Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o prev. kontrolu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
-
- Návštěvník
- Příspěvky: 25
- Registrován: 02 úno 2007 18:09
- Bydliště: Prague
- Kontaktovat uživatele:
Prosím o prev. kontrolu
Dobrý den, prosím o preventivní kontrolu. Poslední dobou (cca 1 měsíc) se mi hodně zpomaluje net. Než kontaktuji poskytovatele, rád bych vyloučil havěť v systému. ADWCleaner nic neobjevil. Děkuji
Logfile of random's system information tool 1.10 (written by random/random)
Run by still at 2018-01-28 01:45:26
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 358 GB (68%) free of 525 GB
Total RAM: 8103 MB (70% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 1:45:36, on 28.1.2018
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.19104)
Boot mode: Normal
Running processes:
C:\Program Files\TrueCrypt\TrueCrypt.exe
Z:\portable\ThunderbirdPortable\ThunderbirdPortable_aktualni\ThunderbirdPortable.exe
Z:\portable\ThunderbirdPortable\ThunderbirdPortable_aktualni\App\thunderbird\thunderbird.exe
C:\Program Files\trend micro\still.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: (no name) - AutorunsDisabled - (no file)
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O9 - Extra button: (no name) - AutorunsDisabled - (no file)
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://*.connectify.me
O15 - ESC Trusted Zone: http://*.fastspring.com
O15 - ESC Trusted Zone: http://*.connectify.me (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://*.fastspring.com (HKLM)
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Atheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: Alcohol Virtual Drive Auto-mount Service (AxAutoMntSrv) - Alcohol Soft Development Team - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe
O23 - Service: Connectify - Connectify - C:\Program Files (x86)\Connectify\ConnectifyService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: O&O Defrag (OODefragAgent) - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: Ochrana softwaru (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
--
End of file - 6200 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files\ESET\ESET Security\ekrn.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\System32\alg.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Windows\System32\hkcmd.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\ESET\ESET Security\egui.exe" /hide
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SF3
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
C:\Windows\explorer.exe /factory,{ceff45ee-c862-41de-aee2-a022c81eda92} -Embedding
"C:\Program Files\TrueCrypt\TrueCrypt.exe" /v "C:\logs01.tc"
"C:\Program Files\Mozilla Firefox\firefox.exe"
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="3728.6.1196629210\1734384828" -childID 2 -isForBrowser -intPrefs 5:50|6:-1|28:1000|34:20|35:5|36:10|45:128|46:10000|51:0|53:400|54:1|55:0|56:0|61:0|62:120|63:120|99:2|100:1|115:5000|125:0|127:0|138:10000|150:-1|158:24|159:32768|161:0|162:0|170:0|174:1048576|175:100|176:5000|178:600|180:1|188:20|191:4|195:0|204:60000| -boolPrefs 1:0|2:0|4:0|26:1|27:1|30:0|33:1|37:1|38:0|39:0|40:0|43:1|44:1|47:0|48:0|49:0|50:0|52:0|57:1|58:1|59:0|60:1|64:1|65:1|66:0|67:1|68:1|69:0|70:1|73:0|74:0|77:1|78:1|82:1|83:1|84:0|85:0|86:0|88:0|89:0|90:1|91:1|92:1|95:1|96:0|98:0|101:1|102:0|109:0|114:0|117:1|120:1|122:1|126:0|129:1|132:1|133:1|139:1|140:0|141:1|143:0|149:0|151:1|152:0|153:1|156:0|157:0|160:1|163:1|165:1|167:1|168:0|177:1|182:0|183:1|184:0|185:1|186:0|187:0|189:1|190:1|193:0|196:0|197:0|198:1|199:1|200:0|201:1|202:1|203:1|205:0|206:0|208:0|217:1|218:1|219:0|220:0|221:0| -stringPrefs "3:7;release|97:0;|142:3;1.0|154:332; ¼½¾ǃː̷̸։֊׃״؉؊٪۔܁܂܃܄ᅟᅠ᜵ ‐’․‧ ‹›⁁⁄⁒ ⅓⅔⅕⅖⅗⅘⅙⅚⅛⅜⅝⅞⅟∕∶⎮╱⧶⧸⫻⫽⿰⿱⿲⿳⿴⿵⿶⿷⿸⿹⿺⿻ 。〔〕〳゠ㅤ㈝㈞㎮㎯㏆㏟꞉︔︕︿﹝﹞./。ᅠ�|155:4;high|192:38;{ebeaa1d9-d676-432f-be6a-9e995264c416}|" -schedulerPrefs 0001,2 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" 3728 "\\.\pipe\gecko-crash-server-pipe.3728" tab
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="3728.18.836859884\1581651156" -childID 4 -isForBrowser -intPrefs 5:50|6:-1|28:1000|34:20|35:5|36:10|45:128|46:10000|51:0|53:400|54:1|55:0|56:0|61:0|62:120|63:120|99:2|100:1|115:5000|125:0|127:0|138:10000|150:-1|158:24|159:32768|161:0|162:0|170:0|174:1048576|175:100|176:5000|178:600|180:1|188:20|191:4|195:0|204:60000| -boolPrefs 1:0|2:0|4:0|26:1|27:1|30:0|33:1|37:1|38:0|39:0|40:0|43:1|44:1|47:0|48:0|49:0|50:0|52:0|57:1|58:1|59:0|60:1|64:1|65:1|66:0|67:1|68:1|69:0|70:1|73:0|74:0|77:1|78:1|82:1|83:1|84:0|85:0|86:0|88:0|89:0|90:1|91:1|92:1|95:1|96:0|98:0|101:1|102:0|109:0|114:0|117:1|120:1|122:1|126:0|129:1|132:1|133:1|139:1|140:0|141:1|143:0|149:0|151:1|152:0|153:1|156:0|157:0|160:1|163:1|165:1|167:1|168:0|177:1|182:0|183:1|184:0|185:1|186:0|187:0|189:1|190:1|193:0|196:0|197:0|198:1|199:1|200:0|201:1|202:1|203:1|205:0|206:0|208:0|217:1|218:1|219:0|220:0|221:0| -stringPrefs "3:7;release|97:0;|142:3;1.0|154:332; ¼½¾ǃː̷̸։֊׃״؉؊٪۔܁܂܃܄ᅟᅠ᜵ ‐’․‧ ‹›⁁⁄⁒ ⅓⅔⅕⅖⅗⅘⅙⅚⅛⅜⅝⅞⅟∕∶⎮╱⧶⧸⫻⫽⿰⿱⿲⿳⿴⿵⿶⿷⿸⿹⿺⿻ 。〔〕〳゠ㅤ㈝㈞㎮㎯㏆㏟꞉︔︕︿﹝﹞./。ᅠ�|155:4;high|192:38;{ebeaa1d9-d676-432f-be6a-9e995264c416}|" -schedulerPrefs 0001,2 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" 3728 "\\.\pipe\gecko-crash-server-pipe.3728" tab
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="3728.24.2064440473\250386125" -childID 5 -isForBrowser -intPrefs 5:50|6:-1|28:1000|34:20|35:5|36:10|45:128|46:10000|51:0|53:400|54:1|55:0|56:0|61:0|62:120|63:120|99:2|100:1|115:5000|125:0|127:0|138:10000|150:-1|158:24|159:32768|161:0|162:0|170:0|174:1048576|175:100|176:5000|178:600|180:1|188:20|191:4|195:0|204:60000| -boolPrefs 1:0|2:0|4:0|26:1|27:1|30:0|33:1|37:1|38:0|39:0|40:0|43:1|44:1|47:0|48:0|49:0|50:0|52:0|57:1|58:1|59:0|60:1|64:1|65:1|66:0|67:1|68:1|69:0|70:1|73:0|74:0|77:1|78:1|82:1|83:1|84:0|85:0|86:0|88:0|89:0|90:1|91:1|92:1|95:1|96:0|98:0|101:1|102:0|109:0|114:0|117:1|120:1|122:1|126:0|129:1|132:1|133:1|139:1|140:0|141:1|143:0|149:0|151:1|152:0|153:1|156:0|157:0|160:1|163:1|165:1|167:1|168:0|177:1|182:0|183:1|184:0|185:1|186:0|187:0|189:1|190:1|193:0|196:0|197:0|198:1|199:1|200:0|201:1|202:1|203:1|205:0|206:0|208:0|217:1|218:1|219:0|220:0|221:0| -stringPrefs "3:7;release|97:0;|142:3;1.0|154:332; ¼½¾ǃː̷̸։֊׃״؉؊٪۔܁܂܃܄ᅟᅠ᜵ ‐’․‧ ‹›⁁⁄⁒ ⅓⅔⅕⅖⅗⅘⅙⅚⅛⅜⅝⅞⅟∕∶⎮╱⧶⧸⫻⫽⿰⿱⿲⿳⿴⿵⿶⿷⿸⿹⿺⿻ 。〔〕〳゠ㅤ㈝㈞㎮㎯㏆㏟꞉︔︕︿﹝﹞./。ᅠ�|155:4;high|192:38;{ebeaa1d9-d676-432f-be6a-9e995264c416}|" -schedulerPrefs 0001,2 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" 3728 "\\.\pipe\gecko-crash-server-pipe.3728" tab
"Z:\portable\ThunderbirdPortable\ThunderbirdPortable_aktualni\ThunderbirdPortable.exe"
"Z:\portable\ThunderbirdPortable\ThunderbirdPortable_aktualni\App\thunderbird\thunderbird.exe" -profile "Z:\portable\ThunderbirdPortable\ThunderbirdPortable_aktualni\Data\profile"
C:\Windows\system32\wbem\wmiprvse.exe
"E:\stazene_soubory\RSITx64.exe"
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="3728.30.83878971\1759102055" -childID 6 -isForBrowser -intPrefs 5:50|6:-1|28:1000|34:20|35:5|36:10|45:128|46:10000|51:0|53:400|54:1|55:0|56:0|61:0|62:120|63:120|99:2|100:1|115:5000|125:0|127:0|138:10000|150:-1|158:24|159:32768|161:0|162:0|170:0|174:1048576|175:100|176:5000|178:600|180:1|188:20|191:4|195:0|204:60000| -boolPrefs 1:0|2:0|4:0|26:1|27:1|30:0|33:1|37:1|38:0|39:0|40:0|43:1|44:1|47:0|48:0|49:0|50:0|52:0|57:1|58:1|59:0|60:1|64:1|65:1|66:0|67:1|68:1|69:0|70:1|73:0|74:0|77:1|78:1|82:1|83:1|84:0|85:0|86:0|88:0|89:0|90:1|91:1|92:1|95:1|96:0|98:0|101:1|102:0|109:0|114:0|117:1|120:1|122:1|126:0|129:1|132:1|133:1|139:1|140:0|141:1|143:0|149:0|151:1|152:0|153:1|156:0|157:0|160:1|163:1|165:1|167:1|168:0|177:1|182:0|183:1|184:0|185:1|186:0|187:0|189:1|190:1|193:0|196:0|197:0|198:1|199:1|200:0|201:1|202:1|203:1|205:0|206:0|208:0|217:1|218:1|219:0|220:0|221:0| -stringPrefs "3:7;release|97:0;|142:3;1.0|154:332; ¼½¾ǃː̷̸։֊׃״؉؊٪۔܁܂܃܄ᅟᅠ᜵ ‐’․‧ ‹›⁁⁄⁒ ⅓⅔⅕⅖⅗⅘⅙⅚⅛⅜⅝⅞⅟∕∶⎮╱⧶⧸⫻⫽⿰⿱⿲⿳⿴⿵⿶⿷⿸⿹⿺⿻ 。〔〕〳゠ㅤ㈝㈞㎮㎯㏆㏟꞉︔︕︿﹝﹞./。ᅠ�|155:4;high|192:38;{ebeaa1d9-d676-432f-be6a-9e995264c416}|" -schedulerPrefs 0001,2 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" 3728 "\\.\pipe\gecko-crash-server-pipe.3728" tab
======Scheduled tasks folder======
C:\Windows\tasks\ASUS P4G.job - C:\Program Files\P4G\BatteryLife.exe
C:\Windows\tasks\CCleaner Update.job - C:\Program Files\CCleaner\CCUpdate.exe
C:\Windows\tasks\CorelUpdateHelperTaskCore.job - C:\Program Files (x86)\Corel\CUH\v2\CUH.EXE /t
=========Mozilla firefox=========
ProfilePath - C:\Users\still\AppData\Roaming\Mozilla\Firefox\Profiles\fpj0zzjg.default
prefs.js - "browser.search.suggest.enabled" - false
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "moz-extension://1a131e50-4ad4-45fc-bcef-bfdd72b475c4/newtab.html"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 27.0.0.187 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_187.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn.me/esnsonar,version=0.70.4]
"Description"=ESN Sonar browser plugin
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.3.0]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 27.0.0.187 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_27_0_0_187.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=12.0.1.0]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre-9.0.1\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=12.0.1.0]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre-9.0.1\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.6]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
C:\Users\still\AppData\Roaming\Mozilla\Firefox\Profiles\fpj0zzjg.default\extensions\
fastdial@telega.phpnet.us
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-11-02 399392]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2017-11-10 3350232]
"egui"=C:\Program Files\ESET\ESET Security\ecmdS.exe [2017-11-11 324216]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-11-02 171040]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-11-02 441888]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-01-26 11775592]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2011-01-18 2188904]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AlcoholAutomount"=C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2015-03-12 39376]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ACPW06EN]
C:\Program Files\ACD Systems\ACDSee Pro\6.0\ACDSeePro6InTouch2.exe /pid ACPW06EN []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-09-23 926896]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner64.exe [2017-12-13 10249048]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2017-09-27 646680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Wireless Console 3]
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2010-09-23 1601536]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^still^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^FancyStart daemon.lnk]
C:\Users\still\AppData\Roaming\MICROS~1\INSTAL~1\{2B818~1\_94E3C~1.EXE [2017-11-20 12862]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-11-02 441344]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"VIDC.X264"=x264vfw64.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.l3codecp"=l3codecp.acm
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux4"=wdmaud.drv
"msacm.ac3acm"=ac3acm.acm
"wave5"=wdmaud.drv
"mixer5"=wdmaud.drv
"midi5"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.txt - open - C:\Windows\NOTEPAD.EXE %1
======List of files/folders created in the last 1 month======
2018-01-28 01:45:26 ----D---- C:\Program Files\trend micro
2018-01-28 01:45:25 ----D---- C:\rsit
2018-01-28 01:29:27 ----D---- C:\AdwCleaner
2018-01-27 14:39:54 ----D---- C:\jdown
2018-01-26 01:57:46 ----D---- C:\Users\still\AppData\Roaming\Thunderbird
2018-01-11 05:29:15 ----A---- C:\Windows\system32\pdfcmon.dll
2018-01-11 05:29:00 ----D---- C:\Program Files\PDFCreator
2018-01-10 06:01:16 ----D---- C:\Users\still\AppData\Roaming\tor
2018-01-05 00:30:35 ----D---- C:\Program Files (x86)\Battlelog Web Plugins
2018-01-05 00:14:36 ----D---- C:\Program Files\Battlefield 4
2018-01-04 09:49:47 ----A---- C:\Windows\system32\RtNicProp64.dll
2018-01-04 09:48:58 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2018-01-04 07:54:40 ----D---- C:\ProgramData\Origin
2018-01-02 10:14:08 ----D---- C:\Program Files (x86)\Crysis 3
2017-12-29 16:16:53 ----D---- C:\Program Files\net.downloadhelper.coapp
======List of files/folders modified in the last 1 month======
2018-01-28 01:45:26 ----RD---- C:\Program Files
2018-01-28 01:43:40 ----D---- C:\Windows\System32
2018-01-28 01:43:40 ----D---- C:\Windows\inf
2018-01-28 01:43:40 ----A---- C:\Windows\system32\PerfStringBackup.INI
2018-01-28 01:41:59 ----D---- C:\Windows\Temp
2018-01-28 01:41:38 ----D---- C:\Users\still\AppData\Roaming\Mozilla
2018-01-27 23:37:47 ----D---- C:\Windows\system32\wdi
2018-01-27 16:36:37 ----D---- C:\Users\still\AppData\Roaming\vlc
2018-01-27 14:43:30 ----D---- C:\Program Files\Mozilla Firefox
2018-01-24 13:05:43 ----D---- C:\Windows\Tasks
2018-01-15 12:36:20 ----SHD---- C:\System Volume Information
2018-01-15 00:53:07 ----D---- C:\Windows\system32\config
2018-01-15 00:53:03 ----D---- C:\Windows\winsxs
2018-01-15 00:43:17 ----A---- C:\ProgramData\VC_Inst_Ver.txt
2018-01-15 00:43:16 ----SHD---- C:\Windows\Installer
2018-01-15 00:42:47 ----D---- C:\Program Files\Common Files\Microsoft Shared
2018-01-15 00:42:26 ----D---- C:\Windows\SysWOW64
2018-01-15 00:39:47 ----D---- C:\ProgramData\Package Cache
2018-01-10 11:30:41 ----D---- C:\Program Files (x86)\Connectify
2018-01-05 00:30:35 ----RD---- C:\Program Files (x86)
2018-01-05 00:29:55 ----RSD---- C:\Windows\assembly
2018-01-04 23:38:04 ----D---- C:\Windows\Minidump
2018-01-04 23:38:04 ----D---- C:\Windows
2018-01-04 09:52:27 ----D---- C:\Windows\system32\drivers
2018-01-04 09:52:19 ----D---- C:\Windows\system32\DriverStore
2018-01-04 09:50:01 ----A---- C:\Windows\system32\RTNUninst64.dll
2018-01-04 07:54:40 ----HD---- C:\ProgramData
2018-01-04 07:45:40 ----D---- C:\Program Files (x86)\Common Files
2018-01-02 10:21:26 ----D---- C:\ProgramData\Electronic Arts
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2017-05-04 107344]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2017-11-10 632168]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2017-11-10 28008]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2017-11-10 38336]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2017-11-11 394296]
R1 cnnctfy3;Connectify LightWeight Filter; C:\Windows\system32\DRIVERS\cnnctfy3.sys [2017-11-17 35352]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2017-11-11 132848]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2017-11-11 180088]
R1 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2017-05-04 78192]
R1 EpfwLWF;ESET Personal Firewall; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2017-05-04 60544]
R1 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2017-11-11 102160]
R1 truecrypt;truecrypt; C:\Windows\System32\drivers\truecrypt.sys [2017-11-10 231376]
R1 VBoxDrv;VirtualBox Service; C:\Windows\system32\DRIVERS\VBoxDrv.sys [2017-11-22 972192]
R1 VBoxNetLwf;VirtualBox NDIS6 Bridged Networking Service; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [2017-11-22 211704]
R1 VBoxUSBMon;VirtualBox USB Monitor Driver; C:\Windows\system32\DRIVERS\VBoxUSBMon.sys [2017-11-22 157672]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ekbdflt;ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [2017-05-04 50752]
R3 AthBTPort;Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys [2011-03-13 36000]
R3 athur;Wireless Network Adapter Service; C:\Windows\system32\DRIVERS\athurx.sys [2013-06-28 1930240]
R3 bcbtums;Bluetooth RAM Firmware Download USB Filter; C:\Windows\system32\drivers\bcbtums.sys [2017-11-10 172760]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys [2011-03-13 298656]
R3 BTATH_BUS;Atheros Bluetooth Bus; C:\Windows\system32\DRIVERS\btath_bus.sys [2011-03-13 28832]
R3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\Windows\system32\DRIVERS\btath_hcrp.sys [2011-03-13 201376]
R3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys [2011-03-13 55456]
R3 BTATH_RCP;Bluetooth AVRCP Device; C:\Windows\system32\DRIVERS\btath_rcp.sys [2011-03-13 154272]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 btwampfl;btwampfl; C:\Windows\system32\DRIVERS\btwampfl.sys [2017-11-10 600280]
R3 ETD;ELAN Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2017-11-10 449752]
R3 FLxHCIc;Fresco Logic xHCI (USB3) Device Driver; C:\Windows\system32\DRIVERS\FLxHCIc.sys [2017-11-10 252536]
R3 FLxHCIh;Fresco Logic xHCI (USB3) Hub Device Driver; C:\Windows\system32\DRIVERS\FLxHCIh.sys [2017-11-10 77944]
R3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT); C:\Windows\system32\DRIVERS\ICCWDT.sys [2017-11-10 38480]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-11-02 5332896]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-01-27 2734696]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2017-11-22 480800]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2010-10-19 56344]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\drivers\bthpan.sys [2017-07-06 119296]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 NETwNs64;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 7 64 Bit; C:\Windows\system32\DRIVERS\NETwsw00.sys [2017-11-10 11531536]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2018-01-04 1077696]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2010-09-07 1800832]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 VBoxNetAdp;VirtualBox NDIS 6.0 Miniport Service; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [2017-11-22 200832]
S3 VBoxUSB;VirtualBox USB; C:\Windows\System32\Drivers\VBoxUSB.sys [2017-11-22 144632]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinUSB;Lenovo USB Driver; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Security\ekrn.exe [2017-11-11 2648184]
S2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2011-03-13 74912]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2017-04-21 107656]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2017-04-21 128648]
S2 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
S3 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-09-23 65192]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2011-03-13 138400]
S3 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2015-03-12 39376]
S3 Connectify;Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [2013-11-05 487936]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2012-11-02 277024]
S3 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2017-10-27 462968]
S3 OODefragAgent;O&O Defrag; C:\Program Files\OO Software\Defrag\oodag.exe [2016-12-21 1740864]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2011-01-25 379520]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2017-04-21 52856]
S4 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-04-21 136312]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-04-21 136312]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-04-21 136312]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by still at 2018-01-28 01:45:26
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 358 GB (68%) free of 525 GB
Total RAM: 8103 MB (70% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 1:45:36, on 28.1.2018
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.19104)
Boot mode: Normal
Running processes:
C:\Program Files\TrueCrypt\TrueCrypt.exe
Z:\portable\ThunderbirdPortable\ThunderbirdPortable_aktualni\ThunderbirdPortable.exe
Z:\portable\ThunderbirdPortable\ThunderbirdPortable_aktualni\App\thunderbird\thunderbird.exe
C:\Program Files\trend micro\still.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: (no name) - AutorunsDisabled - (no file)
O4 - HKCU\..\Run: [AlcoholAutomount] "C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe" -automount
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O9 - Extra button: (no name) - AutorunsDisabled - (no file)
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://*.connectify.me
O15 - ESC Trusted Zone: http://*.fastspring.com
O15 - ESC Trusted Zone: http://*.connectify.me (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://*.fastspring.com (HKLM)
O20 - AppInit_DLLs: C:\Windows\SysWOW64\nvinit.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Atheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: Alcohol Virtual Drive Auto-mount Service (AxAutoMntSrv) - Alcohol Soft Development Team - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe
O23 - Service: Connectify - Connectify - C:\Program Files (x86)\Connectify\ConnectifyService.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Security\ekrn.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Container LS (NVDisplay.ContainerLocalSystem) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe
O23 - Service: O&O Defrag (OODefragAgent) - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: Ochrana softwaru (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: StarWind AE Service (StarWindServiceAE) - StarWind Software - C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
--
End of file - 6200 bytes
======Listing Processes======
\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
winlogon.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
"C:\Program Files\ESET\ESET Security\ekrn.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
C:\Windows\system32\svchost.exe -k imgsvc
C:\Windows\system32\svchost.exe -k bthsvcs
C:\Windows\System32\alg.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
"C:\Windows\System32\hkcmd.exe"
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\ESET\ESET Security\egui.exe" /hide
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /SF3
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
C:\Windows\explorer.exe /factory,{ceff45ee-c862-41de-aee2-a022c81eda92} -Embedding
"C:\Program Files\TrueCrypt\TrueCrypt.exe" /v "C:\logs01.tc"
"C:\Program Files\Mozilla Firefox\firefox.exe"
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="3728.6.1196629210\1734384828" -childID 2 -isForBrowser -intPrefs 5:50|6:-1|28:1000|34:20|35:5|36:10|45:128|46:10000|51:0|53:400|54:1|55:0|56:0|61:0|62:120|63:120|99:2|100:1|115:5000|125:0|127:0|138:10000|150:-1|158:24|159:32768|161:0|162:0|170:0|174:1048576|175:100|176:5000|178:600|180:1|188:20|191:4|195:0|204:60000| -boolPrefs 1:0|2:0|4:0|26:1|27:1|30:0|33:1|37:1|38:0|39:0|40:0|43:1|44:1|47:0|48:0|49:0|50:0|52:0|57:1|58:1|59:0|60:1|64:1|65:1|66:0|67:1|68:1|69:0|70:1|73:0|74:0|77:1|78:1|82:1|83:1|84:0|85:0|86:0|88:0|89:0|90:1|91:1|92:1|95:1|96:0|98:0|101:1|102:0|109:0|114:0|117:1|120:1|122:1|126:0|129:1|132:1|133:1|139:1|140:0|141:1|143:0|149:0|151:1|152:0|153:1|156:0|157:0|160:1|163:1|165:1|167:1|168:0|177:1|182:0|183:1|184:0|185:1|186:0|187:0|189:1|190:1|193:0|196:0|197:0|198:1|199:1|200:0|201:1|202:1|203:1|205:0|206:0|208:0|217:1|218:1|219:0|220:0|221:0| -stringPrefs "3:7;release|97:0;|142:3;1.0|154:332; ¼½¾ǃː̷̸։֊׃״؉؊٪۔܁܂܃܄ᅟᅠ᜵ ‐’․‧ ‹›⁁⁄⁒ ⅓⅔⅕⅖⅗⅘⅙⅚⅛⅜⅝⅞⅟∕∶⎮╱⧶⧸⫻⫽⿰⿱⿲⿳⿴⿵⿶⿷⿸⿹⿺⿻ 。〔〕〳゠ㅤ㈝㈞㎮㎯㏆㏟꞉︔︕︿﹝﹞./。ᅠ�|155:4;high|192:38;{ebeaa1d9-d676-432f-be6a-9e995264c416}|" -schedulerPrefs 0001,2 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" 3728 "\\.\pipe\gecko-crash-server-pipe.3728" tab
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="3728.18.836859884\1581651156" -childID 4 -isForBrowser -intPrefs 5:50|6:-1|28:1000|34:20|35:5|36:10|45:128|46:10000|51:0|53:400|54:1|55:0|56:0|61:0|62:120|63:120|99:2|100:1|115:5000|125:0|127:0|138:10000|150:-1|158:24|159:32768|161:0|162:0|170:0|174:1048576|175:100|176:5000|178:600|180:1|188:20|191:4|195:0|204:60000| -boolPrefs 1:0|2:0|4:0|26:1|27:1|30:0|33:1|37:1|38:0|39:0|40:0|43:1|44:1|47:0|48:0|49:0|50:0|52:0|57:1|58:1|59:0|60:1|64:1|65:1|66:0|67:1|68:1|69:0|70:1|73:0|74:0|77:1|78:1|82:1|83:1|84:0|85:0|86:0|88:0|89:0|90:1|91:1|92:1|95:1|96:0|98:0|101:1|102:0|109:0|114:0|117:1|120:1|122:1|126:0|129:1|132:1|133:1|139:1|140:0|141:1|143:0|149:0|151:1|152:0|153:1|156:0|157:0|160:1|163:1|165:1|167:1|168:0|177:1|182:0|183:1|184:0|185:1|186:0|187:0|189:1|190:1|193:0|196:0|197:0|198:1|199:1|200:0|201:1|202:1|203:1|205:0|206:0|208:0|217:1|218:1|219:0|220:0|221:0| -stringPrefs "3:7;release|97:0;|142:3;1.0|154:332; ¼½¾ǃː̷̸։֊׃״؉؊٪۔܁܂܃܄ᅟᅠ᜵ ‐’․‧ ‹›⁁⁄⁒ ⅓⅔⅕⅖⅗⅘⅙⅚⅛⅜⅝⅞⅟∕∶⎮╱⧶⧸⫻⫽⿰⿱⿲⿳⿴⿵⿶⿷⿸⿹⿺⿻ 。〔〕〳゠ㅤ㈝㈞㎮㎯㏆㏟꞉︔︕︿﹝﹞./。ᅠ�|155:4;high|192:38;{ebeaa1d9-d676-432f-be6a-9e995264c416}|" -schedulerPrefs 0001,2 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" 3728 "\\.\pipe\gecko-crash-server-pipe.3728" tab
C:\Windows\system32\wbem\wmiprvse.exe
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="3728.24.2064440473\250386125" -childID 5 -isForBrowser -intPrefs 5:50|6:-1|28:1000|34:20|35:5|36:10|45:128|46:10000|51:0|53:400|54:1|55:0|56:0|61:0|62:120|63:120|99:2|100:1|115:5000|125:0|127:0|138:10000|150:-1|158:24|159:32768|161:0|162:0|170:0|174:1048576|175:100|176:5000|178:600|180:1|188:20|191:4|195:0|204:60000| -boolPrefs 1:0|2:0|4:0|26:1|27:1|30:0|33:1|37:1|38:0|39:0|40:0|43:1|44:1|47:0|48:0|49:0|50:0|52:0|57:1|58:1|59:0|60:1|64:1|65:1|66:0|67:1|68:1|69:0|70:1|73:0|74:0|77:1|78:1|82:1|83:1|84:0|85:0|86:0|88:0|89:0|90:1|91:1|92:1|95:1|96:0|98:0|101:1|102:0|109:0|114:0|117:1|120:1|122:1|126:0|129:1|132:1|133:1|139:1|140:0|141:1|143:0|149:0|151:1|152:0|153:1|156:0|157:0|160:1|163:1|165:1|167:1|168:0|177:1|182:0|183:1|184:0|185:1|186:0|187:0|189:1|190:1|193:0|196:0|197:0|198:1|199:1|200:0|201:1|202:1|203:1|205:0|206:0|208:0|217:1|218:1|219:0|220:0|221:0| -stringPrefs "3:7;release|97:0;|142:3;1.0|154:332; ¼½¾ǃː̷̸։֊׃״؉؊٪۔܁܂܃܄ᅟᅠ᜵ ‐’․‧ ‹›⁁⁄⁒ ⅓⅔⅕⅖⅗⅘⅙⅚⅛⅜⅝⅞⅟∕∶⎮╱⧶⧸⫻⫽⿰⿱⿲⿳⿴⿵⿶⿷⿸⿹⿺⿻ 。〔〕〳゠ㅤ㈝㈞㎮㎯㏆㏟꞉︔︕︿﹝﹞./。ᅠ�|155:4;high|192:38;{ebeaa1d9-d676-432f-be6a-9e995264c416}|" -schedulerPrefs 0001,2 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" 3728 "\\.\pipe\gecko-crash-server-pipe.3728" tab
"Z:\portable\ThunderbirdPortable\ThunderbirdPortable_aktualni\ThunderbirdPortable.exe"
"Z:\portable\ThunderbirdPortable\ThunderbirdPortable_aktualni\App\thunderbird\thunderbird.exe" -profile "Z:\portable\ThunderbirdPortable\ThunderbirdPortable_aktualni\Data\profile"
C:\Windows\system32\wbem\wmiprvse.exe
"E:\stazene_soubory\RSITx64.exe"
"C:\Program Files\Mozilla Firefox\firefox.exe" -contentproc --channel="3728.30.83878971\1759102055" -childID 6 -isForBrowser -intPrefs 5:50|6:-1|28:1000|34:20|35:5|36:10|45:128|46:10000|51:0|53:400|54:1|55:0|56:0|61:0|62:120|63:120|99:2|100:1|115:5000|125:0|127:0|138:10000|150:-1|158:24|159:32768|161:0|162:0|170:0|174:1048576|175:100|176:5000|178:600|180:1|188:20|191:4|195:0|204:60000| -boolPrefs 1:0|2:0|4:0|26:1|27:1|30:0|33:1|37:1|38:0|39:0|40:0|43:1|44:1|47:0|48:0|49:0|50:0|52:0|57:1|58:1|59:0|60:1|64:1|65:1|66:0|67:1|68:1|69:0|70:1|73:0|74:0|77:1|78:1|82:1|83:1|84:0|85:0|86:0|88:0|89:0|90:1|91:1|92:1|95:1|96:0|98:0|101:1|102:0|109:0|114:0|117:1|120:1|122:1|126:0|129:1|132:1|133:1|139:1|140:0|141:1|143:0|149:0|151:1|152:0|153:1|156:0|157:0|160:1|163:1|165:1|167:1|168:0|177:1|182:0|183:1|184:0|185:1|186:0|187:0|189:1|190:1|193:0|196:0|197:0|198:1|199:1|200:0|201:1|202:1|203:1|205:0|206:0|208:0|217:1|218:1|219:0|220:0|221:0| -stringPrefs "3:7;release|97:0;|142:3;1.0|154:332; ¼½¾ǃː̷̸։֊׃״؉؊٪۔܁܂܃܄ᅟᅠ᜵ ‐’․‧ ‹›⁁⁄⁒ ⅓⅔⅕⅖⅗⅘⅙⅚⅛⅜⅝⅞⅟∕∶⎮╱⧶⧸⫻⫽⿰⿱⿲⿳⿴⿵⿶⿷⿸⿹⿺⿻ 。〔〕〳゠ㅤ㈝㈞㎮㎯㏆㏟꞉︔︕︿﹝﹞./。ᅠ�|155:4;high|192:38;{ebeaa1d9-d676-432f-be6a-9e995264c416}|" -schedulerPrefs 0001,2 -greomni "C:\Program Files\Mozilla Firefox\omni.ja" -appomni "C:\Program Files\Mozilla Firefox\browser\omni.ja" -appdir "C:\Program Files\Mozilla Firefox\browser" 3728 "\\.\pipe\gecko-crash-server-pipe.3728" tab
======Scheduled tasks folder======
C:\Windows\tasks\ASUS P4G.job - C:\Program Files\P4G\BatteryLife.exe
C:\Windows\tasks\CCleaner Update.job - C:\Program Files\CCleaner\CCUpdate.exe
C:\Windows\tasks\CorelUpdateHelperTaskCore.job - C:\Program Files (x86)\Corel\CUH\v2\CUH.EXE /t
=========Mozilla firefox=========
ProfilePath - C:\Users\still\AppData\Roaming\Mozilla\Firefox\Profiles\fpj0zzjg.default
prefs.js - "browser.search.suggest.enabled" - false
prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "moz-extension://1a131e50-4ad4-45fc-bcef-bfdd72b475c4/newtab.html"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 27.0.0.187 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_187.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn.me/esnsonar,version=0.70.4]
"Description"=ESN Sonar browser plugin
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@esn/esnlaunch,version=2.3.0]
"Description"=
"Path"=C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 27.0.0.187 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_27_0_0_187.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=12.0.1.0]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre-9.0.1\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=12.0.1.0]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre-9.0.1\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.6]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
C:\Users\still\AppData\Roaming\Mozilla\Firefox\Profiles\fpj0zzjg.default\extensions\
fastdial@telega.phpnet.us
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2012-11-02 399392]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2017-11-10 3350232]
"egui"=C:\Program Files\ESET\ESET Security\ecmdS.exe [2017-11-11 324216]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2012-11-02 171040]
"Persistence"=C:\Windows\system32\igfxpers.exe [2012-11-02 441888]
"RtHDVCpl"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2011-01-26 11775592]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2011-01-18 2188904]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"AlcoholAutomount"=C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2015-03-12 39376]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ACPW06EN]
C:\Program Files\ACD Systems\ACDSee Pro\6.0\ACDSeePro6InTouch2.exe /pid ACPW06EN []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2012-09-23 926896]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner64.exe [2017-12-13 10249048]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2017-09-27 646680]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Wireless Console 3]
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe [2010-09-23 1601536]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^still^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^FancyStart daemon.lnk]
C:\Users\still\AppData\Roaming\MICROS~1\INSTAL~1\{2B818~1\_94E3C~1.EXE [2017-11-20 12862]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2012-11-02 441344]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"ConsentPromptBehaviorUser"=3
"EnableLUA"=0
"EnableUIADesktopToggle"=0
"PromptOnSecureDesktop"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"VIDC.X264"=x264vfw64.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.l3codecp"=l3codecp.acm
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux4"=wdmaud.drv
"msacm.ac3acm"=ac3acm.acm
"wave5"=wdmaud.drv
"mixer5"=wdmaud.drv
"midi5"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.txt - open - C:\Windows\NOTEPAD.EXE %1
======List of files/folders created in the last 1 month======
2018-01-28 01:45:26 ----D---- C:\Program Files\trend micro
2018-01-28 01:45:25 ----D---- C:\rsit
2018-01-28 01:29:27 ----D---- C:\AdwCleaner
2018-01-27 14:39:54 ----D---- C:\jdown
2018-01-26 01:57:46 ----D---- C:\Users\still\AppData\Roaming\Thunderbird
2018-01-11 05:29:15 ----A---- C:\Windows\system32\pdfcmon.dll
2018-01-11 05:29:00 ----D---- C:\Program Files\PDFCreator
2018-01-10 06:01:16 ----D---- C:\Users\still\AppData\Roaming\tor
2018-01-05 00:30:35 ----D---- C:\Program Files (x86)\Battlelog Web Plugins
2018-01-05 00:14:36 ----D---- C:\Program Files\Battlefield 4
2018-01-04 09:49:47 ----A---- C:\Windows\system32\RtNicProp64.dll
2018-01-04 09:48:58 ----A---- C:\Windows\system32\drivers\Rt64win7.sys
2018-01-04 07:54:40 ----D---- C:\ProgramData\Origin
2018-01-02 10:14:08 ----D---- C:\Program Files (x86)\Crysis 3
2017-12-29 16:16:53 ----D---- C:\Program Files\net.downloadhelper.coapp
======List of files/folders modified in the last 1 month======
2018-01-28 01:45:26 ----RD---- C:\Program Files
2018-01-28 01:43:40 ----D---- C:\Windows\System32
2018-01-28 01:43:40 ----D---- C:\Windows\inf
2018-01-28 01:43:40 ----A---- C:\Windows\system32\PerfStringBackup.INI
2018-01-28 01:41:59 ----D---- C:\Windows\Temp
2018-01-28 01:41:38 ----D---- C:\Users\still\AppData\Roaming\Mozilla
2018-01-27 23:37:47 ----D---- C:\Windows\system32\wdi
2018-01-27 16:36:37 ----D---- C:\Users\still\AppData\Roaming\vlc
2018-01-27 14:43:30 ----D---- C:\Program Files\Mozilla Firefox
2018-01-24 13:05:43 ----D---- C:\Windows\Tasks
2018-01-15 12:36:20 ----SHD---- C:\System Volume Information
2018-01-15 00:53:07 ----D---- C:\Windows\system32\config
2018-01-15 00:53:03 ----D---- C:\Windows\winsxs
2018-01-15 00:43:17 ----A---- C:\ProgramData\VC_Inst_Ver.txt
2018-01-15 00:43:16 ----SHD---- C:\Windows\Installer
2018-01-15 00:42:47 ----D---- C:\Program Files\Common Files\Microsoft Shared
2018-01-15 00:42:26 ----D---- C:\Windows\SysWOW64
2018-01-15 00:39:47 ----D---- C:\ProgramData\Package Cache
2018-01-10 11:30:41 ----D---- C:\Program Files (x86)\Connectify
2018-01-05 00:30:35 ----RD---- C:\Program Files (x86)
2018-01-05 00:29:55 ----RSD---- C:\Windows\assembly
2018-01-04 23:38:04 ----D---- C:\Windows\Minidump
2018-01-04 23:38:04 ----D---- C:\Windows
2018-01-04 09:52:27 ----D---- C:\Windows\system32\drivers
2018-01-04 09:52:19 ----D---- C:\Windows\system32\DriverStore
2018-01-04 09:50:01 ----A---- C:\Windows\system32\RTNUninst64.dll
2018-01-04 07:54:40 ----HD---- C:\ProgramData
2018-01-04 07:45:40 ----D---- C:\Program Files (x86)\Common Files
2018-01-02 10:21:26 ----D---- C:\ProgramData\Electronic Arts
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R0 edevmon;edevmon; C:\Windows\system32\DRIVERS\edevmon.sys [2017-05-04 107344]
R0 iaStorA;iaStorA; C:\Windows\system32\DRIVERS\iaStorA.sys [2017-11-10 632168]
R0 iaStorF;iaStorF; C:\Windows\system32\DRIVERS\iaStorF.sys [2017-11-10 28008]
R0 nvpciflt;nvpciflt; C:\Windows\system32\DRIVERS\nvpciflt.sys [2017-11-10 38336]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R0 sptd;sptd; C:\Windows\System32\Drivers\sptd.sys [2017-11-11 394296]
R1 cnnctfy3;Connectify LightWeight Filter; C:\Windows\system32\DRIVERS\cnnctfy3.sys [2017-11-17 35352]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-21 514560]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2017-11-11 132848]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2017-11-11 180088]
R1 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2017-05-04 78192]
R1 EpfwLWF;ESET Personal Firewall; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2017-05-04 60544]
R1 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2017-11-11 102160]
R1 truecrypt;truecrypt; C:\Windows\System32\drivers\truecrypt.sys [2017-11-10 231376]
R1 VBoxDrv;VirtualBox Service; C:\Windows\system32\DRIVERS\VBoxDrv.sys [2017-11-22 972192]
R1 VBoxNetLwf;VirtualBox NDIS6 Bridged Networking Service; C:\Windows\system32\DRIVERS\VBoxNetLwf.sys [2017-11-22 211704]
R1 VBoxUSBMon;VirtualBox USB Monitor Driver; C:\Windows\system32\DRIVERS\VBoxUSBMon.sys [2017-11-22 157672]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ekbdflt;ekbdflt; C:\Windows\system32\DRIVERS\ekbdflt.sys [2017-05-04 50752]
R3 AthBTPort;Atheros Virtual Bluetooth Class; C:\Windows\system32\DRIVERS\btath_flt.sys [2011-03-13 36000]
R3 athur;Wireless Network Adapter Service; C:\Windows\system32\DRIVERS\athurx.sys [2013-06-28 1930240]
R3 bcbtums;Bluetooth RAM Firmware Download USB Filter; C:\Windows\system32\drivers\bcbtums.sys [2017-11-10 172760]
R3 BTATH_A2DP;Bluetooth A2DP Audio Driver; C:\Windows\system32\drivers\btath_a2dp.sys [2011-03-13 298656]
R3 BTATH_BUS;Atheros Bluetooth Bus; C:\Windows\system32\DRIVERS\btath_bus.sys [2011-03-13 28832]
R3 BTATH_HCRP;Bluetooth HCRP Server driver; C:\Windows\system32\DRIVERS\btath_hcrp.sys [2011-03-13 201376]
R3 BTATH_LWFLT;Bluetooth LWFLT Device; C:\Windows\system32\DRIVERS\btath_lwflt.sys [2011-03-13 55456]
R3 BTATH_RCP;Bluetooth AVRCP Device; C:\Windows\system32\DRIVERS\btath_rcp.sys [2011-03-13 154272]
R3 BthEnum;Ovladač pro Bluetooth Request Block; C:\Windows\system32\drivers\BthEnum.sys [2009-07-14 41984]
R3 BTHUSB;Ovladač rozhraní USB radiostanice Bluetooth; C:\Windows\System32\Drivers\BTHUSB.sys [2011-04-28 80384]
R3 btwampfl;btwampfl; C:\Windows\system32\DRIVERS\btwampfl.sys [2017-11-10 600280]
R3 ETD;ELAN Input Device; C:\Windows\system32\DRIVERS\ETD.sys [2017-11-10 449752]
R3 FLxHCIc;Fresco Logic xHCI (USB3) Device Driver; C:\Windows\system32\DRIVERS\FLxHCIc.sys [2017-11-10 252536]
R3 FLxHCIh;Fresco Logic xHCI (USB3) Hub Device Driver; C:\Windows\system32\DRIVERS\FLxHCIh.sys [2017-11-10 77944]
R3 ICCWDT;Intel(R) Watchdog Timer Driver (Intel(R) WDT); C:\Windows\system32\DRIVERS\ICCWDT.sys [2017-11-10 38480]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2012-11-02 5332896]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2011-01-27 2734696]
R3 IntcDAud;Intel(R) Display Audio; C:\Windows\system32\DRIVERS\IntcDAud.sys [2017-11-22 480800]
R3 kbfiltr;Keyboard Filter; C:\Windows\system32\DRIVERS\kbfiltr.sys [2009-07-20 15416]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2010-10-19 56344]
R3 RFCOMM;Zařízení Bluetooth (RFCOMM protokol TDI); C:\Windows\system32\DRIVERS\rfcomm.sys [2009-07-14 158720]
S3 BthPan;Zařízení Bluetooth (síť PAN); C:\Windows\system32\drivers\bthpan.sys [2017-07-06 119296]
S3 BTHPORT;Ovladač portu Bluetooth; C:\Windows\System32\Drivers\BTHport.sys [2012-07-06 552960]
S3 dmvsc;dmvsc; C:\Windows\system32\drivers\dmvsc.sys [2010-11-21 71168]
S3 NETwNs64;___ Ovladač adaptéru řady Intel(R) Wireless WiFi Link 5000 pro systém Windows 7 64 Bit; C:\Windows\system32\DRIVERS\NETwsw00.sys [2017-11-10 11531536]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-21 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2018-01-04 1077696]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-21 6656]
S3 SNP2UVC;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2010-09-07 1800832]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-21 34688]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2012-08-23 30208]
S3 VBoxNetAdp;VirtualBox NDIS 6.0 Miniport Service; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [2017-11-22 200832]
S3 VBoxUSB;VirtualBox USB; C:\Windows\System32\Drivers\VBoxUSB.sys [2017-11-22 144632]
S3 vmbus;vmbus; C:\Windows\system32\drivers\vmbus.sys [2010-11-21 199552]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-21 21760]
S3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
S3 WinUSB;Lenovo USB Driver; C:\Windows\system32\DRIVERS\WinUSB.sys [2010-11-21 41984]
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Security\ekrn.exe [2017-11-11 2648184]
S2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2011-03-13 74912]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2017-04-21 107656]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2017-04-21 128648]
S2 StarWindServiceAE;StarWind AE Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [2009-12-23 370688]
S3 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2012-09-23 65192]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 Atheros Bt&Wlan Coex Agent;Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [2011-03-13 138400]
S3 AxAutoMntSrv;Alcohol Virtual Drive Auto-mount Service; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [2015-03-12 39376]
S3 Connectify;Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [2013-11-05 487936]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2012-11-02 277024]
S3 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe [2017-10-27 462968]
S3 OODefragAgent;O&O Defrag; C:\Program Files\OO Software\Defrag\oodag.exe [2016-12-21 1740864]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S4 AFBAgent;AFBAgent; C:\Windows\system32\FBAgent.exe [2011-01-25 379520]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2017-04-21 52856]
S4 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-04-21 136312]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-04-21 136312]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-04-21 136312]
-----------------EOF-----------------
Re: Prosím o prev. kontrolu
Ahoj
Poprosim o log z AdwCleaneru, bude ulozeny v zlozke C:\AdwCleaner
Poprosim o log z FRST podla tohto navodu (vloz sem obidva logy): https://forum.viry.cz/viewtopic.php?f=13&t=152707
V pripade, ze sa FRSTLauncher nebude dat stiahnut alebo spustit, pouzi iba samotny FRST.
Poprosim o log z AdwCleaneru, bude ulozeny v zlozke C:\AdwCleaner
Poprosim o log z FRST podla tohto navodu (vloz sem obidva logy): https://forum.viry.cz/viewtopic.php?f=13&t=152707
V pripade, ze sa FRSTLauncher nebude dat stiahnut alebo spustit, pouzi iba samotny FRST.
Absolvent skoly pre novacikov
E-mail: conder (zavinac) forum.viry.cz
Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).
Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.
V pripade spokojnosti je mozne podporit forum. Dakujeme!
E-mail: conder (zavinac) forum.viry.cz
Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).
Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.
V pripade spokojnosti je mozne podporit forum. Dakujeme!
-
- Návštěvník
- Příspěvky: 25
- Registrován: 02 úno 2007 18:09
- Bydliště: Prague
- Kontaktovat uživatele:
Re: Prosím o prev. kontrolu
Nevím který log z ADWCleaneru, tak vkládám ten po scanu (ještě tu má log po čištění, zdá se být stejný). Následuje log z FRSTLauncher a soubor Addition.txt jsem podle instrukcí z návodu zabalil do ZIPu a přiložil jako přílohu k tomuto příspěvku.
# AdwCleaner 7.0.7.0 - Logfile created on Sun Jan 28 00:37:17 2018
# Updated on 2018/18/01 by Malwarebytes
# Database: 01-26-2018.4
# Running on Windows 7 Professional (X64)
# Mode: scan
# Support: https://www.malwarebytes.com/support
***** [ Services ] *****
No malicious services found.
***** [ Folders ] *****
No malicious folders found.
***** [ Files ] *****
No malicious files found.
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
No malicious tasks found.
***** [ Registry ] *****
No malicious registry entries found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries.
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries.
*************************
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt ##########
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27.01.2018
Ran by still (administrator) on WE168468 (28-01-2018 03:41:55)
Running from C:\Users\still\Desktop
Loaded Profiles: still (Available Profiles: still)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ESET) C:\Program Files\ESET\ESET Security\egui.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(TrueCrypt Foundation) C:\Program Files\TrueCrypt\TrueCrypt.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Users\still\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3350232 2017-11-10] (ELAN Microelectronics Corp.)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmdS.exe [324216 2017-11-11] (ESET)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11775592 2011-01-26] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2188904 2011-01-18] (Realtek Semiconductor)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\Run: [AlcoholAutomount] => C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft Development Team)
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\Policies\Explorer: [NoInternetOpenWith] 1
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\MountPoints2: {de043740-c7d1-11e7-bda2-806e6f6e6963} - H:\Autorun\autorun.exe
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\MountPoints2: {de0438dc-c7d1-11e7-bda2-74f06ddc2ce5} - G:\Lenovo_Suite.exe
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\MountPoints2: {f40954e6-cb55-11e7-b023-9f020f53483c} - I:\Lenovo_Suite.exe
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [11264 2009-07-14] (Microsoft Corporation)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [171896 2017-11-10] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [149552 2017-11-10] (NVIDIA Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\..\Interfaces\{9A408F53-E339-4DE2-9ABF-E7A98F13A6DD}: [DhcpNameServer] 10.0.1.2 10.0.1.6 192.168.1.1
Internet Explorer:
==================
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll [2015-12-10] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2015-12-10] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll [2015-12-10] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2015-12-10] (Microsoft Corporation)
FireFox:
========
FF DefaultProfile: fpj0zzjg.default
FF ProfilePath: C:\Users\still\AppData\Roaming\Mozilla\Firefox\Profiles\Profiles\fpj0zzjg.default [not found] <==== ATTENTION
FF ProfilePath: Z:\firefox_profil\fpj0zzjg.default [2018-01-28]
FF Homepage: Z:\firefox_profil\fpj0zzjg.default -> moz-extension://1a131e50-4ad4-45fc-bcef-bfdd72b475c4/newtab.html
FF NetworkProxy: Z:\firefox_profil\fpj0zzjg.default -> type", 0
FF NewTabOverride: Z:\firefox_profil\fpj0zzjg.default -> Enabled: pavel.sherbakov@gmail.com
FF NewTabOverride: Z:\firefox_profil\fpj0zzjg.default -> Disabled: quickdial@matmoul.com
FF Extension: (Add-on Compatibility Reporter) - Z:\firefox_profil\fpj0zzjg.default\Extensions\compatibility@addons.mozilla.org.xpi [2017-11-21] [Legacy]
FF Extension: (Element Hiding Helper for Adblock Plus) - Z:\firefox_profil\fpj0zzjg.default\Extensions\elemhidehelper@adblockplus.org.xpi [2017-11-10] [Legacy]
FF Extension: (Enhancer for YouTube™) - Z:\firefox_profil\fpj0zzjg.default\Extensions\enhancerforyoutube@maximerf.addons.mozilla.org.xpi [2018-01-11]
FF Extension: (Ghostery) - Z:\firefox_profil\fpj0zzjg.default\Extensions\firefox@ghostery.com.xpi [2018-01-11]
FF Extension: (Video Downloader Prime) - Z:\firefox_profil\fpj0zzjg.default\Extensions\jid1-i6dUGvCrz2WZu8@jetpack.xpi [2018-01-25]
FF Extension: (New Tab Page) - Z:\firefox_profil\fpj0zzjg.default\Extensions\pavel.sherbakov@gmail.com.xpi [2018-01-25]
FF Extension: (Quick Dial) - Z:\firefox_profil\fpj0zzjg.default\Extensions\quickdial@matmoul.com.xpi [2017-12-24]
FF Extension: (uBlock Origin) - Z:\firefox_profil\fpj0zzjg.default\Extensions\uBlock0@raymondhill.net.xpi [2018-01-14]
FF Extension: (FlashGot) - Z:\firefox_profil\fpj0zzjg.default\Extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}.xpi [2017-11-10] [Legacy]
FF Extension: (Video DownloadHelper) - Z:\firefox_profil\fpj0zzjg.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2018-01-24]
FF Extension: (Adblock Plus) - Z:\firefox_profil\fpj0zzjg.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-12-13]
FF Extension: (Greasemonkey) - Z:\firefox_profil\fpj0zzjg.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2018-01-24]
FF Extension: (Fast Dial) - Z:\firefox_profil\fpj0zzjg.default\Extensions\fastdial@telega.phpnet.us [2017-11-10] [Legacy]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_27_0_0_187.dll [2017-11-28] ()
FF Plugin: @java.com/DTPlugin,version=12.0.1.0 -> C:\Program Files\Java\jre-9.0.1\bin\dtplugin\npDeployJava1.dll [2017-11-11] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=12.0.1.0 -> C:\Program Files\Java\jre-9.0.1\bin\plugin2\npjp2.dll [2017-11-11] (Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_187.dll [2017-11-28] ()
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2012-09-23] (Adobe Systems Inc.)
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-03-13] (Atheros) [File not signed]
S2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [74912 2011-03-13] (Atheros Commnucations) [File not signed]
S3 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft Development Team)
S3 Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [487936 2013-11-05] (Connectify) [File not signed]
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2648184 2017-11-11] (ESET)
S3 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [1740864 2016-12-21] (O&O Software GmbH)
S2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed]
S4 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S3 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [172760 2017-11-10] (Broadcom Corporation.)
R1 cnnctfy3; C:\Windows\System32\DRIVERS\cnnctfy3.sys [35352 2017-11-17] (Connectify)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [132848 2017-11-11] (ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [107344 2017-05-04] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [180088 2017-11-11] (ESET)
R2 ekbdflt; C:\Windows\System32\DRIVERS\ekbdflt.sys [50752 2017-05-04] (ESET)
R1 epfw; C:\Windows\System32\DRIVERS\epfw.sys [78192 2017-05-04] (ESET)
R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [60544 2017-05-04] (ESET)
R1 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [102160 2017-11-11] (ESET)
R3 FLxHCIh; C:\Windows\System32\DRIVERS\FLxHCIh.sys [77944 2017-11-10] (Fresco Logic)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2017-11-10] (Intel Corporation)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1800832 2010-09-07] (Sonix Technology Co., Ltd.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [394296 2017-11-11] (Duplex Secure Ltd.)
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] ()
S3 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [200832 2017-11-22] (Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\System32\DRIVERS\VBoxNetLwf.sys [211704 2017-11-22] (Oracle Corporation)
S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [144632 2017-11-22] (Oracle Corporation)
U3 adja74un; C:\Windows\System32\Drivers\adja74un.sys [0 ] (Intel Corporation) <==== ATTENTION (zero byte File/Folder)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-01-28 03:41 - 2018-01-28 03:42 - 000011883 _____ C:\Users\still\Desktop\FRST.txt
2018-01-28 03:40 - 2018-01-28 03:41 - 000000000 ____D C:\FRST
2018-01-28 03:40 - 2018-01-28 03:40 - 002393088 _____ (Farbar) C:\Users\still\Desktop\FRST64.exe
2018-01-28 03:36 - 2018-01-28 03:37 - 000112640 _____ (forum.viry.cz) C:\Users\still\Desktop\FRSTLauncher.exe
2018-01-28 01:45 - 2018-01-28 01:45 - 000000000 ____D C:\rsit
2018-01-28 01:45 - 2018-01-28 01:45 - 000000000 ____D C:\Program Files\trend micro
2018-01-28 01:29 - 2018-01-28 01:37 - 000000000 ____D C:\AdwCleaner
2018-01-27 14:39 - 2018-01-27 14:41 - 000000000 ____D C:\jdown
2018-01-26 01:57 - 2018-01-28 02:22 - 000000000 ____D C:\Users\still\AppData\Roaming\Thunderbird
2018-01-14 22:25 - 2018-01-14 22:25 - 000000000 ____D C:\Users\still\AppData\LocalLow\Temp
2018-01-11 05:54 - 2018-01-11 05:54 - 000000000 ___RD C:\Users\still\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2018-01-11 05:29 - 2018-01-11 11:32 - 000000000 ____D C:\Users\still\AppData\Local\PDFCreator
2018-01-11 05:29 - 2018-01-11 11:32 - 000000000 ____D C:\Program Files\PDFCreator
2018-01-11 05:29 - 2018-01-11 05:29 - 000116224 _____ (pdfforge GmbH) C:\Windows\system32\pdfcmon.dll
2018-01-11 05:29 - 2018-01-11 05:29 - 000000836 _____ C:\Users\Public\Desktop\PDFCreator.lnk
2018-01-11 05:29 - 2018-01-11 05:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
2018-01-10 06:01 - 2018-01-10 06:38 - 000000000 ____D C:\Users\still\AppData\Roaming\tor
2018-01-05 02:50 - 2018-01-05 02:50 - 000001368 _____ C:\Users\still\Desktop\Battlefield4 (64b).lnk
2018-01-05 00:30 - 2018-01-05 00:30 - 000000000 ____D C:\Program Files (x86)\Battlelog Web Plugins
2018-01-05 00:14 - 2018-01-05 00:28 - 000000000 ____D C:\Program Files\Battlefield 4
2018-01-04 09:49 - 2018-01-04 09:49 - 000122816 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2018-01-04 09:48 - 2018-01-04 09:49 - 001077696 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys
2018-01-04 07:54 - 2018-01-04 07:54 - 000000000 ____D C:\ProgramData\Origin
2018-01-02 10:20 - 2018-01-02 10:20 - 000001106 _____ C:\Users\Public\Desktop\Crysis 3.lnk
2018-01-02 10:20 - 2018-01-02 10:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crysis 3
2018-01-02 10:14 - 2018-01-02 10:21 - 000000000 ____D C:\Program Files (x86)\Crysis 3
2017-12-29 16:16 - 2017-12-29 16:17 - 000000000 ____D C:\Program Files\net.downloadhelper.coapp
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-01-28 02:43 - 2017-11-17 03:49 - 000000000 ____D C:\Program Files\Mozilla Firefox
2018-01-28 02:36 - 2017-11-10 01:10 - 000000000 ____D C:\Users\still\AppData\LocalLow\Mozilla
2018-01-28 02:33 - 2017-11-11 23:30 - 000000000 ____D C:\Users\still\AppData\Local\JDownloader 2.0
2018-01-28 02:23 - 2017-11-10 01:10 - 000000000 ____D C:\Users\still\AppData\Roaming\Mozilla
2018-01-28 01:43 - 2011-04-12 09:34 - 000668792 _____ C:\Windows\system32\perfh005.dat
2018-01-28 01:43 - 2011-04-12 09:34 - 000141420 _____ C:\Windows\system32\perfc005.dat
2018-01-28 01:43 - 2009-07-14 06:13 - 001583226 _____ C:\Windows\system32\PerfStringBackup.INI
2018-01-28 01:43 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf
2018-01-28 01:39 - 2017-11-17 05:52 - 000000374 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2018-01-27 16:36 - 2017-11-10 00:53 - 000000000 ____D C:\Users\still\AppData\Roaming\vlc
2018-01-27 02:39 - 2009-07-14 05:45 - 000033936 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-01-27 02:39 - 2009-07-14 05:45 - 000033936 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-01-15 00:43 - 2017-12-10 02:41 - 000000209 _____ C:\ProgramData\VC_Inst_Ver.txt
2018-01-15 00:42 - 2009-07-14 04:20 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared
2018-01-15 00:39 - 2017-12-13 00:23 - 000000000 ____D C:\ProgramData\Package Cache
2018-01-11 11:32 - 2017-11-27 00:14 - 000000000 ____D C:\Users\still\AppData\Local\CrashDumps
2018-01-10 11:30 - 2017-11-17 06:04 - 000000000 ____D C:\Program Files (x86)\Connectify
2018-01-09 12:39 - 2017-12-15 22:49 - 000000000 ____D C:\Users\still\.VirtualBox
2018-01-06 04:38 - 2017-11-21 08:40 - 000000300 ____H C:\Windows\Tasks\CCleaner Update.job
2018-01-05 00:30 - 2009-07-14 06:32 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2018-01-04 23:38 - 2017-12-20 02:21 - 000000000 ____D C:\Windows\Minidump
2018-01-04 09:50 - 2017-11-10 01:07 - 000118784 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll
2018-01-04 07:46 - 2017-11-13 13:46 - 000000000 ____D C:\Users\still\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2018-01-02 10:21 - 2017-12-25 06:23 - 000000000 ____D C:\ProgramData\Electronic Arts
2017-12-31 05:50 - 2017-11-12 02:36 - 000000000 ____D C:\Users\still\dwhelper
==================== Files in the root of some directories =======
2017-12-16 13:25 - 2017-12-16 13:25 - 000003584 _____ () C:\Users\still\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2017-12-23 13:34 - 2017-12-23 13:34 - 000000854 _____ () C:\Users\still\AppData\Local\recently-used.xbel
Some files in TEMP:
====================
2016-10-19 16:11 - 2016-10-19 16:11 - 002458672 _____ (The OpenSSL Project, http://www.openssl.org/) C:\Users\still\AppData\Local\Temp\libeay32.dll
2016-10-19 16:11 - 2016-10-19 16:11 - 000970912 _____ (Microsoft Corporation) C:\Users\still\AppData\Local\Temp\msvcr120.dll
2018-01-26 09:59 - 2018-01-26 09:59 - 000040448 ____N () C:\Users\still\AppData\Local\Temp\proxy_vole2704818244127031751.dll
2018-01-27 05:12 - 2018-01-27 05:12 - 000040448 ____N () C:\Users\still\AppData\Local\Temp\proxy_vole3770065469433047514.dll
2018-01-26 09:59 - 2018-01-26 09:59 - 000040448 ____N () C:\Users\still\AppData\Local\Temp\proxy_vole4647850597775841554.dll
2018-01-27 05:12 - 2018-01-27 05:12 - 000040448 ____N () C:\Users\still\AppData\Local\Temp\proxy_vole7525501866549214625.dll
2018-01-27 05:12 - 2018-01-27 05:12 - 000040448 ____N () C:\Users\still\AppData\Local\Temp\proxy_vole8408361031115960924.dll
2018-01-26 09:59 - 2018-01-26 09:59 - 000040448 ____N () C:\Users\still\AppData\Local\Temp\proxy_vole9035476571372230804.dll
2016-10-19 16:11 - 2016-10-19 16:11 - 000772672 _____ () C:\Users\still\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-11-10 08:55
==================== End of FRST.txt ============================
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:512.21 GB) (Free:349.51 GB) NTFS
Drive e: (DATA750) (Fixed) (Total:698.63 GB) (Free:108.25 GB) NTFS
Drive z: (YYY) (Fixed) (Total:2 GB) (Free:0.41 GB) FAT
Available physical RAM: 5369.94 MB
Total physical RAM: 8103.08 MB
Percentage of memory in use: 33%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 698.6 GB) (Disk ID: 028817CF)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=512.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=186.3 GB) - (Type=05)
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: AE1538A7)
Partition 1: (Not Active) - (Size=698.6 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\ASUS P4G.job => C:\Program Files\P4G\BatteryLife.exe
Task: C:\Windows\Tasks\CCleaner Update.job => C:\Program Files\CCleaner\CCUpdate.exe
Task: C:\Windows\Tasks\CorelUpdateHelperTaskCore.job => C:\Program Files (x86)\Corel\CUH\v2\CUH.EXE
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\still\Desktop" je 2 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ACPW06EN
"C:\Program Files\ACD Systems\ACDSee Pro\6.0\ACDSeePro6InTouch2.exe" /pid ACPW06EN [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring
"C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Wireless Console 3
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^still^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^FancyStart daemon.lnk
C:\Users\still\AppData\Roaming\MICROS~1\INSTAL~1\{2B818~1\_94E3C~1.EXE
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
# AdwCleaner 7.0.7.0 - Logfile created on Sun Jan 28 00:37:17 2018
# Updated on 2018/18/01 by Malwarebytes
# Database: 01-26-2018.4
# Running on Windows 7 Professional (X64)
# Mode: scan
# Support: https://www.malwarebytes.com/support
***** [ Services ] *****
No malicious services found.
***** [ Folders ] *****
No malicious folders found.
***** [ Files ] *****
No malicious files found.
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
No malicious tasks found.
***** [ Registry ] *****
No malicious registry entries found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries.
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries.
*************************
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt ##########
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 27.01.2018
Ran by still (administrator) on WE168468 (28-01-2018 03:41:55)
Running from C:\Users\still\Desktop
Loaded Profiles: still (Available Profiles: still)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 8 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(Microsoft Corporation) C:\Windows\System32\alg.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ESET) C:\Program Files\ESET\ESET Security\egui.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(TrueCrypt Foundation) C:\Program Files\TrueCrypt\TrueCrypt.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Users\still\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3350232 2017-11-10] (ELAN Microelectronics Corp.)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmdS.exe [324216 2017-11-11] (ESET)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11775592 2011-01-26] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2188904 2011-01-18] (Realtek Semiconductor)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\Run: [AlcoholAutomount] => C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft Development Team)
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\Policies\Explorer: [NoInternetOpenWith] 1
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\MountPoints2: {de043740-c7d1-11e7-bda2-806e6f6e6963} - H:\Autorun\autorun.exe
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\MountPoints2: {de0438dc-c7d1-11e7-bda2-74f06ddc2ce5} - G:\Lenovo_Suite.exe
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\MountPoints2: {f40954e6-cb55-11e7-b023-9f020f53483c} - I:\Lenovo_Suite.exe
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [11264 2009-07-14] (Microsoft Corporation)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [171896 2017-11-10] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [149552 2017-11-10] (NVIDIA Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\..\Interfaces\{9A408F53-E339-4DE2-9ABF-E7A98F13A6DD}: [DhcpNameServer] 10.0.1.2 10.0.1.6 192.168.1.1
Internet Explorer:
==================
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll [2015-12-10] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2015-12-10] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll [2015-12-10] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2015-12-10] (Microsoft Corporation)
FireFox:
========
FF DefaultProfile: fpj0zzjg.default
FF ProfilePath: C:\Users\still\AppData\Roaming\Mozilla\Firefox\Profiles\Profiles\fpj0zzjg.default [not found] <==== ATTENTION
FF ProfilePath: Z:\firefox_profil\fpj0zzjg.default [2018-01-28]
FF Homepage: Z:\firefox_profil\fpj0zzjg.default -> moz-extension://1a131e50-4ad4-45fc-bcef-bfdd72b475c4/newtab.html
FF NetworkProxy: Z:\firefox_profil\fpj0zzjg.default -> type", 0
FF NewTabOverride: Z:\firefox_profil\fpj0zzjg.default -> Enabled: pavel.sherbakov@gmail.com
FF NewTabOverride: Z:\firefox_profil\fpj0zzjg.default -> Disabled: quickdial@matmoul.com
FF Extension: (Add-on Compatibility Reporter) - Z:\firefox_profil\fpj0zzjg.default\Extensions\compatibility@addons.mozilla.org.xpi [2017-11-21] [Legacy]
FF Extension: (Element Hiding Helper for Adblock Plus) - Z:\firefox_profil\fpj0zzjg.default\Extensions\elemhidehelper@adblockplus.org.xpi [2017-11-10] [Legacy]
FF Extension: (Enhancer for YouTube™) - Z:\firefox_profil\fpj0zzjg.default\Extensions\enhancerforyoutube@maximerf.addons.mozilla.org.xpi [2018-01-11]
FF Extension: (Ghostery) - Z:\firefox_profil\fpj0zzjg.default\Extensions\firefox@ghostery.com.xpi [2018-01-11]
FF Extension: (Video Downloader Prime) - Z:\firefox_profil\fpj0zzjg.default\Extensions\jid1-i6dUGvCrz2WZu8@jetpack.xpi [2018-01-25]
FF Extension: (New Tab Page) - Z:\firefox_profil\fpj0zzjg.default\Extensions\pavel.sherbakov@gmail.com.xpi [2018-01-25]
FF Extension: (Quick Dial) - Z:\firefox_profil\fpj0zzjg.default\Extensions\quickdial@matmoul.com.xpi [2017-12-24]
FF Extension: (uBlock Origin) - Z:\firefox_profil\fpj0zzjg.default\Extensions\uBlock0@raymondhill.net.xpi [2018-01-14]
FF Extension: (FlashGot) - Z:\firefox_profil\fpj0zzjg.default\Extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}.xpi [2017-11-10] [Legacy]
FF Extension: (Video DownloadHelper) - Z:\firefox_profil\fpj0zzjg.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2018-01-24]
FF Extension: (Adblock Plus) - Z:\firefox_profil\fpj0zzjg.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-12-13]
FF Extension: (Greasemonkey) - Z:\firefox_profil\fpj0zzjg.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2018-01-24]
FF Extension: (Fast Dial) - Z:\firefox_profil\fpj0zzjg.default\Extensions\fastdial@telega.phpnet.us [2017-11-10] [Legacy]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_27_0_0_187.dll [2017-11-28] ()
FF Plugin: @java.com/DTPlugin,version=12.0.1.0 -> C:\Program Files\Java\jre-9.0.1\bin\dtplugin\npDeployJava1.dll [2017-11-11] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=12.0.1.0 -> C:\Program Files\Java\jre-9.0.1\bin\plugin2\npjp2.dll [2017-11-11] (Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_187.dll [2017-11-28] ()
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2012-09-23] (Adobe Systems Inc.)
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-03-13] (Atheros) [File not signed]
S2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [74912 2011-03-13] (Atheros Commnucations) [File not signed]
S3 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft Development Team)
S3 Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [487936 2013-11-05] (Connectify) [File not signed]
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [2648184 2017-11-11] (ESET)
S3 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [1740864 2016-12-21] (O&O Software GmbH)
S2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed]
S4 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S3 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [172760 2017-11-10] (Broadcom Corporation.)
R1 cnnctfy3; C:\Windows\System32\DRIVERS\cnnctfy3.sys [35352 2017-11-17] (Connectify)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [132848 2017-11-11] (ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [107344 2017-05-04] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [180088 2017-11-11] (ESET)
R2 ekbdflt; C:\Windows\System32\DRIVERS\ekbdflt.sys [50752 2017-05-04] (ESET)
R1 epfw; C:\Windows\System32\DRIVERS\epfw.sys [78192 2017-05-04] (ESET)
R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [60544 2017-05-04] (ESET)
R1 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [102160 2017-11-11] (ESET)
R3 FLxHCIh; C:\Windows\System32\DRIVERS\FLxHCIh.sys [77944 2017-11-10] (Fresco Logic)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2017-11-10] (Intel Corporation)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1800832 2010-09-07] (Sonix Technology Co., Ltd.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [394296 2017-11-11] (Duplex Secure Ltd.)
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] ()
S3 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [200832 2017-11-22] (Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\System32\DRIVERS\VBoxNetLwf.sys [211704 2017-11-22] (Oracle Corporation)
S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [144632 2017-11-22] (Oracle Corporation)
U3 adja74un; C:\Windows\System32\Drivers\adja74un.sys [0 ] (Intel Corporation) <==== ATTENTION (zero byte File/Folder)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-01-28 03:41 - 2018-01-28 03:42 - 000011883 _____ C:\Users\still\Desktop\FRST.txt
2018-01-28 03:40 - 2018-01-28 03:41 - 000000000 ____D C:\FRST
2018-01-28 03:40 - 2018-01-28 03:40 - 002393088 _____ (Farbar) C:\Users\still\Desktop\FRST64.exe
2018-01-28 03:36 - 2018-01-28 03:37 - 000112640 _____ (forum.viry.cz) C:\Users\still\Desktop\FRSTLauncher.exe
2018-01-28 01:45 - 2018-01-28 01:45 - 000000000 ____D C:\rsit
2018-01-28 01:45 - 2018-01-28 01:45 - 000000000 ____D C:\Program Files\trend micro
2018-01-28 01:29 - 2018-01-28 01:37 - 000000000 ____D C:\AdwCleaner
2018-01-27 14:39 - 2018-01-27 14:41 - 000000000 ____D C:\jdown
2018-01-26 01:57 - 2018-01-28 02:22 - 000000000 ____D C:\Users\still\AppData\Roaming\Thunderbird
2018-01-14 22:25 - 2018-01-14 22:25 - 000000000 ____D C:\Users\still\AppData\LocalLow\Temp
2018-01-11 05:54 - 2018-01-11 05:54 - 000000000 ___RD C:\Users\still\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2018-01-11 05:29 - 2018-01-11 11:32 - 000000000 ____D C:\Users\still\AppData\Local\PDFCreator
2018-01-11 05:29 - 2018-01-11 11:32 - 000000000 ____D C:\Program Files\PDFCreator
2018-01-11 05:29 - 2018-01-11 05:29 - 000116224 _____ (pdfforge GmbH) C:\Windows\system32\pdfcmon.dll
2018-01-11 05:29 - 2018-01-11 05:29 - 000000836 _____ C:\Users\Public\Desktop\PDFCreator.lnk
2018-01-11 05:29 - 2018-01-11 05:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
2018-01-10 06:01 - 2018-01-10 06:38 - 000000000 ____D C:\Users\still\AppData\Roaming\tor
2018-01-05 02:50 - 2018-01-05 02:50 - 000001368 _____ C:\Users\still\Desktop\Battlefield4 (64b).lnk
2018-01-05 00:30 - 2018-01-05 00:30 - 000000000 ____D C:\Program Files (x86)\Battlelog Web Plugins
2018-01-05 00:14 - 2018-01-05 00:28 - 000000000 ____D C:\Program Files\Battlefield 4
2018-01-04 09:49 - 2018-01-04 09:49 - 000122816 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RtNicProp64.dll
2018-01-04 09:48 - 2018-01-04 09:49 - 001077696 _____ (Realtek ) C:\Windows\system32\Drivers\Rt64win7.sys
2018-01-04 07:54 - 2018-01-04 07:54 - 000000000 ____D C:\ProgramData\Origin
2018-01-02 10:20 - 2018-01-02 10:20 - 000001106 _____ C:\Users\Public\Desktop\Crysis 3.lnk
2018-01-02 10:20 - 2018-01-02 10:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Crysis 3
2018-01-02 10:14 - 2018-01-02 10:21 - 000000000 ____D C:\Program Files (x86)\Crysis 3
2017-12-29 16:16 - 2017-12-29 16:17 - 000000000 ____D C:\Program Files\net.downloadhelper.coapp
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-01-28 02:43 - 2017-11-17 03:49 - 000000000 ____D C:\Program Files\Mozilla Firefox
2018-01-28 02:36 - 2017-11-10 01:10 - 000000000 ____D C:\Users\still\AppData\LocalLow\Mozilla
2018-01-28 02:33 - 2017-11-11 23:30 - 000000000 ____D C:\Users\still\AppData\Local\JDownloader 2.0
2018-01-28 02:23 - 2017-11-10 01:10 - 000000000 ____D C:\Users\still\AppData\Roaming\Mozilla
2018-01-28 01:43 - 2011-04-12 09:34 - 000668792 _____ C:\Windows\system32\perfh005.dat
2018-01-28 01:43 - 2011-04-12 09:34 - 000141420 _____ C:\Windows\system32\perfc005.dat
2018-01-28 01:43 - 2009-07-14 06:13 - 001583226 _____ C:\Windows\system32\PerfStringBackup.INI
2018-01-28 01:43 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf
2018-01-28 01:39 - 2017-11-17 05:52 - 000000374 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2018-01-27 16:36 - 2017-11-10 00:53 - 000000000 ____D C:\Users\still\AppData\Roaming\vlc
2018-01-27 02:39 - 2009-07-14 05:45 - 000033936 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-01-27 02:39 - 2009-07-14 05:45 - 000033936 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-01-15 00:43 - 2017-12-10 02:41 - 000000209 _____ C:\ProgramData\VC_Inst_Ver.txt
2018-01-15 00:42 - 2009-07-14 04:20 - 000000000 ____D C:\Program Files\Common Files\Microsoft Shared
2018-01-15 00:39 - 2017-12-13 00:23 - 000000000 ____D C:\ProgramData\Package Cache
2018-01-11 11:32 - 2017-11-27 00:14 - 000000000 ____D C:\Users\still\AppData\Local\CrashDumps
2018-01-10 11:30 - 2017-11-17 06:04 - 000000000 ____D C:\Program Files (x86)\Connectify
2018-01-09 12:39 - 2017-12-15 22:49 - 000000000 ____D C:\Users\still\.VirtualBox
2018-01-06 04:38 - 2017-11-21 08:40 - 000000300 ____H C:\Windows\Tasks\CCleaner Update.job
2018-01-05 00:30 - 2009-07-14 06:32 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2018-01-04 23:38 - 2017-12-20 02:21 - 000000000 ____D C:\Windows\Minidump
2018-01-04 09:50 - 2017-11-10 01:07 - 000118784 _____ (Realtek Semiconductor Corporation) C:\Windows\system32\RTNUninst64.dll
2018-01-04 07:46 - 2017-11-13 13:46 - 000000000 ____D C:\Users\still\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2018-01-02 10:21 - 2017-12-25 06:23 - 000000000 ____D C:\ProgramData\Electronic Arts
2017-12-31 05:50 - 2017-11-12 02:36 - 000000000 ____D C:\Users\still\dwhelper
==================== Files in the root of some directories =======
2017-12-16 13:25 - 2017-12-16 13:25 - 000003584 _____ () C:\Users\still\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2017-12-23 13:34 - 2017-12-23 13:34 - 000000854 _____ () C:\Users\still\AppData\Local\recently-used.xbel
Some files in TEMP:
====================
2016-10-19 16:11 - 2016-10-19 16:11 - 002458672 _____ (The OpenSSL Project, http://www.openssl.org/) C:\Users\still\AppData\Local\Temp\libeay32.dll
2016-10-19 16:11 - 2016-10-19 16:11 - 000970912 _____ (Microsoft Corporation) C:\Users\still\AppData\Local\Temp\msvcr120.dll
2018-01-26 09:59 - 2018-01-26 09:59 - 000040448 ____N () C:\Users\still\AppData\Local\Temp\proxy_vole2704818244127031751.dll
2018-01-27 05:12 - 2018-01-27 05:12 - 000040448 ____N () C:\Users\still\AppData\Local\Temp\proxy_vole3770065469433047514.dll
2018-01-26 09:59 - 2018-01-26 09:59 - 000040448 ____N () C:\Users\still\AppData\Local\Temp\proxy_vole4647850597775841554.dll
2018-01-27 05:12 - 2018-01-27 05:12 - 000040448 ____N () C:\Users\still\AppData\Local\Temp\proxy_vole7525501866549214625.dll
2018-01-27 05:12 - 2018-01-27 05:12 - 000040448 ____N () C:\Users\still\AppData\Local\Temp\proxy_vole8408361031115960924.dll
2018-01-26 09:59 - 2018-01-26 09:59 - 000040448 ____N () C:\Users\still\AppData\Local\Temp\proxy_vole9035476571372230804.dll
2016-10-19 16:11 - 2016-10-19 16:11 - 000772672 _____ () C:\Users\still\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-11-10 08:55
==================== End of FRST.txt ============================
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:512.21 GB) (Free:349.51 GB) NTFS
Drive e: (DATA750) (Fixed) (Total:698.63 GB) (Free:108.25 GB) NTFS
Drive z: (YYY) (Fixed) (Total:2 GB) (Free:0.41 GB) FAT
Available physical RAM: 5369.94 MB
Total physical RAM: 8103.08 MB
Percentage of memory in use: 33%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 698.6 GB) (Disk ID: 028817CF)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=512.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=186.3 GB) - (Type=05)
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 698.6 GB) (Disk ID: AE1538A7)
Partition 1: (Not Active) - (Size=698.6 GB) - (Type=07 NTFS)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\ASUS P4G.job => C:\Program Files\P4G\BatteryLife.exe
Task: C:\Windows\Tasks\CCleaner Update.job => C:\Program Files\CCleaner\CCUpdate.exe
Task: C:\Windows\Tasks\CorelUpdateHelperTaskCore.job => C:\Program Files (x86)\Corel\CUH\v2\CUH.EXE
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\still\Desktop" je 2 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ACPW06EN
"C:\Program Files\ACD Systems\ACDSee Pro\6.0\ACDSeePro6InTouch2.exe" /pid ACPW06EN [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring
"C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Wireless Console 3
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^still^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^FancyStart daemon.lnk
C:\Users\still\AppData\Roaming\MICROS~1\INSTAL~1\{2B818~1\_94E3C~1.EXE
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
- Přílohy
-
- Addition.zip
- (9.91 KiB) Staženo 79 x
Re: Prosím o prev. kontrolu
Odporucam odinstalovat program DriverEasy (cez Ovladaci panel -> Odinstalovat program) a vyvarovat sa podobnym programom (hlavne programom IObit), mozu nenavratne poskodit system. Ovladace sa stahuju zo stranky vyrobcu daneho HW.
Otvor poznamkovy blok (Win+R -> notepad -> enter)
Otvor poznamkovy blok (Win+R -> notepad -> enter)
- Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:
Kód: Vybrat vše
Start CloseProcesses: CreateRestorePoint: File: C:\Windows\System32\Drivers\adja74un.sys ExportKey: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap ExportKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled DeleteKey: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\eset.com DeleteKey: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\connectify.me DeleteKey: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\fastspring.com DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\connectify.me DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\eset.com DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\fastspring.com HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\MountPoints2: {de043740-c7d1-11e7-bda2-806e6f6e6963} - H:\Autorun\autorun.exe HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\MountPoints2: {de0438dc-c7d1-11e7-bda2-74f06ddc2ce5} - G:\Lenovo_Suite.exe HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\MountPoints2: {f40954e6-cb55-11e7-b023-9f020f53483c} - I:\Lenovo_Suite.exe FF ProfilePath: C:\Users\still\AppData\Roaming\Mozilla\Firefox\Profiles\Profiles\fpj0zzjg.default [not found] <==== ATTENTION U3 adja74un; C:\Windows\System32\Drivers\adja74un.sys [0 ] (Intel Corporation) <==== ATTENTION (zero byte File/Folder) C:\Windows\System32\Drivers\adja74un.sys Task: {3E46AA80-608F-4B8C-92A4-90972640964B} - System32\Tasks\Driver Easy Scheduled Scan => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe Hosts: EmptyTemp: End
- Uloz na plochu s nazvom fixlist.txt
- Spusti znovu FRST a klikni na Fix
- Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
- Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj
Absolvent skoly pre novacikov
E-mail: conder (zavinac) forum.viry.cz
Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).
Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.
V pripade spokojnosti je mozne podporit forum. Dakujeme!
E-mail: conder (zavinac) forum.viry.cz
Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).
Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.
V pripade spokojnosti je mozne podporit forum. Dakujeme!
-
- Návštěvník
- Příspěvky: 25
- Registrován: 02 úno 2007 18:09
- Bydliště: Prague
- Kontaktovat uživatele:
Re: Prosím o prev. kontrolu
DriverEasy odinstalován, fixnuto.
Fix result of Farbar Recovery Scan Tool (x64) Version: 27.01.2018
Ran by still (28-01-2018 22:59:48) Run:1
Running from C:\Users\still\Desktop
Loaded Profiles: still (Available Profiles: still)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:
File: C:\Windows\System32\Drivers\adja74un.sys
ExportKey: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMapa
ExportKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled
DeleteKey: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\eset.com
DeleteKey: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\connectify.me
DeleteKey: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\fastspring.com
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\connectify.me
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\eset.com
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\fastspring.com
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\MountPoints2: {de043740-c7d1-11e7-bda2-806e6f6e6963} - H:\Autorun\autorun.exe
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\MountPoints2: {de0438dc-c7d1-11e7-bda2-74f06ddc2ce5} - G:\Lenovo_Suite.exe
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\MountPoints2: {f40954e6-cb55-11e7-b023-9f020f53483c} - I:\Lenovo_Suite.exe
FF ProfilePath: C:\Users\still\AppData\Roaming\Mozilla\Firefox\Profiles\Profiles\fpj0zzjg.default [not found] <==== ATTENTION
U3 adja74un; C:\Windows\System32\Drivers\adja74un.sys [0 ] (Intel Corporation) <==== ATTENTION (zero byte File/Folder)
C:\Windows\System32\Drivers\adja74un.sys
Task: {3E46AA80-608F-4B8C-92A4-90972640964B} - System32\Tasks\Driver Easy Scheduled Scan => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe
Hosts:
EmptyTemp:
End
*****************
Processes closed successfully.
Restore point was successfully created.
========================= File: C:\Windows\System32\Drivers\adja74un.sys ========================
"C:\Windows\System32\Drivers\adja74un.sys" => not found
====== End of File: ======
================== ExportKey: ===================
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet"="0"
"AutoDetect"="1"
""=""
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains]
""=""
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains]
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\connectify.me]
"http"="2"
"https"="2"
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\fastspring.com]
"http"="2"
"https"="2"
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\microsoft.com]
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\microsoft.com\*.update]
"http"="2"
"https"="2"
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults]
""=""
"http"="3"
"https"="3"
"ftp"="3"
"file"="3"
"@ivt"="1"
"shell"="0"
"knownfolder"="0"
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges]
""=""
=== End of ExportKey ===
================== ExportKey: ===================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"AutoDetect"="1"
"UNCAsIntranet"="0"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\eset.com]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\eset.com\help]
"http"="2"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\connectify.me]
"http"="2"
"https"="2"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\eset.com]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\eset.com\help]
"http"="2"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\fastspring.com]
"http"="2"
"https"="2"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults]
"file"="3"
"ftp"="3"
"http"="3"
"https"="3"
"@ivt"="1"
"shell"="0"
"ldap"="4"
"news"="4"
"snews"="4"
"nntp"="4"
"oecmd"="4"
=== End of ExportKey ===
"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled" => removed successfully
"HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled" => removed successfully
"HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\eset.com" => removed successfully
"HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\connectify.me" => removed successfully
"HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\fastspring.com" => removed successfully
"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\connectify.me" => removed successfully
"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\eset.com" => removed successfully
"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\fastspring.com" => removed successfully
"HKU\S-1-5-21-3908664933-461153505-2189849125-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{de043740-c7d1-11e7-bda2-806e6f6e6963}" => removed successfully
HKLM\Software\Classes\CLSID\{de043740-c7d1-11e7-bda2-806e6f6e6963} => key not found
"HKU\S-1-5-21-3908664933-461153505-2189849125-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{de0438dc-c7d1-11e7-bda2-74f06ddc2ce5}" => removed successfully
HKLM\Software\Classes\CLSID\{de0438dc-c7d1-11e7-bda2-74f06ddc2ce5} => key not found
"HKU\S-1-5-21-3908664933-461153505-2189849125-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f40954e6-cb55-11e7-b023-9f020f53483c}" => removed successfully
HKLM\Software\Classes\CLSID\{f40954e6-cb55-11e7-b023-9f020f53483c} => key not found
C:\Users\still\AppData\Roaming\Mozilla\Firefox\Profiles\Profiles\fpj0zzjg.default => path removed successfully
C:\Users\still\AppData\Roaming\Mozilla\Firefox\Profiles\Profiles\fpj0zzjg.default => path removed successfully
adja74un => service not found.
"C:\Windows\System32\Drivers\adja74un.sys" => not found
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3E46AA80-608F-4B8C-92A4-90972640964B} => could not remove key. ErrorCode1: 0x00000001
"C:\Windows\System32\Tasks\Driver Easy Scheduled Scan" => not found
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Driver Easy Scheduled Scan => key not found
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
=========== EmptyTemp: ==========
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 74399846 B
Java, Flash, Steam htmlcache => 988 B
Windows/system/drivers => 0 B
Edge => 0 B
Chrome => 0 B
Firefox => 31660790 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 66356 B
systemprofile32 => 66660 B
LocalService => 66228 B
NetworkService => 0 B
still => 149901 B
RecycleBin => 0 B
EmptyTemp: => 101.5 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 23:00:16 ====
Fix result of Farbar Recovery Scan Tool (x64) Version: 27.01.2018
Ran by still (28-01-2018 22:59:48) Run:1
Running from C:\Users\still\Desktop
Loaded Profiles: still (Available Profiles: still)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:
File: C:\Windows\System32\Drivers\adja74un.sys
ExportKey: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMapa
ExportKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled
DeleteKey: HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\eset.com
DeleteKey: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\connectify.me
DeleteKey: HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\fastspring.com
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\connectify.me
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\eset.com
DeleteKey: HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\fastspring.com
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\MountPoints2: {de043740-c7d1-11e7-bda2-806e6f6e6963} - H:\Autorun\autorun.exe
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\MountPoints2: {de0438dc-c7d1-11e7-bda2-74f06ddc2ce5} - G:\Lenovo_Suite.exe
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\MountPoints2: {f40954e6-cb55-11e7-b023-9f020f53483c} - I:\Lenovo_Suite.exe
FF ProfilePath: C:\Users\still\AppData\Roaming\Mozilla\Firefox\Profiles\Profiles\fpj0zzjg.default [not found] <==== ATTENTION
U3 adja74un; C:\Windows\System32\Drivers\adja74un.sys [0 ] (Intel Corporation) <==== ATTENTION (zero byte File/Folder)
C:\Windows\System32\Drivers\adja74un.sys
Task: {3E46AA80-608F-4B8C-92A4-90972640964B} - System32\Tasks\Driver Easy Scheduled Scan => C:\Program Files\Easeware\DriverEasy\DriverEasy.exe
Hosts:
EmptyTemp:
End
*****************
Processes closed successfully.
Restore point was successfully created.
========================= File: C:\Windows\System32\Drivers\adja74un.sys ========================
"C:\Windows\System32\Drivers\adja74un.sys" => not found
====== End of File: ======
================== ExportKey: ===================
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"UNCAsIntranet"="0"
"AutoDetect"="1"
""=""
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains]
""=""
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains]
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\connectify.me]
"http"="2"
"https"="2"
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\fastspring.com]
"http"="2"
"https"="2"
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\microsoft.com]
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\microsoft.com\*.update]
"http"="2"
"https"="2"
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults]
""=""
"http"="3"
"https"="3"
"ftp"="3"
"file"="3"
"@ivt"="1"
"shell"="0"
"knownfolder"="0"
[HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges]
""=""
=== End of ExportKey ===
================== ExportKey: ===================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap]
"AutoDetect"="1"
"UNCAsIntranet"="0"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\eset.com]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\eset.com\help]
"http"="2"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\connectify.me]
"http"="2"
"https"="2"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\eset.com]
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\eset.com\help]
"http"="2"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\fastspring.com]
"http"="2"
"https"="2"
[HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\ProtocolDefaults]
"file"="3"
"ftp"="3"
"http"="3"
"https"="3"
"@ivt"="1"
"shell"="0"
"ldap"="4"
"news"="4"
"snews"="4"
"nntp"="4"
"oecmd"="4"
=== End of ExportKey ===
"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled" => removed successfully
"HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\AutorunsDisabled" => removed successfully
"HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\eset.com" => removed successfully
"HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\connectify.me" => removed successfully
"HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\fastspring.com" => removed successfully
"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\connectify.me" => removed successfully
"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\eset.com" => removed successfully
"HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\fastspring.com" => removed successfully
"HKU\S-1-5-21-3908664933-461153505-2189849125-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{de043740-c7d1-11e7-bda2-806e6f6e6963}" => removed successfully
HKLM\Software\Classes\CLSID\{de043740-c7d1-11e7-bda2-806e6f6e6963} => key not found
"HKU\S-1-5-21-3908664933-461153505-2189849125-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{de0438dc-c7d1-11e7-bda2-74f06ddc2ce5}" => removed successfully
HKLM\Software\Classes\CLSID\{de0438dc-c7d1-11e7-bda2-74f06ddc2ce5} => key not found
"HKU\S-1-5-21-3908664933-461153505-2189849125-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{f40954e6-cb55-11e7-b023-9f020f53483c}" => removed successfully
HKLM\Software\Classes\CLSID\{f40954e6-cb55-11e7-b023-9f020f53483c} => key not found
C:\Users\still\AppData\Roaming\Mozilla\Firefox\Profiles\Profiles\fpj0zzjg.default => path removed successfully
C:\Users\still\AppData\Roaming\Mozilla\Firefox\Profiles\Profiles\fpj0zzjg.default => path removed successfully
adja74un => service not found.
"C:\Windows\System32\Drivers\adja74un.sys" => not found
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3E46AA80-608F-4B8C-92A4-90972640964B} => could not remove key. ErrorCode1: 0x00000001
"C:\Windows\System32\Tasks\Driver Easy Scheduled Scan" => not found
HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Driver Easy Scheduled Scan => key not found
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
=========== EmptyTemp: ==========
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 74399846 B
Java, Flash, Steam htmlcache => 988 B
Windows/system/drivers => 0 B
Edge => 0 B
Chrome => 0 B
Firefox => 31660790 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 66356 B
systemprofile32 => 66660 B
LocalService => 66228 B
NetworkService => 0 B
still => 149901 B
RecycleBin => 0 B
EmptyTemp: => 101.5 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 23:00:16 ====
Re: Prosím o prev. kontrolu
Doinstaluj vsetky dolezite aktualizacie (vratane IE11) cez Windows Update. Potom pokracuj nasledujucimi krokmi.
Otvor poznamkovy blok (Win+R -> notepad -> enter)
Otvor poznamkovy blok (Win+R -> notepad -> enter)
- Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:
Kód: Vybrat vše
Start CMD: sc config "mpsdrv" start= auto CMD: sc config "MpsSvc" start= auto CMD: net start "mpsdrv" CMD: net start "MpsSvc" End
- Uloz na plochu s nazvom fixlist.txt
- Spusti znovu FRST a klikni na Fix
- Pockaj na dokoncenie
- Tentokrat to bude bez restartu, otvori sa Fixlog.txt (pripadne bude na ploche), jeho obsah sem skopiruj
- Napis prikaz "sfc /scannow" (bez uvodzoviek) a stlac enter
- Pockaj na dokoncenie (cca 10-20 minut)
- Po dokonceni skopiruj (Ctrl+C) nasledujuci riadok:
Kód: Vybrat vše
findstr /c:"[SR]" %windir%\logs\cbs\cbs.log >> "%userprofile%\desktop\sfcdetails.txt"
- V prikazovom riadku klikni na ciernu plochu pravym tlacitkom mysi, klikni na Vlozit a stlac enter
- Na ploche sa vytvori subor sfcdetails.txt, jeho obsah sem skopiruj
Absolvent skoly pre novacikov
E-mail: conder (zavinac) forum.viry.cz
Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).
Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.
V pripade spokojnosti je mozne podporit forum. Dakujeme!
E-mail: conder (zavinac) forum.viry.cz
Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).
Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.
V pripade spokojnosti je mozne podporit forum. Dakujeme!
-
- Návštěvník
- Příspěvky: 25
- Registrován: 02 úno 2007 18:09
- Bydliště: Prague
- Kontaktovat uživatele:
Re: Prosím o prev. kontrolu
Zatím moc děkuji, jedu na služebku, dodělám až budu doma
Re: Prosím o prev. kontrolu
OK, zatial nie je zaco
Absolvent skoly pre novacikov
E-mail: conder (zavinac) forum.viry.cz
Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).
Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.
V pripade spokojnosti je mozne podporit forum. Dakujeme!
E-mail: conder (zavinac) forum.viry.cz
Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).
Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.
V pripade spokojnosti je mozne podporit forum. Dakujeme!
-
- Návštěvník
- Příspěvky: 25
- Registrován: 02 úno 2007 18:09
- Bydliště: Prague
- Kontaktovat uživatele:
Re: Prosím o prev. kontrolu
Ahoj, tak už jsem zase u PC. Vzal jsem to z5 oklikou přes špitál, tak to chvilku trvalo
Můžeme tedy prosím pokračovat?
Dnes ráno jsem aktualizoval systém, nyní je tedy plně aktualizovaný, včetně instalace IE11.
Fixlog je tu:
SFC scan nenašel žádné narušení integrity.
Požadovaný log je tu:
Můžeme tedy prosím pokračovat?
Dnes ráno jsem aktualizoval systém, nyní je tedy plně aktualizovaný, včetně instalace IE11.
Fixlog je tu:
Kód: Vybrat vše
Fix result of Farbar Recovery Scan Tool (x64) Version: 27.01.2018
Ran by still (06-03-2018 06:06:20) Run:1
Running from C:\Users\still\Desktop
Loaded Profiles: still (Available Profiles: still)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CMD: sc config "mpsdrv" start= auto
CMD: sc config "MpsSvc" start= auto
CMD: net start "mpsdrv"
CMD: net start "MpsSvc"
End
*****************
========= sc config "mpsdrv" start= auto =========
[SC] ChangeServiceConfig ŁspŘch
========= End of CMD: =========
========= sc config "MpsSvc" start= auto =========
[SC] ChangeServiceConfig ŁspŘch
========= End of CMD: =========
========= net start "mpsdrv" =========
Slu§ba Ovladaź ovŘýenˇ br ny Windows Firewall byla ŁspŘçnŘ spuçtŘna.
========= End of CMD: =========
========= net start "MpsSvc" =========
SpouçtŘnˇ slu§by Br na Windows Firewall.
Slu§ba Br na Windows Firewall byla ŁspŘçnŘ spuçtŘna.
========= End of CMD: =========
==== End of Fixlog 06:06:22 ====
Požadovaný log je tu:
Kód: Vybrat vše
2018-03-06 06:08:46, Info CSI 000002e4 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:08:46, Info CSI 000002e5 [SR] Beginning Verify and Repair transaction
2018-03-06 06:08:47, Info CSI 000002e7 [SR] Verify complete
2018-03-06 06:08:47, Info CSI 000002e8 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:08:47, Info CSI 000002e9 [SR] Beginning Verify and Repair transaction
2018-03-06 06:08:48, Info CSI 000002eb [SR] Verify complete
2018-03-06 06:08:48, Info CSI 000002ec [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:08:48, Info CSI 000002ed [SR] Beginning Verify and Repair transaction
2018-03-06 06:08:49, Info CSI 000002ef [SR] Verify complete
2018-03-06 06:08:49, Info CSI 000002f0 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:08:49, Info CSI 000002f1 [SR] Beginning Verify and Repair transaction
2018-03-06 06:08:50, Info CSI 000002f3 [SR] Verify complete
2018-03-06 06:08:50, Info CSI 000002f4 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:08:50, Info CSI 000002f5 [SR] Beginning Verify and Repair transaction
2018-03-06 06:08:51, Info CSI 000002f7 [SR] Verify complete
2018-03-06 06:08:52, Info CSI 000002f8 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:08:52, Info CSI 000002f9 [SR] Beginning Verify and Repair transaction
2018-03-06 06:08:53, Info CSI 000002fb [SR] Verify complete
2018-03-06 06:08:53, Info CSI 000002fc [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:08:53, Info CSI 000002fd [SR] Beginning Verify and Repair transaction
2018-03-06 06:08:54, Info CSI 000002ff [SR] Verify complete
2018-03-06 06:08:54, Info CSI 00000300 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:08:54, Info CSI 00000301 [SR] Beginning Verify and Repair transaction
2018-03-06 06:08:55, Info CSI 00000303 [SR] Verify complete
2018-03-06 06:08:55, Info CSI 00000304 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:08:55, Info CSI 00000305 [SR] Beginning Verify and Repair transaction
2018-03-06 06:08:56, Info CSI 00000307 [SR] Verify complete
2018-03-06 06:08:56, Info CSI 00000308 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:08:56, Info CSI 00000309 [SR] Beginning Verify and Repair transaction
2018-03-06 06:08:57, Info CSI 0000030b [SR] Verify complete
2018-03-06 06:08:57, Info CSI 0000030c [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:08:57, Info CSI 0000030d [SR] Beginning Verify and Repair transaction
2018-03-06 06:08:58, Info CSI 0000030f [SR] Verify complete
2018-03-06 06:08:58, Info CSI 00000310 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:08:58, Info CSI 00000311 [SR] Beginning Verify and Repair transaction
2018-03-06 06:08:59, Info CSI 00000313 [SR] Verify complete
2018-03-06 06:09:00, Info CSI 00000314 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:00, Info CSI 00000315 [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:02, Info CSI 00000317 [SR] Verify complete
2018-03-06 06:09:02, Info CSI 00000318 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:02, Info CSI 00000319 [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:04, Info CSI 0000031b [SR] Verify complete
2018-03-06 06:09:04, Info CSI 0000031c [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:04, Info CSI 0000031d [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:05, Info CSI 0000031f [SR] Verify complete
2018-03-06 06:09:05, Info CSI 00000320 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:05, Info CSI 00000321 [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:07, Info CSI 00000323 [SR] Verify complete
2018-03-06 06:09:07, Info CSI 00000324 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:07, Info CSI 00000325 [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:08, Info CSI 00000327 [SR] Verify complete
2018-03-06 06:09:09, Info CSI 00000328 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:09, Info CSI 00000329 [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:10, Info CSI 0000032b [SR] Verify complete
2018-03-06 06:09:11, Info CSI 0000032c [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:11, Info CSI 0000032d [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:12, Info CSI 0000032f [SR] Verify complete
2018-03-06 06:09:12, Info CSI 00000330 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:12, Info CSI 00000331 [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:15, Info CSI 00000333 [SR] Verify complete
2018-03-06 06:09:15, Info CSI 00000334 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:15, Info CSI 00000335 [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:18, Info CSI 00000337 [SR] Verify complete
2018-03-06 06:09:19, Info CSI 00000338 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:19, Info CSI 00000339 [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:20, Info CSI 0000033b [SR] Verify complete
2018-03-06 06:09:21, Info CSI 0000033c [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:21, Info CSI 0000033d [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:22, Info CSI 0000033f [SR] Verify complete
2018-03-06 06:09:22, Info CSI 00000340 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:22, Info CSI 00000341 [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:25, Info CSI 00000343 [SR] Verify complete
2018-03-06 06:09:25, Info CSI 00000344 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:25, Info CSI 00000345 [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:30, Info CSI 00000349 [SR] Verify complete
2018-03-06 06:09:31, Info CSI 0000034a [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:31, Info CSI 0000034b [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:34, Info CSI 00000350 [SR] Verify complete
2018-03-06 06:09:34, Info CSI 00000351 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:34, Info CSI 00000352 [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:37, Info CSI 00000355 [SR] Verify complete
2018-03-06 06:09:37, Info CSI 00000356 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:37, Info CSI 00000357 [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:40, Info CSI 00000359 [SR] Verify complete
2018-03-06 06:09:40, Info CSI 0000035a [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:40, Info CSI 0000035b [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:44, Info CSI 0000037a [SR] Verify complete
2018-03-06 06:09:45, Info CSI 0000037b [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:45, Info CSI 0000037c [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:48, Info CSI 00000384 [SR] Verify complete
2018-03-06 06:09:48, Info CSI 00000385 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:48, Info CSI 00000386 [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:52, Info CSI 00000388 [SR] Verify complete
2018-03-06 06:09:52, Info CSI 00000389 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:52, Info CSI 0000038a [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:55, Info CSI 0000038c [SR] Verify complete
2018-03-06 06:09:55, Info CSI 0000038d [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:55, Info CSI 0000038e [SR] Beginning Verify and Repair transaction
2018-03-06 06:09:58, Info CSI 00000390 [SR] Verify complete
2018-03-06 06:09:58, Info CSI 00000391 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:09:58, Info CSI 00000392 [SR] Beginning Verify and Repair transaction
2018-03-06 06:10:01, Info CSI 00000394 [SR] Verify complete
2018-03-06 06:10:01, Info CSI 00000395 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:10:01, Info CSI 00000396 [SR] Beginning Verify and Repair transaction
2018-03-06 06:10:04, Info CSI 00000398 [SR] Verify complete
2018-03-06 06:10:04, Info CSI 00000399 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:10:04, Info CSI 0000039a [SR] Beginning Verify and Repair transaction
2018-03-06 06:10:09, Info CSI 0000039e [SR] Verify complete
2018-03-06 06:10:10, Info CSI 0000039f [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:10:10, Info CSI 000003a0 [SR] Beginning Verify and Repair transaction
2018-03-06 06:10:14, Info CSI 000003c1 [SR] Verify complete
2018-03-06 06:10:14, Info CSI 000003c2 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:10:14, Info CSI 000003c3 [SR] Beginning Verify and Repair transaction
2018-03-06 06:10:21, Info CSI 000003c5 [SR] Verify complete
2018-03-06 06:10:21, Info CSI 000003c6 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:10:21, Info CSI 000003c7 [SR] Beginning Verify and Repair transaction
2018-03-06 06:10:26, Info CSI 000003c9 [SR] Verify complete
2018-03-06 06:10:26, Info CSI 000003ca [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:10:26, Info CSI 000003cb [SR] Beginning Verify and Repair transaction
2018-03-06 06:10:29, Info CSI 000003cf [SR] Verify complete
2018-03-06 06:10:29, Info CSI 000003d0 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:10:29, Info CSI 000003d1 [SR] Beginning Verify and Repair transaction
2018-03-06 06:10:31, Info CSI 000003d3 [SR] Verify complete
2018-03-06 06:10:31, Info CSI 000003d4 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:10:31, Info CSI 000003d5 [SR] Beginning Verify and Repair transaction
2018-03-06 06:10:33, Info CSI 000003d7 [SR] Verify complete
2018-03-06 06:10:33, Info CSI 000003d8 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:10:33, Info CSI 000003d9 [SR] Beginning Verify and Repair transaction
2018-03-06 06:10:35, Info CSI 000003db [SR] Verify complete
2018-03-06 06:10:35, Info CSI 000003dc [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:10:35, Info CSI 000003dd [SR] Beginning Verify and Repair transaction
2018-03-06 06:10:42, Info CSI 000003f0 [SR] Verify complete
2018-03-06 06:10:42, Info CSI 000003f1 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:10:42, Info CSI 000003f2 [SR] Beginning Verify and Repair transaction
2018-03-06 06:10:43, Info CSI 000003f4 [SR] Verify complete
2018-03-06 06:10:43, Info CSI 000003f5 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:10:43, Info CSI 000003f6 [SR] Beginning Verify and Repair transaction
2018-03-06 06:10:45, Info CSI 000003f8 [SR] Verify complete
2018-03-06 06:10:45, Info CSI 000003f9 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:10:45, Info CSI 000003fa [SR] Beginning Verify and Repair transaction
2018-03-06 06:10:47, Info CSI 000003fc [SR] Verify complete
2018-03-06 06:10:47, Info CSI 000003fd [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:10:47, Info CSI 000003fe [SR] Beginning Verify and Repair transaction
2018-03-06 06:10:50, Info CSI 00000401 [SR] Verify complete
2018-03-06 06:10:50, Info CSI 00000402 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:10:50, Info CSI 00000403 [SR] Beginning Verify and Repair transaction
2018-03-06 06:10:56, Info CSI 00000406 [SR] Verify complete
2018-03-06 06:10:56, Info CSI 00000407 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:10:56, Info CSI 00000408 [SR] Beginning Verify and Repair transaction
2018-03-06 06:10:58, Info CSI 0000040a [SR] Verify complete
2018-03-06 06:10:59, Info CSI 0000040b [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:10:59, Info CSI 0000040c [SR] Beginning Verify and Repair transaction
2018-03-06 06:11:00, Info CSI 0000040e [SR] Verify complete
2018-03-06 06:11:00, Info CSI 0000040f [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:11:00, Info CSI 00000410 [SR] Beginning Verify and Repair transaction
2018-03-06 06:11:04, Info CSI 00000412 [SR] Verify complete
2018-03-06 06:11:04, Info CSI 00000413 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:11:04, Info CSI 00000414 [SR] Beginning Verify and Repair transaction
2018-03-06 06:11:07, Info CSI 00000416 [SR] Verify complete
2018-03-06 06:11:07, Info CSI 00000417 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:11:07, Info CSI 00000418 [SR] Beginning Verify and Repair transaction
2018-03-06 06:11:10, Info CSI 0000041a [SR] Verify complete
2018-03-06 06:11:11, Info CSI 0000041b [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:11:11, Info CSI 0000041c [SR] Beginning Verify and Repair transaction
2018-03-06 06:11:17, Info CSI 00000424 [SR] Verify complete
2018-03-06 06:11:17, Info CSI 00000425 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:11:17, Info CSI 00000426 [SR] Beginning Verify and Repair transaction
2018-03-06 06:11:21, Info CSI 00000438 [SR] Verify complete
2018-03-06 06:11:21, Info CSI 00000439 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:11:21, Info CSI 0000043a [SR] Beginning Verify and Repair transaction
2018-03-06 06:11:25, Info CSI 0000043c [SR] Verify complete
2018-03-06 06:11:25, Info CSI 0000043d [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:11:25, Info CSI 0000043e [SR] Beginning Verify and Repair transaction
2018-03-06 06:11:37, Info CSI 00000440 [SR] Verify complete
2018-03-06 06:11:37, Info CSI 00000441 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:11:37, Info CSI 00000442 [SR] Beginning Verify and Repair transaction
2018-03-06 06:11:42, Info CSI 00000445 [SR] Verify complete
2018-03-06 06:11:42, Info CSI 00000446 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:11:42, Info CSI 00000447 [SR] Beginning Verify and Repair transaction
2018-03-06 06:11:46, Info CSI 00000449 [SR] Verify complete
2018-03-06 06:11:46, Info CSI 0000044a [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:11:46, Info CSI 0000044b [SR] Beginning Verify and Repair transaction
2018-03-06 06:11:49, Info CSI 0000044e [SR] Verify complete
2018-03-06 06:11:50, Info CSI 0000044f [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:11:50, Info CSI 00000450 [SR] Beginning Verify and Repair transaction
2018-03-06 06:11:53, Info CSI 00000452 [SR] Verify complete
2018-03-06 06:11:53, Info CSI 00000453 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:11:53, Info CSI 00000454 [SR] Beginning Verify and Repair transaction
2018-03-06 06:11:56, Info CSI 00000456 [SR] Verify complete
2018-03-06 06:11:56, Info CSI 00000457 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:11:56, Info CSI 00000458 [SR] Beginning Verify and Repair transaction
2018-03-06 06:11:59, Info CSI 0000045c [SR] Verify complete
2018-03-06 06:11:59, Info CSI 0000045d [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:11:59, Info CSI 0000045e [SR] Beginning Verify and Repair transaction
2018-03-06 06:12:03, Info CSI 00000460 [SR] Verify complete
2018-03-06 06:12:03, Info CSI 00000461 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:12:03, Info CSI 00000462 [SR] Beginning Verify and Repair transaction
2018-03-06 06:12:07, Info CSI 00000465 [SR] Verify complete
2018-03-06 06:12:07, Info CSI 00000466 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:12:07, Info CSI 00000467 [SR] Beginning Verify and Repair transaction
2018-03-06 06:12:10, Info CSI 0000046a [SR] Verify complete
2018-03-06 06:12:10, Info CSI 0000046b [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:12:10, Info CSI 0000046c [SR] Beginning Verify and Repair transaction
2018-03-06 06:12:14, Info CSI 0000046e [SR] Verify complete
2018-03-06 06:12:14, Info CSI 0000046f [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:12:14, Info CSI 00000470 [SR] Beginning Verify and Repair transaction
2018-03-06 06:12:20, Info CSI 00000473 [SR] Verify complete
2018-03-06 06:12:20, Info CSI 00000474 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:12:20, Info CSI 00000475 [SR] Beginning Verify and Repair transaction
2018-03-06 06:12:24, Info CSI 00000477 [SR] Verify complete
2018-03-06 06:12:24, Info CSI 00000478 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:12:24, Info CSI 00000479 [SR] Beginning Verify and Repair transaction
2018-03-06 06:12:27, Info CSI 0000047b [SR] Verify complete
2018-03-06 06:12:27, Info CSI 0000047c [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:12:27, Info CSI 0000047d [SR] Beginning Verify and Repair transaction
2018-03-06 06:12:31, Info CSI 0000047f [SR] Verify complete
2018-03-06 06:12:31, Info CSI 00000480 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:12:31, Info CSI 00000481 [SR] Beginning Verify and Repair transaction
2018-03-06 06:12:35, Info CSI 00000484 [SR] Verify complete
2018-03-06 06:12:35, Info CSI 00000485 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:12:35, Info CSI 00000486 [SR] Beginning Verify and Repair transaction
2018-03-06 06:12:39, Info CSI 00000488 [SR] Verify complete
2018-03-06 06:12:39, Info CSI 00000489 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:12:39, Info CSI 0000048a [SR] Beginning Verify and Repair transaction
2018-03-06 06:12:42, Info CSI 0000048c [SR] Verify complete
2018-03-06 06:12:42, Info CSI 0000048d [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:12:42, Info CSI 0000048e [SR] Beginning Verify and Repair transaction
2018-03-06 06:12:46, Info CSI 00000491 [SR] Verify complete
2018-03-06 06:12:46, Info CSI 00000492 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:12:46, Info CSI 00000493 [SR] Beginning Verify and Repair transaction
2018-03-06 06:12:50, Info CSI 00000495 [SR] Verify complete
2018-03-06 06:12:50, Info CSI 00000496 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:12:50, Info CSI 00000497 [SR] Beginning Verify and Repair transaction
2018-03-06 06:12:53, Info CSI 0000049b [SR] Verify complete
2018-03-06 06:12:54, Info CSI 0000049c [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:12:54, Info CSI 0000049d [SR] Beginning Verify and Repair transaction
2018-03-06 06:12:58, Info CSI 0000049f [SR] Verify complete
2018-03-06 06:12:58, Info CSI 000004a0 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:12:58, Info CSI 000004a1 [SR] Beginning Verify and Repair transaction
2018-03-06 06:13:03, Info CSI 000004a4 [SR] Verify complete
2018-03-06 06:13:03, Info CSI 000004a5 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:13:03, Info CSI 000004a6 [SR] Beginning Verify and Repair transaction
2018-03-06 06:13:06, Info CSI 000004a8 [SR] Verify complete
2018-03-06 06:13:06, Info CSI 000004a9 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:13:06, Info CSI 000004aa [SR] Beginning Verify and Repair transaction
2018-03-06 06:13:07, Info CSI 000004ac [SR] Verify complete
2018-03-06 06:13:08, Info CSI 000004ad [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:13:08, Info CSI 000004ae [SR] Beginning Verify and Repair transaction
2018-03-06 06:13:10, Info CSI 000004b0 [SR] Verify complete
2018-03-06 06:13:11, Info CSI 000004b1 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:13:11, Info CSI 000004b2 [SR] Beginning Verify and Repair transaction
2018-03-06 06:13:13, Info CSI 000004b4 [SR] Verify complete
2018-03-06 06:13:13, Info CSI 000004b5 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:13:13, Info CSI 000004b6 [SR] Beginning Verify and Repair transaction
2018-03-06 06:13:18, Info CSI 000004b8 [SR] Verify complete
2018-03-06 06:13:19, Info CSI 000004b9 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:13:19, Info CSI 000004ba [SR] Beginning Verify and Repair transaction
2018-03-06 06:13:22, Info CSI 000004bc [SR] Verify complete
2018-03-06 06:13:23, Info CSI 000004bd [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:13:23, Info CSI 000004be [SR] Beginning Verify and Repair transaction
2018-03-06 06:13:28, Info CSI 000004c0 [SR] Verify complete
2018-03-06 06:13:29, Info CSI 000004c1 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:13:29, Info CSI 000004c2 [SR] Beginning Verify and Repair transaction
2018-03-06 06:13:38, Info CSI 000004c4 [SR] Verify complete
2018-03-06 06:13:38, Info CSI 000004c5 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:13:38, Info CSI 000004c6 [SR] Beginning Verify and Repair transaction
2018-03-06 06:13:57, Info CSI 000004c8 [SR] Verify complete
2018-03-06 06:13:57, Info CSI 000004c9 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:13:57, Info CSI 000004ca [SR] Beginning Verify and Repair transaction
2018-03-06 06:14:02, Info CSI 000004cc [SR] Verify complete
2018-03-06 06:14:02, Info CSI 000004cd [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:14:02, Info CSI 000004ce [SR] Beginning Verify and Repair transaction
2018-03-06 06:14:08, Info CSI 000004d0 [SR] Verify complete
2018-03-06 06:14:08, Info CSI 000004d1 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:14:08, Info CSI 000004d2 [SR] Beginning Verify and Repair transaction
2018-03-06 06:14:09, Info CSI 000004d4 [SR] Verify complete
2018-03-06 06:14:10, Info CSI 000004d5 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:14:10, Info CSI 000004d6 [SR] Beginning Verify and Repair transaction
2018-03-06 06:14:12, Info CSI 000004d8 [SR] Verify complete
2018-03-06 06:14:12, Info CSI 000004d9 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:14:12, Info CSI 000004da [SR] Beginning Verify and Repair transaction
2018-03-06 06:14:15, Info CSI 000004dc [SR] Verify complete
2018-03-06 06:14:15, Info CSI 000004dd [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:14:15, Info CSI 000004de [SR] Beginning Verify and Repair transaction
2018-03-06 06:14:18, Info CSI 000004e0 [SR] Verify complete
2018-03-06 06:14:18, Info CSI 000004e1 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:14:18, Info CSI 000004e2 [SR] Beginning Verify and Repair transaction
2018-03-06 06:14:19, Info CSI 000004e4 [SR] Verify complete
2018-03-06 06:14:19, Info CSI 000004e5 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:14:19, Info CSI 000004e6 [SR] Beginning Verify and Repair transaction
2018-03-06 06:14:22, Info CSI 000004ee [SR] Verify complete
2018-03-06 06:14:23, Info CSI 000004ef [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:14:23, Info CSI 000004f0 [SR] Beginning Verify and Repair transaction
2018-03-06 06:14:25, Info CSI 000004f2 [SR] Verify complete
2018-03-06 06:14:25, Info CSI 000004f3 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:14:25, Info CSI 000004f4 [SR] Beginning Verify and Repair transaction
2018-03-06 06:14:28, Info CSI 000004f6 [SR] Verify complete
2018-03-06 06:14:28, Info CSI 000004f7 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:14:28, Info CSI 000004f8 [SR] Beginning Verify and Repair transaction
2018-03-06 06:14:30, Info CSI 000004fa [SR] Verify complete
2018-03-06 06:14:30, Info CSI 000004fb [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:14:30, Info CSI 000004fc [SR] Beginning Verify and Repair transaction
2018-03-06 06:14:34, Info CSI 000004fe [SR] Verify complete
2018-03-06 06:14:34, Info CSI 000004ff [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:14:34, Info CSI 00000500 [SR] Beginning Verify and Repair transaction
2018-03-06 06:14:38, Info CSI 00000502 [SR] Verify complete
2018-03-06 06:14:38, Info CSI 00000503 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:14:38, Info CSI 00000504 [SR] Beginning Verify and Repair transaction
2018-03-06 06:14:43, Info CSI 00000507 [SR] Verify complete
2018-03-06 06:14:43, Info CSI 00000508 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:14:43, Info CSI 00000509 [SR] Beginning Verify and Repair transaction
2018-03-06 06:14:44, Info CSI 0000050b [SR] Verify complete
2018-03-06 06:14:44, Info CSI 0000050c [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:14:44, Info CSI 0000050d [SR] Beginning Verify and Repair transaction
2018-03-06 06:14:46, Info CSI 0000050f [SR] Verify complete
2018-03-06 06:14:46, Info CSI 00000510 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:14:46, Info CSI 00000511 [SR] Beginning Verify and Repair transaction
2018-03-06 06:14:54, Info CSI 00000516 [SR] Verify complete
2018-03-06 06:14:54, Info CSI 00000517 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:14:54, Info CSI 00000518 [SR] Beginning Verify and Repair transaction
2018-03-06 06:15:00, Info CSI 0000051a [SR] Verify complete
2018-03-06 06:15:00, Info CSI 0000051b [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:15:00, Info CSI 0000051c [SR] Beginning Verify and Repair transaction
2018-03-06 06:15:05, Info CSI 00000520 [SR] Verify complete
2018-03-06 06:15:05, Info CSI 00000521 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:15:05, Info CSI 00000522 [SR] Beginning Verify and Repair transaction
2018-03-06 06:15:09, Info CSI 0000052f [SR] Verify complete
2018-03-06 06:15:09, Info CSI 00000530 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:15:09, Info CSI 00000531 [SR] Beginning Verify and Repair transaction
2018-03-06 06:15:15, Info CSI 00000538 [SR] Verify complete
2018-03-06 06:15:15, Info CSI 00000539 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:15:15, Info CSI 0000053a [SR] Beginning Verify and Repair transaction
2018-03-06 06:15:18, Info CSI 0000053c [SR] Verify complete
2018-03-06 06:15:18, Info CSI 0000053d [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:15:18, Info CSI 0000053e [SR] Beginning Verify and Repair transaction
2018-03-06 06:15:21, Info CSI 00000542 [SR] Verify complete
2018-03-06 06:15:21, Info CSI 00000543 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:15:21, Info CSI 00000544 [SR] Beginning Verify and Repair transaction
2018-03-06 06:15:24, Info CSI 00000546 [SR] Verify complete
2018-03-06 06:15:24, Info CSI 00000547 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:15:24, Info CSI 00000548 [SR] Beginning Verify and Repair transaction
2018-03-06 06:15:29, Info CSI 0000056d [SR] Verify complete
2018-03-06 06:15:29, Info CSI 0000056e [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:15:29, Info CSI 0000056f [SR] Beginning Verify and Repair transaction
2018-03-06 06:15:32, Info CSI 00000571 [SR] Verify complete
2018-03-06 06:15:33, Info CSI 00000572 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:15:33, Info CSI 00000573 [SR] Beginning Verify and Repair transaction
2018-03-06 06:15:35, Info CSI 00000575 [SR] Verify complete
2018-03-06 06:15:36, Info CSI 00000576 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:15:36, Info CSI 00000577 [SR] Beginning Verify and Repair transaction
2018-03-06 06:15:39, Info CSI 00000579 [SR] Verify complete
2018-03-06 06:15:39, Info CSI 0000057a [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:15:39, Info CSI 0000057b [SR] Beginning Verify and Repair transaction
2018-03-06 06:15:43, Info CSI 00000589 [SR] Verify complete
2018-03-06 06:15:43, Info CSI 0000058a [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:15:43, Info CSI 0000058b [SR] Beginning Verify and Repair transaction
2018-03-06 06:15:46, Info CSI 0000058d [SR] Verify complete
2018-03-06 06:15:46, Info CSI 0000058e [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:15:46, Info CSI 0000058f [SR] Beginning Verify and Repair transaction
2018-03-06 06:15:50, Info CSI 00000598 [SR] Verify complete
2018-03-06 06:15:51, Info CSI 00000599 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:15:51, Info CSI 0000059a [SR] Beginning Verify and Repair transaction
2018-03-06 06:15:54, Info CSI 000005a1 [SR] Verify complete
2018-03-06 06:15:54, Info CSI 000005a2 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:15:54, Info CSI 000005a3 [SR] Beginning Verify and Repair transaction
2018-03-06 06:15:55, Info CSI 000005a5 [SR] Verify complete
2018-03-06 06:15:55, Info CSI 000005a6 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:15:55, Info CSI 000005a7 [SR] Beginning Verify and Repair transaction
2018-03-06 06:15:59, Info CSI 000005aa [SR] Verify complete
2018-03-06 06:15:59, Info CSI 000005ab [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:15:59, Info CSI 000005ac [SR] Beginning Verify and Repair transaction
2018-03-06 06:16:02, Info CSI 000005ae [SR] Verify complete
2018-03-06 06:16:02, Info CSI 000005af [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:16:02, Info CSI 000005b0 [SR] Beginning Verify and Repair transaction
2018-03-06 06:16:03, Info CSI 000005b2 [SR] Verify complete
2018-03-06 06:16:03, Info CSI 000005b3 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:16:03, Info CSI 000005b4 [SR] Beginning Verify and Repair transaction
2018-03-06 06:16:08, Info CSI 000005b6 [SR] Verify complete
2018-03-06 06:16:08, Info CSI 000005b7 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:16:08, Info CSI 000005b8 [SR] Beginning Verify and Repair transaction
2018-03-06 06:16:10, Info CSI 000005ba [SR] Verify complete
2018-03-06 06:16:11, Info CSI 000005bb [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:16:11, Info CSI 000005bc [SR] Beginning Verify and Repair transaction
2018-03-06 06:16:16, Info CSI 000005d6 [SR] Verify complete
2018-03-06 06:16:16, Info CSI 000005d7 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:16:16, Info CSI 000005d8 [SR] Beginning Verify and Repair transaction
2018-03-06 06:16:20, Info CSI 000005da [SR] Verify complete
2018-03-06 06:16:20, Info CSI 000005db [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:16:20, Info CSI 000005dc [SR] Beginning Verify and Repair transaction
2018-03-06 06:16:37, Info CSI 000005de [SR] Verify complete
2018-03-06 06:16:38, Info CSI 000005df [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:16:38, Info CSI 000005e0 [SR] Beginning Verify and Repair transaction
2018-03-06 06:16:41, Info CSI 000005e2 [SR] Verify complete
2018-03-06 06:16:41, Info CSI 000005e3 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:16:41, Info CSI 000005e4 [SR] Beginning Verify and Repair transaction
2018-03-06 06:16:44, Info CSI 000005e7 [SR] Verify complete
2018-03-06 06:16:45, Info CSI 000005e8 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:16:45, Info CSI 000005e9 [SR] Beginning Verify and Repair transaction
2018-03-06 06:16:47, Info CSI 000005ec [SR] Verify complete
2018-03-06 06:16:47, Info CSI 000005ed [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:16:47, Info CSI 000005ee [SR] Beginning Verify and Repair transaction
2018-03-06 06:16:52, Info CSI 000005f0 [SR] Verify complete
2018-03-06 06:16:52, Info CSI 000005f1 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:16:52, Info CSI 000005f2 [SR] Beginning Verify and Repair transaction
2018-03-06 06:16:54, Info CSI 000005f4 [SR] Verify complete
2018-03-06 06:16:54, Info CSI 000005f5 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:16:54, Info CSI 000005f6 [SR] Beginning Verify and Repair transaction
2018-03-06 06:16:58, Info CSI 000005f9 [SR] Verify complete
2018-03-06 06:16:58, Info CSI 000005fa [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:16:58, Info CSI 000005fb [SR] Beginning Verify and Repair transaction
2018-03-06 06:17:01, Info CSI 000005fd [SR] Verify complete
2018-03-06 06:17:01, Info CSI 000005fe [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:17:01, Info CSI 000005ff [SR] Beginning Verify and Repair transaction
2018-03-06 06:17:04, Info CSI 00000601 [SR] Verify complete
2018-03-06 06:17:04, Info CSI 00000602 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:17:04, Info CSI 00000603 [SR] Beginning Verify and Repair transaction
2018-03-06 06:17:08, Info CSI 00000605 [SR] Verify complete
2018-03-06 06:17:08, Info CSI 00000606 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:17:08, Info CSI 00000607 [SR] Beginning Verify and Repair transaction
2018-03-06 06:17:16, Info CSI 0000060a [SR] Verify complete
2018-03-06 06:17:17, Info CSI 0000060b [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:17:17, Info CSI 0000060c [SR] Beginning Verify and Repair transaction
2018-03-06 06:17:21, Info CSI 0000060e [SR] Verify complete
2018-03-06 06:17:21, Info CSI 0000060f [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:17:21, Info CSI 00000610 [SR] Beginning Verify and Repair transaction
2018-03-06 06:17:24, Info CSI 00000612 [SR] Verify complete
2018-03-06 06:17:24, Info CSI 00000613 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:17:24, Info CSI 00000614 [SR] Beginning Verify and Repair transaction
2018-03-06 06:17:27, Info CSI 00000616 [SR] Verify complete
2018-03-06 06:17:27, Info CSI 00000617 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:17:27, Info CSI 00000618 [SR] Beginning Verify and Repair transaction
2018-03-06 06:17:31, Info CSI 0000061a [SR] Verify complete
2018-03-06 06:17:31, Info CSI 0000061b [SR] Verifying 32 (0x0000000000000020) components
2018-03-06 06:17:31, Info CSI 0000061c [SR] Beginning Verify and Repair transaction
2018-03-06 06:17:32, Info CSI 0000061e [SR] Verify complete
2018-03-06 06:17:32, Info CSI 0000061f [SR] Repairing 0 components
2018-03-06 06:17:32, Info CSI 00000620 [SR] Beginning Verify and Repair transaction
2018-03-06 06:17:32, Info CSI 00000622 [SR] Repair complete
2018-03-06 06:19:46, Info CSI 00000623 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:19:46, Info CSI 00000624 [SR] Beginning Verify and Repair transaction
2018-03-06 06:19:47, Info CSI 00000626 [SR] Verify complete
2018-03-06 06:19:47, Info CSI 00000627 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:19:47, Info CSI 00000628 [SR] Beginning Verify and Repair transaction
2018-03-06 06:19:48, Info CSI 0000062a [SR] Verify complete
2018-03-06 06:19:48, Info CSI 0000062b [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:19:48, Info CSI 0000062c [SR] Beginning Verify and Repair transaction
2018-03-06 06:19:49, Info CSI 0000062e [SR] Verify complete
2018-03-06 06:19:49, Info CSI 0000062f [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:19:49, Info CSI 00000630 [SR] Beginning Verify and Repair transaction
2018-03-06 06:19:50, Info CSI 00000632 [SR] Verify complete
2018-03-06 06:19:50, Info CSI 00000633 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:19:50, Info CSI 00000634 [SR] Beginning Verify and Repair transaction
2018-03-06 06:19:51, Info CSI 00000636 [SR] Verify complete
2018-03-06 06:19:51, Info CSI 00000637 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:19:51, Info CSI 00000638 [SR] Beginning Verify and Repair transaction
2018-03-06 06:19:52, Info CSI 0000063a [SR] Verify complete
2018-03-06 06:19:52, Info CSI 0000063b [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:19:52, Info CSI 0000063c [SR] Beginning Verify and Repair transaction
2018-03-06 06:19:53, Info CSI 0000063e [SR] Verify complete
2018-03-06 06:19:53, Info CSI 0000063f [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:19:53, Info CSI 00000640 [SR] Beginning Verify and Repair transaction
2018-03-06 06:19:54, Info CSI 00000642 [SR] Verify complete
2018-03-06 06:19:55, Info CSI 00000643 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:19:55, Info CSI 00000644 [SR] Beginning Verify and Repair transaction
2018-03-06 06:19:56, Info CSI 00000646 [SR] Verify complete
2018-03-06 06:19:56, Info CSI 00000647 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:19:56, Info CSI 00000648 [SR] Beginning Verify and Repair transaction
2018-03-06 06:19:57, Info CSI 0000064a [SR] Verify complete
2018-03-06 06:19:57, Info CSI 0000064b [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:19:57, Info CSI 0000064c [SR] Beginning Verify and Repair transaction
2018-03-06 06:19:58, Info CSI 0000064e [SR] Verify complete
2018-03-06 06:19:58, Info CSI 0000064f [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:19:58, Info CSI 00000650 [SR] Beginning Verify and Repair transaction
2018-03-06 06:19:59, Info CSI 00000652 [SR] Verify complete
2018-03-06 06:19:59, Info CSI 00000653 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:19:59, Info CSI 00000654 [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:01, Info CSI 00000656 [SR] Verify complete
2018-03-06 06:20:01, Info CSI 00000657 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:01, Info CSI 00000658 [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:02, Info CSI 0000065a [SR] Verify complete
2018-03-06 06:20:03, Info CSI 0000065b [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:03, Info CSI 0000065c [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:05, Info CSI 0000065e [SR] Verify complete
2018-03-06 06:20:05, Info CSI 0000065f [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:05, Info CSI 00000660 [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:06, Info CSI 00000662 [SR] Verify complete
2018-03-06 06:20:06, Info CSI 00000663 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:06, Info CSI 00000664 [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:08, Info CSI 00000666 [SR] Verify complete
2018-03-06 06:20:08, Info CSI 00000667 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:08, Info CSI 00000668 [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:09, Info CSI 0000066a [SR] Verify complete
2018-03-06 06:20:09, Info CSI 0000066b [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:09, Info CSI 0000066c [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:10, Info CSI 0000066e [SR] Verify complete
2018-03-06 06:20:10, Info CSI 0000066f [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:10, Info CSI 00000670 [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:12, Info CSI 00000672 [SR] Verify complete
2018-03-06 06:20:12, Info CSI 00000673 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:12, Info CSI 00000674 [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:14, Info CSI 00000676 [SR] Verify complete
2018-03-06 06:20:14, Info CSI 00000677 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:14, Info CSI 00000678 [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:15, Info CSI 0000067a [SR] Verify complete
2018-03-06 06:20:15, Info CSI 0000067b [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:15, Info CSI 0000067c [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:16, Info CSI 0000067e [SR] Verify complete
2018-03-06 06:20:16, Info CSI 0000067f [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:16, Info CSI 00000680 [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:19, Info CSI 00000682 [SR] Verify complete
2018-03-06 06:20:19, Info CSI 00000683 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:19, Info CSI 00000684 [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:22, Info CSI 00000688 [SR] Verify complete
2018-03-06 06:20:22, Info CSI 00000689 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:22, Info CSI 0000068a [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:25, Info CSI 0000068f [SR] Verify complete
2018-03-06 06:20:25, Info CSI 00000690 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:25, Info CSI 00000691 [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:27, Info CSI 00000694 [SR] Verify complete
2018-03-06 06:20:27, Info CSI 00000695 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:27, Info CSI 00000696 [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:30, Info CSI 00000698 [SR] Verify complete
2018-03-06 06:20:30, Info CSI 00000699 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:30, Info CSI 0000069a [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:34, Info CSI 000006b9 [SR] Verify complete
2018-03-06 06:20:35, Info CSI 000006ba [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:35, Info CSI 000006bb [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:37, Info CSI 000006c3 [SR] Verify complete
2018-03-06 06:20:37, Info CSI 000006c4 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:37, Info CSI 000006c5 [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:40, Info CSI 000006c7 [SR] Verify complete
2018-03-06 06:20:40, Info CSI 000006c8 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:40, Info CSI 000006c9 [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:42, Info CSI 000006cb [SR] Verify complete
2018-03-06 06:20:42, Info CSI 000006cc [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:42, Info CSI 000006cd [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:45, Info CSI 000006cf [SR] Verify complete
2018-03-06 06:20:45, Info CSI 000006d0 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:45, Info CSI 000006d1 [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:47, Info CSI 000006d3 [SR] Verify complete
2018-03-06 06:20:47, Info CSI 000006d4 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:47, Info CSI 000006d5 [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:49, Info CSI 000006d7 [SR] Verify complete
2018-03-06 06:20:50, Info CSI 000006d8 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:50, Info CSI 000006d9 [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:54, Info CSI 000006dd [SR] Verify complete
2018-03-06 06:20:54, Info CSI 000006de [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:54, Info CSI 000006df [SR] Beginning Verify and Repair transaction
2018-03-06 06:20:57, Info CSI 00000700 [SR] Verify complete
2018-03-06 06:20:57, Info CSI 00000701 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:20:57, Info CSI 00000702 [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:03, Info CSI 00000704 [SR] Verify complete
2018-03-06 06:21:03, Info CSI 00000705 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:03, Info CSI 00000706 [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:10, Info CSI 00000708 [SR] Verify complete
2018-03-06 06:21:10, Info CSI 00000709 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:10, Info CSI 0000070a [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:13, Info CSI 0000070e [SR] Verify complete
2018-03-06 06:21:13, Info CSI 0000070f [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:13, Info CSI 00000710 [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:15, Info CSI 00000712 [SR] Verify complete
2018-03-06 06:21:15, Info CSI 00000713 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:15, Info CSI 00000714 [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:16, Info CSI 00000716 [SR] Verify complete
2018-03-06 06:21:16, Info CSI 00000717 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:16, Info CSI 00000718 [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:18, Info CSI 0000071a [SR] Verify complete
2018-03-06 06:21:19, Info CSI 0000071b [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:19, Info CSI 0000071c [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:24, Info CSI 0000072f [SR] Verify complete
2018-03-06 06:21:25, Info CSI 00000730 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:25, Info CSI 00000731 [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:25, Info CSI 00000733 [SR] Verify complete
2018-03-06 06:21:25, Info CSI 00000734 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:25, Info CSI 00000735 [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:27, Info CSI 00000737 [SR] Verify complete
2018-03-06 06:21:28, Info CSI 00000738 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:28, Info CSI 00000739 [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:29, Info CSI 0000073b [SR] Verify complete
2018-03-06 06:21:29, Info CSI 0000073c [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:29, Info CSI 0000073d [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:32, Info CSI 00000740 [SR] Verify complete
2018-03-06 06:21:32, Info CSI 00000741 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:32, Info CSI 00000742 [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:38, Info CSI 00000745 [SR] Verify complete
2018-03-06 06:21:38, Info CSI 00000746 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:38, Info CSI 00000747 [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:41, Info CSI 00000749 [SR] Verify complete
2018-03-06 06:21:41, Info CSI 0000074a [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:41, Info CSI 0000074b [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:42, Info CSI 0000074d [SR] Verify complete
2018-03-06 06:21:42, Info CSI 0000074e [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:42, Info CSI 0000074f [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:45, Info CSI 00000751 [SR] Verify complete
2018-03-06 06:21:46, Info CSI 00000752 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:46, Info CSI 00000753 [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:48, Info CSI 00000755 [SR] Verify complete
2018-03-06 06:21:48, Info CSI 00000756 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:48, Info CSI 00000757 [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:51, Info CSI 00000759 [SR] Verify complete
2018-03-06 06:21:51, Info CSI 0000075a [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:51, Info CSI 0000075b [SR] Beginning Verify and Repair transaction
2018-03-06 06:21:56, Info CSI 00000763 [SR] Verify complete
2018-03-06 06:21:56, Info CSI 00000764 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:21:56, Info CSI 00000765 [SR] Beginning Verify and Repair transaction
2018-03-06 06:22:00, Info CSI 00000777 [SR] Verify complete
2018-03-06 06:22:00, Info CSI 00000778 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:22:00, Info CSI 00000779 [SR] Beginning Verify and Repair transaction
2018-03-06 06:22:03, Info CSI 0000077b [SR] Verify complete
2018-03-06 06:22:03, Info CSI 0000077c [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:22:03, Info CSI 0000077d [SR] Beginning Verify and Repair transaction
2018-03-06 06:22:14, Info CSI 0000077f [SR] Verify complete
2018-03-06 06:22:14, Info CSI 00000780 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:22:14, Info CSI 00000781 [SR] Beginning Verify and Repair transaction
2018-03-06 06:22:18, Info CSI 00000784 [SR] Verify complete
2018-03-06 06:22:18, Info CSI 00000785 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:22:18, Info CSI 00000786 [SR] Beginning Verify and Repair transaction
2018-03-06 06:22:22, Info CSI 00000788 [SR] Verify complete
2018-03-06 06:22:22, Info CSI 00000789 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:22:22, Info CSI 0000078a [SR] Beginning Verify and Repair transaction
2018-03-06 06:22:24, Info CSI 0000078d [SR] Verify complete
2018-03-06 06:22:24, Info CSI 0000078e [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:22:24, Info CSI 0000078f [SR] Beginning Verify and Repair transaction
2018-03-06 06:22:27, Info CSI 00000791 [SR] Verify complete
2018-03-06 06:22:27, Info CSI 00000792 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:22:27, Info CSI 00000793 [SR] Beginning Verify and Repair transaction
2018-03-06 06:22:29, Info CSI 00000795 [SR] Verify complete
2018-03-06 06:22:29, Info CSI 00000796 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:22:29, Info CSI 00000797 [SR] Beginning Verify and Repair transaction
2018-03-06 06:22:32, Info CSI 0000079b [SR] Verify complete
2018-03-06 06:22:32, Info CSI 0000079c [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:22:32, Info CSI 0000079d [SR] Beginning Verify and Repair transaction
2018-03-06 06:22:35, Info CSI 0000079f [SR] Verify complete
2018-03-06 06:22:35, Info CSI 000007a0 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:22:35, Info CSI 000007a1 [SR] Beginning Verify and Repair transaction
2018-03-06 06:22:38, Info CSI 000007a4 [SR] Verify complete
2018-03-06 06:22:38, Info CSI 000007a5 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:22:38, Info CSI 000007a6 [SR] Beginning Verify and Repair transaction
2018-03-06 06:22:41, Info CSI 000007a9 [SR] Verify complete
2018-03-06 06:22:41, Info CSI 000007aa [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:22:41, Info CSI 000007ab [SR] Beginning Verify and Repair transaction
2018-03-06 06:22:44, Info CSI 000007ad [SR] Verify complete
2018-03-06 06:22:44, Info CSI 000007ae [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:22:44, Info CSI 000007af [SR] Beginning Verify and Repair transaction
2018-03-06 06:22:48, Info CSI 000007b2 [SR] Verify complete
2018-03-06 06:22:49, Info CSI 000007b3 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:22:49, Info CSI 000007b4 [SR] Beginning Verify and Repair transaction
2018-03-06 06:22:52, Info CSI 000007b6 [SR] Verify complete
2018-03-06 06:22:52, Info CSI 000007b7 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:22:52, Info CSI 000007b8 [SR] Beginning Verify and Repair transaction
2018-03-06 06:22:54, Info CSI 000007ba [SR] Verify complete
2018-03-06 06:22:54, Info CSI 000007bb [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:22:54, Info CSI 000007bc [SR] Beginning Verify and Repair transaction
2018-03-06 06:22:57, Info CSI 000007be [SR] Verify complete
2018-03-06 06:22:57, Info CSI 000007bf [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:22:57, Info CSI 000007c0 [SR] Beginning Verify and Repair transaction
2018-03-06 06:23:00, Info CSI 000007c3 [SR] Verify complete
2018-03-06 06:23:00, Info CSI 000007c4 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:23:00, Info CSI 000007c5 [SR] Beginning Verify and Repair transaction
2018-03-06 06:23:03, Info CSI 000007c7 [SR] Verify complete
2018-03-06 06:23:03, Info CSI 000007c8 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:23:03, Info CSI 000007c9 [SR] Beginning Verify and Repair transaction
2018-03-06 06:23:05, Info CSI 000007cb [SR] Verify complete
2018-03-06 06:23:05, Info CSI 000007cc [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:23:05, Info CSI 000007cd [SR] Beginning Verify and Repair transaction
2018-03-06 06:23:08, Info CSI 000007d0 [SR] Verify complete
2018-03-06 06:23:08, Info CSI 000007d1 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:23:08, Info CSI 000007d2 [SR] Beginning Verify and Repair transaction
2018-03-06 06:23:11, Info CSI 000007d4 [SR] Verify complete
2018-03-06 06:23:11, Info CSI 000007d5 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:23:11, Info CSI 000007d6 [SR] Beginning Verify and Repair transaction
2018-03-06 06:23:14, Info CSI 000007da [SR] Verify complete
2018-03-06 06:23:14, Info CSI 000007db [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:23:14, Info CSI 000007dc [SR] Beginning Verify and Repair transaction
2018-03-06 06:23:17, Info CSI 000007de [SR] Verify complete
2018-03-06 06:23:17, Info CSI 000007df [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:23:17, Info CSI 000007e0 [SR] Beginning Verify and Repair transaction
2018-03-06 06:23:21, Info CSI 000007e3 [SR] Verify complete
2018-03-06 06:23:21, Info CSI 000007e4 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:23:21, Info CSI 000007e5 [SR] Beginning Verify and Repair transaction
2018-03-06 06:23:23, Info CSI 000007e7 [SR] Verify complete
2018-03-06 06:23:23, Info CSI 000007e8 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:23:23, Info CSI 000007e9 [SR] Beginning Verify and Repair transaction
2018-03-06 06:23:25, Info CSI 000007eb [SR] Verify complete
2018-03-06 06:23:25, Info CSI 000007ec [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:23:25, Info CSI 000007ed [SR] Beginning Verify and Repair transaction
2018-03-06 06:23:27, Info CSI 000007ef [SR] Verify complete
2018-03-06 06:23:28, Info CSI 000007f0 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:23:28, Info CSI 000007f1 [SR] Beginning Verify and Repair transaction
2018-03-06 06:23:29, Info CSI 000007f3 [SR] Verify complete
2018-03-06 06:23:29, Info CSI 000007f4 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:23:29, Info CSI 000007f5 [SR] Beginning Verify and Repair transaction
2018-03-06 06:23:32, Info CSI 000007f7 [SR] Verify complete
2018-03-06 06:23:32, Info CSI 000007f8 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:23:32, Info CSI 000007f9 [SR] Beginning Verify and Repair transaction
2018-03-06 06:23:34, Info CSI 000007fb [SR] Verify complete
2018-03-06 06:23:34, Info CSI 000007fc [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:23:34, Info CSI 000007fd [SR] Beginning Verify and Repair transaction
2018-03-06 06:23:36, Info CSI 000007ff [SR] Verify complete
2018-03-06 06:23:36, Info CSI 00000800 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:23:36, Info CSI 00000801 [SR] Beginning Verify and Repair transaction
2018-03-06 06:23:42, Info CSI 00000803 [SR] Verify complete
2018-03-06 06:23:42, Info CSI 00000804 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:23:42, Info CSI 00000805 [SR] Beginning Verify and Repair transaction
2018-03-06 06:23:59, Info CSI 00000807 [SR] Verify complete
2018-03-06 06:23:59, Info CSI 00000808 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:23:59, Info CSI 00000809 [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:04, Info CSI 0000080b [SR] Verify complete
2018-03-06 06:24:04, Info CSI 0000080c [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:04, Info CSI 0000080d [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:11, Info CSI 0000080f [SR] Verify complete
2018-03-06 06:24:11, Info CSI 00000810 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:11, Info CSI 00000811 [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:12, Info CSI 00000813 [SR] Verify complete
2018-03-06 06:24:12, Info CSI 00000814 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:12, Info CSI 00000815 [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:14, Info CSI 00000817 [SR] Verify complete
2018-03-06 06:24:14, Info CSI 00000818 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:14, Info CSI 00000819 [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:16, Info CSI 0000081b [SR] Verify complete
2018-03-06 06:24:16, Info CSI 0000081c [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:16, Info CSI 0000081d [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:19, Info CSI 0000081f [SR] Verify complete
2018-03-06 06:24:19, Info CSI 00000820 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:19, Info CSI 00000821 [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:20, Info CSI 00000823 [SR] Verify complete
2018-03-06 06:24:20, Info CSI 00000824 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:20, Info CSI 00000825 [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:23, Info CSI 0000082d [SR] Verify complete
2018-03-06 06:24:23, Info CSI 0000082e [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:23, Info CSI 0000082f [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:25, Info CSI 00000831 [SR] Verify complete
2018-03-06 06:24:26, Info CSI 00000832 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:26, Info CSI 00000833 [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:27, Info CSI 00000835 [SR] Verify complete
2018-03-06 06:24:27, Info CSI 00000836 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:27, Info CSI 00000837 [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:29, Info CSI 00000839 [SR] Verify complete
2018-03-06 06:24:29, Info CSI 0000083a [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:29, Info CSI 0000083b [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:33, Info CSI 0000083d [SR] Verify complete
2018-03-06 06:24:33, Info CSI 0000083e [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:33, Info CSI 0000083f [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:36, Info CSI 00000841 [SR] Verify complete
2018-03-06 06:24:36, Info CSI 00000842 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:36, Info CSI 00000843 [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:39, Info CSI 00000846 [SR] Verify complete
2018-03-06 06:24:39, Info CSI 00000847 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:39, Info CSI 00000848 [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:40, Info CSI 0000084a [SR] Verify complete
2018-03-06 06:24:40, Info CSI 0000084b [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:40, Info CSI 0000084c [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:42, Info CSI 0000084e [SR] Verify complete
2018-03-06 06:24:42, Info CSI 0000084f [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:42, Info CSI 00000850 [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:49, Info CSI 00000855 [SR] Verify complete
2018-03-06 06:24:49, Info CSI 00000856 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:49, Info CSI 00000857 [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:54, Info CSI 00000859 [SR] Verify complete
2018-03-06 06:24:54, Info CSI 0000085a [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:54, Info CSI 0000085b [SR] Beginning Verify and Repair transaction
2018-03-06 06:24:57, Info CSI 0000085f [SR] Verify complete
2018-03-06 06:24:57, Info CSI 00000860 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:24:57, Info CSI 00000861 [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:00, Info CSI 0000086e [SR] Verify complete
2018-03-06 06:25:01, Info CSI 0000086f [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:01, Info CSI 00000870 [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:04, Info CSI 00000877 [SR] Verify complete
2018-03-06 06:25:04, Info CSI 00000878 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:04, Info CSI 00000879 [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:07, Info CSI 0000087b [SR] Verify complete
2018-03-06 06:25:07, Info CSI 0000087c [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:07, Info CSI 0000087d [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:09, Info CSI 00000881 [SR] Verify complete
2018-03-06 06:25:09, Info CSI 00000882 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:09, Info CSI 00000883 [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:11, Info CSI 00000885 [SR] Verify complete
2018-03-06 06:25:11, Info CSI 00000886 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:11, Info CSI 00000887 [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:15, Info CSI 000008ac [SR] Verify complete
2018-03-06 06:25:15, Info CSI 000008ad [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:15, Info CSI 000008ae [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:17, Info CSI 000008b0 [SR] Verify complete
2018-03-06 06:25:17, Info CSI 000008b1 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:17, Info CSI 000008b2 [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:19, Info CSI 000008b4 [SR] Verify complete
2018-03-06 06:25:19, Info CSI 000008b5 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:19, Info CSI 000008b6 [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:21, Info CSI 000008b8 [SR] Verify complete
2018-03-06 06:25:22, Info CSI 000008b9 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:22, Info CSI 000008ba [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:24, Info CSI 000008c8 [SR] Verify complete
2018-03-06 06:25:24, Info CSI 000008c9 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:24, Info CSI 000008ca [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:26, Info CSI 000008cc [SR] Verify complete
2018-03-06 06:25:26, Info CSI 000008cd [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:26, Info CSI 000008ce [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:30, Info CSI 000008d7 [SR] Verify complete
2018-03-06 06:25:30, Info CSI 000008d8 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:30, Info CSI 000008d9 [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:33, Info CSI 000008e0 [SR] Verify complete
2018-03-06 06:25:33, Info CSI 000008e1 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:33, Info CSI 000008e2 [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:34, Info CSI 000008e4 [SR] Verify complete
2018-03-06 06:25:34, Info CSI 000008e5 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:34, Info CSI 000008e6 [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:38, Info CSI 000008e9 [SR] Verify complete
2018-03-06 06:25:38, Info CSI 000008ea [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:38, Info CSI 000008eb [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:39, Info CSI 000008ed [SR] Verify complete
2018-03-06 06:25:39, Info CSI 000008ee [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:39, Info CSI 000008ef [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:40, Info CSI 000008f1 [SR] Verify complete
2018-03-06 06:25:40, Info CSI 000008f2 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:40, Info CSI 000008f3 [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:44, Info CSI 000008f5 [SR] Verify complete
2018-03-06 06:25:44, Info CSI 000008f6 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:44, Info CSI 000008f7 [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:46, Info CSI 000008f9 [SR] Verify complete
2018-03-06 06:25:46, Info CSI 000008fa [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:46, Info CSI 000008fb [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:51, Info CSI 00000915 [SR] Verify complete
2018-03-06 06:25:52, Info CSI 00000916 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:52, Info CSI 00000917 [SR] Beginning Verify and Repair transaction
2018-03-06 06:25:54, Info CSI 00000919 [SR] Verify complete
2018-03-06 06:25:54, Info CSI 0000091a [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:25:54, Info CSI 0000091b [SR] Beginning Verify and Repair transaction
2018-03-06 06:26:03, Info CSI 0000091d [SR] Verify complete
2018-03-06 06:26:03, Info CSI 0000091e [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:26:03, Info CSI 0000091f [SR] Beginning Verify and Repair transaction
2018-03-06 06:26:05, Info CSI 00000921 [SR] Verify complete
2018-03-06 06:26:05, Info CSI 00000922 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:26:05, Info CSI 00000923 [SR] Beginning Verify and Repair transaction
2018-03-06 06:26:07, Info CSI 00000926 [SR] Verify complete
2018-03-06 06:26:07, Info CSI 00000927 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:26:07, Info CSI 00000928 [SR] Beginning Verify and Repair transaction
2018-03-06 06:26:09, Info CSI 0000092b [SR] Verify complete
2018-03-06 06:26:09, Info CSI 0000092c [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:26:09, Info CSI 0000092d [SR] Beginning Verify and Repair transaction
2018-03-06 06:26:12, Info CSI 0000092f [SR] Verify complete
2018-03-06 06:26:12, Info CSI 00000930 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:26:12, Info CSI 00000931 [SR] Beginning Verify and Repair transaction
2018-03-06 06:26:14, Info CSI 00000933 [SR] Verify complete
2018-03-06 06:26:14, Info CSI 00000934 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:26:14, Info CSI 00000935 [SR] Beginning Verify and Repair transaction
2018-03-06 06:26:16, Info CSI 00000938 [SR] Verify complete
2018-03-06 06:26:16, Info CSI 00000939 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:26:16, Info CSI 0000093a [SR] Beginning Verify and Repair transaction
2018-03-06 06:26:18, Info CSI 0000093c [SR] Verify complete
2018-03-06 06:26:18, Info CSI 0000093d [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:26:18, Info CSI 0000093e [SR] Beginning Verify and Repair transaction
2018-03-06 06:26:21, Info CSI 00000940 [SR] Verify complete
2018-03-06 06:26:21, Info CSI 00000941 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:26:21, Info CSI 00000942 [SR] Beginning Verify and Repair transaction
2018-03-06 06:26:23, Info CSI 00000944 [SR] Verify complete
2018-03-06 06:26:23, Info CSI 00000945 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:26:23, Info CSI 00000946 [SR] Beginning Verify and Repair transaction
2018-03-06 06:26:26, Info CSI 00000949 [SR] Verify complete
2018-03-06 06:26:26, Info CSI 0000094a [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:26:26, Info CSI 0000094b [SR] Beginning Verify and Repair transaction
2018-03-06 06:26:28, Info CSI 0000094d [SR] Verify complete
2018-03-06 06:26:28, Info CSI 0000094e [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:26:28, Info CSI 0000094f [SR] Beginning Verify and Repair transaction
2018-03-06 06:26:30, Info CSI 00000951 [SR] Verify complete
2018-03-06 06:26:30, Info CSI 00000952 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:26:30, Info CSI 00000953 [SR] Beginning Verify and Repair transaction
2018-03-06 06:26:32, Info CSI 00000955 [SR] Verify complete
2018-03-06 06:26:32, Info CSI 00000956 [SR] Verifying 100 (0x0000000000000064) components
2018-03-06 06:26:32, Info CSI 00000957 [SR] Beginning Verify and Repair transaction
2018-03-06 06:26:34, Info CSI 00000959 [SR] Verify complete
2018-03-06 06:26:34, Info CSI 0000095a [SR] Verifying 32 (0x0000000000000020) components
2018-03-06 06:26:34, Info CSI 0000095b [SR] Beginning Verify and Repair transaction
2018-03-06 06:26:34, Info CSI 0000095d [SR] Verify complete
2018-03-06 06:26:34, Info CSI 0000095e [SR] Repairing 0 components
2018-03-06 06:26:34, Info CSI 0000095f [SR] Beginning Verify and Repair transaction
2018-03-06 06:26:34, Info CSI 00000961 [SR] Repair complete
Re: Prosím o prev. kontrolu
Poprosim o nove logy z FRST - moznost Scan.
Absolvent skoly pre novacikov
E-mail: conder (zavinac) forum.viry.cz
Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).
Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.
V pripade spokojnosti je mozne podporit forum. Dakujeme!
E-mail: conder (zavinac) forum.viry.cz
Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).
Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.
V pripade spokojnosti je mozne podporit forum. Dakujeme!
-
- Návštěvník
- Příspěvky: 25
- Registrován: 02 úno 2007 18:09
- Bydliště: Prague
- Kontaktovat uživatele:
Re: Prosím o prev. kontrolu
Nutno dodat, že za posledních pár dní, co jsem doma, se internet zase pro změnu chová normálně. Že by se to mezitím nějak vyřešilo? NTB ležel cca 14 dní nepoužívaný.
Addition.txt přiložen jako příloha k příspěvku. Nový log z FRST:
Addition.txt přiložen jako příloha k příspěvku. Nový log z FRST:
Kód: Vybrat vše
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 04.03.2018
Ran by still (administrator) on WE168468 (06-03-2018 18:09:40)
Running from C:\Users\still\Desktop
Loaded Profiles: still (Available Profiles: still)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(StarWind Software) C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(ESET) C:\Program Files\ESET\ESET Security\egui.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(TrueCrypt Foundation) C:\Program Files\TrueCrypt\TrueCrypt.exe
(PortableApps.com) Z:\portable\ThunderbirdPortable\ThunderbirdPortable_aktualni\ThunderbirdPortable.exe
(Mozilla Corporation) Z:\portable\ThunderbirdPortable\ThunderbirdPortable_aktualni\App\Thunderbird\thunderbird.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe
(forum.viry.cz) C:\Users\still\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3350232 2017-11-10] (ELAN Microelectronics Corp.)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [324352 2017-12-18] (ESET)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [11775592 2011-01-26] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2188904 2011-01-18] (Realtek Semiconductor)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\Run: [AlcoholAutomount] => C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft Development Team)
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\Policies\Explorer: [NoInternetOpenWith] 1
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\...\MountPoints2: {f40954e6-cb55-11e7-b023-9f020f53483c} - I:\Lenovo_Suite.exe
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [11264 2009-07-14] (Microsoft Corporation)
AppInit_DLLs: C:\Windows\system32\nvinitx.dll => C:\Windows\system32\nvinitx.dll [171896 2017-11-10] (NVIDIA Corporation)
AppInit_DLLs-x32: C:\Windows\SysWOW64\nvinit.dll => C:\Windows\SysWOW64\nvinit.dll [149552 2017-11-10] (NVIDIA Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 10.0.1.2 10.0.1.6 192.168.1.1
Tcpip\..\Interfaces\{9A408F53-E339-4DE2-9ABF-E7A98F13A6DD}: [DhcpNameServer] 10.0.1.2 10.0.1.6 192.168.1.1
Internet Explorer:
==================
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-3908664933-461153505-2189849125-1000\Software\Microsoft\Internet Explorer\Main,Start Page Redirect Cache = hxxp://www.msn.com/?ocid=iehp
FireFox:
========
FF DefaultProfile: fpj0zzjg.default
FF ProfilePath: Z:\firefox_profil\fpj0zzjg.default [2018-01-28]
FF Homepage: Z:\firefox_profil\fpj0zzjg.default -> moz-extension://1a131e50-4ad4-45fc-bcef-bfdd72b475c4/newtab.html
FF NetworkProxy: Z:\firefox_profil\fpj0zzjg.default -> type", 0
FF NewTabOverride: Z:\firefox_profil\fpj0zzjg.default -> Enabled: pavel.sherbakov@gmail.com
FF NewTabOverride: Z:\firefox_profil\fpj0zzjg.default -> Disabled: quickdial@matmoul.com
FF Extension: (Add-on Compatibility Reporter) - Z:\firefox_profil\fpj0zzjg.default\Extensions\compatibility@addons.mozilla.org.xpi [2017-11-21] [Legacy]
FF Extension: (Element Hiding Helper for Adblock Plus) - Z:\firefox_profil\fpj0zzjg.default\Extensions\elemhidehelper@adblockplus.org.xpi [2017-11-10] [Legacy]
FF Extension: (Video Downloader Prime) - Z:\firefox_profil\fpj0zzjg.default\Extensions\jid1-i6dUGvCrz2WZu8@jetpack.xpi [2018-01-25]
FF Extension: (New Tab Page) - Z:\firefox_profil\fpj0zzjg.default\Extensions\pavel.sherbakov@gmail.com.xpi [2018-01-25]
FF Extension: (Quick Dial) - Z:\firefox_profil\fpj0zzjg.default\Extensions\quickdial@matmoul.com.xpi [2017-12-24]
FF Extension: (FlashGot) - Z:\firefox_profil\fpj0zzjg.default\Extensions\{19503e42-ca3c-4c27-b1e2-9cdb2170ee34}.xpi [2017-11-10] [Legacy]
FF Extension: (Adblock Plus) - Z:\firefox_profil\fpj0zzjg.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-12-13]
FF Extension: (Greasemonkey) - Z:\firefox_profil\fpj0zzjg.default\Extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}.xpi [2018-01-24]
FF Extension: (Fast Dial) - Z:\firefox_profil\fpj0zzjg.default\Extensions\fastdial@telega.phpnet.us [2017-11-10] [Legacy]
FF Extension: (uBlock Origin) - Z:\firefox_profil\fpj0zzjg.default\Extensions\uBlock0@raymondhill.net.xpi [2018-02-20]
FF Extension: (Video DownloadHelper) - Z:\firefox_profil\fpj0zzjg.default\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2018-02-22]
FF Extension: (Enhancer for YouTube™) - Z:\firefox_profil\fpj0zzjg.default\Extensions\enhancerforyoutube@maximerf.addons.mozilla.org.xpi [2018-02-24]
FF Extension: (Name) - Z:\firefox_profil\fpj0zzjg.default\Extensions\firefox@ghostery.com.xpi [2018-03-02]
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_28_0_0_161.dll [2018-03-01] ()
FF Plugin: @java.com/DTPlugin,version=12.0.4 -> C:\Program Files\Java\jre-9.0.4\bin\dtplugin\npDeployJava1.dll [2018-02-17] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=12.0.4.0 -> C:\Program Files\Java\jre-9.0.4\bin\plugin2\npjp2.dll [2018-02-17] (Oracle Corporation)
FF Plugin: @videolan.org/vlc,version=2.2.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_28_0_0_161.dll [2018-03-01] ()
FF Plugin-x32: @esn.me/esnsonar,version=0.70.4 -> C:\Program Files (x86)\Battlelog Web Plugins\Sonar\0.70.4\npesnsonar.dll [2011-11-03] (ESN Social Software AB)
FF Plugin-x32: @esn/esnlaunch,version=2.3.0 -> C:\Program Files (x86)\Battlelog Web Plugins\2.3.0\npesnlaunch.dll [2013-09-16] (ESN Social Software AB)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2012-09-23] (Adobe Systems Inc.)
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [138400 2011-03-13] (Atheros) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [74912 2011-03-13] (Atheros Commnucations) [File not signed]
S3 AxAutoMntSrv; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\AxAutoMntSrv.exe [39376 2015-03-12] (Alcohol Soft Development Team)
S3 Connectify; C:\Program Files (x86)\Connectify\ConnectifyService.exe [487936 2013-11-05] (Connectify) [File not signed]
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [1940584 2017-12-18] (ESET)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2010-07-19] ()
S3 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [1740864 2016-12-21] (O&O Software GmbH)
R2 StarWindServiceAE; C:\Program Files (x86)\Alcohol Soft\Alcohol 120\StarWind\StarWindServiceAE.exe [370688 2009-12-23] (StarWind Software) [File not signed]
S4 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
S3 NVDisplay.ContainerLocalSystem; "C:\Program Files\NVIDIA Corporation\Display.NvContainer\NVDisplay.Container.exe" -s NVDisplay.ContainerLocalSystem -f "C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\Display.NvContainer\plugins\LocalSystem" -r -p 30000
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 bcbtums; C:\Windows\System32\drivers\bcbtums.sys [172760 2017-11-10] (Broadcom Corporation.)
R1 cnnctfy3; C:\Windows\System32\DRIVERS\cnnctfy3.sys [35352 2017-11-17] (Connectify)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [134368 2018-01-19] (ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [107328 2018-01-19] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [180088 2018-01-19] (ESET)
R2 ekbdflt; C:\Windows\System32\DRIVERS\ekbdflt.sys [50744 2018-01-19] (ESET)
R1 epfw; C:\Windows\System32\DRIVERS\epfw.sys [81880 2018-01-19] (ESET)
R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [61040 2018-01-19] (ESET)
R1 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [106304 2018-01-19] (ESET)
R3 FLxHCIh; C:\Windows\System32\DRIVERS\FLxHCIh.sys [77944 2017-11-10] (Fresco Logic)
R0 iaStorF; C:\Windows\System32\DRIVERS\iaStorF.sys [28008 2017-11-10] (Intel Corporation)
R3 kbfiltr; C:\Windows\System32\DRIVERS\kbfiltr.sys [15416 2009-07-20] ( )
S3 SNP2UVC; C:\Windows\System32\DRIVERS\snp2uvc.sys [1800832 2010-09-07] (Sonix Technology Co., Ltd.)
R0 sptd; C:\Windows\System32\Drivers\sptd.sys [394296 2017-11-11] (Duplex Secure Ltd.)
U5 UnlockerDriver5; C:\Program Files\Unlocker\UnlockerDriver5.sys [12352 2010-07-01] ()
S3 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [200832 2017-11-22] (Oracle Corporation)
R1 VBoxNetLwf; C:\Windows\System32\DRIVERS\VBoxNetLwf.sys [211704 2017-11-22] (Oracle Corporation)
S3 VBoxUSB; C:\Windows\System32\Drivers\VBoxUSB.sys [144632 2017-11-22] (Oracle Corporation)
S3 wdm_usb; C:\Windows\System32\DRIVERS\usb2ser.sys [150136 2016-06-28] (MBB)
U3 ahiub427; C:\Windows\System32\Drivers\ahiub427.sys [0 ] (Intel Corporation) <==== ATTENTION (zero byte File/Folder)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-03-06 18:09 - 2018-03-06 18:10 - 000011904 _____ C:\Users\still\Desktop\FRST.txt
2018-03-06 08:00 - 2018-03-06 07:47 - 000009607 _____ C:\Users\still\Desktop\still3_$i$fffMar$f00K$fffo $05f1$0f03$fff5$f009.Replay.gbx
2018-03-06 06:28 - 2018-03-06 06:28 - 000086676 _____ C:\Users\still\Desktop\sfcdetails.txt
2018-03-06 06:06 - 2018-03-06 18:09 - 000000000 ____D C:\FRST
2018-03-06 04:57 - 2018-02-22 04:28 - 000217600 _____ (Microsoft Corporation) C:\Windows\system32\WinSCard.dll
2018-03-06 04:57 - 2018-02-22 04:06 - 000134656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WinSCard.dll
2018-03-06 04:57 - 2018-02-14 20:48 - 000395928 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2018-03-06 04:57 - 2018-02-14 19:57 - 000347288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2018-03-06 04:57 - 2018-02-14 02:48 - 025739264 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2018-03-06 04:57 - 2018-02-14 02:34 - 002724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2018-03-06 04:57 - 2018-02-14 02:34 - 000004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2018-03-06 04:57 - 2018-02-14 02:23 - 002900480 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2018-03-06 04:57 - 2018-02-14 02:22 - 000066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2018-03-06 04:57 - 2018-02-14 02:21 - 000577536 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2018-03-06 04:57 - 2018-02-14 02:21 - 000417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2018-03-06 04:57 - 2018-02-14 02:21 - 000088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2018-03-06 04:57 - 2018-02-14 02:21 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2018-03-06 04:57 - 2018-02-14 02:15 - 000054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2018-03-06 04:57 - 2018-02-14 02:14 - 000034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2018-03-06 04:57 - 2018-02-14 02:12 - 000615936 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2018-03-06 04:57 - 2018-02-14 02:11 - 005780992 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2018-03-06 04:57 - 2018-02-14 02:11 - 000144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2018-03-06 04:57 - 2018-02-14 02:11 - 000116224 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2018-03-06 04:57 - 2018-02-14 02:10 - 000816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2018-03-06 04:57 - 2018-02-14 02:10 - 000814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2018-03-06 04:57 - 2018-02-14 02:05 - 000969216 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2018-03-06 04:57 - 2018-02-14 02:02 - 000489984 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2018-03-06 04:57 - 2018-02-14 01:56 - 000087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2018-03-06 04:57 - 2018-02-14 01:56 - 000077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2018-03-06 04:57 - 2018-02-14 01:55 - 000107520 _____ (Microsoft Corporation) C:\Windows\system32\inseng.dll
2018-03-06 04:57 - 2018-02-14 01:53 - 000199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2018-03-06 04:57 - 2018-02-14 01:52 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2018-03-06 04:57 - 2018-02-14 01:50 - 000315392 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2018-03-06 04:57 - 2018-02-14 01:49 - 000152064 _____ (Microsoft Corporation) C:\Windows\system32\occache.dll
2018-03-06 04:57 - 2018-02-14 01:40 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2018-03-06 04:57 - 2018-02-14 01:38 - 000807936 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2018-03-06 04:57 - 2018-02-14 01:38 - 000726528 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2018-03-06 04:57 - 2018-02-14 01:36 - 002134528 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2018-03-06 04:57 - 2018-02-14 01:36 - 001359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2018-03-06 04:57 - 2018-02-14 01:35 - 015283712 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2018-03-06 04:57 - 2018-02-14 01:29 - 003241472 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2018-03-06 04:57 - 2018-02-14 01:26 - 020274176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2018-03-06 04:57 - 2018-02-14 01:17 - 001546240 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2018-03-06 04:57 - 2018-02-14 01:16 - 002724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2018-03-06 04:57 - 2018-02-14 01:06 - 000499712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2018-03-06 04:57 - 2018-02-14 01:05 - 000800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2018-03-06 04:57 - 2018-02-14 01:05 - 000341504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2018-03-06 04:57 - 2018-02-14 01:05 - 000062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2018-03-06 04:57 - 2018-02-14 01:05 - 000047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2018-03-06 04:57 - 2018-02-14 01:04 - 000064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2018-03-06 04:57 - 2018-02-14 01:02 - 002294272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2018-03-06 04:57 - 2018-02-14 01:00 - 000047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2018-03-06 04:57 - 2018-02-14 01:00 - 000030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2018-03-06 04:57 - 2018-02-14 00:58 - 000476160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2018-03-06 04:57 - 2018-02-14 00:57 - 000662528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2018-03-06 04:57 - 2018-02-14 00:57 - 000620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2018-03-06 04:57 - 2018-02-14 00:57 - 000115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2018-03-06 04:57 - 2018-02-14 00:50 - 000416256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2018-03-06 04:57 - 2018-02-14 00:47 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2018-03-06 04:57 - 2018-02-14 00:46 - 000091136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inseng.dll
2018-03-06 04:57 - 2018-02-14 00:46 - 000073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2018-03-06 04:57 - 2018-02-14 00:44 - 000168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2018-03-06 04:57 - 2018-02-14 00:43 - 000279040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2018-03-06 04:57 - 2018-02-14 00:43 - 000076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2018-03-06 04:57 - 2018-02-14 00:42 - 004498944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2018-03-06 04:57 - 2018-02-14 00:42 - 000130048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\occache.dll
2018-03-06 04:57 - 2018-02-14 00:39 - 013680640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2018-03-06 04:57 - 2018-02-14 00:37 - 000230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2018-03-06 04:57 - 2018-02-14 00:35 - 002058752 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2018-03-06 04:57 - 2018-02-14 00:35 - 000694784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2018-03-06 04:57 - 2018-02-14 00:34 - 001155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2018-03-06 04:57 - 2018-02-14 00:22 - 002767872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2018-03-06 04:57 - 2018-02-14 00:18 - 001314304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2018-03-06 04:57 - 2018-02-14 00:16 - 000710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2018-03-06 04:57 - 2018-01-15 20:59 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\tzres.dll
2018-03-06 04:57 - 2018-01-15 20:40 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tzres.dll
2018-03-06 04:57 - 2018-01-12 17:40 - 000407040 _____ (Microsoft Corporation) C:\Windows\system32\scesrv.dll
2018-03-06 04:57 - 2018-01-12 17:26 - 000308224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\scesrv.dll
2018-03-06 04:38 - 2017-05-12 17:25 - 001251328 _____ (Microsoft Corporation) C:\Windows\SysWOW64\DWrite.dll
2018-03-06 04:38 - 2017-05-12 16:58 - 001648128 _____ (Microsoft Corporation) C:\Windows\system32\DWrite.dll
2018-03-06 04:38 - 2017-05-12 16:58 - 001180160 _____ (Microsoft Corporation) C:\Windows\system32\FntCache.dll
2018-03-06 04:38 - 2016-10-11 14:33 - 000187392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\UIAnimation.dll
2018-03-06 04:38 - 2016-10-11 14:06 - 000221184 _____ (Microsoft Corporation) C:\Windows\system32\UIAnimation.dll
2018-03-06 04:34 - 2016-04-14 14:49 - 000603648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10level9.dll
2018-03-06 04:34 - 2016-04-14 14:21 - 000647680 _____ (Microsoft Corporation) C:\Windows\system32\d3d10level9.dll
2018-03-06 04:34 - 2016-04-09 05:20 - 001230848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecs.dll
2018-03-06 04:34 - 2016-04-09 04:52 - 001424896 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecs.dll
2018-03-06 04:34 - 2015-12-08 22:54 - 002285056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msmpeg2vdec.dll
2018-03-06 04:34 - 2015-12-08 20:07 - 002777088 _____ (Microsoft Corporation) C:\Windows\system32\msmpeg2vdec.dll
2018-03-06 04:34 - 2015-07-30 19:06 - 002565120 _____ (Microsoft Corporation) C:\Windows\system32\d3d10warp.dll
2018-03-06 04:34 - 2015-07-30 18:57 - 001987584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10warp.dll
2018-03-06 04:34 - 2013-11-26 09:16 - 003419136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d2d1.dll
2018-03-06 04:34 - 2013-11-22 23:48 - 003928064 _____ (Microsoft Corporation) C:\Windows\system32\d2d1.dll
2018-03-06 04:33 - 2015-02-04 04:16 - 000465920 _____ (Microsoft Corporation) C:\Windows\system32\WMPhoto.dll
2018-03-06 04:33 - 2015-02-04 03:54 - 000417792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WMPhoto.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000942592 _____ (Microsoft Corporation) C:\Windows\system32\jsIntl.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000645120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsIntl.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000616104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dat
2018-03-06 03:38 - 2018-03-06 03:38 - 000616104 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dat
2018-03-06 03:38 - 2018-03-06 03:38 - 000247808 _____ (Microsoft Corporation) C:\Windows\system32\msls31.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000235520 _____ (Microsoft Corporation) C:\Windows\system32\url.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000235008 _____ (Microsoft Corporation) C:\Windows\system32\elshyph.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000233472 _____ (Microsoft Corporation) C:\Windows\SysWOW64\url.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000194048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\elshyph.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000182272 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msls31.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000167424 _____ (Microsoft Corporation) C:\Windows\system32\iexpress.exe
2018-03-06 03:38 - 2018-03-06 03:38 - 000151552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iexpress.exe
2018-03-06 03:38 - 2018-03-06 03:38 - 000143872 _____ (Microsoft Corporation) C:\Windows\system32\wextract.exe
2018-03-06 03:38 - 2018-03-06 03:38 - 000139264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wextract.exe
2018-03-06 03:38 - 2018-03-06 03:38 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000131072 _____ (Microsoft Corporation) C:\Windows\system32\IEAdvpack.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000116736 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000111616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\IEAdvpack.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000105984 _____ (Microsoft Corporation) C:\Windows\system32\iesysprep.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000090112 _____ (Microsoft Corporation) C:\Windows\system32\SetIEInstalledDate.exe
2018-03-06 03:38 - 2018-03-06 03:38 - 000086016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesysprep.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000086016 _____ (Microsoft Corporation) C:\Windows\system32\RegisterIEPKEYs.exe
2018-03-06 03:38 - 2018-03-06 03:38 - 000081408 _____ (Microsoft Corporation) C:\Windows\system32\icardie.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000074240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SetIEInstalledDate.exe
2018-03-06 03:38 - 2018-03-06 03:38 - 000071680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\RegisterIEPKEYs.exe
2018-03-06 03:38 - 2018-03-06 03:38 - 000069120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icardie.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\pngfilt.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000056832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pngfilt.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000052224 _____ (Microsoft Corporation) C:\Windows\system32\msfeedsbs.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000048640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmler.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000048640 _____ (Microsoft Corporation) C:\Windows\system32\mshtmler.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000048128 _____ (Microsoft Corporation) C:\Windows\system32\imgutil.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedsbs.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\imgutil.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\licmgr10.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000024576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\licmgr10.dll
2018-03-06 03:38 - 2018-03-06 03:38 - 000013824 _____ (Microsoft Corporation) C:\Windows\system32\mshta.exe
2018-03-06 03:38 - 2018-03-06 03:38 - 000013312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshta.exe
2018-03-06 03:38 - 2018-03-06 03:38 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\msfeedssync.exe
2018-03-06 03:38 - 2018-03-06 03:38 - 000012800 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeedssync.exe
2018-03-06 03:17 - 2018-03-06 03:17 - 000859648 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2018-03-06 03:17 - 2018-03-06 03:17 - 000619520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 001682432 _____ (Microsoft Corporation) C:\Windows\system32\XpsPrint.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 001238528 _____ (Microsoft Corporation) C:\Windows\system32\d3d10.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 001158144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsPrint.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 001080832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000522752 _____ (Microsoft Corporation) C:\Windows\system32\XpsGdiConverter.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000364544 _____ (Microsoft Corporation) C:\Windows\SysWOW64\XpsGdiConverter.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000363008 _____ (Microsoft Corporation) C:\Windows\system32\dxgi.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000333312 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1core.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\d3d10core.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000293376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxgi.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000249856 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1core.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000245248 _____ (Microsoft Corporation) C:\Windows\system32\WindowsCodecsExt.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000220160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10core.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000207872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WindowsCodecsExt.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000194560 _____ (Microsoft Corporation) C:\Windows\system32\d3d10_1.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000161792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\d3d10_1.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000010752 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l1-1-0.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000010752 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l1-1-0.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000009728 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000009728 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l1-1-0.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000005632 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-ole32-l1-1-0.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shlwapi-l2-1-0.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000005632 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-ole32-l1-1-0.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-user32-l1-1-0.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-user32-l1-1-0.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-advapi32-l2-1-0.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-advapi32-l2-1-0.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-version-l1-1-0.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-shell32-l1-1-0.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-version-l1-1-0.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-shell32-l1-1-0.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000002560 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-downlevel-normaliz-l1-1-0.dll
2018-03-06 03:16 - 2018-03-06 03:16 - 000002560 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-downlevel-normaliz-l1-1-0.dll
2018-03-06 01:24 - 2018-01-12 17:46 - 000631680 _____ (Microsoft Corporation) C:\Windows\system32\winresume.efi
2018-03-06 01:24 - 2018-01-12 17:44 - 005581544 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2018-03-06 01:24 - 2018-01-12 17:44 - 001894120 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\tcpip.sys
2018-03-06 01:24 - 2018-01-12 17:44 - 000708328 _____ (Microsoft Corporation) C:\Windows\system32\winload.efi
2018-03-06 01:24 - 2018-01-12 17:44 - 000377064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netio.sys
2018-03-06 01:24 - 2018-01-12 17:44 - 000371432 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2018-03-06 01:24 - 2018-01-12 17:44 - 000262376 _____ (Microsoft Corporation) C:\Windows\system32\hal.dll
2018-03-06 01:24 - 2018-01-12 17:44 - 000154856 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2018-03-06 01:24 - 2018-01-12 17:40 - 001460736 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2018-03-06 01:24 - 2018-01-12 17:40 - 001212928 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2018-03-06 01:24 - 2018-01-12 17:40 - 001163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2018-03-06 01:24 - 2018-01-12 17:40 - 000880640 _____ (Microsoft Corporation) C:\Windows\system32\advapi32.dll
2018-03-06 01:24 - 2018-01-12 17:40 - 000731648 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2018-03-06 01:24 - 2018-01-12 17:40 - 000690688 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2018-03-06 01:24 - 2018-01-12 17:40 - 000463872 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2018-03-06 01:24 - 2018-01-12 17:40 - 000419840 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2018-03-06 01:24 - 2018-01-12 17:40 - 000361984 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2018-03-06 01:24 - 2018-01-12 17:40 - 000345600 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2018-03-06 01:24 - 2018-01-12 17:40 - 000316928 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2018-03-06 01:24 - 2018-01-12 17:40 - 000312320 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2018-03-06 01:24 - 2018-01-12 17:40 - 000215552 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2018-03-06 01:24 - 2018-01-12 17:40 - 000190464 _____ (Microsoft Corporation) C:\Windows\system32\rpchttp.dll
2018-03-06 01:24 - 2018-01-12 17:33 - 001665384 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2018-03-06 01:24 - 2018-01-12 17:29 - 004014312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2018-03-06 01:24 - 2018-01-12 17:29 - 003959016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2018-03-06 01:24 - 2018-01-12 17:27 - 004834816 _____ (Microsoft Corporation) C:\Windows\system32\xpsrchvw.exe
2018-03-06 01:24 - 2018-01-12 17:27 - 001314112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2018-03-06 01:24 - 2018-01-12 17:26 - 001114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2018-03-06 01:24 - 2018-01-12 17:26 - 000690688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2018-03-06 01:24 - 2018-01-12 17:26 - 000666112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2018-03-06 01:24 - 2018-01-12 17:26 - 000644096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\advapi32.dll
2018-03-06 01:24 - 2018-01-12 17:26 - 000554496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2018-03-06 01:24 - 2018-01-12 17:26 - 000275456 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2018-03-06 01:24 - 2018-01-12 17:26 - 000261120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2018-03-06 01:24 - 2018-01-12 17:26 - 000254464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2018-03-06 01:24 - 2018-01-12 17:26 - 000223232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2018-03-06 01:24 - 2018-01-12 17:26 - 000141312 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpchttp.dll
2018-03-06 01:24 - 2018-01-12 17:16 - 003405824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\xpsrchvw.exe
2018-03-06 01:24 - 2018-01-12 17:11 - 000148480 _____ (Microsoft Corporation) C:\Windows\system32\appidpolicyconverter.exe
2018-03-06 01:24 - 2018-01-12 17:03 - 000159744 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2018-03-06 01:24 - 2018-01-12 17:02 - 000291328 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2018-03-06 01:24 - 2018-01-12 17:02 - 000129536 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2018-03-06 01:24 - 2018-01-11 17:41 - 001133568 _____ (Microsoft Corporation) C:\Windows\system32\cdosys.dll
2018-03-06 01:24 - 2018-01-11 17:22 - 000805376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cdosys.dll
2018-03-06 01:24 - 2018-01-11 17:09 - 003224064 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2018-03-06 01:24 - 2018-01-05 17:31 - 000151552 _____ (Microsoft Corporation) C:\Windows\system32\t2embed.dll
2018-03-06 01:24 - 2018-01-05 17:25 - 000383720 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2018-03-06 01:24 - 2018-01-05 17:14 - 000309480 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2018-03-06 01:24 - 2018-01-05 17:11 - 000111104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\t2embed.dll
2018-03-06 01:24 - 2018-01-01 03:21 - 001680616 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ntfs.sys
2018-03-06 01:24 - 2018-01-01 03:21 - 000948968 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndis.sys
2018-03-06 01:24 - 2018-01-01 03:21 - 000288488 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\fltMgr.sys
2018-03-06 01:24 - 2018-01-01 03:21 - 000213736 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdyboost.sys
2018-03-06 01:24 - 2018-01-01 03:21 - 000114408 _____ (Microsoft Corporation) C:\Windows\system32\consent.exe
2018-03-06 01:24 - 2018-01-01 03:18 - 014183936 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 002066432 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 002004480 _____ (Microsoft Corporation) C:\Windows\system32\msxml6.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 001942016 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 001867776 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 001741312 _____ (Microsoft Corporation) C:\Windows\system32\sysmain.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 001361408 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistSvc.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 001110528 _____ (Microsoft Corporation) C:\Windows\system32\schedsvc.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 000977408 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 000961024 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 000863232 _____ (Microsoft Corporation) C:\Windows\system32\IKEEXT.DLL
2018-03-06 01:24 - 2018-01-01 03:18 - 000842752 _____ (Microsoft Corporation) C:\Windows\system32\nshwfp.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 000828928 _____ (Microsoft Corporation) C:\Windows\system32\MPSSVC.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 000749568 _____ (Microsoft Corporation) C:\Windows\system32\FirewallAPI.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 000705024 _____ (Microsoft Corporation) C:\Windows\system32\BFE.DLL
2018-03-06 01:24 - 2018-01-01 03:18 - 000512000 _____ (Microsoft Corporation) C:\Windows\system32\rpcss.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 000473600 _____ (Microsoft Corporation) C:\Windows\system32\taskcomp.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 000444928 _____ (Microsoft Corporation) C:\Windows\system32\winhttp.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 000439296 _____ (Microsoft Corporation) C:\Windows\system32\p2psvc.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 000366592 _____ (Microsoft Corporation) C:\Windows\system32\wcncsvc.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\pnrpsvc.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 000324096 _____ (Microsoft Corporation) C:\Windows\system32\FWPUCLNT.DLL
2018-03-06 01:24 - 2018-01-01 03:18 - 000303104 _____ (Microsoft Corporation) C:\Windows\system32\nlasvc.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 000264704 _____ (Microsoft Corporation) C:\Windows\system32\P2P.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 000223232 _____ (Microsoft Corporation) C:\Windows\system32\ncsi.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 000181760 _____ (Microsoft Corporation) C:\Windows\system32\PeerDist.dll
2018-03-06 01:24 - 2018-01-01 03:18 - 000120320 _____ (Microsoft Corporation) C:\Windows\system32\WcnApi.dll
2018-03-06 01:24 - 2018-01-01 03:04 - 000559616 _____ (Microsoft Corporation) C:\Windows\system32\spoolsv.exe
2018-03-06 01:24 - 2018-01-01 03:00 - 012880384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2018-03-06 01:24 - 2018-01-01 03:00 - 001499648 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2018-03-06 01:24 - 2018-01-01 03:00 - 001417728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2018-03-06 01:24 - 2018-01-01 03:00 - 001390080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6.dll
2018-03-06 01:24 - 2018-01-01 03:00 - 000741888 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2018-03-06 01:24 - 2018-01-01 03:00 - 000666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nshwfp.dll
2018-03-06 01:24 - 2018-01-01 03:00 - 000463360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FirewallAPI.dll
2018-03-06 01:24 - 2018-01-01 03:00 - 000351744 _____ (Microsoft Corporation) C:\Windows\SysWOW64\winhttp.dll
2018-03-06 01:24 - 2018-01-01 03:00 - 000304640 _____ (Microsoft Corporation) C:\Windows\SysWOW64\taskcomp.dll
2018-03-06 01:24 - 2018-01-01 03:00 - 000276992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wcncsvc.dll
2018-03-06 01:24 - 2018-01-01 03:00 - 000217600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\P2P.dll
2018-03-06 01:24 - 2018-01-01 03:00 - 000162304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncsi.dll
2018-03-06 01:24 - 2018-01-01 03:00 - 000139776 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PeerDist.dll
2018-03-06 01:24 - 2018-01-01 02:59 - 001806848 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2018-03-06 01:24 - 2018-01-01 02:55 - 000088576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2018-03-06 01:24 - 2018-01-01 02:50 - 000455680 _____ (Microsoft Corporation) C:\Windows\system32\winlogon.exe
2018-03-06 01:24 - 2018-01-01 02:47 - 000244224 _____ (Microsoft Corporation) C:\Windows\system32\vmicsvc.exe
2018-03-06 01:24 - 2018-01-01 02:42 - 000460288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv.sys
2018-03-06 01:24 - 2018-01-01 02:42 - 000406016 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srv2.sys
2018-03-06 01:24 - 2018-01-01 02:42 - 000168448 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\srvnet.sys
2018-03-06 01:24 - 2018-01-01 02:41 - 000754176 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2018-03-06 01:24 - 2018-01-01 02:41 - 000106496 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\dfsc.sys
2018-03-06 01:24 - 2017-12-21 07:27 - 000634312 _____ (Microsoft Corporation) C:\Windows\system32\winload.exe
2018-03-06 01:24 - 2017-12-05 18:36 - 001484288 _____ (Microsoft Corporation) C:\Windows\system32\crypt32.dll
2018-03-06 01:24 - 2017-12-05 18:36 - 000625664 _____ (Microsoft Corporation) C:\Windows\system32\mscms.dll
2018-03-06 01:24 - 2017-12-05 18:36 - 000250880 _____ (Microsoft Corporation) C:\Windows\system32\icm32.dll
2018-03-06 01:24 - 2017-12-05 18:08 - 001176576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\crypt32.dll
2018-03-06 01:24 - 2017-12-05 17:04 - 000404992 _____ (Microsoft Corporation) C:\Windows\system32\wisptis.exe
2018-03-06 01:24 - 2017-11-02 17:55 - 000281600 _____ (Microsoft Corporation) C:\Windows\system32\iprtrmgr.dll
2018-03-06 01:24 - 2017-11-02 16:11 - 000271360 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtrmgr.dll
2018-03-06 01:24 - 2017-10-18 03:06 - 000344064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbhub.sys
2018-03-06 01:24 - 2017-10-18 03:06 - 000327168 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbport.sys
2018-03-06 01:24 - 2017-10-18 03:06 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbccgp.sys
2018-03-06 01:24 - 2017-10-18 03:06 - 000056320 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbehci.sys
2018-03-06 01:24 - 2017-10-17 00:04 - 001001984 _____ (Microsoft Corporation) C:\Windows\system32\gpedit.dll
2018-03-06 01:24 - 2017-10-16 23:46 - 000953344 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gpedit.dll
2018-03-06 01:24 - 2017-10-16 22:55 - 000339968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msexcl40.dll
2018-03-06 01:24 - 2017-10-12 01:55 - 014635008 _____ (Microsoft Corporation) C:\Windows\system32\wmp.dll
2018-03-06 01:24 - 2017-10-12 01:55 - 012574720 _____ (Microsoft Corporation) C:\Windows\system32\wmploc.DLL
2018-03-06 01:24 - 2017-10-12 01:55 - 002319872 _____ (Microsoft Corporation) C:\Windows\system32\tquery.dll
2018-03-06 01:24 - 2017-10-12 01:55 - 002222080 _____ (Microsoft Corporation) C:\Windows\system32\mssrch.dll
2018-03-06 01:24 - 2017-10-12 01:55 - 002058240 _____ (Microsoft Corporation) C:\Windows\system32\Query.dll
2018-03-06 01:24 - 2017-10-12 01:55 - 000778240 _____ (Microsoft Corporation) C:\Windows\system32\mssvp.dll
2018-03-06 01:24 - 2017-10-12 01:55 - 000491520 _____ (Microsoft Corporation) C:\Windows\system32\mssph.dll
2018-03-06 01:24 - 2017-10-12 01:55 - 000288256 _____ (Microsoft Corporation) C:\Windows\system32\mssphtb.dll
2018-03-06 01:24 - 2017-10-12 01:39 - 000591872 _____ (Microsoft Corporation) C:\Windows\system32\SearchIndexer.exe
2018-03-06 01:24 - 2017-10-12 01:38 - 000249856 _____ (Microsoft Corporation) C:\Windows\system32\SearchProtocolHost.exe
2018-03-06 01:24 - 2017-10-12 01:38 - 000113664 _____ (Microsoft Corporation) C:\Windows\system32\SearchFilterHost.exe
2018-03-06 01:24 - 2017-10-12 01:37 - 012574208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmploc.DLL
2018-03-06 01:24 - 2017-10-12 01:37 - 011410944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wmp.dll
2018-03-06 01:24 - 2017-10-12 01:37 - 001549824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tquery.dll
2018-03-06 01:24 - 2017-10-12 01:37 - 001400320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssrch.dll
2018-03-06 01:24 - 2017-10-12 01:37 - 001363968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Query.dll
2018-03-06 01:24 - 2017-10-12 01:37 - 000337408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssph.dll
2018-03-06 01:24 - 2017-10-12 01:26 - 000427520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchIndexer.exe
2018-03-06 01:24 - 2017-10-12 01:26 - 000164352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchProtocolHost.exe
2018-03-06 01:24 - 2017-10-12 01:25 - 000086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\SearchFilterHost.exe
2018-03-06 01:24 - 2017-10-12 01:20 - 000317440 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\rdbss.sys
2018-03-06 01:23 - 2018-01-12 17:44 - 000287976 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\FWPKCLNT.SYS
2018-03-06 01:23 - 2018-01-12 17:44 - 000095464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2018-03-06 01:23 - 2018-01-12 17:40 - 000503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000484864 _____ (Microsoft Corporation) C:\Windows\system32\StructuredQuery.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000210432 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000135680 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000123904 _____ (Microsoft Corporation) C:\Windows\system32\bcrypt.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000063488 _____ (Microsoft Corporation) C:\Windows\system32\setbcdlocale.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000059904 _____ (Microsoft Corporation) C:\Windows\system32\appidapi.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000044032 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000043520 _____ (Microsoft Corporation) C:\Windows\system32\cryptbase.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000034816 _____ (Microsoft Corporation) C:\Windows\system32\appidsvc.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000028672 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:40 - 000003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000363520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\StructuredQuery.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000342528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000082944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\bcrypt.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\appidapi.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:26 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 17:16 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidclass.sys
2018-03-06 01:23 - 2018-01-12 17:16 - 000030208 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidusb.sys
2018-03-06 01:23 - 2018-01-12 17:15 - 000032896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\hidparse.sys
2018-03-06 01:23 - 2018-01-12 17:11 - 000062464 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\appid.sys
2018-03-06 01:23 - 2018-01-12 17:11 - 000017920 _____ (Microsoft Corporation) C:\Windows\system32\appidcertstorecheck.exe
2018-03-06 01:23 - 2018-01-12 17:10 - 000064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2018-03-06 01:23 - 2018-01-12 17:07 - 000338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2018-03-06 01:23 - 2018-01-12 17:06 - 000296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2018-03-06 01:23 - 2018-01-12 17:02 - 000050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2018-03-06 01:23 - 2018-01-12 17:01 - 000112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2018-03-06 01:23 - 2018-01-12 17:01 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2018-03-06 01:23 - 2018-01-12 16:57 - 000036352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptbase.dll
2018-03-06 01:23 - 2018-01-12 16:57 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2018-03-06 01:23 - 2018-01-12 16:57 - 000014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2018-03-06 01:23 - 2018-01-12 16:57 - 000007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2018-03-06 01:23 - 2018-01-12 16:57 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2018-03-06 01:23 - 2018-01-12 16:56 - 000006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 16:56 - 000004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 16:56 - 000003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2018-03-06 01:23 - 2018-01-12 16:56 - 000003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2018-03-06 01:23 - 2018-01-05 17:31 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\lpk.dll
2018-03-06 01:23 - 2018-01-05 17:30 - 000100864 _____ (Microsoft Corporation) C:\Windows\system32\fontsub.dll
2018-03-06 01:23 - 2018-01-05 17:30 - 000046080 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2018-03-06 01:23 - 2018-01-05 17:30 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\dciman32.dll
2018-03-06 01:23 - 2018-01-05 17:11 - 000071168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fontsub.dll
2018-03-06 01:23 - 2018-01-05 17:11 - 000025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\lpk.dll
2018-03-06 01:23 - 2018-01-05 17:11 - 000010240 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dciman32.dll
2018-03-06 01:23 - 2018-01-05 16:50 - 000034304 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000131584 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistWSDDiscoProv.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000108544 _____ (Microsoft Corporation) C:\Windows\system32\icfupgd.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000101376 _____ (Microsoft Corporation) C:\Windows\system32\fdWCN.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000095744 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000084480 _____ (Microsoft Corporation) C:\Windows\system32\INETRES.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000076288 _____ (Microsoft Corporation) C:\Windows\system32\rasdiag.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000070656 _____ (Microsoft Corporation) C:\Windows\system32\nlaapi.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000070144 _____ (Microsoft Corporation) C:\Windows\system32\appinfo.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000060928 _____ (Microsoft Corporation) C:\Windows\system32\ndptsp.tsp
2018-03-06 01:23 - 2018-01-01 03:18 - 000053760 _____ (Microsoft Corporation) C:\Windows\system32\vmicres.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000051200 _____ (Microsoft Corporation) C:\Windows\system32\PeerDistHttpTrans.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000047104 _____ (Microsoft Corporation) C:\Windows\system32\kmddsp.tsp
2018-03-06 01:23 - 2018-01-01 03:18 - 000041472 _____ (Microsoft Corporation) C:\Windows\system32\rasmxs.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000039424 _____ (Microsoft Corporation) C:\Windows\system32\traffic.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000029696 _____ (Microsoft Corporation) C:\Windows\system32\rasser.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000026112 _____ (Microsoft Corporation) C:\Windows\system32\oleres.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000024576 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapPeerProxy.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\WcnEapAuthProxy.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000022528 _____ (Microsoft Corporation) C:\Windows\system32\wfapigp.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000016896 _____ (Microsoft Corporation) C:\Windows\system32\wshqos.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000013312 _____ (Microsoft Corporation) C:\Windows\system32\wshnetbs.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000008704 _____ (Microsoft Corporation) C:\Windows\system32\comcat.dll
2018-03-06 01:23 - 2018-01-01 03:18 - 000002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml6r.dll
2018-03-06 01:23 - 2018-01-01 03:00 - 000216576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\FWPUCLNT.DLL
2018-03-06 01:23 - 2018-01-01 03:00 - 000084480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\INETRES.dll
2018-03-06 01:23 - 2018-01-01 03:00 - 000081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\fdWCN.dll
2018-03-06 01:23 - 2018-01-01 03:00 - 000081408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rascfg.dll
2018-03-06 01:23 - 2018-01-01 03:00 - 000061952 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasdiag.dll
2018-03-06 01:23 - 2018-01-01 03:00 - 000052224 _____ (Microsoft Corporation) C:\Windows\SysWOW64\nlaapi.dll
2018-03-06 01:23 - 2018-01-01 03:00 - 000050688 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ndptsp.tsp
2018-03-06 01:23 - 2018-01-01 03:00 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\traffic.dll
2018-03-06 01:23 - 2018-01-01 03:00 - 000026112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\oleres.dll
2018-03-06 01:23 - 2018-01-01 03:00 - 000002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml6r.dll
2018-03-06 01:23 - 2018-01-01 02:59 - 000309760 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2018-03-06 01:23 - 2018-01-01 02:55 - 000131584 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\pacer.sys
2018-03-06 01:23 - 2018-01-01 02:55 - 000058368 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2018-03-06 01:23 - 2018-01-01 02:55 - 000045056 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\netbios.sys
2018-03-06 01:23 - 2018-01-01 02:55 - 000024064 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndistapi.sys
2018-03-06 01:23 - 2018-01-01 02:54 - 000077312 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mpsdrv.sys
2018-03-06 01:23 - 2018-01-01 02:46 - 000128512 _____ (Microsoft Corporation) C:\Windows\system32\IcCoinstall.dll
2018-03-06 01:23 - 2018-01-01 02:46 - 000051712 _____ (Microsoft Corporation) C:\Windows\system32\vmictimeprovider.dll
2018-03-06 01:23 - 2018-01-01 02:43 - 000086528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnApi.dll
2018-03-06 01:23 - 2018-01-01 02:43 - 000038912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kmddsp.tsp
2018-03-06 01:23 - 2018-01-01 02:43 - 000033280 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasmxs.dll
2018-03-06 01:23 - 2018-01-01 02:43 - 000022528 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rasser.dll
2018-03-06 01:23 - 2018-01-01 02:43 - 000020480 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnEapPeerProxy.dll
2018-03-06 01:23 - 2018-01-01 02:43 - 000019968 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcnEapAuthProxy.dll
2018-03-06 01:23 - 2018-01-01 02:43 - 000018944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wfapigp.dll
2018-03-06 01:23 - 2018-01-01 02:43 - 000013824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wshqos.dll
2018-03-06 01:23 - 2018-01-01 02:41 - 000007168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\comcat.dll
2018-03-06 01:23 - 2017-12-05 18:36 - 000229376 _____ (Microsoft Corporation) C:\Windows\system32\wintrust.dll
2018-03-06 01:23 - 2017-12-05 18:36 - 000190976 _____ (Microsoft Corporation) C:\Windows\system32\cryptsvc.dll
2018-03-06 01:23 - 2017-12-05 18:36 - 000141824 _____ (Microsoft Corporation) C:\Windows\system32\cryptnet.dll
2018-03-06 01:23 - 2017-12-05 18:36 - 000092160 _____ (Microsoft Corporation) C:\Windows\system32\TabSvc.dll
2018-03-06 01:23 - 2017-12-05 18:36 - 000040960 _____ (Microsoft Corporation) C:\Windows\system32\WcsPlugInService.dll
2018-03-06 01:23 - 2017-12-05 18:08 - 000481792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mscms.dll
2018-03-06 01:23 - 2017-12-05 18:08 - 000215040 _____ (Microsoft Corporation) C:\Windows\SysWOW64\icm32.dll
2018-03-06 01:23 - 2017-12-05 18:08 - 000179200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wintrust.dll
2018-03-06 01:23 - 2017-12-05 18:08 - 000145920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptsvc.dll
2018-03-06 01:23 - 2017-12-05 18:08 - 000106496 _____ (Microsoft Corporation) C:\Windows\SysWOW64\cryptnet.dll
2018-03-06 01:23 - 2017-12-05 16:49 - 000032768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WcsPlugInService.dll
2018-03-06 01:23 - 2017-11-04 16:31 - 000194048 _____ (Microsoft Corporation) C:\Windows\system32\itircl.dll
2018-03-06 01:23 - 2017-11-04 16:31 - 000170496 _____ (Microsoft Corporation) C:\Windows\system32\itss.dll
2018-03-06 01:23 - 2017-11-04 16:10 - 000158720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itircl.dll
2018-03-06 01:23 - 2017-11-04 16:10 - 000142336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\itss.dll
2018-03-06 01:23 - 2017-11-02 17:55 - 000138240 _____ (Microsoft Corporation) C:\Windows\system32\rtm.dll
2018-03-06 01:23 - 2017-11-02 17:55 - 000097792 _____ (Microsoft Corporation) C:\Windows\system32\mprdim.dll
2018-03-06 01:23 - 2017-11-02 17:55 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\iprtprio.dll
2018-03-06 01:23 - 2017-11-02 16:11 - 000115200 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rtm.dll
2018-03-06 01:23 - 2017-11-02 16:11 - 000075264 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mprdim.dll
2018-03-06 01:23 - 2017-11-02 15:56 - 000008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iprtprio.dll
2018-03-06 01:23 - 2017-10-18 03:06 - 000030720 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbuhci.sys
2018-03-06 01:23 - 2017-10-18 03:06 - 000025600 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbohci.sys
2018-03-06 01:23 - 2017-10-18 03:06 - 000007808 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usbd.sys
2018-03-06 01:23 - 2017-10-12 01:55 - 000115200 _____ (Microsoft Corporation) C:\Windows\system32\mssitlb.dll
2018-03-06 01:23 - 2017-10-12 01:55 - 000099840 _____ (Microsoft Corporation) C:\Windows\system32\mssprxy.dll
2018-03-06 01:23 - 2017-10-12 01:55 - 000075264 _____ (Microsoft Corporation) C:\Windows\system32\msscntrs.dll
2018-03-06 01:23 - 2017-10-12 01:55 - 000014336 _____ (Microsoft Corporation) C:\Windows\system32\msshooks.dll
2018-03-06 01:23 - 2017-10-12 01:55 - 000009728 _____ (Microsoft Corporation) C:\Windows\system32\spwmp.dll
2018-03-06 01:23 - 2017-10-12 01:55 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\msdxm.ocx
2018-03-06 01:23 - 2017-10-12 01:55 - 000005120 _____ (Microsoft Corporation) C:\Windows\system32\dxmasf.dll
2018-03-06 01:23 - 2017-10-12 01:37 - 000666624 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssvp.dll
2018-03-06 01:23 - 2017-10-12 01:37 - 000197120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssphtb.dll
2018-03-06 01:23 - 2017-10-12 01:37 - 000104448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssitlb.dll
2018-03-06 01:23 - 2017-10-12 01:37 - 000059392 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msscntrs.dll
2018-03-06 01:23 - 2017-10-12 01:37 - 000034816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mssprxy.dll
2018-03-06 01:23 - 2017-10-12 01:25 - 000009728 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msshooks.dll
2018-03-06 01:23 - 2017-10-12 01:24 - 000008192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\spwmp.dll
2018-03-06 01:23 - 2017-10-12 01:24 - 000004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msdxm.ocx
2018-03-06 01:23 - 2017-10-12 01:24 - 000004096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxmasf.dll
2018-03-06 01:23 - 2017-10-12 01:20 - 000113152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\luafv.sys
2018-03-06 01:05 - 2018-02-13 19:17 - 000136384 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2018-03-06 01:05 - 2018-02-13 19:10 - 000655872 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2018-03-06 01:05 - 2018-02-13 15:05 - 001994752 _____ (Microsoft Corporation) C:\Windows\system32\aitstatic.exe
2018-03-06 01:05 - 2018-02-13 15:05 - 001560064 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2018-03-06 01:05 - 2018-02-13 15:05 - 000740864 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2018-03-06 01:05 - 2018-02-13 15:05 - 000600576 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2018-03-06 01:05 - 2018-02-13 15:05 - 000451072 _____ (Microsoft Corporation) C:\Windows\system32\centel.dll
2018-03-06 01:05 - 2018-02-13 15:05 - 000380928 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2018-03-06 01:05 - 2018-02-13 15:05 - 000262144 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2018-03-06 01:05 - 2018-02-13 15:05 - 000237568 _____ (Microsoft Corporation) C:\Windows\system32\aepic.dll
2018-03-01 20:17 - 2018-03-01 20:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2018-03-01 20:17 - 2018-03-01 20:17 - 000000000 ____D C:\ProgramData\ESET
2018-03-01 20:17 - 2018-03-01 20:17 - 000000000 ____D C:\Program Files\ESET
2018-02-25 00:14 - 2018-03-02 21:47 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TNod User & Password Finder
2018-02-25 00:14 - 2018-03-02 21:47 - 000000000 ____D C:\Program Files (x86)\TNod
2018-02-19 23:33 - 2018-02-19 23:33 - 000000000 ____D C:\Program Files (x86)\Bethesda Softworks
2018-02-18 05:37 - 2018-02-18 05:37 - 000000756 _____ C:\Users\still\Desktop\FreeRapid 0.9u4.lnk
2018-02-18 05:37 - 2018-02-18 05:37 - 000000756 _____ C:\Users\still\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FreeRapid 0.9u4.lnk
2018-02-17 23:57 - 2018-02-17 23:57 - 000000000 ____D C:\Users\still\AppData\Roaming\VitySoft
2018-02-17 23:57 - 2018-02-17 23:57 - 000000000 ____D C:\Users\still\.objectdb
2018-02-17 23:40 - 2018-02-17 23:40 - 000000860 _____ C:\Windows\Tasks\JavaUpdateSched.job
2018-02-17 17:24 - 2018-02-17 17:24 - 000000000 ___RD C:\Users\still\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2018-02-16 07:02 - 2018-02-16 07:02 - 000000000 ____D C:\Users\still\AppData\Roaming\Intel
2018-02-16 07:01 - 2018-02-16 07:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless
2018-02-16 07:01 - 2018-02-16 07:01 - 000000000 ____D C:\Program Files\Intel
2018-02-16 07:01 - 2018-02-16 07:01 - 000000000 ____D C:\Program Files\Common Files\Intel
2018-02-16 07:01 - 2018-02-16 07:01 - 000000000 ____D C:\Program Files (x86)\Cisco
2018-02-16 06:57 - 2010-08-09 10:02 - 007821312 _____ (Intel Corporation) C:\Windows\system32\Drivers\NETwNs64.sys
2018-02-16 06:57 - 2010-08-09 10:02 - 000799232 _____ (Intel Corporation) C:\Windows\system32\NETwNc64.dll
2018-02-16 06:57 - 2010-05-19 21:13 - 002750464 _____ (Intel Corporation) C:\Windows\system32\NETwNr64.dll
2018-02-14 20:36 - 2018-02-14 20:36 - 000000659 _____ C:\Users\still\Desktop\cislo adresa.lnk
2018-02-14 14:44 - 2018-02-14 14:44 - 000000418 _____ C:\Users\still\Desktop\logs01.lnk
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2018-03-06 18:05 - 2018-01-28 22:59 - 002403328 _____ (Farbar) C:\Users\still\Desktop\FRST64.exe
2018-03-06 18:04 - 2017-11-17 03:49 - 000000000 ____D C:\Program Files\Mozilla Firefox
2018-03-06 18:01 - 2018-01-28 22:58 - 000112640 _____ (forum.viry.cz) C:\Users\still\Desktop\FRSTLauncher.exe
2018-03-06 17:50 - 2017-11-10 00:53 - 000000000 ____D C:\Users\still\AppData\Roaming\vlc
2018-03-06 17:29 - 2017-11-10 01:10 - 000000000 ____D C:\Users\still\AppData\LocalLow\Mozilla
2018-03-06 17:28 - 2018-01-26 01:57 - 000000000 ____D C:\Users\still\AppData\Roaming\Thunderbird
2018-03-06 17:28 - 2017-11-10 01:10 - 000000000 ____D C:\Users\still\AppData\Roaming\Mozilla
2018-03-06 09:55 - 2009-07-14 05:45 - 000033936 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2018-03-06 09:55 - 2009-07-14 05:45 - 000033936 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2018-03-06 06:06 - 2018-01-28 22:59 - 000001110 _____ C:\Users\still\Desktop\Fixlog.txt
2018-03-06 05:24 - 2011-04-12 09:34 - 000668792 _____ C:\Windows\system32\perfh005.dat
2018-03-06 05:24 - 2011-04-12 09:34 - 000141420 _____ C:\Windows\system32\perfc005.dat
2018-03-06 05:24 - 2009-07-14 06:13 - 001583226 _____ C:\Windows\system32\PerfStringBackup.INI
2018-03-06 05:24 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf
2018-03-06 04:45 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\PolicyDefinitions
2018-03-06 03:53 - 2017-11-10 00:44 - 000001413 _____ C:\Users\still\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2018-03-06 03:52 - 2017-11-09 22:11 - 000000000 ____D C:\Windows\Panther
2018-03-06 03:48 - 2017-11-10 08:13 - 000000000 ____D C:\Windows\system32\MRT
2018-03-06 03:43 - 2017-11-10 08:12 - 130067560 ____C (Microsoft Corporation) C:\Windows\system32\MRT-KB890830.exe
2018-03-06 03:42 - 2017-11-10 08:12 - 130067560 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2018-03-06 02:57 - 2017-11-10 06:58 - 001558876 _____ C:\Windows\SysWOW64\PerfStringBackup.INI
2018-03-06 02:32 - 2009-07-14 05:57 - 000001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2018-03-06 02:31 - 2009-07-14 05:45 - 000424736 _____ C:\Windows\system32\FNTCACHE.DAT
2018-03-06 02:29 - 2017-11-10 15:08 - 000000000 ____D C:\Windows\system32\appraiser
2018-03-06 02:29 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\SysWOW64\Setup
2018-03-06 02:29 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\system32\Setup
2018-03-05 07:43 - 2017-11-11 23:30 - 000000000 ____D C:\Users\still\AppData\Local\JDownloader 2.0
2018-03-05 07:41 - 2018-01-27 14:39 - 000000000 ____D C:\jdown
2018-03-05 06:36 - 2017-11-27 00:14 - 000000000 ____D C:\Users\still\AppData\Local\CrashDumps
2018-03-01 06:24 - 2017-11-11 19:37 - 000000000 ____D C:\Users\still\AppData\Local\Adobe
2018-03-01 06:23 - 2017-11-28 07:32 - 000803328 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2018-03-01 06:23 - 2017-11-28 07:32 - 000144896 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2018-03-01 06:23 - 2017-11-28 07:32 - 000000000 ____D C:\Windows\SysWOW64\Macromed
2018-03-01 06:23 - 2017-11-28 07:32 - 000000000 ____D C:\Windows\system32\Macromed
2018-02-24 22:32 - 2017-11-17 05:52 - 000000375 _____ C:\Windows\system32\Drivers\etc\hosts.ics
2018-02-24 16:40 - 2017-12-15 22:49 - 000000000 ____D C:\Users\still\.VirtualBox
2018-02-20 00:05 - 2017-11-20 05:42 - 000000000 ____D C:\Users\still\AppData\Local\SKIDROW
2018-02-19 14:47 - 2017-11-11 05:03 - 000000000 ____D C:\Users\still\AppData\Local\ACD Systems
2018-02-17 23:57 - 2017-11-11 21:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2018-02-17 23:57 - 2017-11-10 00:44 - 000000000 ____D C:\Users\still
2018-02-17 23:56 - 2017-11-11 22:04 - 000000000 ____D C:\Program Files\Java
2018-02-17 23:55 - 2017-11-11 21:34 - 000000000 ____D C:\ProgramData\Oracle
2018-02-17 23:40 - 2017-11-11 21:35 - 000144448 _____ (Oracle Corporation) C:\Windows\system32\WindowsAccessBridge-64.dll
2018-02-16 15:51 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\system32\NDF
2018-02-16 07:01 - 2017-11-10 01:41 - 000000000 ____D C:\ProgramData\Intel
2018-02-16 06:58 - 2017-11-13 05:55 - 000000000 ____D C:\Program Files\DIFX
==================== Files in the root of some directories =======
2017-12-16 13:25 - 2017-12-16 13:25 - 000003584 _____ () C:\Users\still\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2017-12-23 13:34 - 2017-12-23 13:34 - 000000854 _____ () C:\Users\still\AppData\Local\recently-used.xbel
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-11-10 08:55
==================== End of FRST.txt ============================
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
Drive c: () (Fixed) (Total:512.21 GB) (Free:348.7 GB) NTFS
Drive e: (DATA750) (Fixed) (Total:698.63 GB) (Free:48.19 GB) NTFS
Drive j: (MISD_8GB) (Removable) (Total:7.38 GB) (Free:7.38 GB) FAT32
Drive z: (YYY) (Fixed) (Total:2 GB) (Free:0.45 GB) FAT
\\?\Volume{d753393a-c5a6-11e7-8128-806e6f6e6963}\ (Rezervováno systémem) (Fixed) (Total:0.1 GB) (Free:0.07 GB) NTFS
Available physical RAM: 5147.5 MB
Total physical RAM: 8103.08 MB
Percentage of memory in use: 36%
==================== MBR and Partition Table ==================
Disk: 0 (Size: 698.6 GB) (Disk ID: 028817CF)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=512.2 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=186.3 GB) - (Type=05)
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 698.6 GB) (Disk ID: AE1538A7)
Partition 1: (Not Active) - (Size=698.6 GB) - (Type=07 NTFS)
Disk: 2 (Protective MBR) (Size: 7.4 GB) (Disk ID: 00000000)
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\ASUS P4G.job => C:\Program Files\P4G\BatteryLife.exe
Task: C:\Windows\Tasks\CCleaner Update.job => C:\Program Files\CCleaner\CCUpdate.exe
Task: C:\Windows\Tasks\CorelUpdateHelperTaskCore.job => C:\Program Files (x86)\Corel\CUH\v2\CUH.EXE
Task: C:\Windows\Tasks\JavaUpdateSched.job => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\still\Desktop" je 2 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ACPW06EN
"C:\Program Files\ACD Systems\ACDSee Pro\6.0\ACDSeePro6InTouch2.exe" /pid ACPW06EN [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring
"C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Wireless Console 3
C:\Program Files (x86)\ASUS\Wireless Console 3\wcourier.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^still^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^FancyStart daemon.lnk
C:\Users\still\AppData\Roaming\MICROS~1\INSTAL~1\{2B818~1\_94E3C~1.EXE
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000
==================== End Of Log ==============================
- Přílohy
-
- Addition.zip
- (10.38 KiB) Staženo 50 x
Re: Prosím o prev. kontrolu
Otvor poznamkovy blok (Win+R -> notepad -> enter)
- Skopiruj nasledujuci text a vloz ho do poznamkoveho bloku:
Kód: Vybrat vše
Start CloseProcesses: CreateRestorePoint: File: C:\Windows\System32\Drivers\ahiub427.sys U3 ahiub427; C:\Windows\System32\Drivers\ahiub427.sys [0 ] (Intel Corporation) <==== ATTENTION (zero byte File/Folder) Hosts: EmptyTemp: End
- Uloz na plochu s nazvom fixlist.txt
- Spusti znovu FRST a klikni na Fix
- Po dokonceni si FRST vyziada restart PC, potvrd kliknutim na OK
- Po restartovani PC bude na ploche subor Fixlog.txt, jeho obsah sem skopiruj
Absolvent skoly pre novacikov
E-mail: conder (zavinac) forum.viry.cz
Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).
Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.
V pripade spokojnosti je mozne podporit forum. Dakujeme!
E-mail: conder (zavinac) forum.viry.cz
Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).
Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.
V pripade spokojnosti je mozne podporit forum. Dakujeme!
-
- Návštěvník
- Příspěvky: 25
- Registrován: 02 úno 2007 18:09
- Bydliště: Prague
- Kontaktovat uživatele:
Re: Prosím o prev. kontrolu
Hotovo.
Fixlog.txt:
Fixlog.txt:
Kód: Vybrat vše
Fix result of Farbar Recovery Scan Tool (x64) Version: 04.03.2018
Ran by still (06-03-2018 21:06:51) Run:2
Running from C:\Users\still\Desktop
Loaded Profiles: still (Available Profiles: still)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
CreateRestorePoint:
File: C:\Windows\System32\Drivers\ahiub427.sys
U3 ahiub427; C:\Windows\System32\Drivers\ahiub427.sys [0 ] (Intel Corporation) <==== ATTENTION (zero byte File/Folder)
Hosts:
EmptyTemp:
End
*****************
Processes closed successfully.
Restore point was successfully created.
========================= File: C:\Windows\System32\Drivers\ahiub427.sys ========================
C:\Windows\System32\Drivers\ahiub427.sys
File is digitally signed
MD5: D41D8CD98F00B204E9800998ECF8427E (0-byte)
Creation and modification date: -
Size: 000000000
Attributes: ----A
Company Name: Intel Corporation
Internal Name: iaStorA.sys
Original Name: iaStorA.sys
Product: Intel Rapid Storage Technology driver
Description: Intel Rapid Storage Technology driver - x64
File Version: 12.9.0.1001
Product Version: 12.9.0.1001
Copyright: Copyright(C) Intel Corporation 1994-2013
VirusTotal: 0-byte
====== End of File: ======
"HKLM\System\CurrentControlSet\Services\ahiub427" => removed successfully
ahiub427 => service removed successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
=========== EmptyTemp: ==========
BITS transfer queue => 8388608 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 101918792 B
Java, Flash, Steam htmlcache => 1201 B
Windows/system/drivers => 164419957 B
Edge => 0 B
Chrome => 0 B
Firefox => 10391034 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Users => 0 B
Default => 0 B
Public => 0 B
ProgramData => 0 B
systemprofile => 66228 B
systemprofile32 => 0 B
LocalService => 66228 B
NetworkService => 0 B
still => 128739 B
RecycleBin => 0 B
EmptyTemp: => 272.2 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 21:07:10 ====
Re: Prosím o prev. kontrolu
Vyzera to uz OK. Su este s PC nejake problemy?
Ak nie, tak este upraceme po pouzitych nastrojoch:
Ak nie, tak este upraceme po pouzitych nastrojoch:
- Stiahni DelFix: https://toolslib.net/downloads/finish/2-delfix/
- Uloz na plochu a spusti
- Nechaj oznacenu moznost "Remove disinfection tools"
- Klikni na "Run"
Absolvent skoly pre novacikov
E-mail: conder (zavinac) forum.viry.cz
Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).
Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.
V pripade spokojnosti je mozne podporit forum. Dakujeme!
E-mail: conder (zavinac) forum.viry.cz
Ak nieco nie je jasne, pytaj sa. Odporucam mat vzdy zalohovat dolezite data (dokumenty, fotky a ine).
Fixlisty a ine scripty su pisane len pre konkretny PC. Nepouzivajte ich na inych zariadeniach, inak hrozi poskodenie systemu alebo strata dat.
Ak mate podobny problem ako iny uzivatel, prosim, zalozte si vlastnu temu.
V pripade spokojnosti je mozne podporit forum. Dakujeme!
-
- Návštěvník
- Příspěvky: 25
- Registrován: 02 úno 2007 18:09
- Bydliště: Prague
- Kontaktovat uživatele:
Re: Prosím o prev. kontrolu
Vyčištěno.
Systém se zdá být v celkem dobré kondici. Internet se zatím chová celkem normálně. Předtím jsem pozoroval jakýsi nestandartní síťový provoz, který se nyní zatím ještě neprojevil. Není nad to mít jistotu
Moc děkuji
Systém se zdá být v celkem dobré kondici. Internet se zatím chová celkem normálně. Předtím jsem pozoroval jakýsi nestandartní síťový provoz, který se nyní zatím ještě neprojevil. Není nad to mít jistotu
Moc děkuji