Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Pomalé PC

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní: http://forum.viry.cz/viewtopic.php?f=12&t=123975 . Děkujeme za pochopení.
Zamčeno
Zpráva
Autor
jerza
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 04 lis 2015 13:14

Pomalé PC

#1 Příspěvek od jerza »

Dobrý den
Mám na Vás prosbičku dozvěděl jsem se že je tu mnoho machrů přes PC tak bych Vás chtěl poprosit o pomoc.
Poslední chvílí se mi strašně zpomalil notebook. Nábíhá bez problémů ale po přihlášení do svého účtu mám asi tak 15 minut než můžu normálně pracovat :(
Používám windows 7 zkoušel jsem online eset vše OK taky jsem zkoušel ccleaner tam to vyčistilo něco ale bohužel to není pořád ono.
Poradil by mi někdo prosím co by šlo dělat?
Děkuji za každou odpověď.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalé PC

#2 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jerza
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 04 lis 2015 13:14

Re: Pomalé PC

#3 Příspěvek od jerza »

Dobrý den log je ZDE.

Kód: Vybrat vše

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:04-11-2015
Ran by GA (administrator) on HB26 (05-11-2015 08:37:17)
Running from C:\Users\GA\Desktop
Loaded Profiles: GA (Available Profiles: GA)
Platform: Windows 7 Professional Service Pack 1 (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AuthenTec, Inc.) C:\Program Files\Fingerprint Sensor\ATService.exe
(AMD) C:\Windows\System32\atiesrxx.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\ClientX64\officeclicktorun.exe
(Cisco Systems, Inc.) C:\Program Files (x86)\Cisco Systems\VPN Client\cvpnd.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
() C:\Program Files (x86)\Lexmark Pro200-S500 Series\lxebmon.exe
() C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
( ) C:\Windows\System32\lxebcoms.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\microsoft shared\VS7DEBUG\mdm.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\NDSTray.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(TOSHIBA Corporation) C:\Windows\System32\ThpSrv.exe
(CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe
(TOSHIBA Corporation) C:\Windows\System32\TODDSrv.exe
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\Power Saver\TosCoSrv.exe
(Microsoft Corporation) C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe
(GlavSoft LLC.) C:\Program Files\TightVNC\tvnserver.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
(TOSHIBA Corporation) C:\Program Files\TOSHIBA\TECO\TecoService.exe
(Microsoft Corp.) C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVCM.EXE
(Gemfor s.r.o.) C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe
(Firebird Project) C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe
(Piriform Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFIWmxSvcs64.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSvcs.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(TOSHIBA CORPORATION) C:\Program Files (x86)\TOSHIBA\ConfigFree\CFSwMgr.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(forum.viry.cz) C:\Users\GA\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [] => [X]
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM\...\Run: [lxebmon.exe] => C:\Program Files (x86)\Lexmark Pro200-S500 Series\lxebmon.exe [772712 2013-01-23] ()
HKLM\...\Run: [EzPrint] => C:\Program Files (x86)\Lexmark Pro200-S500 Series\ezprint.exe [139944 2009-10-01] ()
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1273448 2012-04-03] (CANON INC.)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX\CNMNSST.exe [449168 2012-03-26] (CANON INC.)
HKU\S-1-5-19\...\Run: [TOPI.EXE] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [845176 2011-02-18] (TOSHIBA)
HKU\S-1-5-20\...\Run: [TOPI.EXE] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [845176 2011-02-18] (TOSHIBA)
HKU\S-1-5-21-3223687740-3464950805-1267711117-1000\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7416088 2015-02-19] (Piriform Ltd)
HKU\S-1-5-21-3223687740-3464950805-1267711117-1000\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1403192 2015-09-11] (Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-3223687740-3464950805-1267711117-1000\...\Run: [T-Mobile Communication Centre] => C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\Manager.exe [1363984 2011-06-30] (Gemfor s.r.o.)
HKU\S-1-5-21-3223687740-3464950805-1267711117-1000\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [28201096 2012-01-12] (Electronic Arts)
HKU\S-1-5-21-3223687740-3464950805-1267711117-1000\...\MountPoints2: E - E:\Autorun.exe
HKU\S-1-5-21-3223687740-3464950805-1267711117-1000\...\MountPoints2: {94b353bd-7f33-11e5-93a1-e89d87aeb428} - E:\Autorun.exe
HKU\S-1-5-21-3223687740-3464950805-1267711117-1000\...\MountPoints2: {bd75a6e7-3397-11e1-b0f6-88532e268900} - E:\DTLplus_Launcher.exe
HKU\S-1-5-21-3223687740-3464950805-1267711117-1000\...\MountPoints2: {e9182994-67ff-11e5-8dfe-e89d87aeb428} - E:\Autorun.exe
HKU\S-1-5-21-3223687740-3464950805-1267711117-1000\...\MountPoints2: {e91829a9-67ff-11e5-8dfe-e89d87aeb428} - E:\Autorun.exe
HKU\S-1-5-21-3223687740-3464950805-1267711117-1000\...\MountPoints2: {e91829e7-67ff-11e5-8dfe-e89d87aeb428} - E:\Autorun.exe
HKU\S-1-5-21-3223687740-3464950805-1267711117-1000\...\MountPoints2: {e91829f6-67ff-11e5-8dfe-e89d87aeb428} - E:\Autorun.exe
HKU\S-1-5-18\...\Run: [TOPI.EXE] => C:\Program Files (x86)\TOSHIBA\TOSHIBA Online Product Information\topi.exe [845176 2011-02-18] (TOSHIBA)
HKU\S-1-5-18\...\Run: [GarminExpressTrayApp] => C:\Program Files (x86)\Garmin\Express Tray\ExpressTray.exe [1403192 2015-09-11] (Garmin Ltd. or its subsidiaries)
AppInit_DLLs: C:\PROGRA~2\WI3C8A~1\Datamngr\x64\datamngr.dll => No File
AppInit_DLLs:  C:\PROGRA~2\WI3C8A~1\Datamngr\x64\IEBHO.dll => No File
AppInit_DLLs-x32: C:\PROGRA~2\WI3C8A~1\Datamngr\datamngr.dll => No File
AppInit_DLLs-x32:  C:\PROGRA~2\WI3C8A~1\Datamngr\IEBHO.dll => No File
ShellIconOverlayIdentifiers: [ATFPUOverlayIcon] -> {3239DBC1-B76D-4dc7-8B29-D99CBA3C7336} => C:\Program Files\TOSHIBA\TFPU\TFPUOverlayIcon.dll [2010-03-02] (TOSHIBA)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\vpngui.exe.lnk [2015-10-01]
ShortcutTarget: vpngui.exe.lnk -> C:\Windows\Installer\{467D5E81-8349-4892-9E81-C3674ED8E451}\Icon09DB8A851.exe ()
Startup: C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk [2011-07-12]
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\TRDCReminder.lnk [2011-07-12]
ShortcutTarget: TRDCReminder.lnk -> C:\Program Files (x86)\TOSHIBA\TRDCReminder\TRDCReminder.exe (TOSHIBA Europe)
Startup: C:\Users\GA\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odeslat do OneNote.lnk [2015-05-19]
ShortcutTarget: Odeslat do OneNote.lnk -> C:\Program Files\Microsoft Office 15\root\office15\onenotem.exe (Microsoft Corporation)
CHR HKLM\SOFTWARE\Policies\Google: Restriction <======= ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: 172.16.1.7	zetorap	# Eso
Tcpip\..\Interfaces\{12565AD6-C17A-48ED-AE0D-95A0F751980D}: [NameServer] 0.0.0.0
Tcpip\..\Interfaces\{16C47622-9DD3-4B96-A595-F92CF17C8FD0}: [DhcpNameServer] 213.226.248.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.istartsurf.com/?type=hp&ts=1425141673&from=tugs&uid=TOSHIBAXMK5061GSYN_513JF04PSXX513JF04PS
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.istartsurf.com/?type=hp&ts=1425141673&from=tugs&uid=TOSHIBAXMK5061GSYN_513JF04PSXX513JF04PS
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.istartsurf.com/web/?type=ds&ts=1425141673&from=tugs&uid=TOSHIBAXMK5061GSYN_513JF04PSXX513JF04PS&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.istartsurf.com/web/?type=ds&ts=1425141673&from=tugs&uid=TOSHIBAXMK5061GSYN_513JF04PSXX513JF04PS&q={searchTerms}
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.istartsurf.com/?type=hp&ts=1425141673&from=tugs&uid=TOSHIBAXMK5061GSYN_513JF04PSXX513JF04PS
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.istartsurf.com/?type=hp&ts=1425141673&from=tugs&uid=TOSHIBAXMK5061GSYN_513JF04PSXX513JF04PS
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.istartsurf.com/web/?type=ds&ts=1425141673&from=tugs&uid=TOSHIBAXMK5061GSYN_513JF04PSXX513JF04PS&q={searchTerms}
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.istartsurf.com/web/?type=ds&ts=1425141673&from=tugs&uid=TOSHIBAXMK5061GSYN_513JF04PSXX513JF04PS&q={searchTerms}
HKU\S-1-5-21-3223687740-3464950805-1267711117-1000\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.istartsurf.com/web/?type=ds&ts=1425141673&from=tugs&uid=TOSHIBAXMK5061GSYN_513JF04PSXX513JF04PS&q={searchTerms}
HKU\S-1-5-21-3223687740-3464950805-1267711117-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.seznam.cz/
SearchScopes: HKLM -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.istartsurf.com/web/?type=ds&ts=1425141673&from=tugs&uid=TOSHIBAXMK5061GSYN_513JF04PSXX513JF04PS&q={searchTerms}
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.istartsurf.com/web/?type=ds&ts=1425141673&from=tugs&uid=TOSHIBAXMK5061GSYN_513JF04PSXX513JF04PS&q={searchTerms}
SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=140&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKLM -> {B18DF0D8-270E-4881-AA87-D842A212C881} URL = hxxp://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox
SearchScopes: HKLM-x32 -> DefaultScope {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.istartsurf.com/web/?type=ds&ts=1425141673&from=tugs&uid=TOSHIBAXMK5061GSYN_513JF04PSXX513JF04PS&q={searchTerms}
SearchScopes: HKLM-x32 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
SearchScopes: HKLM-x32 -> {33BB0A4E-99AF-4226-BDF6-49120163DE86} URL = hxxp://www.istartsurf.com/web/?type=ds&ts=1425141673&from=tugs&uid=TOSHIBAXMK5061GSYN_513JF04PSXX513JF04PS&q={searchTerms}
SearchScopes: HKLM-x32 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2406} URL = hxxp://dts.search-results.com/sr?src=ieb&appid=140&systemid=406&sr=0&q={searchTerms}
SearchScopes: HKLM-x32 -> {B18DF0D8-270E-4881-AA87-D842A212C881} URL = hxxp://www.bing.com/search?q={searchTerms}&form=TSHMDF&pc=MATM&src=IE-SearchBox
SearchScopes: HKU\S-1-5-21-3223687740-3464950805-1267711117-1000 -> {B18DF0D8-270E-4881-AA87-D842A212C881} URL = 
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\OCHelper.dll [2015-09-29] (Microsoft Corporation)
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23] (CANON INC.)
BHO: Windows Live ID Sign-in Helper -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO: DataMngr -> {9D717F81-9148-4f12-8568-69135F087DB0} -> No File
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\URLREDIR.DLL [2015-10-28] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office 15\root\VFS\ProgramFilesX64\Microsoft Office\Office15\GROOVEEX.DLL [2015-10-28] (Microsoft Corporation)
BHO-x32: TFPUPWDBankBHO Class -> {030AC7B6-E7EC-40F1-8FB2-C0FD344DE0B9} -> C:\Program Files\TOSHIBA\TFPU\x86\TFPUPWDBankBHO.dll [2010-03-02] (TODO: <Company name>)
BHO-x32: MSS+ Identifier -> {0E8A89AD-95D7-40EB-8D9D-083EF7066A01} -> C:\Program Files\McAfee Security Scan\3.8.150\McAfeeMSS_IE.dll [2014-04-09] (McAfee, Inc.)
BHO-x32: Lexmark Panel nástrojů -> {1017A80C-6F09-4548-A84D-EDD6AC9525F0} -> C:\Program Files\Lexmark Toolbar\toolband.dll [2008-05-22] ()
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2015-02-23] (CANON INC.)
BHO-x32: Pomocná služba pro přihlášení ke službě Windows Live ID -> {9030D464-4C02-4ABF-8ECC-5164760863C6} -> C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll [2011-03-28] (Microsoft Corp.)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office 15\root\Office15\URLREDIR.DLL [2015-10-28] (Microsoft Corporation)
BHO-x32: Lexmark  -> {D2C5E510-BE6D-42CC-9F61-E4F939078474} -> C:\Program Files\Lexmark Printable Web\bho.dll [2008-05-22] ()
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll [2011-05-29] (Sun Microsystems, Inc.)
BHO-x32: TOSHIBA Media Controller Plug-in -> {F3C88694-EFFA-4d78-B409-54B7B2535B14} -> C:\Program Files (x86)\TOSHIBA\TOSHIBA Media Controller Plug-in\TOSHIBAMediaControllerIE.dll [2010-12-05] (<TOSHIBA>)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23] (CANON INC.)
Toolbar: HKLM-x32 - Lexmark Panel nástrojů - {1017A80C-6F09-4548-A84D-EDD6AC9525F0} - C:\Program Files\Lexmark Toolbar\toolband.dll [2008-05-22] ()
Toolbar: HKLM-x32 - Searchqu Toolbar - {99079a25-328f-4bd4-be04-00955acaa0a7} -  No File
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23] (CANON INC.)
Toolbar: HKU\S-1-5-21-3223687740-3464950805-1267711117-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} -  No File
Toolbar: HKU\S-1-5-21-3223687740-3464950805-1267711117-1000 -> No Name - {D4027C7F-154A-4066-A1AD-4243D8127440} -  No File
Toolbar: HKU\S-1-5-21-3223687740-3464950805-1267711117-1000 -> Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2015-02-23] (CANON INC.)
DPF: HKLM-x32 {108D3206-846A-4A93-BACB-F0572D043ED7} hxxp://10.5.141.20:90/webrec.cab
DPF: HKLM-x32 {233C1507-6A77-46A4-9443-F871F945D258} hxxps://fpdownload.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: HKLM-x32 {64865E5A-E8D7-44C1-89E1-99A84F6E56D0} hxxp://10.5.141.148/VVTK_Plugin_Installer.exe
DPF: HKLM-x32 {7530BFB8-7293-4D34-9923-61A11451AFC5} hxxp://download.eset.com/special/eos/OnlineScanner.cab
Handler-x32: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office 15\root\Office15\MSOSB.DLL [2015-02-03] (Microsoft Corporation)
StartMenuInternet: IEXPLORE.EXE - C:\Program Files\Internet Explorer\iexplore.exe hxxp://www.istartsurf.com/?type=sc&ts=1425141673&from=tugs&uid=TOSHIBAXMK5061GSYN_513JF04PSXX513JF04PS

FireFox:
========
FF ProfilePath: C:\Users\GA\AppData\Roaming\Mozilla\Firefox\Profiles\gs7ggar9.default
FF NewTab: chrome://quick_start/content/index.html
FF DefaultSearchEngine: Seznam
FF SearchEngineOrder.1: Ask.com
FF SelectedSearchEngine: istartsurf
FF Homepage: www.seznam.cz
FF Plugin: @adobe.com/FlashPlayer -> C:\windows\system32\Macromed\Flash\NPSWF64_19_0_0_226.dll [2015-10-17] ()
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\windows\SysWOW64\Macromed\Flash\NPSWF32_19_0_0_226.dll [2015-10-17] ()
FF Plugin-x32: @adobe.com/ShockwavePlayer -> C:\windows\SysWOW64\Adobe\Director\np32dsw_1218158.dll [2015-04-27] (Adobe Systems, Inc.)
FF Plugin-x32: @canon.com/EPPEX -> C:\Program Files (x86)\Canon\My Image Garden\AddOn\CIG\npmigfpi.dll [2011-11-30] (CANON INC.)
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google)
FF Plugin-x32: @google.com/npPicasa3,version=3.0.0 -> C:\Program Files (x86)\Google\Picasa3\npPicasa3.dll [2015-02-13] (Google, Inc.)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.40728.0\npctrl.dll [2015-07-28] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office 15\root\Office15\NPSPWRAP.DLL [2013-07-10] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3508.1109 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3555.0308 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-03-08] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.15\npGoogleUpdate3.dll [2015-09-16] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2015-09-27] (Adobe Systems Inc.)
FF Plugin-x32: WinLessPlugin -> C:\Program Files (x86)\Camera Stream Controller\npWinLessRtspCtrl.dll [2013-01-30] ()
FF Plugin HKU\S-1-5-21-3223687740-3464950805-1267711117-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\GA\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2015-06-08] (Unity Technologies ApS)
FF SearchPlugin: C:\Program Files (x86)\mozilla firefox\browser\searchplugins\istartsurf.xml [2015-02-28]
FF Extension: Fast Start - C:\Users\GA\AppData\Roaming\Mozilla\Firefox\Profiles\gs7ggar9.default\Extensions\istart_ffnt@gmail.com [2015-04-01] [not signed]
FF Extension: Seznam lištička - C:\Users\GA\AppData\Roaming\Mozilla\Firefox\Profiles\gs7ggar9.default\Extensions\{ea614400-e918-4741-9a97-7a972ff7c30b} [2015-08-13]
FF HKLM\...\Firefox\Extensions: [{C1CA7765-44E4-452e-9D00-A04F3D434281}] -  => not found
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => not found
FF HKLM-x32\...\Firefox\Extensions: [{C1CA7765-44E4-452e-9D00-A04F3D434281}] -  => not found
FF HKLM-x32\...\Firefox\Extensions: [istart_ffnt@gmail.com] - C:\Users\GA\AppData\Roaming\Mozilla\Firefox\Profiles\gs7ggar9.default\extensions\istart_ffnt@gmail.com
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET NOD32 Antivirus\Mozilla Thunderbird => not found
FF HKU\S-1-5-21-3223687740-3464950805-1267711117-1000\...\Firefox\Extensions: [{e4f94d1e-2f53-401e-8885-681602c0ddd8}] - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi
FF Extension: McAfee Security Scan Plus - C:\ProgramData\McAfee Security Scan\Extensions\{e4f94d1e-2f53-401e-8885-681602c0ddd8}.xpi [2014-04-04] [not signed]

Chrome: 
=======
CHR HomePage: Default -> hxxp://www.google.com/
CHR StartupUrls: Default -> "hxxp://www.google.com/","hxxp://www.seznam.cz/"
CHR NewTab: Default -> "chrome-extension://ncdfeghkpohnalmpblddmnppfooljekh/core/newpage-pop.html" 
CHR Plugin: (Native Client) - C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.80\ppGoogleNaClPluginChrome.dll => No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.80\pdf.dll => No File
CHR Plugin: (Shockwave Flash) - C:\Program Files (x86)\Google\Chrome\Application\46.0.2490.80\gcswf32.dll => No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Browser\nppdf32.dll => No File
CHR Plugin: (Java Deployment Toolkit 6.0.200.2) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npdeployJava1.dll (Sun Microsystems, Inc.)
CHR Plugin: (Java(TM) Platform SE 6 U20) - C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
CHR Plugin: (Google Earth Plugin) - C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll (Google)
CHR Plugin: (Google Update) - C:\Program Files (x86)\Google\Update\1.3.21.111\npGoogleUpdate3.dll => No File
CHR Plugin: (Windows Live™ Photo Gallery) - C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
CHR Plugin: (Silverlight Plug-In) - c:\Program Files (x86)\Microsoft Silverlight\4.1.10329.0\npctrl.dll => No File
CHR Profile: C:\Users\GA\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (YouTube) - C:\Users\GA\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-24]
CHR Extension: (Vyhledávání Google) - C:\Users\GA\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Vyhledávání na Uložto.cz) - C:\Users\GA\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmkajlpofgoacniacbaappohkglliini [2012-05-16]
CHR Extension: (Incredible StartPage - Productive Start Page) - C:\Users\GA\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncdfeghkpohnalmpblddmnppfooljekh [2015-09-05]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\GA\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-07-31]
CHR Extension: (Gmail) - C:\Users\GA\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-30]
CHR HKLM-x32\...\Chrome\Extension: [bopakagnckmlgajfccecajhnimjiiedh] - hxxp://clients2.google.com/service/update2/crx

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ameisvc; C:\Program Files (x86)\T-Mobile\Web'n'walk Manager\ameisvc.exe [123120 2011-06-24] (Gemfor s.r.o.)
R2 ClickToRunSvc; C:\Program Files\Microsoft Office 15\ClientX64\OfficeClickToRun.exe [2780856 2015-10-07] (Microsoft Corporation)
R2 FirebirdGuardianDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbguard.exe [98304 2013-03-19] (Firebird Project) [File not signed]
R3 FirebirdServerDefaultInstance; C:\Program Files (x86)\Firebird\Firebird_2_5\bin\fbserver.exe [3784704 2013-03-19] (Firebird Project) [File not signed]
S2 Garmin Device Interaction Service; C:\Program Files (x86)\Garmin\Device Interaction Service\GarminService.exe [762272 2015-09-11] (Garmin Ltd. or its subsidiaries)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [140456 2012-03-28] ()
S2 lxebCATSCustConnectService; C:\windows\system32\spool\DRIVERS\x64\3\\lxebserv.exe [45736 2010-04-14] (Lexmark International, Inc.)
R2 lxeb_device; C:\windows\system32\lxebcoms.exe [1052328 2010-04-14] ( )
R2 lxeb_device; C:\windows\SysWOW64\lxebcoms.exe [598696 2010-04-14] ( )
S3 McComponentHostService; C:\Program Files\McAfee Security Scan\3.8.150\McCHSvc.exe [289256 2014-04-09] (McAfee, Inc.)
R2 MDM; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [335872 2006-10-26] (Microsoft Corporation) [File not signed]
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-01-05] ()
S3 TemproMonitoringService; C:\Program Files (x86)\Toshiba TEMPRO\TemproSvc.exe [112080 2011-02-10] (Toshiba Europe GmbH)
R2 Thpsrv; C:\windows\system32\ThpSrv.exe [526848 2010-12-25] (TOSHIBA Corporation) [File not signed]
R2 tvnserver; C:\Program Files\TightVNC\tvnserver.exe [1696824 2012-11-20] (GlavSoft LLC.)
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 CVPNDRVA; C:\windows\system32\Drivers\CVPNDRVA.sys [304784 2010-03-23] ()
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R1 eusk2par; C:\windows\system32\Drivers\eusk2par-amd64.sys [32336 2008-12-18] (Aladdin Knowledge Systems Ltd.)
R3 guardian2; C:\Windows\System32\Drivers\oz776x64.sys [85280 2009-09-10] (O2Micro)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-05 08:34 - 2015-11-05 08:37 - 00026018 _____ C:\Users\GA\Desktop\FRST.txt
2015-11-05 08:33 - 2015-11-05 08:37 - 00000000 ____D C:\FRST
2015-11-05 08:32 - 2015-11-05 08:33 - 00000000 ____D C:\Users\GA\Desktop\FRST Launcher
2015-11-05 08:32 - 2015-11-05 08:31 - 02198016 _____ (Farbar) C:\Users\GA\Desktop\FRST64.exe
2015-11-05 08:32 - 2015-11-05 08:26 - 00112640 _____ (forum.viry.cz) C:\Users\GA\Desktop\FRSTLauncher.exe
2015-11-04 13:26 - 2015-11-04 13:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune
2015-11-04 13:26 - 2015-11-04 13:26 - 00000000 ____D C:\Program Files (x86)\HD Tune
2015-11-04 07:46 - 2015-11-05 08:19 - 00001350 _____ C:\windows\setupact.log
2015-11-04 07:46 - 2015-11-04 07:46 - 00000000 _____ C:\windows\setuperr.log
2015-11-04 07:45 - 2015-11-04 07:45 - 00069392 _____ C:\Users\GA\Documents\cc_20151104_074515.reg
2015-11-03 16:04 - 2015-11-03 16:04 - 00000000 ____D C:\Program Files (x86)\ESET
2015-11-03 14:23 - 2015-11-05 08:24 - 00097089 _____ C:\windows\WindowsUpdate.log
2015-11-03 14:21 - 2015-11-03 14:21 - 00000000 ____D C:\Users\GA\AppData\Local\TempTaskUpdateDetectionF78F24B8-D0F8-4725-9C6E-4008E41C784A
2015-11-03 13:49 - 2015-11-03 13:49 - 00000000 ____D C:\Users\GA\AppData\Local\TempTaskUpdateDetection64C37286-AF2C-416A-8C5A-8D8C20DF1565
2015-11-03 13:17 - 2015-11-03 13:17 - 00000000 ____D C:\Users\GA\AppData\Local\TempTaskUpdateDetectionC0C4A86D-84B0-453F-8693-D3E97CF5157C
2015-11-03 13:02 - 2015-11-03 13:02 - 00000000 ____D C:\Program Files (x86)\Origin Games
2015-11-03 12:37 - 2015-11-03 12:37 - 00007598 _____ C:\Users\GA\AppData\Local\Resmon.ResmonCfg
2015-11-03 12:09 - 2015-11-03 12:09 - 00000000 ____D C:\Users\GA\AppData\Local\Origin
2015-11-03 11:05 - 2015-11-03 12:07 - 00000000 ____D C:\Program Files\Microsoft Security Client
2015-11-03 09:34 - 2015-11-03 09:45 - 00000000 ____D C:\ProgramData\Acronis
2015-11-03 09:34 - 2015-11-03 09:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acronis
2015-11-03 09:34 - 2015-11-03 09:34 - 00000000 ____D C:\Program Files (x86)\Acronis
2015-11-02 09:50 - 2015-11-02 09:50 - 00009525 _____ C:\Users\GA\Desktop\Obědy za říjen.xlsx
2015-10-29 12:05 - 2015-11-02 10:25 - 00034518 _____ C:\Users\GA\Desktop\Kopie - zásoby HB k likvidaci.xlsx
2015-10-25 14:12 - 2015-10-25 14:12 - 00000000 ____D C:\Users\GA\AppData\Local\{F19ABC50-3479-4E7F-B1C9-C99CAF682057}
2015-10-22 11:45 - 2015-10-22 11:45 - 00291063 _____ C:\ProgramData\SPLB88C.tmp
2015-10-16 10:18 - 2015-10-16 10:18 - 00008852 _____ C:\Users\GA\Desktop\Sešit1.xlsx
2015-10-15 12:08 - 2015-09-18 20:22 - 00025432 _____ (Microsoft Corporation) C:\windows\system32\CompatTelRunner.exe
2015-10-15 12:08 - 2015-09-18 20:19 - 01291264 _____ (Microsoft Corporation) C:\windows\system32\appraiser.dll
2015-10-15 12:08 - 2015-09-18 20:19 - 00766464 _____ (Microsoft Corporation) C:\windows\system32\generaltel.dll
2015-10-15 12:08 - 2015-09-18 20:19 - 00700416 _____ (Microsoft Corporation) C:\windows\system32\invagent.dll
2015-10-15 12:08 - 2015-09-18 20:19 - 00503808 _____ (Microsoft Corporation) C:\windows\system32\devinv.dll
2015-10-15 12:08 - 2015-09-18 20:19 - 00073216 _____ (Microsoft Corporation) C:\windows\system32\acmigration.dll
2015-10-15 12:08 - 2015-09-18 20:09 - 01163776 _____ (Microsoft Corporation) C:\windows\system32\aeinv.dll
2015-10-15 09:59 - 2015-10-19 16:52 - 00000000 ____D C:\Users\GA\Desktop\Kotle
2015-10-14 10:28 - 2015-09-18 20:31 - 00391784 _____ (Microsoft Corporation) C:\windows\system32\iedkcs32.dll
2015-10-14 10:28 - 2015-09-18 19:58 - 00345688 _____ (Microsoft Corporation) C:\windows\SysWOW64\iedkcs32.dll
2015-10-14 10:28 - 2015-09-16 05:48 - 25851904 _____ (Microsoft Corporation) C:\windows\system32\mshtml.dll
2015-10-14 10:28 - 2015-09-16 05:36 - 02724864 _____ (Microsoft Corporation) C:\windows\system32\mshtml.tlb
2015-10-14 10:28 - 2015-09-16 05:36 - 00004096 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollectorres.dll
2015-10-14 10:28 - 2015-09-16 05:22 - 00066560 _____ (Microsoft Corporation) C:\windows\system32\iesetup.dll
2015-10-14 10:28 - 2015-09-16 05:21 - 02886656 _____ (Microsoft Corporation) C:\windows\system32\iertutil.dll
2015-10-14 10:28 - 2015-09-16 05:21 - 00585728 _____ (Microsoft Corporation) C:\windows\system32\vbscript.dll
2015-10-14 10:28 - 2015-09-16 05:21 - 00417792 _____ (Microsoft Corporation) C:\windows\system32\html.iec
2015-10-14 10:28 - 2015-09-16 05:21 - 00088064 _____ (Microsoft Corporation) C:\windows\system32\MshtmlDac.dll
2015-10-14 10:28 - 2015-09-16 05:21 - 00048640 _____ (Microsoft Corporation) C:\windows\system32\ieetwproxystub.dll
2015-10-14 10:28 - 2015-09-16 05:14 - 00054784 _____ (Microsoft Corporation) C:\windows\system32\jsproxy.dll
2015-10-14 10:28 - 2015-09-16 05:13 - 00034304 _____ (Microsoft Corporation) C:\windows\system32\iernonce.dll
2015-10-14 10:28 - 2015-09-16 05:10 - 00616960 _____ (Microsoft Corporation) C:\windows\system32\ieui.dll
2015-10-14 10:28 - 2015-09-16 05:09 - 05990912 _____ (Microsoft Corporation) C:\windows\system32\jscript9.dll
2015-10-14 10:28 - 2015-09-16 05:08 - 00817664 _____ (Microsoft Corporation) C:\windows\system32\jscript.dll
2015-10-14 10:28 - 2015-09-16 05:08 - 00814080 _____ (Microsoft Corporation) C:\windows\system32\jscript9diag.dll
2015-10-14 10:28 - 2015-09-16 05:08 - 00144384 _____ (Microsoft Corporation) C:\windows\system32\ieUnatt.exe
2015-10-14 10:28 - 2015-09-16 05:08 - 00114688 _____ (Microsoft Corporation) C:\windows\system32\ieetwcollector.exe
2015-10-14 10:28 - 2015-09-16 05:01 - 00968704 _____ (Microsoft Corporation) C:\windows\system32\MsSpellCheckingFacility.exe
2015-10-14 10:28 - 2015-09-16 04:58 - 20357632 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.dll
2015-10-14 10:28 - 2015-09-16 04:58 - 00489984 _____ (Microsoft Corporation) C:\windows\system32\dxtmsft.dll
2015-10-14 10:28 - 2015-09-16 04:50 - 00077824 _____ (Microsoft Corporation) C:\windows\system32\JavaScriptCollectionAgent.dll
2015-10-14 10:28 - 2015-09-16 04:46 - 00199680 _____ (Microsoft Corporation) C:\windows\system32\msrating.dll
2015-10-14 10:28 - 2015-09-16 04:45 - 02724864 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtml.tlb
2015-10-14 10:28 - 2015-09-16 04:45 - 00092160 _____ (Microsoft Corporation) C:\windows\system32\mshtmled.dll
2015-10-14 10:28 - 2015-09-16 04:43 - 00315392 _____ (Microsoft Corporation) C:\windows\system32\dxtrans.dll
2015-10-14 10:28 - 2015-09-16 04:41 - 00152064 _____ (Microsoft Corporation) C:\windows\system32\occache.dll
2015-10-14 10:28 - 2015-09-16 04:33 - 00504832 _____ (Microsoft Corporation) C:\windows\SysWOW64\vbscript.dll
2015-10-14 10:28 - 2015-09-16 04:33 - 00062464 _____ (Microsoft Corporation) C:\windows\SysWOW64\iesetup.dll
2015-10-14 10:28 - 2015-09-16 04:32 - 00341504 _____ (Microsoft Corporation) C:\windows\SysWOW64\html.iec
2015-10-14 10:28 - 2015-09-16 04:32 - 00047616 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieetwproxystub.dll
2015-10-14 10:28 - 2015-09-16 04:31 - 00262144 _____ (Microsoft Corporation) C:\windows\system32\webcheck.dll
2015-10-14 10:28 - 2015-09-16 04:31 - 00064000 _____ (Microsoft Corporation) C:\windows\SysWOW64\MshtmlDac.dll
2015-10-14 10:28 - 2015-09-16 04:29 - 00801280 _____ (Microsoft Corporation) C:\windows\system32\msfeeds.dll
2015-10-14 10:28 - 2015-09-16 04:29 - 00720896 _____ (Microsoft Corporation) C:\windows\system32\ie4uinit.exe
2015-10-14 10:28 - 2015-09-16 04:28 - 02279936 _____ (Microsoft Corporation) C:\windows\SysWOW64\iertutil.dll
2015-10-14 10:28 - 2015-09-16 04:28 - 01359360 _____ (Microsoft Corporation) C:\windows\system32\mshtmlmedia.dll
2015-10-14 10:28 - 2015-09-16 04:26 - 02126336 _____ (Microsoft Corporation) C:\windows\system32\inetcpl.cpl
2015-10-14 10:28 - 2015-09-16 04:26 - 00047104 _____ (Microsoft Corporation) C:\windows\SysWOW64\jsproxy.dll
2015-10-14 10:28 - 2015-09-16 04:26 - 00030720 _____ (Microsoft Corporation) C:\windows\SysWOW64\iernonce.dll
2015-10-14 10:28 - 2015-09-16 04:24 - 00480256 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieui.dll
2015-10-14 10:28 - 2015-09-16 04:23 - 00115712 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieUnatt.exe
2015-10-14 10:28 - 2015-09-16 04:22 - 14458368 _____ (Microsoft Corporation) C:\windows\system32\ieframe.dll
2015-10-14 10:28 - 2015-09-16 04:22 - 00663552 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript.dll
2015-10-14 10:28 - 2015-09-16 04:22 - 00620032 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9diag.dll
2015-10-14 10:28 - 2015-09-16 04:15 - 00416256 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtmsft.dll
2015-10-14 10:28 - 2015-09-16 04:11 - 02487808 _____ (Microsoft Corporation) C:\windows\system32\wininet.dll
2015-10-14 10:28 - 2015-09-16 04:10 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-10-14 10:28 - 2015-09-16 04:07 - 00168960 _____ (Microsoft Corporation) C:\windows\SysWOW64\msrating.dll
2015-10-14 10:28 - 2015-09-16 04:06 - 00076288 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmled.dll
2015-10-14 10:28 - 2015-09-16 04:05 - 04527616 _____ (Microsoft Corporation) C:\windows\SysWOW64\jscript9.dll
2015-10-14 10:28 - 2015-09-16 04:05 - 00279040 _____ (Microsoft Corporation) C:\windows\SysWOW64\dxtrans.dll
2015-10-14 10:28 - 2015-09-16 04:04 - 00130048 _____ (Microsoft Corporation) C:\windows\SysWOW64\occache.dll
2015-10-14 10:28 - 2015-09-16 03:59 - 01546752 _____ (Microsoft Corporation) C:\windows\system32\urlmon.dll
2015-10-14 10:28 - 2015-09-16 03:58 - 12853760 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieframe.dll
2015-10-14 10:28 - 2015-09-16 03:58 - 00230400 _____ (Microsoft Corporation) C:\windows\SysWOW64\webcheck.dll
2015-10-14 10:28 - 2015-09-16 03:56 - 00689152 _____ (Microsoft Corporation) C:\windows\SysWOW64\msfeeds.dll
2015-10-14 10:28 - 2015-09-16 03:55 - 02052608 _____ (Microsoft Corporation) C:\windows\SysWOW64\inetcpl.cpl
2015-10-14 10:28 - 2015-09-16 03:55 - 01155072 _____ (Microsoft Corporation) C:\windows\SysWOW64\mshtmlmedia.dll
2015-10-14 10:28 - 2015-09-16 03:48 - 00800768 _____ (Microsoft Corporation) C:\windows\system32\ieapfltr.dll
2015-10-14 10:28 - 2015-09-16 03:37 - 02011136 _____ (Microsoft Corporation) C:\windows\SysWOW64\wininet.dll
2015-10-14 10:28 - 2015-09-16 03:34 - 01311232 _____ (Microsoft Corporation) C:\windows\SysWOW64\urlmon.dll
2015-10-14 10:28 - 2015-09-16 03:32 - 00710144 _____ (Microsoft Corporation) C:\windows\SysWOW64\ieapfltr.dll
2015-10-14 10:05 - 2015-10-01 19:06 - 00692672 _____ (Microsoft Corporation) C:\windows\system32\winload.efi
2015-10-14 10:05 - 2015-10-01 19:04 - 00616360 _____ (Microsoft Corporation) C:\windows\system32\winresume.efi
2015-10-14 10:05 - 2015-10-01 19:00 - 00147456 _____ (Microsoft Corporation) C:\windows\system32\appidpolicyconverter.exe
2015-10-14 10:05 - 2015-10-01 19:00 - 00063488 _____ (Microsoft Corporation) C:\windows\system32\setbcdlocale.dll
2015-10-14 10:05 - 2015-10-01 19:00 - 00059392 _____ (Microsoft Corporation) C:\windows\system32\appidapi.dll
2015-10-14 10:05 - 2015-10-01 19:00 - 00032768 _____ (Microsoft Corporation) C:\windows\system32\appidsvc.dll
2015-10-14 10:05 - 2015-10-01 19:00 - 00017920 _____ (Microsoft Corporation) C:\windows\system32\appidcertstorecheck.exe
2015-10-14 10:05 - 2015-10-01 18:50 - 00050688 _____ (Microsoft Corporation) C:\windows\SysWOW64\appidapi.dll
2015-10-14 10:05 - 2015-10-01 18:00 - 00061440 _____ (Microsoft Corporation) C:\windows\system32\Drivers\appid.sys
2015-10-14 10:05 - 2015-07-18 14:08 - 00984448 _____ (Microsoft Corporation) C:\windows\system32\ucrtbase.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00901264 _____ (Microsoft Corporation) C:\windows\SysWOW64\ucrtbase.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00066400 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-private-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00063840 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-private-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00022368 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-math-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00020832 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-math-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00019808 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00019808 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-string-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-string-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00017760 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-stdio-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00016224 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00016224 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-runtime-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00015712 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-convert-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00015712 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-convert-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-time-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-2-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-time-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00014176 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-2-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00013664 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00013664 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-process-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-heap-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-conio-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-process-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-heap-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00012640 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-conio-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-utility-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-locale-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-crt-environment-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-2-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-utility-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-locale-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-crt-environment-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-2-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00012128 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-1.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-eventing-provider-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l2-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-timezone-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l2-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-2-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-eventing-provider-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l2-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-timezone-l1-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l2-1-0.dll
2015-10-14 10:05 - 2015-07-18 14:08 - 00011616 _____ (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-2-0.dll
2015-10-14 10:03 - 2015-09-29 04:16 - 05569472 _____ (Microsoft Corporation) C:\windows\system32\ntoskrnl.exe
2015-10-14 10:03 - 2015-09-29 04:13 - 01730496 _____ (Microsoft Corporation) C:\windows\system32\ntdll.dll
2015-10-14 10:03 - 2015-09-29 04:11 - 00503808 _____ (Microsoft Corporation) C:\windows\system32\srcore.dll
2015-10-14 10:03 - 2015-09-29 04:11 - 00362496 _____ (Microsoft Corporation) C:\windows\system32\wow64win.dll
2015-10-14 10:03 - 2015-09-29 04:11 - 00243712 _____ (Microsoft Corporation) C:\windows\system32\wow64.dll
2015-10-14 10:03 - 2015-09-29 04:11 - 00215040 _____ (Microsoft Corporation) C:\windows\system32\winsrv.dll
2015-10-14 10:03 - 2015-09-29 04:11 - 00210944 _____ (Microsoft Corporation) C:\windows\system32\wdigest.dll
2015-10-14 10:03 - 2015-09-29 04:11 - 00086528 _____ (Microsoft Corporation) C:\windows\system32\TSpkg.dll
2015-10-14 10:03 - 2015-09-29 04:11 - 00050176 _____ (Microsoft Corporation) C:\windows\system32\srclient.dll
2015-10-14 10:03 - 2015-09-29 04:11 - 00013312 _____ (Microsoft Corporation) C:\windows\system32\wow64cpu.dll
2015-10-14 10:03 - 2015-09-29 04:10 - 01216512 _____ (Microsoft Corporation) C:\windows\system32\rpcrt4.dll
2015-10-14 10:03 - 2015-09-29 04:10 - 01164800 _____ (Microsoft Corporation) C:\windows\system32\kernel32.dll
2015-10-14 10:03 - 2015-09-29 04:10 - 00729088 _____ (Microsoft Corporation) C:\windows\system32\kerberos.dll
2015-10-14 10:03 - 2015-09-29 04:10 - 00424960 _____ (Microsoft Corporation) C:\windows\system32\KernelBase.dll
2015-10-14 10:03 - 2015-09-29 04:10 - 00315392 _____ (Microsoft Corporation) C:\windows\system32\msv1_0.dll
2015-10-14 10:03 - 2015-09-29 04:10 - 00296960 _____ (Microsoft Corporation) C:\windows\system32\rstrui.exe
2015-10-14 10:03 - 2015-09-29 04:10 - 00112640 _____ (Microsoft Corporation) C:\windows\system32\smss.exe
2015-10-14 10:03 - 2015-09-29 04:10 - 00044032 _____ (Microsoft Corporation) C:\windows\system32\cryptbase.dll
2015-10-14 10:03 - 2015-09-29 04:10 - 00043520 _____ (Microsoft Corporation) C:\windows\system32\csrsrv.dll
2015-10-14 10:03 - 2015-09-29 04:10 - 00022016 _____ (Microsoft Corporation) C:\windows\system32\credssp.dll
2015-10-14 10:03 - 2015-09-29 04:10 - 00016384 _____ (Microsoft Corporation) C:\windows\system32\ntvdm64.dll
2015-10-14 10:03 - 2015-09-29 04:09 - 00338432 _____ (Microsoft Corporation) C:\windows\system32\conhost.exe
2015-10-14 10:03 - 2015-09-29 04:09 - 00064000 _____ (Microsoft Corporation) C:\windows\system32\auditpol.exe
2015-10-14 10:03 - 2015-09-29 04:05 - 03990976 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntkrnlpa.exe
2015-10-14 10:03 - 2015-09-29 04:05 - 03936192 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntoskrnl.exe
2015-10-14 10:03 - 2015-09-29 04:05 - 00146432 _____ (Microsoft Corporation) C:\windows\system32\msaudite.dll
2015-10-14 10:03 - 2015-09-29 04:05 - 00060416 _____ (Microsoft Corporation) C:\windows\system32\msobjs.dll
2015-10-14 10:03 - 2015-09-29 04:02 - 01311768 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntdll.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00686080 _____ (Microsoft Corporation) C:\windows\system32\adtschema.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00006656 _____ (Microsoft Corporation) C:\windows\system32\apisetschema.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00006144 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00005120 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00004608 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00004096 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003584 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 04:01 - 00003072 ____H (Microsoft Corporation) C:\windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:59 - 00552960 _____ (Microsoft Corporation) C:\windows\SysWOW64\kerberos.dll
2015-10-14 10:03 - 2015-09-29 03:59 - 00259584 _____ (Microsoft Corporation) C:\windows\SysWOW64\msv1_0.dll
2015-10-14 10:03 - 2015-09-29 03:59 - 00172032 _____ (Microsoft Corporation) C:\windows\SysWOW64\wdigest.dll
2015-10-14 10:03 - 2015-09-29 03:59 - 00065536 _____ (Microsoft Corporation) C:\windows\SysWOW64\TSpkg.dll
2015-10-14 10:03 - 2015-09-29 03:59 - 00043008 _____ (Microsoft Corporation) C:\windows\SysWOW64\srclient.dll
2015-10-14 10:03 - 2015-09-29 03:59 - 00014336 _____ (Microsoft Corporation) C:\windows\SysWOW64\ntvdm64.dll
2015-10-14 10:03 - 2015-09-29 03:58 - 00050176 _____ (Microsoft Corporation) C:\windows\SysWOW64\auditpol.exe
2015-10-14 10:03 - 2015-09-29 03:58 - 00036864 _____ (Microsoft Corporation) C:\windows\SysWOW64\cryptbase.dll
2015-10-14 10:03 - 2015-09-29 03:58 - 00025600 _____ (Microsoft Corporation) C:\windows\SysWOW64\setup16.exe
2015-10-14 10:03 - 2015-09-29 03:58 - 00017408 _____ (Microsoft Corporation) C:\windows\SysWOW64\credssp.dll
2015-10-14 10:03 - 2015-09-29 03:57 - 01114112 _____ (Microsoft Corporation) C:\windows\SysWOW64\kernel32.dll
2015-10-14 10:03 - 2015-09-29 03:57 - 00665088 _____ (Microsoft Corporation) C:\windows\SysWOW64\rpcrt4.dll
2015-10-14 10:03 - 2015-09-29 03:57 - 00274944 _____ (Microsoft Corporation) C:\windows\SysWOW64\KernelBase.dll
2015-10-14 10:03 - 2015-09-29 03:57 - 00005120 _____ (Microsoft Corporation) C:\windows\SysWOW64\wow32.dll
2015-10-14 10:03 - 2015-09-29 03:53 - 00146432 _____ (Microsoft Corporation) C:\windows\SysWOW64\msaudite.dll
2015-10-14 10:03 - 2015-09-29 03:53 - 00060416 _____ (Microsoft Corporation) C:\windows\SysWOW64\msobjs.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00686080 _____ (Microsoft Corporation) C:\windows\SysWOW64\adtschema.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00006656 _____ (Microsoft Corporation) C:\windows\SysWOW64\apisetschema.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00005120 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00004096 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 03:49 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 02:50 - 00159232 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb.sys
2015-10-14 10:03 - 2015-09-29 02:49 - 00290816 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb10.sys
2015-10-14 10:03 - 2015-09-29 02:49 - 00129024 _____ (Microsoft Corporation) C:\windows\system32\Drivers\mrxsmb20.sys
2015-10-14 10:03 - 2015-09-29 02:43 - 00007680 _____ (Microsoft Corporation) C:\windows\SysWOW64\instnm.exe
2015-10-14 10:03 - 2015-09-29 02:43 - 00002048 _____ (Microsoft Corporation) C:\windows\SysWOW64\user.exe
2015-10-14 10:03 - 2015-09-29 02:40 - 00006144 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 02:40 - 00004608 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 02:40 - 00003584 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-10-14 10:03 - 2015-09-29 02:40 - 00003072 ____H (Microsoft Corporation) C:\windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-10-14 10:03 - 2015-09-25 19:07 - 03168768 _____ (Microsoft Corporation) C:\windows\system32\wucltux.dll
2015-10-14 10:03 - 2015-09-25 19:07 - 02607104 _____ (Microsoft Corporation) C:\windows\system32\wuaueng.dll
2015-10-14 10:03 - 2015-09-25 19:07 - 00696320 _____ (Microsoft Corporation) C:\windows\system32\wuapi.dll
2015-10-14 10:03 - 2015-09-25 19:07 - 00192512 _____ (Microsoft Corporation) C:\windows\system32\wuwebv.dll
2015-10-14 10:03 - 2015-09-25 19:07 - 00098816 _____ (Microsoft Corporation) C:\windows\system32\wudriver.dll
2015-10-14 10:03 - 2015-09-25 19:07 - 00037888 _____ (Microsoft Corporation) C:\windows\system32\wups2.dll
2015-10-14 10:03 - 2015-09-25 19:07 - 00036864 _____ (Microsoft Corporation) C:\windows\system32\wups.dll
2015-10-14 10:03 - 2015-09-25 19:06 - 00140288 _____ (Microsoft Corporation) C:\windows\system32\wuauclt.exe
2015-10-14 10:03 - 2015-09-25 19:06 - 00091136 _____ (Microsoft Corporation) C:\windows\system32\WinSetupUI.dll
2015-10-14 10:03 - 2015-09-25 19:06 - 00037888 _____ (Microsoft Corporation) C:\windows\system32\wuapp.exe
2015-10-14 10:03 - 2015-09-25 19:06 - 00012288 _____ (Microsoft Corporation) C:\windows\system32\wu.upgrade.ps.dll
2015-10-14 10:03 - 2015-09-25 18:59 - 00566784 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapi.dll
2015-10-14 10:03 - 2015-09-25 18:59 - 00174080 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuwebv.dll
2015-10-14 10:03 - 2015-09-25 18:59 - 00093696 _____ (Microsoft Corporation) C:\windows\SysWOW64\wudriver.dll
2015-10-14 10:03 - 2015-09-25 18:59 - 00030208 _____ (Microsoft Corporation) C:\windows\SysWOW64\wups.dll
2015-10-14 10:03 - 2015-09-25 18:58 - 00035328 _____ (Microsoft Corporation) C:\windows\SysWOW64\wuapp.exe
2015-10-14 10:03 - 2015-09-15 19:17 - 00157016 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecpkg.sys
2015-10-14 10:03 - 2015-09-15 19:17 - 00097112 _____ (Microsoft Corporation) C:\windows\system32\Drivers\ksecdd.sys
2015-10-14 10:03 - 2015-09-15 19:11 - 01461760 _____ (Microsoft Corporation) C:\windows\system32\lsasrv.dll
2015-10-14 10:03 - 2015-09-15 19:11 - 00342016 _____ (Microsoft Corporation) C:\windows\system32\schannel.dll
2015-10-14 10:03 - 2015-09-15 19:11 - 00309760 _____ (Microsoft Corporation) C:\windows\system32\ncrypt.dll
2015-10-14 10:03 - 2015-09-15 19:11 - 00136192 _____ (Microsoft Corporation) C:\windows\system32\sspicli.dll
2015-10-14 10:03 - 2015-09-15 19:11 - 00029184 _____ (Microsoft Corporation) C:\windows\system32\sspisrv.dll
2015-10-14 10:03 - 2015-09-15 19:11 - 00028160 _____ (Microsoft Corporation) C:\windows\system32\secur32.dll
2015-10-14 10:03 - 2015-09-15 19:10 - 00031232 _____ (Microsoft Corporation) C:\windows\system32\lsass.exe
2015-10-14 10:03 - 2015-09-15 18:36 - 00248832 _____ (Microsoft Corporation) C:\windows\SysWOW64\schannel.dll
2015-10-14 10:03 - 2015-09-15 18:36 - 00221184 _____ (Microsoft Corporation) C:\windows\SysWOW64\ncrypt.dll
2015-10-14 10:03 - 2015-09-15 18:36 - 00022016 _____ (Microsoft Corporation) C:\windows\SysWOW64\secur32.dll
2015-10-14 10:03 - 2015-09-15 18:35 - 00096768 _____ (Microsoft Corporation) C:\windows\SysWOW64\sspicli.dll
2015-10-14 10:03 - 2015-08-06 19:04 - 14176768 _____ (Microsoft Corporation) C:\windows\system32\shell32.dll
2015-10-14 10:03 - 2015-08-06 19:03 - 01866752 _____ (Microsoft Corporation) C:\windows\system32\ExplorerFrame.dll
2015-10-14 10:03 - 2015-08-06 18:44 - 12875776 _____ (Microsoft Corporation) C:\windows\SysWOW64\shell32.dll
2015-10-14 10:03 - 2015-08-06 18:44 - 01498624 _____ (Microsoft Corporation) C:\windows\SysWOW64\ExplorerFrame.dll
2015-10-10 17:12 - 2015-11-01 17:48 - 00000000 ____D C:\Users\GA\Documents\FIFA 11
2015-10-10 17:10 - 2015-11-03 12:10 - 00000000 ____D C:\ProgramData\Origin
2015-10-10 17:10 - 2015-11-03 12:06 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2015-10-10 17:10 - 2015-11-03 12:06 - 00000000 ____D C:\Program Files (x86)\Origin
2015-10-10 17:10 - 2015-10-10 17:10 - 00000994 _____ C:\Users\Public\Desktop\Origin.lnk
2015-10-10 17:10 - 2015-10-10 17:10 - 00000000 ____D C:\Users\GA\AppData\Roaming\Origin
2015-10-10 17:08 - 2015-11-03 12:05 - 00000000 ____D C:\ProgramData\Electronic Arts
2015-10-10 17:08 - 2015-10-10 17:08 - 00000000 ____D C:\Program Files (x86)\Electronic Arts
2015-10-10 17:07 - 2015-10-10 17:07 - 00000000 ____D C:\Users\GA\AppData\Roaming\Leadertech
2015-10-10 16:46 - 2015-11-03 12:06 - 00000000 ____D C:\Program Files (x86)\EA Sports
2015-10-10 16:46 - 2008-10-15 05:22 - 05631312 _____ (Microsoft Corporation) C:\windows\system32\D3DX9_40.dll
2015-10-10 16:46 - 2008-10-15 05:22 - 02605920 _____ (Microsoft Corporation) C:\windows\system32\D3DCompiler_40.dll
2015-10-10 16:46 - 2008-10-15 05:22 - 02036576 _____ (Microsoft Corporation) C:\windows\SysWOW64\D3DCompiler_40.dll
2015-10-10 16:46 - 2008-10-15 05:22 - 00519000 _____ (Microsoft Corporation) C:\windows\system32\d3dx10_40.dll
2015-10-10 16:46 - 2008-10-15 05:22 - 00452440 _____ (Microsoft Corporation) C:\windows\SysWOW64\d3dx10_40.dll
2015-10-09 11:30 - 2015-11-02 15:00 - 00000000 ____D C:\Users\GA\Documents\aa VÁNOCE

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2015-11-05 08:29 - 2009-07-14 05:45 - 00028080 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-11-05 08:29 - 2009-07-14 05:45 - 00028080 ____H C:\windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-11-05 08:20 - 2015-10-01 08:36 - 00065536 _____ C:\windows\system32\Ikeext.etl
2015-11-05 08:20 - 2011-11-09 15:51 - 00000948 _____ C:\windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-11-05 08:20 - 2011-11-09 11:46 - 00156287 _____ C:\ProgramData\lxebscan.log
2015-11-05 08:19 - 2009-07-14 06:08 - 00000006 ____H C:\windows\Tasks\SA.DAT
2015-11-05 08:17 - 2011-11-09 15:51 - 00000952 _____ C:\windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-11-05 08:12 - 2011-11-09 09:27 - 03692032 ___SH C:\Users\GA\Desktop\Thumbs.db
2015-11-05 08:11 - 2009-07-14 04:20 - 00000000 ____D C:\windows\tracing
2015-11-04 13:07 - 2012-10-15 07:50 - 00000914 _____ C:\windows\Tasks\Adobe Flash Player Updater.job
2015-11-04 10:09 - 2015-08-31 18:57 - 00003942 _____ C:\windows\System32\Tasks\User_Feed_Synchronization-{79C62ADF-0C41-47AE-BFCC-0A81587F3054}
2015-11-03 14:18 - 2011-11-09 15:51 - 00000000 ____D C:\Program Files\Google
2015-11-03 14:18 - 2011-11-09 15:51 - 00000000 ____D C:\Program Files (x86)\Google
2015-11-03 14:15 - 2015-02-08 17:14 - 00000000 ____D C:\Users\GA\AppData\Roaming\Seznam.cz
2015-11-03 14:09 - 2011-11-09 15:51 - 00000000 ____D C:\Users\GA\AppData\Local\Google
2015-11-03 14:09 - 2011-11-09 15:50 - 00000000 ____D C:\ProgramData\Google
2015-11-03 14:07 - 2011-05-29 18:59 - 00000000 ___RD C:\Program Files (x86)\Skype
2015-11-03 12:36 - 2015-01-01 18:23 - 00003886 _____ C:\windows\System32\Tasks\Adobe Acrobat Update Task
2015-11-03 12:08 - 2015-06-29 20:30 - 00000000 ____D C:\ProgramData\Garmin
2015-11-03 12:08 - 2011-11-08 19:08 - 00000000 ____D C:\Users\GA
2015-11-03 12:06 - 2015-09-06 18:23 - 00000000 ____D C:\Users\GA\AppData\LocalLow\Canon Easy-WebPrint EX
2015-11-03 12:06 - 2015-06-30 21:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Garmin
2015-11-03 12:06 - 2015-06-29 20:29 - 00000000 ____D C:\ProgramData\Package Cache
2015-11-03 12:06 - 2015-06-29 20:29 - 00000000 ____D C:\Program Files (x86)\Garmin
2015-11-03 12:06 - 2015-04-15 14:49 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2015-11-03 12:06 - 2015-04-04 12:46 - 00000000 ___SD C:\windows\system32\GWX
2015-11-03 12:06 - 2015-03-27 20:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TopCD
2015-11-03 12:06 - 2015-03-07 13:23 - 00000000 ____D C:\ProgramData\StarStableOnline
2015-11-03 12:06 - 2015-03-07 13:23 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Star Stable
2015-11-03 12:06 - 2015-03-07 13:23 - 00000000 ____D C:\Program Files (x86)\Star Stable Entertainment AB
2015-11-03 12:06 - 2011-11-09 11:54 - 00000000 ____D C:\ProgramData\Lx_cats
2015-11-03 12:06 - 2011-05-29 18:26 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2015-11-03 12:06 - 2010-11-21 08:16 - 00000000 ___RD C:\Users\Public\Recorded TV
2015-11-03 12:06 - 2009-07-14 06:32 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2015-11-03 12:06 - 2009-07-14 04:20 - 00000000 ____D C:\windows\registration
2015-11-03 12:05 - 2015-03-27 20:18 - 00000000 ____D C:\TopCD
2015-11-03 12:05 - 2012-11-07 14:49 - 00000000 ____D C:\Program Files\ESET
2015-11-02 19:29 - 2014-01-09 12:01 - 00000000 ____D C:\Exchange
2015-11-02 14:52 - 2015-10-02 12:27 - 00000000 ____D C:\Users\GA\Desktop\Morkus
2015-11-02 12:32 - 2013-09-27 09:47 - 00000000 ____D C:\Users\GA\Desktop\Nájmy
2015-11-02 09:52 - 2015-07-01 13:04 - 00000000 ____D C:\Users\GA\Desktop\Obědy
2015-11-01 19:29 - 2015-06-30 21:19 - 00000000 ____D C:\Users\GA\Documents\Garmin
2015-11-01 19:24 - 2013-01-22 15:14 - 00000000 ____D C:\Users\GA\AppData\Roaming\Kastner software
2015-11-01 19:24 - 2013-01-22 15:13 - 00000000 ____D C:\ProgramData\KASTNER software
2015-10-30 20:01 - 2009-07-14 04:20 - 00000000 ____D C:\windows\system32\NDF
2015-10-30 19:49 - 2015-02-22 19:12 - 00000000 ____D C:\windows\Minidump
2015-10-28 08:08 - 2013-04-24 09:32 - 00000000 ____D C:\Program Files\Microsoft Office 15
2015-10-23 07:20 - 2012-05-16 09:51 - 00002194 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-10-19 11:05 - 2015-08-12 10:38 - 00174080 _____ C:\Users\GA\Desktop\Faktura Delicates JS doplňování.xls
2015-10-18 17:13 - 2015-09-10 16:44 - 00000000 ____D C:\Users\GA\Desktop\Eliška
2015-10-17 12:06 - 2012-10-15 07:50 - 00780488 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerApp.exe
2015-10-17 12:06 - 2012-10-15 07:50 - 00003852 _____ C:\windows\System32\Tasks\Adobe Flash Player Updater
2015-10-17 12:06 - 2012-01-03 08:08 - 00142536 _____ (Adobe Systems Incorporated) C:\windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-10-16 07:13 - 2012-10-15 11:43 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2015-10-15 18:00 - 2014-12-11 07:53 - 00000000 ____D C:\windows\system32\appraiser
2015-10-15 18:00 - 2014-05-06 14:59 - 00000000 ___SD C:\windows\system32\CompatTel
2015-10-15 08:31 - 2009-07-14 04:20 - 00000000 ____D C:\windows\rescache
2015-10-13 19:37 - 2014-12-10 14:10 - 00000000 ____D C:\Users\GA\Desktop\Stroje do Brna
2015-10-13 18:41 - 2015-09-06 18:24 - 00000000 ____D C:\ProgramData\CanonIJPLM
2015-10-13 16:48 - 2011-11-09 09:26 - 00000000 ____D C:\Users\GA\Desktop\Majetek Zetor HB
2015-10-12 18:00 - 2015-05-26 10:55 - 00000000 ____D C:\Users\GA\Desktop\Draci
2015-10-12 16:39 - 2009-07-14 06:08 - 00032564 _____ C:\windows\Tasks\SCHEDLGU.TXT
2015-10-08 15:08 - 2015-04-04 12:46 - 00000000 ___SD C:\windows\SysWOW64\GWX
2015-10-07 12:07 - 2013-09-09 10:36 - 00000000 ____D C:\Users\GA\Desktop\ing.Veselý
2015-10-06 13:42 - 2015-08-29 09:11 - 00000000 ____D C:\Users\GA\Desktop\Hasiči
2015-10-06 13:39 - 2014-01-28 14:13 - 00000000 ____D C:\Users\GA\Desktop\Toman – znalecký posudek
2015-10-06 08:32 - 2014-03-06 11:53 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service

==================== Files in the root of some directories =======

2014-04-30 12:25 - 2014-05-29 11:51 - 0001057 _____ () C:\Users\GA\AppData\Roaming\vso_ts_preview.xml
2015-11-03 12:37 - 2015-11-03 12:37 - 0007598 _____ () C:\Users\GA\AppData\Local\Resmon.ResmonCfg
2015-10-02 09:19 - 2015-10-02 09:19 - 0000000 _____ () C:\ProgramData\cmn_upld.log
2011-11-09 11:54 - 2011-11-09 11:54 - 0000252 _____ () C:\ProgramData\FastPics.log
2011-11-09 11:54 - 2014-07-05 17:03 - 0002609 _____ () C:\ProgramData\lxeb.log
2012-01-16 11:50 - 2015-10-02 09:18 - 0003738 _____ () C:\ProgramData\lxebJSW.log
2011-11-09 11:46 - 2015-11-05 08:20 - 0156287 _____ () C:\ProgramData\lxebscan.log
2015-10-02 09:19 - 2015-10-02 09:19 - 0000000 _____ () C:\ProgramData\LxWbGwLog.log
2015-10-22 11:45 - 2015-10-22 11:45 - 0291063 _____ () C:\ProgramData\SPLB88C.tmp
2011-11-09 11:41 - 2011-11-09 11:41 - 0000000 _____ () C:\ProgramData\UpdaterLog.txt

Some files in TEMP:
====================
C:\Users\GA\AppData\Local\Temp\{E638ABC1-0067-474b-A379-87CFE81E7848}.exe


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\windows\system32\winlogon.exe => File is digitally signed
C:\windows\system32\wininit.exe => File is digitally signed
C:\windows\SysWOW64\wininit.exe => File is digitally signed
C:\windows\explorer.exe => File is digitally signed
C:\windows\SysWOW64\explorer.exe => File is digitally signed
C:\windows\system32\svchost.exe => File is digitally signed
C:\windows\SysWOW64\svchost.exe => File is digitally signed
C:\windows\system32\services.exe => File is digitally signed
C:\windows\system32\User32.dll => File is digitally signed
C:\windows\SysWOW64\User32.dll => File is digitally signed
C:\windows\system32\userinit.exe => File is digitally signed
C:\windows\SysWOW64\userinit.exe => File is digitally signed
C:\windows\system32\rpcss.dll => File is digitally signed
C:\windows\system32\dnsapi.dll => File is digitally signed
C:\windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-11-01 18:07

==================== End of FRST.txt ============================



===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: (TI30787700A) (Fixed) (Total:901.67 GB) (Free:478.54 GB) NTFS ==>[system with boot components (obtained from drive)]

Available physical RAM: 2659.54 MB
Total physical RAM: 4045.43 MB
Percentage of memory in use: 34%

==================== MBR and Partition Table ==================

Disk: 0 (MBR Code: Windows 7 or Vista) (Size: 931.5 GB) (Disk ID: 86D8BB9F)
Partition 1: (Active) - (Size=1.5 GB) - (Type=27)
Partition 2: (Not Active) - (Size=901.7 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=28.4 GB) - (Type=17)

==================== Scheduled Tasks (whitelisted) ==================

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\windows\Tasks\Adobe Flash Player Updater.job => C:\windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================

AlternateDataStreams: C:\ProgramData\TEMP:D1B5B4F1

==================== Security Center ==================

AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)

  
***** Velikost "Plochy" *****

Velikost slozky "C:\Users\GA\Desktop" je 299611 MB.
 
 
***** Startup Programs *****
 
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe" 

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AndroidSync
C:\Program Files (x86)\Android-Sync\AndroidSync.exe -m [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ApnUpdater
"C:\Program Files (x86)\Ask.com\Updater\Updater.exe" [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Apoint
C:\Program Files\Apoint2K\Apoint.exe 

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EzPrint
"C:\Program Files (x86)\Lexmark Pro200-S500 Series\ezprint.exe" 

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HSON
%ProgramFiles%\TOSHIBA\TBS\HSON.exe  [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IMSS
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe" 

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IntelWireless
"C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel Wireless Tray [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ITSecMng
%ProgramFiles%\TOSHIBA\Bluetooth Toshiba Stack\ItSecMng.exe /START [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\lxebmon.exe
"C:\Program Files (x86)\Lexmark Pro200-S500 Series\lxebmon.exe" 

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NBAgent
"C:\Program Files (x86)\Nero\Nero 10\Nero BackItUp\NBAgent.exe" /WinStart [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RtHDVCpl
C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe -s [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SSDMonitor
C:\Program Files (x86)\Common Files\PC Tools\sMonitor\SSDMonitor.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StartCCC
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TCrdMain
%ProgramFiles%\TOSHIBA\FlashCards\TCrdMain.exe  [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TDLPowerCtrl
%ProgramFiles%\TOSHIBA\TOSHIBA Intelligent Display Management\TDLPowerCtrl.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Teco
"%ProgramFiles%\TOSHIBA\TECO\Teco.exe" /r [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TFPUPWDBankService
C:\Program Files\TOSHIBA\TFPU\TFPUPWDBank.exe /start [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TFPUService
C:\Program Files\TOSHIBA\TFPU\TFPUTaskMonitor.exe /start [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TNRotate
%ProgramFiles(x86)%\TOSHIBA\TNRotate\TNRotate.exe  [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TOSDCR
%ProgramFiles%\TOSHIBA\PasswordUtility\TOSDCR.exe  [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Toshiba Registration
C:\Program Files\TOSHIBA\Registration\ToshibaReminder.exe 

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Toshiba TEMPRO
C:\Program Files (x86)\Toshiba TEMPRO\TemproTray.exe 

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ToshibaServiceStation
C:\Program Files (x86)\TOSHIBA\TOSHIBA Service Station\ToshibaServiceStation.exe /hide:60 [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TosNC
%ProgramFiles%\Toshiba\BulletinBoard\TosNcCore.exe  [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TosReelTimeMonitor
%ProgramFiles%\TOSHIBA\ReelTime\TosReelTimeMonitor.exe  [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TosSENotify
C:\Program Files\TOSHIBA\TOSHIBA HDD SSD Alert\TosWaitSrv.exe 

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TosVolRegulator
C:\Program Files\TOSHIBA\TosVolRegulator\TosVolRegulator.exe 

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TosWaitSrv
%ProgramFiles%\TOSHIBA\TPHM\TosWaitSrv.exe  [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TPwrMain
%ProgramFiles%\TOSHIBA\Power Saver\TPwrMain.EXE [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TSleepSrv
%ProgramFiles(x86)%\TOSHIBA\TOSHIBA Sleep Utility\TSleepSrv.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TSUScheduler
%ProgramFiles(x86)%\TOSHIBA\Sync Utility\TosSyncScheduler.exe [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\tvncontrol
"C:\Program Files\TightVNC\tvnserver.exe" -controlservice -slave [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TWebCamera
"C:\Program Files (x86)\TOSHIBA\TOSHIBA Web Camera Application\TWebCamera.exe" autorun [x]

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Bluetooth Manager.lnk
C:\PROGRA~2\Toshiba\BLUETO~1\TosBtMng.exe  

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^McAfee Security Scan Plus.lnk
C:\PROGRA~1\MCAFEE~1\385C9A~1.150\SSSCHE~1.EXE  

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^MobileGo Service.lnk
C:\PROGRA~2\WONDER~1\MobileGo\MOBILE~1.EXE  

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Toshiba Places Icon Utility.lnk
C:\PROGRA~1\TOSHIBA\TOSHIB~2\TOSDIM~1.EXE  

HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^GA^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Odeslat do OneNote.lnk
C:\PROGRA~1\MICROS~3\root\office15\ONENOTEM.EXE /tsr [x]

 
***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
    EnableFirewall    REG_DWORD    0x1
    DisableNotifications    REG_DWORD    0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
    EnableFirewall    REG_DWORD    0x1
    DisableNotifications    REG_DWORD    0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
 
 
***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000

 
==================== End Of Log ==============================
Přílohy
Addition.7z
(12.47 KiB) Staženo 110 x

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalé PC

#4 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

jerza
Návštěvník
Návštěvník
Příspěvky: 9
Registrován: 04 lis 2015 13:14

Re: Pomalé PC

#5 Příspěvek od jerza »

Dobrý den

Tak nastala ta situace, kterou jsem nechtěl ale bohužel jsem musel NTB kompletně přeinstalovat.
Takže vyřešeno reinstalací.
Jinak moc děkuji za ochotu.
Můžete zamčít.

Děkuji

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118275
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Pomalé PC

#6 Příspěvek od Rudy »

Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno