Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
rosinho
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 20 dub 2014 13:25

Prosím o kontrolu logu

#1 Příspěvek od rosinho »

Zdravím,

poprosil bych o kontrolu logu, notebook se poslední dobou začal chovat divně, přestal fungovat microphone od sluchátek, sem tam se trošku sekne, a začal mít problémy youtube, děkuji.

Logfile of random's system information tool 1.10 (written by random/random)
Run by Rozsy at 2014-11-28 21:29:05
Microsoft Windows 8.1
System drive C: has 805 GB (86%) free of 938 GB
Total RAM: 8043 MB (74% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:29:08, on 28. 11. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe
C:\Program Files (x86)\CyberLink\Webcam Sharing Manager\StreamProvider.exe
C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe
C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files\AVAST Software\Avast\AvastUI.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\totalcmd\TOTALCMD.EXE
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Rozsy.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.bing.com?pc=CMNTDFJS
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: BHO_Startup - {3134413B-49B4-425C-98A5-893C1F195601} - c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll (file missing)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [PDF Complete] C:\Program Files (x86)\PDF Complete\pdfsty.exe
O4 - HKLM\..\Run: [StartCCC] "c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [BtTray] "c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe"
O4 - HKLM\..\Run: [CLWCSM] "c:\Program Files (x86)\CyberLink\Webcam Sharing Manager\StreamProvider.exe"
O4 - HKLM\..\Run: [File Sanitizer] c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe
O4 - HKLM\..\Run: [YouCam Mirage] "c:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
O4 - HKLM\..\Run: [YouCam Tray] "c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe" /s
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKLM\..\Run: [AccelerometerSysTrayApplet] C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE/3000
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\Program Files (x86)\Microsoft Office\Office12\REFIEBAR.DLL
O9 - Extra button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - res://C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll/204 (file missing)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: BlueSoleilCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: BsHelpCS - IVT Corporation - C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Služba DigitalPersona Authentication Service (DpHost) - DigitalPersona, Inc. - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: HP Device Locking / Auditing (FLCDLOCK) - Hewlett-Packard Company - c:\windows\SysWOW64\flcdlock.exe
O23 - Service: FLEXnet Licensing Service 64 - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: HP HotSpot 1.0 Service (HotSpotSrv) - Hewlett-Packard Development Company, L.P. - C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP File Sanitizer (HPFSService) - Hewlett-Packard - c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: @oem32.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\WINDOWS\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Intel(R) Integrated Clock Controller Service - Intel(R) ICCS (ICCS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: PDF Document Manager (pdfcDispatcher) - PDF Complete Inc - C:\Program Files (x86)\PDF Complete\pdfsvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13891 bytes

======Listing Processes======






wininit.exe
winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
atieclxx
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
"C:\Program Files\IDT\WDM\STacSV64.exe"
C:\WINDOWS\system32\Hpservice.exe
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\rundll32.exe C:\WINDOWS\System32\shell32.dll,SHCreateLocalServerRunDll {995C996E-D918-4a8c-A302-45719A6F4EA7} -Embedding
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
taskhostex.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\system32\svchost.exe -k apphost
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
dashost.exe {4f084fb0-380c-4cd7-9d3d64a862dbb0ef}
"c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe"
"c:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe"
"C:\Program Files (x86)\PDF Complete\pdfsvc.exe" /startedbyscm:66B66708-40E2BE4D-pdfcService
C:\windows\system32\vcsFPService.exe
"C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPCardEngine.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe"
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
igfxEM.exe
igfxHK.exe
igfxTray.exe
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
"C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe"
"C:\Program Files (x86)\CyberLink\Webcam Sharing Manager\StreamProvider.exe"
"C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe"
"C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe"
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
"C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" /start
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe" Restart Start EEU 52 logonui.exe
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="5652.0.1087537424\900178740" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,17,38 --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3958 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/control/EmbeddedSearch/Group5 pct:10e stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/NewSuggestType_A9_Stable_R2/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/ControlForLargePopulation/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_58/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5652.2.287563288\2126711457" /prefetch:673131151
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/control/EmbeddedSearch/Group5 pct:10e stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/NewSuggestType_A9_Stable_R2/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/ControlForLargePopulation/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_58/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --extension-process --enable-webrtc-hw-h264-encoding --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5652.3.702087770\1514843327" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/control/EmbeddedSearch/Group5 pct:10e stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/NewSuggestType_A9_Stable_R2/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/ControlForLargePopulation/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_58/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5652.9.1987201987\511640111" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/control/EmbeddedSearch/Group5 pct:10e stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/NewSuggestType_A9_Stable_R2/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/ControlForLargePopulation/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_58/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5652.11.1580816989\1896570750" /prefetch:673131151
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"

"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/control/EmbeddedSearch/Group5 pct:10e stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/NewSuggestType_A9_Stable_R2/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/ControlForLargePopulation/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_58/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5652.17.1170853677\1420926182" /prefetch:673131151
"C:\totalcmd\TOTALCMD.EXE"
"C:\Users\Rozsy\Downloads\RSITx64 (1).exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=cs --force-fieldtrials="AutoReloadExperiment/Enabled/AutoReloadVisibleOnlyExperiment/Enabled/BrowserBlacklist/Enabled/DomRel-Enable/control/EmbeddedSearch/Group5 pct:10e stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/NewSuggestType_A9_Stable_R2/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/PrerenderLocalPredictorSpec/LocalPredictor=Disabled/QUIC/ControlForLargePopulation/RapporRollout/Enabled/RememberCertificateErrorDecisions/Default/SDCH/EnabledAll/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/Test0PercentDefault/group_01/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group6/UMA-New-Install-Uniformity-Trial/Control/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_10/UMA-Uniformity-Trial-1-Percent/group_58/UMA-Uniformity-Trial-10-Percent/group_05/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/default/UMA-Uniformity-Trial-5-Percent/group_02/UMA-Uniformity-Trial-50-Percent/default/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="5652.18.1262345233\1834463380" /prefetch:673131151
C:\WINDOWS\system32\svchost.exe -k GPSvcGroup

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\HPCeeScheduleForRozsy.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForRozsy (null)
C:\WINDOWS\tasks\Synaptics TouchPad Enhancements.job - C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-11-28 705448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3134413B-49B4-425C-98A5-893C1F195601}]
HP File Sanitizer - c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\IEBHO.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-11-28 586968]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\windows\system32\igfxtray.exe [2014-10-01 448912]
"HotKeysCmds"=C:\windows\system32\hkcmd.exe []
"Persistence"=C:\windows\system32\igfxpers.exe []
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-10-30 2804976]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe []

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"NCPluginUpdater"=C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [2014-10-21 21720]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-01-10 56568]
"PDF Complete"=C:\Program Files (x86)\PDF Complete\pdfsty.exe [2013-02-07 683656]
"StartCCC"=c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2013-02-25 642656]
"BtTray"=c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [2013-01-10 379904]
"CLWCSM"=c:\Program Files (x86)\CyberLink\Webcam Sharing Manager\StreamProvider.exe [2013-02-20 249096]
"File Sanitizer"=c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [2013-03-06 13685464]
"YouCam Mirage"=c:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [2013-02-01 136488]
"YouCam Tray"=c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe [2013-02-01 167488]
"CLMLServer_For_P2G8"=c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-11-21 111136]
"CLVirtualDrive"=c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-11-21 493088]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-11-28 5226600]
"AccelerometerSysTrayApplet"=C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [2013-10-16 77088]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-08-21 959176]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2014-05-16 336672]
""= []
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2014-11-03 3835728]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
.scr - open - C:\WINDOWS\system32\notepad.exe "%1"
.scr - install -
.scr - config -

======List of files/folders created in the last 1 month======

2014-11-28 21:29:05 ----D---- C:\rsit
2014-11-28 21:04:52 ----A---- C:\WINDOWS\system32\aswBoot.exe
2014-11-28 21:04:49 ----A---- C:\WINDOWS\avastSS.scr
2014-11-23 00:06:14 ----D---- C:\ProgramData\FLEXnet
2014-11-22 23:54:21 ----D---- C:\Program Files\Common Files\Macrovision Shared
2014-11-22 23:52:46 ----D---- C:\Program Files\Common Files\Autodesk Shared
2014-11-22 23:52:46 ----D---- C:\Program Files\Autodesk
2014-11-22 23:49:25 ----A---- C:\WINDOWS\SYSWOW64\d3dx10_41.dll
2014-11-22 23:49:25 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_41.dll
2014-11-22 23:49:25 ----A---- C:\WINDOWS\system32\d3dx10_41.dll
2014-11-22 23:49:25 ----A---- C:\WINDOWS\system32\D3DCompiler_41.dll
2014-11-22 23:49:24 ----A---- C:\WINDOWS\SYSWOW64\D3DX9_41.dll
2014-11-22 23:49:24 ----A---- C:\WINDOWS\system32\D3DX9_41.dll
2014-11-22 23:48:56 ----A---- C:\WINDOWS\SYSWOW64\d3dx9_30.dll
2014-11-22 23:48:56 ----A---- C:\WINDOWS\system32\d3dx9_30.dll
2014-11-22 23:39:37 ----D---- C:\Users\Rozsy\AppData\Roaming\Autodesk
2014-11-22 23:39:37 ----D---- C:\ProgramData\Autodesk
2014-11-20 15:46:47 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2014-11-20 15:46:47 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2014-11-20 15:46:47 ----A---- C:\WINDOWS\system32\pku2u.dll
2014-11-20 15:46:47 ----A---- C:\WINDOWS\system32\kerberos.dll
2014-11-13 00:19:27 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2014-11-13 00:19:27 ----A---- C:\WINDOWS\system32\schannel.dll
2014-11-13 00:19:26 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2014-11-13 00:19:26 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2014-11-13 00:19:26 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2014-11-13 00:18:56 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2014-11-13 00:18:56 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-11-13 00:18:56 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-11-13 00:18:56 ----A---- C:\WINDOWS\system32\certcli.dll
2014-11-13 00:18:55 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2014-11-13 00:18:55 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-11-13 00:18:55 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-11-13 00:18:55 ----A---- C:\WINDOWS\system32\adtschema.dll
2014-11-13 00:18:54 ----A---- C:\WINDOWS\system32\rfxvmt.dll
2014-11-13 00:18:54 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2014-11-13 00:18:53 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll
2014-11-13 00:18:53 ----A---- C:\WINDOWS\system32\rdpudd.dll
2014-11-13 00:18:53 ----A---- C:\WINDOWS\system32\msaudite.dll
2014-11-13 00:17:47 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2014-11-13 00:17:47 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-11-13 00:17:45 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-11-13 00:17:44 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-11-13 00:17:44 ----A---- C:\WINDOWS\system32\msi.dll
2014-11-13 00:17:44 ----A---- C:\WINDOWS\system32\authui.dll
2014-11-13 00:17:43 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll
2014-11-13 00:17:43 ----A---- C:\WINDOWS\system32\msihnd.dll
2014-11-13 00:17:43 ----A---- C:\WINDOWS\system32\consent.exe
2014-11-13 00:17:43 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-11-13 00:17:36 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2014-11-13 00:17:36 ----A---- C:\WINDOWS\system32\wuaueng.dll
2014-11-13 00:17:36 ----A---- C:\WINDOWS\system32\wuapi.dll
2014-11-13 00:17:35 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2014-11-13 00:17:35 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2014-11-13 00:17:35 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2014-11-13 00:17:35 ----A---- C:\WINDOWS\system32\wucltux.dll
2014-11-13 00:17:34 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2014-11-13 00:17:34 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2014-11-13 00:17:34 ----A---- C:\WINDOWS\system32\wuwebv.dll
2014-11-13 00:17:34 ----A---- C:\WINDOWS\system32\wups2.dll
2014-11-13 00:17:34 ----A---- C:\WINDOWS\system32\wups.dll
2014-11-13 00:17:34 ----A---- C:\WINDOWS\system32\wudriver.dll
2014-11-13 00:17:34 ----A---- C:\WINDOWS\system32\wuauclt.exe
2014-11-13 00:17:34 ----A---- C:\WINDOWS\system32\wuapp.exe
2014-11-13 00:17:34 ----A---- C:\WINDOWS\system32\wuaext.dll
2014-11-13 00:16:40 ----A---- C:\WINDOWS\system32\user32.dll
2014-11-13 00:16:39 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2014-11-13 00:16:38 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2014-11-13 00:16:38 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2014-11-13 00:16:37 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2014-11-13 00:16:35 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2014-11-13 00:16:35 ----A---- C:\WINDOWS\system32\winshfhc.dll
2014-11-13 00:15:52 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-11-13 00:15:51 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-11-13 00:15:24 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-11-13 00:15:18 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-11-13 00:15:13 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-11-13 00:15:11 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-11-13 00:15:10 ----A---- C:\WINDOWS\system32\wininet.dll
2014-11-13 00:15:09 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-11-13 00:15:09 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-11-13 00:15:08 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-11-13 00:15:08 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-11-13 00:15:07 ----A---- C:\WINDOWS\system32\inetcomm.dll
2014-11-13 00:15:07 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-11-13 00:15:06 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2014-11-13 00:15:06 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-11-13 00:15:04 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2014-11-13 00:15:04 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-11-13 00:15:04 ----A---- C:\WINDOWS\system32\jscript.dll
2014-11-13 00:15:03 ----A---- C:\WINDOWS\system32\ieui.dll
2014-11-13 00:15:02 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2014-11-13 00:15:02 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-11-13 00:15:01 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-11-13 00:15:01 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-11-13 00:15:01 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2014-11-13 00:15:01 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-11-13 00:14:59 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-11-13 00:14:59 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-11-13 00:14:59 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-11-13 00:14:58 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-11-13 00:14:58 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-11-13 00:14:58 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-11-13 00:14:57 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2014-11-13 00:14:57 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-11-13 00:14:57 ----A---- C:\WINDOWS\system32\webcheck.dll
2014-11-13 00:14:57 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-11-13 00:14:56 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2014-11-13 00:14:55 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2014-11-13 00:14:55 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-11-13 00:14:55 ----A---- C:\WINDOWS\system32\hlink.dll
2014-11-13 00:14:54 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe
2014-11-13 00:14:54 ----A---- C:\WINDOWS\SYSWOW64\iesysprep.dll
2014-11-13 00:14:54 ----A---- C:\WINDOWS\system32\msrating.dll
2014-11-13 00:14:54 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-11-13 00:14:54 ----A---- C:\WINDOWS\system32\iesysprep.dll
2014-11-13 00:14:54 ----A---- C:\WINDOWS\system32\iepeers.dll
2014-11-13 00:14:54 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-11-13 00:14:54 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-11-13 00:14:53 ----A---- C:\WINDOWS\SYSWOW64\inseng.dll
2014-11-13 00:14:53 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2014-11-13 00:14:53 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2014-11-13 00:14:52 ----A---- C:\WINDOWS\SYSWOW64\occache.dll
2014-11-13 00:14:52 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-11-13 00:14:52 ----A---- C:\WINDOWS\SYSWOW64\msfeedsbs.dll
2014-11-13 00:14:52 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2014-11-13 00:14:52 ----A---- C:\WINDOWS\SYSWOW64\JavaScriptCollectionAgent.dll
2014-11-13 00:14:52 ----A---- C:\WINDOWS\SYSWOW64\iexpress.exe
2014-11-13 00:14:52 ----A---- C:\WINDOWS\SYSWOW64\IEAdvpack.dll
2014-11-13 00:14:52 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-11-13 00:14:52 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-11-13 00:14:52 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2014-11-13 00:14:52 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-11-13 00:14:52 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-11-13 00:14:52 ----A---- C:\WINDOWS\system32\inseng.dll
2014-11-13 00:14:51 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-11-13 00:14:51 ----A---- C:\WINDOWS\SYSWOW64\imgutil.dll
2014-11-13 00:14:51 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll
2014-11-13 00:14:51 ----A---- C:\WINDOWS\system32\occache.dll
2014-11-13 00:14:51 ----A---- C:\WINDOWS\system32\imgutil.dll
2014-11-13 00:14:50 ----A---- C:\WINDOWS\SYSWOW64\pngfilt.dll
2014-11-13 00:14:50 ----A---- C:\WINDOWS\SYSWOW64\licmgr10.dll
2014-11-13 00:14:50 ----A---- C:\WINDOWS\system32\pngfilt.dll
2014-11-13 00:14:50 ----A---- C:\WINDOWS\system32\licmgr10.dll
2014-11-13 00:14:49 ----A---- C:\WINDOWS\SYSWOW64\wextract.exe
2014-11-13 00:14:49 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2014-11-13 00:14:49 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-11-13 00:14:48 ----A---- C:\WINDOWS\SYSWOW64\url.dll
2014-11-13 00:14:48 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2014-11-13 00:14:48 ----A---- C:\WINDOWS\system32\url.dll
2014-11-13 00:14:47 ----A---- C:\WINDOWS\SYSWOW64\mshta.exe
2014-11-13 00:14:47 ----A---- C:\WINDOWS\SYSWOW64\msfeedssync.exe
2014-11-13 00:14:47 ----A---- C:\WINDOWS\system32\wextract.exe
2014-11-13 00:14:47 ----A---- C:\WINDOWS\system32\msfeedssync.exe
2014-11-13 00:14:47 ----A---- C:\WINDOWS\system32\iexpress.exe
2014-11-13 00:14:47 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-11-13 00:14:47 ----A---- C:\WINDOWS\system32\IEAdvpack.dll
2014-11-13 00:14:46 ----A---- C:\WINDOWS\system32\mshta.exe
2014-11-13 00:13:11 ----A---- C:\WINDOWS\system32\generaltel.dll
2014-11-13 00:13:11 ----A---- C:\WINDOWS\system32\devinv.dll
2014-11-13 00:13:11 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-11-13 00:13:11 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-11-13 00:13:10 ----A---- C:\WINDOWS\system32\aepic.dll
2014-11-13 00:13:06 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2014-11-13 00:13:06 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-11-13 00:13:04 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-11-13 00:13:04 ----A---- C:\WINDOWS\system32\packager.dll
2014-11-13 00:13:03 ----A---- C:\WINDOWS\system32\win32k.sys
2014-11-13 00:12:47 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-11-13 00:12:47 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-11-13 00:12:46 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2014-11-13 00:12:46 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2014-11-13 00:12:46 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2014-11-13 00:12:46 ----A---- C:\WINDOWS\system32\EncDump.dll
2014-11-13 00:12:46 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-11-13 00:12:46 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-11-13 00:12:46 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-11-13 00:12:46 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-11-13 00:12:21 ----A---- C:\WINDOWS\system32\shell32.dll
2014-11-13 00:12:16 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-11-13 00:12:15 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-11-13 00:12:11 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2014-11-13 00:12:10 ----A---- C:\WINDOWS\system32\twinui.dll
2014-11-13 00:12:10 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-11-13 00:12:09 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-11-13 00:12:09 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-11-13 00:12:09 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2014-11-13 00:12:09 ----A---- C:\WINDOWS\system32\localspl.dll
2014-11-13 00:12:08 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2014-11-13 00:12:08 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2014-11-13 00:12:08 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-11-13 00:12:07 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2014-11-13 00:12:07 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2014-11-13 00:12:06 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2014-11-13 00:12:05 ----A---- C:\WINDOWS\system32\puiobj.dll
2014-11-13 00:12:04 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2014-11-13 00:12:04 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2014-11-13 00:12:04 ----A---- C:\WINDOWS\system32\untfs.dll
2014-11-13 00:12:04 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-11-13 00:12:03 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2014-11-13 00:12:02 ----A---- C:\WINDOWS\system32\FXSCOMEX.dll
2014-11-13 00:12:00 ----A---- C:\WINDOWS\SYSWOW64\FXSAPI.dll
2014-11-13 00:12:00 ----A---- C:\WINDOWS\system32\FXSAPI.dll
2014-11-07 23:47:13 ----RD---- C:\WINDOWS\BrowserChoice
2014-11-07 20:35:57 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2014-11-07 15:49:17 ----A---- C:\WINDOWS\system32\drivers\msgpioclx.sys
2014-11-07 15:45:55 ----A---- C:\WINDOWS\system32\WpcMon.exe
2014-11-07 15:45:55 ----A---- C:\WINDOWS\system32\Wpc.dll
2014-11-07 15:45:54 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2014-11-07 15:45:54 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2014-11-07 15:45:47 ----A---- C:\WINDOWS\system32\schedsvc.dll
2014-11-07 15:45:30 ----A---- C:\WINDOWS\SYSWOW64\UXInit.dll
2014-11-07 15:45:30 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2014-11-07 15:45:30 ----A---- C:\WINDOWS\system32\UXInit.dll
2014-11-07 15:45:30 ----A---- C:\WINDOWS\system32\uDWM.dll
2014-11-07 15:45:30 ----A---- C:\WINDOWS\explorer.exe
2014-11-07 15:45:16 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-11-07 15:45:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-11-07 15:45:15 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2014-11-07 15:45:15 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-11-07 15:45:14 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-11-07 15:45:14 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-11-07 15:45:13 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-11-07 15:45:13 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2014-11-07 15:45:13 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-11-07 15:45:13 ----A---- C:\WINDOWS\system32\propsys.dll
2014-11-07 15:45:13 ----A---- C:\WINDOWS\system32\ntdll.dll
2014-11-07 15:45:13 ----A---- C:\WINDOWS\system32\KernelBase.dll
2014-11-07 15:45:13 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2014-11-07 15:45:12 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2014-11-07 15:45:12 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2014-11-07 15:45:12 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2014-11-07 15:45:12 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2014-11-07 15:45:12 ----A---- C:\WINDOWS\system32\Wldap32.dll
2014-11-07 15:45:12 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-11-07 15:45:11 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-11-07 15:45:11 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll
2014-11-07 15:45:11 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-11-07 15:45:11 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-11-07 15:45:11 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2014-11-07 15:45:11 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-11-07 15:45:11 ----A---- C:\WINDOWS\system32\ProximityService.dll
2014-11-07 15:45:11 ----A---- C:\WINDOWS\system32\pcsvDevice.dll
2014-11-07 15:45:11 ----A---- C:\WINDOWS\system32\httpprxm.dll
2014-11-07 15:45:11 ----A---- C:\WINDOWS\system32\bisrv.dll
2014-11-07 15:45:11 ----A---- C:\WINDOWS\system32\adhsvc.dll
2014-11-07 15:44:46 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2014-11-07 15:44:46 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2014-11-07 15:44:30 ----A---- C:\WINDOWS\system32\lockscreencn.dll
2014-11-07 15:44:21 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2014-11-07 15:44:21 ----A---- C:\WINDOWS\system32\d3d9.dll
2014-11-07 15:44:20 ----A---- C:\WINDOWS\system32\vpnike.dll
2014-11-07 15:44:20 ----A---- C:\WINDOWS\system32\fveapi.dll
2014-11-07 15:44:20 ----A---- C:\WINDOWS\system32\dhcpcore.dll
2014-11-07 15:44:19 ----A---- C:\WINDOWS\SYSWOW64\Robocopy.exe
2014-11-07 15:44:19 ----A---- C:\WINDOWS\SYSWOW64\ncobjapi.dll
2014-11-07 15:44:19 ----A---- C:\WINDOWS\SYSWOW64\framedynos.dll
2014-11-07 15:44:19 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2014-11-07 15:44:19 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2014-11-07 15:44:19 ----A---- C:\WINDOWS\system32\Robocopy.exe
2014-11-07 15:44:19 ----A---- C:\WINDOWS\system32\ncobjapi.dll
2014-11-07 15:44:19 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2014-11-07 15:44:19 ----A---- C:\WINDOWS\system32\framedynos.dll
2014-11-07 15:44:19 ----A---- C:\WINDOWS\system32\framedyn.dll
2014-11-07 15:44:19 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
2014-11-07 15:44:19 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2014-11-07 15:44:19 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2014-11-07 15:44:19 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2014-11-07 15:44:19 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2014-11-07 15:44:19 ----A---- C:\WINDOWS\system32\BFE.DLL
2014-11-07 15:44:19 ----A---- C:\WINDOWS\system32\bdesvc.dll
2014-11-07 15:44:18 ----A---- C:\WINDOWS\SYSWOW64\framedyn.dll
2014-11-07 15:44:18 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll
2014-11-07 15:44:18 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll
2014-11-07 15:44:18 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll
2014-11-07 15:44:18 ----A---- C:\WINDOWS\system32\srms.dat
2014-11-07 15:44:18 ----A---- C:\WINDOWS\system32\reseteng.dll
2014-11-07 15:44:18 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys
2014-11-07 15:44:18 ----A---- C:\WINDOWS\system32\dhcpcsvc6.dll
2014-11-07 15:44:10 ----A---- C:\WINDOWS\system32\WUDFHost.exe
2014-11-07 15:44:10 ----A---- C:\WINDOWS\system32\drivers\WUDFRd.sys
2014-11-07 15:44:09 ----A---- C:\WINDOWS\SYSWOW64\DaOtpCredentialProvider.dll
2014-11-07 15:44:09 ----A---- C:\WINDOWS\system32\WUDFSvc.dll
2014-11-07 15:44:09 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2014-11-07 15:44:09 ----A---- C:\WINDOWS\system32\hal.dll
2014-11-07 15:44:09 ----A---- C:\WINDOWS\system32\drivers\WUDFPf.sys
2014-11-07 15:44:09 ----A---- C:\WINDOWS\system32\DaOtpCredentialProvider.dll
2014-11-07 15:44:08 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2014-11-07 15:43:43 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2014-11-07 15:43:43 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2014-11-04 16:11:43 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2014-11-04 16:03:58 ----D---- C:\Users\Rozsy\AppData\Roaming\Identities
2014-11-04 16:03:44 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2014-11-04 15:40:51 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2014-11-04 15:16:50 ----SD---- C:\Users\Rozsy\AppData\Roaming\Microsoft
2014-11-04 15:12:50 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2014-11-04 15:09:30 ----D---- C:\Program Files\Common Files\ATI Technologies
2014-11-04 15:09:05 ----D---- C:\Program Files\Synaptics
2014-11-04 15:08:59 ----D---- C:\WINDOWS\system32\SRSLabs
2014-11-04 15:08:56 ----D---- C:\Program Files (x86)\Intel
2014-11-04 15:06:08 ----D---- C:\WINDOWS\Prefetch
2014-11-04 15:05:05 ----SHD---- C:\Recovery
2014-11-04 15:04:58 ----DC---- C:\WINDOWS\Panther
2014-11-04 15:03:33 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2014-11-04 15:03:33 ----A---- C:\WINDOWS\system32\winbici.dll
2014-11-04 15:03:33 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-11-04 15:03:33 ----A---- C:\WINDOWS\system32\BulkOperationHost.exe
2014-11-04 15:02:13 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2014-11-04 15:02:13 ----A---- C:\WINDOWS\system32\rastls.dll
2014-11-04 14:58:07 ----D---- C:\Program Files (x86)\Reference Assemblies
2014-11-04 14:58:07 ----D---- C:\Program Files (x86)\MSBuild
2014-11-04 14:58:06 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2014-11-04 14:58:06 ----D---- C:\Program Files\Reference Assemblies
2014-11-04 14:58:06 ----D---- C:\Program Files\MSBuild
2014-11-04 14:58:06 ----D---- C:\inetpub
2014-11-04 14:57:25 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2014-11-04 14:57:25 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-11-04 14:57:24 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2014-11-04 14:57:22 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2014-11-03 18:12:12 ----AH---- C:\WINDOWS\system32\drivers\Hamdrv.sys
2014-10-29 18:16:26 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2014-10-29 15:28:25 ----N---- C:\WINDOWS\system32\AutoUpdate.exe

======List of files/folders modified in the last 1 month======

2014-11-28 21:29:07 ----D---- C:\Program Files\trend micro
2014-11-28 21:19:51 ----D---- C:\WINDOWS\Temp
2014-11-28 21:13:43 ----RD---- C:\WINDOWS\System32
2014-11-28 21:13:43 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-11-28 21:13:42 ----D---- C:\WINDOWS\Inf
2014-11-28 21:13:37 ----SHD---- C:\WINDOWS\Installer
2014-11-28 21:13:24 ----D---- C:\Program Files (x86)\Hewlett-Packard
2014-11-28 21:13:06 ----AD---- C:\SWSETUP
2014-11-28 21:10:46 ----A---- C:\WINDOWS\SYSWOW64\bscs.ini
2014-11-28 21:10:06 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2014-11-28 21:09:15 ----A---- C:\WINDOWS\SYSWOW64\LOCALSERVICE.INI
2014-11-28 21:08:42 ----D---- C:\Windows
2014-11-28 21:08:15 ----D---- C:\ProgramData\PDFC
2014-11-28 21:08:12 ----D---- C:\WINDOWS\system32\drivers
2014-11-28 21:07:44 ----A---- C:\WINDOWS\SYSWOW64\LOCALDEVICE.INI
2014-11-28 21:05:09 ----D---- C:\WINDOWS\system32\DriverStore
2014-11-28 21:04:56 ----D---- C:\WINDOWS\system32\Tasks
2014-11-28 21:03:17 ----SHD---- C:\System Volume Information
2014-11-28 20:59:06 ----D---- C:\WINDOWS\system32\catroot
2014-11-28 20:00:00 ----D---- C:\WINDOWS\system32\sru
2014-11-28 16:47:41 ----D---- C:\WINDOWS\AppReadiness
2014-11-28 16:47:40 ----HD---- C:\Program Files\WindowsApps
2014-11-28 15:56:23 ----D---- C:\WINDOWS\Microsoft.NET
2014-11-27 21:02:09 ----D---- C:\Users\Rozsy\AppData\Roaming\TS3Client
2014-11-27 15:11:00 ----D---- C:\WINDOWS\Tasks
2014-11-27 15:10:00 ----A---- C:\WINDOWS\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-11-27 14:32:39 ----D---- C:\WINDOWS\system32\config
2014-11-27 14:29:15 ----D---- C:\WINDOWS\WinSxS
2014-11-27 14:29:15 ----D---- C:\WINDOWS\SysWOW64
2014-11-27 14:29:08 ----D---- C:\WINDOWS\CbsTemp
2014-11-23 10:43:39 ----D---- C:\WINDOWS\system32\NDF
2014-11-23 00:06:14 ----HD---- C:\ProgramData
2014-11-23 00:01:41 ----SD---- C:\WINDOWS\Downloaded Program Files
2014-11-22 23:55:35 ----RSD---- C:\WINDOWS\assembly
2014-11-22 23:54:21 ----D---- C:\Program Files\Common Files
2014-11-22 23:53:44 ----RSD---- C:\WINDOWS\Fonts
2014-11-22 23:52:46 ----RD---- C:\Program Files
2014-11-22 23:50:02 ----D---- C:\Program Files (x86)\Common Files
2014-11-22 23:47:51 ----D---- C:\WINDOWS\Logs
2014-11-22 23:34:55 ----D---- C:\Users\Rozsy\AppData\Roaming\DAEMON Tools Lite
2014-11-21 01:27:55 ----SHD---- C:\$Recycle.Bin
2014-11-20 21:51:37 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-11-17 15:21:00 ----D---- C:\WINDOWS\system32\LogFiles
2014-11-16 15:53:30 ----D---- C:\WINDOWS\system32\MRT
2014-11-16 15:50:14 ----A---- C:\WINDOWS\system32\MRT.exe
2014-11-16 15:40:44 ----D---- C:\Users\Rozsy\AppData\Roaming\vlc
2014-11-14 17:19:33 ----D---- C:\WINDOWS\rescache
2014-11-14 00:11:02 ----D---- C:\Program Files\Windows Defender
2014-11-14 00:11:02 ----D---- C:\Program Files (x86)\Windows Defender
2014-11-14 00:10:58 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-11-14 00:10:58 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2014-11-14 00:10:58 ----D---- C:\WINDOWS\system32\wbem
2014-11-14 00:10:58 ----D---- C:\WINDOWS\system32\cs-CZ
2014-11-14 00:10:58 ----D---- C:\Program Files (x86)\Internet Explorer
2014-11-14 00:10:57 ----SD---- C:\WINDOWS\system32\CompatTel
2014-11-14 00:10:57 ----RD---- C:\WINDOWS\ToastData
2014-11-14 00:10:57 ----D---- C:\WINDOWS\system32\migration
2014-11-14 00:10:57 ----D---- C:\Program Files\Internet Explorer
2014-11-14 00:10:56 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-11-14 00:10:56 ----D---- C:\WINDOWS\apppatch
2014-11-13 22:39:52 ----D---- C:\ProgramData\Microsoft Help
2014-11-13 16:16:19 ----RD---- C:\Program Files (x86)
2014-11-13 00:09:10 ----D---- C:\WINDOWS\system32\catroot2
2014-11-08 18:09:32 ----D---- C:\WINDOWS\system32\wdi
2014-11-08 10:03:55 ----D---- C:\WINDOWS\system32\drivers\UMDF
2014-11-07 17:03:23 ----D---- C:\WINDOWS\WinStore
2014-11-07 17:03:21 ----D---- C:\WINDOWS\SYSWOW64\wbem
2014-11-07 17:03:21 ----D---- C:\WINDOWS\system32\en-US
2014-11-07 16:54:18 ----D---- C:\WINDOWS\system32\restore
2014-11-04 16:02:52 ----D---- C:\WINDOWS\SoftwareDistribution
2014-11-04 15:43:02 ----D---- C:\Program Files\Windows NT
2014-11-04 15:42:30 ----D---- C:\WINDOWS\debug
2014-11-04 15:41:24 ----D---- C:\WINDOWS\Registration
2014-11-04 15:37:21 ----RSD---- C:\WINDOWS\Media
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\zh-Hant
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\zh-Hans
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\tr
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\th
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\sv
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\sr
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\sl
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\sk
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\ru
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\ro
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\pl
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\no
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\nl
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\lv
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\lt
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\ko
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\ja
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\it
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\hu
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\hr
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\he
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\fr
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\fi
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\et
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\es
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\en-US
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\el
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\drivers
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\de
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\da
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\cs
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\bg
2014-11-04 15:27:30 ----D---- C:\WINDOWS\SYSWOW64\ar
2014-11-04 15:27:30 ----D---- C:\WINDOWS\system32\zh-Hant
2014-11-04 15:27:30 ----D---- C:\WINDOWS\system32\zh-Hans
2014-11-04 15:27:30 ----D---- C:\WINDOWS\system32\tr
2014-11-04 15:27:30 ----D---- C:\WINDOWS\system32\th
2014-11-04 15:27:30 ----D---- C:\WINDOWS\system32\Sysprep
2014-11-04 15:27:30 ----D---- C:\WINDOWS\system32\sv
2014-11-04 15:27:30 ----D---- C:\WINDOWS\system32\sr
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\sl
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\sk
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\ru
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\ro
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\pt-PT
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\pt-BR
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\pl
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\no
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\nl
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\lv
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\lt
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\ko
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\ja
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\it
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\hu
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\hr
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\he
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\fr
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\fi
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\et
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\es
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\el
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\de
2014-11-04 15:27:29 ----D---- C:\WINDOWS\system32\da
2014-11-04 15:27:28 ----D---- C:\WINDOWS\system32\cs
2014-11-04 15:27:28 ----D---- C:\WINDOWS\system32\bg
2014-11-04 15:27:28 ----D---- C:\WINDOWS\system32\ar
2014-11-04 15:27:28 ----D---- C:\WINDOWS\ShellNew
2014-11-04 15:27:27 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2014-11-04 15:23:33 ----D---- C:\WINDOWS\SYSWOW64\WCN
2014-11-04 15:23:33 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2014-11-04 15:23:32 ----D---- C:\WINDOWS\SYSWOW64\SMI
2014-11-04 15:23:32 ----D---- C:\WINDOWS\SYSWOW64\sda
2014-11-04 15:23:32 ----D---- C:\WINDOWS\SYSWOW64\MUI
2014-11-04 15:23:32 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2014-11-04 15:23:31 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2014-11-04 15:23:29 ----D---- C:\WINDOWS\SYSWOW64\IME
2014-11-04 15:23:29 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2014-11-04 15:23:28 ----D---- C:\WINDOWS\SYSWOW64\DigitalPersona
2014-11-04 15:23:28 ----D---- C:\WINDOWS\SYSWOW64\catroot
2014-11-04 15:23:25 ----D---- C:\WINDOWS\system32\WCN
2014-11-04 15:23:25 ----D---- C:\WINDOWS\system32\spool
2014-11-04 15:23:18 ----D---- C:\WINDOWS\system32\oobe
2014-11-04 15:23:17 ----D---- C:\WINDOWS\system32\MUI
2014-11-04 15:23:17 ----D---- C:\WINDOWS\system32\IME
2014-11-04 15:23:16 ----DC---- C:\WINDOWS\system32\DRVSTORE
2014-11-04 15:21:39 ----D---- C:\WINDOWS\IME
2014-11-04 15:21:38 ----D---- C:\WINDOWS\Help
2014-11-04 15:21:37 ----D---- C:\WINDOWS\DigitalLocker
2014-11-04 15:21:34 ----RD---- C:\Users
2014-11-04 15:21:33 ----D---- C:\ProgramData\PRICache
2014-11-04 15:21:32 ----SD---- C:\ProgramData\Microsoft
2014-11-04 15:21:25 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2014-11-04 15:21:25 ----D---- C:\Program Files (x86)\Windows Media Player
2014-11-04 15:21:23 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-11-04 15:21:17 ----SHD---- C:\Program Files\Windows Sidebar
2014-11-04 15:21:16 ----D---- C:\Program Files\Windows Media Player
2014-11-04 15:21:15 ----D---- C:\Program Files\Common Files\microsoft shared
2014-11-04 15:18:24 ----D---- C:\WINDOWS\system32\Recovery
2014-11-04 15:09:44 ----D---- C:\WINDOWS\twain_32
2014-11-04 15:03:35 ----D---- C:\WINDOWS\MediaViewer
2014-11-04 15:03:35 ----D---- C:\WINDOWS\FileManager
2014-11-04 15:03:35 ----D---- C:\WINDOWS\Camera
2014-11-04 15:03:05 ----D---- C:\WINDOWS\PolicyDefinitions
2014-11-04 14:58:06 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2014-11-04 14:58:06 ----D---- C:\WINDOWS\system32\inetsrv
2014-11-04 14:58:03 ----A---- C:\WINDOWS\system32\wamregps.dll
2014-11-04 14:58:03 ----A---- C:\WINDOWS\system32\iisRtl.dll
2014-11-04 14:58:03 ----A---- C:\WINDOWS\system32\iisrstap.dll
2014-11-04 14:58:03 ----A---- C:\WINDOWS\system32\iisreset.exe
2014-11-04 14:58:03 ----A---- C:\WINDOWS\system32\ahadmin.dll
2014-11-04 14:58:03 ----A---- C:\WINDOWS\system32\admwprox.dll
2014-11-04 14:58:02 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2014-11-04 14:58:02 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2014-11-04 14:58:02 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2014-11-04 14:58:02 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2014-11-04 14:58:02 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2014-11-04 14:58:02 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2014-11-04 12:43:53 ----D---- C:\WINDOWS\AUInstallAgent

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 aswRvrt;avast! Revert; C:\WINDOWS\system32\drivers\aswRvrt.sys [2014-11-28 65776]
R0 aswVmm;avast! VM Monitor; C:\WINDOWS\system32\drivers\aswVmm.sys [2014-11-28 267632]
R0 hpdskflt;@oem32.inf,%service_desc%;HP Filter; C:\WINDOWS\system32\DRIVERS\hpdskflt.sys [2013-03-02 30520]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2013-01-02 641672]
R0 PinFile;PinFile; C:\WINDOWS\system32\DRIVERS\PinFile.sys [2013-08-22 49856]
R0 SDDisk2K;SDDisk2K; C:\WINDOWS\system32\DRIVERS\SDDisk2K.sys [2013-08-22 228544]
R0 SDDToki;SDDToki; C:\WINDOWS\system32\DRIVERS\SDDToki.sys [2013-08-22 131264]
R1 aswRdr;aswRdr; C:\WINDOWS\system32\drivers\aswRdr2.sys [2014-11-28 93568]
R1 aswSnx;aswSnx; C:\WINDOWS\system32\drivers\aswSnx.sys [2014-11-28 1050432]
R1 aswSP;aswSP; C:\WINDOWS\system32\drivers\aswSP.sys [2014-11-28 436624]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 dtsoftbus01;@oem35.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2014-11-22 283064]
R2 aswHwid;avast! HardwareID; C:\WINDOWS\system32\drivers\aswHwid.sys [2014-11-28 29208]
R2 aswMonFlt;aswMonFlt; C:\WINDOWS\system32\drivers\aswMonFlt.sys [2014-11-28 83280]
R2 aswStm;aswStm; C:\WINDOWS\system32\drivers\aswStm.sys [2014-11-28 116728]
R3 Accelerometer;@oem32.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\WINDOWS\system32\DRIVERS\Accelerometer.sys [2013-03-02 43320]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2014-03-26 12534784]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2014-03-26 620032]
R3 BtAudioBusSrv;@oem18.inf,%SvcDesc%;Ralink Bluetooth Audio Bus Service; C:\WINDOWS\System32\Drivers\BtAudioBus.sys [2012-06-15 23136]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Služba Bluetooth Enumerator; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthL2caScoIfSrv;Bluetooth Profile Interface Driver Service; C:\WINDOWS\System32\Drivers\BtL2caScoIf.sys [2012-07-19 56904]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Ovladač úspory energie technologie Bluetooth; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-09-24 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Zařízení Bluetooth (síť PAN); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-09-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-09-24 81920]
R3 btUrbFilterDrv;IVT URB Bluetooth Filter Driver Service; C:\WINDOWS\System32\Drivers\IvtUrbBtFlt.sys [2012-12-05 49632]
R3 clwcsm;@oem25.inf,%clwcsm.DeviceDesc%;CyberLink Webcam Sharing Manager 4.2; C:\WINDOWS\system32\DRIVERS\clwcsm.sys [2013-02-19 42944]
R3 Hamachi;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [2014-11-03 46136]
R3 HpqKbFiltr;@oem12.inf,%HpqKbFiltr.SvcDesc%;HpqKbFilter Driver; C:\WINDOWS\System32\drivers\HpqKbFiltr.sys [2013-01-28 26504]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-10-01 3828152]
R3 IntcDAud;@oem13.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-12-13 342528]
R3 iwdbus;@oem46.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2014-08-01 27032]
R3 MEIx64;@oem39.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-12 62784]
R3 netr28x;@oem37.inf,%Generic.Service.DispName%;Ralink 802.11n Extensible Wireless Driver; C:\WINDOWS\system32\DRIVERS\netr28x.sys [2014-03-29 2532552]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Zařízení Bluetooth (RFCOMM protokol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2014-09-24 167424]
R3 rtbth;@oem33.inf,%General.Service.DispName%;RTBTH Bluetooth Device Driver; C:\WINDOWS\System32\drivers\rtbth.sys [2013-12-02 1204424]
R3 RTL8168;@oem14.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-02-26 772680]
R3 SPUVCbv;@oem22.inf,%SPUVCb.ServiceName%;SPUVCb Driver Service; C:\WINDOWS\System32\Drivers\SPUVCbv_x64.sys [2013-02-22 1446904]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2014-02-14 551936]
R3 SynTP;@oem30.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2013-10-30 549104]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-09-24 1200640]
S3 DAMDrv;DAMDrv; C:\WINDOWS\system32\DRIVERS\DAMDrv64.sys [2013-02-18 65752]
S3 intaud_WaveExtensible;@oem45.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2014-08-01 38296]
S3 RTSPER;Realtek PCIe CardReader Driver; C:\WINDOWS\system32\DRIVERS\RtsPer.sys [2013-02-01 448072]
S3 SmbDrv;SmbDrv; C:\WINDOWS\System32\drivers\Smb_driver_AMDASF.sys [2013-01-11 28400]
S3 SmbDrvI;SmbDrvI; C:\WINDOWS\System32\drivers\Smb_driver_Intel.sys [2013-01-11 32496]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-09-12 64704]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2014-03-26 239616]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2013-08-22 37768]
R2 avast! Antivirus;avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [2014-11-28 50344]
R2 BlueSoleilCS;BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [2013-01-31 1626872]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 DpHost;Služba DigitalPersona Authentication Service; C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2013-10-03 500048]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2014-11-03 2530128]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2013-11-04 92160]
R2 HPFSService;HP File Sanitizer; c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe [2013-03-06 1730776]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2014-05-16 683296]
R2 hpsrv;@oem32.inf,%hpservice_desc%;HP Service; C:\WINDOWS\system32\Hpservice.exe [2013-03-02 43320]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-01-02 15496]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2014-10-01 319376]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-07-27 636952]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-10-22 130592]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-10-22 166432]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [2014-10-21 417552]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-10-22 278560]
R2 pdfcDispatcher;PDF Document Manager; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [2013-02-07 1135752]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2014-02-14 340480]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-10-22 365600]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\windows\system32\vcsFPService.exe [2013-09-12 3221392]
R3 BsHelpCS;BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [2013-01-10 138752]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-08-23 1232056]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-18 116648]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-08-10 50784]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-10-01 281488]
S3 FLCDLOCK;HP Device Locking / Auditing; c:\windows\SysWOW64\flcdlock.exe [2013-03-04 556856]
S3 FLEXnet Licensing Service 64;FLEXnet Licensing Service 64; C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService64.exe [2014-11-22 1436424]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-18 116648]
S3 HotSpotSrv;HP HotSpot 1.0 Service; C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe [2013-09-18 372920]
S3 ICCS;Intel(R) Integrated Clock Controller Service - Intel(R) ICCS; C:\Program Files (x86)\Intel\Intel(R) Integrated Clock Controller Service\ICCProxy.exe [2012-04-24 169752]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S4 BthAvrcpTg;@bthaudhid.inf,%BthAvrcpTg_SvcDesc%;Bluetooth Audio/Video Remote Control HID; C:\WINDOWS\System32\drivers\BthAvrcpTg.sys [2013-08-22 36992]
S4 BthHFEnum;@bthhfenum.inf,%BthHFEnum.SVCDESC%;Bluetooth Hands-Free Audio and Call Control HID Enumerator; C:\WINDOWS\System32\drivers\bthhfenum.sys [2013-08-22 57856]
S4 bthhfhid;@bthaudhid.inf,%BthAudioHFHid.SVCDESC%;Bluetooth Hands-Free Call Control HID; C:\WINDOWS\System32\drivers\BthHFHid.sys [2013-08-22 30720]

-----------------EOF-----------------

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o kontrolu logu

#2 Příspěvek od altrok »

Zdravim :)

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Po spusteni probehne stazeni databaze
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    resethosts;
    emptyclsid;
    IEdefaults;
    FFdefaults;
    CHRdefaults;
    emptyIEcache;
    emptyFFcache;
    emptyCHRcache;
    emptyalltemp;
    emptyflash;
    emptyjava;
    emptyrecycle.bin;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

rosinho
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 20 dub 2014 13:25

Re: Prosím o kontrolu logu

#3 Příspěvek od rosinho »

zdravím :)

tak níže přikládám adw a poté zoek logy... děkuji za ochotu :)

# AdwCleaner v4.102 - Report created 29/11/2014 at 12:27:56
# Updated 23/11/2014 by Xplode
# Database : 2014-11-27.1 [Live]
# Operating System : Windows 8.1 (64 bits)
# Username : Rozsy - PC-ROZSY
# Running from : C:\Users\Rozsy\Desktop\adwcleaner_4.102.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Program Files (x86)\SecretSauce
Folder Deleted : C:\Users\Rozsy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OnlineHD.TV
Folder Deleted : C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Extensions\ncffjdbbodifgldkcbhmiiljfcnbgjab
File Deleted : C:\WINDOWS\System32\drivers\wStLibG64.sys
File Deleted : C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.ask.com_0.localstorage
File Deleted : C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.ask.com_0.localstorage-journal

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\ncffjdbbodifgldkcbhmiiljfcnbgjab
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
Key Deleted : HKCU\Software\Softonic

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Google Chrome v39.0.2171.71

[C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.conduit.com/Results.aspx?q={searchTerms}&SearchSource=49&ctid=CT3220468
[C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://search.conduit.com/Results.aspx?q={searchTerms}&SearchSource=49&ctid=CT3220468
[C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://eu.wowarmory.com/search.xml?searchQuery={searchTerms}&searchType=all
[C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://eu.wowarmory.com/search.xml?searchQuery={searchTerms}&searchType=all

*************************

AdwCleaner[R0].txt - [3012 octets] - [21/04/2014 20:58:52]
AdwCleaner[R1].txt - [2478 octets] - [29/11/2014 12:26:19]
AdwCleaner[S0].txt - [3109 octets] - [21/04/2014 20:59:59]
AdwCleaner[S1].txt - [2385 octets] - [29/11/2014 12:27:56]

########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [2445 octets] ##########



Zoek.exe v5.0.0.0 Updated 28-11-2014
Tool run by Rozsy on so 29. 11. 2014 at 12:33:14,82.
Microsoft Windows 8.1 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Rozsy\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

29. 11. 2014 12:35:11 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Empty Folders Check ======================

C:\PROGRA~3\Validity deleted successfully
C:\Users\Rozsy\AppData\Local\GHISLER deleted successfully
C:\Users\Rozsy\AppData\Local\HP Quick Start deleted successfully
C:\Users\Rozsy\AppData\Local\PDFC deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-1891421636-1109278419-715636655-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3134413B-49B4-425C-98A5-893C1F195601} deleted successfully
HKEY_USERS\S-1-5-21-1891421636-1109278419-715636655-1002\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3134413B-49B4-425C-98A5-893C1F195601} deleted successfully
HKEY_USERS\S-1-5-21-1891421636-1109278419-715636655-1002\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{50A94F85-B037-4C36-8E73-6432404FB8BF} deleted successfully
HKEY_USERS\S-1-5-21-1891421636-1109278419-715636655-1002\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{72B89E83-EC2B-4D8F-84B6-97DB63CD110} deleted successfully
HKEY_USERS\S-1-5-21-1891421636-1109278419-715636655-1002\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{8CB4B0CB-C488-48E8-8E85-7B5D1659DD} deleted successfully
HKEY_USERS\S-1-5-21-1891421636-1109278419-715636655-1002\Software\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{E72BEB28-EB5F-4B1A-8E87-71AABBDC69D7} deleted successfully
HKEY_CLASSES_ROOT\Wow6432Node\CLSID\{3134413B-49B4-425C-98A5-893C1F195601} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3134413B-49B4-425C-98A5-893C1F195601} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\PROGRA~3\Package Cache deleted
C:\Users\Rozsy\AppData\Local\cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\WINDOWS\SysNative\config\systemprofile\Searches deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [28. 11. 2014 21:04]

==== Chromium Look ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
gomekmidlodglbbmalcneegieacbdmki - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx[28. 11. 2014 21:04]

AdBlock - Rozsy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom
Avast Online Security - Rozsy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.msn.com/"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://www.msn.com/"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IESR02"

==== Reset Google Chrome ======================

C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Deleting Registry Keys ======================

HKEY_CURRENT_USER\Software\Policies\Google deleted successfully

==== Empty IE Cache ======================

C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Rozsy\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Rozsy\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Rozsy\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Rozsy\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=26 folders=42 21581437 bytes)

==== Empty Temp Folders ======================

C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Rozsy\AppData\Local\Temp will be emptied at reboot
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\Users\Rozsy\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== EOF on so 29. 11. 2014 at 12:47:20,93 ======================

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o kontrolu logu

#4 Příspěvek od altrok »

:arrow: Nainstalujte MBAM a udelejte vlastni sken vsech disku - http://forum.viry.cz/viewtopic.php?f=29&t=137928
  • Upozorneni: tento sken zabere od 30 minut po nekolik hodin
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

rosinho
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 20 dub 2014 13:25

Re: Prosím o kontrolu logu

#5 Příspěvek od rosinho »

zdravím, tak tady přikládám log

Malwarebytes Anti-Malware
www.malwarebytes.org

Scan Date: 29. 11. 2014
Scan Time: 14:50:41
Logfile: log.txt
Administrator: Yes

Version: 2.00.3.1025
Malware Database: v2014.11.29.03
Rootkit Database: v2014.11.22.01
License: Free
Malware Protection: Disabled
Malicious Website Protection: Disabled
Self-protection: Disabled

OS: Windows 8.1
CPU: x64
File System: NTFS
User: Rozsy

Scan Type: Custom Scan
Result: Completed
Objects Scanned: 577651
Time Elapsed: 1 hr, 48 min, 58 sec

Memory: Enabled
Startup: Enabled
Filesystem: Enabled
Archives: Enabled
Rootkits: Disabled
Heuristics: Enabled
PUP: Enabled
PUM: Enabled

Processes: 0
(No malicious items detected)

Modules: 0
(No malicious items detected)

Registry Keys: 0
(No malicious items detected)

Registry Values: 0
(No malicious items detected)

Registry Data: 0
(No malicious items detected)

Folders: 0
(No malicious items detected)

Files: 10
PUP.Optional.SecretSauce.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\SecretSauce\tmp5F88.tmp.vir, , [bacd70d194e880b6be989fd108f9f709],
PUP.Optional.SecretSauce.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\SecretSauce\updateSecretSauce.exe.vir, , [3255b988d4a869cde670f7795ba61ee2],
PUP.Optional.SecretSauce.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\SecretSauce\bin\utilSecretSauce.exe.vir, , [1b6c72cf3e3e96a0d77f7cf4a65baa56],
PUP.Optional.Sanbreel.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\SecretSauce\bin\plugins\SecretSauce.Bromon.dll.vir, , [0582e9589ae202345fb1c1064ab79c64],
PUP.Optional.Sanbreel.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\SecretSauce\bin\plugins\SecretSauce.BrowserAdapterS.dll.vir, , [8bfc73ce423ab3831a607f228c75659b],
PUP.Optional.Sanbreel.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\SecretSauce\bin\plugins\SecretSauce.CompatibilityChecker.dll.vir, , [4f38eb561c6047ef868921a654adde22],
PUP.Optional.Sanbreel.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\SecretSauce\bin\plugins\SecretSauce.FFUpdate.dll.vir, , [d6b12d14126a9c9a739bf2d5db26bb45],
PUP.Optional.Sanbreel.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\SecretSauce\bin\plugins\SecretSauce.IEUpdate.dll.vir, , [6a1d76cbb7c594a249c4ecdb827f3dc3],
PUP.Optional.Sanbreel.A, C:\AdwCleaner\Quarantine\C\Program Files (x86)\SecretSauce\bin\plugins\SecretSauce.PurBrowseG.dll.vir, , [691ef150c8b4999d78fbf1a1e51c8080],
RiskWare.Tool.CK, C:\Program Files\Autodesk\AutoCAD 2011\xf_64bits.exe, , [3255152c43393ff72814e84e05fd6b95],

Physical Sectors: 0
(No malicious items detected)


(end)

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o kontrolu logu

#6 Příspěvek od altrok »

:arrow: Nalezy ma v karantene jiz AdwCleaner a s crackem si delejte co chcete.

:arrow: Dejte novy log FRST.txt, prilozte i Addition.txt - http://forum.viry.cz/viewtopic.php?f=30&t=133101
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

rosinho
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 20 dub 2014 13:25

Re: Prosím o kontrolu logu

#7 Příspěvek od rosinho »

děkuji, zde jsou logy


Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 26-11-2014 01
Ran by Rozsy (administrator) on PC-ROZSY on 30-11-2014 16:13:02
Running from C:\Users\Rozsy\Desktop
Loaded Profile: Rozsy (Available profiles: Rozsy)
Platform: Windows 8.1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(IDT, Inc.) C:\Program Files\IDT\WDM\stacsv64.exe
(Hewlett-Packard Company) C:\Windows\System32\hpservice.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\HPFSService.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
(PDF Complete Inc) C:\Program Files (x86)\PDF Complete\pdfsvc.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpCardEngine.exe
(DigitalPersona, Inc.) C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpAgent.exe
(Validity Sensors, Inc.) C:\Windows\System32\vcsFPService.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqwmiex.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(IVT Corporation) C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe
(cyberlink) C:\Program Files (x86)\CyberLink\Webcam Sharing Manager\StreamProvider.exe
(Hewlett-Packard) C:\Program Files (x86)\Hewlett-Packard\File Sanitizer\coreshredder.exe
(CyberLink) C:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\AvastUI.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerSt.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Ghisler Software GmbH) C:\totalcmd\TOTALCMD.EXE
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
(forum.viry.cz) C:\Users\Rozsy\Desktop\FRSTLauncher.exe
(Microsoft Corporation) C:\Windows\SysWOW64\WWAHost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [HotKeysCmds] => C:\windows\system32\hkcmd.exe
HKLM\...\Run: [Persistence] => C:\windows\system32\igfxpers.exe
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2804976 2013-10-30] (Synaptics Incorporated)
HKLM\...\Run: [SysTrayApp] => C:\Program Files\IDT\WDM\sttray64.exe
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285832 2013-01-02] (Intel Corporation)
HKLM-x32\...\Run: [PDF Complete] => C:\Program Files (x86)\PDF Complete\pdfsty.exe [683656 2013-02-07] (PDF Complete Inc)
HKLM-x32\...\Run: [StartCCC] => c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [642656 2013-02-25] (Advanced Micro Devices, Inc.)
HKLM-x32\...\Run: [BtTray] => c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BtTray.exe [379904 2013-01-10] (IVT Corporation)
HKLM-x32\...\Run: [CLWCSM] => c:\Program Files (x86)\CyberLink\Webcam Sharing Manager\StreamProvider.exe [249096 2013-02-20] (cyberlink)
HKLM-x32\...\Run: [File Sanitizer] => c:\Program Files (x86)\Hewlett-Packard\File Sanitizer\CoreShredder.exe [13685464 2013-03-06] (Hewlett-Packard)
HKLM-x32\...\Run: [YouCam Mirage] => c:\Program Files (x86)\CyberLink\YouCam\YCMMirage.exe [136488 2013-02-01] (CyberLink)
HKLM-x32\...\Run: [YouCam Tray] => c:\Program Files (x86)\CyberLink\YouCam\YouCamTray.exe [167488 2013-02-01] (CyberLink Corp.)
HKLM-x32\...\Run: [CLMLServer_For_P2G8] => c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111136 2012-11-21] (CyberLink)
HKLM-x32\...\Run: [CLVirtualDrive] => c:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [493088 2012-11-21] (CyberLink Corp.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5226600 2014-11-28] (AVAST Software)
HKLM-x32\...\Run: [AccelerometerSysTrayApplet] => C:\Program Files (x86)\Hewlett-Packard\HP 3D DriveGuard\AccelerometerST.exe [77088 2013-10-16] (Hewlett-Packard Company)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [QLBController] => C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [336672 2014-05-16] (Hewlett-Packard Company)
HKLM-x32\...\Run: [] => [X]
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [3835728 2014-11-03] (LogMeIn Inc.)
HKLM\...\RunOnce: [NCPluginUpdater] => C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [21720 2014-10-21] (Hewlett-Packard)
HKLM\...\Winlogon: [Userinit] C:\Windows\system32\userinit.exe,C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe,
HKU\S-1-5-21-1891421636-1109278419-715636655-1002\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-1891421636-1109278419-715636655-1002\...\MountPoints2: {02d43a53-7186-11e4-beb8-70188b189b8c} - "F:\Setup.exe"
Lsa: [Notification Packages] DPPassFilter scecli
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll (AVAST Software)
ShellIconOverlayIdentifiers: [Správa překryvné ikony digitálních podpisů AutoCADu ] -> {36A21736-36C2-4C11-8ACB-D4136F2B57BD} => C:\WINDOWS\system32\AcSignIcon.dll (Autodesk, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-1891421636-1109278419-715636655-1002\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.msn.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKLM-x32 -> DefaultScope value is missing.
SearchScopes: HKU\S-1-5-21-1891421636-1109278419-715636655-1002 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll (AVAST Software)
BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll (AVAST Software)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF Plugin-x32: digitalpersona.com/ChromeDPAgent -> C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\components\npChromeDPAgent.dll (DigitalPersona, Inc.)
FF HKLM-x32\...\Firefox\Extensions: [dpmaxz_ng@jetpack] - C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\dpchrome
FF Extension: HP Client Security Manager - C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\dpchrome [2014-02-07]
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2013-12-29]

Chrome:
=======
CHR HomePage: Default -> hxxp://www.google.cz/
CHR StartupUrls: Default -> "hxxp://search.conduit.com/?ctid=CT3220468&SearchSource=48"
CHR Profile: C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentace Google) - C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2014-11-29]
CHR Extension: (Dokumenty Google) - C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-12-18]
CHR Extension: (Disk Google) - C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-12-18]
CHR Extension: (YouTube) - C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-12-18]
CHR Extension: (Vyhledávání Google) - C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-12-18]
CHR Extension: (Tabulky Google) - C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2014-11-29]
CHR Extension: (AdBlock) - C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2013-12-29]
CHR Extension: (Avast Online Security) - C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2013-12-29]
CHR Extension: (Peněženka Google) - C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-12-18]
CHR Extension: (Gmail) - C:\Users\Rozsy\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-12-18]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2014-11-28]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [50344 2014-11-28] (AVAST Software)
R2 BlueSoleilCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BlueSoleilCS.exe [1626872 2013-01-31] (IVT Corporation)
R3 BsHelpCS; C:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\BsHelpCS.exe [138752 2013-01-10] (IVT Corporation) [File not signed]
R2 DpHost; C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [500048 2013-10-03] (DigitalPersona, Inc.)
S3 FLCDLOCK; c:\windows\SysWOW64\flcdlock.exe [556856 2013-03-04] (Hewlett-Packard Company)
S3 HotSpotSrv; C:\Program Files (x86)\Hewlett-Packard\HP Wireless Hotspot\HotSpotSrv.exe [372920 2013-09-18] (Hewlett-Packard Development Company, L.P.)
R2 HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [92160 2013-11-04] (Hewlett-Packard Company) [File not signed]
R2 hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [683296 2014-05-16] (Hewlett-Packard Company)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319376 2014-10-01] (Intel Corporation)
R2 Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [130592 2012-10-22] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [166432 2012-10-22] (Intel Corporation)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2014-10-21] (LogMeIn, Inc.)
R2 pdfcDispatcher; C:\Program Files (x86)\PDF Complete\pdfsvc.exe [1135752 2013-02-07] (PDF Complete Inc)
R2 STacSV; C:\Program Files\IDT\WDM\STacSV64.exe [340480 2014-02-14] (IDT, Inc.) [File not signed]
S3 w3logsvc; C:\Windows\system32\inetsrv\w3logsvc.dll [76800 2014-11-04] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-09-22] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-09-22] (Microsoft Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29208 2014-11-28] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [83280 2014-11-28] (AVAST Software)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93568 2014-11-28] (AVAST Software)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65776 2014-11-28] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1050432 2014-11-28] (AVAST Software)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [436624 2014-11-28] (AVAST Software)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [116728 2014-11-28] (AVAST Software)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [267632 2014-11-28] ()
R3 BtAudioBusSrv; C:\Windows\System32\Drivers\BtAudioBus.sys [23136 2012-06-15] (IVT Corporation)
U4 BthAvrcpTg; No ImagePath
U4 BthHFEnum; No ImagePath
U4 bthhfhid; No ImagePath
R3 BthL2caScoIfSrv; C:\Windows\System32\Drivers\BtL2caScoIf.sys [56904 2012-07-19] (Ralink Corporation)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-09-24] (Microsoft Corporation)
R3 btUrbFilterDrv; C:\Windows\System32\Drivers\IvtUrbBtFlt.sys [49632 2012-12-05] (Ralink Corporation)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
R3 clwcsm; C:\Windows\system32\DRIVERS\clwcsm.sys [42944 2013-02-19] (CyberLink Corporation)
S3 DAMDrv; C:\Windows\system32\DRIVERS\DAMDrv64.sys [65752 2013-02-18] (Hewlett-Packard Company)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283064 2014-11-22] (Disc Soft Ltd)
R3 Hamachi; C:\Windows\system32\DRIVERS\Hamdrv.sys [46136 2014-11-03] (LogMeIn Inc.)
R0 PinFile; C:\Windows\System32\DRIVERS\PinFile.sys [49856 2013-08-22] (WinMagic Inc.)
R3 rtbth; C:\Windows\System32\drivers\rtbth.sys [1204424 2013-12-02] (Ralink Technology, Corp.)
S3 RTSPER; C:\Windows\System32\DRIVERS\RtsPer.sys [448072 2013-02-01] (RTS Corporation)
R0 SDDisk2K; C:\Windows\System32\DRIVERS\SDDisk2K.sys [228544 2013-08-22] (WinMagic Inc.)
R0 SDDToki; C:\Windows\System32\DRIVERS\SDDToki.sys [131264 2013-08-22] (WinMagic Inc.)
S3 SmbDrv; C:\Windows\System32\drivers\Smb_driver_AMDASF.sys [28400 2013-01-11] (Synaptics Incorporated)
S3 SmbDrvI; C:\Windows\System32\drivers\Smb_driver_Intel.sys [32496 2013-01-11] (Synaptics Incorporated)
R3 SPUVCbv; C:\Windows\System32\Drivers\SPUVCbv_x64.sys [1446904 2013-02-22] (Sunplus)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-09-22] (Microsoft Corporation)
R3 WirelessButtonDriver; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [20800 2013-02-08] (Hewlett-Packard Development Company, L.P.)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-30 16:13 - 2014-11-30 16:13 - 00020232 _____ () C:\Users\Rozsy\Desktop\FRST.txt
2014-11-30 16:12 - 2014-11-30 16:13 - 00000000 ____D () C:\FRST
2014-11-30 16:11 - 2014-11-30 16:11 - 00112640 _____ (forum.viry.cz) C:\Users\Rozsy\Desktop\FRSTLauncher.exe
2014-11-30 16:10 - 2014-11-30 16:10 - 00000000 ____D () C:\Users\Rozsy\AppData\Local\GHISLER
2014-11-30 15:33 - 2014-11-30 15:33 - 02117632 _____ (Farbar) C:\Users\Rozsy\Desktop\FRST64.exe
2014-11-30 15:13 - 2014-11-30 15:31 - 00001078 _____ () C:\WINDOWS\system32dbgraw.bmp
2014-11-29 12:47 - 2014-11-29 12:47 - 00000000 ____D () C:\Users\Rozsy\AppData\Local\PDFC
2014-11-29 12:46 - 2014-11-29 12:46 - 00000000 ____D () C:\ProgramData\Validity
2014-11-29 12:45 - 2014-11-29 12:33 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-11-29 12:35 - 2014-11-29 12:47 - 00007355 _____ () C:\zoek-results.log
2014-11-29 12:33 - 2014-11-29 12:44 - 00000000 ____D () C:\zoek_backup
2014-11-29 12:25 - 2014-11-29 12:25 - 01294848 _____ () C:\Users\Rozsy\Desktop\zoek.exe
2014-11-29 12:23 - 2014-11-29 12:23 - 02148864 _____ () C:\Users\Rozsy\Desktop\adwcleaner_4.102.exe
2014-11-29 12:22 - 2014-11-30 12:08 - 00003970 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{D05C301F-ED8D-425E-AEDF-BA717D3E6F0A}
2014-11-29 12:22 - 2014-11-29 12:22 - 00000000 __SHD () C:\Users\Rozsy\AppData\Local\EmieUserList
2014-11-29 12:22 - 2014-11-29 12:22 - 00000000 __SHD () C:\Users\Rozsy\AppData\Local\EmieSiteList
2014-11-29 12:22 - 2014-11-29 12:22 - 00000000 __SHD () C:\Users\Rozsy\AppData\Local\EmieBrowserModeList
2014-11-28 21:29 - 2014-11-28 21:29 - 00000000 ____D () C:\rsit
2014-11-28 21:23 - 2014-11-28 21:23 - 01222144 _____ () C:\Users\Rozsy\Downloads\RSITx64 (1).exe
2014-11-28 21:05 - 2014-11-28 21:05 - 00001987 _____ () C:\Users\Public\Desktop\Avast Free Antivirus.lnk
2014-11-28 21:04 - 2014-11-28 21:04 - 00364512 _____ (AVAST Software) C:\WINDOWS\system32\aswBoot.exe
2014-11-28 21:04 - 2014-11-28 21:04 - 00043152 _____ (AVAST Software) C:\WINDOWS\avastSS.scr
2014-11-24 20:34 - 2014-11-24 20:34 - 00037376 ___SH () C:\Users\Rozsy\Downloads\Thumbs.db
2014-11-23 13:54 - 2014-11-23 13:54 - 00000000 ____D () C:\Users\Rozsy\Documents\CAD
2014-11-23 13:49 - 2014-11-23 13:49 - 00000126 _____ () C:\Users\Rozsy\Documents\plot.log
2014-11-23 00:06 - 2014-11-23 00:06 - 00000000 ____D () C:\ProgramData\FLEXnet
2014-11-22 23:54 - 2014-11-22 23:54 - 00000000 ____D () C:\Program Files\Common Files\Macrovision Shared
2014-11-22 23:53 - 2014-11-22 23:53 - 00002055 _____ () C:\Users\Public\Desktop\AutoCAD 2011 - česky.lnk
2014-11-22 23:53 - 2014-11-22 23:53 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Autodesk
2014-11-22 23:52 - 2014-11-23 00:01 - 00000000 ____D () C:\Program Files\Common Files\Autodesk Shared
2014-11-22 23:52 - 2014-11-22 23:52 - 00000000 ____D () C:\Users\Rozsy\AppData\Local\Autodesk
2014-11-22 23:52 - 2014-11-22 23:52 - 00000000 ____D () C:\Program Files\Autodesk
2014-11-22 23:49 - 2009-03-09 15:27 - 05425496 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DX9_41.dll
2014-11-22 23:49 - 2009-03-09 15:27 - 04178264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DX9_41.dll
2014-11-22 23:49 - 2009-03-09 15:27 - 02430312 _____ (Microsoft Corporation) C:\WINDOWS\system32\D3DCompiler_41.dll
2014-11-22 23:49 - 2009-03-09 15:27 - 01846632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\D3DCompiler_41.dll
2014-11-22 23:49 - 2009-03-09 15:27 - 00520544 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx10_41.dll
2014-11-22 23:49 - 2009-03-09 15:27 - 00453456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx10_41.dll
2014-11-22 23:48 - 2014-11-22 23:48 - 00000196 _____ () C:\WINDOWS\DirectX.log
2014-11-22 23:48 - 2006-03-31 12:41 - 03927248 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3dx9_30.dll
2014-11-22 23:48 - 2006-03-31 12:40 - 02388176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3dx9_30.dll
2014-11-22 23:39 - 2014-11-23 09:12 - 00000000 ____D () C:\Users\Rozsy\AppData\Roaming\Autodesk
2014-11-22 23:39 - 2014-11-23 09:12 - 00000000 ____D () C:\ProgramData\Autodesk
2014-11-22 20:55 - 2014-11-22 23:25 - 2448962578 _____ () C:\Users\Rozsy\Downloads\AutoCAD-2011-CZ-Win-64bit.rar
2014-11-20 15:46 - 2014-11-10 00:19 - 00991232 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2014-11-20 15:46 - 2014-11-10 00:19 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2014-11-20 15:46 - 2014-11-10 00:18 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2014-11-20 15:46 - 2014-11-10 00:18 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2014-11-16 15:43 - 2014-11-16 17:36 - 2057463808 _____ () C:\Users\Rozsy\Downloads\Hobbit-The-Desolation-of-Smaug-The-2013-CZ.Dab.avi
2014-11-13 18:36 - 2014-11-13 18:37 - 68576704 _____ () C:\Users\Rozsy\Downloads\Mikro.zip
2014-11-13 00:19 - 2014-09-27 08:13 - 00104336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2014-11-13 00:19 - 2014-09-27 06:24 - 00088800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2014-11-13 00:19 - 2014-09-27 04:38 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2014-11-13 00:19 - 2014-09-27 04:30 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2014-11-13 00:19 - 2014-09-27 04:17 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2014-11-13 00:18 - 2014-10-10 02:58 - 00177472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2014-11-13 00:18 - 2014-10-10 02:58 - 00027456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2014-11-13 00:18 - 2014-10-10 02:44 - 00563976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2014-11-13 00:18 - 2014-10-08 08:37 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2014-11-13 00:18 - 2014-10-08 08:37 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaudite.dll
2014-11-13 00:18 - 2014-10-08 08:34 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2014-11-13 00:18 - 2014-10-08 08:24 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rfxvmt.dll
2014-11-13 00:18 - 2014-10-08 07:56 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2014-11-13 00:18 - 2014-10-08 07:51 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2014-11-13 00:18 - 2014-10-08 07:51 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msaudite.dll
2014-11-13 00:18 - 2014-10-08 07:18 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2014-11-13 00:18 - 2014-10-08 07:17 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-11-13 00:18 - 2014-10-08 06:23 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2014-11-13 00:17 - 2014-10-18 10:55 - 00055776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-11-13 00:17 - 2014-10-18 09:09 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2014-11-13 00:17 - 2014-10-18 09:09 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2014-11-13 00:17 - 2014-10-18 08:25 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2014-11-13 00:17 - 2014-10-18 07:50 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll
2014-11-13 00:17 - 2014-10-18 07:38 - 03557376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-11-13 00:17 - 2014-10-18 07:27 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2014-11-13 00:17 - 2014-10-18 07:26 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2014-11-13 00:17 - 2014-10-18 07:23 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2014-11-13 00:17 - 2014-10-18 07:23 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-11-13 00:17 - 2014-10-18 07:21 - 00894976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-11-13 00:17 - 2014-10-18 07:20 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2014-11-13 00:17 - 2014-10-18 07:14 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2014-11-13 00:17 - 2014-10-18 07:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2014-11-13 00:17 - 2014-10-18 07:12 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-11-13 00:17 - 2014-10-18 07:11 - 00723968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-11-13 00:17 - 2014-10-17 08:01 - 00789184 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2014-11-13 00:17 - 2014-10-17 07:58 - 00602768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2014-11-13 00:17 - 2014-10-13 03:33 - 00116032 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2014-11-13 00:17 - 2014-10-11 01:58 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2014-11-13 00:17 - 2014-10-11 01:53 - 03607040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2014-11-13 00:17 - 2014-10-08 08:30 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2014-11-13 00:17 - 2014-10-08 08:09 - 00428032 _____ (Microsoft Corporation) C:\WINDOWS\system32\msihnd.dll
2014-11-13 00:17 - 2014-10-08 07:27 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msihnd.dll
2014-11-13 00:17 - 2014-10-08 06:32 - 02773504 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2014-11-13 00:17 - 2014-10-08 06:19 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2014-11-13 00:16 - 2014-09-22 05:38 - 01519488 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2014-11-13 00:16 - 2014-09-22 04:06 - 00258368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2014-11-13 00:16 - 2014-09-22 04:06 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2014-11-13 00:16 - 2014-09-22 03:49 - 00035320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2014-11-13 00:16 - 2014-09-19 01:16 - 01346048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2014-11-13 00:16 - 2014-09-02 23:08 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
2014-11-13 00:16 - 2014-09-02 23:08 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll
2014-11-13 00:15 - 2014-10-31 06:28 - 25110016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-11-13 00:15 - 2014-10-31 06:06 - 00580096 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2014-11-13 00:15 - 2014-10-31 06:05 - 02884096 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-11-13 00:15 - 2014-10-31 05:53 - 00633856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2014-11-13 00:15 - 2014-10-31 05:51 - 00812544 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2014-11-13 00:15 - 2014-10-31 05:50 - 06040064 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-11-13 00:15 - 2014-10-31 05:50 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2014-11-13 00:15 - 2014-10-31 05:15 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2014-11-13 00:15 - 2014-10-31 05:05 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-11-13 00:15 - 2014-10-31 04:59 - 14390272 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-11-13 00:15 - 2014-10-31 04:45 - 02365440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-11-13 00:15 - 2014-10-31 04:44 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2014-11-13 00:15 - 2014-10-31 04:42 - 19781632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-11-13 00:15 - 2014-10-31 04:32 - 01550336 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-11-13 00:15 - 2014-10-31 04:24 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2014-11-13 00:15 - 2014-10-31 04:18 - 02277376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-11-13 00:15 - 2014-10-31 04:13 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2014-11-13 00:15 - 2014-10-31 04:12 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2014-11-13 00:15 - 2014-10-31 04:11 - 00620032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-11-13 00:15 - 2014-10-31 03:46 - 04298240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-11-13 00:15 - 2014-10-31 03:46 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2014-11-13 00:15 - 2014-10-31 03:40 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-11-13 00:15 - 2014-10-31 03:39 - 02051072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-11-13 00:15 - 2014-10-31 03:30 - 12819456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-11-13 00:15 - 2014-10-31 03:17 - 01892864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-11-13 00:15 - 2014-10-31 03:13 - 01310208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-11-13 00:14 - 2014-10-31 06:12 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wextract.exe
2014-11-13 00:14 - 2014-10-31 06:12 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshta.exe
2014-11-13 00:14 - 2014-10-31 06:10 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iexpress.exe
2014-11-13 00:14 - 2014-10-31 06:09 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pngfilt.dll
2014-11-13 00:14 - 2014-10-31 06:08 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedssync.exe
2014-11-13 00:14 - 2014-10-31 06:06 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll
2014-11-13 00:14 - 2014-10-31 06:06 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2014-11-13 00:14 - 2014-10-31 06:06 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
2014-11-13 00:14 - 2014-10-31 06:05 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2014-11-13 00:14 - 2014-10-31 06:04 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2014-11-13 00:14 - 2014-10-31 05:57 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-11-13 00:14 - 2014-10-31 05:56 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2014-11-13 00:14 - 2014-10-31 05:54 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\IEAdvpack.dll
2014-11-13 00:14 - 2014-10-31 05:52 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2014-11-13 00:14 - 2014-10-31 05:51 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
2014-11-13 00:14 - 2014-10-31 05:51 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2014-11-13 00:14 - 2014-10-31 05:40 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll
2014-11-13 00:14 - 2014-10-31 05:38 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-11-13 00:14 - 2014-10-31 05:30 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-11-13 00:14 - 2014-10-31 05:29 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesysprep.dll
2014-11-13 00:14 - 2014-10-31 05:29 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2014-11-13 00:14 - 2014-10-31 05:28 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\inseng.dll
2014-11-13 00:14 - 2014-10-31 05:25 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2014-11-13 00:14 - 2014-10-31 05:24 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-11-13 00:14 - 2014-10-31 05:24 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2014-11-13 00:14 - 2014-10-31 05:23 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2014-11-13 00:14 - 2014-10-31 05:21 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-11-13 00:14 - 2014-10-31 05:19 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\occache.dll
2014-11-13 00:14 - 2014-10-31 05:08 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2014-11-13 00:14 - 2014-10-31 05:06 - 00372736 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-11-13 00:14 - 2014-10-31 05:05 - 00716800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-11-13 00:14 - 2014-10-31 05:03 - 02124288 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-11-13 00:14 - 2014-10-31 04:42 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\imgutil.dll
2014-11-13 00:14 - 2014-10-31 04:28 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wextract.exe
2014-11-13 00:14 - 2014-10-31 04:28 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshta.exe
2014-11-13 00:14 - 2014-10-31 04:27 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iexpress.exe
2014-11-13 00:14 - 2014-10-31 04:26 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pngfilt.dll
2014-11-13 00:14 - 2014-10-31 04:25 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedssync.exe
2014-11-13 00:14 - 2014-10-31 04:24 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\url.dll
2014-11-13 00:14 - 2014-10-31 04:24 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2014-11-13 00:14 - 2014-10-31 04:23 - 00340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2014-11-13 00:14 - 2014-10-31 04:23 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-11-13 00:14 - 2014-10-31 04:22 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2014-11-13 00:14 - 2014-10-31 04:20 - 00799232 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-11-13 00:14 - 2014-10-31 04:16 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2014-11-13 00:14 - 2014-10-31 04:15 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2014-11-13 00:14 - 2014-10-31 04:14 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IEAdvpack.dll
2014-11-13 00:14 - 2014-10-31 04:13 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2014-11-13 00:14 - 2014-10-31 04:12 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-11-13 00:14 - 2014-10-31 04:03 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\licmgr10.dll
2014-11-13 00:14 - 2014-10-31 04:02 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-11-13 00:14 - 2014-10-31 03:57 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JavaScriptCollectionAgent.dll
2014-11-13 00:14 - 2014-10-31 03:56 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inseng.dll
2014-11-13 00:14 - 2014-10-31 03:56 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesysprep.dll
2014-11-13 00:14 - 2014-10-31 03:56 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2014-11-13 00:14 - 2014-10-31 03:53 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2014-11-13 00:14 - 2014-10-31 03:53 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedsbs.dll
2014-11-13 00:14 - 2014-10-31 03:52 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-11-13 00:14 - 2014-10-31 03:51 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2014-11-13 00:14 - 2014-10-31 03:50 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-11-13 00:14 - 2014-10-31 03:48 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\occache.dll
2014-11-13 00:14 - 2014-10-31 03:42 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2014-11-13 00:14 - 2014-10-31 03:40 - 00325632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-11-13 00:14 - 2014-10-31 03:26 - 01042944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2014-11-13 00:14 - 2014-10-31 03:24 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imgutil.dll
2014-11-13 00:14 - 2014-10-31 03:11 - 00708096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-11-13 00:13 - 2014-11-05 00:38 - 00228864 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2014-11-13 00:13 - 2014-11-04 01:10 - 00304128 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2014-11-13 00:13 - 2014-10-31 05:53 - 00098816 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2014-11-13 00:13 - 2014-10-31 05:49 - 00537088 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2014-11-13 00:13 - 2014-10-31 05:24 - 00391168 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2014-11-13 00:13 - 2014-10-23 06:48 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\packager.dll
2014-11-13 00:13 - 2014-10-23 06:05 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\packager.dll
2014-11-13 00:13 - 2014-10-07 04:30 - 04182016 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-11-13 00:13 - 2014-08-23 06:18 - 02149376 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2014-11-13 00:13 - 2014-08-23 06:03 - 01346048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2014-11-13 00:12 - 2014-10-07 07:28 - 00500016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2014-11-13 00:12 - 2014-10-07 07:27 - 00482872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2014-11-13 00:12 - 2014-10-07 07:27 - 00394120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2014-11-13 00:12 - 2014-10-07 07:27 - 00272248 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2014-11-13 00:12 - 2014-10-07 07:27 - 00108432 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2014-11-13 00:12 - 2014-10-07 04:34 - 00370424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2014-11-13 00:12 - 2014-10-07 04:34 - 00344536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-11-13 00:12 - 2014-10-07 04:33 - 00424544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2014-11-13 00:12 - 2014-10-07 02:54 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-11-13 00:12 - 2014-10-07 02:46 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2014-11-13 00:12 - 2014-09-10 07:25 - 00474432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2014-11-13 00:12 - 2014-09-08 04:07 - 02497344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-11-13 00:12 - 2014-09-08 04:07 - 00428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2014-11-13 00:12 - 2014-09-04 23:30 - 00822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2014-11-13 00:12 - 2014-09-04 23:21 - 01053184 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2014-11-13 00:12 - 2014-09-04 04:05 - 00836176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-11-13 00:12 - 2014-09-04 03:22 - 00670384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2014-11-13 00:12 - 2014-09-04 02:01 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2014-11-13 00:12 - 2014-09-04 01:32 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2014-11-13 00:12 - 2014-08-31 01:17 - 00148800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2014-11-13 00:12 - 2014-08-31 01:15 - 21197152 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-11-13 00:12 - 2014-08-30 23:59 - 18723112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-11-13 00:12 - 2014-08-30 23:05 - 00615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMEX.dll
2014-11-13 00:12 - 2014-08-30 22:58 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSAPI.dll
2014-11-13 00:12 - 2014-08-30 22:04 - 00941568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2014-11-13 00:12 - 2014-08-30 21:53 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSAPI.dll
2014-11-13 00:12 - 2014-08-30 21:17 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-11-13 00:12 - 2014-08-28 03:55 - 07484224 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2014-11-13 00:12 - 2014-08-28 01:21 - 02480128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2014-11-13 00:12 - 2014-08-28 01:06 - 02030592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2014-11-13 00:12 - 2014-08-23 06:14 - 13424128 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-11-13 00:12 - 2014-08-23 06:04 - 11820544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-11-13 00:12 - 2014-08-23 05:50 - 02714112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2014-11-13 00:12 - 2014-08-02 01:51 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
2014-11-13 00:12 - 2014-08-02 01:35 - 00485376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll
2014-11-13 00:11 - 2014-09-07 23:08 - 00389176 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2014-11-11 16:30 - 2014-11-24 20:34 - 00083968 ___SH () C:\Users\Rozsy\Documents\Thumbs.db
2014-11-11 14:32 - 2014-11-11 14:32 - 00064278 _____ () C:\Users\Rozsy\Downloads\TS102835057.dotx
2014-11-07 23:47 - 2014-11-07 23:47 - 00000000 ___RD () C:\WINDOWS\BrowserChoice
2014-11-07 20:36 - 2014-11-07 20:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2014-11-07 20:35 - 2014-11-07 20:36 - 00000000 ____D () C:\Program Files (x86)\LogMeIn Hamachi
2014-11-07 15:49 - 2014-08-15 01:36 - 00146752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
2014-11-07 15:45 - 2014-08-23 08:48 - 02374784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2014-11-07 15:45 - 2014-08-23 08:13 - 02084520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2014-11-07 15:45 - 2014-08-23 07:10 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UXInit.dll
2014-11-07 15:45 - 2014-08-23 06:32 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UXInit.dll
2014-11-07 15:45 - 2014-08-23 05:33 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2014-11-07 15:45 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2014-11-07 15:45 - 2014-08-16 05:01 - 01710184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2014-11-07 15:45 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2014-11-07 15:45 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2014-11-07 15:45 - 2014-08-16 04:03 - 01467384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2014-11-07 15:45 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2014-11-07 15:45 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2014-11-07 15:45 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-11-07 15:45 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll
2014-11-07 15:45 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityService.dll
2014-11-07 15:45 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2014-11-07 15:45 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2014-11-07 15:45 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll
2014-11-07 15:45 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2014-11-07 15:45 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcsvDevice.dll
2014-11-07 15:45 - 2014-08-16 01:29 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-11-07 15:45 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2014-11-07 15:45 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-11-07 15:45 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll
2014-11-07 15:45 - 2014-08-16 01:19 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-11-07 15:45 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2014-11-07 15:45 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2014-11-07 15:45 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll
2014-11-07 15:45 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2014-11-07 15:45 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-11-07 15:45 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2014-11-07 15:45 - 2014-08-16 01:11 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-11-07 15:45 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2014-11-07 15:45 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2014-11-07 15:45 - 2014-08-16 01:07 - 00756224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-11-07 15:45 - 2014-08-02 01:18 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2014-11-07 15:45 - 2014-07-15 19:16 - 03048880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2014-11-07 15:45 - 2014-07-15 09:29 - 03118080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2014-11-07 15:45 - 2014-07-15 09:22 - 02861056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2014-11-07 15:45 - 2014-07-15 09:03 - 02344448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2014-11-07 15:44 - 2014-07-12 05:17 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2014-11-07 15:44 - 2014-07-10 05:08 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lockscreencn.dll
2014-11-07 15:44 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2014-11-07 15:44 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2014-11-07 15:44 - 2014-06-02 03:10 - 00423768 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2014-11-07 15:44 - 2014-05-31 07:27 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFPf.sys
2014-11-07 15:44 - 2014-05-31 07:26 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFRd.sys
2014-11-07 15:44 - 2014-05-31 05:01 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFHost.exe
2014-11-07 15:44 - 2014-05-31 05:01 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2014-11-07 15:44 - 2014-05-31 05:01 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFSvc.dll
2014-11-07 15:44 - 2014-05-27 10:56 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\DaOtpCredentialProvider.dll
2014-11-07 15:44 - 2014-05-27 10:53 - 00270848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DaOtpCredentialProvider.dll
2014-11-07 15:44 - 2014-05-03 06:36 - 00997888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2014-11-07 15:44 - 2014-05-03 06:19 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncobjapi.dll
2014-11-07 15:44 - 2014-05-03 06:08 - 00301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedynos.dll
2014-11-07 15:44 - 2014-05-03 06:07 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedyn.dll
2014-11-07 15:44 - 2014-05-03 05:46 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncobjapi.dll
2014-11-07 15:44 - 2014-05-03 05:37 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedynos.dll
2014-11-07 15:44 - 2014-05-03 05:37 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedyn.dll
2014-11-07 15:44 - 2014-05-03 00:26 - 00050745 _____ () C:\WINDOWS\system32\srms.dat
2014-11-07 15:44 - 2014-04-30 07:43 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwififlt.sys
2014-11-07 15:44 - 2014-04-30 07:41 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2014-11-07 15:44 - 2014-04-30 07:41 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2014-11-07 15:44 - 2014-04-30 07:41 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifimp.sys
2014-11-07 15:44 - 2014-04-30 06:45 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Robocopy.exe
2014-11-07 15:44 - 2014-04-30 05:48 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Robocopy.exe
2014-11-07 15:44 - 2014-04-30 05:24 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2014-11-07 15:44 - 2014-04-30 05:23 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2014-11-07 15:44 - 2014-04-30 05:23 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2014-11-07 15:44 - 2014-04-30 05:23 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2014-11-07 15:44 - 2014-04-30 05:14 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2014-11-07 15:44 - 2014-04-30 04:59 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2014-11-07 15:44 - 2014-04-30 04:46 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2014-11-07 15:44 - 2014-04-30 04:46 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2014-11-07 15:44 - 2014-04-30 04:46 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2014-11-07 15:44 - 2014-04-30 04:45 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2014-11-07 15:44 - 2014-04-30 04:42 - 00403968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2014-11-07 15:44 - 2014-04-28 23:40 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2014-11-07 15:44 - 2014-04-26 17:39 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2014-11-07 15:44 - 2014-04-14 10:37 - 02125344 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2014-11-07 15:44 - 2014-04-14 09:08 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2014-11-07 15:44 - 2014-04-14 06:18 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2014-11-07 15:43 - 2014-07-24 04:20 - 00875688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll
2014-11-07 15:43 - 2014-07-24 04:20 - 00869544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll
2014-11-06 22:56 - 2014-11-07 00:51 - 00225751 _____ () C:\Users\Rozsy\Downloads\Časový harmonogram - doplněná prezentace.pptx
2014-11-04 16:11 - 2014-11-04 16:11 - 00000144 _____ () C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2014-11-04 16:04 - 2014-11-04 16:04 - 00001429 _____ () C:\Users\Rozsy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-11-04 16:03 - 2014-11-04 16:03 - 00000451 _____ () C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2014-11-04 16:03 - 2014-11-04 16:03 - 00000020 ___SH () C:\Users\Rozsy\ntuser.ini
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default\Šablony
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default\Soubory cookie
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default\Poslední
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default\Okolní tiskárny
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default\Okolní síť
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default\Nabídka Start
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default\Dokumenty
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default\Documents\Obrázky
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default\Documents\Hudba
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default\Documents\Filmy
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default\Data aplikací
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default\AppData\Local\Data aplikací
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default User\Documents\Obrázky
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default User\Documents\Hudba
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default User\Documents\Filmy
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-11-04 15:43 - 2014-11-04 15:43 - 00000000 _SHDL () C:\Users\Default User\AppData\Local\Data aplikací
2014-11-04 15:42 - 2014-11-30 15:54 - 01234027 _____ () C:\WINDOWS\WindowsUpdate.log
2014-11-04 15:40 - 2014-11-04 15:40 - 00022924 _____ () C:\WINDOWS\system32\emptyregdb.dat
2014-11-04 15:23 - 2014-11-04 15:23 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2014-11-04 15:23 - 2014-11-04 15:23 - 00000000 ____D () C:\Users\Default\Documents\hp.system.package.metadata
2014-11-04 15:23 - 2014-11-04 15:23 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2014-11-04 15:23 - 2014-11-04 15:23 - 00000000 ____D () C:\Users\Default\AppData\Local\HP Magic Canvas
2014-11-04 15:23 - 2014-11-04 15:23 - 00000000 ____D () C:\Users\Default User\Documents\hp.system.package.metadata
2014-11-04 15:23 - 2014-11-04 15:23 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2014-11-04 15:23 - 2014-11-04 15:23 - 00000000 ____D () C:\Users\Default User\AppData\Local\HP Magic Canvas
2014-11-04 15:18 - 2014-11-04 15:18 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate
2014-11-04 15:16 - 2014-11-04 16:03 - 00000000 ____D () C:\Users\Rozsy
2014-11-04 15:16 - 2014-11-04 15:41 - 00020958 _____ () C:\WINDOWS\diagwrn.xml
2014-11-04 15:16 - 2014-11-04 15:41 - 00020958 _____ () C:\WINDOWS\diagerr.xml
2014-11-04 15:16 - 2014-11-04 15:18 - 00000000 ___RD () C:\Users\Rozsy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-04 15:16 - 2014-11-04 15:18 - 00000000 ___RD () C:\Users\Rozsy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-11-04 15:16 - 2014-11-04 15:16 - 00000000 _SHDL () C:\Users\Rozsy\Šablony
2014-11-04 15:16 - 2014-11-04 15:16 - 00000000 _SHDL () C:\Users\Rozsy\Soubory cookie
2014-11-04 15:16 - 2014-11-04 15:16 - 00000000 _SHDL () C:\Users\Rozsy\Poslední
2014-11-04 15:16 - 2014-11-04 15:16 - 00000000 _SHDL () C:\Users\Rozsy\Okolní tiskárny
2014-11-04 15:16 - 2014-11-04 15:16 - 00000000 _SHDL () C:\Users\Rozsy\Okolní síť
2014-11-04 15:16 - 2014-11-04 15:16 - 00000000 _SHDL () C:\Users\Rozsy\Nabídka Start
2014-11-04 15:16 - 2014-11-04 15:16 - 00000000 _SHDL () C:\Users\Rozsy\Dokumenty
2014-11-04 15:16 - 2014-11-04 15:16 - 00000000 _SHDL () C:\Users\Rozsy\Documents\Obrázky
2014-11-04 15:16 - 2014-11-04 15:16 - 00000000 _SHDL () C:\Users\Rozsy\Documents\Hudba
2014-11-04 15:16 - 2014-11-04 15:16 - 00000000 _SHDL () C:\Users\Rozsy\Documents\Filmy
2014-11-04 15:16 - 2014-11-04 15:16 - 00000000 _SHDL () C:\Users\Rozsy\Data aplikací
2014-11-04 15:16 - 2014-11-04 15:16 - 00000000 _SHDL () C:\Users\Rozsy\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2014-11-04 15:16 - 2014-11-04 15:16 - 00000000 _SHDL () C:\Users\Rozsy\AppData\Local\Data aplikací
2014-11-04 15:16 - 2014-09-24 17:32 - 00000369 _____ () C:\Users\Rozsy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2014-11-04 15:16 - 2014-09-24 17:32 - 00000369 _____ () C:\Users\Rozsy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2014-11-04 15:16 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Rozsy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-11-04 15:16 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Rozsy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-11-04 15:12 - 2014-11-04 15:38 - 01960126 _____ () C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2014-11-04 15:12 - 2014-11-04 15:18 - 00012096 _____ () C:\WINDOWS\iis.log
2014-11-04 15:09 - 2014-11-04 15:09 - 00000264 _____ () C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job
2014-11-04 15:09 - 2014-11-04 15:09 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2014-11-04 15:09 - 2014-11-04 15:09 - 00000000 ____D () C:\Program Files\Synaptics
2014-11-04 15:09 - 2014-11-04 15:09 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies
2014-11-04 15:08 - 2014-11-04 15:21 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-11-04 15:08 - 2014-11-04 15:08 - 00000000 ____D () C:\WINDOWS\system32\SRSLabs
2014-11-04 15:07 - 2014-11-04 15:07 - 00001350 _____ () C:\WINDOWS\system32\RaCoInst.log
2014-11-04 15:05 - 2014-11-04 15:05 - 00000000 __SHD () C:\Recovery
2014-11-04 15:04 - 2014-11-05 00:00 - 00000000 ___DC () C:\WINDOWS\Panther
2014-11-04 15:03 - 2014-11-04 15:03 - 00921600 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2014-11-04 15:03 - 2014-11-04 15:03 - 00626688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2014-11-04 15:03 - 2014-11-04 15:03 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2014-11-04 15:03 - 2014-11-04 15:03 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\BulkOperationHost.exe
2014-11-04 15:02 - 2014-11-04 15:02 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2014-11-04 15:02 - 2014-11-04 15:02 - 00514048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2014-11-04 15:01 - 2014-11-04 15:01 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff
2014-11-04 14:58 - 2014-11-04 15:27 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2014-11-04 14:58 - 2014-11-04 14:58 - 00000000 ____D () C:\WINDOWS\SysWOW64\XPSViewer
2014-11-04 14:58 - 2014-11-04 14:58 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-11-04 14:58 - 2014-11-04 14:58 - 00000000 ____D () C:\Program Files\MSBuild
2014-11-04 14:58 - 2014-11-04 14:58 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies
2014-11-04 14:58 - 2014-11-04 14:58 - 00000000 ____D () C:\inetpub
2014-11-04 14:57 - 2013-08-03 05:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2014-11-04 14:57 - 2013-08-03 05:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2014-11-04 14:57 - 2013-08-03 05:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2014-11-04 14:57 - 2013-08-03 05:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-11-04 13:16 - 2014-11-04 15:41 - 00006605 _____ () C:\WINDOWS\comsetup.log
2014-11-03 18:12 - 2014-11-03 18:12 - 00046136 ____H (LogMeIn Inc.) C:\WINDOWS\system32\Drivers\Hamdrv.sys

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2014-11-30 16:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2014-11-30 15:21 - 2014-05-06 19:52 - 00000978 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2014-11-30 15:16 - 2013-02-22 13:59 - 00000983 _____ () C:\WINDOWS\SysWOW64\bscs.ini
2014-11-30 15:14 - 2014-05-30 12:13 - 00000000 ____D () C:\Users\Rozsy\AppData\Local\LogMeIn Hamachi
2014-11-30 15:14 - 2013-09-03 11:23 - 00003620 _____ () C:\WINDOWS\SysWOW64\LOCALSERVICE.INI
2014-11-30 15:13 - 2014-05-06 19:52 - 00000974 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2014-11-30 15:13 - 2013-09-03 11:23 - 00000043 _____ () C:\WINDOWS\SysWOW64\LOCALDEVICE.INI
2014-11-30 15:13 - 2013-04-29 06:58 - 00000000 ____D () C:\ProgramData\PDFC
2014-11-30 15:12 - 2014-09-24 08:10 - 00012566 _____ () C:\WINDOWS\PFRO.log
2014-11-30 15:12 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2014-11-29 14:49 - 2014-09-14 20:15 - 00129752 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2014-11-29 12:27 - 2014-04-21 20:58 - 00000000 ____D () C:\AdwCleaner
2014-11-29 01:02 - 2013-12-14 10:36 - 00003598 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1891421636-1109278419-715636655-1002
2014-11-28 21:29 - 2014-04-21 13:27 - 00000000 ____D () C:\Program Files\trend micro
2014-11-28 21:14 - 2013-12-19 16:54 - 00000052 _____ () C:\WINDOWS\SysWOW64\DOErrors.log
2014-11-28 21:13 - 2014-09-24 17:23 - 01938474 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-11-28 21:13 - 2014-09-24 16:39 - 00803244 _____ () C:\WINDOWS\system32\perfh005.dat
2014-11-28 21:13 - 2014-09-24 16:39 - 00184236 _____ () C:\WINDOWS\system32\perfc005.dat
2014-11-28 21:13 - 2013-04-29 06:51 - 00000000 ____D () C:\Program Files (x86)\Hewlett-Packard
2014-11-28 21:13 - 2012-10-12 04:24 - 00000000 ____D () C:\SWSETUP
2014-11-28 21:06 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2014-11-28 21:05 - 2013-12-29 18:48 - 01050432 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsnx.sys
2014-11-28 21:05 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2014-11-28 21:04 - 2014-05-06 16:35 - 00029208 _____ () C:\WINDOWS\system32\Drivers\aswHwid.sys
2014-11-28 21:04 - 2013-12-29 18:57 - 00116728 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswstm.sys
2014-11-28 21:04 - 2013-12-29 18:49 - 00003924 _____ () C:\WINDOWS\System32\Tasks\avast! Emergency Update
2014-11-28 21:04 - 2013-12-29 18:48 - 00436624 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswsp.sys
2014-11-28 21:04 - 2013-12-29 18:48 - 00267632 _____ () C:\WINDOWS\system32\Drivers\aswVmm.sys
2014-11-28 21:04 - 2013-12-29 18:48 - 00093568 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2014-11-28 21:04 - 2013-12-29 18:48 - 00083280 _____ (AVAST Software) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2014-11-28 21:04 - 2013-12-29 18:48 - 00065776 _____ () C:\WINDOWS\system32\Drivers\aswRvrt.sys
2014-11-28 21:00 - 2014-01-09 16:59 - 00000350 _____ () C:\WINDOWS\Tasks\HPCeeScheduleForRozsy.job
2014-11-28 21:00 - 2013-08-22 15:44 - 00566272 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-11-28 16:47 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-11-27 21:02 - 2014-09-10 11:51 - 00000000 ____D () C:\Users\Rozsy\AppData\Roaming\TS3Client
2014-11-27 15:11 - 2014-01-09 16:59 - 00003164 _____ () C:\WINDOWS\System32\Tasks\HPCeeScheduleForRozsy
2014-11-27 15:10 - 2013-12-19 16:53 - 00000000 _____ () C:\WINDOWS\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-11-27 14:29 - 2012-07-26 08:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-11-27 14:23 - 2013-12-18 09:58 - 00002210 _____ () C:\Users\Public\Desktop\Google Chrome.lnk
2014-11-24 20:34 - 2014-09-14 19:29 - 00000000 ___RD () C:\Users\Rozsy\Downloads\Microsoft.SkypeApp_kzf8qxf38zg5c!App
2014-11-23 19:36 - 2013-08-22 15:46 - 00301182 _____ () C:\WINDOWS\setupact.log
2014-11-23 10:43 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2014-11-22 23:34 - 2014-02-16 20:32 - 00283064 _____ (Disc Soft Ltd) C:\WINDOWS\system32\Drivers\dtsoftbus01.sys
2014-11-22 23:34 - 2014-02-16 20:32 - 00000000 ____D () C:\Users\Rozsy\AppData\Roaming\DAEMON Tools Lite
2014-11-21 01:41 - 2014-02-16 20:35 - 00000000 ____D () C:\Users\Rozsy\AppData\Local\Microsoft Help
2014-11-20 21:51 - 2014-09-24 20:08 - 00714208 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2014-11-20 21:51 - 2014-09-24 20:08 - 00106976 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2014-11-16 15:53 - 2013-12-18 13:22 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-11-16 15:50 - 2013-12-18 13:22 - 103374192 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-11-16 15:40 - 2013-12-22 00:29 - 00000000 ____D () C:\Users\Rozsy\AppData\Roaming\vlc
2014-11-16 14:59 - 2014-03-25 19:29 - 00127568 _____ () C:\Users\Rozsy\AppData\Local\GDIPFONTCACHEV1.DAT
2014-11-14 17:19 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-11-14 00:11 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-14 00:11 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-11-14 00:11 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2014-11-14 00:11 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-11-14 00:10 - 2014-09-24 20:02 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-11-14 00:10 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-11-14 00:10 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2014-11-13 22:39 - 2014-02-16 20:35 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-11-13 16:16 - 2013-12-18 09:57 - 00003950 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2014-11-13 16:16 - 2013-12-18 09:57 - 00003714 _____ () C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2014-11-11 16:30 - 2014-06-13 21:00 - 00000000 ____D () C:\Users\Rozsy\Documents\ERASMUS
2014-11-11 16:30 - 2014-05-17 09:51 - 00000000 ____D () C:\Users\Rozsy\Documents\STATNICEstaré
2014-11-11 16:30 - 2014-02-22 12:32 - 00000000 ____D () C:\Users\Rozsy\Documents\tridit2
2014-11-11 16:30 - 2014-02-21 21:29 - 00000000 ____D () C:\Users\Rozsy\Documents\tridit
2014-11-07 23:47 - 2013-12-14 10:30 - 00000000 ____D () C:\Users\Rozsy\AppData\Local\Packages
2014-11-07 17:03 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\WinStore
2014-11-07 16:54 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\restore
2014-11-04 16:08 - 2014-10-29 18:16 - 00000000 ____D () C:\WINDOWS\system32\AutoUpdateLicense
2014-11-04 15:43 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows NT
2014-11-04 15:43 - 2013-08-22 14:36 - 00000000 __RHD () C:\Users\Default
2014-11-04 15:41 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Registration
2014-11-04 15:37 - 2013-08-22 16:36 - 00000000 __RSD () C:\WINDOWS\Media
2014-11-04 15:37 - 2013-08-22 16:36 - 00000000 __RHD () C:\Users\Public\Libraries
2014-11-04 15:36 - 2014-02-14 21:22 - 00001665 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DTS Sound+.lnk
2014-11-04 15:27 - 2014-09-24 16:59 - 00000000 ____D () C:\WINDOWS\ShellNew
2014-11-04 15:27 - 2014-09-24 16:39 - 00000000 ____D () C:\WINDOWS\SysWOW64\cs
2014-11-04 15:27 - 2014-09-24 16:39 - 00000000 ____D () C:\WINDOWS\system32\cs
2014-11-04 15:27 - 2014-09-14 20:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2014-11-04 15:27 - 2014-09-10 11:51 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2014-11-04 15:27 - 2014-05-14 20:36 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2014-11-04 15:27 - 2014-05-03 15:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-11-04 15:27 - 2014-04-19 10:45 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2014-11-04 15:27 - 2014-03-06 17:23 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Fotostar Offline client
2014-11-04 15:27 - 2014-02-20 00:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Czech Soccer Manager
2014-11-04 15:27 - 2014-02-16 20:39 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2014-11-04 15:27 - 2014-02-16 20:32 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\zh-Hant
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\zh-Hans
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\tr
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\th
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\sv
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\sr
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\sl
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\sk
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\ru
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\ro
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\pl
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\no
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\nl
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\lv
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\lt
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\ko
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\ja
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\it
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\hu
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\hr
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\he
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\fr
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\fi
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\et
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\es
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\el
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\de
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\da
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\bg
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\ar
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\zh-Hant
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\zh-Hans
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\tr
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\th
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\sv
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\sr
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\sl
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\sk
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\ru
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\ro
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\pl
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\no
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\nl
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\lv
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\lt
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\ko
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\ja
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\it
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\hu
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\hr
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\he
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\fr
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\fi
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\et
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\es
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\el
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\de
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\da
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\bg
2014-11-04 15:27 - 2014-02-07 16:04 - 00000000 ____D () C:\WINDOWS\system32\ar
2014-11-04 15:27 - 2013-12-22 00:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-11-04 15:27 - 2013-12-19 17:14 - 00000000 ____D () C:\Users\Rozsy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2014-11-04 15:27 - 2013-12-18 10:04 - 00000000 ____D () C:\Users\Rozsy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2014-11-04 15:27 - 2013-12-18 09:58 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-11-04 15:27 - 2013-09-03 11:17 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Communication and Chat
2014-11-04 15:27 - 2013-09-03 10:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
2014-11-04 15:27 - 2013-09-03 10:42 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Security and Protection
2014-11-04 15:27 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep
2014-11-04 15:27 - 2013-04-29 06:58 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Productivity and Tools
2014-11-04 15:27 - 2013-04-29 06:54 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP Help and Support
2014-11-04 15:23 - 2014-09-24 16:39 - 00000000 ____D () C:\WINDOWS\SysWOW64\WCN
2014-11-04 15:23 - 2014-09-24 16:39 - 00000000 ____D () C:\WINDOWS\SysWOW64\sysprep
2014-11-04 15:23 - 2014-09-24 16:39 - 00000000 ____D () C:\WINDOWS\system32\WCN
2014-11-04 15:23 - 2013-09-03 11:23 - 00000000 ____D () C:\WINDOWS\SysWOW64\DigitalPersona
2014-11-04 15:23 - 2013-09-03 11:04 - 00000000 ____D () C:\WINDOWS\SysWOW64\sda
2014-11-04 15:23 - 2013-08-22 16:37 - 00004893 _____ () C:\WINDOWS\DtcInstall.log
2014-11-04 15:23 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI
2014-11-04 15:23 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\migwiz
2014-11-04 15:23 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\IME
2014-11-04 15:23 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\spool
2014-11-04 15:23 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\MUI
2014-11-04 15:23 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\IME
2014-11-04 15:23 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\SMI
2014-11-04 15:23 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\oobe
2014-11-04 15:23 - 2012-07-26 06:37 - 00000000 ____D () C:\Users\Default.migrated
2014-11-04 15:21 - 2014-05-12 14:46 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2014-11-04 15:21 - 2013-08-22 16:43 - 00000000 ____D () C:\WINDOWS\DigitalLocker
2014-11-04 15:21 - 2013-08-22 16:36 - 00000000 __SHD () C:\Program Files\Windows Sidebar
2014-11-04 15:21 - 2013-08-22 16:36 - 00000000 __SHD () C:\Program Files (x86)\Windows Sidebar
2014-11-04 15:21 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\IME
2014-11-04 15:21 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Help
2014-11-04 15:21 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-11-04 15:21 - 2013-04-29 07:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HP
2014-11-04 15:21 - 2013-04-29 06:56 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2014-11-04 15:21 - 2012-08-10 15:32 - 00000000 ____D () C:\ProgramData\PRICache
2014-11-04 15:18 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\Recovery
2014-11-04 15:09 - 2013-08-22 15:46 - 00000087 _____ () C:\WINDOWS\setuperr.log
2014-11-04 15:04 - 2013-08-22 16:36 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template
2014-11-04 15:03 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
2014-11-04 15:03 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\MediaViewer
2014-11-04 15:03 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\FileManager
2014-11-04 15:03 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Camera
2014-11-04 14:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\inetsrv
2014-11-04 14:58 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\inetsrv
2014-11-04 14:58 - 2013-08-22 12:25 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisreset.exe
2014-11-04 14:58 - 2013-08-22 12:22 - 00012288 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisrstap.dll
2014-11-04 14:58 - 2013-08-22 12:19 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\admwprox.dll
2014-11-04 14:58 - 2013-08-22 12:19 - 00015360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wamregps.dll
2014-11-04 14:58 - 2013-08-22 12:18 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\iisRtl.dll
2014-11-04 14:58 - 2013-08-22 11:03 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ahadmin.dll
2014-11-04 14:58 - 2013-08-22 04:58 - 00016384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisreset.exe
2014-11-04 14:58 - 2013-08-22 04:56 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisrstap.dll
2014-11-04 14:58 - 2013-08-22 04:53 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\admwprox.dll
2014-11-04 14:58 - 2013-08-22 04:53 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wamregps.dll
2014-11-04 14:58 - 2013-08-22 04:51 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iisRtl.dll
2014-11-04 14:58 - 2013-08-22 03:54 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ahadmin.dll
2014-11-04 14:46 - 2014-04-21 20:04 - 01752809 _____ () C:\WINDOWS\WindowsUpdate (1).log
2014-11-04 12:43 - 2012-07-26 09:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2014-11-30 15:24




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: (Windows) (Fixed) (Total:915.55 GB) (Free:784.24 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (Recovery Image) (Fixed) (Total:14.04 GB) (Free:1.39 GB) NTFS
Drive f: (ACAD11cze64) (CDROM) (Total:3.11 GB) (Free:0 GB) CDFS

Available physical RAM: 6053.83 MB
Total physical RAM: 8042.57 MB
Percentage of memory in use: 24%

==================== MBR and Partition Table ==================

Disk: 0 (Size: 931.5 GB) (Disk ID: A50E1C7D)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForRozsy.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Alternate Data Streams (whitelisted) ==================


==================== Security Center ==================

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Rozsy\Desktop" je 5 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================

rosinho
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 20 dub 2014 13:25

Re: Prosím o kontrolu logu

#8 Příspěvek od rosinho »

a zde addition:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 26-11-2014 01
Ran by Rozsy at 2014-11-30 16:13:55
Running from C:\Users\Rozsy\Desktop
Boot Mode: Normal
==========================================================


==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: avast! Antivirus (Disabled - Up to date) {17AD7D40-BA12-9C46-7131-94903A54AD8B}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: avast! Antivirus (Disabled - Up to date) {ACCC9CA4-9C28-93C8-4B81-AFE241D3E736}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 9.22beta (HKLM-x32\...\7-Zip) (Version: - )
Adobe Reader XI (11.0.09) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.09 - Adobe Systems Incorporated)
Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
AMD Catalyst Install Manager (HKLM\...\{5B136AD7-384E-C2CC-6D1A-70B0C6216C25}) (Version: 8.0.911.0 - Advanced Micro Devices, Inc.)
Ashampoo Burning Studio 6 FREE v.6.84 (HKLM-x32\...\{91B33C97-3ED1-03EA-A67B-244AA4D7B559}_is1) (Version: 6.8.4 - Ashampoo GmbH & Co. KG)
AutoCAD 2011 - česky (HKLM\...\AutoCAD 2011 - česky) (Version: 18.1.49.0 - Autodesk)
AutoCAD 2011 - česky (Version: 18.1.49.0 - Autodesk) Hidden
AutoCAD 2011 Language Pack - česky (Version: 18.1.49.0 - Autodesk) Hidden
Autodesk Material Library 2011 (HKLM-x32\...\{9DEABCB6-B759-4D52-92F8-51B34A2B4D40}) (Version: 2.0.0.49 - Autodesk)
Autodesk Material Library 2011 Base Image library (HKLM-x32\...\{CD1E078C-A6B9-47DA-B035-6365C85C7832}) (Version: 2.0.0.49 - Autodesk)
Avast Free Antivirus (HKLM-x32\...\Avast) (Version: 10.0.2208 - AVAST Software)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 4.12 - Piriform)
CyberLink Media Suite 10 (HKLM-x32\...\InstallShield_{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}) (Version: 10.0.1.2106 - CyberLink Corp.)
Cyberlink PhotoDirector (HKLM-x32\...\InstallShield_{39337565-330E-4ab6-A9AE-AC81E0720B10}) (Version: 3.0.1.3703 - CyberLink Corp.)
CyberLink Power2Go 8 (HKLM-x32\...\InstallShield_{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}) (Version: 8.0.2.2321 - CyberLink Corp.)
CyberLink PowerDirector 10 (HKLM-x32\...\InstallShield_{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}) (Version: 10.0.2.2531 - CyberLink Corp.)
CyberLink PowerDVD 12 (HKLM-x32\...\InstallShield_{B46BEA36-0B71-4A4E-AE41-87241643FA0A}) (Version: 12.0.1.2627 - CyberLink Corp.)
CyberLink Webcam Sharing Manager 4 (HKLM-x32\...\InstallShield_{296F7F3B-C75A-45e9-AD22-CC19DF86E9D3}) (Version: 4.2.1.1419 - CyberLink Corp.)
CyberLink YouCam (HKLM-x32\...\InstallShield_{01FB4998-33C4-4431-85ED-079E3EEFE75D}) (Version: 4.2.1.3801 - CyberLink Corp.)
Czech Soccer Manager (HKLM-x32\...\Czech Soccer Manager) (Version: - )
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd)
Energy Star (HKLM-x32\...\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}) (Version: 1.0.9 - Hewlett-Packard Company)
Evernote v. 4.6 (HKLM-x32\...\{A23AADDA-3DBF-11E2-A6F2-984BE15F174E}) (Version: 4.6.0.7670 - Evernote Corp.)
FARO LS 1.1.406.58 (HKLM-x32\...\{951B0F30-9F1A-4BF6-B3DA-99EB0E917B1C}) (Version: 4.6.58.2 - FARO Scanner Production)
Fotostar Offline client (HKLM-x32\...\Fotostar Offline client) (Version: 5.0.6 - CEWE COLOR AG u Co. OHG)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 39.0.2171.71 - Google Inc.)
Google Update Helper (x32 Version: 1.3.25.11 - Google Inc.) Hidden
Hewlett-Packard ACLM.NET v1.2.2.3 (x32 Version: 1.00.0000 - Hewlett-Packard Company) Hidden
HP 3D DriveGuard (HKLM-x32\...\{84663FDA-1374-4048-9869-DD4A8784785A}) (Version: 6.0.16.1 - Hewlett-Packard Company)
HP Client Security Manager (HKLM\...\HPProtectTools) (Version: 8.3.1.1714 - Hewlett-Packard Company)
HP Device Access Manager (HKLM\...\{274A948D-DD41-4B8F-B66F-0F4AD233200F}) (Version: 8.0.0.4 - Hewlett-Packard Company)
HP Documentation (HKLM-x32\...\{F3F74675-3700-4C55-A9AC-924D4E36DC40}) (Version: 1.1.2.0 - Hewlett-Packard)
HP Drive Encryption (HKLM\...\HPDriveEncryption) (Version: 8.6.4.82 - Společnost Hewlett-Packard Company)
HP ESU for Microsoft Windows 8 (HKLM-x32\...\{482FF7A0-EA03-487A-9112-862D3341B76C}) (Version: 1.2.1 - Hewlett-Packard Company)
HP File Sanitizer (HKLM-x32\...\{6D6ADF03-B257-4EA5-BBC1-1D145AF8D514}) (Version: 8.1.1.1 - Hewlett-Packard Company)
HP HD Webcam Driver (HKLM-x32\...\Sunplus SPUVCb) (Version: 3.4.8.25 - SunplusIT)
HP Hotkey Support (HKLM-x32\...\{57FA60DA-585F-456A-B80E-17D1CDD22A30}) (Version: 5.0.27.1 - Hewlett-Packard Company)
HP Quick Start (HKLM-x32\...\{574F0207-8E98-46CD-8F79-318348C98C46}) (Version: 1.0.4660.30220 - Hewlett-Packard)
HP Registration Service (HKLM\...\{D1E8F2D7-7794-4245-B286-87ED86C1893C}) (Version: 1.2.6317.4309 - Hewlett-Packard)
HP SoftPaq Download Manager (HKLM-x32\...\{3F728815-C7E8-40EA-8D1A-F7B8E2382325}) (Version: 3.4.10.0 - Hewlett-Packard Company)
HP Software Setup (HKLM-x32\...\{D1E7D876-6B86-4B35-A93D-15B0D6C43EAF}) (Version: 8.5.4.1 - Hewlett-Packard Company)
HP Support Assistant (HKLM-x32\...\{E35A3B13-78CD-4967-8AC8-AA9FDA693EDE}) (Version: 7.4.45.4 - Hewlett-Packard Company)
HP Support Information (HKLM-x32\...\{B2B7B1C8-7C8B-476C-BE2C-049731C55992}) (Version: 12.00.0000 - Hewlett-Packard)
HP System Default Settings (HKLM-x32\...\{987210BB-D707-48FC-88FA-4374765D108D}) (Version: 2.0.1 - Hewlett-Packard Company)
HP Theft Recovery (HKLM-x32\...\InstallShield_{10F5A72A-1E07-4FAE-A7E7-14B10CC66B17}) (Version: 8.0.0.6 - Hewlett-Packard Company)
HP Wireless Button Driver (HKLM-x32\...\{30B2D1D8-0A07-4B71-9553-0710C5D31E35}) (Version: 1.1.2.1 - Hewlett-Packard Company)
HP Wireless Hotspot (HKLM-x32\...\{A161E705-44B9-4B5F-A5F8-8E5847AEA86B}) (Version: 1.0.24.1 - Hewlett-Packard Company)
IDT Audio (HKLM-x32\...\{E3A5A8AB-58F6-45FF-AFCB-C9AE18C05001}) (Version: 1.0.6496.0 - IDT)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.20.1337 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.3958 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.6.5.1006 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.266 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.266 - LogMeIn, Inc.) Hidden
Malwarebytes Anti-Malware verze 2.0.3.1025 (HKLM-x32\...\Malwarebytes Anti-Malware_is1) (Version: 2.0.3.1025 - Malwarebytes Corporation)
Microsoft Office (HKLM-x32\...\{90150000-0138-0409-0000-0000000FF1CE}) (Version: 15.0.4420.1017 - Microsoft Corporation)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.21022 (HKLM\...\{350AA351-21FA-3270-8B7A-835434E766AD}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{6AFCA4E1-9B78-3640-8F72-A7BF33448200}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.51106 (HKLM-x32\...\{6e8f74e0-43bd-4dce-8477-6ff6828acc07}) (Version: 11.0.51106.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.51106 (HKLM-x32\...\{8e70e4e1-06d7-470b-9f74-a51bef21088e}) (Version: 11.0.51106.1 - Microsoft Corporation)
PDF Complete Corporate Edition (HKLM-x32\...\PDF Complete) (Version: 4.1.33 - PDF Complete, Inc)
PX Profile Update (x32 Version: 1.00.1. - AMD) Hidden
Ralink Bluetooth Stack64 (HKLM\...\{9041BE08-21DA-4916-EC0B-9375C5B624D9}) (Version: 11.0.737.1 - Mediatek)
Ralink RT3290 802.11bgn Wi-Fi Adapter (HKLM-x32\...\{8FC4F1DD-F7FD-4766-804D-3C8FF1D309AF}) (Version: 5.0.45.0 - Mediatek)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.11.201.2013 - Realtek)
Realtek PCIE Card Reader (HKLM-x32\...\{BCDA54F6-C4B6-4519-A09E-FA064A6B4098}) (Version: 1.1.9200.7 - Realtek Semiconductor Corp.)
SecretSauce (HKLM\...\SecretSauce) (Version: 2013.12.07.011955 - SecretSauce) <==== ATTENTION
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 17.0.18.8 - Synaptics Incorporated)
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.01 - Ghisler Software GmbH)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Validity Fingerprint Sensor Driver (HKLM\...\{ADAA7361-54B8-4FC8-804E-94EC6C11ED68}) (Version: 4.5.133.0 - Validity Sensors, Inc.)
VLC media player 2.1.2 (HKLM-x32\...\VLC media player) (Version: 2.1.2 - VideoLAN)

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-1891421636-1109278419-715636655-1002_Classes\CLSID\{6D7AE628-FF41-4CD3-91DD-34825BB1A251}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2011\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1891421636-1109278419-715636655-1002_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)
CustomCLSID: HKU\S-1-5-21-1891421636-1109278419-715636655-1002_Classes\CLSID\{C92FB640-AD4D-498A-9979-A51A2540C977}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2011\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1891421636-1109278419-715636655-1002_Classes\CLSID\{D70E31AD-2614-49F2-B0FC-ACA781D81F3E}\localserver32 -> C:\Program Files\Autodesk\AutoCAD 2011\acad.exe (Autodesk, Inc.)
CustomCLSID: HKU\S-1-5-21-1891421636-1109278419-715636655-1002_Classes\CLSID\{E2C40589-DE61-11ce-BAE0-0020AF6D7005}\InprocServer32 -> C:\Program Files\Autodesk\AutoCAD 2011\acadficn.dll (Autodesk, Inc.)

==================== Restore Points =========================

12-11-2014 23:20:19 Windows Update
16-11-2014 14:49:14 Windows Update
20-11-2014 14:52:23 Windows Update
22-11-2014 22:47:54 Nainstalováno rozhraní DirectX
27-11-2014 13:28:17 Windows Update
28-11-2014 20:02:31 avast! antivirus system restore point

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2013-08-22 14:25 - 2014-11-29 12:35 - 00000753 ____A C:\WINDOWS\system32\Drivers\etc\hosts

127.0.0.1 localhost

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {1C4A3B8D-1EBC-40D0-8A72-F00DA55D4C01} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {4687B6DF-B70F-43B6-B811-5601B771C255} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Update Check => C:\ProgramData\Hewlett-Packard\HP Support Framework\Resources\Updater7\HPSFUpdater.exe [2014-05-12] (Hewlett-Packard Company)
Task: {56CCE996-5FDD-4E1A-B891-FA18636E429A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe [2013-11-04] (Hewlett-Packard Company)
Task: {6BF942D2-B747-4CE8-B90D-3C93A7732C7A} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-03-18] (Piriform Ltd)
Task: {83D249F3-A601-4E56-A431-DC3021944560} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_HB => C:\WINDOWS\system32\MRT.exe [2014-11-16] (Microsoft Corporation)
Task: {8552EA57-0AB4-4EC6-84CD-73A4E01791FE} - System32\Tasks\Synaptics TouchPad Enhancements => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2013-10-30] (Synaptics Incorporated)
Task: {9D78F222-6042-4579-AD46-C3700EB2982C} - System32\Tasks\HPCeeScheduleForRozsy => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [2011-07-15] (Hewlett-Packard)
Task: {E3093E12-F8FB-41CC-9858-1DE957B82F17} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-18] (Google Inc.)
Task: {E4CFA0A0-DEAA-438F-A4D7-07E50C414D91} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-12-18] (Google Inc.)
Task: {F9800125-3FB7-431F-BA7D-B4EE498EA44E} - System32\Tasks\avast! Emergency Update => C:\Program Files\AVAST Software\Avast\AvastEmUpdate.exe [2014-11-28] (AVAST Software)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\HPCeeScheduleForRozsy.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe
Task: C:\WINDOWS\Tasks\Synaptics TouchPad Enhancements.job => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe

==================== Loaded Modules (whitelisted) =============

2013-05-22 13:21 - 2013-05-22 13:21 - 00299832 _____ () C:\Program Files\Hewlett-Packard\Pre-Boot Security for HP ProtectTools\BIOSDomainPlugin.dll
2013-01-10 13:35 - 2013-01-10 13:35 - 00009728 _____ () C:\windows\system32\BsHelpCSps.dll
2014-11-30 15:13 - 2014-11-30 15:13 - 02904064 _____ () C:\Program Files\AVAST Software\Avast\defs\14113000\algo.dll
2013-01-10 13:30 - 2013-01-10 13:30 - 00022528 _____ () C:\WINDOWS\SYSTEM32\BsTrace.dll
2013-02-22 15:05 - 2013-02-22 15:05 - 00387936 _____ () c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\Driver\USB\tl_filter.dll
2011-07-05 10:53 - 2011-07-05 10:53 - 00012800 _____ () c:\Program Files (x86)\Ralink Corporation\Ralink Bluetooth Stack\Driver\AMP\IVTAMPRL.dll
2013-01-10 13:35 - 2013-01-10 13:35 - 00009728 _____ () C:\windows\SYSTEM32\BsHelpCSps.dll
2013-01-10 13:35 - 2013-01-10 13:35 - 00055296 _____ () C:\windows\SYSTEM32\BlueSoleilCSps.dll
2013-01-31 17:04 - 2013-01-31 17:04 - 00080120 _____ () C:\WINDOWS\SYSTEM32\BsProfilefunc.dll
2013-01-10 11:25 - 2013-01-10 11:25 - 00364544 _____ () C:\WINDOWS\SYSTEM32\BsExtendFunc.dll
2013-09-03 11:17 - 2012-06-08 04:34 - 00627216 _____ () C:\Program Files (x86)\CyberLink\Power2Go8\CLMediaLibrary.dll
2012-06-08 11:34 - 2012-06-08 11:34 - 00016400 _____ () c:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvcPS.dll
2014-11-28 21:04 - 2014-11-28 21:04 - 38562088 _____ () C:\Program Files\AVAST Software\Avast\libcef.dll
2014-11-07 23:49 - 2014-11-07 23:49 - 00016384 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PSIClient\17dba063399ab5aa34a2a7495c1aa038\PSIClient.ni.dll
2013-09-03 11:04 - 2012-10-22 09:22 - 01199648 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2013-01-10 13:30 - 2013-01-10 13:30 - 00022528 _____ () C:\windows\SYSTEM32\BsTrace.dll
2014-11-27 14:22 - 2014-11-25 07:39 - 01077064 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\libglesv2.dll
2014-11-27 14:22 - 2014-11-25 07:39 - 00211272 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\libegl.dll
2014-11-27 14:22 - 2014-11-25 07:39 - 09009480 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\pdf.dll
2014-11-27 14:22 - 2014-11-25 07:39 - 01677128 _____ () C:\Program Files (x86)\Google\Chrome\Application\39.0.2171.71\ffmpegsumo.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

==================== EXE Association (whitelisted) =============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== MSCONFIG/TASK MANAGER disabled items =========

(Currently there is no automatic fix for this section.)


========================= Accounts: ==========================

Administrator (S-1-5-21-1891421636-1109278419-715636655-500 - Administrator - Disabled)
Guest (S-1-5-21-1891421636-1109278419-715636655-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-1891421636-1109278419-715636655-1006 - Limited - Enabled)
Rozsy (S-1-5-21-1891421636-1109278419-715636655-1002 - Administrator - Enabled) => C:\Users\Rozsy

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (11/30/2014 03:14:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: CCC.exe, verze: 3.5.0.0, časové razítko: 0x4f8350e0
Název chybujícího modulu: KERNELBASE.dll, verze: 6.3.9600.17278, časové razítko: 0x53eebf2e
Kód výjimky: 0xe0434352
Posun chyby: 0x000000000000606c
ID chybujícího procesu: 0x508
Čas spuštění chybující aplikace: 0xCCC.exe0
Cesta k chybující aplikaci: CCC.exe1
Cesta k chybujícímu modulu: CCC.exe2
ID zprávy: CCC.exe3
Úplný název chybujícího balíčku: CCC.exe4
ID aplikace související s chybujícím balíčkem: CCC.exe5

Error: (11/30/2014 03:14:58 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: CCC.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.ObjectDisposedException
Zásobník:
na System.Threading.TimerQueueTimer.Change(UInt32, UInt32)
na ATI.ACE.CCC.Implementation.CCC_Main.CCCNewThreadBegin(System.Object)
na System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
na System.Threading.ThreadHelper.ThreadStart(System.Object)

Error: (11/30/2014 03:13:38 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: DPAgent.exe, verze: 6.0.0.2935, časové razítko: 0x524dc5b6
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0656adc8
ID chybujícího procesu: 0x868
Čas spuštění chybující aplikace: 0xDPAgent.exe0
Cesta k chybující aplikaci: DPAgent.exe1
Cesta k chybujícímu modulu: DPAgent.exe2
ID zprávy: DPAgent.exe3
Úplný název chybujícího balíčku: DPAgent.exe4
ID aplikace související s chybujícím balíčkem: DPAgent.exe5

Error: (11/29/2014 00:50:14 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: CCC.exe, verze: 3.5.0.0, časové razítko: 0x4f8350e0
Název chybujícího modulu: KERNELBASE.dll, verze: 6.3.9600.17278, časové razítko: 0x53eebf2e
Kód výjimky: 0xe0434352
Posun chyby: 0x000000000000606c
ID chybujícího procesu: 0x56c
Čas spuštění chybující aplikace: 0xCCC.exe0
Cesta k chybující aplikaci: CCC.exe1
Cesta k chybujícímu modulu: CCC.exe2
ID zprávy: CCC.exe3
Úplný název chybujícího balíčku: CCC.exe4
ID aplikace související s chybujícím balíčkem: CCC.exe5

Error: (11/29/2014 00:50:13 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: CCC.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.ObjectDisposedException
Zásobník:
na System.Threading.TimerQueueTimer.Change(UInt32, UInt32)
na ATI.ACE.CCC.Implementation.CCC_Main.CCCNewThreadBegin(System.Object)
na System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
na System.Threading.ThreadHelper.ThreadStart(System.Object)

Error: (11/29/2014 00:47:24 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: DPAgent.exe, verze: 6.0.0.2935, časové razítko: 0x524dc5b6
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x05cfadc8
ID chybujícího procesu: 0xec8
Čas spuštění chybující aplikace: 0xDPAgent.exe0
Cesta k chybující aplikaci: DPAgent.exe1
Cesta k chybujícímu modulu: DPAgent.exe2
ID zprávy: DPAgent.exe3
Úplný název chybujícího balíčku: DPAgent.exe4
ID aplikace související s chybujícím balíčkem: DPAgent.exe5

Error: (11/29/2014 00:33:08 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: CCC.exe, verze: 3.5.0.0, časové razítko: 0x4f8350e0
Název chybujícího modulu: KERNELBASE.dll, verze: 6.3.9600.17278, časové razítko: 0x53eebf2e
Kód výjimky: 0xe0434352
Posun chyby: 0x000000000000606c
ID chybujícího procesu: 0x118
Čas spuštění chybující aplikace: 0xCCC.exe0
Cesta k chybující aplikaci: CCC.exe1
Cesta k chybujícímu modulu: CCC.exe2
ID zprávy: CCC.exe3
Úplný název chybujícího balíčku: CCC.exe4
ID aplikace související s chybujícím balíčkem: CCC.exe5

Error: (11/29/2014 00:33:08 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: CCC.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.ObjectDisposedException
Zásobník:
na System.Threading.TimerQueueTimer.Change(UInt32, UInt32)
na ATI.ACE.CCC.Implementation.CCC_Main.CCCNewThreadBegin(System.Object)
na System.Threading.ExecutionContext.RunInternal(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object, Boolean)
na System.Threading.ExecutionContext.Run(System.Threading.ExecutionContext, System.Threading.ContextCallback, System.Object)
na System.Threading.ThreadHelper.ThreadStart(System.Object)

Error: (11/29/2014 00:29:55 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: DPAgent.exe, verze: 6.0.0.2935, časové razítko: 0x524dc5b6
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x061fadc8
ID chybujícího procesu: 0x918
Čas spuštění chybující aplikace: 0xDPAgent.exe0
Cesta k chybující aplikaci: DPAgent.exe1
Cesta k chybujícímu modulu: DPAgent.exe2
ID zprávy: DPAgent.exe3
Úplný název chybujícího balíčku: DPAgent.exe4
ID aplikace související s chybujícím balíčkem: DPAgent.exe5

Error: (11/29/2014 11:43:01 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: CCC.exe, verze: 3.5.0.0, časové razítko: 0x4f8350e0
Název chybujícího modulu: KERNELBASE.dll, verze: 6.3.9600.17278, časové razítko: 0x53eebf2e
Kód výjimky: 0xe0434352
Posun chyby: 0x000000000000606c
ID chybujícího procesu: 0x1518
Čas spuštění chybující aplikace: 0xCCC.exe0
Cesta k chybující aplikaci: CCC.exe1
Cesta k chybujícímu modulu: CCC.exe2
ID zprávy: CCC.exe3
Úplný název chybujícího balíčku: CCC.exe4
ID aplikace související s chybujícím balíčkem: CCC.exe5


System errors:
=============
Error: (11/30/2014 00:51:35 PM) (Source: DCOM) (EventID: 10010) (User: pc-Rozsy)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}

Error: (11/30/2014 00:51:01 PM) (Source: DCOM) (EventID: 10010) (User: pc-Rozsy)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}

Error: (11/30/2014 00:23:38 PM) (Source: DCOM) (EventID: 10010) (User: pc-Rozsy)
Description: {BF6C1E47-86EC-4194-9CE5-13C15DCB2001}

Error: (11/30/2014 00:23:08 PM) (Source: DCOM) (EventID: 10010) (User: pc-Rozsy)
Description: {1B1F472E-3221-4826-97DB-2C2324D389AE}

Error: (11/29/2014 04:51:32 PM) (Source: Microsoft-Windows-Kernel-Power) (EventID: 137) (User: )
Description: 4

Error: (11/29/2014 02:50:49 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: pc-Rozsy)
Description: 0x8000002a79\??\C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\S-1-5-18-0-ntuser.dat

Error: (11/29/2014 02:50:41 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: pc-Rozsy)
Description: 0x8000002a79\??\C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\S-1-5-18-0-ntuser.dat

Error: (11/29/2014 02:49:28 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: pc-Rozsy)
Description: 0x8000002a79\??\C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\S-1-5-18-0-ntuser.dat

Error: (11/29/2014 02:49:21 PM) (Source: Microsoft-Windows-Kernel-General) (EventID: 5) (User: pc-Rozsy)
Description: 0x8000002a79\??\C:\ProgramData\Malwarebytes\Malwarebytes Anti-Malware\S-1-5-18-0-ntuser.dat

Error: (11/29/2014 00:44:17 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba PEVSystemStart je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.


Microsoft Office Sessions:
=========================

==================== Memory info ===========================

Processor: Intel(R) Core(TM) i5-3230M CPU @ 2.60GHz
Percentage of memory in use: 24%
Total physical RAM: 8042.57 MB
Available physical RAM: 6053.83 MB
Total Pagefile: 9322.57 MB
Available Pagefile: 7121.16 MB
Total Virtual: 131072 MB
Available Virtual: 131071.79 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:915.55 GB) (Free:784.24 GB) NTFS ==>[System with boot components (obtained from reading drive)]
Drive d: (Recovery Image) (Fixed) (Total:14.04 GB) (Free:1.39 GB) NTFS
Drive f: (ACAD11cze64) (CDROM) (Total:3.11 GB) (Free:0 GB) CDFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: A50E1C7D)

Partition: GPT Partition Type.

==================== End Of Log ============================

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o kontrolu logu

#9 Příspěvek od altrok »

  • Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
  • ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
  • znovu spustte FRST a kliknete na Fix
  • po restartu na Vas vyskoci fixlog (pripadne bude ulozen na Plose), jehoz obsah mi vlozte do pristi odpovedi

    Kód: Vybrat vše

    Start
    CloseProcesses:
    HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
    HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [] => [X]
    HKU\S-1-5-21-1891421636-1109278419-715636655-1002\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
    HKU\S-1-5-21-1891421636-1109278419-715636655-1002\...\MountPoints2: {02d43a53-7186-11e4-beb8-70188b189b8c} - "F:\Setup.exe" 
    
    HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
    HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
    SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=CMNTDFJS
    SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTerms}&form=IE10TR&src=IE10TR&pc=CMNTDFJS
    SearchScopes: HKLM-x32 -> DefaultScope value is missing.
    SearchScopes: HKU\S-1-5-21-1891421636-1109278419-715636655-1002 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
    Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File
    
    CHR StartupUrls: Default -> "hxxp://search.conduit.com/?ctid=CT3220468&SearchSource=48"
    U4 BthAvrcpTg; No ImagePath
    U4 BthHFEnum; No ImagePath
    U4 bthhfhid; No ImagePath
    
    2014-11-29 12:45 - 2014-11-29 12:33 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
    2014-11-29 12:35 - 2014-11-29 12:47 - 00007355 _____ () C:\zoek-results.log
    2014-11-29 12:33 - 2014-11-29 12:44 - 00000000 ____D () C:\zoek_backup
    2014-11-29 12:25 - 2014-11-29 12:25 - 01294848 _____ () C:\Users\Rozsy\Desktop\zoek.exe
    2014-11-29 12:23 - 2014-11-29 12:23 - 02148864 _____ () C:\Users\Rozsy\Desktop\adwcleaner_4.102.exe
    2014-11-28 21:29 - 2014-11-28 21:29 - 00000000 ____D () C:\rsit
    2014-11-28 21:23 - 2014-11-28 21:23 - 01222144 _____ () C:\Users\Rozsy\Downloads\RSITx64 (1).exe
    2014-11-29 12:27 - 2014-04-21 20:58 - 00000000 ____D () C:\AdwCleaner
    2014-11-28 21:29 - 2014-04-21 13:27 - 00000000 ____D () C:\Program Files\trend micro
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Hosts:
    EmptyTemp:
    End
    
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

rosinho
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 20 dub 2014 13:25

Re: Prosím o kontrolu logu

#10 Příspěvek od rosinho »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 30-11-2014 01
Ran by Rozsy at 2014-11-30 22:27:23 Run:1
Running from C:\Users\Rozsy\Desktop
Loaded Profile: Rozsy (Available profiles: Rozsy)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [Adobe ARM] => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [959176 2014-08-21] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [] => [X]
HKU\S-1-5-21-1891421636-1109278419-715636655-1002\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-1891421636-1109278419-715636655-1002\...\MountPoints2: {02d43a53-7186-11e4-beb8-70188b189b8c} - "F:\Setup.exe"

HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.bing.com?pc=CMNTDFJS
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.bing.com?pc=CMNTDFJS
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKLM -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://www.bing.com/search?q={searchTer ... c=CMNTDFJS
SearchScopes: HKLM-x32 -> DefaultScope value is missing.
SearchScopes: HKU\S-1-5-21-1891421636-1109278419-715636655-1002 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
Toolbar: HKLM - No Name - {CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} - No File

CHR StartupUrls: Default -> "hxxp://search.conduit.com/?ctid=CT3220468&SearchSource=48"
U4 BthAvrcpTg; No ImagePath
U4 BthHFEnum; No ImagePath
U4 bthhfhid; No ImagePath

2014-11-29 12:45 - 2014-11-29 12:33 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2014-11-29 12:35 - 2014-11-29 12:47 - 00007355 _____ () C:\zoek-results.log
2014-11-29 12:33 - 2014-11-29 12:44 - 00000000 ____D () C:\zoek_backup
2014-11-29 12:25 - 2014-11-29 12:25 - 01294848 _____ () C:\Users\Rozsy\Desktop\zoek.exe
2014-11-29 12:23 - 2014-11-29 12:23 - 02148864 _____ () C:\Users\Rozsy\Desktop\adwcleaner_4.102.exe
2014-11-28 21:29 - 2014-11-28 21:29 - 00000000 ____D () C:\rsit
2014-11-28 21:23 - 2014-11-28 21:23 - 01222144 _____ () C:\Users\Rozsy\Downloads\RSITx64 (1).exe
2014-11-29 12:27 - 2014-04-21 20:58 - 00000000 ____D () C:\AdwCleaner
2014-11-28 21:29 - 2014-04-21 13:27 - 00000000 ____D () C:\Program Files\trend micro
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\GrooveMonitor => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\ => value deleted successfully.
HKU\S-1-5-21-1891421636-1109278419-715636655-1002\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
"HKU\S-1-5-21-1891421636-1109278419-715636655-1002\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{02d43a53-7186-11e4-beb8-70188b189b8c}" => Key deleted successfully.
"HKCR\CLSID\{02d43a53-7186-11e4-beb8-70188b189b8c}" => Key not found.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Default_Page_URL => Value was restored successfully.
HKLM\Software\\Microsoft\Internet Explorer\Main\\Start Page => Value was restored successfully.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key deleted successfully.
"HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => Key not found.
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => Value was restored successfully.
"HKU\S-1-5-21-1891421636-1109278419-715636655-1002\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66}" => Key deleted successfully.
"HKCR\CLSID\{012E1000-F331-11DB-8314-0800200C9A66}" => Key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F} => value deleted successfully.
"HKCR\CLSID\{CC1A175A-E45B-41ED-A30C-C9B1D7A0C02F}" => Key not found.
Chrome StartupUrls deleted successfully.
BthAvrcpTg => Service deleted successfully.
BthHFEnum => Service deleted successfully.
bthhfhid => Service deleted successfully.
C:\WINDOWS\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\Users\Rozsy\Desktop\zoek.exe => Moved successfully.
C:\Users\Rozsy\Desktop\adwcleaner_4.102.exe => Moved successfully.
C:\rsit => Moved successfully.
C:\Users\Rozsy\Downloads\RSITx64 (1).exe => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 711.3 MB temporary data.


The system needed a reboot.

==== End of Fixlog ====

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o kontrolu logu

#11 Příspěvek od altrok »

:arrow: Jak se pocitac chova ted? Otestujte, zda problem se sluchatky a youtube zmizel?
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

rosinho
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 20 dub 2014 13:25

Re: Prosím o kontrolu logu

#12 Příspěvek od rosinho »

Děkuji,
problém zdá se vyřešen :) s youtube vše v pořádku, notebook už akceptuje zvuk klasicky přes interní microphone, jinak externí na sluchátkách nefunguje, takže předpokládám že teď už to bude spíš problém hardwarového charakteru.

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o kontrolu logu

#13 Příspěvek od altrok »

:arrow: Presne tak... toto bude s nejvetsi pravdepodobnosti chyba hardwaru. Urcite bych jeste vyzkousel pripojit jiny mikrofon.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

rosinho
Návštěvník
Návštěvník
Příspěvky: 23
Registrován: 20 dub 2014 13:25

Re: Prosím o kontrolu logu

#14 Příspěvek od rosinho »

Dobrá tedy,

děkuji moc za ochotu a spolupráci :) :idea:
Naposledy upravil(a) rosinho dne 30 lis 2014 22:59, celkem upraveno 1 x.

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o kontrolu logu

#15 Příspěvek od altrok »

Nemate zac, rad jsem pomohl :worship:


Preju Vam hezky zbytek vecera... mejte se a treba zase nekdy :bye:
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

Zamčeno