\Program Files\WindowsApps
2018-07-21 09:27 - 2016-07-16 13:47 - 000000000 ____D C:\Windows\AppReadiness
2018-07-21 09:14 - 2017-02-28 09:34 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Adobe
2018-07-21 09:13 - 2017-02-21 14:08 - 000000000 ____D C:\Users\Zanterw0w
2018-07-20 18:15 - 2017-12-11 22:07 - 000000000 ____D C:\Users\Zanterw0w\AppData\Roaming\obs-studio
2018-07-20 17:57 - 2017-02-21 16:08 - 000000000 ____D C:\Program Files (x86)\Minecraft
2018-07-20 17:04 - 2018-03-31 10:21 - 000000000 ____D C:\Users\Zanterw0w\Desktop\Nový priečinok
2018-07-20 16:52 - 2016-10-26 13:20 - 000000000 ____D C:\Windows\system32\SleepStudy
2018-07-19 22:43 - 2018-06-19 15:40 - 000000088 _____ C:\Users\Zanterw0w\Desktop\Matadia.txt
2018-07-19 12:04 - 2017-02-22 16:18 - 003081428 _____ C:\Windows\system32\perfh01B.dat
2018-07-19 12:04 - 2017-02-22 16:18 - 000954988 _____ C:\Windows\system32\perfc01B.dat
2018-07-19 12:04 - 2016-10-26 14:02 - 007175278 _____ C:\Windows\system32\PerfStringBackup.INI
2018-07-19 11:58 - 2016-10-26 13:20 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-07-19 11:57 - 2016-07-16 08:04 - 000524288 _____ C:\Windows\system32\config\BBI
2018-07-17 15:32 - 2017-02-24 18:20 - 000034111 _____ C:\Users\Zanterw0w\AppData\Roaming\VoiceMeeterDefault.xml
2018-07-17 14:47 - 2018-03-28 09:40 - 000000167 _____ C:\Users\Zanterw0w\Documents\ClownfishForTeamspeak.ini
2018-07-17 09:45 - 2016-07-16 13:47 - 000000000 ___HD C:\Windows\system32\GroupPolicy
2018-07-17 09:13 - 2017-07-20 11:22 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GS Auto Clicker
2018-07-17 09:13 - 2017-07-20 11:22 - 000000000 ____D C:\Program Files (x86)\GSAutoClicker3
2018-07-17 08:01 - 2017-02-21 15:01 - 000563832 ____N (Microsoft Corporation) C:\Windows\system32\MpSigStub.exe
2018-07-14 11:15 - 2016-07-16 13:36 - 000000000 ____D C:\Windows\CbsTemp
2018-07-12 18:42 - 2017-10-01 20:12 - 000000000 ____D C:\Users\Zanterw0w\Desktop\vecicky
2018-07-12 17:32 - 2017-02-24 18:13 - 000000000 ____D C:\Users\Zanterw0w\AppData\Roaming\vlc
2018-07-12 12:56 - 2016-07-16 13:47 - 000000000 ____D C:\Windows\System
2018-07-12 12:50 - 2016-07-16 13:45 - 000000000 ____D C:\Windows\INF
2018-07-11 12:58 - 2017-02-21 15:02 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\Battle.net
2018-07-11 12:58 - 2016-10-26 15:17 - 000000000 ____D C:\Program Files (x86)\Battle.net
2018-07-11 09:41 - 2017-02-21 18:48 - 000000000 ____D C:\Windows\system32\MRT
2018-07-11 09:40 - 2017-02-21 18:48 - 134675576 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2018-07-11 09:40 - 2016-12-03 12:33 - 000004562 _____ C:\Windows\System32\Tasks\Adobe Acrobat Update Task
2018-07-11 09:40 - 2016-12-03 12:33 - 000002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2018-07-06 17:17 - 2018-04-26 18:01 - 000000000 ____D C:\Users\Zanterw0w\Desktop\xoffieN
2018-07-05 20:13 - 2018-06-20 13:06 - 000000000 ____D C:\Users\Zanterw0w\Downloads\Nový priečinok
2018-07-01 17:27 - 2018-05-24 13:01 - 010537960 _____ C:\Windows\system32\Drivers\FACEIT.sys
2018-07-01 12:30 - 2016-10-26 14:09 - 000000000 ____D C:\ProgramData\Intel
2018-07-01 12:29 - 2016-10-26 14:09 - 000000000 ____D C:\Program Files (x86)\Intel
2018-06-29 14:47 - 2016-10-26 13:20 - 000814800 _____ C:\Windows\system32\FNTCACHE.DAT
2018-06-29 10:30 - 2016-10-26 17:58 - 000000000 ____D C:\Windows\SysWOW64\directx
2018-06-27 18:20 - 2017-02-21 14:09 - 000000000 ____D C:\Users\Zanterw0w\AppData\Local\NVIDIA
2018-06-27 12:10 - 2018-02-09 14:23 - 000131288 _____ (Microsoft Corporation) C:\Windows\system32\osrss.dll
2018-06-27 09:28 - 2016-10-26 14:25 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2018-06-27 09:27 - 2018-05-25 12:57 - 000000000 ____D C:\Program Files (x86)\VulkanRT
2018-06-26 18:14 - 2018-05-23 19:01 - 000000000 ____D C:\Program Files\FACEIT AC
2018-06-26 14:59 - 2018-02-21 17:13 - 000000000 ____D C:\Windows\system32\Drivers\wd
2018-06-26 08:21 - 2016-10-26 15:00 - 000002313 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-06-26 08:21 - 2016-10-26 15:00 - 000002272 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-06-25 19:24 - 2016-10-26 14:23 - 004856232 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2018-06-24 19:27 - 2016-10-26 14:23 - 000044271 _____ C:\Windows\system32\nvinfo.pb
2018-06-24 17:39 - 2017-12-22 10:04 - 000001951 _____ C:\Windows\NvContainerRecovery.bat
2018-06-24 17:31 - 2016-10-26 14:25 - 005947520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2018-06-24 17:31 - 2016-10-26 14:25 - 002612624 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2018-06-24 17:31 - 2016-10-26 14:25 - 001767360 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2018-06-24 17:31 - 2016-10-26 14:25 - 000633792 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2018-06-24 17:31 - 2016-10-26 14:25 - 000451144 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2018-06-24 17:31 - 2016-10-26 14:25 - 000124200 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2018-06-24 17:31 - 2016-10-26 14:25 - 000083424 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2018-06-23 22:05 - 2018-01-15 19:33 - 000000000 ____D C:\Users\Zanterw0w\AppData\Roaming\EasyAntiCheat
2018-06-23 11:25 - 2016-07-16 13:47 - 000000000 __SHD C:\Users\Public\Libraries
==================== Files in the root of some directories =======
2017-07-22 19:29 - 2017-11-19 15:01 - 000000112 _____ () C:\Users\Zanterw0w\AppData\Roaming\JP2K CS6 Prefs
2017-02-24 18:20 - 2018-07-17 15:32 - 000034111 _____ () C:\Users\Zanterw0w\AppData\Roaming\VoiceMeeterDefault.xml
2017-02-21 15:17 - 2018-05-08 20:23 - 000007601 _____ () C:\Users\Zanterw0w\AppData\Local\Resmon.ResmonCfg
2018-06-02 22:24 - 2018-06-02 22:36 - 000000059 _____ () C:\Users\Zanterw0w\AppData\Local\UserProducts.xml
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2018-07-17 08:56
==================== End of FRST.txt ============================
doska: ASUS B150 PRE GAMING
ram: Kingston 16 GB DDR4 2133 MHz CL14 HyperX Fury Black Series
Graf.karta: ASUS TURBO GTX 1060 6 GB GDDR5
SSD: KINGSTON SSDNow UV400 240GB
disk: Seagate Barracuda 1TB
Procesor: Intel Core i5-6400 2,7 GHz
chladič: Cooler Master Hyper TX3i alebo Cooler Master Hyper 103
zdroj: Corsair VS450
bedna: Zalman Z1 Neo
ram: Kingston 16 GB DDR4 2133 MHz CL14 HyperX Fury Black Series
Graf.karta: ASUS TURBO GTX 1060 6 GB GDDR5
SSD: KINGSTON SSDNow UV400 240GB
disk: Seagate Barracuda 1TB
Procesor: Intel Core i5-6400 2,7 GHz
chladič: Cooler Master Hyper TX3i alebo Cooler Master Hyper 103
zdroj: Corsair VS450
bedna: Zalman Z1 Neo
Re: Prosím o kontrolu logu
Addition cast 1 po ==================== Event log errors: ========================= ma to moc znakov
----
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21.07.2018
Ran by Zanterw0w (21-07-2018 20:13:01)
Running from C:\Users\Zanterw0w\Desktop
Windows 10 Home Version 1607 14393.2189 (X64) (2017-02-21 12:08:12)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-465800105-2052830454-3610181450-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-465800105-2052830454-3610181450-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-465800105-2052830454-3610181450-1000 - Limited - Disabled) => C:\Users\defaultuser0
Guest (S-1-5-21-465800105-2052830454-3610181450-501 - Limited - Disabled)
Zanterw0w (S-1-5-21-465800105-2052830454-3610181450-1001 - Administrator - Enabled) => C:\Users\Zanterw0w
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Acrobat Reader DC (2015) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AE0F06755100}) (Version: 15.006.30434 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.9.5.353 - Adobe Systems Incorporated)
Adobe Photoshop CC 2017 (HKLM-x32\...\PHSP_18_0_1) (Version: 18.0.1 - Adobe Systems Incorporated)
Aktualizácie NVIDIA 31.2.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 31.2.0.0 - NVIDIA Corporation) Hidden
Audacity 2.1.3 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.3 - Audacity Team)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.7.6321 - CDBurnerXP)
CPUID HWMonitor 1.35 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.35 - CPUID, Inc.)
Discord (HKU\S-1-5-21-465800105-2052830454-3610181450-1001\...\Discord) (Version: 0.0.301 - Discord Inc.)
DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 398.36 - NVIDIA Corporation) Hidden
Epic Games Launcher (HKLM-x32\...\{9F55B4DA-23ED-44FA-910E-BDDBD6D942CF}) (Version: 1.1.123.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
ESEA Client (HKU\S-1-5-21-465800105-2052830454-3610181450-1001\...\ESEA) (Version: 5.0.0.0 - E-Sports Entertainment LLC)
FACEIT AC version 1.0 (HKLM\...\{1419E44C-0EF4-4822-9194-9F1A4D43973D}_is1) (Version: 1.0 - FACEIT LTD)
GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 67.0.3396.99 - Spoločnosť Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
GS Auto Clicker (HKLM-x32\...\GS Auto Clicker_is1) (Version: V3.1.2 - goldensoft.org)
HiPatch (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000}) (Version: 5.0.9.6 - Hi-Rez Studios)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.6.1194 - Intel Corporation)
Intel(R) Network Connections 20.7.67.0 (HKLM\...\PROSetDX) (Version: 20.7.67.0 - Intel)
Intel® Chipset Device Software (HKLM-x32\...\{c7f54569-0018-439c-809a-48046a4d4ebc}) (Version: 10.1.1.9 - Intel(R) Corporation) Hidden
Intel® Security Assist (HKLM-x32\...\{B294CE94-FE0F-4427-910C-180AF9FCFED1}) (Version: 1.0.1.620 - Intel Corporation)
Java 8 Update 171 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180171F0}) (Version: 8.0.1710.11 - Oracle Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-465800105-2052830454-3610181450-1001\...\OneDriveSetup.exe) (Version: 17.3.6917.0607 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{756E195A-CB58-4B99-917F-0DDA0D881204}) (Version: 1.0.4.0 - Mojang)
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.4.2 - Notepad++ Team)
NVIDIA 3D Vision radič ovládača 390.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.14.0.139 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.14.0.139 - NVIDIA Corporation)
NVIDIA Grafický ovládač 398.36 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 398.36 - NVIDIA Corporation)
NVIDIA Ovládač 3D Vision 398.36 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 398.36 - NVIDIA Corporation)
NVIDIA Ovládač zvuku HD 1.3.37.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.37.4 - NVIDIA Corporation)
NVIDIA Softvér systému s podporou technológie PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 20.1.3 - OBS Project)
Ovládací panel NVIDIA 398.36 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 398.36 - NVIDIA Corporation) Hidden
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.20.17.413 - Razer Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7910 - Realtek Semiconductor Corp.)
Spotify (HKU\S-1-5-21-465800105-2052830454-3610181450-1001\...\Spotify) (Version: 1.0.75.483.g7ff4a0dc - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
StreamLabels 0.2.8 (only current user) (HKU\S-1-5-21-465800105-2052830454-3610181450-1001\...\8000d50a-fcb7-5b38-8a3b-a02a0ec79daa) (Version: 0.2.8 - Streamlabs)
Streamlabs Chatbot version 1.0.2.48 (HKLM-x32\...\{08D3C5BB-C492-4916-B111-725081845380}_is1) (Version: 1.0.2.48 - Streamlabs)
Streamlabs OBS 0.9.5 (HKLM\...\029c4619-0385-5543-9426-46f9987161d9) (Version: 0.9.5 - General Workings, Inc.)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
Toastify (HKLM-x32\...\Toastify) (Version: 1.6 - Jesper Palm)
Unigine Valley Benchmark version 1.0 (HKLM-x32\...\Unigine Valley Benchmark_is1) (Version: 1.0 - Unigine Corp.)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{5009B7EE-8A15-4A23-B404-15E31D02DA67}) (Version: 2.43.0.0 - Microsoft Corporation)
UpdateAssistant (HKLM\...\{57D07AAD-97E2-4E16-89C4-1A3C51BC9C98}) (Version: 1.16.0.0 - Microsoft Corporation) Hidden
UpdateAssistant (HKLM\...\{A7B60FC9-A750-43C7-B7EC-892CD09147C7}) (Version: 1.18.0.0 - Microsoft Corporation) Hidden
Uplay (HKLM-x32\...\Uplay) (Version: 27.0 - Ubisoft)
VEGAS Pro 15.0 (HKLM\...\{E0F91FB0-7FC4-11E7-B8E9-95BE57594EAC}) (Version: 15.0.177 - VEGAS)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Voicemeeter, The Virtual Mixing Console (HKLM-x32\...\VB:Voicemeeter {17359A74-1236-5467}) (Version: - VB-Audio Software)
WebM Project Directshow Filters (HKU\S-1-5-21-465800105-2052830454-3610181450-1001\...\webmdshow) (Version: - )
Windows 10 Update and Privacy Settings (HKLM\...\{4DFCD818-036A-4229-A67D-CF17DC461D92}) (Version: 1.0.14.0 - Microsoft Corporation)
Windows Setup Remediations (x64) (KB4023057) (HKLM\...\{5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb) (Version: - )
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
HKU\S-1-5-21-465800105-2052830454-3610181450-1001\...\ChromeHTML: -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-CB25C62E5A68}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{9AA2F32D-362A-42D9-9328-24A483E2CCC3}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncApi64.dll => No File
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] ()
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] ()
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2017-06-18] ()
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2018-06-24] (NVIDIA Corporation)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] ()
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-465800105-2052830454-3610181450-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ContextMenuHandlers4_S-1-5-21-465800105-2052830454-3610181450-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ContextMenuHandlers5_S-1-5-21-465800105-2052830454-3610181450-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0737BBDE-0157-411B-B8FD-A1AD767D1072} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-26] (Google Inc.)
Task: {104FEFD9-DC74-4124-BB40-C89E5635EA97} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-05-20] (NVIDIA Corporation)
Task: {1519DC81-0571-41F0-9AF9-9EB92FF71CAC} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-05-20] (NVIDIA Corporation)
Task: {28692BDC-1A21-419C-B8EE-FABE076D7AF0} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2018-05-20] (NVIDIA Corporation)
Task: {30A34313-5B86-4595-BEA8-9106AD981D53} - System32\Tasks\CAM => C:\Program Files (x86)\NZXT\CAM\CAM_V3.exe
Task: {3257AD8C-DB6E-4508-B912-EA4CE27409F1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MpCmdRun.exe [2018-06-26] (Microsoft Corporation)
Task: {33AA26AE-65BC-4927-831B-DA0BECE56DC7} - System32\Tasks\AdobeGCInvoker-1.0-DESKTOP-ONLULOH-Zanterw0w => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2018-05-11] (Adobe Systems, Incorporated)
Task: {3C835EF7-E3AD-4731-822B-48554C017E9C} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-05-20] (NVIDIA Corporation)
Task: {4146535B-F89B-429A-9C1E-D182AECE8F0D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MpCmdRun.exe [2018-06-26] (Microsoft Corporation)
Task: {47848E7E-775D-410B-A730-7E5817B89D14} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-26] (Google Inc.)
Task: {52A4332F-2CB2-4542-8BE7-821FCAB11EAE} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2018-05-20] (NVIDIA Corporation)
Task: {7FCA7551-1E35-4744-AB44-143DE24D5E24} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MpCmdRun.exe [2018-06-26] (Microsoft Corporation)
Task: {8819FC09-5CCA-4C92-A106-7ECEEFFF1052} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-05-20] (NVIDIA Corporation)
Task: {95FBB501-A66E-4341-BA68-00B968534874} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-05-20] (NVIDIA Corporation)
Task: {973C9EF9-3E33-487C-B153-6D613556B333} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-05-20] (NVIDIA Corporation)
Task: {CAE8802C-9F53-4F7C-ACA0-D1F876096D85} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MpCmdRun.exe [2018-06-26] (Microsoft Corporation)
Task: {EDFEB5D1-4A59-4BD2-B545-AA5CD23235EE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-03-21] (Adobe Systems Incorporated)
Task: {EE1154BE-C663-4CF5-84FE-5BBA5E924445} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2016-02-19] (Intel(R) Corporation)
Task: {F6B4B64E-51E6-4A2E-9A37-A33A490F10F3} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-05-20] (NVIDIA Corporation)
Task: {FA6CFE39-9F3F-4592-B4CC-97A2E633C430} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-05-20] (NVIDIA Corporation)
Task: {FC799027-C647-4BA6-85D6-9EE0F849F8F3} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-05-20] (NVIDIA Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Zanterw0w\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\TwitchAlerts Stream Labels.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=kgmggmdngboajiakmbpdknfpdelbjbcg
==================== Loaded Modules (Whitelisted) ==============
2016-09-25 01:20 - 2016-09-25 01:21 - 000189264 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
2018-05-25 12:48 - 2018-05-20 19:36 - 001315296 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-07-16 13:42 - 2016-07-16 13:42 - 000231424 _____ () C:\Windows\SYSTEM32\ism32k.dll
2018-04-11 11:39 - 2018-03-22 05:45 - 002681712 _____ () C:\Windows\System32\CoreUIComponents.dll
2016-10-26 14:25 - 2018-06-24 17:31 - 000138128 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-10-25 10:57 - 2016-10-25 10:57 - 000491184 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll
2017-06-18 23:44 - 2017-06-18 23:44 - 000230064 _____ () C:\Program Files\Notepad++\NppShell_06.dll
2017-02-21 18:44 - 2016-09-07 06:56 - 000134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2017-03-15 09:10 - 2017-03-04 08:31 - 000474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2018-04-11 11:39 - 2018-03-22 04:56 - 000693248 _____ () C:\Windows\ShellExperiences\MtcUvc.dll
2018-04-11 11:39 - 2018-03-22 05:06 - 009761280 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2018-04-11 11:39 - 2018-03-22 04:51 - 001402368 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2018-04-11 11:39 - 2018-03-22 04:50 - 000757760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2018-04-11 11:39 - 2018-03-22 04:51 - 002424832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2018-04-11 11:39 - 2018-03-22 04:54 - 004854272 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-10-25 10:57 - 2016-10-25 10:57 - 031723696 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
2018-06-26 08:23 - 2018-06-26 08:23 - 027126784 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
2018-06-26 08:23 - 2018-06-26 08:23 - 000306176 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\SharedUI.dll
2018-06-26 08:23 - 2018-06-26 08:23 - 006735872 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntCommon.dll
2017-09-26 07:04 - 2017-09-26 07:05 - 003553704 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2018-06-07 06:13 - 2018-06-07 06:13 - 000020480 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2018-06-07 06:13 - 2018-06-07 06:13 - 028993536 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2017-08-08 14:52 - 2017-08-08 14:52 - 000428032 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\Microsoft.Photos.AGM.Native.Windows.dll
2018-06-07 06:13 - 2018-06-07 06:13 - 020113920 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\PhotosApp.Windows.dll
2017-08-08 14:52 - 2017-08-08 14:52 - 002339328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\MediaEngine.dll
2018-06-07 06:13 - 2018-06-07 06:13 - 002970624 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\AppCore.Windows.dll
2017-06-08 06:47 - 2017-06-08 06:47 - 003139496 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2017-06-15 14:43 - 2017-06-15 14:43 - 000046080 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\Microsoft.Photos.Edit.Services.dll
2017-08-08 14:52 - 2017-08-08 14:52 - 001361920 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\Microsoft.RichMedia.Ink.Controls.dll
2017-05-23 07:13 - 2017-05-23 07:13 - 003918848 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1705.1301.1000_x64__8wekyb3d8bbwe\Calculator.exe
2018-06-26 08:21 - 2018-06-22 21:15 - 002663768 _____ () C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.99\swiftshader\libglesv2.dll
2018-06-26 08:21 - 2018-06-22 21:15 - 000128856 _____ () C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.99\swiftshader\libegl.dll
2016-05-25 22:52 - 2016-05-25 22:52 - 001243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2018-05-25 12:48 - 2018-05-20 19:36 - 001033184 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-10-26 15:08 - 2018-06-08 23:38 - 000788256 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2016-10-26 15:08 - 2018-06-08 23:42 - 004969248 _____ () C:\Program Files (x86)\Steam\v8.dll
2016-10-26 15:08 - 2018-06-09 01:39 - 002632992 _____ () C:\Program Files (x86)\Steam\video.dll
2017-12-14 15:56 - 2018-06-08 23:40 - 005137696 _____ () C:\Program Files (x86)\Steam\libavcodec-57.dll
2017-12-14 15:56 - 2018-06-08 23:40 - 000695584 _____ () C:\Program Files (x86)\Steam\libavformat-57.dll
2017-12-14 15:56 - 2018-06-08 23:40 - 000351520 _____ () C:\Program Files (x86)\Steam\libavresample-3.dll
2017-12-14 15:56 - 2018-06-08 23:40 - 000783648 _____ () C:\Program Files (x86)\Steam\libswscale-4.dll
2017-12-14 15:56 - 2018-06-08 23:40 - 000847136 _____ () C:\Program Files (x86)\Steam\libavutil-55.dll
2016-10-26 15:08 - 2018-06-08 23:40 - 001563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2016-10-26 15:08 - 2018-06-08 23:40 - 001195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2016-10-26 15:08 - 2018-06-09 01:38 - 000979744 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2016-10-26 15:08 - 2018-06-08 23:40 - 000266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2017-01-16 13:40 - 2017-01-16 13:40 - 000143824 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll
2017-06-09 22:41 - 2018-06-08 23:39 - 000788256 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\SDL2.dll
2017-02-21 14:19 - 2018-06-08 23:39 - 083524384 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll
2016-10-26 15:08 - 2018-06-08 23:42 - 000119208 _____ () C:\Program Files (x86)\Steam\winh264.dll
2016-12-02 02:54 - 2016-12-02 02:54 - 000118272 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\fs-ext\build\Release\fs-ext.node
2016-12-02 02:54 - 2016-12-02 02:54 - 000223232 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node
2016-12-02 02:54 - 2016-12-02 02:54 - 000117248 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ref\build\Release\binding.node
2016-12-02 02:54 - 2016-12-02 02:54 - 000124928 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ffi\build\Release\ffi_bindings.node
2016-12-09 16:09 - 2016-12-09 16:09 - 000099416 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-ProxyResolver\build\Release\ProxyResolverWin.dll
2016-12-02 02:54 - 2016-12-02 02:54 - 000086528 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\idle-gc\build\Release\idle-gc.node
2017-07-11 14:58 - 2018-06-08 23:39 - 002253600 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\swiftshader\libglesv2.dll
2017-07-11 14:58 - 2018-06-08 23:39 - 000109856 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\swiftshader\libegl.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Users\Public\AppData:CSM [480]
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2016-07-16 13:47 - 2018-07-17 19:58 - 000000813 _____ C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-465800105-2052830454-3610181450-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Zanterw0w\Desktop\xoffieN\Plocha - Pozadia\Fortnite Raven.png
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
MSCONFIG\Services: wuauserv => 3
HKLM\...\StartupApproved\StartupFolder: => "SteelSeries Engine 3.lnk"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{D2EABD15-7766-4B71-9909-F98521248F88}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{568C0749-5B94-4A06-8352-8524D988AF71}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{951188E2-D15E-4EBA-85CD-D2F311BA75A4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{104ED6A9-4A3D-4634-9002-260C952FC73E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{FD9DF319-51A5-4997-A040-A7F0C130D7E6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{36E834E6-6231-4DF9-B6EE-B6DA3B799778}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{1A2B3570-7850-4D92-B619-F9500A2E19C2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{27C24502-2278-408A-ADDE-37EB443859BC}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{EC181E8B-2AC0-4E6C-BDC9-68184D772AE3}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{3C3648BC-0094-4CF5-AD6D-D1ABB70D23F8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
FirewallRules: [{7FA90A18-28FE-4226-BE69-308DC52596D1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
FirewallRules: [TCP Query User{ED54214F-6D33-4934-9CE2-54D976BB322E}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [UDP Query User{7A3BA6F4-36FF-4EA4-A1C4-61BC65525FD5}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [TCP Query User{19D9EFDF-6153-4958-83C0-A81525D30E70}D:\twitch deep bot\deepbot.exe] => (Allow) D:\twitch deep bot\deepbot.exe
FirewallRules: [UDP Query User{15B43089-3CF8-424A-91AA-46653F856D8D}D:\twitch deep bot\deepbot.exe] => (Allow) D:\twitch deep bot\deepbot.exe
FirewallRules: [TCP Query User{17DA5D2A-EC77-4C48-ACD2-BDDAA774357A}C:\users\zanterw0w\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\zanterw0w\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{A94E1B42-BDC5-48AE-845C-6C728B7EA2EC}C:\users\zanterw0w\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\zanterw0w\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{B9034E6A-8CD1-4398-8392-8D2DF67095DA}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [UDP Query User{F03913BA-7FD2-4A5F-A76B-A0DC98119168}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [{FFDFE337-7163-418B-8310-655F4A09F22B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{22E2886E-FF0F-4174-8A82-7D2C13507CF8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [TCP Query User{D9F04051-80AE-45DF-9C8F-06CC1203F18C}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [UDP Query User{2EC8644E-0C4B-4D0A-9FEF-CA9FDF266203}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [TCP Query User{5977B34A-ECAC-4C0F-9F75-8156911102F6}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{74F95F22-5204-4E94-8D98-5282A2660C66}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [TCP Query User{6264BA2A-545C-4385-AC06-1CB376F47C3E}D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{030C92BE-3643-4A11-93A6-F01F9C33B8BD}D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [TCP Query User{98D3C94E-64CF-4C51-ABA6-FFEEEA36DC92}C:\users\zanterw0w\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\zanterw0w\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{4C7C7336-A065-472A-9A53-BB1C118E8FBF}C:\users\zanterw0w\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\zanterw0w\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{7EE819D8-166F-4A40-8D2A-4D205C4DBD36}C:\users\zanterw0w\desktop\marinermt2.pl-10.04.2017\marinermt2.exe] => (Allow) C:\users\zanterw0w\desktop\marinermt2.pl-10.04.2017\marinermt2.exe
FirewallRules: [UDP Query User{BF276113-4E65-46D4-8B52-8050692EE06B}C:\users\zanterw0w\desktop\marinermt2.pl-10.04.2017\marinermt2.exe] => (Allow) C:\users\zanterw0w\desktop\marinermt2.pl-10.04.2017\marinermt2.exe
FirewallRules: [TCP Query User{62BD12BA-F36C-485A-9956-E894665E6394}C:\program files (x86)\heroes of the storm\versions\base56361\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base56361\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{D448751F-E83B-48AF-A03A-C67ECD645C05}C:\program files (x86)\heroes of the storm\versions\base56361\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base56361\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{6CF6A0B5-1674-4290-A930-78F6A2C8B2C7}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [UDP Query User{EFE14625-8FB6-4263-BED9-D86483236940}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [TCP Query User{760D3CA5-DFF6-4601-B6F6-5402D916A1DA}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [UDP Query User{0A03F5FA-E960-4916-9287-695B2421A147}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [TCP Query User{3EB1E322-CFAA-47B9-B747-CCFDD6B082C3}C:\program files (x86)\java\jre1.8.0_144\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_144\bin\javaw.exe
FirewallRules: [UDP Query User{7E1EAFBD-0D8C-460B-8B96-013F3BB720C3}C:\program files (x86)\java\jre1.8.0_144\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_144\bin\javaw.exe
FirewallRules: [TCP Query User{377E3230-D47A-4AFC-B7A6-0C278E0EF050}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [UDP Query User{AAA9602D-9650-4BF7-A3CE-C980584DD2C1}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [TCP Query User{1A9DEF1D-6D82-47D3-BB4F-A961808D5329}C:\program files\faceit\faceit.exe] => (Allow) C:\program files\faceit\faceit.exe
FirewallRules: [UDP Query User{62DA2352-31FE-4636-BC4E-E38A42CEEF67}C:\program files\faceit\faceit.exe] => (Allow) C:\program files\faceit\faceit.exe
FirewallRules: [{D1AEBD7C-148F-44FF-96EF-B72EAECD633C}] => (Allow) D:\SteamLibrary\steamapps\common\Black Squad\binaries\win32\BlackSquadGame.exe
FirewallRules: [{CA6C812D-5A16-488B-806C-00E253AC2213}] => (Allow) D:\SteamLibrary\steamapps\common\Black Squad\binaries\win32\BlackSquadGame.exe
FirewallRules: [TCP Query User{F8E971CA-4427-4288-B5D6-2FECFCB1442F}D:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) D:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [UDP Query User{AFD3BCD7-94B5-49FD-8F4C-9547F8761576}D:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) D:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [TCP Query User{2EC54019-5363-4876-90FF-7E7DDD96A4EF}D:\steamlibrary\steamapps\common\h1z1 king of the kill test server\h1z1.exe] => (Allow) D:\steamlibrary\steamapps\common\h1z1 king of the kill test server\h1z1.exe
FirewallRules: [UDP Query User{855836F8-1B6A-4810-BF00-D5BFC4D21C4E}D:\steamlibrary\steamapps\common\h1z1 king of the kill test server\h1z1.exe] => (Allow) D:\steamlibrary\steamapps\common\h1z1 king of the kill test server\h1z1.exe
FirewallRules: [{1B2B19C5-CA54-43E1-A633-805EF382BB15}] => (Allow) D:\SteamLibrary\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{10C356E8-DC7E-4F74-836B-137019FF1409}] => (Allow) D:\SteamLibrary\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{722B15E6-8893-46F1-A0C8-B5484169F940}] => (Allow) C:\Users\Zanterw0w\AppData\Roaming\AnkhHeart\AnkhBotR2\Streamlabs Chatbot.exe
FirewallRules: [{4A74CA0C-3FD3-47C3-A3D4-9A258E33A869}] => (Allow) C:\Users\Zanterw0w\AppData\Roaming\AnkhHeart\AnkhBotR2\Streamlabs Chatbot.exe
FirewallRules: [{F4260632-9839-4AAA-8D7C-60C8F5349174}] => (Allow) C:\Users\Zanterw0w\AppData\Roaming\AnkhHeart\AnkhBotR2\Streamlabs Chatbot.exe
FirewallRules: [{CC4800D8-B529-464C-8BDC-D092B97F3996}] => (Allow) C:\Users\Zanterw0w\AppData\Roaming\AnkhHeart\AnkhBotR2\Streamlabs Chatbot.exe
FirewallRules: [{12EBBC7D-57A6-4E5F-B8E4-04E9DF2C3CC4}] => (Allow) C:\Users\Zanterw0w\AppData\Roaming\AnkhHeart\AnkhBotR2\Streamlabs Chatbot.exe
FirewallRules: [{D9C0DDBB-586B-4435-AC9B-186A24D9BA99}] => (Allow) C:\Users\Zanterw0w\AppData\Roaming\AnkhHeart\AnkhBotR2\Streamlabs Chatbot.exe
FirewallRules: [{DA015323-02D2-4A78-AF67-D80D88733565}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{8AA369F7-6E86-4BBA-A04F-8A982AFAAFF4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{8ADD3AF0-2D65-4283-96F4-40C81BF689CB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{378E2144-3C9F-4F92-8E12-70A13B1EA81D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{BEE7DEED-7762-4A07-9BBC-E1A8A2355FC9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{CFB5A036-BE40-4C1B-9BCE-670F42755134}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [TCP Query User{FD319D96-A9D3-4AE4-9D5D-B6362C3BA5FE}D:\steamlibrary\steamapps\common\h1z1\h1z1.exe] => (Allow) D:\steamlibrary\steamapps\common\h1z1\h1z1.exe
FirewallRules: [UDP Query User{810D13FB-6C0C-4C8D-9207-E09B1B1982FF}D:\steamlibrary\steamapps\common\h1z1\h1z1.exe] => (Allow) D:\steamlibrary\steamapps\common\h1z1\h1z1.exe
FirewallRules: [{7C49D086-B057-4EFD-9D2C-2574E9444810}] => (Allow) D:\SteamLibrary\steamapps\common\Realm Royale\Binaries\Win64\RealmEAC.exe
FirewallRules: [{F07D3991-084D-452C-9ED5-C547F0B66DBD}] => (Allow) D:\SteamLibrary\steamapps\common\Realm Royale\Binaries\Win64\RealmEAC.exe
FirewallRules: [TCP Query User{A2A2041B-4081-4F1B-844E-E7BA126BD1E7}D:\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) D:\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe
FirewallRules: [UDP Query User{9E44D1C2-924F-4A13-A694-B969711296E9}D:\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) D:\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe
FirewallRules: [{4E2DAD76-3C58-4522-9E63-B0F9F21C6384}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{2FCA0CCD-E1AC-4D6C-A25A-2B096538488C}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.153\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.153\deploy\leagueclient.exe
FirewallRules: [UDP Query User{84CD8296-E26B-4350-8B5E-9119344BB836}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.153\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.153\deploy\leagueclient.exe
FirewallRules: [TCP Query User{2ACED75D-DB81-43EB-8A11-D0BADB311783}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.154\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.154\deploy\leagueclient.exe
FirewallRules: [UDP Query User{17426602-051F-4178-89D2-C9589B9AF94F}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.154\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.154\deploy\leagueclient.exe
FirewallRules: [{27F5229F-DEBC-46AE-B025-6D0896C92E1A}] => (Allow) LPort=9143
FirewallRules: [{313FE626-C5B0-44A4-B2DB-4F3BF5075E69}] => (Allow) LPort=2333
FirewallRules: [TCP Query User{4BA492A6-8067-46A0-9219-8C25A503C470}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe
FirewallRules: [UDP Query User{BA88A3EB-CC21-43D8-8018-6BEE490073EE}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe
==================== Restore Points =========================
19-07-2018 13:51:42 Scheduled Checkpoint
20-07-2018 17:56:47 Installed Minecraft
==================== Faulty Device Manager Devices =============
----
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21.07.2018
Ran by Zanterw0w (21-07-2018 20:13:01)
Running from C:\Users\Zanterw0w\Desktop
Windows 10 Home Version 1607 14393.2189 (X64) (2017-02-21 12:08:12)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
Administrator (S-1-5-21-465800105-2052830454-3610181450-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-465800105-2052830454-3610181450-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-465800105-2052830454-3610181450-1000 - Limited - Disabled) => C:\Users\defaultuser0
Guest (S-1-5-21-465800105-2052830454-3610181450-501 - Limited - Disabled)
Zanterw0w (S-1-5-21-465800105-2052830454-3610181450-1001 - Administrator - Enabled) => C:\Users\Zanterw0w
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Acrobat Reader DC (2015) MUI (HKLM-x32\...\{AC76BA86-7AD7-FFFF-7B44-AE0F06755100}) (Version: 15.006.30434 - Adobe Systems Incorporated)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 3.9.5.353 - Adobe Systems Incorporated)
Adobe Photoshop CC 2017 (HKLM-x32\...\PHSP_18_0_1) (Version: 18.0.1 - Adobe Systems Incorporated)
Aktualizácie NVIDIA 31.2.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 31.2.0.0 - NVIDIA Corporation) Hidden
Audacity 2.1.3 (HKLM-x32\...\Audacity®_is1) (Version: 2.1.3 - Audacity Team)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.7.6321 - CDBurnerXP)
CPUID HWMonitor 1.35 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.35 - CPUID, Inc.)
Discord (HKU\S-1-5-21-465800105-2052830454-3610181450-1001\...\Discord) (Version: 0.0.301 - Discord Inc.)
DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 398.36 - NVIDIA Corporation) Hidden
Epic Games Launcher (HKLM-x32\...\{9F55B4DA-23ED-44FA-910E-BDDBD6D942CF}) (Version: 1.1.123.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
ESEA Client (HKU\S-1-5-21-465800105-2052830454-3610181450-1001\...\ESEA) (Version: 5.0.0.0 - E-Sports Entertainment LLC)
FACEIT AC version 1.0 (HKLM\...\{1419E44C-0EF4-4822-9194-9F1A4D43973D}_is1) (Version: 1.0 - FACEIT LTD)
GOG Galaxy (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: - GOG.com)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 67.0.3396.99 - Spoločnosť Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
GS Auto Clicker (HKLM-x32\...\GS Auto Clicker_is1) (Version: V3.1.2 - goldensoft.org)
HiPatch (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF000}) (Version: 5.0.9.6 - Hi-Rez Studios)
Hi-Rez Studios Authenticate and Update Service (HKLM-x32\...\{3C87E0FF-BC0A-4F5E-951B-68DC3F8DF1FC}) (Version: 3.0.0.0 - Hi-Rez Studios)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.6.1194 - Intel Corporation)
Intel(R) Network Connections 20.7.67.0 (HKLM\...\PROSetDX) (Version: 20.7.67.0 - Intel)
Intel® Chipset Device Software (HKLM-x32\...\{c7f54569-0018-439c-809a-48046a4d4ebc}) (Version: 10.1.1.9 - Intel(R) Corporation) Hidden
Intel® Security Assist (HKLM-x32\...\{B294CE94-FE0F-4427-910C-180AF9FCFED1}) (Version: 1.0.1.620 - Intel Corporation)
Java 8 Update 171 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180171F0}) (Version: 8.0.1710.11 - Oracle Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4454.1510 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-465800105-2052830454-3610181450-1001\...\OneDriveSetup.exe) (Version: 17.3.6917.0607 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{071c9b48-7c32-4621-a0ac-3f809523288f}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x64) - 14.10.25008 (HKLM-x32\...\{f1e7e313-06df-4c56-96a9-99fdfd149c51}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft Visual C++ 2017 Redistributable (x86) - 14.10.25008 (HKLM-x32\...\{c239cea1-d49e-4e16-8e87-8c055765f7ec}) (Version: 14.10.25008.0 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 (HKLM-x32\...\{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}) (Version: 4.0.20823.0 - Microsoft Corporation)
Minecraft (HKLM-x32\...\{756E195A-CB58-4B99-917F-0DDA0D881204}) (Version: 1.0.4.0 - Mojang)
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 7.4.2 - Notepad++ Team)
NVIDIA 3D Vision radič ovládača 390.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.14.0.139 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.14.0.139 - NVIDIA Corporation)
NVIDIA Grafický ovládač 398.36 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 398.36 - NVIDIA Corporation)
NVIDIA Ovládač 3D Vision 398.36 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 398.36 - NVIDIA Corporation)
NVIDIA Ovládač zvuku HD 1.3.37.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.37.4 - NVIDIA Corporation)
NVIDIA Softvér systému s podporou technológie PhysX 9.17.0524 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.17.0524 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 20.1.3 - OBS Project)
Ovládací panel NVIDIA 398.36 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 398.36 - NVIDIA Corporation) Hidden
Razer Synapse (HKLM-x32\...\{0D78BEE2-F8FF-4498-AF1A-3FF81CED8AC6}) (Version: 2.20.17.413 - Razer Inc.)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7910 - Realtek Semiconductor Corp.)
Spotify (HKU\S-1-5-21-465800105-2052830454-3610181450-1001\...\Spotify) (Version: 1.0.75.483.g7ff4a0dc - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
StreamLabels 0.2.8 (only current user) (HKU\S-1-5-21-465800105-2052830454-3610181450-1001\...\8000d50a-fcb7-5b38-8a3b-a02a0ec79daa) (Version: 0.2.8 - Streamlabs)
Streamlabs Chatbot version 1.0.2.48 (HKLM-x32\...\{08D3C5BB-C492-4916-B111-725081845380}_is1) (Version: 1.0.2.48 - Streamlabs)
Streamlabs OBS 0.9.5 (HKLM\...\029c4619-0385-5543-9426-46f9987161d9) (Version: 0.9.5 - General Workings, Inc.)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
Toastify (HKLM-x32\...\Toastify) (Version: 1.6 - Jesper Palm)
Unigine Valley Benchmark version 1.0 (HKLM-x32\...\Unigine Valley Benchmark_is1) (Version: 1.0 - Unigine Corp.)
Update for Windows 10 for x64-based Systems (KB4023057) (HKLM\...\{5009B7EE-8A15-4A23-B404-15E31D02DA67}) (Version: 2.43.0.0 - Microsoft Corporation)
UpdateAssistant (HKLM\...\{57D07AAD-97E2-4E16-89C4-1A3C51BC9C98}) (Version: 1.16.0.0 - Microsoft Corporation) Hidden
UpdateAssistant (HKLM\...\{A7B60FC9-A750-43C7-B7EC-892CD09147C7}) (Version: 1.18.0.0 - Microsoft Corporation) Hidden
Uplay (HKLM-x32\...\Uplay) (Version: 27.0 - Ubisoft)
VEGAS Pro 15.0 (HKLM\...\{E0F91FB0-7FC4-11E7-B8E9-95BE57594EAC}) (Version: 15.0.177 - VEGAS)
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.2.4 - VideoLAN)
Voicemeeter, The Virtual Mixing Console (HKLM-x32\...\VB:Voicemeeter {17359A74-1236-5467}) (Version: - VB-Audio Software)
WebM Project Directshow Filters (HKU\S-1-5-21-465800105-2052830454-3610181450-1001\...\webmdshow) (Version: - )
Windows 10 Update and Privacy Settings (HKLM\...\{4DFCD818-036A-4229-A67D-CF17DC461D92}) (Version: 1.0.14.0 - Microsoft Corporation)
Windows Setup Remediations (x64) (KB4023057) (HKLM\...\{5534e02f-0f5d-40dd-ba92-bea38d22384d}.sdb) (Version: - )
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
Xiph.Org Open Codecs 0.85.17777 (HKLM-x32\...\Open Codecs) (Version: 0.85.17777 - Xiph.Org)
==================== Custom CLSID (Whitelisted): ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
HKU\S-1-5-21-465800105-2052830454-3610181450-1001\...\ChromeHTML: -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.)
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-CB25C62E5A68}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{9AA2F32D-362A-42D9-9328-24A483E2CCC3}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Systems)
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncApi64.dll => No File
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] ()
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] ()
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] ()
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] ()
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2017-06-18] ()
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2018-06-24] (NVIDIA Corporation)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll [2016-10-25] ()
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-15] (Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-465800105-2052830454-3610181450-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ContextMenuHandlers4_S-1-5-21-465800105-2052830454-3610181450-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ContextMenuHandlers5_S-1-5-21-465800105-2052830454-3610181450-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
==================== Scheduled Tasks (Whitelisted) =============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {0737BBDE-0157-411B-B8FD-A1AD767D1072} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-26] (Google Inc.)
Task: {104FEFD9-DC74-4124-BB40-C89E5635EA97} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-05-20] (NVIDIA Corporation)
Task: {1519DC81-0571-41F0-9AF9-9EB92FF71CAC} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-05-20] (NVIDIA Corporation)
Task: {28692BDC-1A21-419C-B8EE-FABE076D7AF0} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2018-05-20] (NVIDIA Corporation)
Task: {30A34313-5B86-4595-BEA8-9106AD981D53} - System32\Tasks\CAM => C:\Program Files (x86)\NZXT\CAM\CAM_V3.exe
Task: {3257AD8C-DB6E-4508-B912-EA4CE27409F1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MpCmdRun.exe [2018-06-26] (Microsoft Corporation)
Task: {33AA26AE-65BC-4927-831B-DA0BECE56DC7} - System32\Tasks\AdobeGCInvoker-1.0-DESKTOP-ONLULOH-Zanterw0w => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [2018-05-11] (Adobe Systems, Incorporated)
Task: {3C835EF7-E3AD-4731-822B-48554C017E9C} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-05-20] (NVIDIA Corporation)
Task: {4146535B-F89B-429A-9C1E-D182AECE8F0D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MpCmdRun.exe [2018-06-26] (Microsoft Corporation)
Task: {47848E7E-775D-410B-A730-7E5817B89D14} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-26] (Google Inc.)
Task: {52A4332F-2CB2-4542-8BE7-821FCAB11EAE} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2018-05-20] (NVIDIA Corporation)
Task: {7FCA7551-1E35-4744-AB44-143DE24D5E24} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MpCmdRun.exe [2018-06-26] (Microsoft Corporation)
Task: {8819FC09-5CCA-4C92-A106-7ECEEFFF1052} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-05-20] (NVIDIA Corporation)
Task: {95FBB501-A66E-4341-BA68-00B968534874} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-05-20] (NVIDIA Corporation)
Task: {973C9EF9-3E33-487C-B153-6D613556B333} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-05-20] (NVIDIA Corporation)
Task: {CAE8802C-9F53-4F7C-ACA0-D1F876096D85} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1806.18062-0\MpCmdRun.exe [2018-06-26] (Microsoft Corporation)
Task: {EDFEB5D1-4A59-4BD2-B545-AA5CD23235EE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2018-03-21] (Adobe Systems Incorporated)
Task: {EE1154BE-C663-4CF5-84FE-5BBA5E924445} - System32\Tasks\Intel PTT EK Recertification => C:\Program Files\Intel\iCLS Client\IntelPTTEKRecertification.exe [2016-02-19] (Intel(R) Corporation)
Task: {F6B4B64E-51E6-4A2E-9A37-A33A490F10F3} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-05-20] (NVIDIA Corporation)
Task: {FA6CFE39-9F3F-4592-B4CC-97A2E633C430} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-05-20] (NVIDIA Corporation)
Task: {FC799027-C647-4BA6-85D6-9EE0F849F8F3} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-05-20] (NVIDIA Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Zanterw0w\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\TwitchAlerts Stream Labels.lnk -> C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google Inc.) -> --profile-directory=Default --app-id=kgmggmdngboajiakmbpdknfpdelbjbcg
==================== Loaded Modules (Whitelisted) ==============
2016-09-25 01:20 - 2016-09-25 01:21 - 000189264 _____ () C:\Program Files (x86)\Razer\Razer Services\GSS\GameScannerService.exe
2018-05-25 12:48 - 2018-05-20 19:36 - 001315296 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-07-16 13:42 - 2016-07-16 13:42 - 000231424 _____ () C:\Windows\SYSTEM32\ism32k.dll
2018-04-11 11:39 - 2018-03-22 05:45 - 002681712 _____ () C:\Windows\System32\CoreUIComponents.dll
2016-10-26 14:25 - 2018-06-24 17:31 - 000138128 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-10-25 10:57 - 2016-10-25 10:57 - 000491184 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSyncExtension\CoreSync_x64.dll
2017-06-18 23:44 - 2017-06-18 23:44 - 000230064 _____ () C:\Program Files\Notepad++\NppShell_06.dll
2017-02-21 18:44 - 2016-09-07 06:56 - 000134656 _____ () C:\Windows\ShellExperiences\Windows.UI.Shell.SharedUtilities.dll
2017-03-15 09:10 - 2017-03-04 08:31 - 000474112 _____ () C:\Windows\ShellExperiences\QuickActions.dll
2018-04-11 11:39 - 2018-03-22 04:56 - 000693248 _____ () C:\Windows\ShellExperiences\MtcUvc.dll
2018-04-11 11:39 - 2018-03-22 05:06 - 009761280 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2018-04-11 11:39 - 2018-03-22 04:51 - 001402368 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2018-04-11 11:39 - 2018-03-22 04:50 - 000757760 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CSGSuggestLib.dll
2018-04-11 11:39 - 2018-03-22 04:51 - 002424832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2018-04-11 11:39 - 2018-03-22 04:54 - 004854272 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-10-25 10:57 - 2016-10-25 10:57 - 031723696 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CoreSync\CoreSync.exe
2018-06-26 08:23 - 2018-06-26 08:23 - 027126784 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Video.UI.exe
2018-06-26 08:23 - 2018-06-26 08:23 - 000306176 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\SharedUI.dll
2018-06-26 08:23 - 2018-06-26 08:23 - 006735872 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\EntCommon.dll
2017-09-26 07:04 - 2017-09-26 07:05 - 003553704 _____ () C:\Program Files\WindowsApps\Microsoft.ZuneVideo_10.18052.10711.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2018-06-07 06:13 - 2018-06-07 06:13 - 000020480 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\Microsoft.Photos.exe
2018-06-07 06:13 - 2018-06-07 06:13 - 028993536 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\Microsoft.Photos.dll
2017-08-08 14:52 - 2017-08-08 14:52 - 000428032 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\Microsoft.Photos.AGM.Native.Windows.dll
2018-06-07 06:13 - 2018-06-07 06:13 - 020113920 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\PhotosApp.Windows.dll
2017-08-08 14:52 - 2017-08-08 14:52 - 002339328 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\MediaEngine.dll
2018-06-07 06:13 - 2018-06-07 06:13 - 002970624 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\AppCore.Windows.dll
2017-06-08 06:47 - 2017-06-08 06:47 - 003139496 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\Microsoft.UI.Xaml.dll
2017-06-15 14:43 - 2017-06-15 14:43 - 000046080 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\Microsoft.Photos.Edit.Services.dll
2017-08-08 14:52 - 2017-08-08 14:52 - 001361920 _____ () C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2017.35063.44410.0_x64__8wekyb3d8bbwe\Microsoft.RichMedia.Ink.Controls.dll
2017-05-23 07:13 - 2017-05-23 07:13 - 003918848 _____ () C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.1705.1301.1000_x64__8wekyb3d8bbwe\Calculator.exe
2018-06-26 08:21 - 2018-06-22 21:15 - 002663768 _____ () C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.99\swiftshader\libglesv2.dll
2018-06-26 08:21 - 2018-06-22 21:15 - 000128856 _____ () C:\Program Files (x86)\Google\Chrome\Application\67.0.3396.99\swiftshader\libegl.dll
2016-05-25 22:52 - 2016-05-25 22:52 - 001243936 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\ACE.dll
2018-05-25 12:48 - 2018-05-20 19:36 - 001033184 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2016-10-26 15:08 - 2018-06-08 23:38 - 000788256 _____ () C:\Program Files (x86)\Steam\SDL2.dll
2016-10-26 15:08 - 2018-06-08 23:42 - 004969248 _____ () C:\Program Files (x86)\Steam\v8.dll
2016-10-26 15:08 - 2018-06-09 01:39 - 002632992 _____ () C:\Program Files (x86)\Steam\video.dll
2017-12-14 15:56 - 2018-06-08 23:40 - 005137696 _____ () C:\Program Files (x86)\Steam\libavcodec-57.dll
2017-12-14 15:56 - 2018-06-08 23:40 - 000695584 _____ () C:\Program Files (x86)\Steam\libavformat-57.dll
2017-12-14 15:56 - 2018-06-08 23:40 - 000351520 _____ () C:\Program Files (x86)\Steam\libavresample-3.dll
2017-12-14 15:56 - 2018-06-08 23:40 - 000783648 _____ () C:\Program Files (x86)\Steam\libswscale-4.dll
2017-12-14 15:56 - 2018-06-08 23:40 - 000847136 _____ () C:\Program Files (x86)\Steam\libavutil-55.dll
2016-10-26 15:08 - 2018-06-08 23:40 - 001563936 _____ () C:\Program Files (x86)\Steam\icui18n.dll
2016-10-26 15:08 - 2018-06-08 23:40 - 001195296 _____ () C:\Program Files (x86)\Steam\icuuc.dll
2016-10-26 15:08 - 2018-06-09 01:38 - 000979744 _____ () C:\Program Files (x86)\Steam\bin\chromehtml.DLL
2016-10-26 15:08 - 2018-06-08 23:40 - 000266560 _____ () C:\Program Files (x86)\Steam\openvr_api.dll
2017-01-16 13:40 - 2017-01-16 13:40 - 000143824 _____ () C:\ProgramData\Razer\Synapse\CrashReporter\CrashRpt1402.dll
2017-06-09 22:41 - 2018-06-08 23:39 - 000788256 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\SDL2.dll
2017-02-21 14:19 - 2018-06-08 23:39 - 083524384 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\libcef.dll
2016-10-26 15:08 - 2018-06-08 23:42 - 000119208 _____ () C:\Program Files (x86)\Steam\winh264.dll
2016-12-02 02:54 - 2016-12-02 02:54 - 000118272 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\fs-ext\build\Release\fs-ext.node
2016-12-02 02:54 - 2016-12-02 02:54 - 000223232 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-vulcanjs\build\Release\VulcanJS.node
2016-12-02 02:54 - 2016-12-02 02:54 - 000117248 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ref\build\Release\binding.node
2016-12-02 02:54 - 2016-12-02 02:54 - 000124928 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\ffi\build\Release\ffi_bindings.node
2016-12-09 16:09 - 2016-12-09 16:09 - 000099416 _____ () C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\node-ProxyResolver\build\Release\ProxyResolverWin.dll
2016-12-02 02:54 - 2016-12-02 02:54 - 000086528 _____ () \\?\C:\Program Files (x86)\Adobe\Adobe Creative Cloud\CCXProcess\js\node_modules\idle-gc\build\Release\idle-gc.node
2017-07-11 14:58 - 2018-06-08 23:39 - 002253600 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\swiftshader\libglesv2.dll
2017-07-11 14:58 - 2018-06-08 23:39 - 000109856 _____ () C:\Program Files (x86)\Steam\bin\cef\cef.win7\swiftshader\libegl.dll
==================== Alternate Data Streams (Whitelisted) =========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Users\Public\AppData:CSM [480]
==================== Safe Mode (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Association (Whitelisted) ===============
(If an entry is included in the fixlist, the registry item will be restored to default or removed.)
==================== Internet Explorer trusted/restricted ===============
(If an entry is included in the fixlist, it will be removed from the registry.)
==================== Hosts content: ===============================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2016-07-16 13:47 - 2018-07-17 19:58 - 000000813 _____ C:\Windows\system32\Drivers\etc\hosts
127.0.0.1 localhost
==================== Other Areas ============================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-465800105-2052830454-3610181450-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Zanterw0w\Desktop\xoffieN\Plocha - Pozadia\Fortnite Raven.png
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
MSCONFIG\Services: wuauserv => 3
HKLM\...\StartupApproved\StartupFolder: => "SteelSeries Engine 3.lnk"
==================== FirewallRules (Whitelisted) ===============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{D2EABD15-7766-4B71-9909-F98521248F88}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{568C0749-5B94-4A06-8352-8524D988AF71}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{951188E2-D15E-4EBA-85CD-D2F311BA75A4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{104ED6A9-4A3D-4634-9002-260C952FC73E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{FD9DF319-51A5-4997-A040-A7F0C130D7E6}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{36E834E6-6231-4DF9-B6EE-B6DA3B799778}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{1A2B3570-7850-4D92-B619-F9500A2E19C2}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{27C24502-2278-408A-ADDE-37EB443859BC}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{EC181E8B-2AC0-4E6C-BDC9-68184D772AE3}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{3C3648BC-0094-4CF5-AD6D-D1ABB70D23F8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
FirewallRules: [{7FA90A18-28FE-4226-BE69-308DC52596D1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\H1Z1 King of the Kill\LaunchPad.exe
FirewallRules: [TCP Query User{ED54214F-6D33-4934-9CE2-54D976BB322E}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [UDP Query User{7A3BA6F4-36FF-4EA4-A1C4-61BC65525FD5}C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [TCP Query User{19D9EFDF-6153-4958-83C0-A81525D30E70}D:\twitch deep bot\deepbot.exe] => (Allow) D:\twitch deep bot\deepbot.exe
FirewallRules: [UDP Query User{15B43089-3CF8-424A-91AA-46653F856D8D}D:\twitch deep bot\deepbot.exe] => (Allow) D:\twitch deep bot\deepbot.exe
FirewallRules: [TCP Query User{17DA5D2A-EC77-4C48-ACD2-BDDAA774357A}C:\users\zanterw0w\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\zanterw0w\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{A94E1B42-BDC5-48AE-845C-6C728B7EA2EC}C:\users\zanterw0w\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\zanterw0w\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{B9034E6A-8CD1-4398-8392-8D2DF67095DA}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [UDP Query User{F03913BA-7FD2-4A5F-A76B-A0DC98119168}C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\h1z1 king of the kill\h1z1.exe
FirewallRules: [{FFDFE337-7163-418B-8310-655F4A09F22B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [{22E2886E-FF0F-4174-8A82-7D2C13507CF8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe
FirewallRules: [TCP Query User{D9F04051-80AE-45DF-9C8F-06CC1203F18C}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [UDP Query User{2EC8644E-0C4B-4D0A-9FEF-CA9FDF266203}C:\program files (x86)\overwatch\overwatch.exe] => (Allow) C:\program files (x86)\overwatch\overwatch.exe
FirewallRules: [TCP Query User{5977B34A-ECAC-4C0F-9F75-8156911102F6}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [UDP Query User{74F95F22-5204-4E94-8D98-5282A2660C66}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_25\bin\javaw.exe
FirewallRules: [TCP Query User{6264BA2A-545C-4385-AC06-1CB376F47C3E}D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [UDP Query User{030C92BE-3643-4A11-93A6-F01F9C33B8BD}D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) D:\steamlibrary\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe
FirewallRules: [TCP Query User{98D3C94E-64CF-4C51-ABA6-FFEEEA36DC92}C:\users\zanterw0w\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\zanterw0w\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{4C7C7336-A065-472A-9A53-BB1C118E8FBF}C:\users\zanterw0w\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\zanterw0w\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{7EE819D8-166F-4A40-8D2A-4D205C4DBD36}C:\users\zanterw0w\desktop\marinermt2.pl-10.04.2017\marinermt2.exe] => (Allow) C:\users\zanterw0w\desktop\marinermt2.pl-10.04.2017\marinermt2.exe
FirewallRules: [UDP Query User{BF276113-4E65-46D4-8B52-8050692EE06B}C:\users\zanterw0w\desktop\marinermt2.pl-10.04.2017\marinermt2.exe] => (Allow) C:\users\zanterw0w\desktop\marinermt2.pl-10.04.2017\marinermt2.exe
FirewallRules: [TCP Query User{62BD12BA-F36C-485A-9956-E894665E6394}C:\program files (x86)\heroes of the storm\versions\base56361\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base56361\heroesofthestorm_x64.exe
FirewallRules: [UDP Query User{D448751F-E83B-48AF-A03A-C67ECD645C05}C:\program files (x86)\heroes of the storm\versions\base56361\heroesofthestorm_x64.exe] => (Allow) C:\program files (x86)\heroes of the storm\versions\base56361\heroesofthestorm_x64.exe
FirewallRules: [TCP Query User{6CF6A0B5-1674-4290-A930-78F6A2C8B2C7}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [UDP Query User{EFE14625-8FB6-4263-BED9-D86483236940}C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [TCP Query User{760D3CA5-DFF6-4601-B6F6-5402D916A1DA}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [UDP Query User{0A03F5FA-E960-4916-9287-695B2421A147}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [TCP Query User{3EB1E322-CFAA-47B9-B747-CCFDD6B082C3}C:\program files (x86)\java\jre1.8.0_144\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_144\bin\javaw.exe
FirewallRules: [UDP Query User{7E1EAFBD-0D8C-460B-8B96-013F3BB720C3}C:\program files (x86)\java\jre1.8.0_144\bin\javaw.exe] => (Allow) C:\program files (x86)\java\jre1.8.0_144\bin\javaw.exe
FirewallRules: [TCP Query User{377E3230-D47A-4AFC-B7A6-0C278E0EF050}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [UDP Query User{AAA9602D-9650-4BF7-A3CE-C980584DD2C1}C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) C:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [TCP Query User{1A9DEF1D-6D82-47D3-BB4F-A961808D5329}C:\program files\faceit\faceit.exe] => (Allow) C:\program files\faceit\faceit.exe
FirewallRules: [UDP Query User{62DA2352-31FE-4636-BC4E-E38A42CEEF67}C:\program files\faceit\faceit.exe] => (Allow) C:\program files\faceit\faceit.exe
FirewallRules: [{D1AEBD7C-148F-44FF-96EF-B72EAECD633C}] => (Allow) D:\SteamLibrary\steamapps\common\Black Squad\binaries\win32\BlackSquadGame.exe
FirewallRules: [{CA6C812D-5A16-488B-806C-00E253AC2213}] => (Allow) D:\SteamLibrary\steamapps\common\Black Squad\binaries\win32\BlackSquadGame.exe
FirewallRules: [TCP Query User{F8E971CA-4427-4288-B5D6-2FECFCB1442F}D:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) D:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [UDP Query User{AFD3BCD7-94B5-49FD-8F4C-9547F8761576}D:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe] => (Allow) D:\steamlibrary\steamapps\common\paladins\binaries\win32\paladins.exe
FirewallRules: [TCP Query User{2EC54019-5363-4876-90FF-7E7DDD96A4EF}D:\steamlibrary\steamapps\common\h1z1 king of the kill test server\h1z1.exe] => (Allow) D:\steamlibrary\steamapps\common\h1z1 king of the kill test server\h1z1.exe
FirewallRules: [UDP Query User{855836F8-1B6A-4810-BF00-D5BFC4D21C4E}D:\steamlibrary\steamapps\common\h1z1 king of the kill test server\h1z1.exe] => (Allow) D:\steamlibrary\steamapps\common\h1z1 king of the kill test server\h1z1.exe
FirewallRules: [{1B2B19C5-CA54-43E1-A633-805EF382BB15}] => (Allow) D:\SteamLibrary\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{10C356E8-DC7E-4F74-836B-137019FF1409}] => (Allow) D:\SteamLibrary\steamapps\common\rocketleague\Binaries\Win32\RocketLeague.exe
FirewallRules: [{722B15E6-8893-46F1-A0C8-B5484169F940}] => (Allow) C:\Users\Zanterw0w\AppData\Roaming\AnkhHeart\AnkhBotR2\Streamlabs Chatbot.exe
FirewallRules: [{4A74CA0C-3FD3-47C3-A3D4-9A258E33A869}] => (Allow) C:\Users\Zanterw0w\AppData\Roaming\AnkhHeart\AnkhBotR2\Streamlabs Chatbot.exe
FirewallRules: [{F4260632-9839-4AAA-8D7C-60C8F5349174}] => (Allow) C:\Users\Zanterw0w\AppData\Roaming\AnkhHeart\AnkhBotR2\Streamlabs Chatbot.exe
FirewallRules: [{CC4800D8-B529-464C-8BDC-D092B97F3996}] => (Allow) C:\Users\Zanterw0w\AppData\Roaming\AnkhHeart\AnkhBotR2\Streamlabs Chatbot.exe
FirewallRules: [{12EBBC7D-57A6-4E5F-B8E4-04E9DF2C3CC4}] => (Allow) C:\Users\Zanterw0w\AppData\Roaming\AnkhHeart\AnkhBotR2\Streamlabs Chatbot.exe
FirewallRules: [{D9C0DDBB-586B-4435-AC9B-186A24D9BA99}] => (Allow) C:\Users\Zanterw0w\AppData\Roaming\AnkhHeart\AnkhBotR2\Streamlabs Chatbot.exe
FirewallRules: [{DA015323-02D2-4A78-AF67-D80D88733565}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{8AA369F7-6E86-4BBA-A04F-8A982AFAAFF4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{8ADD3AF0-2D65-4283-96F4-40C81BF689CB}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{378E2144-3C9F-4F92-8E12-70A13B1EA81D}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{BEE7DEED-7762-4A07-9BBC-E1A8A2355FC9}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{CFB5A036-BE40-4C1B-9BCE-670F42755134}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [TCP Query User{FD319D96-A9D3-4AE4-9D5D-B6362C3BA5FE}D:\steamlibrary\steamapps\common\h1z1\h1z1.exe] => (Allow) D:\steamlibrary\steamapps\common\h1z1\h1z1.exe
FirewallRules: [UDP Query User{810D13FB-6C0C-4C8D-9207-E09B1B1982FF}D:\steamlibrary\steamapps\common\h1z1\h1z1.exe] => (Allow) D:\steamlibrary\steamapps\common\h1z1\h1z1.exe
FirewallRules: [{7C49D086-B057-4EFD-9D2C-2574E9444810}] => (Allow) D:\SteamLibrary\steamapps\common\Realm Royale\Binaries\Win64\RealmEAC.exe
FirewallRules: [{F07D3991-084D-452C-9ED5-C547F0B66DBD}] => (Allow) D:\SteamLibrary\steamapps\common\Realm Royale\Binaries\Win64\RealmEAC.exe
FirewallRules: [TCP Query User{A2A2041B-4081-4F1B-844E-E7BA126BD1E7}D:\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) D:\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe
FirewallRules: [UDP Query User{9E44D1C2-924F-4A13-A694-B969711296E9}D:\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe] => (Allow) D:\steamlibrary\steamapps\common\realm royale\binaries\win64\realm.exe
FirewallRules: [{4E2DAD76-3C58-4522-9E63-B0F9F21C6384}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{2FCA0CCD-E1AC-4D6C-A25A-2B096538488C}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.153\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.153\deploy\leagueclient.exe
FirewallRules: [UDP Query User{84CD8296-E26B-4350-8B5E-9119344BB836}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.153\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.153\deploy\leagueclient.exe
FirewallRules: [TCP Query User{2ACED75D-DB81-43EB-8A11-D0BADB311783}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.154\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.154\deploy\leagueclient.exe
FirewallRules: [UDP Query User{17426602-051F-4178-89D2-C9589B9AF94F}C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.154\deploy\leagueclient.exe] => (Allow) C:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.154\deploy\leagueclient.exe
FirewallRules: [{27F5229F-DEBC-46AE-B025-6D0896C92E1A}] => (Allow) LPort=9143
FirewallRules: [{313FE626-C5B0-44A4-B2DB-4F3BF5075E69}] => (Allow) LPort=2333
FirewallRules: [TCP Query User{4BA492A6-8067-46A0-9219-8C25A503C470}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe
FirewallRules: [UDP Query User{BA88A3EB-CC21-43D8-8018-6BEE490073EE}C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe] => (Allow) C:\program files (x86)\minecraft\runtime\jre-x64\1.8.0_51\bin\javaw.exe
==================== Restore Points =========================
19-07-2018 13:51:42 Scheduled Checkpoint
20-07-2018 17:56:47 Installed Minecraft
==================== Faulty Device Manager Devices =============
doska: ASUS B150 PRE GAMING
ram: Kingston 16 GB DDR4 2133 MHz CL14 HyperX Fury Black Series
Graf.karta: ASUS TURBO GTX 1060 6 GB GDDR5
SSD: KINGSTON SSDNow UV400 240GB
disk: Seagate Barracuda 1TB
Procesor: Intel Core i5-6400 2,7 GHz
chladič: Cooler Master Hyper TX3i alebo Cooler Master Hyper 103
zdroj: Corsair VS450
bedna: Zalman Z1 Neo
ram: Kingston 16 GB DDR4 2133 MHz CL14 HyperX Fury Black Series
Graf.karta: ASUS TURBO GTX 1060 6 GB GDDR5
SSD: KINGSTON SSDNow UV400 240GB
disk: Seagate Barracuda 1TB
Procesor: Intel Core i5-6400 2,7 GHz
chladič: Cooler Master Hyper TX3i alebo Cooler Master Hyper 103
zdroj: Corsair VS450
bedna: Zalman Z1 Neo
Re: Prosím o kontrolu logu
cast 2
----
==================== Event log errors: =========================
Application errors:
==================
Error: (07/21/2018 07:36:35 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Názov chybujúceho modulu: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Kód výnimky: 0xc0000005
Odstup chyby: 0x001c676b
Identifikácia chybujúceho procesu: 0x36d8
Čas spustenia chybujúcej aplikácie: 0x01d421195cb7e6cb
Cesta chybujúcej aplikácie: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Cesta chybujúceho modulu: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Identifikácia hlásenia: 656b7fc4-f7b8-4aa8-9df7-da62eefb9c34
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (07/21/2018 07:36:29 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Názov chybujúceho modulu: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Kód výnimky: 0xc0000005
Odstup chyby: 0x001c676b
Identifikácia chybujúceho procesu: 0x1cb8
Čas spustenia chybujúcej aplikácie: 0x01d4211958ea8a78
Cesta chybujúcej aplikácie: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Cesta chybujúceho modulu: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Identifikácia hlásenia: 1aea06ab-0702-4193-b73b-70c5ba07720a
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (07/21/2018 09:47:00 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Názov chybujúceho modulu: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Kód výnimky: 0xc0000005
Odstup chyby: 0x001c676b
Identifikácia chybujúceho procesu: 0x324
Čas spustenia chybujúcej aplikácie: 0x01d420c6ff211ebd
Cesta chybujúcej aplikácie: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Cesta chybujúceho modulu: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Identifikácia hlásenia: 984670a6-28b7-45e7-9ad9-93589593514b
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (07/21/2018 09:46:08 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Názov chybujúceho modulu: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Kód výnimky: 0xc0000005
Odstup chyby: 0x001c676b
Identifikácia chybujúceho procesu: 0x34c8
Čas spustenia chybujúcej aplikácie: 0x01d420c6e0995f40
Cesta chybujúcej aplikácie: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Cesta chybujúceho modulu: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Identifikácia hlásenia: 3758401d-d853-4b62-ac4a-b33bdb43d1c3
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (07/21/2018 09:45:51 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Názov chybujúceho modulu: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Kód výnimky: 0xc0000005
Odstup chyby: 0x001c676b
Identifikácia chybujúceho procesu: 0x1798
Čas spustenia chybujúcej aplikácie: 0x01d420c6d5890921
Cesta chybujúcej aplikácie: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Cesta chybujúceho modulu: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Identifikácia hlásenia: 465b57a1-bdf6-4b17-8a51-0245eb406e35
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (07/21/2018 09:27:46 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Audacity\audacity.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.953_none_42151e83c686086b.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.953_none_89c2555adb023171.manifest.
Error: (07/20/2018 05:56:57 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Audacity\audacity.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.953_none_42151e83c686086b.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.953_none_89c2555adb023171.manifest.
Error: (07/20/2018 05:56:48 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Cryptographic Services zlyhala pri spracovávaní volania OnIdentity() v objekte System Writer.
Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.
System Error:
Access is denied.
.
System errors:
=============
Error: (07/21/2018 09:13:56 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
and APPID
{F72671A9-012C-4725-9D2F-2A4D32D65169}
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (07/21/2018 12:20:54 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (07/20/2018 08:41:57 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
and APPID
{F72671A9-012C-4725-9D2F-2A4D32D65169}
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (07/19/2018 10:54:02 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (07/19/2018 07:24:40 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (07/19/2018 07:23:29 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (07/19/2018 11:58:10 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
and APPID
{F72671A9-012C-4725-9D2F-2A4D32D65169}
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (07/19/2018 11:58:10 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Nal Service zlyhalo kvôli nasledujúcej chybe:
Windows cannot verify the digital signature for this file. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Windows Defender:
===================================
Date: 2018-07-17 21:42:06.155
Description:
Windows Defender scan has been stopped before completion.
Scan ID: {A14138EB-34B0-4682-B813-85546C1D48CE}
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2018-07-17 16:29:12.851
Description:
Windows Defender scan has been stopped before completion.
Scan ID: {E03A10E3-E4C8-40A7-933B-11ACF9198A89}
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2018-07-17 09:52:28.812
Description:
Windows Defender has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Name: Trojan:Win32/Bitrep.A
ID: 2147723097
Severity: Závažná
Category: Trójsky kôň
Path: file:_C:\Users\Zanterw0w\Desktop\zoek.exe
Detection Origin: Local machine
Detection Type: FastPath
Detection Source: Real-Time Protection
Process Name: C:\Windows\explorer.exe
Signature Version: AV: 1.271.1100.0, AS: 1.271.1100.0, NIS: 1.271.1100.0
Engine Version: AM: 1.1.15000.2, NIS: 1.1.15000.2
Date: 2018-07-12 19:13:14.468
Description:
Windows Defender scan has been stopped before completion.
Scan ID: {05E2E007-09F2-4B33-AF4E-553FDA94A73F}
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2018-06-27 17:31:09.844
Description:
Windows Defender scan has been stopped before completion.
Scan ID: {D46FF762-A43A-40D2-AF07-D3B41E7A21E7}
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2018-07-04 07:39:18.773
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.271.452.0
Update Source: Microsoft Update Server
Signature Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.15000.2
Error code: 0x80070643
Error description: Fatal error during installation.
Date: 2018-06-04 15:50:29.903
Description:
Windows Defender has encountered an error trying to load signatures and will attempt reverting back to a known-good set of signatures.
Signatures Attempted: Current
Error Code: 0x80070003
Error description: The system cannot find the path specified.
Signature version: 0.0.0.0;0.0.0.0
Engine version: 0.0.0.0
Date: 2018-05-29 11:41:27.305
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.269.181.0
Update Source: Microsoft Update Server
Signature Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.14901.4
Error code: 0x8024402c
Error description: Počas vyhľadávania aktualizácií sa vyskytol neočakávaný problém. Informácie o inštalácii aktualizácií a riešení problémov s aktualizáciami nájdete v Pomoci a technickej podpore.
Date: 2018-05-29 09:23:26.088
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.269.181.0
Update Source: Microsoft Update Server
Signature Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.14901.4
Error code: 0x80240438
Error description: Počas vyhľadávania aktualizácií sa vyskytol neočakávaný problém. Informácie o inštalácii aktualizácií a riešení problémov s aktualizáciami nájdete v Pomoci a technickej podpore.
CodeIntegrity:
===================================
Date: 2018-07-19 11:58:10.437
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\iqvw64e.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2018-07-18 10:51:56.926
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\iqvw64e.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2018-07-17 20:17:09.721
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2018-07-17 19:59:36.459
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\iqvw64e.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2018-07-17 09:51:08.139
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\iqvw64e.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2018-07-17 09:11:25.460
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\iqvw64e.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2018-07-17 09:11:25.416
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\iqvw64e.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2018-07-16 13:37:55.450
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\iqvw64e.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5-6400 CPU @ 2.70GHz
Percentage of memory in use: 19%
Total physical RAM: 16307.56 MB
Available physical RAM: 13105.89 MB
Total Virtual: 17331.56 MB
Available Virtual: 13535.44 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:222.43 GB) (Free:115.97 GB) NTFS
Drive d: () (Fixed) (Total:931.39 GB) (Free:925.73 GB) NTFS
\\?\Volume{46dd99f8-4aa5-443e-8ac0-e9a13c1f3898}\ (Obnovení) (Fixed) (Total:0.44 GB) (Free:0.13 GB) NTFS
\\?\Volume{45da8e3c-292f-40a2-99e7-0af03a1d7464}\ () (Fixed) (Total:0.48 GB) (Free:0.47 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 223.6 GB) (Disk ID: 085B30BB)
Partition: GPT.
========================================================
Disk: 1 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt ============================
----
==================== Event log errors: =========================
Application errors:
==================
Error: (07/21/2018 07:36:35 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Názov chybujúceho modulu: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Kód výnimky: 0xc0000005
Odstup chyby: 0x001c676b
Identifikácia chybujúceho procesu: 0x36d8
Čas spustenia chybujúcej aplikácie: 0x01d421195cb7e6cb
Cesta chybujúcej aplikácie: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Cesta chybujúceho modulu: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Identifikácia hlásenia: 656b7fc4-f7b8-4aa8-9df7-da62eefb9c34
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (07/21/2018 07:36:29 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Názov chybujúceho modulu: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Kód výnimky: 0xc0000005
Odstup chyby: 0x001c676b
Identifikácia chybujúceho procesu: 0x1cb8
Čas spustenia chybujúcej aplikácie: 0x01d4211958ea8a78
Cesta chybujúcej aplikácie: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Cesta chybujúceho modulu: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Identifikácia hlásenia: 1aea06ab-0702-4193-b73b-70c5ba07720a
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (07/21/2018 09:47:00 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Názov chybujúceho modulu: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Kód výnimky: 0xc0000005
Odstup chyby: 0x001c676b
Identifikácia chybujúceho procesu: 0x324
Čas spustenia chybujúcej aplikácie: 0x01d420c6ff211ebd
Cesta chybujúcej aplikácie: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Cesta chybujúceho modulu: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Identifikácia hlásenia: 984670a6-28b7-45e7-9ad9-93589593514b
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (07/21/2018 09:46:08 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Názov chybujúceho modulu: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Kód výnimky: 0xc0000005
Odstup chyby: 0x001c676b
Identifikácia chybujúceho procesu: 0x34c8
Čas spustenia chybujúcej aplikácie: 0x01d420c6e0995f40
Cesta chybujúcej aplikácie: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Cesta chybujúceho modulu: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Identifikácia hlásenia: 3758401d-d853-4b62-ac4a-b33bdb43d1c3
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (07/21/2018 09:45:51 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Názov chybujúceho modulu: AutoPatcher.exe, verzia: 1.0.1.1, časová značka: 0x5b0956b9
Kód výnimky: 0xc0000005
Odstup chyby: 0x001c676b
Identifikácia chybujúceho procesu: 0x1798
Čas spustenia chybujúcej aplikácie: 0x01d420c6d5890921
Cesta chybujúcej aplikácie: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Cesta chybujúceho modulu: C:\Users\Zanterw0w\Desktop\Matadia.pl\AutoPatcher.exe
Identifikácia hlásenia: 465b57a1-bdf6-4b17-8a51-0245eb406e35
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (07/21/2018 09:27:46 AM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Audacity\audacity.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.953_none_42151e83c686086b.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.953_none_89c2555adb023171.manifest.
Error: (07/20/2018 05:56:57 PM) (Source: SideBySide) (EventID: 78) (User: )
Description: Activation context generation failed for "C:\Program Files (x86)\Audacity\audacity.exe".Error in manifest or policy file "" on line .
A component version required by the application conflicts with another component version already active.
Conflicting components are:.
Component 1: C:\Windows\WinSxS\manifests\amd64_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.953_none_42151e83c686086b.manifest.
Component 2: C:\Windows\WinSxS\manifests\x86_microsoft.windows.common-controls_6595b64144ccf1df_6.0.14393.953_none_89c2555adb023171.manifest.
Error: (07/20/2018 05:56:48 PM) (Source: Microsoft-Windows-CAPI2) (EventID: 513) (User: )
Description: Služba Cryptographic Services zlyhala pri spracovávaní volania OnIdentity() v objekte System Writer.
Details:
AddLegacyDriverFiles: Unable to back up image of binary Microsoft Link-Layer Discovery Protocol.
System Error:
Access is denied.
.
System errors:
=============
Error: (07/21/2018 09:13:56 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
and APPID
{F72671A9-012C-4725-9D2F-2A4D32D65169}
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (07/21/2018 12:20:54 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (07/20/2018 08:41:57 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
and APPID
{F72671A9-012C-4725-9D2F-2A4D32D65169}
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (07/19/2018 10:54:02 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (07/19/2018 07:24:40 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (07/19/2018 07:23:29 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
and APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (07/19/2018 11:58:10 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: The application-specific permission settings do not grant Local Activation permission for the COM Server application with CLSID
{8D8F4F83-3594-4F07-8369-FC3C3CAE4919}
and APPID
{F72671A9-012C-4725-9D2F-2A4D32D65169}
to the user NT AUTHORITY\SYSTEM SID (S-1-5-18) from address LocalHost (Using LRPC) running in the application container Unavailable SID (Unavailable). This security permission can be modified using the Component Services administrative tool.
Error: (07/19/2018 11:58:10 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Nal Service zlyhalo kvôli nasledujúcej chybe:
Windows cannot verify the digital signature for this file. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Windows Defender:
===================================
Date: 2018-07-17 21:42:06.155
Description:
Windows Defender scan has been stopped before completion.
Scan ID: {A14138EB-34B0-4682-B813-85546C1D48CE}
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2018-07-17 16:29:12.851
Description:
Windows Defender scan has been stopped before completion.
Scan ID: {E03A10E3-E4C8-40A7-933B-11ACF9198A89}
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2018-07-17 09:52:28.812
Description:
Windows Defender has detected malware or other potentially unwanted software.
For more information please see the following:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Name: Trojan:Win32/Bitrep.A
ID: 2147723097
Severity: Závažná
Category: Trójsky kôň
Path: file:_C:\Users\Zanterw0w\Desktop\zoek.exe
Detection Origin: Local machine
Detection Type: FastPath
Detection Source: Real-Time Protection
Process Name: C:\Windows\explorer.exe
Signature Version: AV: 1.271.1100.0, AS: 1.271.1100.0, NIS: 1.271.1100.0
Engine Version: AM: 1.1.15000.2, NIS: 1.1.15000.2
Date: 2018-07-12 19:13:14.468
Description:
Windows Defender scan has been stopped before completion.
Scan ID: {05E2E007-09F2-4B33-AF4E-553FDA94A73F}
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2018-06-27 17:31:09.844
Description:
Windows Defender scan has been stopped before completion.
Scan ID: {D46FF762-A43A-40D2-AF07-D3B41E7A21E7}
Scan Type: Antimalware
Scan Parameters: Quick Scan
Date: 2018-07-04 07:39:18.773
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.271.452.0
Update Source: Microsoft Update Server
Signature Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.15000.2
Error code: 0x80070643
Error description: Fatal error during installation.
Date: 2018-06-04 15:50:29.903
Description:
Windows Defender has encountered an error trying to load signatures and will attempt reverting back to a known-good set of signatures.
Signatures Attempted: Current
Error Code: 0x80070003
Error description: The system cannot find the path specified.
Signature version: 0.0.0.0;0.0.0.0
Engine version: 0.0.0.0
Date: 2018-05-29 11:41:27.305
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.269.181.0
Update Source: Microsoft Update Server
Signature Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.14901.4
Error code: 0x8024402c
Error description: Počas vyhľadávania aktualizácií sa vyskytol neočakávaný problém. Informácie o inštalácii aktualizácií a riešení problémov s aktualizáciami nájdete v Pomoci a technickej podpore.
Date: 2018-05-29 09:23:26.088
Description:
Windows Defender has encountered an error trying to update signatures.
New Signature Version:
Previous Signature Version: 1.269.181.0
Update Source: Microsoft Update Server
Signature Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.14901.4
Error code: 0x80240438
Error description: Počas vyhľadávania aktualizácií sa vyskytol neočakávaný problém. Informácie o inštalácii aktualizácií a riešení problémov s aktualizáciami nájdete v Pomoci a technickej podpore.
CodeIntegrity:
===================================
Date: 2018-07-19 11:58:10.437
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\iqvw64e.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2018-07-18 10:51:56.926
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\iqvw64e.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2018-07-17 20:17:09.721
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume4\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2018-07-17 19:59:36.459
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\iqvw64e.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2018-07-17 09:51:08.139
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\iqvw64e.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2018-07-17 09:11:25.460
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\iqvw64e.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2018-07-17 09:11:25.416
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\iqvw64e.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
Date: 2018-07-16 13:37:55.450
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\drivers\iqvw64e.sys because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
Processor: Intel(R) Core(TM) i5-6400 CPU @ 2.70GHz
Percentage of memory in use: 19%
Total physical RAM: 16307.56 MB
Available physical RAM: 13105.89 MB
Total Virtual: 17331.56 MB
Available Virtual: 13535.44 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:222.43 GB) (Free:115.97 GB) NTFS
Drive d: () (Fixed) (Total:931.39 GB) (Free:925.73 GB) NTFS
\\?\Volume{46dd99f8-4aa5-443e-8ac0-e9a13c1f3898}\ (Obnovení) (Fixed) (Total:0.44 GB) (Free:0.13 GB) NTFS
\\?\Volume{45da8e3c-292f-40a2-99e7-0af03a1d7464}\ () (Fixed) (Total:0.48 GB) (Free:0.47 GB) NTFS
==================== MBR & Partition Table ==================
========================================================
Disk: 0 (Size: 223.6 GB) (Disk ID: 085B30BB)
Partition: GPT.
========================================================
Disk: 1 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt ============================
doska: ASUS B150 PRE GAMING
ram: Kingston 16 GB DDR4 2133 MHz CL14 HyperX Fury Black Series
Graf.karta: ASUS TURBO GTX 1060 6 GB GDDR5
SSD: KINGSTON SSDNow UV400 240GB
disk: Seagate Barracuda 1TB
Procesor: Intel Core i5-6400 2,7 GHz
chladič: Cooler Master Hyper TX3i alebo Cooler Master Hyper 103
zdroj: Corsair VS450
bedna: Zalman Z1 Neo
ram: Kingston 16 GB DDR4 2133 MHz CL14 HyperX Fury Black Series
Graf.karta: ASUS TURBO GTX 1060 6 GB GDDR5
SSD: KINGSTON SSDNow UV400 240GB
disk: Seagate Barracuda 1TB
Procesor: Intel Core i5-6400 2,7 GHz
chladič: Cooler Master Hyper TX3i alebo Cooler Master Hyper 103
zdroj: Corsair VS450
bedna: Zalman Z1 Neo
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43060
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
V možnostech složky si povol zobrazování skrytých souborů a složek+ odškrtni zatržítko skrýt chráněné soubory operačního systému
Toto otestuj na Virustotal
C:\Users\Zanterw0w\AppData\Local\Tempzxpsignbe0d97a7ddb1f43c
C:\Users\Zanterw0w\AppData\Local\Tempzxpsign653bccb6173e5057
C:\Users\Zanterw0w\AppData\Local\Tempzxpsign3de94e08769c8c79
C:\Users\Zanterw0w\AppData\Local\Tempzxpsign1b2f5f2d0506b0d3
C:\Users\Zanterw0w\AppData\Local\Tempzxpsignade8a30f65c0bde5
Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/43 , nebo 1/43. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.
Nebo na:
http://www.virscan.org/
C:\Users\Zanterw0w\Downloads\Nový priečinok (2)
C:\Users\Zanterw0w\Desktop\xoffieN
C:\Users\Zanterw0w\Downloads\Nový priečinok
toto znáš , nemohl by v tom být viry?
Toto otestuj na Virustotal
C:\Users\Zanterw0w\AppData\Local\Tempzxpsignbe0d97a7ddb1f43c
C:\Users\Zanterw0w\AppData\Local\Tempzxpsign653bccb6173e5057
C:\Users\Zanterw0w\AppData\Local\Tempzxpsign3de94e08769c8c79
C:\Users\Zanterw0w\AppData\Local\Tempzxpsign1b2f5f2d0506b0d3
C:\Users\Zanterw0w\AppData\Local\Tempzxpsignade8a30f65c0bde5
Klikni vpravo od okénka na Vybrat a v Exploreru najdi požadovaný soubor v Tvém PC. Označ ho myší a klikni na Otevřít , poté klikni na Send File. Pokud už byl soubor testován , objeví se okno ve kterém klikni na Reanalyze. Soubor se začne postupně testovat více antivirovými programy. Až skončí test posledního antiviru , objeví se nahoře result a červeně počet nákaz , např. 0/43 , nebo 1/43. Pak zkopíruj myší odkaz na tuto stránku a vlož ji do svého příspěvku.
Nebo na:
http://www.virscan.org/
C:\Users\Zanterw0w\Downloads\Nový priečinok (2)
C:\Users\Zanterw0w\Desktop\xoffieN
C:\Users\Zanterw0w\Downloads\Nový priečinok
toto znáš , nemohl by v tom být viry?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Re: Prosím o kontrolu logu
pozrel som to ale nič sa nenašlo.
Tie zložky poznám ale mám tam len veci na photoshop ktoré sú čisté, prešiel som ich všetky
Tie zložky poznám ale mám tam len veci na photoshop ktoré sú čisté, prešiel som ich všetky
doska: ASUS B150 PRE GAMING
ram: Kingston 16 GB DDR4 2133 MHz CL14 HyperX Fury Black Series
Graf.karta: ASUS TURBO GTX 1060 6 GB GDDR5
SSD: KINGSTON SSDNow UV400 240GB
disk: Seagate Barracuda 1TB
Procesor: Intel Core i5-6400 2,7 GHz
chladič: Cooler Master Hyper TX3i alebo Cooler Master Hyper 103
zdroj: Corsair VS450
bedna: Zalman Z1 Neo
ram: Kingston 16 GB DDR4 2133 MHz CL14 HyperX Fury Black Series
Graf.karta: ASUS TURBO GTX 1060 6 GB GDDR5
SSD: KINGSTON SSDNow UV400 240GB
disk: Seagate Barracuda 1TB
Procesor: Intel Core i5-6400 2,7 GHz
chladič: Cooler Master Hyper TX3i alebo Cooler Master Hyper 103
zdroj: Corsair VS450
bedna: Zalman Z1 Neo
- jaro3
- člen Security týmu
-
Guru Level 15
- Příspěvky: 43060
- Registrován: červen 07
- Bydliště: Jižní Čechy
- Pohlaví:
- Stav:
Offline
Re: Prosím o kontrolu logu
Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.
(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).
Ulož jej na na plochu jako fixlist.txt
Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.
Kód: Vybrat vše
Start
CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION
SearchScopes: HKU\S-1-5-21-465800105-2052830454-3610181450-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
R1 ESEADriver2; C:\Users\Zanterw0w\AppData\Local\Temp\ESEADriver2.sys [3542608 2018-07-19] () <==== ATTENTION
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{021E4F06-9DCC-49AD-88CF-ECC2DA314C8A}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-CB25C62E5A68}\InprocServer32 -> %%systemroot%%\system32\shell32.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{5AB7172C-9C11-405C-8DD5-AF20F3606282}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{9AA2F32D-362A-42D9-9328-24A483E2CCC3}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{A78ED123-AB77-406B-9962-2A5D9D2F7F30}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{BBACC218-34EA-4666-9D7A-C78F2274A524}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{F241C880-6982-4CE5-8CF7-7085BA96DA5A}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-465800105-2052830454-3610181450-1001_Classes\CLSID\{F8071786-1FD0-4A66-81A1-3CBE29274458}\InprocServer32 -> C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncApi64.dll => No File
ShellIconOverlayIdentifiers: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Pending)] -> {056D528D-CE28-4194-9BA3-BA2E9197FF8C} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Synced)] -> {05B38830-F4E9-4329-978B-1DD28605D202} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ MEGA (Syncing)] -> {0596C850-7BDD-4C9D-AFDF-873BE6890637} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ContextMenuHandlers1: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ContextMenuHandlers2: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ContextMenuHandlers3: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ContextMenuHandlers4: [MEGA (Context menu)] -> {0229E5E7-09E9-45CF-9228-0228EC7D5F17} => C:\Users\Zanterw0w\AppData\Local\MEGAsync\ShellExtX64.dll -> No File
ContextMenuHandlers1_S-1-5-21-465800105-2052830454-3610181450-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ContextMenuHandlers4_S-1-5-21-465800105-2052830454-3610181450-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
ContextMenuHandlers5_S-1-5-21-465800105-2052830454-3610181450-1001: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Users\Zanterw0w\AppData\Local\Microsoft\OneDrive\17.3.6917.0607\amd64\FileSyncShell64.dll -> No File
Task: {0737BBDE-0157-411B-B8FD-A1AD767D1072} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-26] (Google Inc.)
Task: {47848E7E-775D-410B-A730-7E5817B89D14} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-10-26] (Google Inc.)
EmptyTemp:
End
(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).
Ulož jej na na plochu jako fixlist.txt
Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Kdo je online
Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 3 hosti