kontrola logu Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

N0váček
Level 1.5
Level 1.5
Příspěvky: 134
Registrován: prosinec 14
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu

Příspěvekod N0váček » 25 říj 2018 16:13

takže log FRST:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 24.10.2018
Ran by david (administrator) on DESKTOP-OKDVTKV (25-10-2018 16:11:05)
Running from C:\Users\david\Downloads
Loaded Profiles: david (Available Profiles: david)
Platform: Windows 10 Pro Version 1803 17134.345 (X64) Language: Čeština (Česko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.33.17\GoogleCrashHandler64.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(Copyright 2017.) C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
(Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\mbamtray.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\SkypeApp.exe
() C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
(Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\ShadowPlay\nvsphelper64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA Share.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCuiL.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Copyright 2017.) C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe
(Valve Corporation) D:\steam\Steam.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTAgent.exe
(Epic Games, Inc.) D:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(Valve Corporation) D:\steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve Corporation) D:\steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Valve Corporation) D:\steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve Corporation) D:\steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Valve Corporation) D:\steam\bin\cef\cef.win7x64\steamwebhelper.exe
(Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DTShellHlp.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [SecurityHealth] => C:\Program Files\Windows Defender\MSASCuiL.exe [638872 2018-04-12] (Microsoft Corporation)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvLaunch.exe [242392 2018-10-13] (AVAST Software)
HKLM\...\Run: [PAC7302_Monitor] => C:\Windows\PixArt\PAC7302\Monitor.exe
HKLM\...\Run: [ZAM] => C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe [15775888 2017-08-09] (Copyright 2017.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [601424 2018-07-07] (Oracle Corporation)
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\...\Run: [Steam] => D:\steam\steam.exe [3208992 2018-10-13] (Valve Corporation)
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [729704 2018-06-20] (Disc Soft Ltd)
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\...\Run: [EpicGamesLauncher] => D:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [34888080 2018-10-16] (Epic Games, Inc.)
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\...\MountPoints2: {4a2e806b-8817-11e8-adf2-7085c27f60c4} - "G:\_AUTORUN\AUTORUN.EXE"
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\...\MountPoints2: {839cbabb-8751-11e8-adf1-7085c27f60c4} - "F:\setup.exe"
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\...\MountPoints2: {bf2b7e55-86a0-11e8-adf0-7085c27f60c4} - "E:\setup.exe"
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\...\MountPoints2: {c1a8e3aa-9355-11e8-adf4-7085c27f60c4} - "H:\OInstall.exe"

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{ea3b0425-ca47-4234-8b00-f15e989399ff}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
SearchScopes: HKU\S-1-5-21-2321539691-1916493358-1505984254-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2018-10-23] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_181\bin\ssv.dll [2018-09-15] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_181\bin\jp2ssv.dll [2018-09-15] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_181\bin\ssv.dll [2018-09-15] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_181\bin\jp2ssv.dll [2018-09-15] (Oracle Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-10-23] (Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-10-23] (Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-10-23] (Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2018-10-23] (Microsoft Corporation)

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\dtplugin\npDeployJava1.dll [2018-09-15] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.181.2 -> C:\Program Files\Java\jre1.8.0_181\bin\plugin2\npjp2.dll [2018-09-15] (Oracle Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.181.2 -> C:\Program Files (x86)\Java\jre1.8.0_181\bin\dtplugin\npDeployJava1.dll [2018-09-15] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.181.2 -> C:\Program Files (x86)\Java\jre1.8.0_181\bin\plugin2\npjp2.dll [2018-09-15] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2018-10-23] (Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2018-10-11] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2018-10-11] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-09-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.33.17\npGoogleUpdate3.dll [2018-09-29] (Google Inc.)

Chrome:
=======
CHR Profile: C:\Users\david\AppData\Local\Google\Chrome\User Data\Default [2018-10-25]
CHR Extension: (Prezentace) - C:\Users\david\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2018-10-23]
CHR Extension: (Dokumenty) - C:\Users\david\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2018-10-23]
CHR Extension: (Disk Google) - C:\Users\david\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2018-10-23]
CHR Extension: (YouTube) - C:\Users\david\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2018-10-23]
CHR Extension: (Avast SafePrice | Srovnání, výhodné nabídky, kupóny) - C:\Users\david\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2018-10-23]
CHR Extension: (Tabulky) - C:\Users\david\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2018-10-23]
CHR Extension: (Dokumenty Google offline) - C:\Users\david\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2018-10-23]
CHR Extension: (Avast Online Security) - C:\Users\david\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2018-10-23]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\david\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2018-10-23]
CHR Extension: (Gmail) - C:\Users\david\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2018-10-23]
CHR Extension: (Chrome Media Router) - C:\Users\david\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2018-10-23]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ====================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\x64\aswidsagenta.exe [8188768 2018-10-13] (AVAST Software)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [325024 2018-10-13] (AVAST Software)
S3 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [57504 2018-10-13] (AVAST Software)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9683736 2018-10-14] (Microsoft Corporation)
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [3606632 2018-06-20] (Disc Soft Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [784512 2018-09-29] (EasyAntiCheat Ltd)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6347056 2018-09-19] (Malwarebytes)
R2 NvContainerLocalSystem; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [773328 2018-09-12] (NVIDIA Corporation)
S3 NvContainerNetworkService; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [773328 2018-09-12] (NVIDIA Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [4737448 2018-07-15] (Microsoft Corporation)
S4 ssh-agent; C:\Windows\System32\OpenSSH\ssh-agent.exe [495616 2018-03-10] ()
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\NisSrv.exe [3905952 2018-08-22] (Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.1807.18075-0\MsMpEng.exe [110944 2018-08-22] (Microsoft Corporation)
R2 ZAMSvc; C:\Program Files (x86)\Zemana AntiMalware\ZAM.exe [15775888 2017-08-09] (Copyright 2017.)
R2 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
R2 NvTelemetryContainer; "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\NvTelemetryContainer.exe" -s NvTelemetryContainer -f "C:\ProgramData\NVIDIA\NvTelemetryContainer.log" -l 3 -d "C:\Program Files (x86)\NVIDIA Corporation\NvTelemetry\plugins" -r

===================== Drivers (Whitelisted) ======================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [201408 2018-10-13] (AVAST Software)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdrivera.sys [230512 2018-10-13] (AVAST Software)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsha.sys [201928 2018-10-13] (AVAST Software)
R0 aswblog; C:\Windows\System32\drivers\aswbloga.sys [346760 2018-10-13] (AVAST Software)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniva.sys [59664 2018-10-13] (AVAST Software)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [15360 2018-07-12] (AVAST Software)
R1 aswHdsKe; C:\Windows\System32\drivers\aswHdsKe.sys [185240 2018-10-13] (AVAST Software)
S3 aswHwid; C:\Windows\System32\drivers\aswHwid.sys [47064 2018-10-13] (AVAST Software)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [42456 2018-10-13] (AVAST Software)
R2 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [163376 2018-10-13] (AVAST Software)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [111968 2018-10-13] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [88112 2018-10-13] (AVAST Software)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [1028840 2018-10-13] (AVAST Software)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [467904 2018-10-13] (AVAST Software)
R2 aswStm; C:\Windows\System32\drivers\aswStm.sys [208640 2018-10-13] (AVAST Software)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [381144 2018-10-13] (AVAST Software)
R3 dtlitescsibus; C:\Windows\System32\drivers\dtlitescsibus.sys [30264 2018-07-13] (Disc Soft Ltd)
R3 dtliteusbbus; C:\Windows\System32\drivers\dtliteusbbus.sys [47672 2018-07-13] (Disc Soft Ltd)
R1 ESProtectionDriver; C:\Windows\system32\drivers\mbae64.sys [152688 2018-09-11] (Malwarebytes)
R2 MBAMChameleon; C:\Windows\System32\Drivers\MbamChameleon.sys [200232 2018-10-23] (Malwarebytes)
R3 MBAMFarflt; C:\Windows\System32\DRIVERS\farflt.sys [118584 2018-10-23] (Malwarebytes)
R3 MBAMProtection; C:\Windows\system32\DRIVERS\mbam.sys [58400 2018-10-23] (Malwarebytes)
R3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [260384 2018-10-23] (Malwarebytes)
R3 MBAMWebProtection; C:\Windows\system32\DRIVERS\mwac.sys [110424 2018-10-25] (Malwarebytes)
R3 nvlddmkm; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_a5e9eb9bc021c27a\nvlddmkm.sys [20337080 2018-10-12] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [30792 2018-08-21] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [69544 2018-08-21] (NVIDIA Corporation)
R3 nvvhci; C:\Windows\System32\drivers\nvvhci.sys [65792 2018-08-21] (NVIDIA Corporation)
S3 smbdirect; C:\Windows\System32\DRIVERS\smbdirect.sys [152064 2018-04-12] (Microsoft Corporation)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [46584 2018-08-22] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [340008 2018-08-22] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [61992 2018-08-22] (Microsoft Corporation)
R1 ZAM; C:\Windows\System32\drivers\zam64.sys [203680 2018-10-23] (Zemana Ltd.)
R1 ZAM_Guard; C:\Windows\System32\drivers\zamguard64.sys [203680 2018-10-23] (Zemana Ltd.)
S3 cpuz140; \??\C:\Users\david\AppData\Local\Temp\cpuz140\cpuz140_x64.sys [X] <==== ATTENTION

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-10-25 16:11 - 2018-10-25 16:11 - 000018287 _____ C:\Users\david\Downloads\FRST.txt
2018-10-25 16:10 - 2018-10-25 16:11 - 000000000 ____D C:\FRST
2018-10-25 16:10 - 2018-10-25 16:10 - 002414592 _____ (Farbar) C:\Users\david\Downloads\FRST64.exe
2018-10-25 16:10 - 2018-10-25 16:10 - 000000000 ____D C:\Users\david\Downloads\backups
2018-10-25 16:04 - 2018-10-25 16:04 - 000388608 _____ (Trend Micro Inc.) C:\Users\david\Downloads\HijackThis (1).exe
2018-10-25 16:03 - 2018-10-25 16:03 - 000000000 ___HD C:\OneDriveTemp
2018-10-24 20:21 - 2018-10-24 20:21 - 000000000 ____D C:\Users\david\AppData\Local\DBG
2018-10-24 17:10 - 2018-10-24 17:10 - 000000000 ____D C:\Users\david\AppData\Local\PeerDistRepub
2018-10-24 16:08 - 2018-10-24 16:08 - 000388608 _____ (Trend Micro Inc.) C:\Users\david\Downloads\HijackThis.exe
2018-10-24 16:06 - 2018-10-24 16:06 - 000001201 _____ C:\DelFix.txt
2018-10-23 20:59 - 2018-10-23 20:59 - 000000000 ____D C:\Users\david\AppData\Roaming\Brotsoft
2018-10-23 20:48 - 2018-10-25 16:11 - 000365792 _____ C:\Windows\ZAM_Guard.krnl.trace
2018-10-23 20:48 - 2018-10-25 16:11 - 000363129 _____ C:\Windows\ZAM.krnl.trace
2018-10-23 20:48 - 2018-10-23 20:48 - 000203680 _____ (Zemana Ltd.) C:\Windows\system32\Drivers\zamguard64.sys
2018-10-23 20:48 - 2018-10-23 20:48 - 000203680 _____ (Zemana Ltd.) C:\Windows\system32\Drivers\zam64.sys
2018-10-23 20:48 - 2018-10-23 20:48 - 000001221 _____ C:\Users\Public\Desktop\Zemana AntiMalware.lnk
2018-10-23 20:48 - 2018-10-23 20:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zemana AntiMalware
2018-10-23 20:48 - 2018-10-23 20:48 - 000000000 ____D C:\Program Files (x86)\Zemana AntiMalware
2018-10-23 20:47 - 2018-10-23 20:47 - 006625600 _____ (Zemana Ltd. ) C:\Users\david\Downloads\Zemana.AntiMalware.Setup.exe
2018-10-23 20:47 - 2018-10-23 20:47 - 000000000 ____D C:\Users\david\AppData\Local\Zemana
2018-10-23 20:45 - 2018-10-25 16:04 - 000110424 _____ (Malwarebytes) C:\Windows\system32\Drivers\mwac.sys
2018-10-23 20:45 - 2018-10-23 20:45 - 000260384 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbamswissarmy.sys
2018-10-23 20:45 - 2018-10-23 20:45 - 000200232 _____ (Malwarebytes) C:\Windows\system32\Drivers\MbamChameleon.sys
2018-10-23 20:45 - 2018-10-23 20:45 - 000118584 _____ (Malwarebytes) C:\Windows\system32\Drivers\farflt.sys
2018-10-23 20:45 - 2018-10-23 20:45 - 000058400 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbam.sys
2018-10-23 20:44 - 2014-02-13 23:59 - 000024064 _____ C:\Windows\zoek-delete.exe
2018-10-23 19:57 - 2018-10-23 19:57 - 000004724 _____ C:\Users\david\Desktop\rogue.txt
2018-10-23 15:58 - 2018-10-23 19:42 - 000028272 _____ C:\Windows\system32\Drivers\TrueSight.sys
2018-10-23 15:58 - 2018-10-23 16:15 - 000000000 ____D C:\ProgramData\RogueKiller
2018-10-23 15:25 - 2018-10-23 15:25 - 000000000 ____D C:\ProgramData\Sophos
2018-10-23 15:24 - 2018-10-23 15:24 - 000002775 _____ C:\Users\Public\Desktop\Sophos Virus Removal Tool.lnk
2018-10-23 15:24 - 2018-10-23 15:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos
2018-10-23 15:24 - 2018-10-23 15:24 - 000000000 ____D C:\Program Files (x86)\Sophos
2018-10-23 15:20 - 2018-10-23 15:21 - 206758184 _____ (Sophos Limited) C:\Users\david\Desktop\Sophos Virus Removal Tool.exe
2018-10-23 15:19 - 2018-10-23 15:19 - 000003125 _____ C:\Users\david\Desktop\malwary.txt
2018-10-22 16:30 - 2018-10-22 16:30 - 000000000 ____D C:\Users\david\Documents\Vlastní šablony Office
2018-10-22 16:27 - 2018-10-23 15:26 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2018-10-22 16:27 - 2018-10-22 16:27 - 000002553 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Word.lnk
2018-10-22 16:27 - 2018-10-22 16:27 - 000000000 ____D C:\Program Files\Microsoft Office 15
2018-10-22 16:16 - 2018-10-22 16:16 - 000014772 _____ C:\Users\david\Desktop\[CzT]Microsoft_Office_2016_v16_0_7571_2109_x86_x64_CZ_.torrent
2018-10-21 23:48 - 2018-10-21 23:48 - 000003278 _____ C:\Users\david\Desktop\malware.txt
2018-10-21 23:46 - 2018-10-21 23:46 - 080707680 _____ (Malwarebytes ) C:\Users\david\Desktop\mb3-setup-consumer-3.6.1.2711-1.0.463-1.0.7438.exe
2018-10-21 23:46 - 2018-10-21 23:46 - 000001912 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2018-10-21 23:46 - 2018-10-21 23:46 - 000000000 ____D C:\Users\david\AppData\Local\mbamtray
2018-10-21 23:46 - 2018-10-21 23:46 - 000000000 ____D C:\Users\david\AppData\Local\mbam
2018-10-21 23:46 - 2018-10-21 23:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2018-10-21 23:46 - 2018-10-21 23:46 - 000000000 ____D C:\ProgramData\Malwarebytes
2018-10-21 23:46 - 2018-10-21 23:46 - 000000000 ____D C:\Program Files\Malwarebytes
2018-10-21 23:46 - 2018-09-11 13:18 - 000152688 _____ (Malwarebytes) C:\Windows\system32\Drivers\mbae64.sys
2018-10-20 19:00 - 2018-10-20 19:00 - 000000000 ____D C:\Users\david\Documents\Assassin's Creed IV Black Flag
2018-10-20 18:52 - 2018-10-20 18:52 - 000001000 _____ C:\Users\Public\Desktop\Assassin's Creed IV Black Flag.lnk
2018-10-20 18:52 - 2018-10-20 18:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mr DJ
2018-10-20 18:42 - 2018-10-20 18:42 - 000000000 ____D C:\Program Files (x86)\Mr DJ
2018-10-19 23:38 - 2018-10-19 23:38 - 000016993 _____ C:\Users\david\Desktop\[CzT]Assassin_s_Creed_IV_Black_Flag_v_1_07_All_DLCs_2013_CZ_.torrent
2018-10-18 19:28 - 2018-10-18 19:28 - 000000643 _____ C:\Users\Public\Desktop\DOOM.lnk
2018-10-18 19:28 - 2018-10-18 19:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DOOM
2018-10-18 16:37 - 2018-10-18 16:37 - 000158266 _____ C:\Users\david\Desktop\[CzT]DOOM_2016_.torrent
2018-10-13 22:19 - 2018-10-13 22:19 - 000675984 _____ (Microsoft Corporation) C:\Windows\system32\msvcp140.dll
2018-10-13 22:19 - 2018-10-13 22:19 - 000457512 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp140.dll
2018-10-13 22:19 - 2018-10-13 22:19 - 000386712 _____ (Microsoft Corporation) C:\Windows\system32\vccorlib140.dll
2018-10-13 22:19 - 2018-10-13 22:19 - 000343192 _____ (Microsoft Corporation) C:\Windows\system32\concrt140.dll
2018-10-13 22:19 - 2018-10-13 22:19 - 000274072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vccorlib140.dll
2018-10-13 22:19 - 2018-10-13 22:19 - 000248624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\concrt140.dll
2018-10-13 22:19 - 2018-10-13 22:19 - 000089248 _____ (Microsoft Corporation) C:\Windows\system32\vcruntime140.dll
2018-10-13 22:19 - 2018-10-13 22:19 - 000087352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vcruntime140.dll
2018-10-13 22:19 - 2018-10-13 22:19 - 000031896 _____ (Microsoft Corporation) C:\Windows\system32\msvcp140_1.dll
2018-10-13 22:19 - 2018-10-13 22:19 - 000028472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvcp140_1.dll
2018-10-13 13:23 - 2018-10-13 13:23 - 000378584 _____ (AVAST Software) C:\Windows\system32\aswBoot.exe
2018-10-13 13:23 - 2018-10-13 13:23 - 000042456 _____ (AVAST Software) C:\Windows\system32\Drivers\aswKbd.sys
2018-10-12 15:35 - 2018-10-11 00:38 - 000133432 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2018-10-12 15:33 - 2018-10-12 00:34 - 000978312 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2018-10-12 15:33 - 2018-10-12 00:34 - 000978312 _____ C:\Windows\system32\vulkan-1.dll
2018-10-12 15:33 - 2018-10-12 00:34 - 000845192 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2018-10-12 15:33 - 2018-10-12 00:34 - 000845192 _____ C:\Windows\SysWOW64\vulkan-1.dll
2018-10-12 15:33 - 2018-10-12 00:34 - 000268168 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2018-10-12 15:33 - 2018-10-12 00:34 - 000268168 _____ C:\Windows\system32\vulkaninfo.exe
2018-10-12 15:33 - 2018-10-12 00:34 - 000243592 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2018-10-12 15:33 - 2018-10-12 00:34 - 000243592 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2018-10-12 15:33 - 2018-10-12 00:33 - 040254320 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2018-10-12 15:33 - 2018-10-12 00:33 - 004938152 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2018-10-12 15:33 - 2018-10-12 00:33 - 004310792 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2018-10-12 15:33 - 2018-10-12 00:33 - 002017888 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6441634.dll
2018-10-12 15:33 - 2018-10-12 00:33 - 001997736 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2018-10-12 15:33 - 2018-10-12 00:33 - 001508104 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2018-10-12 15:33 - 2018-10-12 00:33 - 001468456 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6441634.dll
2018-10-12 15:33 - 2018-10-12 00:33 - 001455576 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2018-10-12 15:33 - 2018-10-12 00:33 - 001122672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2018-10-12 15:33 - 2018-10-12 00:33 - 000750448 _____ (NVIDIA Corporation) C:\Windows\system32\nvDecMFTMjpeg.dll
2018-10-12 15:33 - 2018-10-12 00:33 - 000631704 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2018-10-12 15:33 - 2018-10-12 00:33 - 000608680 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvDecMFTMjpeg.dll
2018-10-12 15:33 - 2018-10-12 00:33 - 000522200 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2018-10-12 15:33 - 2018-10-12 00:32 - 035152136 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2018-10-12 15:33 - 2018-10-12 00:31 - 035298272 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2018-10-12 15:33 - 2018-10-12 00:31 - 029973592 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2018-10-12 15:33 - 2018-10-12 00:31 - 015907400 _____ (NVIDIA Corporation) C:\Windows\system32\nvptxJitCompiler.dll
2018-10-12 15:33 - 2018-10-12 00:31 - 013203056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvptxJitCompiler.dll
2018-10-12 15:33 - 2018-10-12 00:31 - 001471584 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFThevc.dll
2018-10-12 15:33 - 2018-10-12 00:31 - 001462376 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncMFTH264.dll
2018-10-12 15:33 - 2018-10-12 00:31 - 001167568 _____ (NVIDIA Corporation) C:\Windows\system32\nvfatbinaryLoader.dll
2018-10-12 15:33 - 2018-10-12 00:31 - 001152152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFThevc.dll
2018-10-12 15:33 - 2018-10-12 00:31 - 001145704 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncMFTH264.dll
2018-10-12 15:33 - 2018-10-12 00:31 - 000914752 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvfatbinaryLoader.dll
2018-10-12 15:33 - 2018-10-12 00:31 - 000822744 _____ (NVIDIA Corporation) C:\Windows\system32\nvmcumd.dll
2018-10-12 15:33 - 2018-10-12 00:31 - 000794608 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2018-10-12 15:33 - 2018-10-12 00:31 - 000637648 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2018-10-12 15:33 - 2018-10-12 00:30 - 019705920 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2018-10-12 15:33 - 2018-10-12 00:30 - 016985016 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2018-10-12 15:33 - 2018-10-12 00:30 - 004249728 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2018-10-12 15:33 - 2018-10-11 09:19 - 000047576 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2018-10-10 20:12 - 2018-10-10 20:12 - 000000000 ____D C:\Users\david\AppData\Roaming\ModLauncherWPF
2018-10-10 15:49 - 2018-09-21 11:23 - 000257848 _____ (Microsoft Corporation) C:\Windows\system32\AppVFileSystemMetadata.dll
2018-10-10 15:49 - 2018-09-21 11:21 - 001786168 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntVirtualization.dll
2018-10-10 15:49 - 2018-09-21 11:21 - 001626936 _____ (Microsoft Corporation) C:\Windows\system32\AppVIntegration.dll
2018-10-10 15:49 - 2018-09-21 11:21 - 001422648 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystemController.dll
2018-10-10 15:49 - 2018-09-21 11:21 - 001038136 _____ (Microsoft Corporation) C:\Windows\system32\AppVPolicy.dll
2018-10-10 15:49 - 2018-09-21 11:21 - 000954368 _____ (Microsoft Corporation) C:\Windows\system32\AppVManifest.dll
2018-10-10 15:49 - 2018-09-21 11:21 - 000830264 _____ (Microsoft Corporation) C:\Windows\system32\AppVOrchestration.dll
2018-10-10 15:49 - 2018-09-21 11:21 - 000825144 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntStreamingManager.dll
2018-10-10 15:49 - 2018-09-21 11:21 - 000749880 _____ (Microsoft Corporation) C:\Windows\system32\AppVReporting.dll
2018-10-10 15:49 - 2018-09-21 11:21 - 000670008 _____ (Microsoft Corporation) C:\Windows\system32\AppVCatalog.dll
2018-10-10 15:49 - 2018-09-21 11:21 - 000652288 _____ (Microsoft Corporation) C:\Windows\system32\AppVPublishing.dll
2018-10-10 15:49 - 2018-09-21 11:21 - 000495416 _____ (Microsoft Corporation) C:\Windows\system32\TransportDSA.dll
2018-10-10 15:49 - 2018-09-21 11:21 - 000399672 _____ (Microsoft Corporation) C:\Windows\system32\AppVScripting.dll
2018-10-10 15:49 - 2018-09-21 11:21 - 000231424 _____ (Microsoft Corporation) C:\Windows\system32\AppVShNotify.exe
2018-10-10 15:49 - 2018-09-21 11:21 - 000228152 _____ (Microsoft Corporation) C:\Windows\system32\AppVStreamMap.dll
2018-10-10 15:49 - 2018-09-21 11:21 - 000201528 _____ (Microsoft Corporation) C:\Windows\system32\AppVStreamingUX.dll
2018-10-10 15:49 - 2018-09-21 11:21 - 000180736 _____ (Microsoft Corporation) C:\Windows\system32\AppVDllSurrogate.exe
2018-10-10 15:49 - 2018-09-21 11:21 - 000173056 _____ (Microsoft Corporation) C:\Windows\system32\AppVNice.exe
2018-10-10 15:49 - 2018-09-21 11:21 - 000034304 _____ C:\Windows\system32\SyncAppvPublishingServer.exe
2018-10-10 15:49 - 2018-09-21 11:18 - 021386888 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2018-10-10 15:49 - 2018-09-21 11:01 - 000171520 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
2018-10-10 15:49 - 2018-09-21 10:22 - 020381784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2018-10-10 15:49 - 2018-09-21 10:12 - 000150016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll
2018-10-10 15:49 - 2018-09-21 06:14 - 000661056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\evr.dll
2018-10-10 15:49 - 2018-09-21 06:13 - 000480568 _____ (Microsoft Corporation) C:\Windows\system32\dcntel.dll
2018-10-10 15:49 - 2018-09-21 06:12 - 001035256 _____ (Microsoft Corporation) C:\Windows\system32\ApplyTrustOffline.exe
2018-10-10 15:49 - 2018-09-21 06:11 - 000753056 _____ (Microsoft Corporation) C:\Windows\system32\evr.dll
2018-10-10 15:49 - 2018-09-21 06:09 - 004790160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfcore.dll
2018-10-10 15:49 - 2018-09-21 06:09 - 002253696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2018-10-10 15:49 - 2018-09-21 06:09 - 001427968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppxPackaging.dll
2018-10-10 15:49 - 2018-09-21 06:09 - 001062920 _____ (Microsoft Corporation) C:\Windows\system32\SecConfig.efi
2018-10-10 15:49 - 2018-09-21 06:09 - 000129088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mfps.dll
2018-10-10 15:49 - 2018-09-21 06:08 - 004404720 _____ (Microsoft Corporation) C:\Windows\system32\mfcore.dll
2018-10-10 15:49 - 2018-09-21 06:08 - 002765344 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2018-10-10 15:49 - 2018-09-21 06:08 - 001566720 _____ (Microsoft Corporation) C:\Windows\system32\AppxPackaging.dll
2018-10-10 15:49 - 2018-09-21 06:08 - 001456720 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2018-10-10 15:49 - 2018-09-21 06:08 - 001257864 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2018-10-10 15:49 - 2018-09-21 06:08 - 001140672 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2018-10-10 15:49 - 2018-09-21 06:08 - 000982600 _____ (Microsoft Corporation) C:\Windows\system32\winresume.exe
2018-10-10 15:49 - 2018-09-21 06:08 - 000709936 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\cng.sys
2018-10-10 15:49 - 2018-09-21 06:08 - 000261008 _____ (Microsoft Corporation) C:\Windows\system32\mfps.dll
2018-10-10 15:49 - 2018-09-21 06:08 - 000170808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2018-10-10 15:49 - 2018-09-21 06:07 - 000604664 _____ (Microsoft Corporation) C:\Windows\system32\securekernel.exe
2018-10-10 15:49 - 2018-09-21 05:58 - 005307392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2018-10-10 15:49 - 2018-09-21 05:57 - 002900992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dwmcore.dll
2018-10-10 15:49 - 2018-09-21 05:57 - 001361408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSPhotography.dll
2018-10-10 15:49 - 2018-09-21 05:56 - 000331264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgeIso.dll
2018-10-10 15:49 - 2018-09-21 05:54 - 000251904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msIso.dll
2018-10-10 15:49 - 2018-09-21 05:53 - 001006080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wpnapps.dll
2018-10-10 15:49 - 2018-09-21 05:43 - 001627136 _____ (Microsoft Corporation) C:\Windows\system32\enterprisecsps.dll
2018-10-10 15:49 - 2018-09-21 05:42 - 000209408 _____ (Microsoft Corporation) C:\Windows\system32\AppXApplicabilityBlob.dll
2018-10-10 15:49 - 2018-09-21 05:41 - 003396096 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentServer.dll
2018-10-10 15:49 - 2018-09-21 05:40 - 002368000 _____ (Microsoft Corporation) C:\Windows\system32\WebRuntimeManager.dll
2018-10-10 15:49 - 2018-09-21 05:39 - 003320320 _____ (Microsoft Corporation) C:\Windows\system32\dwmcore.dll
2018-10-10 15:49 - 2018-09-21 05:39 - 001708544 _____ (Microsoft Corporation) C:\Windows\system32\MSPhotography.dll
2018-10-10 15:49 - 2018-09-21 05:39 - 001535488 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2018-10-10 15:49 - 2018-09-21 05:39 - 000625152 _____ (Microsoft Corporation) C:\Windows\system32\PsmServiceExtHost.dll
2018-10-10 15:49 - 2018-09-21 05:38 - 002172928 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.onecore.dll
2018-10-10 15:49 - 2018-09-21 05:38 - 001551360 _____ (Microsoft Corporation) C:\Windows\system32\AppXDeploymentExtensions.desktop.dll
2018-10-10 15:49 - 2018-09-21 05:37 - 002904064 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2018-10-10 15:49 - 2018-09-21 05:37 - 002236928 _____ (Microsoft Corporation) C:\Windows\system32\win32kbase.sys
2018-10-10 15:49 - 2018-09-21 05:37 - 001211904 _____ (Microsoft Corporation) C:\Windows\system32\wpnapps.dll
2018-10-10 15:49 - 2018-09-21 05:37 - 000604160 _____ (Microsoft Corporation) C:\Windows\system32\updatehandlers.dll
2018-10-10 15:49 - 2018-09-21 05:36 - 001159680 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2018-10-10 15:49 - 2018-09-21 05:36 - 001034240 _____ (Microsoft Corporation) C:\Windows\system32\modernexecserver.dll
2018-10-10 15:49 - 2018-09-21 05:36 - 000932352 _____ (Microsoft Corporation) C:\Windows\system32\rasmans.dll
2018-10-10 15:49 - 2018-09-21 05:36 - 000505344 _____ (Microsoft Corporation) C:\Windows\system32\edgeIso.dll
2018-10-10 15:49 - 2018-09-21 05:36 - 000401920 _____ (Microsoft Corporation) C:\Windows\system32\rascustom.dll
2018-10-10 15:49 - 2018-09-20 11:40 - 000348160 _____ (Microsoft Corporation) C:\Windows\system32\MusNotifyIcon.exe
2018-10-10 15:49 - 2018-09-20 11:37 - 001634944 _____ (Microsoft Corporation) C:\Windows\system32\gdi32full.dll
2018-10-10 15:49 - 2018-09-20 11:23 - 006602240 _____ (Microsoft Corporation) C:\Windows\system32\twinui.dll
2018-10-10 15:49 - 2018-09-20 11:22 - 013572096 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2018-10-10 15:49 - 2018-09-20 11:19 - 001121792 _____ (Microsoft Corporation) C:\Windows\system32\TSWorkspace.dll
2018-10-10 15:49 - 2018-09-20 11:18 - 003649024 _____ (Microsoft Corporation) C:\Windows\system32\win32kfull.sys
2018-10-10 15:49 - 2018-09-20 11:18 - 000392192 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2018-10-10 15:49 - 2018-09-20 11:18 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\rdpinit.exe
2018-10-10 15:49 - 2018-09-20 11:17 - 002874368 _____ (Microsoft Corporation) C:\Windows\system32\themeui.dll
2018-10-10 15:49 - 2018-09-20 11:17 - 001856000 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2018-10-10 15:49 - 2018-09-20 11:17 - 001364992 _____ (Microsoft Corporation) C:\Windows\system32\bcastdvruserservice.dll
2018-10-10 15:49 - 2018-09-20 11:17 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\rdpshell.exe
2018-10-10 15:49 - 2018-09-20 11:16 - 000127488 _____ (Microsoft Corporation) C:\Windows\system32\wmpshell.dll
2018-10-10 15:49 - 2018-09-20 10:46 - 001454440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32full.dll
2018-10-10 15:49 - 2018-09-20 10:35 - 005669888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\twinui.dll
2018-10-10 15:49 - 2018-09-20 10:34 - 012500992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2018-10-10 15:49 - 2018-09-20 10:30 - 000344576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2018-10-10 15:49 - 2018-09-20 10:29 - 002891776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\win32kfull.sys
2018-10-10 15:49 - 2018-09-20 10:29 - 002824704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\themeui.dll
2018-10-10 15:49 - 2018-09-20 10:29 - 001586176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2018-10-10 15:49 - 2018-09-20 10:28 - 000102400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmpshell.dll
2018-10-10 15:49 - 2018-09-20 08:43 - 001008640 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.MixedRealityCapture.dll
2018-10-10 15:49 - 2018-09-20 07:52 - 000868864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.MixedRealityCapture.dll
2018-10-10 15:49 - 2018-09-20 06:29 - 006569856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Media.Protection.PlayReady.dll
2018-10-10 15:49 - 2018-09-20 06:29 - 006039368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\windows.storage.dll
2018-10-10 15:49 - 2018-09-20 06:29 - 001989232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2018-10-10 15:49 - 2018-09-20 06:29 - 001513032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2018-10-10 15:49 - 2018-09-20 06:29 - 000357056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcryptprimitives.dll
2018-10-10 15:49 - 2018-09-20 06:28 - 001129544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msvproc.dll
2018-10-10 15:49 - 2018-09-20 06:28 - 000581792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MSVideoDSP.dll
2018-10-10 15:49 - 2018-09-20 06:28 - 000567256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\CoreMessaging.dll
2018-10-10 15:49 - 2018-09-20 06:21 - 022013440 _____ (Microsoft Corporation) C:\Windows\SysWOW64\edgehtml.dll
2018-10-10 15:49 - 2018-09-20 06:17 - 006661632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2018-10-10 15:49 - 2018-09-20 06:15 - 019404288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2018-10-10 15:49 - 2018-09-20 06:13 - 003711488 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2018-10-10 15:49 - 2018-09-20 06:12 - 000272200 _____ (Microsoft Corporation) C:\Windows\system32\SgrmEnclave.dll
2018-10-10 15:49 - 2018-09-20 06:12 - 000269128 _____ (Microsoft Corporation)

Reklama
N0váček
Level 1.5
Level 1.5
Příspěvky: 134
Registrován: prosinec 14
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu

Příspěvekod N0váček » 25 říj 2018 16:14

C:\Windows\system32\SgrmEnclave_secure.dll
2018-10-10 15:49 - 2018-09-20 06:11 - 005777920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Chakra.dll
2018-10-10 15:49 - 2018-09-20 06:11 - 000608768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\EdgeManager.dll
2018-10-10 15:49 - 2018-09-20 06:11 - 000578560 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webplatstorageserver.dll
2018-10-10 15:49 - 2018-09-20 06:11 - 000561152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2018-10-10 15:49 - 2018-09-20 06:11 - 000074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dtdump.exe
2018-10-10 15:49 - 2018-09-20 06:10 - 002719032 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2018-10-10 15:49 - 2018-09-20 06:10 - 001221128 _____ (Microsoft Corporation) C:\Windows\system32\hvix64.exe
2018-10-10 15:49 - 2018-09-20 06:10 - 001029432 _____ (Microsoft Corporation) C:\Windows\system32\hvax64.exe
2018-10-10 15:49 - 2018-09-20 06:10 - 000566800 _____ (Microsoft Corporation) C:\Windows\system32\tcblaunch.exe
2018-10-10 15:49 - 2018-09-20 06:10 - 000500536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2018-10-10 15:49 - 2018-09-20 06:10 - 000355840 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PhotoMetadataHandler.dll
2018-10-10 15:49 - 2018-09-20 06:10 - 000134968 _____ (Microsoft Corporation) C:\Windows\system32\hvloader.dll
2018-10-10 15:49 - 2018-09-20 06:10 - 000076088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hvservice.sys
2018-10-10 15:49 - 2018-09-20 06:09 - 009089848 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2018-10-10 15:49 - 2018-09-20 06:09 - 007520096 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Media.Protection.PlayReady.dll
2018-10-10 15:49 - 2018-09-20 06:09 - 007432136 _____ (Microsoft Corporation) C:\Windows\system32\windows.storage.dll
2018-10-10 15:49 - 2018-09-20 06:09 - 002825232 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgkrnl.sys
2018-10-10 15:49 - 2018-09-20 06:09 - 002462888 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2018-10-10 15:49 - 2018-09-20 06:09 - 002421248 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2018-10-10 15:49 - 2018-09-20 06:09 - 001767096 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2018-10-10 15:49 - 2018-09-20 06:09 - 001540096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rdpserverbase.dll
2018-10-10 15:49 - 2018-09-20 06:09 - 001097744 _____ (Microsoft Corporation) C:\Windows\system32\msvproc.dll
2018-10-10 15:49 - 2018-09-20 06:09 - 000885952 _____ (Microsoft Corporation) C:\Windows\system32\CoreMessaging.dll
2018-10-10 15:49 - 2018-09-20 06:09 - 000793088 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms2.sys
2018-10-10 15:49 - 2018-09-20 06:09 - 000713472 _____ (Microsoft Corporation) C:\Windows\system32\MSVideoDSP.dll
2018-10-10 15:49 - 2018-09-20 06:09 - 000412984 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dxgmms1.sys
2018-10-10 15:49 - 2018-09-20 06:08 - 004191232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2018-10-10 15:49 - 2018-09-20 06:08 - 001627648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2018-10-10 15:49 - 2018-09-20 05:53 - 025851392 _____ (Microsoft Corporation) C:\Windows\system32\edgehtml.dll
2018-10-10 15:49 - 2018-09-20 05:46 - 022715392 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2018-10-10 15:49 - 2018-09-20 05:44 - 008188928 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2018-10-10 15:49 - 2018-09-20 05:44 - 004383744 _____ (Microsoft Corporation) C:\Windows\system32\EdgeContent.dll
2018-10-10 15:49 - 2018-09-20 05:43 - 000052736 _____ C:\Windows\system32\runexehelper.exe
2018-10-10 15:49 - 2018-09-20 05:42 - 004866560 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2018-10-10 15:49 - 2018-09-20 05:42 - 000433664 _____ (Microsoft Corporation) C:\Windows\system32\MusNotification.exe
2018-10-10 15:49 - 2018-09-20 05:42 - 000099328 _____ (Microsoft Corporation) C:\Windows\system32\utcutil.dll
2018-10-10 15:49 - 2018-09-20 05:41 - 007577088 _____ (Microsoft Corporation) C:\Windows\system32\Chakra.dll
2018-10-10 15:49 - 2018-09-20 05:41 - 000898560 _____ (Microsoft Corporation) C:\Windows\system32\MusUpdateHandlers.dll
2018-10-10 15:49 - 2018-09-20 05:41 - 000894464 _____ (Microsoft Corporation) C:\Windows\system32\webplatstorageserver.dll
2018-10-10 15:49 - 2018-09-20 05:41 - 000319488 _____ (Microsoft Corporation) C:\Windows\system32\MusNotificationUx.exe
2018-10-10 15:49 - 2018-09-20 05:41 - 000154112 _____ (Microsoft Corporation) C:\Windows\system32\Chakradiag.dll
2018-10-10 15:49 - 2018-09-20 05:40 - 003090432 _____ (Microsoft Corporation) C:\Windows\system32\diagtrack.dll
2018-10-10 15:49 - 2018-09-20 05:40 - 000808448 _____ (Microsoft Corporation) C:\Windows\system32\EdgeManager.dll
2018-10-10 15:49 - 2018-09-20 05:40 - 000726528 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2018-10-10 15:49 - 2018-09-20 05:38 - 001724416 _____ (Microsoft Corporation) C:\Windows\system32\rdpserverbase.dll
2018-10-10 15:49 - 2018-09-20 05:38 - 000433664 _____ (Microsoft Corporation) C:\Windows\system32\PhotoMetadataHandler.dll
2018-10-10 15:49 - 2018-09-20 05:37 - 004615680 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2018-10-10 15:49 - 2018-09-20 05:37 - 001804288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2018-10-10 15:49 - 2018-09-20 05:36 - 001375232 _____ (Microsoft Corporation) C:\Windows\system32\usocore.dll
2018-10-10 15:49 - 2018-09-20 04:21 - 000001312 _____ C:\Windows\system32\tcbres.wim
2018-10-10 15:49 - 2018-09-20 03:28 - 000343552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrd3x40.dll
2018-10-10 15:49 - 2018-09-08 10:12 - 000452112 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2018-10-10 15:49 - 2018-09-08 10:07 - 002868536 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2018-10-10 15:49 - 2018-09-08 10:07 - 001610552 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2018-10-10 15:49 - 2018-09-08 10:07 - 000792376 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2018-10-10 15:49 - 2018-09-08 10:07 - 000689464 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2018-10-10 15:49 - 2018-09-08 10:07 - 000612360 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2018-10-10 15:49 - 2018-09-08 10:07 - 000309560 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2018-10-10 15:49 - 2018-09-08 10:07 - 000144696 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2018-10-10 15:49 - 2018-09-08 10:07 - 000069944 _____ (Microsoft Corporation) C:\Windows\system32\win32appinventorycsp.dll
2018-10-10 15:49 - 2018-09-08 10:03 - 002267136 _____ (Microsoft Corporation) C:\Windows\system32\AppVEntSubsystems64.dll
2018-10-10 15:49 - 2018-09-08 10:02 - 000645112 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2018-10-10 15:49 - 2018-09-08 10:02 - 000540984 _____ (Microsoft Corporation) C:\Windows\system32\pcasvc.dll
2018-10-10 15:49 - 2018-09-08 09:58 - 001639352 _____ (Microsoft Corporation) C:\Windows\system32\user32.dll
2018-10-10 15:49 - 2018-09-08 09:58 - 001520744 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2018-10-10 15:49 - 2018-09-08 09:57 - 000204800 _____ (Microsoft Corporation) C:\Windows\system32\basecsp.dll
2018-10-10 15:49 - 2018-09-08 09:44 - 000068096 _____ (Microsoft Corporation) C:\Windows\system32\fdBth.dll
2018-10-10 15:49 - 2018-09-08 09:43 - 000085504 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll
2018-10-10 15:49 - 2018-09-08 09:43 - 000047616 _____ (Microsoft Corporation) C:\Windows\system32\SCardBi.dll
2018-10-10 15:49 - 2018-09-08 09:42 - 000256000 _____ (Microsoft Corporation) C:\Windows\system32\scksp.dll
2018-10-10 15:49 - 2018-09-08 09:42 - 000188928 _____ (Microsoft Corporation) C:\Windows\system32\certprop.dll
2018-10-10 15:49 - 2018-09-08 09:42 - 000169984 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.XamlHost.dll
2018-10-10 15:49 - 2018-09-08 09:42 - 000114176 _____ (Microsoft Corporation) C:\Windows\system32\bthci.dll
2018-10-10 15:49 - 2018-09-08 09:41 - 000258560 _____ (Microsoft Corporation) C:\Windows\system32\SCardSvr.dll
2018-10-10 15:49 - 2018-09-08 09:40 - 001724928 _____ (Microsoft Corporation) C:\Windows\system32\Windows.UI.Immersive.dll
2018-10-10 15:49 - 2018-09-08 09:40 - 000677888 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2018-10-10 15:49 - 2018-09-08 09:40 - 000593408 _____ (Microsoft Corporation) C:\Windows\system32\cryptui.dll
2018-10-10 15:49 - 2018-09-08 09:40 - 000522240 _____ (Microsoft Corporation) C:\Windows\system32\winspool.drv
2018-10-10 15:49 - 2018-09-08 09:40 - 000402944 _____ (Microsoft Corporation) C:\Windows\system32\bdesvc.dll
2018-10-10 15:49 - 2018-09-08 09:40 - 000249344 _____ (Microsoft Corporation) C:\Windows\system32\bthprops.cpl
2018-10-10 15:49 - 2018-09-08 09:39 - 005505024 _____ (Microsoft Corporation) C:\Windows\system32\aclui.dll
2018-10-10 15:49 - 2018-09-08 09:39 - 002052096 _____ (Microsoft Corporation) C:\Windows\system32\wsp_fs.dll
2018-10-10 15:49 - 2018-09-08 09:39 - 001787904 _____ (Microsoft Corporation) C:\Windows\system32\wsp_health.dll
2018-10-10 15:49 - 2018-09-08 09:39 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\resutils.dll
2018-10-10 15:49 - 2018-09-08 09:38 - 001288192 _____ (Microsoft Corporation) C:\Windows\system32\SystemSettings.Handlers.dll
2018-10-10 15:49 - 2018-09-08 09:38 - 001004544 _____ (Microsoft Corporation) C:\Windows\system32\clusapi.dll
2018-10-10 15:49 - 2018-09-08 09:38 - 000986112 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2018-10-10 15:49 - 2018-09-08 09:38 - 000882688 _____ (Microsoft Corporation) C:\Windows\system32\SmartcardCredentialProvider.dll
2018-10-10 15:49 - 2018-09-08 09:38 - 000836608 _____ (Microsoft Corporation) C:\Windows\system32\win32spl.dll
2018-10-10 15:49 - 2018-09-08 09:37 - 000091136 _____ (Microsoft Corporation) C:\Windows\system32\mcbuilder.exe
2018-10-10 15:49 - 2018-09-08 09:17 - 001540104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\AppVEntSubsystems32.dll
2018-10-10 15:49 - 2018-09-08 09:16 - 000482080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2018-10-10 15:49 - 2018-09-08 09:14 - 001328056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2018-10-10 15:49 - 2018-09-08 09:13 - 001626656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user32.dll
2018-10-10 15:49 - 2018-09-08 09:13 - 000181288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\basecsp.dll
2018-10-10 15:49 - 2018-09-08 09:03 - 000084992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll
2018-10-10 15:49 - 2018-09-08 09:03 - 000059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdBth.dll
2018-10-10 15:49 - 2018-09-08 09:02 - 000236032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scksp.dll
2018-10-10 15:49 - 2018-09-08 09:00 - 000548864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptui.dll
2018-10-10 15:49 - 2018-09-08 08:59 - 001530368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.Immersive.dll
2018-10-10 15:49 - 2018-09-08 08:59 - 001452544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_fs.dll
2018-10-10 15:49 - 2018-09-08 08:59 - 000485376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\resutils.dll
2018-10-10 15:49 - 2018-09-08 08:59 - 000133632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.UI.XamlHost.dll
2018-10-10 15:49 - 2018-09-08 08:58 - 001308672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wsp_health.dll
2018-10-10 15:49 - 2018-09-08 08:58 - 000897536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2018-10-10 15:49 - 2018-09-08 08:58 - 000775680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clusapi.dll
2018-10-10 15:49 - 2018-09-08 08:57 - 005391360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aclui.dll
2018-10-10 15:49 - 2018-09-08 08:57 - 000625664 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SmartcardCredentialProvider.dll
2018-10-10 15:49 - 2018-09-08 08:57 - 000423936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winspool.drv
2018-10-10 15:49 - 2018-09-08 08:57 - 000223744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bthprops.cpl
2018-10-10 15:49 - 2018-09-08 08:56 - 000080384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mcbuilder.exe
2018-10-10 15:49 - 2018-09-08 06:08 - 000462880 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2018-10-10 15:49 - 2018-09-08 05:59 - 000433664 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2018-10-10 15:49 - 2018-09-08 05:59 - 000361544 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Storage.ApplicationData.dll
2018-10-10 15:49 - 2018-09-08 05:58 - 000744976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fvevol.sys
2018-10-10 15:49 - 2018-09-08 05:58 - 000376120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fastfat.sys
2018-10-10 15:49 - 2018-09-08 05:58 - 000368440 _____ (Microsoft Corporation) C:\Windows\system32\thumbcache.dll
2018-10-10 15:49 - 2018-09-08 05:57 - 002571128 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2018-10-10 15:49 - 2018-09-08 05:57 - 001016984 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase.dll
2018-10-10 15:49 - 2018-09-08 05:57 - 000930616 _____ (Microsoft Corporation) C:\Windows\system32\WWAHost.exe
2018-10-10 15:49 - 2018-09-08 05:57 - 000482384 _____ (Microsoft Corporation) C:\Windows\system32\ucrtbase_enclave.dll
2018-10-10 15:49 - 2018-09-08 05:57 - 000368448 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2018-10-10 15:49 - 2018-09-08 05:57 - 000267576 _____ (Microsoft Corporation) C:\Windows\system32\browserbroker.dll
2018-10-10 15:49 - 2018-09-08 05:51 - 000380728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\aepic.dll
2018-10-10 15:49 - 2018-09-08 05:45 - 000295416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\thumbcache.dll
2018-10-10 15:49 - 2018-09-08 05:45 - 000286824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Storage.ApplicationData.dll
2018-10-10 15:49 - 2018-09-08 05:44 - 001980984 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2018-10-10 15:49 - 2018-09-08 05:44 - 000829752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe
2018-10-10 15:49 - 2018-09-08 05:43 - 001174448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ucrtbase.dll
2018-10-10 15:49 - 2018-09-08 05:43 - 000269104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2018-10-10 15:49 - 2018-09-08 05:32 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\Dumpstorport.sys
2018-10-10 15:49 - 2018-09-08 05:31 - 000342528 _____ (Microsoft Corporation) C:\Windows\system32\browserexport.exe
2018-10-10 15:49 - 2018-09-08 05:31 - 000272384 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Bluetooth.Proxy.dll
2018-10-10 15:49 - 2018-09-08 05:30 - 003601920 _____ (Microsoft Corporation) C:\Windows\system32\Microsoft.Bluetooth.Service.dll
2018-10-10 15:49 - 2018-09-08 05:30 - 000189440 _____ (Microsoft Corporation) C:\Windows\system32\BluetoothApis.dll
2018-10-10 15:49 - 2018-09-08 05:30 - 000137728 _____ (Microsoft Corporation) C:\Windows\system32\InputLocaleManager.dll
2018-10-10 15:49 - 2018-09-08 05:30 - 000115200 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidbth.sys
2018-10-10 15:49 - 2018-09-08 05:30 - 000101888 _____ (Microsoft Corporation) C:\Windows\system32\BthRadioMedia.dll
2018-10-10 15:49 - 2018-09-08 05:29 - 004771840 _____ (Microsoft Corporation) C:\Windows\system32\InputService.dll
2018-10-10 15:49 - 2018-09-08 05:29 - 000358912 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\exfat.sys
2018-10-10 15:49 - 2018-09-08 05:29 - 000241152 _____ (Microsoft Corporation) C:\Windows\system32\HttpsDataSource.dll
2018-10-10 15:49 - 2018-09-08 05:29 - 000183808 _____ (Microsoft Corporation) C:\Windows\system32\bthserv.dll
2018-10-10 15:49 - 2018-09-08 05:29 - 000174080 _____ (Microsoft Corporation) C:\Windows\system32\wuuhosdeployment.dll
2018-10-10 15:49 - 2018-09-08 05:28 - 000481280 _____ (Microsoft Corporation) C:\Windows\system32\ngccredprov.dll
2018-10-10 15:49 - 2018-09-08 05:28 - 000473088 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2018-10-10 15:49 - 2018-09-08 05:28 - 000273408 _____ (Microsoft Corporation) C:\Windows\system32\ubpm.dll
2018-10-10 15:49 - 2018-09-08 05:28 - 000265728 _____ (Microsoft Corporation) C:\Windows\system32\psmsrv.dll
2018-10-10 15:49 - 2018-09-08 05:28 - 000153088 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Microsoft.Bluetooth.Proxy.dll
2018-10-10 15:49 - 2018-09-08 05:27 - 003348992 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2018-10-10 15:49 - 2018-09-08 05:27 - 000983040 _____ (Microsoft Corporation) C:\Windows\system32\wbiosrvc.dll
2018-10-10 15:49 - 2018-09-08 05:27 - 000596992 _____ (Microsoft Corporation) C:\Windows\system32\TileDataRepository.dll
2018-10-10 15:49 - 2018-09-08 05:27 - 000499200 _____ (Microsoft Corporation) C:\Windows\system32\winipcfile.dll
2018-10-10 15:49 - 2018-09-08 05:27 - 000301056 _____ (Microsoft Corporation) C:\Windows\system32\ProximityService.dll
2018-10-10 15:49 - 2018-09-08 05:27 - 000271872 _____ (Microsoft Corporation) C:\Windows\system32\dafBth.dll
2018-10-10 15:49 - 2018-09-08 05:26 - 002328064 _____ (Microsoft Corporation) C:\Windows\system32\winmsipc.dll
2018-10-10 15:49 - 2018-09-08 05:26 - 000814592 _____ (Microsoft Corporation) C:\Windows\system32\ieproxy.dll
2018-10-10 15:49 - 2018-09-08 05:26 - 000784896 _____ (Microsoft Corporation) C:\Windows\system32\ngcsvc.dll
2018-10-10 15:49 - 2018-09-08 05:26 - 000471552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TileDataRepository.dll
2018-10-10 15:49 - 2018-09-08 05:26 - 000387584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ngccredprov.dll
2018-10-10 15:49 - 2018-09-08 05:26 - 000365568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieproxy.dll
2018-10-10 15:49 - 2018-09-08 05:26 - 000359424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winipcfile.dll
2018-10-10 15:49 - 2018-09-08 05:26 - 000142848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\BluetoothApis.dll
2018-10-10 15:49 - 2018-09-08 05:25 - 003553792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\InputService.dll
2018-10-10 15:49 - 2018-09-08 05:25 - 002789376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2018-10-10 15:49 - 2018-09-08 05:25 - 000882688 _____ (Microsoft Corporation) C:\Windows\system32\winipcsecproc.dll
2018-10-10 15:49 - 2018-09-08 05:25 - 000466432 _____ (Microsoft Corporation) C:\Windows\system32\wuuhext.dll
2018-10-10 15:49 - 2018-09-08 05:25 - 000415744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2018-10-10 15:49 - 2018-09-08 05:25 - 000341504 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Networking.Proximity.dll
2018-10-10 15:49 - 2018-09-08 05:24 - 001457664 _____ (Microsoft Corporation) C:\Windows\system32\dosvc.dll
2018-10-10 15:49 - 2018-09-08 05:24 - 000899072 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2018-10-10 15:49 - 2018-09-08 05:24 - 000845824 _____ (Microsoft Corporation) C:\Windows\system32\fveapi.dll
2018-10-10 15:49 - 2018-09-08 05:24 - 000463360 _____ (Microsoft Corporation) C:\Windows\system32\das.dll
2018-10-10 15:49 - 2018-09-08 05:23 - 001655296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winmsipc.dll
2018-10-10 15:49 - 2018-09-08 05:23 - 000807936 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winipcsecproc.dll
2018-10-10 15:49 - 2018-09-08 05:23 - 000667136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fveapi.dll
2018-10-10 15:49 - 2018-09-08 05:23 - 000314368 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Networking.Proximity.dll
2018-10-10 15:49 - 2018-09-08 05:22 - 000778240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2018-10-10 15:37 - 2018-10-10 15:37 - 018116725 _____ C:\Users\david\Desktop\XCOM2 CZ 2.0.1 LW.zip
2018-10-10 15:37 - 2018-10-10 15:37 - 000000202 _____ C:\Users\david\Desktop\XCOM 2.url
2018-10-04 16:06 - 2018-10-04 16:06 - 000118726 _____ C:\Users\david\Desktop\[CzT]Fallout_4_Complete_Pack_2016_.torrent
2018-10-04 16:05 - 2018-10-04 16:05 - 000185259 _____ C:\Users\david\Desktop\[CzT]Fallout_4_v_1_9_4_0_1_All_DLC_2015_.torrent
2018-10-04 15:31 - 2018-10-04 15:31 - 000000906 _____ C:\Users\Public\Desktop\Fallout 4.lnk
2018-10-04 15:31 - 2018-10-04 15:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fallout 4
2018-10-03 23:13 - 2018-10-03 23:13 - 000016430 _____ C:\Users\david\Downloads\[CzT]Fallout_4_Update_v1_9_2017_.torrent
2018-10-03 23:13 - 2018-10-03 23:13 - 000005370 _____ C:\Users\david\Downloads\[CzT]Fallout_4_cestina_v_0_9_4_2018_.torrent
2018-10-03 16:16 - 2018-10-03 16:16 - 000163388 _____ C:\Users\david\Downloads\[CzT]Fallout_4_High_Resolution_Texture_Pack.torrent
2018-10-03 16:12 - 2018-10-03 16:12 - 000112170 _____ C:\Users\david\Downloads\[CzT]Fallout_4_Game_of_the_Year_Edition_2015_CZ_.torrent
2018-09-29 21:25 - 2018-09-29 21:25 - 000000000 ___HD C:\Users\Public\Shared Files
2018-09-29 21:19 - 2018-09-29 21:19 - 000000000 ____D C:\Users\david\AppData\Roaming\EasyAntiCheat
2018-09-29 21:19 - 2018-09-29 21:19 - 000000000 ____D C:\Users\david\AppData\Local\FortniteGame
2018-09-29 21:19 - 2018-09-29 21:19 - 000000000 ____D C:\Program Files (x86)\EasyAntiCheat
2018-09-29 20:30 - 2018-09-29 20:30 - 000000314 _____ C:\Users\david\Desktop\Fortnite.url
2018-09-29 19:53 - 2018-09-29 21:19 - 000000000 ____D C:\Users\david\AppData\Local\UnrealEngine
2018-09-29 19:53 - 2018-09-29 19:54 - 000000000 ____D C:\ProgramData\Epic
2018-09-29 19:53 - 2018-09-29 19:53 - 000000951 _____ C:\Users\Public\Desktop\Epic Games Launcher.lnk
2018-09-29 19:53 - 2018-09-29 19:53 - 000000951 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk
2018-09-29 19:53 - 2018-09-29 19:53 - 000000000 ____D C:\Users\david\AppData\Local\UnrealEngineLauncher
2018-09-29 19:53 - 2018-09-29 19:53 - 000000000 ____D C:\Users\david\AppData\Local\EpicGamesLauncher
2018-09-29 13:27 - 2018-09-29 13:27 - 000000000 ____D C:\Users\david\AppData\Roaming\Google
2018-09-29 13:22 - 2018-10-24 22:55 - 000003346 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
2018-09-29 13:22 - 2018-10-24 22:55 - 000003122 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2018-09-29 13:22 - 2018-09-29 13:22 - 000002377 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2018-09-29 13:22 - 2018-09-29 13:22 - 000002336 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2018-09-29 13:22 - 2018-09-29 13:22 - 000000000 ____D C:\Program Files (x86)\Google
2018-09-29 11:25 - 2018-10-06 21:03 - 000000000 ____D C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fizzy
2018-09-29 11:25 - 2018-09-29 11:25 - 000000000 ____D C:\Users\david\AppData\Roaming\Macromedia
2018-09-29 11:25 - 2018-09-29 11:25 - 000000000 ____D C:\Users\david\AppData\Roaming\fizzy
2018-09-29 11:23 - 2018-09-29 11:23 - 000000000 ____D C:\ProgramData\NortonInstaller
2018-09-28 11:03 - 2018-09-05 00:36 - 001476904 _____ (Microsoft Corporation) C:\Windows\system32\mcupdate_GenuineIntel.dll

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2018-10-25 16:06 - 2018-07-12 19:32 - 000000000 ____D C:\ProgramData\NVIDIA
2018-10-25 16:03 - 2018-07-12 19:35 - 000000000 ___RD C:\Users\david\OneDrive
2018-10-24 22:55 - 2018-09-03 17:59 - 000003398 _____ C:\Windows\System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-24 22:55 - 2018-09-03 17:59 - 000003196 _____ C:\Windows\System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-24 22:55 - 2018-09-03 17:59 - 000003152 _____ C:\Windows\System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-24 22:55 - 2018-09-03 17:59 - 000003016 _____ C:\Windows\System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-24 22:55 - 2018-09-03 17:59 - 000003016 _____ C:\Windows\System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-24 22:55 - 2018-09-03 17:59 - 000003016 _____ C:\Windows\System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-24 22:55 - 2018-09-03 17:59 - 000002984 _____ C:\Windows\System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-24 22:55 - 2018-09-03 17:59 - 000002956 _____ C:\Windows\System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-24 22:55 - 2018-09-03 17:59 - 000002914 _____ C:\Windows\System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-24 22:55 - 2018-09-03 17:59 - 000002838 _____ C:\Windows\System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-24 22:55 - 2018-09-03 17:59 - 000002744 _____ C:\Windows\System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2018-10-24 22:55 - 2018-07-12 20:02 - 000000000 ____D C:\Windows\System32\Tasks\Avast Software
2018-10-24 22:55 - 2018-07-12 19:36 - 000002860 _____ C:\Windows\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2321539691-1916493358-1505984254-1001
2018-10-24 22:54 - 2018-04-12 01:38 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2018-10-24 20:21 - 2018-07-13 17:00 - 000000000 ____D C:\Users\david\AppData\Local\CrashDumps
2018-10-24 17:43 - 2018-07-12 19:23 - 000000000 ____D C:\Windows\system32\SleepStudy
2018-10-23 20:51 - 2018-07-12 19:29 - 001689050 _____ C:\Windows\system32\PerfStringBackup.INI
2018-10-23 20:51 - 2018-04-12 17:51 - 000715034 _____ C:\Windows\system32\perfh005.dat
2018-10-23 20:51 - 2018-04-12 17:51 - 000144328 _____ C:\Windows\system32\perfc005.dat
2018-10-23 20:51 - 2018-04-12 01:36 - 000000000 ____D C:\Windows\INF
2018-10-23 20:49 - 2018-07-12 19:30 - 000000000 ____D C:\Users\david
2018-10-23 20:45 - 2018-07-12 19:23 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2018-10-23 20:44 - 2018-04-11 23:04 - 000524288 _____ C:\Windows\system32\config\BBI
2018-10-23 20:40 - 2018-04-12 01:38 - 000000000 ___HD C:\Windows\system32\GroupPolicy
2018-10-23 19:40 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\AppReadiness
2018-10-23 15:21 - 2018-07-14 23:05 - 000000000 ____D C:\ProgramData\Packages
2018-10-23 15:21 - 2018-04-12 01:38 - 000000000 ___HD C:\Program Files\WindowsApps
2018-10-23 15:15 - 2018-07-12 19:23 - 000260536 _____ C:\Windows\system32\FNTCACHE.DAT
2018-10-22 22:06 - 2018-07-13 17:00 - 000000000 ____D C:\Users\david\AppData\Roaming\uTorrent
2018-10-22 16:27 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2018-10-21 10:17 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\LiveKernelReports
2018-10-20 19:00 - 2018-07-16 18:42 - 000000000 ____D C:\Users\david\AppData\Local\D3DSCache
2018-10-20 18:43 - 2018-07-15 12:11 - 000000000 ____D C:\Windows\SysWOW64\directx
2018-10-18 20:34 - 2018-08-22 17:34 - 000000000 ____D C:\Users\david\AppData\Local\NVIDIA
2018-10-18 15:20 - 2018-08-04 23:59 - 000000000 ____D C:\Users\david\AppData\Roaming\FiraxisLive
2018-10-18 15:19 - 2018-07-14 13:51 - 000000000 ____D C:\Users\david\Documents\My Games
2018-10-18 12:33 - 2018-07-13 19:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hry
2018-10-16 15:25 - 2018-07-12 19:30 - 000002391 _____ C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2018-10-13 13:27 - 2018-07-13 15:37 - 000000000 ____D C:\Users\david\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2018-10-13 13:27 - 2018-07-13 15:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2018-10-13 13:27 - 2018-07-13 15:36 - 000000000 ____D C:\Program Files\WinRAR
2018-10-13 13:23 - 2018-07-12 20:02 - 001028840 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSnx.sys
2018-10-13 13:23 - 2018-07-12 20:02 - 000467904 _____ (AVAST Software) C:\Windows\system32\Drivers\aswSP.sys
2018-10-13 13:23 - 2018-07-12 20:02 - 000381144 _____ (AVAST Software) C:\Windows\system32\Drivers\aswVmm.sys
2018-10-13 13:23 - 2018-07-12 20:02 - 000346760 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbloga.sys
2018-10-13 13:23 - 2018-07-12 20:02 - 000230512 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsdrivera.sys
2018-10-13 13:23 - 2018-07-12 20:02 - 000208640 _____ (AVAST Software) C:\Windows\system32\Drivers\aswStm.sys
2018-10-13 13:23 - 2018-07-12 20:02 - 000201928 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbidsha.sys
2018-10-13 13:23 - 2018-07-12 20:02 - 000201408 _____ (AVAST Software) C:\Windows\system32\Drivers\aswArPot.sys
2018-10-13 13:23 - 2018-07-12 20:02 - 000185240 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHdsKe.sys
2018-10-13 13:23 - 2018-07-12 20:02 - 000163376 _____ (AVAST Software) C:\Windows\system32\Drivers\aswMonFlt.sys
2018-10-13 13:23 - 2018-07-12 20:02 - 000111968 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRdr2.sys
2018-10-13 13:23 - 2018-07-12 20:02 - 000088112 _____ (AVAST Software) C:\Windows\system32\Drivers\aswRvrt.sys
2018-10-13 13:23 - 2018-07-12 20:02 - 000059664 _____ (AVAST Software) C:\Windows\system32\Drivers\aswbuniva.sys
2018-10-13 13:23 - 2018-07-12 20:02 - 000047064 _____ (AVAST Software) C:\Windows\system32\Drivers\aswHwid.sys
2018-10-13 13:23 - 2018-07-12 20:02 - 000003990 _____ C:\Windows\System32\Tasks\Avast Emergency Update
2018-10-13 13:23 - 2018-04-12 01:38 - 000000000 ___HD C:\Windows\ELAMBKUP
2018-10-12 19:27 - 2018-09-12 17:54 - 000000000 ____D C:\Users\david\AppData\Local\ElevatedDiagnostics
2018-10-12 15:35 - 2018-09-03 17:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2018-10-12 15:35 - 2018-07-12 19:32 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2018-10-12 15:35 - 2018-07-12 19:32 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2018-10-12 15:35 - 2018-07-12 19:32 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2018-10-12 15:29 - 2018-09-03 17:59 - 000001447 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2018-10-12 15:29 - 2018-07-16 21:12 - 000000000 ____D C:\Users\david\AppData\Local\NVIDIA Corporation
2018-10-12 00:30 - 2018-04-12 22:56 - 004990192 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2018-10-11 15:21 - 2018-07-12 19:34 - 000000000 __RHD C:\Users\Public\AccountPictures
2018-10-11 15:21 - 2018-07-12 19:34 - 000000000 ___RD C:\Users\david\3D Objects
2018-10-11 09:19 - 2018-04-12 23:01 - 001685104 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2018-10-11 09:19 - 2018-04-12 23:01 - 000227856 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2018-10-11 09:19 - 2018-04-12 19:33 - 000048056 _____ C:\Windows\system32\nvinfo.pb
2018-10-11 01:10 - 2018-07-12 19:32 - 005939056 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2018-10-11 01:10 - 2018-07-12 19:32 - 002611696 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2018-10-11 01:09 - 2018-07-12 19:32 - 001767816 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2018-10-11 01:09 - 2018-07-12 19:32 - 000635704 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2018-10-11 01:09 - 2018-07-12 19:32 - 000450416 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2018-10-11 01:09 - 2018-07-12 19:32 - 000124400 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2018-10-11 01:09 - 2018-07-12 19:32 - 000083256 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2018-10-11 00:37 - 2018-07-12 19:32 - 000001951 _____ C:\Windows\NvContainerRecovery.bat
2018-10-10 21:40 - 2018-04-12 01:38 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2018-10-10 21:40 - 2018-04-12 01:38 - 000000000 ___RD C:\Program Files\Windows Defender
2018-10-10 21:40 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\TextInput
2018-10-10 21:40 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\system32\ShellExperiences
2018-10-10 21:40 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\PolicyDefinitions
2018-10-10 21:40 - 2018-04-12 01:38 - 000000000 ____D C:\Windows\bcastdvr
2018-10-10 21:40 - 2018-04-12 01:38 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2018-10-10 15:51 - 2018-04-12 01:30 - 000000000 ____D C:\Windows\CbsTemp
2018-10-10 15:49 - 2018-07-12 22:13 - 000000000 ____D C:\Windows\system32\MRT
2018-10-10 15:48 - 2018-07-12 22:13 - 136745976 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2018-10-08 11:08 - 2018-07-12 19:32 - 008379002 _____ C:\Windows\system32\nvcoproc.bin
2018-10-02 22:13 - 2018-04-12 01:41 - 000835152 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2018-10-02 22:13 - 2018-04-12 01:41 - 000179792 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2018-09-29 21:25 - 2018-04-12 01:38 - 000000000 __SHD C:\Users\Public\Libraries
2018-09-29 13:22 - 2018-07-12 19:54 - 000000000 ____D C:\Users\david\AppData\Local\Google

==================== Bamital & volsnap ======================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed

LastRegBack: 2018-07-12 19:23

==================== End of FRST.txt ============================

====================

N0váček
Level 1.5
Level 1.5
Příspěvky: 134
Registrován: prosinec 14
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu

Příspěvekod N0váček » 25 říj 2018 16:14

Log Addition:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 24.10.2018
Ran by david (25-10-2018 16:11:30)
Running from C:\Users\david\Downloads
Windows 10 Pro Version 1803 17134.345 (X64) (2018-07-12 17:25:02)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-2321539691-1916493358-1505984254-500 - Administrator - Disabled)
david (S-1-5-21-2321539691-1916493358-1505984254-1001 - Administrator - Enabled) => C:\Users\david
DefaultAccount (S-1-5-21-2321539691-1916493358-1505984254-503 - Limited - Disabled)
Guest (S-1-5-21-2321539691-1916493358-1505984254-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-2321539691-1916493358-1505984254-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avast Antivirus (Enabled - Up to date) {8EA8924E-BC81-DC44-8BB0-8BAE75D86EBF}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Enabled - Up to date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Malwarebytes (Enabled - Up to date) {98619B37-4FC4-67F2-1C99-EEF6D47DBD96}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {35C973AA-9ABB-D3CA-B100-B0DC0E5F2402}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Aktualizace NVIDIA 33.2.0.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 33.2.0.0 - NVIDIA Corporation) Hidden
Assassin's Creed IV Black Flag version 1.0.7.0 (HKLM-x32\...\Assassin's Creed IV Black Flag_is1) (Version: 1.0.7.0 - Mr DJ)
Avast Free Antivirus (HKLM-x32\...\Avast Antivirus) (Version: 18.7.2354 - AVAST Software)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.8.0.0466 - Disc Soft Ltd)
DisplayDriverAnalyzer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_DisplayDriverAnalyzer) (Version: 416.34 - NVIDIA Corporation) Hidden
DOOM (HKLM-x32\...\DOOM_is1) (Version: 6.1.1.808 - Bethesda Softworks)
Epic Games Launcher (HKLM-x32\...\{E7B62E3F-0F70-4119-89A2-28DE1C3873CC}) (Version: 1.1.163.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Fallout 4 - Čeština (HKLM-x32\...\{F8BA6706-E36D-4140-B786-CE578630D70D}) (Version: 0.9.6 - prekladyher.eu)
Fallout 4 - HD Texture Pack (HKLM-x32\...\Fallout 4 - HD Texture Pack_is1) (Version: - )
Fallout 4: Game of the Year Edition (HKLM-x32\...\Fallout 4: Game of the Year Edition_is1) (Version: 1.10.89.0.1 - )
GameRanger (HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\...\GameRanger) (Version: - GameRanger Technologies)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 69.0.3497.100 - Google Inc.)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.33.17 - Google Inc.) Hidden
Hearts of Iron IV Death or Dishonor (HKLM-x32\...\Hearts of Iron IV Death or Dishonor_is1) (Version: - )
Java 8 Update 181 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180181F0}) (Version: 8.0.1810.13 - Oracle Corporation)
Java 8 Update 181 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180181F0}) (Version: 8.0.1810.13 - Oracle Corporation)
KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 4.2.2.15 - PandoraTV)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKLM-x32\...\League of Legends 1.0) (Version: 1.0 - Riot Games, Inc)
LOOT version 0.13.1 (HKLM-x32\...\{BF634210-A0D4-443F-A657-0DCE38040374}_is1) (Version: 0.13.1 - LOOT Team)
Malwarebytes verze 3.6.1.2711 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 3.6.1.2711 - Malwarebytes)
Microsoft Office Professional Plus 2016 - cs-cz (HKLM\...\ProplusRetail - cs-cz) (Version: 16.0.10827.20181 - Microsoft Corporation)
Microsoft OneDrive (HKU\.DEFAULT\...\OneDriveSetup.exe) (Version: 17.3.6743.1212 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\...\OneDriveSetup.exe) (Version: 18.172.0826.0010 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
NarutoOnline 2.4.0.12121 (HKLM-x32\...\NarutoOnline) (Version: 2.4.0.12121 - Oasgames, Inc.) <==== ATTENTION
Nexus Mod Manager (HKLM\...\6af12c54-643b-4752-87d0-8335503010de_is1) (Version: 0.65.2 - Black Tree Gaming)
NVAPI Monitor plugin for NvContainer (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_NvContainer.NvapiMonitor) (Version: 1.11 - NVIDIA Corporation) Hidden
NVIDIA GeForce Experience 3.15.0.164 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.15.0.164 - NVIDIA Corporation)
NVIDIA Ovladač 3D Vision 416.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 416.34 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.37.5 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.37.5 - NVIDIA Corporation)
NVIDIA Ovladač řídící jednotky 3D Vision 390.41 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NVIRUSB) (Version: 390.41 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 416.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 416.34 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.18.0907 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.18.0907 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.10827.20181 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.10827.20181 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.10827.20181 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.10827.20181 - Microsoft Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Ovládací panel NVIDIA 416.34 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.ControlPanel) (Version: 416.34 - NVIDIA Corporation) Hidden
Sid Meiers Civilization VI Winter 2016 Edition with Vikings and Poland Scenario Packs (HKLM\...\c2lkbWVpZXJzY2l2aWxpemF0aW9udmk_is1) (Version: 1 - )
Skype verze 8.30 (HKLM-x32\...\Skype_is1) (Version: 8.30 - Skype Technologies S.A.)
Sophos Virus Removal Tool (HKLM-x32\...\{B829E117-D072-41EA-9606-9826A38D34C1}) (Version: 2.7.0 - Sophos Limited)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
The Evil Within verze 1.05 (HKLM-x32\...\The Evil Within_is1) (Version: 1.05 - Bethesda Softworks)
The Sims™ 3 Кино Каталог (HKLM-x32\...\{D0087539-3C57-44E0-BEE7-D779D546CBE1}) (Version: 20.0.53 - Electronic Arts)
WinRAR 5.60 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.60.0 - win.rar GmbH)
Zemana AntiMalware (HKLM-x32\...\{8F0CD7D1-42F3-4195-95CD-833578D45057}_is1) (Version: 2.74.0.150 - Zemana Ltd.)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-10-13] (AVAST Software)
ContextMenuHandlers1: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => C:\Program Files (x86)\Zemana AntiMalware\ZAMShellExt64.dll [2018-10-23] ()
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-10-13] (AVAST Software)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-06-24] (Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-06-24] (Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-06-20] (Disc Soft Ltd)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-10-13] (AVAST Software)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\DTShl64.dll [2018-06-20] (Disc Soft Ltd)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2018-10-11] (NVIDIA Corporation)
ContextMenuHandlers6: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => C:\Program Files (x86)\Zemana AntiMalware\ZAMShellExt64.dll [2018-10-23] ()
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2018-10-13] (AVAST Software)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2018-09-19] (Malwarebytes)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2018-06-24] (Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2018-06-24] (Alexander Roshal)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {079E65B8-6B04-46DE-875B-713D42E9994E} - System32\Tasks\NvTmRepCR3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-09-12] (NVIDIA Corporation)
Task: {0941110F-162B-4D67-8D48-EAF0E288FC1C} - System32\Tasks\NvTmRepCR2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-09-12] (NVIDIA Corporation)
Task: {0C6611E1-7ED3-44D2-9EB7-89B979C85C30} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-10-14] (Microsoft Corporation)
Task: {1A434E52-18DA-4CC8-9A84-70A9863BB85E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-09-29] (Google Inc.)
Task: {25E264F9-6150-4990-B823-E4488C6884BB} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerRegistration => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-10-23] (Microsoft Corporation)
Task: {26473310-F130-4EC4-AED8-F3968DC00BC7} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\Office16\sdxhelper.exe [2018-10-23] (Microsoft Corporation)
Task: {2FA3FD2F-CA51-4EF4-8687-BEF806129C77} - System32\Tasks\NvBatteryBoostCheckOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-09-12] (NVIDIA Corporation)
Task: {30334DA3-1BFC-4897-985D-C26124981AA1} - System32\Tasks\NvTmRep_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-09-12] (NVIDIA Corporation)
Task: {5AD6F5AF-A8B1-4C69-B4CE-DF29A84E7632} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-10-23] (Microsoft Corporation)
Task: {635B8850-E9FF-4BE0-876C-939351D86146} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-09-12] (NVIDIA Corporation)
Task: {65B85F6F-35B3-4459-A179-28255D5B7B25} - System32\Tasks\Microsoft\Windows\HelloFace\FODCleanupTask => C:\Windows\System32\WinBioPlugIns\FaceFodUninstaller.exe [2018-04-12] ()
Task: {75C2DF06-4AB4-4ECC-B862-50AE6CD131BB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-09-29] (Google Inc.)
Task: {7B078A24-D3B1-4D00-96B2-4F3E4505D460} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [2018-10-14] (Microsoft Corporation)
Task: {89C43981-CD09-4EAB-A9D0-2BB4CDED788B} - System32\Tasks\Microsoft\Office\OfficeBackgroundTaskHandlerLogon => C:\Program Files (x86)\Microsoft Office\root\Office16\officebackgroundtaskhandler.exe [2018-10-23] (Microsoft Corporation)
Task: {A27F8BFA-F21B-4DFA-9333-AFC9DB5FC0E5} - System32\Tasks\NvTmRepCR1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmRep.exe [2018-09-12] (NVIDIA Corporation)
Task: {C4D999A8-CAE5-43A3-B8AE-8342D0E3A166} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [2018-09-15] (AVAST Software)
Task: {D86108F9-3E73-4DDD-8B1B-CDCB56BFB161} - System32\Tasks\NvTmMon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvTmMon.exe [2018-09-12] (NVIDIA Corporation)
Task: {DB385766-03AC-4F30-9C80-54EC1852C9A9} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [2018-09-12] (NVIDIA Corporation)
Task: {DB8ABD0E-1EF0-4006-8543-503F70A20B5D} - System32\Tasks\Avast Emergency Update => C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe [2018-10-13] (AVAST Software)
Task: {DB9A54C1-50B9-4F1C-B6F0-9C7F3D62E772} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2018-09-12] (NVIDIA Corporation)
Task: {DFC5BB04-2631-43C9-B141-2DB62321D20A} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files (x86)\Microsoft Office\root\Office16\msoia.exe [2018-10-23] (Microsoft Corporation)
Task: {E654539E-C952-422F-BBD7-BD2345253F68} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [2018-09-12] (NVIDIA Corporation)
Task: {FEB0A93C-E815-4F32-85DC-0B7380B96CB6} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [2018-09-12] (NVIDIA Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)


==================== Loaded Modules (Whitelisted) ==============

2018-09-03 17:59 - 2018-09-12 13:45 - 001315024 _____ () C:\Program Files\NVIDIA Corporation\NvContainer\libprotobuf.dll
2018-10-21 23:46 - 2018-09-12 11:35 - 002701064 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\SelfProtectionSdk.dll
2018-10-21 23:46 - 2018-09-12 17:57 - 002785784 _____ () C:\PROGRAM FILES\MALWAREBYTES\ANTI-MALWARE\MwacLib.dll
2018-04-12 01:34 - 2018-04-12 01:34 - 000491744 _____ () C:\Windows\System32\InputHost.dll
2018-04-12 01:34 - 2018-04-12 01:34 - 000472064 _____ () C:\Windows\ShellExperiences\TileControl.dll
2018-04-12 01:34 - 2018-04-12 01:34 - 002759168 _____ () C:\Windows\ShellComponents\TaskFlowUI.dll
2018-10-10 15:49 - 2018-09-20 05:38 - 002185728 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2018-10-02 17:39 - 2018-10-02 17:40 - 000009216 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\ImagePipelineNative.dll
2018-10-23 15:21 - 2018-10-23 15:21 - 000060416 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\ChakraBridge.dll
2018-10-23 15:21 - 2018-10-23 15:21 - 000019456 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\SkypeProxiesAndStubs.dll
2018-10-23 15:21 - 2018-10-23 15:21 - 010978304 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\LibWrapper.dll
2018-10-23 15:21 - 2018-10-23 15:21 - 002810368 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\skypert.dll
2018-10-23 15:21 - 2018-10-23 15:21 - 000685056 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\RtmMvrUap.dll
2018-10-23 15:21 - 2018-10-23 15:21 - 000183808 _____ () C:\Program Files\WindowsApps\Microsoft.SkypeApp_14.33.41.0_x64__kzf8qxf38zg5c\SkypeBackgroundHost.exe
2018-09-03 17:59 - 2018-09-12 13:45 - 101252304 _____ () C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\libcef.dll
2018-09-03 17:59 - 2018-09-12 13:45 - 004619984 _____ () C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\libglesv2.dll
2018-09-03 17:59 - 2018-09-12 13:45 - 000108752 _____ () C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\libegl.dll
2018-10-11 16:32 - 2018-10-11 16:32 - 004483072 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_64\DiscSoft.NET.Common\92e15f4336e3b748635f849f58acbc62\DiscSoft.NET.Common.ni.dll
2018-10-11 16:33 - 2018-10-11 16:33 - 003039232 _____ () C:\Windows\assembly\NativeImages_v4.0.30319_64\DotNetCommon\5333b2d9fd6abe2e160fd31cb0ccd1e4\DotNetCommon.ni.dll
2018-09-29 19:53 - 2018-09-29 19:53 - 098275328 _____ () D:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libcef.dll
2018-09-29 19:53 - 2018-09-29 19:53 - 003922432 _____ () D:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libGLESv2.dll
2018-09-29 19:53 - 2018-09-29 19:53 - 000092672 _____ () D:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\ThirdParty\CEF3\Win64\libEGL.dll
2018-10-12 15:25 - 2018-10-10 06:17 - 001056032 _____ () D:\steam\bin\cef\cef.win7x64\SDL2.dll
2018-10-12 15:25 - 2018-09-23 02:00 - 102804768 _____ () D:\steam\bin\cef\cef.win7x64\libcef.dll
2018-10-12 15:25 - 2018-09-23 02:00 - 004866336 _____ () D:\steam\bin\cef\cef.win7x64\libglesv2.dll
2018-10-12 15:25 - 2018-09-23 02:00 - 000116000 _____ () D:\steam\bin\cef\cef.win7x64\libegl.dll
2018-09-29 13:22 - 2018-09-15 10:26 - 005110616 _____ () C:\Program Files (x86)\Google\Chrome\Application\69.0.3497.100\libglesv2.dll
2018-09-29 13:22 - 2018-09-15 10:26 - 000116056 _____ () C:\Program Files (x86)\Google\Chrome\Application\69.0.3497.100\libegl.dll
2018-09-03 17:59 - 2018-09-12 13:45 - 001032912 _____ () C:\Program Files (x86)\NVIDIA Corporation\NvContainer\libprotobuf.dll
2018-07-12 20:03 - 2018-07-12 20:03 - 067126928 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2018-10-13 13:23 - 2018-10-13 13:23 - 000598232 _____ () C:\Program Files\AVAST Software\Avast\streamback.dll
2018-10-12 15:25 - 2018-10-10 06:17 - 000878880 _____ () D:\steam\SDL2.dll
2018-07-25 20:50 - 2016-09-01 03:02 - 004969248 _____ () D:\steam\v8.dll
2018-10-14 13:42 - 2018-10-13 03:59 - 002647840 _____ () D:\steam\video.dll
2018-07-25 20:50 - 2016-09-01 03:02 - 001563936 _____ () D:\steam\icui18n.dll
2018-07-25 20:50 - 2016-09-01 03:02 - 001195296 _____ () D:\steam\icuuc.dll
2018-07-25 20:50 - 2017-12-20 03:43 - 005137696 _____ () D:\steam\libavcodec-57.dll
2018-07-25 20:50 - 2017-12-20 03:43 - 000695584 _____ () D:\steam\libavformat-57.dll
2018-07-25 20:50 - 2017-12-20 03:43 - 000351520 _____ () D:\steam\libavresample-3.dll
2018-07-25 20:50 - 2017-12-20 03:43 - 000847136 _____ () D:\steam\libavutil-55.dll
2018-07-25 20:50 - 2017-12-20 03:43 - 000783648 _____ () D:\steam\libswscale-4.dll
2018-10-14 13:42 - 2018-10-13 03:59 - 001023776 _____ () D:\steam\bin\chromehtml.DLL
2018-07-25 20:50 - 2016-07-05 00:17 - 000266560 _____ () D:\steam\openvr_api.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [464]

==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-04-12 01:38 - 2018-10-23 20:01 - 000000841 _____ C:\Windows\system32\Drivers\etc\hosts

127.0.0.1 localhost

==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\david\Desktop\Bleach_samurai_sword_Urahara_Kisuke_shinigami-245541.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

If an entry is included in the fixlist, it will be removed.


==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{B2896655-99A8-4136-B6F2-59AD26BD34A2}] => (Allow) D:\steam\Steam.exe
FirewallRules: [{CCA21C3C-3CB2-4CEC-B2E6-49265004AA3B}] => (Allow) D:\steam\Steam.exe
FirewallRules: [{1AF85C3C-B988-4705-B9A1-B91EBE0EFCF1}] => (Allow) D:\steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{68E05405-07BD-4E5B-BD45-4EAC9D1D2FC3}] => (Allow) D:\steam\bin\cef\cef.win7\steamwebhelper.exe
FirewallRules: [{FFE6A91F-C856-429B-8A4B-A79C0AE03A14}] => (Allow) D:\steam\steamapps\common\Orion Dino Beatdown\Binaries\Win32\DinoHordeGame.exe
FirewallRules: [{3F7A11BE-8DB7-4792-BB79-D06C4FC7DAF5}] => (Allow) D:\steam\steamapps\common\Orion Dino Beatdown\Binaries\Win32\DinoHordeGame.exe
FirewallRules: [{D053D58D-B982-47D8-8CD7-00A7FA35FA73}] => (Allow) D:\steam\steamapps\common\Subnautica\Subnautica.exe
FirewallRules: [{25D9952C-7A0D-4D7A-B1B1-A8DE1FA08023}] => (Allow) D:\steam\steamapps\common\Subnautica\Subnautica.exe
FirewallRules: [{A756DC97-FAB2-47F2-A235-A4501508EF89}] => (Allow) D:\steam\steamapps\common\The Forest\TheForest.exe
FirewallRules: [{D2CF1BC4-B451-44FC-9AE5-0374F22BC54B}] => (Allow) D:\steam\steamapps\common\The Forest\TheForest.exe
FirewallRules: [{11997000-1C5A-4251-88AB-1EF96A03C08A}] => (Allow) D:\steam\steamapps\common\The Forest\TheForestVR.exe
FirewallRules: [{DC6253B2-F9EC-4B2F-A45F-05AA6B594FC9}] => (Allow) D:\steam\steamapps\common\The Forest\TheForestVR.exe
FirewallRules: [{4B2DD29E-9946-4252-BD4A-95308C751CC0}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
FirewallRules: [TCP Query User{56DD73F0-FDB2-40F1-8F09-4B452A63E16E}C:\users\david\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\david\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [UDP Query User{5D2B3CC0-E0C3-4028-8D6E-2361907AD05C}C:\users\david\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\david\appdata\roaming\utorrent\utorrent.exe
FirewallRules: [TCP Query User{B377BCD6-B7CD-460B-8B90-48DF62452569}D:\dying light\dyinglightgame.exe] => (Allow) D:\dying light\dyinglightgame.exe
FirewallRules: [UDP Query User{33FB4511-089B-45BC-895F-FAE9D7ADC491}D:\dying light\dyinglightgame.exe] => (Allow) D:\dying light\dyinglightgame.exe
FirewallRules: [TCP Query User{47C460E1-B04A-4A11-A36C-62D0D9E4E72F}D:\xcom enemy within\xew\binaries\win32\xcomew.exe] => (Allow) D:\xcom enemy within\xew\binaries\win32\xcomew.exe
FirewallRules: [UDP Query User{FF38DBDE-DB7C-4CA3-A6EC-D24A6FB0C3EF}D:\xcom enemy within\xew\binaries\win32\xcomew.exe] => (Allow) D:\xcom enemy within\xew\binaries\win32\xcomew.exe
FirewallRules: [TCP Query User{51D455BD-2AA8-4CCC-92C1-94E1F3E2A443}D:\warthunder\launcher.exe] => (Allow) D:\warthunder\launcher.exe
FirewallRules: [UDP Query User{D2CA460D-21E3-471C-922A-7BDB1A5082C9}D:\warthunder\launcher.exe] => (Allow) D:\warthunder\launcher.exe
FirewallRules: [TCP Query User{5065F991-2B8D-4739-9F2F-839D6C5303AB}D:\warthunder\win64\aces.exe] => (Allow) D:\warthunder\win64\aces.exe
FirewallRules: [UDP Query User{7E6D6F6B-C344-4DB1-9669-C9FFC1C79FA7}D:\warthunder\win64\aces.exe] => (Allow) D:\warthunder\win64\aces.exe
FirewallRules: [TCP Query User{E45BA3AE-1694-42E8-B084-C69ACCA2ACE0}D:\saints row the third2\saintsrowthethird_dx11.exe] => (Allow) D:\saints row the third2\saintsrowthethird_dx11.exe
FirewallRules: [UDP Query User{03AE41E7-CFE9-43C8-A640-A81399A65EE9}D:\saints row the third2\saintsrowthethird_dx11.exe] => (Allow) D:\saints row the third2\saintsrowthethird_dx11.exe
FirewallRules: [{D2538141-1FDC-4F7F-BCB5-88C8DF5C4010}] => (Allow) D:\steam\steamapps\common\SCP Secret Laboratory\SCPSL.exe
FirewallRules: [{F2F84B1E-FC19-4D9B-8559-8E98C188B2D4}] => (Allow) D:\steam\steamapps\common\SCP Secret Laboratory\SCPSL.exe
FirewallRules: [{60E84BA7-323D-4ED6-86E8-931ABB42F2DB}] => (Allow) D:\steam\steamapps\common\SCP Secret Laboratory\LocalAdmin.exe
FirewallRules: [{960404C7-C4D0-478B-94AA-911BECEEB1BD}] => (Allow) D:\steam\steamapps\common\SCP Secret Laboratory\LocalAdmin.exe
FirewallRules: [{34EFC53A-3A64-440B-A004-F8B50BABA578}] => (Allow) D:\steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe
FirewallRules: [{CE107FB6-55D4-4ECF-81EB-BCEF90BC8272}] => (Allow) D:\steam\steamapps\common\PAYDAY 2\payday2_win32_release.exe
FirewallRules: [{54D7CCCB-CABE-492B-9672-134B609451E8}] => (Allow) D:\steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [{6282C4E2-592C-4082-ADFF-1ED2A2B52DC5}] => (Allow) D:\steam\steamapps\common\Team Fortress 2\hl2.exe
FirewallRules: [TCP Query User{A1E0A31D-9BA6-4C55-9C74-FFD035C4BF79}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.158\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.158\deploy\leagueclient.exe
FirewallRules: [UDP Query User{BD3693DC-90C5-43D1-8DA6-B9E41CCC685F}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.158\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.158\deploy\leagueclient.exe
FirewallRules: [{2FCC6C77-2D5D-4987-BBE9-4A655638345D}] => (Allow) D:\steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe
FirewallRules: [{7C315D05-DBBE-438C-A196-74BCAD04F774}] => (Allow) D:\steam\steamapps\common\Skyrim Special Edition\SkyrimSELauncher.exe
FirewallRules: [TCP Query User{D547DBB8-97B6-43D9-8342-EA798C2642F0}D:\program files\_ra2_\command & conquer red alert(tm) ii\ra2\gamemd.exe] => (Allow) D:\program files\_ra2_\command & conquer red alert(tm) ii\ra2\gamemd.exe
FirewallRules: [UDP Query User{CDF9C79B-2910-4878-AD1E-93744514D317}D:\program files\_ra2_\command & conquer red alert(tm) ii\ra2\gamemd.exe] => (Allow) D:\program files\_ra2_\command & conquer red alert(tm) ii\ra2\gamemd.exe
FirewallRules: [TCP Query User{B4EF80EB-4BDD-455D-8FFA-7E74715633B5}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.159\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.159\deploy\leagueclient.exe
FirewallRules: [UDP Query User{2DB8706A-9029-4ED0-A77E-D167F14E0671}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.159\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.159\deploy\leagueclient.exe
FirewallRules: [{D5F8F499-4432-4F35-AE92-FFBC9C6D868A}] => (Allow) D:\steam\steamapps\common\nmrih\sdk\hl2.exe
FirewallRules: [{09012246-8784-44C2-A0B0-F5DD16015738}] => (Allow) D:\steam\steamapps\common\nmrih\sdk\hl2.exe
FirewallRules: [TCP Query User{661B759A-2D9A-41EC-BDC5-A02C99D2C2A2}D:\program files (x86)\singularity\binaries\singularity.exe] => (Allow) D:\program files (x86)\singularity\binaries\singularity.exe
FirewallRules: [UDP Query User{75100553-3011-447E-BEC4-18726D345CE0}D:\program files (x86)\singularity\binaries\singularity.exe] => (Allow) D:\program files (x86)\singularity\binaries\singularity.exe
FirewallRules: [{4126624A-20E5-4352-89E8-98AE76150AE1}] => (Allow) D:\steam\steamapps\common\Stronghold Crusader Extreme\Stronghold Crusader.exe
FirewallRules: [{824BA729-F262-445E-9CBE-79D316E1B684}] => (Allow) D:\steam\steamapps\common\Stronghold Crusader Extreme\Stronghold Crusader.exe
FirewallRules: [{302EDE4C-5C0C-4642-B725-4599408937DC}] => (Allow) D:\steam\bin\cef\cef.win7x64\steamwebhelper.exe
FirewallRules: [{0CE926E0-1025-4FF1-9297-CF9182A45F76}] => (Allow) D:\steam\bin\cef\cef.win7x64\steamwebhelper.exe
FirewallRules: [TCP Query User{7A18A608-B2C5-4D80-84CE-F4F255966DCB}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.160\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.160\deploy\leagueclient.exe
FirewallRules: [UDP Query User{7B773996-A2ED-4A1C-A717-60E478778F7D}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.160\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.160\deploy\leagueclient.exe
FirewallRules: [{0CFF0487-67BE-4952-8EBA-53A479BADEF1}] => (Allow) D:\steam\steamapps\common\TPH\TPH.exe
FirewallRules: [{2AA5E988-74F1-444A-AC41-10332B1A92E0}] => (Allow) D:\steam\steamapps\common\TPH\TPH.exe
FirewallRules: [{29F04DD8-9697-4C0C-BBBC-C7B940EB215E}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{ABFEBD31-65FC-4B47-B5BC-96B8A7778F57}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [TCP Query User{815A7F99-B1FC-4DF0-A170-67B13BAD492D}C:\users\david\desktop\stellaris\stellaris.exe] => (Allow) C:\users\david\desktop\stellaris\stellaris.exe
FirewallRules: [UDP Query User{E9596DA1-9393-42FF-B620-4AD775BC9E0B}C:\users\david\desktop\stellaris\stellaris.exe] => (Allow) C:\users\david\desktop\stellaris\stellaris.exe
FirewallRules: [{AD71FBBC-463B-49A5-97A5-F24762C9289E}] => (Allow) D:\steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [{DDE38166-FCB5-43F9-87CA-97AB63EEBF2E}] => (Allow) D:\steam\steamapps\common\GarrysMod\hl2.exe
FirewallRules: [TCP Query User{69C27AED-5172-4CBD-AD9A-C32BE56D8370}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.163\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.163\deploy\leagueclient.exe
FirewallRules: [UDP Query User{8BD1501C-12B8-4D66-A2A2-38C1DC8B0C91}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.163\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.163\deploy\leagueclient.exe
FirewallRules: [TCP Query User{E6E7513A-AA41-4F98-BD11-09F70DDFF956}C:\program files\java\jre1.8.0_181\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_181\bin\javaw.exe
FirewallRules: [UDP Query User{1913616D-2871-402F-8AA0-F597D285282E}C:\program files\java\jre1.8.0_181\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_181\bin\javaw.exe
FirewallRules: [{6304B35F-91D3-4A8F-A9C2-21BFEBDF0BD4}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe
FirewallRules: [{9A233487-FD10-4DEF-BBBE-3DC48F923DBB}] => (Allow) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe
FirewallRules: [TCP Query User{483F6784-1ED7-42EC-8FC4-A484262FB4B3}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.165\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.165\deploy\leagueclient.exe
FirewallRules: [UDP Query User{B3E224F5-D654-4328-B46E-0473E4D79E2F}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.165\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.165\deploy\leagueclient.exe
FirewallRules: [{CDC93B5E-43E2-4E60-A28C-F3DB795448E5}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
FirewallRules: [TCP Query User{793D9AB7-F43E-4810-83A4-819CA11FA6D7}D:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [UDP Query User{60671A5E-85F2-46F0-AB85-6B8430AEB7BA}D:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe] => (Allow) D:\program files (x86)\epic games\launcher\portal\binaries\win32\epicgameslauncher.exe
FirewallRules: [TCP Query User{615CCF9B-66C8-4A18-85DE-5410259E0DF1}D:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [UDP Query User{915665E4-3D76-4602-AB98-1570E0E7B7C6}D:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) D:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe
FirewallRules: [TCP Query User{E67C678C-CDA3-4567-8B70-60F3F5A561C8}D:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [UDP Query User{9D62E54F-2964-4729-89E0-A9693CAAF123}D:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\program files\epic games\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe
FirewallRules: [TCP Query User{EC147682-5EE1-4A21-ACA4-E47C9A875580}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.166\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.166\deploy\leagueclient.exe
FirewallRules: [UDP Query User{0B5B8F0C-2777-419B-93D4-6AC355D2F8DE}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.166\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.166\deploy\leagueclient.exe
FirewallRules: [TCP Query User{A43D354B-63AF-4705-B3BC-1E1E4F2AF742}D:\program files (x86)\fallout 4\fallout4.exe] => (Allow) D:\program files (x86)\fallout 4\fallout4.exe
FirewallRules: [UDP Query User{1A1629FA-8AF5-4A60-BE5D-9D3F6CAD3B17}D:\program files (x86)\fallout 4\fallout4.exe] => (Allow) D:\program files (x86)\fallout 4\fallout4.exe
FirewallRules: [{BE3C5997-11C0-47A0-B2C4-E1B9C922FB0C}] => (Allow) D:\steam\steamapps\common\XCOM 2\Binaries\Win64\Launcher\ModLauncherWPF.exe
FirewallRules: [{399C326F-A760-4AD8-8F70-F7B80F827B24}] => (Allow) D:\steam\steamapps\common\XCOM 2\Binaries\Win64\Launcher\ModLauncherWPF.exe
FirewallRules: [TCP Query User{D1CEEC95-87A6-48EA-B8FA-AD664492257C}D:\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe] => (Allow) D:\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe
FirewallRules: [UDP Query User{C1850A8D-E211-4D42-B45F-774EF4306CFF}D:\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe] => (Allow) D:\steam\steamapps\common\xcom 2\binaries\win64\xcom2.exe
FirewallRules: [{05030AA6-FD50-4259-8E6C-690935B2E3EE}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{94CC2A00-C919-4D96-ABC8-DB0B1AE99CE5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe
FirewallRules: [{10540FB0-55CA-4ABF-9743-8CB77BA11697}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{761D752F-D4C3-425F-8695-F18DD8CE970B}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [TCP Query User{2A382BEE-52E7-4B09-88DE-94591EEB96C3}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.168\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.168\deploy\leagueclient.exe
FirewallRules: [UDP Query User{FE7FAAC3-A3EA-45D8-B5AA-11329CDB76DD}D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.168\deploy\leagueclient.exe] => (Allow) D:\riot games\league of legends\rads\projects\league_client\releases\0.0.0.168\deploy\leagueclient.exe
FirewallRules: [{0161D107-6FFB-434D-B90F-E98C95E27CC6}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [{012F1851-BC9A-4881-8802-EE8D3C827C24}] => (Allow) C:\Program Files\AVAST Software\Avast\AvEmUpdate.exe
FirewallRules: [TCP Query User{A154F764-DCAC-4ED2-97EC-5B74370C361A}D:\steam\steamapps\common\xcom 2\xcom2-warofthechosen\binaries\win64\xcom2.exe] => (Allow) D:\steam\steamapps\common\xcom 2\xcom2-warofthechosen\binaries\win64\xcom2.exe
FirewallRules: [UDP Query User{1BB91E8A-9A90-49F8-A72A-B72D3184BCC2}D:\steam\steamapps\common\xcom 2\xcom2-warofthechosen\binaries\win64\xcom2.exe] => (Allow) D:\steam\steamapps\common\xcom 2\xcom2-warofthechosen\binaries\win64\xcom2.exe
FirewallRules: [TCP Query User{6DB51BD4-C27F-445B-8E24-A22960EE87BB}D:\program files (x86)\bethesda softworks\doom\doomx64.exe] => (Allow) D:\program files (x86)\bethesda softworks\doom\doomx64.exe
FirewallRules: [UDP Query User{3795520B-6A32-4719-BD4B-A8FD28923348}D:\program files (x86)\bethesda softworks\doom\doomx64.exe] => (Allow) D:\program files (x86)\bethesda softworks\doom\doomx64.exe
FirewallRules: [{39747D1D-CC5D-417E-AD56-F5B43106A6E0}] => (Allow) D:\Program Files (x86)\Mr DJ\Assassin's Creed IV Black Flag\AC4BFSP.exe
FirewallRules: [{6E4BC405-AEEE-4627-8F41-D343C4B3A5E9}] => (Allow) D:\Program Files (x86)\Mr DJ\Assassin's Creed IV Black Flag\AC4BFSP.exe

==================== Restore Points =========================

24-10-2018 16:06:48 End of disinfection

==================== Faulty Device Manager Devices =============

Name: Obecný rozbočovač USB
Description: Obecný rozbočovač USB
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: (Standardní rozbočovače USB)
Service: USBHUB3
Problem: : This device cannot start. (Code10)
Resolution: Device failed to start. Click "Update Driver" to update the drivers for this device.
On the "General Properties" tab of the device, click "Troubleshoot" to start the troubleshooting wizard.


==================== Event log errors: =========================

Application errors:
==================
Error: (10/24/2018 08:21:28 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_WpnUserService, verze: 10.0.17134.1, časové razítko: 0xa38b9ab2
Název chybujícího modulu: NotificationController.dll, verze: 10.0.17134.165, časové razítko: 0xe0385185
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000007c686
ID chybujícího procesu: 0x2498
Čas spuštění chybující aplikace: 0x01d46bc1137e186c
Cesta k chybující aplikaci: C:\Windows\system32\svchost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\NotificationController.dll
ID zprávy: e3303e27-cbf3-4dca-80bc-3b9ff7305ac0
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (10/23/2018 07:55:41 PM) (Source: Microsoft Security Client) (EventID: 5000) (User: )
Description: Event-ID 5000

Error: (10/23/2018 07:55:41 PM) (Source: Microsoft Security Client) (EventID: 5000) (User: )
Description: Event-ID 5000

Error: (10/23/2018 07:55:33 PM) (Source: Microsoft Security Client) (EventID: 5000) (User: )
Description: Event-ID 5000

Error: (10/23/2018 07:55:33 PM) (Source: Microsoft Security Client) (EventID: 5000) (User: )
Description: Event-ID 5000

Error: (10/23/2018 07:39:52 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: DTAgent.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.Runtime.InteropServices.COMException
na DiscSoftBusServiceLib.IDSFileTransferManager.get_IsBusy()
na DTAgent.App.TrayBaseApp.Application_SessionEnding(System.Object, System.Windows.SessionEndingCancelEventArgs)
na System.Windows.Application.OnSessionEnding(System.Windows.SessionEndingCancelEventArgs)
na System.Windows.Application.WmQueryEndSession(IntPtr, IntPtr ByRef)
na System.Windows.Application.AppFilterMessage(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
na MS.Win32.HwndWrapper.WndProc(IntPtr, Int32, IntPtr, IntPtr, Boolean ByRef)
na MS.Win32.HwndSubclass.DispatcherCallbackOperation(System.Object)
na System.Windows.Threading.ExceptionWrapper.InternalRealCall(System.Delegate, System.Object, Int32)
na System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
na System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
na MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)

Error: (10/23/2018 06:45:32 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_WpnUserService, verze: 10.0.17134.1, časové razítko: 0xa38b9ab2
Název chybujícího modulu: NotificationController.dll, verze: 10.0.17134.165, časové razítko: 0xe0385185
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000007a24d
ID chybujícího procesu: 0x5c8c
Čas spuštění chybující aplikace: 0x01d46aec73f504e3
Cesta k chybující aplikaci: C:\Windows\system32\svchost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\NotificationController.dll
ID zprávy: 0e86871d-dc39-47ce-95de-e72c3ee86065
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (10/23/2018 06:21:17 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_WpnUserService, verze: 10.0.17134.1, časové razítko: 0xa38b9ab2
Název chybujícího modulu: NotificationController.dll, verze: 10.0.17134.165, časové razítko: 0xe0385185
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000007a24d
ID chybujícího procesu: 0xe4
Čas spuštění chybující aplikace: 0x01d46ae9b67b19dc
Cesta k chybující aplikaci: C:\Windows\system32\svchost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\NotificationController.dll
ID zprávy: 057cbbe6-b83b-46cb-be7e-a08c67ad84a1
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (10/25/2018 04:11:18 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (10/25/2018 04:08:04 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-OKDVTKV)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli DESKTOP-OKDVTKV\david (SID: S-1-5-21-2321539691-1916493358-1505984254-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (10/25/2018 04:03:55 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (10/25/2018 04:03:48 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-OKDVTKV)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli DESKTOP-OKDVTKV\david (SID: S-1-5-21-2321539691-1916493358-1505984254-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (10/25/2018 04:03:45 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-OKDVTKV)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli DESKTOP-OKDVTKV\david (SID: S-1-5-21-2321539691-1916493358-1505984254-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (10/25/2018 04:03:41 PM) (Source: DCOM) (EventID: 10016) (User: DESKTOP-OKDVTKV)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli DESKTOP-OKDVTKV\david (SID: S-1-5-21-2321539691-1916493358-1505984254-1001) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (10/25/2018 04:03:41 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: Nastavení oprávnění specifické pro aplikaci neuděluje oprávnění Místní Aktivace pro serverovou aplikaci COM s identifikátorem CLSID
{D63B10C5-BB46-4990-A94F-E40B9D520160}
a APPID
{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}
uživateli NT AUTHORITY\LOCAL SERVICE (SID: S-1-5-19) z adresy LocalHost (pomocí LRPC) běžící v kontejneru aplikací Není k dispozici – SID (Není k dispozici). Toto oprávnění zabezpečení lze změnit pomocí nástroje správy Služba komponent.

Error: (10/25/2018 04:03:41 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-OKDVTKV)
Description: Server {D63B10C5-BB46-4990-A94F-E40B9D520160} se v daném časovém limitu neregistroval u služby DCOM.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i5-8600K CPU @ 3.60GHz
Percentage of memory in use: 23%
Total physical RAM: 16317.91 MB
Available physical RAM: 12487.01 MB
Total Virtual: 18749.91 MB
Available Virtual: 13252 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:222.97 GB) (Free:122.81 GB) NTFS
Drive d: (Programy,hry) (Fixed) (Total:1863.02 GB) (Free:1068.3 GB) NTFS
Drive e: (Hearts of Iron IV Death or Disho) (CDROM) (Total:1.53 GB) (Free:0 GB) UDF
Drive f: (Assassins.Creed.) (CDROM) (Total:55.05 GB) (Free:0 GB) CDFS
Drive g: (HEROES3) (CDROM) (Total:0.96 GB) (Free:0 GB) CDFS
Drive h: (16.0.7571.2109) (CDROM) (Total:2.75 GB) (Free:0 GB) UDF

\\?\Volume{6522a7b5-a0fe-4ff7-aad0-813eb3dd8254}\ (Obnovení) (Fixed) (Total:0.49 GB) (Free:0.13 GB) NTFS
\\?\Volume{049851ea-6c37-48ed-abea-5dc624cdd506}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)

Partition: GPT.

========================================================
Disk: 1 (Size: 223.6 GB) (Disk ID: 10E010E0)

Partition: GPT.

==================== End of Addition.txt ============================

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43054
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu

Příspěvekod jaro3 » 25 říj 2018 20:33

Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.

Kód: Vybrat vše

Start
CloseProcesses:
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\...\MountPoints2: {4a2e806b-8817-11e8-adf2-7085c27f60c4} - "G:\_AUTORUN\AUTORUN.EXE"
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\...\MountPoints2: {839cbabb-8751-11e8-adf1-7085c27f60c4} - "F:\setup.exe"
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\...\MountPoints2: {bf2b7e55-86a0-11e8-adf0-7085c27f60c4} - "E:\setup.exe"
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\...\MountPoints2: {c1a8e3aa-9355-11e8-adf4-7085c27f60c4} - "H:\OInstall.exe"
SearchScopes: HKU\S-1-5-21-2321539691-1916493358-1505984254-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
S3 cpuz140; \??\C:\Users\david\AppData\Local\Temp\cpuz140\cpuz140_x64.sys [X] <==== ATTENTION
C:\Users\david\AppData\Local\DBG
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
Task: {1A434E52-18DA-4CC8-9A84-70A9863BB85E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-09-29] (Google Inc.)
Task: {75C2DF06-4AB4-4ECC-B862-50AE6CD131BB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-09-29] (Google Inc.)

EmptyTemp:
End

(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).

Ulož jej na na plochu jako fixlist.txt


Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

N0váček
Level 1.5
Level 1.5
Příspěvky: 134
Registrován: prosinec 14
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu

Příspěvekod N0váček » 25 říj 2018 20:55

Fix result of Farbar Recovery Scan Tool (x64) Version: 24.10.2018
Ran by david (25-10-2018 20:53:25) Run:1
Running from C:\Users\david\Desktop
Loaded Profiles: david (Available Profiles: david)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CloseProcesses:
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\...\MountPoints2: {4a2e806b-8817-11e8-adf2-7085c27f60c4} - "G:\_AUTORUN\AUTORUN.EXE"
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\...\MountPoints2: {839cbabb-8751-11e8-adf1-7085c27f60c4} - "F:\setup.exe"
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\...\MountPoints2: {bf2b7e55-86a0-11e8-adf0-7085c27f60c4} - "E:\setup.exe"
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\...\MountPoints2: {c1a8e3aa-9355-11e8-adf4-7085c27f60c4} - "H:\OInstall.exe"
SearchScopes: HKU\S-1-5-21-2321539691-1916493358-1505984254-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - hxxps://clients2.google.com/service/update2/crx
S3 cpuz140; \??\C:\Users\david\AppData\Local\Temp\cpuz140\cpuz140_x64.sys [X] <==== ATTENTION
C:\Users\david\AppData\Local\DBG
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
Task: {1A434E52-18DA-4CC8-9A84-70A9863BB85E} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-09-29] (Google Inc.)
Task: {75C2DF06-4AB4-4ECC-B862-50AE6CD131BB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-09-29] (Google Inc.)

EmptyTemp:
End
*****************

Processes closed successfully.
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{4a2e806b-8817-11e8-adf2-7085c27f60c4} => removed successfully
HKLM\Software\Classes\CLSID\{4a2e806b-8817-11e8-adf2-7085c27f60c4} => not found
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{839cbabb-8751-11e8-adf1-7085c27f60c4} => removed successfully
HKLM\Software\Classes\CLSID\{839cbabb-8751-11e8-adf1-7085c27f60c4} => not found
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{bf2b7e55-86a0-11e8-adf0-7085c27f60c4} => removed successfully
HKLM\Software\Classes\CLSID\{bf2b7e55-86a0-11e8-adf0-7085c27f60c4} => not found
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{c1a8e3aa-9355-11e8-adf4-7085c27f60c4} => removed successfully
HKLM\Software\Classes\CLSID\{c1a8e3aa-9355-11e8-adf4-7085c27f60c4} => not found
HKU\S-1-5-21-2321539691-1916493358-1505984254-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} => removed successfully
HKLM\Software\Classes\CLSID\{012E1000-F331-11DB-8314-0800200C9A66} => not found
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck => removed successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\gomekmidlodglbbmalcneegieacbdmki => removed successfully
HKLM\System\CurrentControlSet\Services\cpuz140 => removed successfully
cpuz140 => service removed successfully
C:\Users\david\AppData\Local\DBG => moved successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA => moved successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1A434E52-18DA-4CC8-9A84-70A9863BB85E}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1A434E52-18DA-4CC8-9A84-70A9863BB85E}" => removed successfully
"C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA" => not found
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{75C2DF06-4AB4-4ECC-B862-50AE6CD131BB}" => removed successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{75C2DF06-4AB4-4ECC-B862-50AE6CD131BB}" => removed successfully
"C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore" => not found
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore" => removed successfully

=========== EmptyTemp: ==========

BITS transfer queue => 9199616 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 193696254 B
Java, Flash, Steam htmlcache => 379183186 B
Windows/system/drivers => 364851 B
Edge => 0 B
Chrome => 646942866 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 904 B
LocalService => 0 B
NetworkService => 0 B
NetworkService => 0 B
david => 3890260 B

RecycleBin => 3189067 B
EmptyTemp: => 1.2 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 20:53:42 ====

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43054
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu

Příspěvekod jaro3 » 25 říj 2018 22:17

Co problémy? Fixnul si ty položky v HJT?
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

N0váček
Level 1.5
Level 1.5
Příspěvky: 134
Registrován: prosinec 14
Pohlaví: Muž
Stav:
Offline

Re: kontrola logu  Vyřešeno

Příspěvekod N0váček » 25 říj 2018 22:19

problémy zmizeli a ano fixnul :) Děkuji moc za tvou pomoc i čas :)


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 13 hostů