Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 20-04-2015
Ran by tom (administrator) on ASUS-PC on 22-04-2015 13:25:12
Running from C:\Users\tom\Desktop\Bezpečnost\FRST
Loaded Profiles: tom (Available profiles: tom)
Platform: Windows 8.1 Enterprise (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ASUS Fan Filter Checker\FanChkSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Nitro PDF Software) C:\Program Files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
() C:\Windows\SysWOW64\PnkBstrA.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Program Files\Internet Explorer\iexplore.exe
(Eyeo GmbH) C:\Program Files\Adblock Plus for IE\AdblockPlusEngine.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(VIA) C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Smart Security\egui.exe [5595336 2014-10-01] (ESET)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2585928 2015-01-16] (NVIDIA Corporation)
HKLM\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5138032 2012-03-30] (VIA)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM-x32\...\Run: [HDAudDeck] => C:\Program Files (x86)\VIA\VIAudioi\VDeck\VDeck.exe [5138032 2012-03-30] (VIA)
HKU\S-1-5-21-3332171635-80688016-592393309-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7404312 2015-01-20] (Piriform Ltd)
HKU\S-1-5-21-3332171635-80688016-592393309-1001\...\MountPoints2: F - "F:\SETUP.EXE"
CHR HKLM\SOFTWARE\Policies\Google: Policy restriction <======= ATTENTION
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-3332171635-80688016-592393309-1001\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.seznam.cz/
SearchScopes: HKLM-x32 -> DefaultScope value is missing.
SearchScopes: HKU\S-1-5-21-3332171635-80688016-592393309-1001 -> DefaultScope {AAF95CB0-2208-4414-8A5B-63D268CF73AB} URL =
http://search.seznam.cz/?q={searchTerms ... chmodule_1
SearchScopes: HKU\S-1-5-21-3332171635-80688016-592393309-1001 -> {AAF95CB0-2208-4414-8A5B-63D268CF73AB} URL =
http://search.seznam.cz/?q={searchTerms ... chmodule_1
BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2015-02-25] (Eyeo GmbH)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\ssv.dll [2015-04-15] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\jp2ssv.dll [2015-04-15] (Oracle Corporation)
BHO-x32: WinToFlash Suggestor -> {FC36B0BD-27F0-4cdd-8AB1-50651EFC3EFD} -> C:\Program Files (x86)\WinToFlash Suggestor\WinToFlashSuggestor.dll [2012-05-25] (Novicorp LLC)
BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2015-02-25] (Eyeo GmbH)
Hosts: 127.0.0.1 player.kmpmedia.net
Tcpip\..\Interfaces\{0CAC6FFC-C225-4715-8D53-E2A5B6B4B21B}: [NameServer] 46.33.112.42,46.33.96.2
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_16_0_0_235.dll [2014-12-22] ()
FF Plugin: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelogx64.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll No File
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_235.dll [2014-12-22] ()
FF Plugin-x32: @esn/npbattlelog,version=2.6.2 -> C:\Program Files (x86)\Battlelog Web Plugins\2.6.2\npbattlelog.dll [2015-01-13] (EA Digital Illusions CE AB)
FF Plugin-x32: @java.com/DTPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\dtplugin\npDeployJava1.dll [2015-04-15] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.45.2 -> C:\Program Files (x86)\Java\jre1.8.0_45\bin\plugin2\npjp2.dll [2015-04-15] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-14] ( Microsoft Corporation)
FF Plugin-x32: @nitropdf.com/NitroPDF -> C:\Program Files (x86)\Nitro\Pro 8\npnitromozilla.dll [2012-12-13] (Nitro PDF)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-01-10] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-01-10] (NVIDIA Corporation)
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1349576 2014-10-01] (ESET)
R2 FanChkService; C:\Program Files (x86)\ASUS\ASUS Fan Filter Checker\FanChkSrv.exe [45696 2012-01-20] (ASUSTek Computer Inc.)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1148744 2015-01-16] (NVIDIA Corporation)
R2 NitroDriverReadSpool8; C:\Program Files\Common Files\Nitro\Pro\8.0\NitroPDFDriverService8x64.exe [230408 2012-12-13] (Nitro PDF Software)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1706312 2015-01-16] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [21833544 2015-01-16] (NVIDIA Corporation)
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [1910128 2015-01-30] (Electronic Arts)
R2 PnkBstrA; C:\Windows\SysWOW64\PnkBstrA.exe [76152 2015-02-03] ()
R2 VIAKaraokeService; C:\Windows\system32\viakaraokesrv.exe [27760 2012-03-23] (VIA Technologies, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
S2 HitmanPro37CrusaderBoot; "G:\Programy\Bezpečnost\Hitman\HitmanPro_x64.exe" /crusader:boot [X]
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)
R3 athr; C:\Windows\system32\DRIVERS\athwbx.sys [3837440 2013-08-14] (Qualcomm Atheros Communications, Inc.)
S3 BthLEEnum; C:\Windows\System32\drivers\BthLEEnum.sys [226304 2013-12-04] (Microsoft Corporation)
S3 DLPortIO; C:\Windows\SysWOW64\DRIVERS\DLPortIO.SYS [3584 2000-06-29] () [File not signed]
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [243440 2014-10-10] (ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [241368 2014-10-10] (ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [169280 2014-10-10] (ESET)
R2 epfw; C:\Windows\system32\DRIVERS\epfw.sys [222280 2014-10-10] (ESET)
R1 EpfwLWF; C:\Windows\system32\DRIVERS\EpfwLWF.sys [44632 2014-10-10] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [63160 2014-10-10] (ESET)
S3 ESETCleanersDriver; C:\Windows\system32\Drivers\ESETCleanersDriver.sys [170280 2014-12-14] (ESET)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19784 2015-01-16] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [38032 2014-11-22] (NVIDIA Corporation)
R3 tapoas; C:\Windows\system32\DRIVERS\tapoas.sys [30720 2012-07-15] (The OpenVPN Project)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
R3 WinDriver6; C:\Windows\system32\drivers\windrvr6.sys [268800 2014-01-28] (Jungo Connectivity)
S3 USBCCID; system32\DRIVERS\Rts5161ccid.sys [X]
S3 vmci; \SystemRoot\System32\drivers\vmci.sys [X]
S3 VMnetAdapter; \SystemRoot\system32\DRIVERS\vmnetadapter.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)
==================== One Month Created Files and Folders ========
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-04-20 18:04 - 2015-04-20 18:04 - 00010334 _____ () C:\Users\tom\eaglerc.usr
2015-04-18 19:43 - 2015-01-06 05:01 - 00072192 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ndproxy.sys
2015-04-18 19:43 - 2015-01-06 04:59 - 00080896 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\wanarp.sys
2015-04-18 19:43 - 2015-01-06 03:12 - 00185856 _____ (Microsoft Corporation) C:\Windows\system32\rascfg.dll
2015-04-18 19:43 - 2015-01-06 03:02 - 00164864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rascfg.dll
2015-04-18 19:05 - 2015-04-18 19:10 - 651165696 _____ () C:\Users\tom\Downloads\overclockix-i386-.018.iso
2015-04-18 19:05 - 2015-04-18 19:05 - 00025244 _____ () C:\Users\tom\Downloads\overclockix-amd64-.018.iso.torrent
2015-04-18 19:05 - 2015-04-18 19:05 - 00000060 _____ () C:\Users\tom\Downloads\overclockix-i386-.018.iso.md5
2015-04-18 19:00 - 2015-04-18 19:03 - 621283886 _____ () C:\Users\tom\Downloads\Hirens.BootCD.15.2.zip
2015-04-18 17:38 - 2015-04-18 17:39 - 00000000 ____D () C:\MyBootCD
2015-04-18 16:48 - 2015-04-18 18:57 - 00000000 ____D () C:\Program Files (x86)\Top Password
2015-04-18 16:48 - 2015-04-18 16:48 - 00001043 _____ () C:\Users\tom\Desktop\ISO2Disc.lnk
2015-04-18 16:48 - 2015-04-18 16:48 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ISO2Disc
2015-04-18 16:18 - 2015-04-18 16:24 - 574615552 _____ () C:\Users\tom\Downloads\CD_Live_Malekal.iso
2015-04-18 16:06 - 2011-07-17 16:05 - 297922560 _____ () C:\Users\tom\Desktop\OTLPE_New_Std.iso
2015-04-18 16:05 - 2015-04-18 16:05 - 98077435 _____ (Igor Pavlov) C:\Users\tom\Downloads\OTLPEStd.exe
2015-04-18 15:36 - 2015-04-18 18:29 - 00000000 ____D () C:\Users\tom\AppData\Local\ShamurShamur
2015-04-18 15:20 - 2015-04-18 15:20 - 05516740 _____ () C:\Users\tom\Downloads\XBootv1.0beta14.zip
2015-04-18 15:16 - 2015-04-18 15:16 - 01310422 _____ (pendrivelinux.com) C:\Users\tom\Desktop\YUMI-2.0.1.6.exe
2015-04-17 22:59 - 2015-04-17 23:02 - 30786843 _____ () C:\Users\tom\Desktop\Novicorp WinToFlash 0.8.0122 beta Portable.zip
2015-04-17 22:37 - 2015-04-17 22:37 - 00094404 _____ () C:\OTL.Txt
2015-04-17 17:41 - 2015-04-17 17:44 - 448530432 _____ () C:\Users\tom\Downloads\Win8PE_x64_EFI.ISO
2015-04-17 17:32 - 2015-04-17 23:01 - 00000000 ____D () C:\Program Files (x86)\WinToFlash Suggestor
2015-04-16 21:21 - 2015-04-16 21:21 - 00325576 _____ () C:\Windows\Minidump\041615-5437-01.dmp
2015-04-16 21:13 - 2015-04-16 21:13 - 00021850 _____ () C:\Users\tom\Documents\cc_20150416_211336.reg
2015-04-16 21:11 - 2015-04-16 21:11 - 1372651520 _____ () C:\Users\tom\Desktop\NBRT.iso
2015-04-16 14:25 - 2015-04-16 21:21 - 535890945 _____ () C:\Windows\MEMORY.DMP
2015-04-16 14:25 - 2015-04-16 14:25 - 00325416 _____ () C:\Windows\Minidump\041615-5312-01.dmp
2015-04-15 17:08 - 2015-04-15 17:08 - 00000144 _____ () C:\Users\tom\Downloads\nmap.install
2015-04-15 16:45 - 2015-04-15 16:45 - 00001418 _____ () C:\Users\tom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-04-15 16:41 - 2015-04-22 13:00 - 00024452 _____ () C:\Windows\setupact.log
2015-04-15 16:41 - 2015-04-15 16:41 - 00000000 _____ () C:\Windows\setuperr.log
2015-04-15 15:54 - 2015-04-22 13:07 - 01547502 _____ () C:\Windows\WindowsUpdate.log
2015-04-15 13:52 - 2015-04-20 19:40 - 00003816 _____ () C:\Windows\System32\Tasks\Opera scheduled Autoupdate 1429098722
2015-04-15 13:52 - 2015-04-15 13:52 - 00001143 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Opera.lnk
2015-04-15 13:52 - 2015-04-15 13:52 - 00000000 ____D () C:\Users\tom\AppData\Local\Opera Software
2015-04-15 13:51 - 2015-04-20 19:40 - 00000000 ____D () C:\Program Files (x86)\Opera
2015-04-15 13:51 - 2015-04-15 13:51 - 00691664 _____ (Opera Software) C:\Users\tom\Downloads\Opera_NI_stable.exe
2015-04-15 13:46 - 2015-04-15 13:46 - 00000000 ____D () C:\_OTL
2015-04-15 13:21 - 2015-04-15 15:47 - 00000000 ___DC () C:\Users\tom\AppData\Local\MigWiz
2015-04-15 13:10 - 2015-03-23 23:59 - 07476032 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-04-15 13:10 - 2015-03-23 23:59 - 01733952 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-04-15 13:10 - 2015-03-23 23:59 - 00360480 _____ (Microsoft Corporation) C:\Windows\system32\sechost.dll
2015-04-15 13:10 - 2015-03-23 23:58 - 01498872 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-04-15 13:10 - 2015-03-23 23:45 - 00257216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sechost.dll
2015-04-15 13:10 - 2015-03-20 06:12 - 00246272 _____ (Microsoft Corporation) C:\Windows\system32\microsoft-windows-system-events.dll
2015-04-15 13:10 - 2015-03-20 06:10 - 00285184 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-04-15 13:10 - 2015-03-20 06:10 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-04-15 13:10 - 2015-03-20 05:17 - 00411648 _____ (Microsoft Corporation) C:\Windows\system32\tracerpt.exe
2015-04-15 13:10 - 2015-03-20 04:41 - 00369152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tracerpt.exe
2015-04-15 13:10 - 2015-03-20 04:40 - 00950784 _____ (Microsoft Corporation) C:\Windows\system32\tdh.dll
2015-04-15 13:10 - 2015-03-20 04:16 - 00749568 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdh.dll
2015-04-15 13:09 - 2015-03-13 06:32 - 24980480 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-04-15 13:09 - 2015-03-13 06:08 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-04-15 13:09 - 2015-03-13 06:07 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-04-15 13:09 - 2015-03-13 05:53 - 00816128 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-04-15 13:09 - 2015-03-13 05:50 - 06025216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-04-15 13:09 - 2015-03-13 05:42 - 19695616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-04-15 13:09 - 2015-03-13 05:28 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-04-15 13:09 - 2015-03-13 05:26 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-04-15 13:09 - 2015-03-13 05:22 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-04-15 13:09 - 2015-03-13 05:17 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-04-15 13:09 - 2015-03-13 05:16 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-04-15 13:09 - 2015-03-13 05:08 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-04-15 13:09 - 2015-03-13 05:07 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-04-15 13:09 - 2015-03-13 05:00 - 14397440 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-04-15 13:09 - 2015-03-13 04:58 - 00259072 _____ (Microsoft Corporation) C:\Windows\system32\pku2u.dll
2015-04-15 13:09 - 2015-03-13 04:50 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-04-15 13:09 - 2015-03-13 04:49 - 04305408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-04-15 13:09 - 2015-03-13 04:45 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-04-15 13:09 - 2015-03-13 04:44 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-04-15 13:09 - 2015-03-13 04:37 - 00208896 _____ (Microsoft Corporation) C:\Windows\SysWOW64\pku2u.dll
2015-04-15 13:09 - 2015-03-13 04:34 - 12825600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-04-15 13:09 - 2015-03-13 04:33 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-04-15 13:09 - 2015-03-13 04:22 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-04-15 13:09 - 2015-03-13 04:20 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-04-15 13:09 - 2015-03-13 04:16 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-04-15 13:09 - 2015-03-13 04:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-04-15 13:09 - 2015-03-04 12:25 - 00377152 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\clfs.sys
2015-04-15 13:09 - 2015-03-04 05:04 - 00075264 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-04-15 13:09 - 2015-03-04 04:19 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll
2015-04-15 13:09 - 2015-02-24 10:32 - 00991552 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-04-14 20:45 - 2015-03-14 10:54 - 00133256 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-04-14 20:45 - 2015-03-14 03:56 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-04-14 20:45 - 2015-03-14 03:56 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-04-14 20:45 - 2015-03-14 03:51 - 00015360 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-04-14 20:45 - 2015-03-14 03:37 - 00267264 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-04-14 20:45 - 2015-03-14 03:14 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-04-14 20:45 - 2015-03-14 02:22 - 03678720 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-04-14 20:45 - 2015-03-14 02:12 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-04-14 20:45 - 2015-03-14 02:12 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-04-14 20:45 - 2015-03-14 02:09 - 00200192 _____ (Microsoft Corporation) C:\Windows\system32\storewuauth.dll
2015-04-14 20:45 - 2015-03-14 02:08 - 00408064 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2015-04-14 20:45 - 2015-03-14 02:08 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-04-14 20:45 - 2015-03-14 02:06 - 02373632 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-04-14 20:45 - 2015-03-14 02:06 - 00891392 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-04-14 20:45 - 2015-03-14 02:02 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-04-14 20:45 - 2015-03-14 02:02 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-04-14 20:45 - 2015-03-14 01:59 - 00721920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-04-14 20:45 - 2015-03-14 01:59 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-04-14 18:12 - 2015-04-14 18:12 - 00000512 _____ () C:\PhysicalMBR.bin
2015-04-14 17:11 - 2015-04-14 17:11 - 00005314 _____ () C:\Users\tom\Desktop\RKreport_SCN_04142015_171121.log
2015-04-14 16:24 - 2015-04-14 16:24 - 01222144 _____ () C:\Users\tom\Downloads\RSITx64.exe
2015-04-14 15:28 - 2012-07-26 07:32 - 00125872 _____ (GEAR Software Inc.) C:\Windows\system32\GEARAspi64.dll
2015-04-14 15:28 - 2012-07-26 07:32 - 00106928 _____ (GEAR Software Inc.) C:\Windows\SysWOW64\GEARAspi.dll
2015-04-14 15:28 - 2012-07-26 07:32 - 00033240 _____ (GEAR Software Inc.) C:\Windows\system32\Drivers\GEARAspiWDM.sys
2015-04-14 15:27 - 2015-04-14 15:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Bootable Recovery Tool Wizard
2015-04-14 15:27 - 2015-04-14 15:27 - 00000000 ____D () C:\Windows\system32\Drivers\NBRTWizardx64
2015-04-14 15:27 - 2015-04-14 15:27 - 00000000 ____D () C:\Program Files (x86)\Norton Bootable Recovery Tool Wizard
2015-04-14 15:26 - 2015-04-16 21:09 - 00001358 _____ () C:\Users\tom\Desktop\Norton Installation Files.lnk
2015-04-13 18:29 - 2015-04-13 18:34 - 308004864 _____ () C:\Users\tom\Desktop\Kaspersky Rescue Disk 10.iso
2015-04-12 21:54 - 2015-04-12 22:21 - 00000000 ____D () C:\Program Files (x86)\Anti-Spy.Info
2015-04-12 21:54 - 2015-04-12 22:07 - 00000000 ____D () C:\ProgramData\AntiSpyInfo
2015-04-12 21:54 - 2015-04-12 21:54 - 02553160 _____ () C:\Users\tom\Downloads\antispy17.exe
2015-04-12 21:46 - 2015-04-14 16:25 - 00000000 ____D () C:\Program Files\trend micro
2015-04-12 21:46 - 2015-04-12 21:48 - 00000000 ____D () C:\rsit
2015-04-12 21:44 - 2015-04-17 18:25 - 00000000 ____D () C:\Users\tom\Desktop\Bezpečnost
2015-04-12 21:44 - 2015-04-17 16:04 - 00029696 _____ () C:\Users\tom\AppData\Local\MSGBOX.EXE
2015-04-12 21:36 - 2015-04-22 13:25 - 00000000 ____D () C:\FRST
2015-04-12 11:32 - 2015-04-12 11:32 - 00000000 ____D () C:\NPE
2015-04-09 07:41 - 2015-04-09 07:42 - 340670464 _____ () C:\Users\tom\Downloads\eset-sysrescue.1.0.9.0.enu.iso
2015-04-08 20:15 - 2015-03-23 00:45 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-04-08 20:15 - 2015-03-23 00:09 - 01111552 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-04-08 20:15 - 2015-03-23 00:09 - 00957440 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-04-08 20:15 - 2015-03-23 00:09 - 00769024 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-04-08 20:15 - 2015-03-23 00:09 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-04-08 20:15 - 2015-03-23 00:09 - 00419328 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-04-08 20:15 - 2015-03-23 00:09 - 00030720 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-04-08 20:15 - 2015-03-14 10:20 - 01385256 _____ (Microsoft Corporation) C:\Windows\system32\msctf.dll
2015-04-08 20:15 - 2015-03-14 10:13 - 01124352 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msctf.dll
2015-04-08 20:15 - 2015-02-21 01:49 - 00780800 _____ (Microsoft Corporation) C:\Windows\system32\lsm.dll
2015-04-08 17:04 - 2015-04-08 17:04 - 00012872 _____ (SurfRight B.V.) C:\Windows\system32\bootdelete.exe
2015-04-08 13:18 - 2015-04-08 13:18 - 00000000 ____D () C:\ProgramData\Emsisoft
2015-04-08 13:08 - 2015-04-08 13:08 - 166740264 _____ (Emsisoft Ltd. ) C:\Users\tom\Downloads\EmsisoftAntiMalwareSetup_4382129.exe
2015-04-07 20:59 - 2015-04-07 20:59 - 00000000 ____D () C:\Users\tom\Desktop\RS232
2015-04-07 20:56 - 2015-04-07 20:58 - 00640736 _____ () C:\Users\tom\Desktop\COM Port.rar
2015-04-06 20:53 - 2015-04-06 20:54 - 05046784 _____ () C:\Users\tom\Downloads\reverse-schema-web.vsd
2015-04-06 17:13 - 2015-04-06 17:29 - 184364089 _____ () C:\Users\tom\Downloads\Moderni-programovani.rar
2015-04-06 17:12 - 2015-04-09 08:20 - 00000000 ____D () C:\Users\tom\Desktop\Programování mikrokontrolérů PIC16Cxx -BEN- Jiří Hrbáček
2015-04-06 17:08 - 2015-04-06 17:11 - 12989461 _____ () C:\Users\tom\Downloads\Programování-mikrokontrolérů-PIC16Cxx.zip
2015-04-06 07:44 - 2015-04-06 07:44 - 02208768 _____ () C:\Users\tom\Downloads\adwcleaner_4.200.exe
2015-04-05 08:53 - 2015-04-05 08:53 - 00000000 ____D () C:\Users\Default\Documents\Visual Studio 2010
2015-04-05 08:53 - 2015-04-05 08:53 - 00000000 ____D () C:\Users\Default User\Documents\Visual Studio 2010
2015-04-04 17:47 - 2015-04-04 17:47 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PonyProg
2015-04-04 17:47 - 2015-04-04 17:47 - 00000000 ____D () C:\Program Files (x86)\PonyProg2000
2015-04-04 17:44 - 2015-04-04 17:44 - 00003096 _____ () C:\Windows\System32\Tasks\{E14ED81C-88FC-428B-B3DC-B9E84D21AEDD}
2015-04-04 17:03 - 2015-04-05 10:37 - 00000000 ____D () C:\Users\tom\AppData\Roaming\VisualAssistAtmel
2015-04-04 17:03 - 2015-04-05 10:37 - 00000000 ____D () C:\Users\tom\AppData\Local\VisualAssistAtmel
2015-04-04 17:03 - 2015-04-04 17:03 - 00000000 ____D () C:\Users\tom\AppData\Local\IsolatedStorage
2015-04-04 17:02 - 2015-04-04 17:02 - 00002130 _____ () C:\Users\Public\Desktop\Atmel Studio 6.2.lnk
2015-04-04 16:59 - 2015-04-04 17:23 - 00000000 ____D () C:\Users\tom\Documents\Atmel Studio
2015-04-04 16:59 - 2015-04-04 16:59 - 00000000 ____D () C:\Users\tom\AppData\Roaming\Atmel
2015-04-04 16:59 - 2015-04-04 16:59 - 00000000 ____D () C:\Users\tom\AppData\Local\Atmel
2015-04-04 16:58 - 2015-04-04 17:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Atmel
2015-04-04 16:57 - 2015-04-04 17:01 - 00000000 ____D () C:\Program Files (x86)\Atmel
2015-04-04 16:57 - 2014-02-06 09:01 - 00067680 _____ (
http://libusb-win32.sourceforge.net) C:\Windows\SysWOW64\libusb0.dll
2015-04-04 16:57 - 2014-02-06 09:01 - 00042592 _____ (
http://libusb-win32.sourceforge.net) C:\Windows\SysWOW64\Drivers\libusb0.sys
2015-04-04 16:57 - 2014-01-28 07:59 - 00151552 _____ (Jungo Connectivity) C:\Windows\SysWOW64\wdapi1150.dll
2015-04-04 16:57 - 2013-11-11 08:42 - 00147456 _____ (Jungo) C:\Windows\SysWOW64\wdapi1021.dll
2015-04-04 16:57 - 2013-11-11 08:41 - 00151552 _____ (Jungo Connectivity) C:\Windows\SysWOW64\wdapi1140.dll
2015-04-04 16:57 - 2013-11-11 08:41 - 00143360 _____ (Jungo) C:\Windows\SysWOW64\wdapi1010.dll
2015-04-04 16:57 - 2013-11-11 08:41 - 00110592 _____ (Jungo) C:\Windows\SysWOW64\wdapi1100.dll
2015-04-04 16:57 - 2013-11-11 08:41 - 00110592 _____ (Jungo) C:\Windows\SysWOW64\wdapi102.dll
2015-04-04 16:57 - 2013-11-11 08:41 - 00110592 _____ (Jungo) C:\Windows\SysWOW64\wdapi1011.dll
2015-04-04 16:51 - 2015-04-04 16:51 - 00000000 ____D () C:\Program Files\Microsoft Help Viewer
2015-04-04 16:51 - 2015-04-04 16:51 - 00000000 ____D () C:\Program Files (x86)\Microsoft SQL Server
2015-04-04 16:50 - 2015-04-09 07:44 - 00000000 ____D () C:\Users\tom\Documents\Visual Studio 2010
2015-04-04 16:50 - 2015-04-04 16:50 - 00000000 ____D () C:\Windows\SysWOW64\1033
2015-04-04 16:50 - 2015-04-04 16:50 - 00000000 ____D () C:\Windows\PCHEALTH
2015-04-04 16:50 - 2015-04-04 16:50 - 00000000 ____D () C:\Program Files (x86)\Microsoft Visual Studio 10.0
2015-04-04 16:50 - 2015-04-04 16:50 - 00000000 ____D () C:\Program Files (x86)\Microsoft SDKs
2015-04-04 16:44 - 2015-04-04 16:46 - 587327768 _____ (Atmel) C:\Users\tom\Downloads\AStudio6_2sp2_1563.exe
2015-04-04 16:19 - 2011-05-01 14:58 - 00022902 _____ () C:\Users\tom\Desktop\atmega_fusebit_doctor_2.11_m8.hex
2015-04-04 16:19 - 2011-05-01 14:58 - 00008136 _____ () C:\Users\tom\Desktop\atmega_fusebit_doctor_2.11_m8.bin
2015-04-04 16:09 - 2015-04-05 16:23 - 00002382 _____ () C:\Users\tom\gdbtk.ini
2015-04-04 16:07 - 2015-04-04 16:07 - 00000000 ____D () C:\WinAVR-20100110
2015-04-04 16:07 - 2015-04-04 16:07 - 00000000 ____D () C:\Users\tom\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinAVR-20100110
2015-04-04 16:03 - 2015-04-04 16:03 - 28840282 _____ () C:\Users\tom\Desktop\WinAVR-20100110-install.exe
2015-04-03 21:52 - 2015-04-03 21:52 - 00003024 _____ () C:\Windows\System32\Tasks\brbrw_1280
2015-04-03 21:47 - 2015-04-03 21:47 - 00000000 ____H () C:\Windows\system32\Drivers\Msft_Kernel_webTinstMKTN_01009.Wdf
2015-04-03 21:46 - 2015-04-04 10:43 - 00000000 ____D () C:\Program Files (x86)\c8e441a9-abd4-4721-b704-cb9cbd0d2ddb
2015-04-03 21:46 - 2015-04-04 10:43 - 00000000 ____D () C:\Program Files (x86)\c5c1e8b7-9d03-40f6-9ecf-a015924a15c0
2015-04-03 21:46 - 2015-04-04 10:43 - 00000000 ____D () C:\Program Files (x86)\5a1f3589-0adb-4951-8a7b-a30922551845
2015-04-03 21:46 - 2015-04-03 21:46 - 00004224 _____ () C:\Windows\System32\Tasks\SPBIW_UpdateTask_Time_333733343637343037312d3734555b414a507857374a55
2015-04-03 21:46 - 2015-04-03 21:46 - 00000000 ____D () C:\Users\tom\AppData\Local\CrashRpt
2015-04-03 21:46 - 2015-04-03 21:46 - 00000000 ____D () C:\Users\Public\Documents\ShopperPro
2015-04-03 20:52 - 2015-04-03 20:52 - 04210464 _____ () C:\Users\tom\Desktop\SIM_editor_Smart.zip
2015-03-31 18:54 - 2015-03-31 18:55 - 11038926 _____ () C:\Users\tom\Desktop\The-XX---Intro.flac
2015-03-28 16:20 - 2015-03-28 16:20 - 00000210 _____ () C:\Windows\ODBCINST.INI
2015-03-28 13:38 - 2015-03-28 13:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Výpočet transformátoru
2015-03-28 13:37 - 2015-03-28 13:37 - 00477278 _____ () C:\Users\tom\Downloads\trafo.zip
2015-03-28 13:00 - 2015-03-28 13:00 - 07803328 _____ () C:\Users\tom\Desktop\transformátor.exe
2015-03-28 00:13 - 2015-04-21 21:45 - 00000000 ____D () C:\Users\tom\AppData\Roaming\Nitro PDF
2015-03-27 17:15 - 2015-03-27 17:15 - 00002547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nitro Pro 8.lnk
2015-03-27 17:15 - 2015-03-27 17:15 - 00000000 ____D () C:\Users\tom\AppData\Roaming\Nitro
2015-03-27 17:15 - 2015-03-27 17:15 - 00000000 ____D () C:\ProgramData\Nitro
2015-03-27 17:15 - 2015-03-27 17:15 - 00000000 ____D () C:\Program Files\Common Files\Nitro
2015-03-27 17:15 - 2015-03-27 17:15 - 00000000 ____D () C:\Program Files (x86)\Nitro
2015-03-27 17:15 - 2012-12-13 12:47 - 00029704 _____ (Nitro PDF Software) C:\Windows\system32\nitrolocalmon2.dll
2015-03-27 17:15 - 2012-12-13 12:47 - 00017928 _____ (Nitro PDF Software) C:\Windows\system32\nitrolocalui2.dll
2015-03-27 17:14 - 2015-03-27 17:14 - 00000000 ____D () C:\Users\tom\AppData\Roaming\Downloaded Installations
2015-03-26 19:26 - 2015-04-11 12:04 - 00394006 _____ () C:\Users\tom\Desktop\zdroj 60v 40a.sch
2015-03-26 10:46 - 2015-04-18 19:17 - 00000000 ____D () C:\Users\tom\Desktop\sardu_3
==================== One Month Modified Files and Folders =======
(If an entry is included in the fixlist, the file\folder will be moved.)
2015-04-22 13:07 - 2014-12-13 18:15 - 00739924 _____ () C:\Windows\system32\perfh005.dat
2015-04-22 13:07 - 2014-12-13 18:15 - 00151610 _____ () C:\Windows\system32\perfc005.dat
2015-04-22 13:07 - 2014-12-13 11:48 - 01745984 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-22 13:00 - 2014-12-15 15:52 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-04-22 13:00 - 2013-08-22 16:45 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-21 21:00 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\system32\sru
2015-04-21 17:53 - 2015-01-19 20:06 - 00000000 ____D () C:\KMPlayer
2015-04-21 15:57 - 2014-12-13 11:50 - 00003958 _____ () C:\Windows\System32\Tasks\User_Feed_Synchronization-{6C40A664-6612-43B9-B571-28453941D32F}
2015-04-20 18:04 - 2014-12-13 11:50 - 00000000 ____D () C:\Users\tom
2015-04-19 12:00 - 2014-12-13 12:58 - 00000000 ____D () C:\Users\tom\AppData\Roaming\uTorrent
2015-04-18 19:43 - 2013-08-22 17:20 - 00000000 ____D () C:\Windows\CbsTemp
2015-04-18 19:14 - 2015-01-16 14:01 - 00000000 ____D () C:\Users\tom\AppData\Local\CrashDumps
2015-04-18 17:56 - 2015-01-15 16:51 - 00003594 _____ () C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3332171635-80688016-592393309-1001
2015-04-17 17:55 - 2013-08-22 15:25 - 00262144 ___SH () C:\Windows\system32\config\BBI
2015-04-17 17:27 - 2015-01-14 21:27 - 00000000 ____D () C:\Users\tom\AppData\Local\VirtualStore
2015-04-17 16:29 - 2015-01-15 16:40 - 00000000 ____D () C:\Users\tom\AppData\Local\NPE
2015-04-17 14:34 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\AppReadiness
2015-04-16 21:22 - 2014-12-17 13:51 - 00007605 _____ () C:\Users\tom\AppData\Local\Resmon.ResmonCfg
2015-04-16 21:21 - 2014-12-13 21:25 - 00000000 ____D () C:\Windows\Minidump
2015-04-16 21:09 - 2015-01-15 16:40 - 00000000 ____D () C:\ProgramData\Norton
2015-04-16 14:53 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\rescache
2015-04-15 17:41 - 2015-01-01 13:33 - 00000000 ____D () C:\ProgramData\Oracle
2015-04-15 17:41 - 2015-01-01 13:33 - 00000000 ____D () C:\Program Files (x86)\Java
2015-04-15 17:40 - 2015-01-01 13:34 - 00098216 _____ (Oracle Corporation) C:\Windows\SysWOW64\WindowsAccessBridge-32.dll
2015-04-15 13:53 - 2014-12-14 10:07 - 00000000 ____D () C:\Users\tom\AppData\Local\Google
2015-04-15 13:53 - 2014-12-14 10:07 - 00000000 ____D () C:\Program Files (x86)\Google
2015-04-15 13:52 - 2015-01-16 13:58 - 00000000 ____D () C:\Users\tom\AppData\Roaming\Opera Software
2015-04-15 13:36 - 2014-12-14 09:13 - 00000000 ____D () C:\Windows\system32\MRT
2015-04-15 13:36 - 2014-12-14 09:12 - 128913832 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-04-14 17:08 - 2015-01-27 20:34 - 00037624 _____ () C:\Windows\system32\Drivers\TrueSight.sys
2015-04-14 15:26 - 2015-01-15 17:30 - 00000000 ____D () C:\Users\Public\Downloads\Norton
2015-04-14 01:24 - 2014-12-14 09:36 - 00792056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-04-14 01:24 - 2014-12-14 09:36 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-04-13 18:19 - 2015-02-22 16:42 - 00000000 ____D () C:\AdwCleaner
2015-04-12 19:58 - 2015-03-14 20:49 - 00000000 ____D () C:\Users\tom\Desktop\RFID Emulator
2015-04-10 08:56 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\AppCompat
2015-04-09 07:49 - 2014-12-13 14:55 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerISO
2015-04-08 20:15 - 2014-12-14 11:58 - 00000000 ___SD () C:\Windows\system32\CompatTel
2015-04-08 20:15 - 2014-12-14 11:58 - 00000000 ____D () C:\Windows\system32\appraiser
2015-04-08 17:04 - 2015-01-16 17:09 - 00003850 _____ () C:\Windows\system32\.crusader
2015-04-08 17:04 - 2015-01-16 16:49 - 00000000 ____D () C:\ProgramData\HitmanPro
2015-04-06 09:48 - 2012-03-22 10:51 - 00000000 ____D () C:\Users\tom\Desktop\RFID Reader
2015-04-06 07:33 - 2015-02-22 18:41 - 00000000 ____D () C:\Users\tom\Desktop\Proramátor
2015-04-04 17:46 - 2015-02-15 12:57 - 00000000 ____D () C:\Users\tom\Desktop\SIM clone -Klonování sim
2015-04-04 16:58 - 2014-12-14 10:16 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-04-04 16:57 - 2015-02-03 16:24 - 00000000 ____D () C:\ProgramData\Package Cache
2015-04-04 10:43 - 2015-02-22 15:00 - 00000000 ____D () C:\Program Files (x86)\Adobe
2015-04-04 10:43 - 2015-01-20 19:10 - 00000000 ____D () C:\Program Files (x86)\AC3Filter
2015-04-03 21:46 - 2013-08-22 17:36 - 00000000 ____D () C:\Program Files\Common Files\System
2015-04-01 15:13 - 2013-08-22 17:36 - 00000000 ____D () C:\Windows\system32\NDF
2015-03-28 00:12 - 2013-08-22 16:44 - 00473040 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-03-27 17:05 - 2015-02-22 15:00 - 00000000 ____D () C:\ProgramData\Adobe
2015-03-24 16:11 - 2015-02-23 14:28 - 00000000 ____D () C:\Users\tom\Desktop\Kyocera
==================== Files in the root of some directories =======
2015-01-14 14:49 - 2015-01-14 14:49 - 0000001 _____ () C:\Users\tom\AppData\Local\llftool.4.25.agreement
2015-04-12 21:44 - 2015-04-17 16:04 - 0029696 _____ () C:\Users\tom\AppData\Local\MSGBOX.EXE
2014-12-17 13:51 - 2015-04-16 21:22 - 0007605 _____ () C:\Users\tom\AppData\Local\Resmon.ResmonCfg
Some content of TEMP:
====================
C:\Users\tom\AppData\Local\Temp\jre-8u45-windows-au.exe
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-04-19 07:31
==================== End Of Log