Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu, nestandartní chování IE

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
koprik
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 21 črc 2008 21:23

Prosím o kontrolu logu, nestandartní chování IE

#1 Příspěvek od koprik »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Asus at 2015-04-29 11:48:34
Microsoft Windows 7 Professional Service Pack 1
System drive C: has 39 GB (22%) free of 172 GB
Total RAM: 16361 MB (83% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 11:48:38, on 29.4.2015
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v11.0 (11.00.9600.17728)
Boot mode: Normal

Running processes:
C:\Users\Asus\AppData\Local\Akamai\netsession_win.exe
C:\Users\Asus\AppData\Local\Akamai\netsession_win.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
C:\Program Files (x86)\Internet Explorer\iexplore.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Asus.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll
O2 - BHO: IESpeakDoc - {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O3 - Toolbar: PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [FLxHCIm64] "C:\Program Files\Fresco Logic\Fresco Logic USB3.0 Host Controller\amd64_host\FLxHCIm.exe"
O4 - HKLM\..\Run: [ATKOSD2] C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
O4 - HKLM\..\Run: [ATKMEDIA] C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
O4 - HKLM\..\Run: [HControlUser] C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
O4 - HKCU\..\Run: [Akamai NetSession Interface] "C:\Users\Asus\AppData\Local\Akamai\netsession_win.exe"
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKCU\..\Run: [BitTorrent] "C:\Users\Asus\AppData\Roaming\BitTorrent\BitTorrent.exe" /MINIMIZED
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-21-3819283212-2759028170-3360342564-1001\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'UpdatusUser')
O4 - HKUS\S-1-5-21-3819283212-2759028170-3360342564-1001\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'UpdatusUser')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~2\MICROS~1\Office12\ONBttnIE.dll
O9 - Extra button: (no name) - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra 'Tools' menuitem: Send by Bluetooth to - {7815BE26-237D-41A8-A98F-F7BD75F71086} - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} (asusTek_sysctrl Class) - http://support.asus.com/select/asusTek_sys_ctrl3.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveSystemServices.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: AtherosSvc - Atheros Commnucations - C:\Program Files (x86)\Bluetooth Suite\adminservice.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: Intel® PROSet/Wireless WiMAX Red Bend Device Management Service (DMAgent) - Red Bend Ltd. - C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: FLEXnet Licensing Service - Flexera Software, Inc. - C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\Windows\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: O&O Defrag (OODefragAgent) - O&O Software GmbH - C:\Program Files\OO Software\Defrag\oodag.exe
O23 - Service: PDF Architect Helper Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\HelperService.exe
O23 - Service: PDF Architect Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\ConversionService.exe
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: Intel® PROSet/Wireless WiMAX Service (WiMAXAppSrv) - Intel(R) Corporation - C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: ZAtheros Bt&Wlan Coex Agent - Atheros - C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe

--
End of file - 11473 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
winlogon.exe
"C:\Windows\system32\nvvsvc.exe"
"C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe"
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs

C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
C:\Windows\system32\WLANExt.exe 22464832
\??\C:\Windows\system32\conhost.exe "213740398-2137907178915942407-1552481099-1668568681-205497794-1865593320-1070921324
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\Windows\system32\nvvsvc.exe -session -first
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Bluetooth Suite\adminservice.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
"C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"C:\Program Files\OO Software\Defrag\oodag.exe"
"C:\Program Files (x86)\PDF Architect\HelperService.exe"
"C:\Program Files (x86)\PDF Architect\ConversionService.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe"
"C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe"
"C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
"taskhost.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
taskeng.exe {12EF43E2-9BB1-424D-B1D5-6819FDFC5432}
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
ATKOSD.exe
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
WDC.exe
"C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe" /tf Intel PAN Tray
"C:\Program Files\Intel\WiMAX\Bin\WiMAXCU.exe" /tasktray /nosplash
"C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe"
"C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\OO Software\Defrag\oodtray.exe"
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
"C:\Users\Asus\AppData\Local\Akamai\netsession_win.exe"
"C:/Users/Asus/AppData/Local/Akamai/netsession_win.exe" --client
"C:\Program Files\Fresco Logic\Fresco Logic USB3.0 Host Controller\amd64_host\FLxHCIm.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe"
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\servicing\TrustedInstaller.exe
"C:\Program Files (x86)\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe"
C:\Windows\System32\svchost.exe -k secsvcs
"C:\Program Files\Internet Explorer\IEXPLORE.EXE" -noframemerging about:blank
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:784 CREDAT:267521 /prefetch:2
ctfmon.exe
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\system32\Macromed\Flash\FlashUtil64_17_0_0_134_ActiveX.exe -Embedding
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-3819283212-2759028170-3360342564-10002_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-3819283212-2759028170-3360342564-10002 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" http://forum.avsim.net/forum/730-s550-c ... ii-fsxp3d/
"C:\Windows\system32\SearchFilterHost.exe" 0 536 540 548 65536 544
C:\Windows\splwow64.exe 8192
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe4_ Global\UsGthrCtrlFltPipeMssGthrPipe4 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Users\Asus\Downloads\RSITx64.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\DllHost.exe /Processid:{F9717507-6651-4EDB-BFF7-AE615179BCCF}

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Asus\AppData\Roaming\Mozilla\Firefox\Profiles\oh1nzrba.default-1390341931323

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 17.0.0.169 Plugin
"Path"=C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14 2117216]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711}]
PDF Architect Helper - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2013-04-08 92208]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8D10F6C4-0E01-4BD4-8601-11AC1FDF8126}]
CIESpeechBHO Class - C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-09-30 51872]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14 1709152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{25A3A431-30BB-47C8-AD6A-E1063801134F} - PDF Architect Toolbar - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll [2013-04-08 654384]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IntelPAN"=C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [2011-05-02 1935120]
"IntelWirelessWiMAX"=C:\Program Files\Intel\WiMAX\Bin\WiMAXCU.exe [2011-06-02 1622016]
"AtherosBtStack"=C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [2011-09-30 981664]
"AthBtTray"=C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [2011-09-30 799904]
"SynTPEnh"=C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2012-01-26 2869008]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2012-01-31 12446824]
"SynAsusAcpi"=C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [2012-01-26 100112]
"OODefragTray"=C:\Program Files\OO Software\Defrag\oodtray.exe [2011-01-25 3942216]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2014-10-01 5595336]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Akamai NetSession Interface"=C:\Users\Asus\AppData\Local\Akamai\netsession_win.exe [2014-10-30 4673432]
"DAEMON Tools Lite"=C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2013-10-28 3675352]
"BitTorrent"=C:\Users\Asus\AppData\Roaming\BitTorrent\BitTorrent.exe [2015-04-28 1443160]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"GrooveMonitor"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [2009-02-26 30040]
"FLxHCIm64"=C:\Program Files\Fresco Logic\Fresco Logic USB3.0 Host Controller\amd64_host\FLxHCIm.exe [2012-07-19 48128]
"ATKOSD2"=C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2011-12-22 318080]
"ATKMEDIA"=C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [2011-10-24 174720]
"HControlUser"=C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [2009-06-19 105016]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26 2217832]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-04-29 11:48:34 ----D---- C:\rsit
2015-04-29 11:48:34 ----D---- C:\Program Files\trend micro
2015-04-26 00:40:31 ----D---- C:\Users\Asus\AppData\Roaming\zhxusvzd
2015-04-26 00:40:27 ----SHD---- C:\Config.Msi
2015-04-24 15:43:50 ----D---- C:\Program Files (x86)\Mozilla Firefox
2015-04-17 14:40:58 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2015-04-17 14:40:58 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2015-04-17 14:40:58 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2015-04-17 14:40:58 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2015-04-17 14:40:58 ----A---- C:\Windows\system32\ieetwproxystub.dll
2015-04-17 14:40:58 ----A---- C:\Windows\system32\ieetwcollector.exe
2015-04-17 14:40:57 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2015-04-17 14:40:57 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2015-04-17 14:40:57 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2015-04-17 14:40:57 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2015-04-17 14:40:57 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2015-04-17 14:40:57 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2015-04-17 14:40:57 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-17 14:40:57 ----A---- C:\Windows\system32\iernonce.dll
2015-04-17 14:40:57 ----A---- C:\Windows\system32\ie4uinit.exe
2015-04-17 14:40:56 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2015-04-17 14:40:56 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2015-04-17 14:40:56 ----A---- C:\Windows\system32\urlmon.dll
2015-04-17 14:40:56 ----A---- C:\Windows\system32\iedkcs32.dll
2015-04-17 14:40:55 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2015-04-17 14:40:55 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2015-04-17 14:40:55 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2015-04-17 14:40:55 ----A---- C:\Windows\SYSWOW64\ieui.dll
2015-04-17 14:40:55 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2015-04-17 14:40:55 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2015-04-17 14:40:55 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2015-04-17 14:40:55 ----A---- C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-17 14:40:55 ----A---- C:\Windows\system32\msfeeds.dll
2015-04-17 14:40:55 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2015-04-17 14:40:55 ----A---- C:\Windows\system32\dxtrans.dll
2015-04-17 14:40:54 ----A---- C:\Windows\SYSWOW64\mshtmlmedia.dll
2015-04-17 14:40:54 ----A---- C:\Windows\system32\iesetup.dll
2015-04-17 14:40:54 ----A---- C:\Windows\system32\iertutil.dll
2015-04-17 14:40:54 ----A---- C:\Windows\system32\ieapfltr.dll
2015-04-17 14:40:53 ----A---- C:\Windows\SYSWOW64\wininet.dll
2015-04-17 14:40:53 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2015-04-17 14:40:53 ----A---- C:\Windows\SYSWOW64\msrating.dll
2015-04-17 14:40:53 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2015-04-17 14:40:53 ----A---- C:\Windows\system32\jsproxy.dll
2015-04-17 14:40:53 ----A---- C:\Windows\system32\ieUnatt.exe
2015-04-17 14:40:53 ----A---- C:\Windows\system32\ieui.dll
2015-04-17 14:40:53 ----A---- C:\Windows\system32\dxtmsft.dll
2015-04-17 14:40:52 ----A---- C:\Windows\system32\mshtmlmedia.dll
2015-04-17 14:40:52 ----A---- C:\Windows\system32\mshtmled.dll
2015-04-17 14:40:52 ----A---- C:\Windows\system32\jscript9diag.dll
2015-04-17 14:40:52 ----A---- C:\Windows\system32\jscript9.dll
2015-04-17 14:40:52 ----A---- C:\Windows\system32\ieframe.dll
2015-04-17 14:40:51 ----A---- C:\Windows\system32\wininet.dll
2015-04-17 14:40:51 ----A---- C:\Windows\system32\vbscript.dll
2015-04-17 14:40:51 ----A---- C:\Windows\system32\MshtmlDac.dll
2015-04-17 14:40:50 ----A---- C:\Windows\system32\msrating.dll
2015-04-17 14:40:50 ----A---- C:\Windows\system32\mshtml.dll
2015-04-17 14:40:01 ----A---- C:\Windows\SYSWOW64\ntoskrnl.exe
2015-04-17 14:40:01 ----A---- C:\Windows\SYSWOW64\ntkrnlpa.exe
2015-04-17 14:40:01 ----A---- C:\Windows\SYSWOW64\ntdll.dll
2015-04-17 14:40:01 ----A---- C:\Windows\system32\ntoskrnl.exe
2015-04-17 14:40:01 ----A---- C:\Windows\system32\ntdll.dll
2015-04-17 14:40:01 ----A---- C:\Windows\system32\KernelBase.dll
2015-04-17 14:40:01 ----A---- C:\Windows\system32\kernel32.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-security-base-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-util-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-string-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-io-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-file-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\SYSWOW64\api-ms-win-core-console-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-04-17 14:40:00 ----AH---- C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-04-17 14:40:00 ----A---- C:\Windows\SYSWOW64\wow32.dll
2015-04-17 14:40:00 ----A---- C:\Windows\SYSWOW64\wdigest.dll
2015-04-17 14:40:00 ----A---- C:\Windows\SYSWOW64\TSpkg.dll
2015-04-17 14:40:00 ----A---- C:\Windows\SYSWOW64\sspicli.dll
2015-04-17 14:40:00 ----A---- C:\Windows\SYSWOW64\srclient.dll
2015-04-17 14:40:00 ----A---- C:\Windows\SYSWOW64\schannel.dll
2015-04-17 14:40:00 ----A---- C:\Windows\SYSWOW64\setup16.exe
2015-04-17 14:40:00 ----A---- C:\Windows\SYSWOW64\secur32.dll
2015-04-17 14:40:00 ----A---- C:\Windows\SYSWOW64\ntvdm64.dll
2015-04-17 14:40:00 ----A---- C:\Windows\SYSWOW64\ncrypt.dll
2015-04-17 14:40:00 ----A---- C:\Windows\SYSWOW64\msv1_0.dll
2015-04-17 14:40:00 ----A---- C:\Windows\SYSWOW64\KernelBase.dll
2015-04-17 14:40:00 ----A---- C:\Windows\SYSWOW64\kernel32.dll
2015-04-17 14:40:00 ----A---- C:\Windows\SYSWOW64\kerberos.dll
2015-04-17 14:40:00 ----A---- C:\Windows\SYSWOW64\credssp.dll
2015-04-17 14:40:00 ----A---- C:\Windows\SYSWOW64\auditpol.exe
2015-04-17 14:40:00 ----A---- C:\Windows\system32\wow64win.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\wow64cpu.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\wow64.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\winsrv.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\wdigest.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\TSpkg.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\sspisrv.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\sspicli.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\srcore.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\srclient.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\smss.exe
2015-04-17 14:40:00 ----A---- C:\Windows\system32\schannel.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\secur32.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\rstrui.exe
2015-04-17 14:40:00 ----A---- C:\Windows\system32\ntvdm64.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\ncrypt.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\msv1_0.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\lsass.exe
2015-04-17 14:40:00 ----A---- C:\Windows\system32\lsasrv.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\kerberos.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\drivers\ksecpkg.sys
2015-04-17 14:40:00 ----A---- C:\Windows\system32\drivers\ksecdd.sys
2015-04-17 14:40:00 ----A---- C:\Windows\system32\csrsrv.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\credssp.dll
2015-04-17 14:40:00 ----A---- C:\Windows\system32\conhost.exe
2015-04-17 14:40:00 ----A---- C:\Windows\system32\auditpol.exe
2015-04-17 14:39:59 ----A---- C:\Windows\SYSWOW64\user.exe
2015-04-17 14:39:59 ----A---- C:\Windows\SYSWOW64\msobjs.dll
2015-04-17 14:39:59 ----A---- C:\Windows\SYSWOW64\msaudite.dll
2015-04-17 14:39:59 ----A---- C:\Windows\SYSWOW64\instnm.exe
2015-04-17 14:39:59 ----A---- C:\Windows\SYSWOW64\apisetschema.dll
2015-04-17 14:39:59 ----A---- C:\Windows\SYSWOW64\adtschema.dll
2015-04-17 14:39:59 ----A---- C:\Windows\system32\msobjs.dll
2015-04-17 14:39:59 ----A---- C:\Windows\system32\msaudite.dll
2015-04-17 14:39:59 ----A---- C:\Windows\system32\apisetschema.dll
2015-04-17 14:39:59 ----A---- C:\Windows\system32\adtschema.dll
2015-04-17 14:39:46 ----A---- C:\Windows\SYSWOW64\clfsw32.dll
2015-04-17 14:39:46 ----A---- C:\Windows\system32\clfsw32.dll
2015-04-17 14:39:46 ----A---- C:\Windows\system32\clfs.sys
2015-04-17 14:39:45 ----A---- C:\Windows\SYSWOW64\wuwebv.dll
2015-04-17 14:39:45 ----A---- C:\Windows\SYSWOW64\wups.dll
2015-04-17 14:39:45 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2015-04-17 14:39:45 ----A---- C:\Windows\SYSWOW64\wuapp.exe
2015-04-17 14:39:45 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2015-04-17 14:39:45 ----A---- C:\Windows\system32\wuwebv.dll
2015-04-17 14:39:45 ----A---- C:\Windows\system32\wups2.dll
2015-04-17 14:39:45 ----A---- C:\Windows\system32\wups.dll
2015-04-17 14:39:45 ----A---- C:\Windows\system32\wudriver.dll
2015-04-17 14:39:45 ----A---- C:\Windows\system32\wucltux.dll
2015-04-17 14:39:45 ----A---- C:\Windows\system32\wuaueng.dll
2015-04-17 14:39:45 ----A---- C:\Windows\system32\wuauclt.exe
2015-04-17 14:39:45 ----A---- C:\Windows\system32\wuapp.exe
2015-04-17 14:39:45 ----A---- C:\Windows\system32\wuapi.dll
2015-04-17 14:39:45 ----A---- C:\Windows\system32\wu.upgrade.ps.dll
2015-04-17 14:39:45 ----A---- C:\Windows\system32\WinSetupUI.dll
2015-04-17 14:39:06 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2015-04-17 14:39:06 ----A---- C:\Windows\system32\gdi32.dll
2015-04-17 14:38:50 ----A---- C:\Windows\system32\drivers\http.sys
2015-04-17 14:38:43 ----A---- C:\Windows\SYSWOW64\msxml3r.dll
2015-04-17 14:38:43 ----A---- C:\Windows\SYSWOW64\msxml3.dll
2015-04-17 14:38:43 ----A---- C:\Windows\system32\msxml3r.dll
2015-04-17 14:38:43 ----A---- C:\Windows\system32\msxml3.dll
2015-04-14 20:09:18 ----D---- C:\ProgramData\Applications
2015-04-06 10:22:11 ----D---- C:\Users\Asus\AppData\Roaming\ScruffyDuck
2015-04-06 10:22:11 ----D---- C:\ProgramData\TracerX
2015-04-06 10:20:47 ----D---- C:\MSFS
2015-04-01 11:36:23 ----D---- C:\Eaglesoft Development Group

======List of files/folders modified in the last 1 month======

2015-04-29 11:48:36 ----D---- C:\Windows\Temp
2015-04-29 11:48:34 ----RD---- C:\Program Files
2015-04-29 11:47:15 ----D---- C:\Windows\System32
2015-04-29 11:47:15 ----A---- C:\Windows\system32\PerfStringBackup.INI
2015-04-29 11:44:35 ----D---- C:\Users\Asus\AppData\Roaming\BitTorrent
2015-04-29 11:42:40 ----D---- C:\Windows\system32\config
2015-04-29 11:41:56 ----D---- C:\ProgramData\NVIDIA
2015-04-28 23:01:24 ----SHD---- C:\System Volume Information
2015-04-28 13:10:17 ----D---- C:\Users\Asus\AppData\Roaming\Disk Cleaner
2015-04-28 13:09:47 ----D---- C:\Users\Asus\AppData\Roaming\Macromedia
2015-04-28 11:19:05 ----D---- C:\ProgramData\Reality XP
2015-04-27 23:29:14 ----D---- C:\Windows
2015-04-26 00:40:43 ----RD---- C:\Program Files (x86)
2015-04-26 00:40:27 ----SHD---- C:\Windows\Installer
2015-04-26 00:39:41 ----SD---- C:\ProgramData\Microsoft
2015-04-26 00:39:41 ----D---- C:\Program Files (x86)\Microsoft
2015-04-25 22:22:42 ----D---- C:\Users\Asus\AppData\Roaming\Skype
2015-04-24 16:50:01 ----D---- C:\Windows\system32\Tasks
2015-04-24 16:29:00 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2015-04-23 16:02:49 ----D---- C:\Users\Asus\AppData\Roaming\vlc
2015-04-22 23:31:49 ----D---- C:\Windows\SysWOW64
2015-04-20 23:11:39 ----D---- C:\Windows\system32\NDF
2015-04-19 09:17:48 ----D---- C:\Windows\system32\MRT
2015-04-19 09:14:50 ----A---- C:\Windows\system32\MRT.exe
2015-04-17 18:00:01 ----D---- C:\Windows\Microsoft.NET
2015-04-17 17:58:21 ----RSD---- C:\Windows\assembly
2015-04-17 14:52:00 ----D---- C:\Windows\winsxs
2015-04-17 14:51:14 ----D---- C:\Windows\SYSWOW64\en-US
2015-04-17 14:51:14 ----D---- C:\Windows\SYSWOW64\cs-CZ
2015-04-17 14:51:13 ----D---- C:\Windows\system32\en-US
2015-04-17 14:51:13 ----D---- C:\Windows\system32\drivers
2015-04-17 14:51:13 ----D---- C:\Windows\system32\cs-CZ
2015-04-17 14:51:13 ----D---- C:\Windows\AppPatch
2015-04-17 14:51:13 ----D---- C:\Program Files\Internet Explorer
2015-04-17 14:51:12 ----D---- C:\Program Files (x86)\Internet Explorer
2015-04-17 14:44:23 ----D---- C:\ProgramData\Microsoft Help
2015-04-17 14:39:19 ----D---- C:\Windows\system32\catroot2
2015-04-15 07:49:31 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2015-04-14 20:09:44 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2015-04-14 20:09:18 ----HD---- C:\ProgramData
2015-04-14 20:07:58 ----D---- C:\Program Files (x86)\Microsoft Games
2015-04-04 18:33:43 ----D---- C:\Program Files (x86)\FS Panel Studio
2015-04-01 11:39:16 ----RSD---- C:\Windows\Fonts
2015-04-01 11:39:14 ----D---- C:\Users\Asus\AppData\Roaming\Navdata

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 epfwwfp;epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [2014-10-10 63160]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-20 213888]
R0 vmbus;@%SystemRoot%\system32\vmbusres.dll,-1000; C:\Windows\system32\drivers\vmbus.sys [2010-11-20 199552]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 CSC;@%systemroot%\system32\cscsvc.dll,-202; C:\Windows\system32\drivers\csc.sys [2010-11-20 514560]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-12-31 283064]
R1 eamonm;eamonm; C:\Windows\system32\DRIVERS\eamonm.sys [2014-10-10 243440]
R1 ehdrv;ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [2014-10-10 169280]
R1 EpfwLWF;Epfw NDIS LightWeight Filter; C:\Windows\system32\DRIVERS\EpfwLWF.sys [2014-10-10 44632]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R2 epfw;epfw; C:\Windows\system32\DRIVERS\epfw.sys [2014-10-10 222280]
R3 bpenum;Intel(R) Centrino(R) WiMAX Enumerator; C:\Windows\system32\DRIVERS\bpenum.sys [2011-05-19 84480]
R3 bpmp;Intel(R) Centrino(R) WiMAX 6050 Series; C:\Windows\system32\DRIVERS\bpmp.sys [2011-05-19 182272]
R3 bpusb;Intel(R) Centrino(R) WiMAX 6050 Series Function Driver; C:\Windows\System32\Drivers\bpusb.sys [2011-05-19 83968]
R3 BTATH_BUS;Atheros Bluetooth Bus; C:\Windows\system32\DRIVERS\btath_bus.sys [2011-09-30 30368]
R3 FLxHCIc;Fresco Logic xHCI (USB3) Device Driver; C:\Windows\system32\DRIVERS\FLxHCIc.sys [2012-07-19 246568]
R3 FLxHCIh;Fresco Logic xHCI (USB3) Hub Device Driver; C:\Windows\system32\DRIVERS\FLxHCIh.sys [2012-07-19 76584]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\Windows\system32\drivers\RTKVHD64.sys [2012-02-06 4740456]
R3 MBfilt;MBfilt; C:\Windows\system32\drivers\MBfilt64.sys [2009-11-18 32344]
R3 MEIx64;Intel(R) Management Engine Interface ; C:\Windows\system32\DRIVERS\HECIx64.sys [2011-09-22 56600]
R3 NETwNs64;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 7 - 64 Bit; C:\Windows\system32\DRIVERS\NETwNs64.sys [2011-05-01 8593920]
R3 NVHDA;Service for NVIDIA High Definition Audio Driver; C:\Windows\system32\drivers\nvhda64v.sys [2013-12-04 196384]
R3 RTL8167;Realtek 8167 NT Driver; C:\Windows\system32\DRIVERS\Rt64win7.sys [2011-04-22 471144]
R3 SmbDrv;SmbDrv; C:\Windows\system32\DRIVERS\Smb_driver.sys [2012-01-26 22800]
R3 SynTP;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2012-01-26 413456]
R3 vwifimp;Microsoft Virtual WiFi Miniport Service; C:\Windows\system32\DRIVERS\vwifimp.sys [2009-07-14 17920]
R3 WSDPrintDevice;Podpora tisku WSD prostřednictvím funkce UMB; C:\Windows\system32\DRIVERS\WSDPrint.sys [2009-07-14 23040]
R3 WSDScan;Podpora skenování WSD přes UMB; C:\Windows\system32\DRIVERS\WSDScan.sys [2009-07-14 25088]
S3 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
S3 RDPDR;Terminal Server Device Redirector Driver; C:\Windows\System32\drivers\rdpdr.sys [2010-11-20 165888]
S3 RdpVideoMiniport;Remote Desktop Video Miniport Driver; C:\Windows\System32\drivers\rdpvideominiport.sys [2012-08-23 19456]
S3 RimUsb;zařízení BlackBerry Smartphone; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [2007-05-14 27520]
S3 RSUSBVSTOR;RtsUVStor.Sys Realtek USB Card Reader; C:\Windows\System32\Drivers\RTSUVSTOR.sys [2012-06-15 315536]
S3 RTL8169;Realtek 8169 NT Driver; C:\Windows\system32\DRIVERS\Rtlh64.sys [2011-09-08 508520]
S3 s3cap;s3cap; C:\Windows\system32\drivers\vms3cap.sys [2010-11-20 6656]
S3 storvsc;storvsc; C:\Windows\system32\drivers\storvsc.sys [2010-11-20 34688]
S3 TsUsbFlt;@%SystemRoot%\system32\drivers\tsusbflt.sys,-1; C:\Windows\System32\drivers\tsusbflt.sys [2013-10-02 56832]
S3 VMBusHID;VMBusHID; C:\Windows\system32\drivers\VMBusHID.sys [2010-11-20 21760]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2014-12-19 81088]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2011-11-21 80512]
R2 AtherosSvc;AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [2011-09-30 105120]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-07-14 1390176]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-07-14 1767520]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2009-07-14 27136]
R2 DMAgent;Intel® PROSet/Wireless WiMAX Red Bend Device Management Service; C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe [2011-06-06 498688]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2014-10-01 1349576]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2011-05-02 1517328]
R2 nvsvc;NVIDIA Display Driver Service; C:\Windows\system32\nvvsvc.exe [2013-03-14 884512]
R2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-01-10 1260320]
R2 OODefragAgent;O&O Defrag; C:\Program Files\OO Software\Defrag\oodag.exe [2011-01-25 3051848]
R2 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [2013-04-08 1320496]
R2 PDF Architect Service;PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [2013-04-08 799280]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2011-05-02 844560]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2013-03-14 383264]
R2 WiMAXAppSrv;Intel® PROSet/Wireless WiMAX Service; C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe [2011-06-06 986112]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2013-09-11 105144]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2013-09-11 124088]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-05 107848]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-01-02 315488]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2009-07-14 27136]
S3 FLEXnet Licensing Service;FLEXnet Licensing Service; C:\Program Files (x86)\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe [2014-08-31 1044816]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-05 107848]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 IEEtwCollectorService;@%SystemRoot%\system32\ieetwcollectorres.dll,-1000; C:\Windows\system32\IEEtwCollector.exe [2015-03-13 114688]
S3 Microsoft Office Groove Audit Service;Microsoft Office Groove Audit Service; C:\Program Files (x86)\Microsoft Office\Office12\GrooveAuditService.exe [2009-02-26 64856]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-04-24 148080]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2011-05-02 340240]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PeerDistSvc;@%SystemRoot%\system32\peerdistsvc.dll,-9000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 StorSvc;@%SystemRoot%\System32\StorSvc.dll,-100; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2009-07-14 27136]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-11-27 1255736]
S4 aspnet_state;Stavová služba ASP.NET; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2013-09-11 51808]
S4 NetMsmqActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8195; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetPipeActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8197; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]
S4 NetTcpActivator;@C:\Windows\Microsoft.NET\Framework64\v4.0.30319\\ServiceModelInstallRC.dll,-8199; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2013-09-11 139856]

-----------------EOF-----------------
Děkuji dopředu - posledních několik dní se IE chová nestandartně, ve výpisu navštívených webů se objevují následující weby, aniž bych o to stál....:
hxxp://www.nationaldegger.com
hxxp://www.romantic-lyrics.com
hxp://www.wincustomize.com
hxp://www.xquitar.
hxxp://www.boy-cool.com a další.....

Smart Security 8 - licencovaná a plně updatovaná verze na to bohužel nestačí. OS Win 7, 64Bit
Kopřík
Naposledy upravil(a) vyosek dne 29 dub 2015 11:02, celkem upraveno 1 x.
Důvod: Z bezp. duvodu zneaktivnen link

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o kontrolu logu, nestandartní chování IE

#2 Příspěvek od altrok »

Zdravim :bye:


:arrow: Odinstalujte :arrow: V ramci cisteni Vam budou vyprazdneny docasne adresare (vcetne Kose).

:arrow: Ulozte na plochu AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/ (nebo http://www.bleepingcomputer.com/download/adwcleaner/ )
  • ukoncete vsechny programy
  • kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
  • kliknete na Scan, pote na Cleaning
  • po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\AdwCleaner [Sx].txt), jehoz obsah mi zkopirujte do pristi odpovedi
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

koprik
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 21 črc 2008 21:23

Re: Prosím o kontrolu logu, nestandartní chování IE

#3 Příspěvek od koprik »

Též Vás srdečně zdravím!:-))
vše pochopeno, provedeno, posílám log a mnohokrát děkuji!Förum samoyřejmě rád podpořím
Kopřík

# AdwCleaner v4.202 - Log vytvořen 29/04/2015 v 17:12:35
# Aktualizováno 23/04/2015 by Xplode
# Databáze : 2015-04-27.1 [Server]
# Operační system : Windows 7 Professional Service Pack 1 (x64)
# Uživatelské jméno : Asus - ASUS-PC
# Spuštěno z : C:\Users\Asus\Desktop\adwcleaner_4.202.exe
# Nastavení : Čištění

***** [ Služby ] *****


***** [ Soubory / Složky ] *****

Složka Smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FileViewPro
Složka Smazáno : C:\Program Files\FileViewPro
Složka Smazáno : C:\Users\Asus\AppData\Local\FileViewPro
Složka Smazáno : C:\Users\Asus\AppData\Roaming\pdfforge
Soubor Smazáno : C:\Users\Asus\AppData\Local\Temp\Uninstall.exe
Soubor Smazáno : C:\Windows\System32\roboot64.exe

***** [ Naplánované úlohy ] *****


***** [ Zástupci ] *****


***** [ Registry ] *****

Klíč Smazáno : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Klíč Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Hodnota Smazáno : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}]
Klíč Smazáno : HKLM\SOFTWARE\dll-files.com
Klíč Smazáno : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\FileViewPro_is1
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\icq.com
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\tabcrawler.com
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\wlogin.icq.com
Klíč Smazáno : HKCU\Software\Microsoft\Internet Explorer\LowRegistry\DOMStorage\www.tabcrawler.com
Data Smazáno : HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <-loopback>
Data Smazáno : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings [ProxyOverride] - <local>

***** [ Prohlížeče ] *****

-\\ Internet Explorer v11.0.9600.17728


-\\ Mozilla Firefox v37.0.2 (x86 cs)


*************************

AdwCleaner[R0].txt - [2308 bytů] - [29/04/2015 17:10:45]
AdwCleaner[S0].txt - [2211 bytů] - [29/04/2015 17:12:35]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2269 bytů] ##########

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o kontrolu logu, nestandartní chování IE

#4 Příspěvek od altrok »

:arrow: Dejte log FRST.txt, prilozte i Addition.txt - http://forum.viry.cz/viewtopic.php?f=30&t=133101
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

koprik
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 21 črc 2008 21:23

Re: Prosím o kontrolu logu, nestandartní chování IE

#5 Příspěvek od koprik »

Zdravím, posílám obojí:

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 29-04-2015
Ran by Asus (administrator) on ASUS-PC on 29-04-2015 17:44:54
Running from C:\Users\Asus\Desktop
Loaded Profiles: Asus & UpdatusUser (Available profiles: Asus & UpdatusUser)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodag.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Red Bend Ltd.) C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
(Intel® Corporation) C:\Program Files\Intel\WiMAX\Bin\WiMAXCU.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodtray.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Akamai Technologies, Inc.) C:\Users\Asus\AppData\Local\Akamai\netsession_win.exe
(BitTorrent Inc.) C:\Users\Asus\AppData\Roaming\BitTorrent\BitTorrent.exe
(Akamai Technologies, Inc.) C:\Users\Asus\AppData\Local\Akamai\netsession_win.exe
(Windows (R) Win 7 DDK provider) C:\Program Files\Fresco Logic\Fresco Logic USB3.0 Host Controller\amd64_host\FLxHCIm.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [IntelPAN] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-05-02] (Intel(R) Corporation)
HKLM\...\Run: [IntelWirelessWiMAX] => C:\Program Files\Intel\WiMAX\Bin\WiMAXCU.exe [1622016 2011-06-02] (Intel® Corporation)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [981664 2011-09-30] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [799904 2011-09-30] (Atheros Commnucations)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2869008 2012-01-26] (Synaptics Incorporated)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12446824 2012-01-31] (Realtek Semiconductor)
HKLM\...\Run: [SynAsusAcpi] => C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [100112 2012-01-26] (Synaptics Incorporated)
HKLM\...\Run: [OODefragTray] => C:\Program Files\OO Software\Defrag\oodtray.exe [3942216 2011-01-25] (O&O Software GmbH)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Smart Security\egui.exe [5595336 2014-10-01] (ESET)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKLM-x32\...\Run: [FLxHCIm64] => C:\Program Files\Fresco Logic\Fresco Logic USB3.0 Host Controller\amd64_host\FLxHCIm.exe [48128 2012-07-19] (Windows (R) Win 7 DDK provider)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [318080 2011-12-22] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [174720 2011-10-24] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Asus\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Run: [BitTorrent] => C:\Users\Asus\AppData\Roaming\BitTorrent\BitTorrent.exe [1443160 2015-04-28] (BitTorrent Inc.)
HKU\S-1-5-21-3819283212-2759028170-3360342564-1001\...\Run: [BitTorrent Sync] => C:\Program Files (x86)\BitTorrent Sync\BTSync.exe [1648488 2013-12-30] (BitTorrent, Inc.)
HKU\S-1-5-21-3819283212-2759028170-3360342564-1001\...\Run: [Akamai NetSession Interface] => C:\Users\Asus\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKU\S-1-5-21-3819283212-2759028170-3360342564-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO-x32: PDF Architect Helper -> {3A2D5EBA-F86D-4BD3-A177-019765996711} -> C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2013-04-08] (pdfforge GmbH)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-09-30] (Atheros Commnucations)
Toolbar: HKU\S-1-5-21-3819283212-2759028170-3360342564-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKU\S-1-5-21-3819283212-2759028170-3360342564-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: HKLM-x32 {0D41B8C5-2599-4893-8183-00195EC8D5F9} http://support.asus.com/select/asusTek_sys_ctrl3.cab
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.20

FireFox:
========
FF ProfilePath: C:\Users\Asus\AppData\Roaming\Mozilla\Firefox\Profiles\oh1nzrba.default-1390341931323
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll [2015-04-15] ()
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-15] ()
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-03-14] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-03-14] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3819283212-2759028170-3360342564-1000: @Google.com/GoogleEarthPlugin -> C:\Users\Asus\AppData\Local\Google\Google Earth\plugin\npgeplugin.dll [2012-04-14] (Google)
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2014-01-28]
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird

Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [Not Found]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [105120 2011-09-30] (Atheros Commnucations) [File not signed]
R2 DMAgent; C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe [498688 2011-06-06] (Red Bend Ltd.) [File not signed]
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1349576 2014-10-01] (ESET)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-05-02] ()
R2 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [3051848 2011-01-25] (O&O Software GmbH)
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
R2 WiMAXAppSrv; C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe [986112 2011-06-06] (Intel(R) Corporation) [File not signed]
R2 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [158880 2011-09-30] (Atheros) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-12-31] (Disc Soft Ltd)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [243440 2014-10-10] (ESET)
U5 edevmon; C:\Windows\System32\Drivers\edevmon.sys [241368 2014-10-10] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [169280 2014-10-10] (ESET)
R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [222280 2014-10-10] (ESET)
R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [44632 2014-10-10] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [63160 2014-10-10] (ESET)
R3 FLxHCIh; C:\Windows\System32\DRIVERS\FLxHCIh.sys [76584 2012-07-19] (Fresco Logic)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited)
R3 SmbDrv; C:\Windows\System32\DRIVERS\Smb_driver.sys [22800 2012-01-26] (Synaptics Incorporated)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-29 17:44 - 2015-04-29 17:45 - 00014052 _____ () C:\Users\Asus\Desktop\FRST.txt
2015-04-29 17:44 - 2015-04-29 17:44 - 00000000 ____D () C:\FRST
2015-04-29 17:42 - 2015-04-29 17:42 - 02101248 _____ (Farbar) C:\Users\Asus\Desktop\FRST64.exe
2015-04-29 17:10 - 2015-04-29 17:12 - 00000000 ____D () C:\AdwCleaner
2015-04-29 17:09 - 2015-04-29 17:09 - 02224640 _____ () C:\Users\Asus\Desktop\adwcleaner_4.202.exe
2015-04-29 14:02 - 2015-04-29 14:02 - 00000000 ____D () C:\Users\Asus\Downloads\Black Box Simulator A330+A340+Crack
2015-04-29 11:48 - 2015-04-29 11:48 - 00000000 ____D () C:\rsit
2015-04-29 11:48 - 2015-04-29 11:48 - 00000000 ____D () C:\Program Files\trend micro
2015-04-28 23:08 - 2015-04-28 23:08 - 01222144 _____ () C:\Users\Asus\Downloads\RSITx64.exe
2015-04-28 11:26 - 2015-04-28 12:28 - 315589891 ____R () C:\Users\Asus\Downloads\Ants Airplanes T-28BC Trojan v1.11.exe
2015-04-28 11:24 - 2015-04-28 11:40 - 327748025 _____ () C:\Users\Asus\Downloads\aaaComp.zip
2015-04-27 23:29 - 2015-04-29 17:12 - 00214350 _____ () C:\Windows\WindowsUpdate.log
2015-04-27 23:27 - 2015-04-27 23:27 - 00003164 _____ () C:\Windows\PFRO.log
2015-04-26 00:40 - 2015-04-26 00:40 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\zhxusvzd
2015-04-25 22:45 - 2015-04-29 17:13 - 00000672 _____ () C:\Windows\setupact.log
2015-04-25 22:45 - 2015-04-25 22:45 - 00000000 _____ () C:\Windows\setuperr.log
2015-04-25 22:32 - 2015-04-25 22:32 - 00000000 ____D () C:\Users\Asus\Downloads\UTAX FSX Scenery
2015-04-25 00:20 - 2015-04-25 00:35 - 00000000 ____D () C:\Users\Asus\Documents\Wilco CRJ
2015-04-24 17:03 - 2015-04-24 17:03 - 00000000 ____D () C:\Users\Asus\Downloads\CRJNextGen
2015-04-24 16:48 - 2015-04-24 17:02 - 491320475 ____R () C:\Users\Asus\Downloads\CRJNextGen.rar
2015-04-24 16:11 - 2015-04-24 16:27 - 00000000 ____D () C:\Users\Asus\Downloads\WindowsEnablerv1.1
2015-04-24 16:10 - 2015-04-24 16:11 - 00184400 _____ () C:\Users\Asus\Downloads\WindowsEnablerv1.1.zip
2015-04-24 15:43 - 2015-04-24 15:43 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-04-24 15:29 - 2015-04-24 15:29 - 00000000 ____D () C:\Users\Asus\Downloads\hawkisimu42
2015-04-24 15:11 - 2015-04-24 15:16 - 16471299 _____ () C:\Users\Asus\Downloads\hawkisimu42.zip
2015-04-24 15:06 - 2015-04-24 15:06 - 01272975 _____ () C:\Users\Asus\Downloads\kdzx_st_george_scenery_fsx.zip
2015-04-24 00:25 - 2015-04-24 00:26 - 00000000 ____D () C:\Users\Asus\Downloads\Wilco Fleet CRJ 200 700 900 fsx And all liveries
2015-04-24 00:15 - 2015-04-24 00:16 - 04989764 _____ () C:\Users\Asus\Downloads\fsx_wilco_crj700_usanc.zip
2015-04-24 00:14 - 2015-04-24 00:15 - 04901354 _____ () C:\Users\Asus\Downloads\fsx_wilco_crj700_awe.zip
2015-04-24 00:13 - 2015-04-24 00:21 - 176480009 ____R () C:\Users\Asus\Downloads\Wilco Fleet CRJ 200 700 900 fsx And all liveries.rar
2015-04-23 20:52 - 2015-04-23 20:52 - 00000000 ____D () C:\Users\Asus\Downloads\kama_updated_v2_327623
2015-04-23 20:08 - 2015-04-23 20:09 - 00659357 _____ () C:\Users\Asus\Downloads\rolasnradar-v10.zip
2015-04-23 20:03 - 2015-04-23 20:03 - 01178645 _____ () C:\Users\Asus\Downloads\honeywellfmc.zip
2015-04-23 19:59 - 2015-04-23 20:02 - 79376458 _____ () C:\Users\Asus\Downloads\fokker_f27_mk300m_rnlaf_fsx.zip
2015-04-23 19:46 - 2015-04-23 19:48 - 38547236 _____ () C:\Users\Asus\Downloads\kama_updated_v2_327623.zip
2015-04-23 16:33 - 2015-04-23 16:48 - 419885349 ____R () C:\Users\Asus\Downloads\Flytampa_Toronto_CYYZ.rar
2015-04-22 23:27 - 2015-04-22 23:27 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PMDG Simulations
2015-04-22 18:45 - 2015-04-22 18:45 - 00001453 _____ () C:\Users\Asus\Desktop\nvidiaInspector.exe – zástupce.lnk
2015-04-22 17:48 - 2015-04-22 17:49 - 00000000 ____D () C:\Users\Asus\Downloads\nvidiaInspector
2015-04-22 17:47 - 2015-04-23 16:30 - 430866590 _____ () C:\Users\Asus\Downloads\nvidiaInspector.zip
2015-04-21 23:25 - 2015-04-21 23:25 - 00000000 ____D () C:\Users\Asus\Downloads\tol2015x
2015-04-21 23:24 - 2015-04-21 23:24 - 00000000 ____D () C:\Users\Asus\Downloads\kavik
2015-04-21 23:24 - 2015-04-21 23:24 - 00000000 ____D () C:\Users\Asus\Downloads\ft_collins-loveland_mun_v1
2015-04-21 19:51 - 2015-04-21 19:52 - 10707419 _____ () C:\Users\Asus\Downloads\v2.n78ev.zip
2015-04-21 19:44 - 2015-04-21 19:50 - 08728900 _____ () C:\Users\Asus\Downloads\ft_collins-loveland_mun_v1.zip
2015-04-21 19:41 - 2015-04-21 19:41 - 00264854 _____ () C:\Users\Asus\Downloads\fix_n78ev.zip
2015-04-21 19:37 - 2015-04-21 19:38 - 00542261 _____ () C:\Users\Asus\Downloads\kavik.zip
2015-04-21 19:36 - 2015-04-21 19:37 - 02521159 _____ () C:\Users\Asus\Downloads\unalakleet_paun_v3.0.zip
2015-04-21 19:01 - 2015-04-21 19:54 - 215019133 _____ () C:\Users\Asus\Downloads\kmkgphotoreal_323024.zip
2015-04-21 17:23 - 2015-04-21 17:23 - 00108730 _____ () C:\Users\Asus\Downloads\tol2015xfix.zip
2015-04-21 17:22 - 2015-04-21 17:25 - 112546101 _____ () C:\Users\Asus\Downloads\tol2015x.zip
2015-04-17 14:40 - 2015-04-02 02:17 - 00389808 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-04-17 14:40 - 2015-04-02 01:49 - 00342704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-04-17 14:40 - 2015-03-17 07:22 - 05557696 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-04-17 14:40 - 2015-03-17 07:22 - 00155576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-04-17 14:40 - 2015-03-17 07:22 - 00095672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-04-17 14:40 - 2015-03-17 07:19 - 01727904 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-04-17 14:40 - 2015-03-17 07:17 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-04-17 14:40 - 2015-03-17 07:17 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-04-17 14:40 - 2015-03-17 07:17 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-04-17 14:40 - 2015-03-17 07:16 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-04-17 14:40 - 2015-03-17 07:16 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-04-17 14:40 - 2015-03-17 07:15 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-04-17 14:40 - 2015-03-17 07:15 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-04-17 14:40 - 2015-03-17 07:15 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-04-17 14:40 - 2015-03-17 07:11 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:01 - 03976632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-04-17 14:40 - 2015-03-17 07:01 - 03920824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-04-17 14:40 - 2015-03-17 06:59 - 01309696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-04-17 14:40 - 2015-03-17 06:56 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-04-17 14:40 - 2015-03-17 06:56 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-04-17 14:40 - 2015-03-17 06:56 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-04-17 14:40 - 2015-03-17 06:56 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-04-17 14:40 - 2015-03-17 06:56 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-04-17 14:40 - 2015-03-17 06:56 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-04-17 14:40 - 2015-03-17 06:56 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 05:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 05:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 05:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 05:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-04-17 14:40 - 2015-03-13 06:32 - 24980480 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-04-17 14:40 - 2015-03-13 06:25 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-04-17 14:40 - 2015-03-13 06:25 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-04-17 14:40 - 2015-03-13 06:09 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-04-17 14:40 - 2015-03-13 06:08 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-04-17 14:40 - 2015-03-13 06:08 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-04-17 14:40 - 2015-03-13 06:08 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-04-17 14:40 - 2015-03-13 06:07 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-04-17 14:40 - 2015-03-13 06:06 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-04-17 14:40 - 2015-03-13 06:00 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-04-17 14:40 - 2015-03-13 05:59 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-04-17 14:40 - 2015-03-13 05:55 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-04-17 14:40 - 2015-03-13 05:54 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-04-17 14:40 - 2015-03-13 05:54 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-04-17 14:40 - 2015-03-13 05:53 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-04-17 14:40 - 2015-03-13 05:50 - 06025216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-04-17 14:40 - 2015-03-13 05:44 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-17 14:40 - 2015-03-13 05:42 - 19695616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-04-17 14:40 - 2015-03-13 05:42 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-04-17 14:40 - 2015-03-13 05:40 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-04-17 14:40 - 2015-03-13 05:32 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-17 14:40 - 2015-03-13 05:28 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-04-17 14:40 - 2015-03-13 05:28 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-04-17 14:40 - 2015-03-13 05:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-04-17 14:40 - 2015-03-13 05:27 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-04-17 14:40 - 2015-03-13 05:27 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-04-17 14:40 - 2015-03-13 05:26 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-04-17 14:40 - 2015-03-13 05:26 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-04-17 14:40 - 2015-03-13 05:23 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-04-17 14:40 - 2015-03-13 05:22 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-04-17 14:40 - 2015-03-13 05:20 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-04-17 14:40 - 2015-03-13 05:20 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-04-17 14:40 - 2015-03-13 05:17 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-04-17 14:40 - 2015-03-13 05:16 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-04-17 14:40 - 2015-03-13 05:15 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-04-17 14:40 - 2015-03-13 05:08 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-04-17 14:40 - 2015-03-13 05:07 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-04-17 14:40 - 2015-03-13 05:06 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-04-17 14:40 - 2015-03-13 05:05 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-04-17 14:40 - 2015-03-13 05:05 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-04-17 14:40 - 2015-03-13 05:01 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-04-17 14:40 - 2015-03-13 05:00 - 14397440 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-04-17 14:40 - 2015-03-13 04:57 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-04-17 14:40 - 2015-03-13 04:56 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-04-17 14:40 - 2015-03-13 04:54 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-04-17 14:40 - 2015-03-13 04:49 - 04305408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-04-17 14:40 - 2015-03-13 04:45 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-04-17 14:40 - 2015-03-13 04:44 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-04-17 14:40 - 2015-03-13 04:43 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-04-17 14:40 - 2015-03-13 04:42 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-04-17 14:40 - 2015-03-13 04:34 - 12825600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-04-17 14:40 - 2015-03-13 04:33 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-04-17 14:40 - 2015-03-13 04:22 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-04-17 14:40 - 2015-03-13 04:20 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-04-17 14:40 - 2015-03-13 04:16 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-04-17 14:40 - 2015-03-13 04:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-04-17 14:39 - 2015-03-25 05:24 - 03298816 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-04-17 14:39 - 2015-03-25 05:24 - 02553856 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-04-17 14:39 - 2015-03-25 05:24 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-04-17 14:39 - 2015-03-25 05:24 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-04-17 14:39 - 2015-03-25 05:24 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-04-17 14:39 - 2015-03-25 05:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-04-17 14:39 - 2015-03-25 05:24 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-04-17 14:39 - 2015-03-25 05:24 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-04-17 14:39 - 2015-03-25 05:23 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-04-17 14:39 - 2015-03-25 05:23 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-04-17 14:39 - 2015-03-25 05:23 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-04-17 14:39 - 2015-03-25 05:00 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-04-17 14:39 - 2015-03-25 05:00 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-04-17 14:39 - 2015-03-25 05:00 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-04-17 14:39 - 2015-03-25 05:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-04-17 14:39 - 2015-03-25 05:00 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-04-17 14:39 - 2015-03-17 07:13 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-04-17 14:39 - 2015-03-17 07:13 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-04-17 14:39 - 2015-03-17 07:11 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-04-17 14:39 - 2015-03-17 07:11 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-04-17 14:39 - 2015-03-17 06:53 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-04-17 14:39 - 2015-03-17 06:53 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-04-17 14:39 - 2015-03-17 06:50 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-04-17 14:39 - 2015-03-17 06:50 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-04-17 14:39 - 2015-03-17 05:45 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-04-17 14:39 - 2015-03-17 05:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-04-17 14:39 - 2015-03-05 07:12 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-04-17 14:39 - 2015-03-05 06:05 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-04-17 14:39 - 2015-03-04 06:55 - 00367552 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-04-17 14:39 - 2015-03-04 06:41 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-04-17 14:39 - 2015-03-04 06:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll
2015-04-17 14:38 - 2015-03-10 05:25 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-04-17 14:38 - 2015-03-10 05:21 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-04-17 14:38 - 2015-03-10 05:08 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-04-17 14:38 - 2015-03-10 05:05 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-04-17 14:38 - 2015-02-25 05:18 - 00754688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-04-14 20:15 - 2015-04-14 20:15 - 00000000 ____D () C:\Users\Asus\AppData\Local\Kjs.AppLife.Update
2015-04-14 20:14 - 2015-04-14 20:14 - 00001881 _____ () C:\Users\Asus\Desktop\ADE 165.lnk
2015-04-14 20:14 - 2015-04-14 20:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Airport Design Editor 1.65
2015-04-14 20:09 - 2015-04-14 20:09 - 00000000 ____D () C:\ProgramData\Applications
2015-04-13 20:40 - 2015-04-13 20:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZ Scenery Library
2015-04-13 20:34 - 2015-04-13 20:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rwy12 Library
2015-04-13 20:02 - 2015-04-13 20:05 - 00000000 ____D () C:\Users\Asus\Downloads\CARENADO CITATION 550 ISG black update
2015-04-13 20:00 - 2015-04-13 20:10 - 00000000 ____D () C:\Users\Asus\Downloads\CARENADO C 210 FSX + files
2015-04-13 19:59 - 2015-04-13 20:46 - 00000000 ____D () C:\Users\Asus\Downloads\FSX SUPPORT SCENERY FILES
2015-04-13 17:06 - 2015-04-13 17:24 - 255108032 _____ () C:\Users\Asus\Downloads\lowg_v6.zip
2015-04-07 18:07 - 2015-04-07 18:09 - 00000000 ____D () C:\Users\Asus\Downloads\QW Bae 146 LIVERIES
2015-04-06 17:44 - 2015-04-21 23:08 - 00000000 ____D () C:\Users\Asus\Downloads\COLORADO FSX PHOTOSCENERY
2015-04-06 17:01 - 2015-04-06 17:12 - 00000000 ____D () C:\Users\Asus\Downloads\Carenado Beech 90B UPDATE
2015-04-06 15:53 - 2015-04-06 15:59 - 185865162 ____R () C:\Users\Asus\Downloads\Accu-Sim_Skylane_FSX.zip
2015-04-06 10:22 - 2015-04-06 10:22 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\ScruffyDuck
2015-04-06 10:22 - 2015-04-06 10:22 - 00000000 ____D () C:\ProgramData\TracerX
2015-04-06 10:20 - 2015-04-06 10:20 - 00000000 ____D () C:\MSFS
2015-04-06 09:30 - 2015-04-06 09:31 - 19591852 _____ () C:\Users\Asus\Downloads\manual_english_165.zip
2015-04-05 12:59 - 2015-04-05 12:59 - 00000000 ____D () C:\Users\Asus\Downloads\LIONHEART PLANES
2015-04-05 02:11 - 2015-04-05 02:11 - 00000000 ____D () C:\Users\Asus\Downloads\FT1
2015-04-05 02:11 - 2015-04-05 02:11 - 00000000 ____D () C:\Users\Asus\Downloads\AltitaliaX2
2015-04-04 16:50 - 2015-04-04 16:50 - 00000000 ____D () C:\Users\Asus\Downloads\VS-MFS
2015-04-04 16:02 - 2015-04-04 17:15 - 00000000 ____D () C:\Users\Asus\Downloads\FS pdf files
2015-04-04 15:53 - 2015-04-04 23:00 - 00000000 ____D () C:\Users\Asus\Downloads\ISG RETROFITTED PANELS
2015-04-04 13:24 - 2015-04-04 22:46 - 99513606 ____R () C:\Users\Asus\Downloads\FT1.rar
2015-04-04 10:49 - 2015-04-04 22:56 - 00000000 ____D () C:\Users\Asus\Downloads\FSX Missions
2015-04-04 10:46 - 2015-04-04 12:33 - 78362234 ____R () C:\Users\Asus\Downloads\VS-MFS.rar
2015-04-04 03:07 - 2015-04-04 03:07 - 00000000 ____D () C:\Users\Asus\Downloads\Challenges over the Rockies
2015-04-04 02:57 - 2015-04-04 13:14 - 243558076 ____R () C:\Users\Asus\Downloads\FSMap.rar
2015-04-03 11:33 - 2015-04-03 11:33 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PAOB-Fokker50-V1.0
2015-04-02 01:35 - 2015-04-02 01:35 - 00132739 _____ () C:\Users\Asus\Downloads\AltitaliaX2.zip
2015-04-01 11:36 - 2015-04-01 11:36 - 00000000 ____D () C:\Eaglesoft Development Group

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-29 17:45 - 2013-11-26 23:50 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\BitTorrent
2015-04-29 17:21 - 2009-07-14 06:45 - 00014256 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-29 17:21 - 2009-07-14 06:45 - 00014256 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-29 17:18 - 2013-11-26 20:40 - 16495916 _____ () C:\Windows\system32\perfh005.dat
2015-04-29 17:18 - 2013-11-26 20:40 - 05749944 _____ () C:\Windows\system32\perfc005.dat
2015-04-29 17:18 - 2009-07-14 07:13 - 00006212 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-29 17:14 - 2015-02-05 20:47 - 00000890 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-04-29 17:13 - 2013-11-26 19:03 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-04-29 17:13 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-29 17:11 - 2013-11-26 23:05 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\Skype
2015-04-29 17:08 - 2014-09-16 22:46 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-04-29 13:52 - 2015-02-05 20:47 - 00000894 _____ () C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2015-04-28 23:08 - 2013-11-30 21:16 - 00000000 ____D () C:\Users\Asus\Documents\AAA KOPR
2015-04-28 22:34 - 2013-12-10 08:12 - 00000000 ____D () C:\Users\Asus\AppData\Local\CrashDumps
2015-04-28 13:10 - 2013-12-12 23:22 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\Disk Cleaner
2015-04-28 13:09 - 2013-11-26 22:47 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\Macromedia
2015-04-28 11:57 - 2015-01-17 02:30 - 00000000 ____D () C:\Users\Asus\Downloads\Reality XP
2015-04-28 11:19 - 2015-02-09 21:05 - 00000000 ____D () C:\ProgramData\Reality XP
2015-04-25 22:31 - 2013-12-30 23:59 - 00000000 ____D () C:\Users\Asus\Documents\Flight Simulator X Files
2015-04-24 16:29 - 2013-11-26 23:12 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-04-24 16:19 - 2014-01-06 01:52 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wilco Publishing
2015-04-24 16:19 - 2013-12-31 01:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wilco Publishing
2015-04-23 16:02 - 2013-11-27 00:16 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\vlc
2015-04-22 23:27 - 2014-01-03 21:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PMDG Simulations
2015-04-20 23:11 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-04-19 09:17 - 2013-11-27 00:20 - 00000000 ____D () C:\Windows\system32\MRT
2015-04-19 09:14 - 2013-11-27 00:20 - 128913832 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-04-17 14:44 - 2013-11-26 18:38 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-04-15 07:50 - 2014-09-03 19:16 - 00000000 ____D () C:\Users\Asus\AppData\Local\Adobe
2015-04-15 07:49 - 2013-11-26 22:46 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-04-15 07:49 - 2013-11-26 22:46 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-04-14 20:11 - 2013-11-27 21:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games
2015-04-14 20:09 - 2013-11-26 19:05 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-04-14 20:07 - 2013-12-30 23:27 - 00000000 ____D () C:\Program Files (x86)\Microsoft Games
2015-04-08 08:23 - 2014-07-22 16:23 - 00000000 ____D () C:\Users\Asus\Downloads\BYDLENÍ VIENNA
2015-04-05 16:55 - 2014-07-03 22:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aerosoft
2015-04-04 21:35 - 2013-11-26 18:33 - 00000000 ____D () C:\Users\Asus\AppData\Local\VirtualStore
2015-04-04 18:33 - 2015-01-20 13:33 - 00000000 ____D () C:\Program Files (x86)\FS Panel Studio
2015-04-04 16:58 - 2014-12-02 00:41 - 00000000 ____D () C:\Users\Asus\Downloads\ALASKA SCENERY FSX
2015-04-03 11:43 - 2013-11-27 21:59 - 00000000 ____D () C:\Users\Asus\Documents\Flight Simulator Files
2015-04-01 12:25 - 2014-08-24 15:53 - 00000000 ____D () C:\Users\Asus\AppData\Local\ESDG
2015-04-01 11:46 - 2013-11-26 18:50 - 00126728 _____ () C:\Users\Asus\AppData\Local\GDIPFONTCACHEV1.DAT
2015-04-01 11:45 - 2009-07-14 06:45 - 00434352 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-04-01 11:39 - 2015-01-15 10:47 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\Navdata
2015-03-30 09:52 - 2009-07-14 07:08 - 00032546 _____ () C:\Windows\Tasks\SCHEDLGU.TXT

==================== Files in the root of some directories =======

2014-02-15 13:40 - 2014-02-15 13:40 - 0000031 _____ () C:\Users\Asus\AppData\Roaming\data.dat
2014-01-26 01:06 - 2014-01-26 01:06 - 0007602 _____ () C:\Users\Asus\AppData\Local\Resmon.ResmonCfg
2014-01-25 14:18 - 2014-08-29 23:54 - 0000080 _____ () C:\Users\Asus\AppData\Local\X-Plane Installer.prf
2014-01-25 14:19 - 2014-01-25 14:21 - 0000015 _____ () C:\Users\Asus\AppData\Local\X-Plane_drm.prf
2014-01-25 11:25 - 2014-01-25 11:25 - 0000021 _____ () C:\Users\Asus\AppData\Local\x-plane_install_10.txt

Files to move or delete:
====================
C:\Users\Asus\AppData\Roaming\data.dat


Some content of TEMP:
====================
C:\Users\Asus\AppData\Local\Temp\file enablebuttonprogram.zip__10924_i1503829638_il990515.exe
C:\Users\Asus\AppData\Local\Temp\Quarantine.exe
C:\Users\Asus\AppData\Local\Temp\sqlite3.dll
C:\Users\Asus\AppData\Local\Temp\_isC2D3.exe


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-04-24 15:52

==================== End Of Log ============================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-04-2015
Ran by Asus at 2015-04-29 17:45:21
Running from C:\Users\Asus\Desktop
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3819283212-2759028170-3360342564-500 - Administrator - Disabled)
Asus (S-1-5-21-3819283212-2759028170-3360342564-1000 - Administrator - Enabled) => C:\Users\Asus
Guest (S-1-5-21-3819283212-2759028170-3360342564-501 - Limited - Disabled)
UpdatusUser (S-1-5-21-3819283212-2759028170-3360342564-1001 - Limited - Enabled) => C:\Users\UpdatusUser

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET Smart Security 8.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET Smart Security 8.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
FW: ESET Personální firewall (Enabled) {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

'757-200 Captain' Pro Pack (HKLM-x32\...\B752PRO_FS9) (Version: 2.2.00 - © 1999-2009 Captain Sim)
Active Sky Advanced (HKLM-x32\...\{78456F0E-278E-4C0D-8B64-2B0151248CA3}) (Version: 1.00.0433 - HiFi Flightware)
Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.134 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Aerosoft - Iceland X (HKLM-x32\...\{E5390E6D-3012-42EF-9F19-156B1B362372}_is1) (Version: 1 - Aerosoft - Iceland X)
Aerosoft - Kos X (HKLM-x32\...\{4818E804-E461-4EBC-A11C-D2DE2B5B8F46}_is1) (Version: 1 - Aerosoft - X)
Aerosoft's - Aerosoft Launcher (HKLM-x32\...\{EE11CFFC-898C-4875-8A63-8B732A9AD43B}) (Version: 1.1.0.2 - Aerosoft)
aerosoft's - Approaching Innsbruck X (HKLM-x32\...\{70864384-DD19-44CB-A999-A917F32F623D}) (Version: 1.20 - aerosoft)
Aerosoft's - AspenX (HKLM-x32\...\{757F55B9-A5B6-41D6-A126-2B1C0066EA91}) (Version: 1.10 - Aerosoft)
Aerosoft's - Bush Hawk XP (HKLM-x32\...\{E7F6DE96-C3E6-4B05-8EF2-71B7B447CB9C}) (Version: 1.00 - Aerosoft)
Aerosoft's - Corfu X (HKLM-x32\...\{8A073262-FB25-4224-AE36-C2725A616E05}) (Version: 1.10 - Aerosoft)
Aerosoft's - F-16 Fighting Falcon (HKLM-x32\...\{A663BED9-978C-4A04-82A3-3029245055BE}) (Version: 1.10 - Aerosoft)
Aerosoft's - Flight Tales I (HKLM-x32\...\{92B44BC9-B9A1-43F7-ABBC-A197A34A656E}) (Version: 1.00 - Aerosoft)
Aerosoft's - Kastellorizo X - FSX (HKLM-x32\...\Kastellorizo X - FSX) (Version: 1.00 - )
aerosoft's - Lord Howe Island X (HKLM-x32\...\{A5E093C7-72BF-499B-B9E8-39F70200F40C}) (Version: 1.00 - aerosoft)
Aerosoft's - Piper Cheyenne FS2004 (HKLM-x32\...\{AFA0A5F0-A38A-4E0F-A9A4-74BB7D8CBC94}) (Version: 4.00 - Aerosoft)
Aerosoft's - Piper Cheyenne FSX (HKLM-x32\...\{8F00580B-19EC-4709-896D-D21E542630DD}) (Version: 4.00 - Aerosoft)
aerosoft's - Tahiti X (HKLM-x32\...\{4C7F54EE-DC36-431F-9978-DA678D77C4BA}) (Version: 1.10 - aerosoft)
Aerosoft's - Twin Otter X Extended - FSX (HKLM-x32\...\Twin Otter X Extended - FSX) (Version: 1.05 - )
Aeroworx X-treme King Air B200 v.2.0.1 No-Hotstart Patch (HKLM-x32\...\Aeroworx X-treme King Air B200 v.2.0.1 No-Hotstart Patch) (Version: - )
Aeroworx X-treme King Air B200 v.2.2 Patch (HKLM-x32\...\Aeroworx X-treme King Air B200 v.2.2 Patch) (Version: - )
Airport Design Editor 1.65 (HKLM-x32\...\{E8A70E2D-4315-407E-9B03-B4665EDD3A94}) (Version: 1.65.5542.0 - ScruffyDuck Software)
Akamai NetSession Interface (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Akamai) (Version: - Akamai Technologies, Inc)
Akamai NetSession Interface (HKU\S-1-5-21-3819283212-2759028170-3360342564-1001\...\Akamai) (Version: - Akamai Technologies, Inc)
ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 1.2.0 - ASUS)
Atheros Bluetooth Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.04.000.98 - Atheros)
ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0015 - ASUS)
B1900D HD SERIES FSX/P3D (HKLM-x32\...\B1900D HD SERIES FSX/P3D) (Version: 1.00.00.00 - Carenado)
B200 King Air HD SERIES FSX/P3D (HKLM-x32\...\B200 King Air HD SERIES FSX/P3D) (Version: 1.00.00.00 - Carenado)
BiH VFR for FSX (version 1) (HKLM-x32\...\BiH VFR for FSX (version 1)) (Version: - )
BitTorrent (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\BitTorrent) (Version: 7.9.3.40101 - BitTorrent Inc.)
BitTorrent Sync (HKLM-x32\...\BitTorrent Sync) (Version: 1.2.75 - )
BN-2 Islander scenery (HKLM-x32\...\BN-2 Islander scenery) (Version: 1.0 - UK2000 Scenery)
BN-2 Islander v1-6 (HKLM-x32\...\BN-2 Islander v1-6) (Version: - )
C207 Skywagon FSX/P3D (HKLM-x32\...\C207 Skywagon FSX/P3D) (Version: ${PRODUCT_VERSION} - Alabeo)
C90B King Air HD SERIES FSX (HKLM-x32\...\C90B King Air HD SERIES FSX) (Version: 1.00.00.00 - Carenado)
Canon MG5200 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5200_series) (Version: - )
Carenado C172N FSX (HKLM-x32\...\Carenado C172N FSX) (Version: 1.00.00.00 - Carenado)
Carenado C208B Grand Caravan (HKLM-x32\...\Carenado C208B Grand Caravan) (Version: 1.00.00.00 - Carenado)
Carenado Commander 114 FSX (HKLM-x32\...\Carenado Commander 114 FSX) (Version: 1.00.00.00 - Carenado)
Carenado PA32 SARATOGA SP FSX (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Carenado PA32 SARATOGA SP FSX) (Version: - )
Carenado's C172N Skyhawk II FS2004 (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Carenado's C172N Skyhawk II FS2004) (Version: - )
CE208EX HD SERIES FSX/P3D (HKLM-x32\...\CE208EX HD SERIES FSX/P3D) (Version: 1.00.00.00 - Carenado)
CRJ Experience (HKLM-x32\...\CRJ Experience) (Version: - )
CRJ New Generation (HKLM-x32\...\CRJ New Generation) (Version: - )
Croatia v1.0 (HKLM-x32\...\CroatiaFSX_is1) (Version: - Davor Puljevic)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd)
DCS World (HKLM\...\DCS World_is1) (Version: 1.2.10.30996 - Eagle Dynamics)
Disk Cleaner (remove only) (HKLM-x32\...\DiskCleaner) (Version: - )
Disney Planes (HKLM-x32\...\{6B208644-BBFE-4B6B-9FDD-1CC11902E72E}) (Version: 1.00.0000 - Disney Interactive Studios)
Douglas DC2 for Flightsimulator X (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Douglas DC2 for Flightsimulator X) (Version: - )
Eaglesoft Development Group Citation X 2.0 FSX (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Eaglesoft Development Group Citation X 2.0 FSX) (Version: - )
ESET Smart Security (HKLM\...\{443D1D0A-17E5-4F61-8074-8801BDB430CC}) (Version: 8.0.304.1 - ESET, spol s r. o.)
EZ Scenery Library (HKLM-x32\...\EZ Scenery Library) (Version: - )
F1 2002 WORK IN PROGRESS DEMO (HKLM-x32\...\{BB394D95-C049-4EA4-00B3-F866A3357CCD}) (Version: - )
FeelThere - Phenom 100 (HKLM-x32\...\{401A1F58-9DD2-41A6-A2AE-6CB836E908F8}) (Version: 1.00 - The Silverwingz)
FeelThere ERJ v.2 SP2 (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\FeelThere ERJ v.2 SP2) (Version: - )
Flight One Software - 177 Cardinal (HKLM-x32\...\177cardinal) (Version: 1.1 - Flight One Software)
Flight One Software Pilatus PC-12 fsx (HKLM-x32\...\pc12_FSX) (Version: - )
Flight Simulator X (HKLM-x32\...\RTMshadow_{A9729B90-D37B-4A69-B66A-7436AC1F7274}) (Version: - )
Flight Simulator X Service Pack 1 (HKLM-x32\...\SP1shadow_{A9729B90-D37B-4A69-B66A-7436AC1F7274}) (Version: - )
Flight1 ATR 72-500 for FS2004 (Includes SP3) (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Flight1 ATR 72-500 for FS2004 (Includes SP3)) (Version: - )
Flight1 ATR 72-500 for FSX (Includes SP1) (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Flight1 ATR 72-500 for FSX (Includes SP1)) (Version: - )
Flight1 Citation Mustang (HKLM-x32\...\f1mustang_FSX) (Version: 1.08a - Flight One Software)
Flight1 King Air B200 for FSX (HKLM-x32\...\Flight1 King Air B200 for FSX1.3) (Version: 1.3 - Flight One Software)
Fokker 70-100 FSX (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Fokker 70-100 FSX) (Version: - )
Fresco Logic USB3.0 Host Controller (HKLM\...\{17F94DA8-CB07-4BD8-A6DB-E53A1CC5C433}) (Version: 3.5.73.0 - Fresco Logic Inc.)
FS Global 2010 (HKLM-x32\...\FS Global 2010) (Version: - )
FS Panel Studio for FSX Build 20207 (HKLM-x32\...\FS Panel Studio for FSX) (Version: Build 20207 - )
FSX Beechcraft 1900D (HKLM-x32\...\FSX Beechcraft 1900D) (Version: - )
GNS400W-500W Trainer (HKLM-x32\...\{C59E019B-0952-4B72-A382-68A72224F88F}) (Version: - )
Google Earth (HKLM-x32\...\{28E82311-8616-11E1-BEB0-B8AC6F97B88E}) (Version: 6.2.2.6613 - Google)
Google Earth Pro (HKLM-x32\...\{44FC61F0-2F8A-11E3-8CAE-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
iFly 737NG for FSX - 800 Norwegian (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\iFly 737NG for FSX - 800 Norwegian) (Version: - )
iFly 737NG for FSX - 800 Virgin Aus (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\iFly 737NG for FSX - 800 Virgin Aus) (Version: - )
iFly 737NG for FSX - 900 Alaska (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\iFly 737NG for FSX - 900 Alaska) (Version: - )
iFly Jets - The 737NG for FSX (HKLM-x32\...\iFly Jets - The 737NG for FSX) (Version: - )
iFly737 FSX DVD Customer Update 3.1 (HKLM-x32\...\iFly737 FSX DVD Customer Update 3.1) (Version: - )
Intel PROSet Wireless (x32 Version: - ) Hidden
Intel(R) PROSet/Wireless WiFi Software (HKLM\...\{3C41721F-AF0F-4086-AA1C-4C7F29076228}) (Version: 14.01.1000 - Intel Corporation)
Intel® PROSet/Wireless WiMAX Software (HKLM\...\{5C1DA3D9-F590-4317-A4FB-274F658E504B}) (Version: 6.05.0000 - Intel Corporation)
ISG FSX v1.8 (HKLM-x32\...\ISGv1.7_is1) (Version: - SimMarket)
Just Flight - 800XP BizJet for FSX (HKLM-x32\...\{6F321CAD-24D2-490B-BA36-AB5E8CF5DC17}) (Version: 1.00.0000 - Just Flight)
Just Flight Concorde Professional v1.00 (HKLM-x32\...\{DD87EC89-D798-42F1-B58A-6178C231BEFE}) (Version: 1.00.000 - )
JustFlight Mosquito (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\JustFlight Mosquito) (Version: - )
KIAD Washington Dulles FSX (HKLM-x32\...\{ECD78977-137C-4237-BBE6-4DEB81AA42B4}) (Version: 0.2.0 - Imagine Simulation)
Košice International Airport for FSX (HKLM-x32\...\LZKZFSX_is1) (Version: - SimMarket)
Legacy Call 1.06 (HKLM-x32\...\Legacy Call) (Version: 1.06 - FeelThere)
Legacy 'The Luxury Aircraft Collection' (HKLM-x32\...\Legacy 'The Luxury Aircraft Collection') (Version: - )
LegacyX Call 1.06 (HKLM-x32\...\LegacyX Call) (Version: 1.06 - FeelThere)
LEGO Star Wars Demo Disc (HKLM-x32\...\InstallShield_{F7D1D93A-B17A-41F8-9070-0B2A544C6165}) (Version: 1.00.0000 - Giant)
LEGO Star Wars Demo Disc (x32 Version: 1.00.0000 - Giant) Hidden
LEGO Star Wars II (HKLM-x32\...\InstallShield_{578FA426-47C0-4A3F-98A4-01ACD26B7556}) (Version: 1.00.0000 - LucasArts)
LEGO Star Wars II (x32 Version: 1.00.0000 - LucasArts) Hidden
LEGO Star Wars™ The Complete Saga (HKLM-x32\...\{DCCAE709-9860-4488-B07E-589E82433DE4}) (Version: 1.00.0000 - LucasArts)
LHC LJ24B UPDATER (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\LHC LJ24B UPDATER) (Version: - )
Lionheart Creations LJ24B (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Lionheart Creations LJ24B) (Version: - )
Lotus Simulations L-39 Albatros v1.35 (HKLM-x32\...\Lotus Simulations L-39 Albatros v1.35) (Version: - )
Lysander Secret Operations (HKLM-x32\...\Lysander Secret Operations1.0) (Version: 1.0 - FSAddon Publishing)
Majestic MJC8Q300 Version 2.004 (HKLM-x32\...\MJC8Q300) (Version: - )
Majestic MJC8Q400 Version 1.008 (HKLM-x32\...\MJC8Q400) (Version: - )
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Combat Flight Simulator 3.0 (HKLM-x32\...\Combat Flight Simulator 3.0) (Version: - )
Microsoft Flight Simulator 2004 A Century of Flight (HKLM-x32\...\Flight Simulator 9.0) (Version: 9.0 - Microsoft)
Microsoft Flight Simulator X: Acceleration (HKLM-x32\...\FlightSim_{A9729B90-D37B-4A69-B66A-7436AC1F7274}) (Version: 10.0.61637.0 - Microsoft Game Studios)
Microsoft Flight Simulator X: Acceleration SDK (HKLM-x32\...\{CF56984D-35C6-4ADB-9075-394978A427FB}) (Version: 10.0.61637.0 - Microsoft Game Studios)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Mozilla Firefox 37.0.2 (x86 cs) (HKLM-x32\...\Mozilla Firefox 37.0.2 (x86 cs)) (Version: 37.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
Natalie Brooks - Záhada domu pokladů 1.0 (HKLM-x32\...\{Natalie Brooks - Zahada domu pokladu}_is1) (Version: - Špidla Data Processing, s.r.o.)
NVIDIA Ovladač 3D Vision 311.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 311.44 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.26.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.26.4 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 311.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 311.44 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation)
NVIDIA Update 1.11.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.11.3 - NVIDIA Corporation)
O&O Defrag Free Edition (HKLM\...\{C10CAF82-9D36-4D9A-9DC0-C4549F06B519}) (Version: 14.1.431 - O&O Software GmbH)
Ovládací panel NVIDIA 311.44 (Version: 311.44 - NVIDIA Corporation) Hidden
P46T Malibu 1.sp1 (HKLM-x32\...\P46T Malibu 1.sp1) (Version: - )
PA46-350P HD SERIES FSX/P3D (HKLM-x32\...\PA46-350P HD SERIES FSX/P3D) (Version: 1.00.00.00 - Carenado)
paint.net (HKLM\...\{19BD2C33-16A8-4ED1-B9EA-D9E35B21EC42}) (Version: 4.0.5 - dotPDN LLC)
PAOB-Fokker50-V1.0 (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\PAOB-Fokker50-V1.0) (Version: - )
PDF Architect (HKLM-x32\...\{064A929A-4DE8-40CF-A901-BD40C14E4D25}) (Version: 1.1.83.9982 - pdfforge GmbH)
PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.2 - pdfforge)
PMDG 737 6700 NGX RTM (HKLM-x32\...\{C7EE862A-D83D-4A9F-B746-CBDE39BD7001}) (Version: 1.00.3219 - PMDG Simulations, LLC.)
PMDG 737 8900 NGX (HKLM-x32\...\{20708FD5-E94D-4097-A21E-E28564CDBC06}) (Version: 1.00.3219 - PMDG Simulations, LLC.)
PMDG BAe JS4100 (HKLM-x32\...\{FB647DBE-2231-405D-AC36-C73246CBE305}) (Version: 1.10.1016 - PMDG Simulations, LLC.)
PT Tu-154M Czechoslovak version 1.1 (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\PT Tu-154M Czechoslovak version 1.1) (Version: - )
PT Tu-154M Czechoslovak version 1.2 (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\PT Tu-154M Czechoslovak version 1.2) (Version: - )
QualityWings Ultimate 146 Collection FSX (HKLM-x32\...\QualityWings Ultimate 146 Collection FSX) (Version: - )
Quest Kodiak 2.4b (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Quest Kodiak 2.4b) (Version: - )
RealAir Simulations Spitfire XIV (HKLM-x32\...\{6897D3F4-C7D0-45AF-8CFE-B66952A25E7D}) (Version: 1.00.0000 - RealAir Simulations)
RealAir Turbine Duke (HKLM-x32\...\{046F74A1-7792-42FE-A5CE-EC5CC5A41EDA}) (Version: 1.2 - RealAir Simulations)
Reality XP Garmin GNS WAAS for FSX/9 Ver. 1.2 (HKLM-x32\...\RXPGNS32_is1) (Version: 1.2 - Reality XP)
Reality XP Wx500 for FSX Ver. 6.1 (HKLM-x32\...\RXPWX500FSX_is1) (Version: 6.1 - Reality XP)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.44.421.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6564 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.8400.39030 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Reader Driver (HKLM-x32\...\{62BBB2F0-E220-4821-A564-730807D2C34D}) (Version: 6.1.7600.10001 - Realtek Semiconductor Corp.)
RGFLIGHT-Salzburg-Airport-2008-X-v1.0 (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\RGFLIGHT-Salzburg-Airport-2008-X-v1.0) (Version: - )
Rwy12 Library (HKLM-x32\...\Rwy12 Library) (Version: - )
SCS Tu-134A for MS Flight Simulator 2004 (HKLM-x32\...\SCS Tu-134A for MS Flight Simulator 2004) (Version: - )
SCS Tu-134A-3 FSX v2.0 v2.0 (HKLM-x32\...\SCS Tu-134A-3 FSX v2.0 v2.0) (Version: v2.0 - SCS)
SERIES X GMX-SX Avionics Suite by SimFlyer (HKLM-x32\...\SERIES X GMX-SX Avionics Suite by SimFlyer) (Version: - )
SERIES X GNS-SX Avionics Suite by SimFlyer (HKLM-x32\...\SERIES X GNS-SX Avionics Suite by SimFlyer) (Version: - )
SeriesX GPX-SX Avionics Suite by SimFlyer (HKLM-x32\...\SeriesX GPX-SX Avionics Suite by SimFlyer) (Version: - )
Skype™ 7.2 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.2.103 - Skype Technologies S.A.)
Suprunov Design Yak-40 v 2.0.1 Lite Update (HKLM-x32\...\Suprunov Design Yak-40 v 2.0.1 Lite Update) (Version: - )
Suprunov Design Yak-40 v 2.0.1 Release (HKLM-x32\...\Suprunov Design Yak-40 v 2.0.1 Release) (Version: - )
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.3.43.0 - Synaptics Incorporated)
TAXI2GATE - WINTER TEXTURES SWITCHER (HKLM-x32\...\TAXI2GATE - WINTER TEXTURES SWITCHER) (Version: - )
Text-o-Matic (HKLM-x32\...\Text-o-Matic) (Version: - )
Text-o-Matic for FSX (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Text-o-Matic for FSX) (Version: - )
TOPCAT 2.70 - Take-Off and Landing Performance Calculation Tool (HKLM-x32\...\TOPCAT) (Version: 2.70 - FlightSimSoft.com Inh. Christian Grill)
Ultimate Airliners - The DC-9 Classic (HKLM-x32\...\Ultimate Airliners - The DC-9 Classic) (Version: - )
Ultimate Terrain - Europe (HKLM-x32\...\Ultimate Terrain - Europe) (Version: - )
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Upernavik X (HKLM-x32\...\{8D442F90-FF1A-4F3D-BFE7-B4C2A7124B91}_is1) (Version: - Mark Bradshaw)
Vagar Airport - Freeware (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Vagar Airport - Freeware) (Version: 1.0 - Aerofiles)
VistaMare ViMaCore X (HKLM-x32\...\ViMaCore X) (Version: - )
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Wings of POWER II: Messerschmitt BF109 (HKLM-x32\...\Wings of POWER II: Messerschmitt BF109) (Version: - )
WinRAR 5.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH)
X-treme King Air B200 v.2.0.1 (HKLM-x32\...\X-treme King Air B200v.2.0.1) (Version: - )

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

CustomCLSID: HKU\S-1-5-21-3819283212-2759028170-3360342564-1000_Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InprocServer32 -> C:\Users\Asus\AppData\Roaming\zhxusvzd\gendaqof.dll () <==== ATTENTION

==================== Restore Points =========================

28-04-2015 23:01:16 Windows Update
29-04-2015 17:08:00 Removed Skype Click to Call

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {0DC12D7E-411D-4C27-9394-C86B4D3250D3} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {12413A8E-599C-492C-9F58-745B6ECAA7D5} - System32\Tasks\ASUS P4G => C:\Program Files\ASUS\P4G\BatteryLife.exe [2012-01-04] (ASUS)
Task: {16834462-7AE4-4F83-A200-8D801CB924DA} - System32\Tasks\{8B68E152-3AAD-4F9B-B72A-8281E6DA0F62} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{578FA426-47C0-4A3F-98A4-01ACD26B7556}\setup.exe" -c -runfromtemp -l0x0409
Task: {441ACF30-2163-45DB-B006-C5DC5DA349A8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-05] (Google Inc.)
Task: {5168AEB4-7B43-4C99-8F1F-E2E5400E17C5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-05] (Google Inc.)
Task: {6AE50AF9-829F-4DC1-B51D-FB69E1343E1E} - System32\Tasks\{87DE6B5F-D787-45E2-B2CB-0D2BE35EDBDB} => pcalua.exe -a "F:\AAA FLIGHT SIMULATOR\FS 2004 DOWNLOAD\A SCENERY\AAA ULTIMATE TERRAIN EUROPE\UTILITY\PATCHES\Ut9Eur112.exe" -d "F:\AAA FLIGHT SIMULATOR\FS 2004 DOWNLOAD\A SCENERY\AAA ULTIMATE TERRAIN EUROPE\UTILITY\PATCHES"
Task: {BE1B5952-2C1D-4B90-B290-05DD5EFE3AA5} - System32\Tasks\{F7B02480-48E1-45CB-80C0-46E32911A2A0} => C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE [2015-02-18] (Microsoft Corporation)
Task: {BE610B8A-0D94-4021-97D9-6FA370F4A2C6} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2011-12-22] (ASUSTek Computer Inc.)
Task: {E7095861-9652-420D-A914-CECC9C98F0F5} - System32\Tasks\{50C06A04-88EB-4C5F-840E-7DF81D3C097A} => pcalua.exe -a C:\Users\Asus\Downloads\Zinertek_World_Enviroment_2012\WorldEnvironment2012.exe -d C:\Users\Asus\Downloads\Zinertek_World_Enviroment_2012
Task: {EB02381F-D652-4B1C-894A-712498C62C51} - \Microsoft\Windows\MUI\LPRemove No Task File <==== ATTENTION
Task: {EEA8257E-03D2-4D04-8699-3889F9FAEA7C} - System32\Tasks\{9B3DE54D-317B-4A91-B9B7-C6B9A38A8A38} => C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE [2015-02-18] (Microsoft Corporation)
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Loaded Modules (whitelisted) ==============

2011-05-02 14:41 - 2011-05-02 14:41 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\Libeay32.dll
2013-11-26 19:03 - 2013-03-14 08:28 - 00087328 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2015-04-26 00:40 - 2015-04-26 00:40 - 00157696 _____ () C:\Users\Asus\AppData\Roaming\zhxusvzd\gendaqof.dll
2010-07-14 17:11 - 2010-07-14 17:11 - 00031360 _____ () C:\Program Files\ASUS\P4G\DevMng.dll
2011-05-02 14:41 - 2011-05-02 14:41 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\LIBEAY32.dll
2015-04-26 00:40 - 2015-04-26 00:40 - 00133120 _____ () C:\Users\Asus\AppData\Roaming\zhxusvzd\subcalal.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)

AlternateDataStreams: C:\ProgramData\TEMP:00934A10

==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, the associated entry will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.20

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{613FE427-1BF6-475B-A774-F3E9B5909FE0}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office12\outlook.exe
FirewallRules: [{F416FC4A-E8D3-4C3A-B3E4-7D3CB94F13B2}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office12\GROOVE.EXE
FirewallRules: [{0E9C8023-F38E-478D-8617-039A374A1809}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office12\GROOVE.EXE
FirewallRules: [{9BF97BDE-C04D-4AA9-80F5-238D9EE4A613}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.EXE
FirewallRules: [{277CCEF7-5E8C-4284-80B8-808EE8327694}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.EXE
FirewallRules: [{35566877-F0CB-408E-99DF-02A04312A1D3}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{15054ECD-3868-40AB-83D9-F062B75153D4}] => (Allow) C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe
FirewallRules: [{4FD05293-7FBD-456F-B262-6F876A902C65}] => (Allow) C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe
FirewallRules: [{49CBE30A-3C78-4915-BB53-5D692DACF6CC}] => (Allow) C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe
FirewallRules: [{65F57C05-8D92-402B-9EC4-E0586D2842C5}] => (Allow) C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe
FirewallRules: [{F9E2FE5C-2399-48E9-AFA7-9F5F48B2BC0B}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{A1A40986-4ACE-450B-A377-ED80367FED53}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{B5EE992C-CF22-4DB4-B652-CA86D5AE9D30}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{8C2C779F-E78E-45DD-87BF-F770DF5C3999}] => (Allow) C:\Program Files (x86)\BitTorrent Sync\BTSync.exe
FirewallRules: [{F73E4C0E-51BB-4F26-B039-2A947EF6425D}] => (Allow) C:\Program Files (x86)\BitTorrent Sync\BTSync.exe
FirewallRules: [TCP Query User{EF718689-F52C-4986-A5D6-42A50ACF265E}C:\users\asus\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\asus\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{F6B15EA5-FFA2-4F2C-83C0-887D5407729A}C:\users\asus\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\asus\appdata\local\akamai\netsession_win.exe
FirewallRules: [{4A61F589-89D7-41CC-BD05-4AE2190B5BD2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{610A9DD6-8940-4969-AD1A-9286D6EFCF4D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{3324ED25-BB74-4F33-813D-E8740F1F9D6B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{D7A7C5EB-EBFE-404E-A849-2F9CB2B31443}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{C5E54787-4412-4848-BA2B-988829B4013E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{60B50B92-D42F-4DA3-A5AC-3A30F2309555}] => (Allow) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
FirewallRules: [{A0AE498C-41C9-4CD1-94DE-FDFE01432A00}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{7B2EEC9D-87EA-4E8D-9E7C-67175044AFA9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{9BFCEC66-DF2F-4AFC-BB9C-A182F94CA518}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{4807BC71-C352-4EA8-A7E2-81E7771D1871}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{1842D403-BF81-4AEB-AD85-BF85D1CC8327}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{2C848B70-33F6-43FE-9C49-1FED25722C09}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{342E2438-AFBF-405E-8FB3-770277A50505}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{720038B7-C418-4127-99FD-DD526BBC875E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{FE80C51B-CE3C-45E6-8A62-96C58ED758B3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{A0E2515B-CF2B-42A4-B2ED-4BFF23D0FFCF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{8B710246-BBD3-45ED-A5A8-98AB2087C5CB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{E74A033A-E24F-48D4-BC8C-1E7E63B09E1A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{9ADA0023-C8A5-48D5-B96B-2D1326DDA902}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{F58240FA-6702-4816-A1B6-D82191244AF9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{3D1C966E-96EC-4CAF-B47C-77BCBB5AA02F}] => (Allow) C:\Users\Asus\AppData\Roaming\BitTorrent\BitTorrent.exe
FirewallRules: [{BB9E9CDD-765D-4FC7-AE01-D1976C41092F}] => (Allow) C:\Users\Asus\AppData\Roaming\BitTorrent\BitTorrent.exe
FirewallRules: [{9D245FF7-C710-4154-95D9-97D90E49BD5D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{A8E098BA-5934-4E28-8C92-8895323D38F4}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (04/29/2015 05:18:07 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT AUTHORITY)
Description: Uvolnění řetězců čítačů výkonu pro službu WmiApRpl (WmiApRpl) se nezdařilo. První hodnota DWORD v datové oblasti obsahuje kód chyby.

Error: (04/29/2015 05:18:07 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY)
Description: Hodnota řetězce výkonu v registru výkonu je poškozena, pokud proces Performance zprostředkovatele čítače rozšíření. Hodnotu BaseIndex z registru výkonu obsahuje první hodnota DWORD datové části. Hodnotu LastCounter obsahuje druhá hodnota DWORD a hodnotu LastHelp obsahuje třetí hodnota DWORD datové části.

Error: (04/29/2015 05:18:07 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY)
Description: Hodnota řetězce výkonu v registru výkonu je poškozena, pokud proces Performance zprostředkovatele čítače rozšíření. Hodnotu BaseIndex z registru výkonu obsahuje první hodnota DWORD datové části. Hodnotu LastCounter obsahuje druhá hodnota DWORD a hodnotu LastHelp obsahuje třetí hodnota DWORD datové části.

Error: (04/29/2015 05:08:32 PM) (Source: Microsoft-Windows-RestartManager) (EventID: 10007) (User: Asus-PC)
Description: Aplikaci nebo službu Skype Click to Call PNR Service nelze restartovat.

Error: (04/29/2015 05:08:32 PM) (Source: Microsoft-Windows-RestartManager) (EventID: 10007) (User: Asus-PC)
Description: Aplikaci nebo službu Skype Click to Call Updater nelze restartovat.

Error: (04/29/2015 05:03:24 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT AUTHORITY)
Description: Uvolnění řetězců čítačů výkonu pro službu WmiApRpl (WmiApRpl) se nezdařilo. První hodnota DWORD v datové oblasti obsahuje kód chyby.

Error: (04/29/2015 05:03:24 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY)
Description: Hodnota řetězce výkonu v registru výkonu je poškozena, pokud proces Performance zprostředkovatele čítače rozšíření. Hodnotu BaseIndex z registru výkonu obsahuje první hodnota DWORD datové části. Hodnotu LastCounter obsahuje druhá hodnota DWORD a hodnotu LastHelp obsahuje třetí hodnota DWORD datové části.

Error: (04/29/2015 05:03:24 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY)
Description: Hodnota řetězce výkonu v registru výkonu je poškozena, pokud proces Performance zprostředkovatele čítače rozšíření. Hodnotu BaseIndex z registru výkonu obsahuje první hodnota DWORD datové části. Hodnotu LastCounter obsahuje druhá hodnota DWORD a hodnotu LastHelp obsahuje třetí hodnota DWORD datové části.

Error: (04/29/2015 01:56:29 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT AUTHORITY)
Description: Uvolnění řetězců čítačů výkonu pro službu WmiApRpl (WmiApRpl) se nezdařilo. První hodnota DWORD v datové oblasti obsahuje kód chyby.

Error: (04/29/2015 01:56:29 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY)
Description: Hodnota řetězce výkonu v registru výkonu je poškozena, pokud proces Performance zprostředkovatele čítače rozšíření. Hodnotu BaseIndex z registru výkonu obsahuje první hodnota DWORD datové části. Hodnotu LastCounter obsahuje druhá hodnota DWORD a hodnotu LastHelp obsahuje třetí hodnota DWORD datové části.


System errors:
=============
Error: (04/29/2015 05:14:24 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníSpuštění{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (pomocí LRPC)

Error: (04/29/2015 05:12:54 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\Windows\System32\IWMSSvc.dll

Error: (04/29/2015 05:12:54 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\Windows\System32\IWMSSvc.dll

Error: (04/29/2015 05:12:54 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\Windows\System32\IWMSSvc.dll

Error: (04/29/2015 05:12:53 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\Windows\System32\IWMSSvc.dll

Error: (04/29/2015 05:12:36 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 2 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (04/29/2015 05:12:35 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Instalační služba systému Windows byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 120000 milisekund: Restartovat službu.

Error: (04/29/2015 05:12:35 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Služba Windows Media Player Network Sharing byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.

Error: (04/29/2015 05:12:35 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba NVIDIA Update Service Daemon byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (04/29/2015 05:12:35 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.


Microsoft Office Sessions:
=========================
Error: (11/28/2014 09:01:29 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6691.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 13880 seconds with 180 seconds of active time. This session ended with a crash.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i7-2630QM CPU @ 2.00GHz
Percentage of memory in use: 15%
Total physical RAM: 16361.16 MB
Available physical RAM: 13860.98 MB
Total Pagefile: 32720.51 MB
Available Pagefile: 30121.48 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:167.68 GB) (Free:36.97 GB) NTFS
Drive d: (08 11 2014) (CDROM) (Total:4.38 GB) (Free:3.81 GB) UDF
Drive e: (Místní disk) (Fixed) (Total:465.66 GB) (Free:283.85 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 167.7 GB) (Disk ID: 389A9F24)
Partition 1: (Not Active) - (Size=167.7 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: E1714AA0)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)

==================== End Of Log ============================

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o kontrolu logu, nestandartní chování IE

#6 Příspěvek od altrok »

:arrow: Vypnete trvale Windows Defender - http://windows.microsoft.com/cs-cz/wind ... =windows-7

:arrow: Po aplikovani fixlistu a restartu PC (viz nize) zabalte slozku C:\FRST\Quarantine\C\Users\Asus\AppData\Roaming\zhxusvzd do zipu/raru, uploadnete ji na ulozto/leteckaposta.cz a link (odkaz) ke stazeni mi prosim poslete do mailu, ktery mam uvedeny v podpisu.


  • Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
  • ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
  • znovu spustte FRST a kliknete na Fix
  • po restartu bude na plose ulozen fixlog, jehoz obsah mi vlozte do pristi odpovedi

    Kód: Vybrat vše

    Start
    CloseProcesses:
    Folder: C:\Users\Asus\AppData\Roaming\zhxusvzd
    HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
    HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Asus\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
    HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
    HKU\S-1-5-21-3819283212-2759028170-3360342564-1001\...\Run: [Akamai NetSession Interface] => C:\Users\Asus\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
    ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File
    
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    Toolbar: HKU\S-1-5-21-3819283212-2759028170-3360342564-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
    Toolbar: HKU\S-1-5-21-3819283212-2759028170-3360342564-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
    FF Plugin: @microsoft.com/GENUINE -> disabled No File
    FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File
    
    2015-04-29 17:10 - 2015-04-29 17:12 - 00000000 ____D () C:\AdwCleaner
    2015-04-29 17:09 - 2015-04-29 17:09 - 02224640 _____ () C:\Users\Asus\Desktop\adwcleaner_4.202.exe
    2015-04-29 11:48 - 2015-04-29 11:48 - 00000000 ____D () C:\rsit
    2015-04-29 11:48 - 2015-04-29 11:48 - 00000000 ____D () C:\Program Files\trend micro
    2015-04-28 23:08 - 2015-04-28 23:08 - 01222144 _____ () C:\Users\Asus\Downloads\RSITx64.exe
    2015-04-26 00:40 - 2015-04-26 00:40 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\zhxusvzd
    
    CustomCLSID: HKU\S-1-5-21-3819283212-2759028170-3360342564-1000_Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InprocServer32 -> C:\Users\Asus\AppData\Roaming\zhxusvzd\gendaqof.dll () <==== ATTENTION
    
    Task: {6AE50AF9-829F-4DC1-B51D-FB69E1343E1E} - System32\Tasks\{87DE6B5F-D787-45E2-B2CB-0D2BE35EDBDB} => pcalua.exe -a "F:\AAA FLIGHT SIMULATOR\FS 2004 DOWNLOAD\A SCENERY\AAA ULTIMATE TERRAIN EUROPE\UTILITY\PATCHES\Ut9Eur112.exe" -d "F:\AAA FLIGHT SIMULATOR\FS 2004 DOWNLOAD\A SCENERY\AAA ULTIMATE TERRAIN EUROPE\UTILITY\PATCHES"
    Task: {E7095861-9652-420D-A914-CECC9C98F0F5} - System32\Tasks\{50C06A04-88EB-4C5F-840E-7DF81D3C097A} => pcalua.exe -a C:\Users\Asus\Downloads\Zinertek_World_Enviroment_2012\WorldEnvironment2012.exe -d C:\Users\Asus\Downloads\Zinertek_World_Enviroment_2012
    Task: {EB02381F-D652-4B1C-894A-712498C62C51} - \Microsoft\Windows\MUI\LPRemove No Task File <==== ATTENTION
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    
    AlternateDataStreams: C:\ProgramData\TEMP:00934A10
    CMD: dir "C:\PROGRA~1"
    CMD: dir "C:\PROGRA~2"
    CMD: dir "C:\PROGRA~3"
    CMD: dir "%localappdata%"
    CMD: dir "%appdata%"
    EmptyTemp:
    End
    
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

koprik
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 21 črc 2008 21:23

Re: Prosím o kontrolu logu, nestandartní chování IE

#7 Příspěvek od koprik »

Srdečně zdravím do Znojma, snad jsem vše zvládl dle návodu:
linka na soubor je tady:
http://leteckaposta.cz/234326222

a FRST poslední log je tady:

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 29-04-2015
Ran by Asus at 2015-04-29 18:30:30 Run:1
Running from C:\Users\Asus\Desktop
Loaded Profiles: Asus & UpdatusUser (Available profiles: Asus & UpdatusUser)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:
Folder: C:\Users\Asus\AppData\Roaming\zhxusvzd
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation)
HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Run: [Akamai NetSession Interface] => C:\Users\Asus\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Run: [DAEMON Tools Lite] => C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [3675352 2013-10-28] (Disc Soft Ltd)
HKU\S-1-5-21-3819283212-2759028170-3360342564-1001\...\Run: [Akamai NetSession Interface] => C:\Users\Asus\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => No File

SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
Toolbar: HKU\S-1-5-21-3819283212-2759028170-3360342564-1000 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
Toolbar: HKU\S-1-5-21-3819283212-2759028170-3360342564-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
FF Plugin: @microsoft.com/GENUINE -> disabled No File
FF Plugin-x32: @microsoft.com/GENUINE -> disabled No File

2015-04-29 17:10 - 2015-04-29 17:12 - 00000000 ____D () C:\AdwCleaner
2015-04-29 17:09 - 2015-04-29 17:09 - 02224640 _____ () C:\Users\Asus\Desktop\adwcleaner_4.202.exe
2015-04-29 11:48 - 2015-04-29 11:48 - 00000000 ____D () C:\rsit
2015-04-29 11:48 - 2015-04-29 11:48 - 00000000 ____D () C:\Program Files\trend micro
2015-04-28 23:08 - 2015-04-28 23:08 - 01222144 _____ () C:\Users\Asus\Downloads\RSITx64.exe
2015-04-26 00:40 - 2015-04-26 00:40 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\zhxusvzd

CustomCLSID: HKU\S-1-5-21-3819283212-2759028170-3360342564-1000_Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}\InprocServer32 -> C:\Users\Asus\AppData\Roaming\zhxusvzd\gendaqof.dll () <==== ATTENTION

Task: {6AE50AF9-829F-4DC1-B51D-FB69E1343E1E} - System32\Tasks\{87DE6B5F-D787-45E2-B2CB-0D2BE35EDBDB} => pcalua.exe -a "F:\AAA FLIGHT SIMULATOR\FS 2004 DOWNLOAD\A SCENERY\AAA ULTIMATE TERRAIN EUROPE\UTILITY\PATCHES\Ut9Eur112.exe" -d "F:\AAA FLIGHT SIMULATOR\FS 2004 DOWNLOAD\A SCENERY\AAA ULTIMATE TERRAIN EUROPE\UTILITY\PATCHES"
Task: {E7095861-9652-420D-A914-CECC9C98F0F5} - System32\Tasks\{50C06A04-88EB-4C5F-840E-7DF81D3C097A} => pcalua.exe -a C:\Users\Asus\Downloads\Zinertek_World_Enviroment_2012\WorldEnvironment2012.exe -d C:\Users\Asus\Downloads\Zinertek_World_Enviroment_2012
Task: {EB02381F-D652-4B1C-894A-712498C62C51} - \Microsoft\Windows\MUI\LPRemove No Task File <==== ATTENTION
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

AlternateDataStreams: C:\ProgramData\TEMP:00934A10
CMD: dir "C:\PROGRA~1"
CMD: dir "C:\PROGRA~2"
CMD: dir "C:\PROGRA~3"
CMD: dir "%localappdata%"
CMD: dir "%appdata%"
EmptyTemp:
End
*****************

Processes closed successfully.

========================= Folder: C:\Users\Asus\AppData\Roaming\zhxusvzd ========================

2015-04-26 00:40 - 2015-04-26 00:40 - 0157696 _____ () C:\Users\Asus\AppData\Roaming\zhxusvzd\gendaqof.dll
2015-04-26 00:40 - 2015-04-26 00:40 - 0133120 _____ () C:\Users\Asus\AppData\Roaming\zhxusvzd\subcalal.dll

====== End of Folder: ======

HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\GrooveMonitor => value deleted successfully.
HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\Software\Microsoft\Windows\CurrentVersion\Run\\Akamai NetSession Interface => value deleted successfully.
HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\Software\Microsoft\Windows\CurrentVersion\Run\\DAEMON Tools Lite => value deleted successfully.
HKU\S-1-5-21-3819283212-2759028170-3360342564-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Akamai NetSession Interface => Value not found.
"HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\00avast" => Key deleted successfully.
HKCR\CLSID\{472083B0-C522-11CF-8763-00608CC02F24} => Key not found.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => value deleted successfully.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Key not found.
HKU\S-1-5-21-3819283212-2759028170-3360342564-1001\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Value not found.
HKCR\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} => Key not found.
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => Key deleted successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\Asus\Desktop\adwcleaner_4.202.exe => Moved successfully.
C:\rsit => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\Users\Asus\Downloads\RSITx64.exe => Moved successfully.
C:\Users\Asus\AppData\Roaming\zhxusvzd => Moved successfully.
"HKU\S-1-5-21-3819283212-2759028170-3360342564-1000_Classes\CLSID\{56FDF344-FD6D-11d0-958A-006097C9A090}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{6AE50AF9-829F-4DC1-B51D-FB69E1343E1E}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6AE50AF9-829F-4DC1-B51D-FB69E1343E1E}" => Key deleted successfully.
C:\Windows\System32\Tasks\{87DE6B5F-D787-45E2-B2CB-0D2BE35EDBDB} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{87DE6B5F-D787-45E2-B2CB-0D2BE35EDBDB}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E7095861-9652-420D-A914-CECC9C98F0F5}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E7095861-9652-420D-A914-CECC9C98F0F5}" => Key deleted successfully.
C:\Windows\System32\Tasks\{50C06A04-88EB-4C5F-840E-7DF81D3C097A} => Moved successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{50C06A04-88EB-4C5F-840E-7DF81D3C097A}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{EB02381F-D652-4B1C-894A-712498C62C51}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EB02381F-D652-4B1C-894A-712498C62C51}" => Key deleted successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\MUI\LPRemove" => Key deleted successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => Moved successfully.
C:\ProgramData\TEMP => ":00934A10" ADS removed successfully.

========= dir "C:\PROGRA~1" =========

Svazek v jednotce C nem� ��dnou jmenovku.
S�riov� ��slo svazku je 7839-A629.

V�pis adres��e C:\PROGRA~1

29.04.2015 18:30 <DIR> .
29.04.2015 18:30 <DIR> ..
27.11.2013 15:03 <DIR> ASUS
26.11.2013 18:48 <DIR> Common Files
02.12.2013 11:51 <DIR> DVD Maker
29.11.2014 21:11 <DIR> ESET
26.11.2013 18:51 <DIR> Fresco Logic
27.11.2013 01:33 <DIR> Google
26.11.2013 18:50 <DIR> Intel
17.04.2015 14:51 <DIR> Internet Explorer
26.11.2013 18:39 <DIR> Microsoft Office
24.07.2014 13:10 <DIR> Microsoft Silverlight
14.07.2009 07:32 <DIR> MSBuild
27.11.2013 13:35 <DIR> NVIDIA Corporation
27.03.2014 17:39 <DIR> OO Software
22.02.2015 00:54 <DIR> paint.net
27.11.2013 15:16 <DIR> Realtek
14.07.2009 07:32 <DIR> Reference Assemblies
27.11.2013 15:09 <DIR> Synaptics
03.12.2013 14:17 <DIR> Windows Defender
09.07.2014 17:46 <DIR> Windows Journal
02.12.2013 11:51 <DIR> Windows Mail
11.03.2015 16:37 <DIR> Windows Media Player
14.07.2009 07:32 <DIR> Windows NT
02.12.2013 11:51 <DIR> Windows Photo Viewer
02.12.2013 11:51 <DIR> Windows Portable Devices
02.12.2013 11:51 <DIR> Windows Sidebar
01.12.2013 18:21 <DIR> WinRAR
Soubor�: 0, Bajt�: 0
Adres���: 28, Voln�ch bajt�: 39�801�761�792

========= End of CMD: =========


========= dir "C:\PROGRA~2" =========

Svazek v jednotce C nem� ��dnou jmenovku.
S�riov� ��slo svazku je 7839-A629.

V�pis adres��e C:\PROGRA~2

26.04.2015 00:40 <DIR> .
26.04.2015 00:40 <DIR> ..
30.11.2013 11:01 <DIR> Adobe
26.11.2013 19:04 <DIR> AGEIA Technologies
11.12.2013 10:43 <DIR> ASUS
26.11.2013 23:53 <DIR> BitTorrent Sync
27.11.2013 15:06 <DIR> Bluetooth Suite
26.11.2013 18:48 <DIR> Cisco
04.10.2014 11:29 <DIR> Common Files
31.12.2013 19:14 <DIR> DAEMON Tools Lite
12.12.2013 23:22 <DIR> Disk Cleaner
04.04.2015 18:33 <DIR> FS Panel Studio
15.01.2015 20:56 <DIR> FSGRW
17.01.2015 13:18 <DIR> Garmin
05.02.2015 20:48 <DIR> Google
01.01.2014 00:30 <DIR> HiFi
26.11.2013 18:44 <DIR> Intel
17.04.2015 14:51 <DIR> Internet Explorer
26.04.2015 00:39 <DIR> Microsoft
14.04.2015 20:07 <DIR> Microsoft Games
02.12.2013 08:54 <DIR> Microsoft Office
24.07.2014 13:10 <DIR> Microsoft Silverlight
26.11.2013 18:40 <DIR> Microsoft Visual Studio
26.11.2013 18:39 <DIR> Microsoft Visual Studio 8
27.11.2013 00:16 <DIR> Microsoft Works
09.12.2013 15:49 <DIR> Microsoft.NET
24.04.2015 15:43 <DIR> Mozilla Firefox
24.04.2015 16:29 <DIR> Mozilla Maintenance Service
26.11.2013 18:40 <DIR> MSBuild
30.12.2013 23:53 <DIR> MSXML 4.0
27.11.2013 13:36 <DIR> NVIDIA Corporation
28.01.2014 18:26 <DIR> PDF Architect
28.01.2014 18:27 <DIR> PDFCreator
15.01.2015 20:52 <DIR> PILOTS_FSGRW_DATA_EXCHANGE_DESC
15.01.2015 20:51 <DIR> PILOTS_FSGRW_NETWORKBRIDGE
17.01.2015 13:11 <DIR> Reality XP
27.11.2013 15:16 <DIR> Realtek
14.07.2009 07:32 <DIR> Reference Assemblies
05.09.2014 17:50 <DIR> Shockwave 3D Lights Redux
29.04.2015 17:08 <DIR> Skype
04.10.2014 11:29 <DIR> TOPCAT
27.11.2013 00:15 <DIR> VideoLAN
03.12.2013 14:17 <DIR> Windows Defender
02.12.2013 11:51 <DIR> Windows Mail
11.03.2015 16:37 <DIR> Windows Media Player
14.07.2009 07:32 <DIR> Windows NT
02.12.2013 11:51 <DIR> Windows Photo Viewer
02.12.2013 11:51 <DIR> Windows Portable Devices
02.12.2013 11:51 <DIR> Windows Sidebar
03.07.2014 22:53 <DIR> Wings of POWER II
Soubor�: 0, Bajt�: 0
Adres���: 50, Voln�ch bajt�: 39�801�757�696

========= End of CMD: =========


========= dir "C:\PROGRA~3" =========

Svazek v jednotce C nem� ��dnou jmenovku.
S�riov� ��slo svazku je 7839-A629.

V�pis adres��e C:\PROGRA~3

30.11.2013 11:37 <DIR> Adobe
25.07.2014 20:09 <DIR> Aerofiles
14.04.2015 20:09 <DIR> Applications
27.11.2013 15:20 <DIR> Atheros
30.11.2013 11:37 <DIR> AVAST Software
04.01.2014 22:51 <DIR> CaptainSim
31.12.2013 19:15 <DIR> DAEMON Tools Lite
07.02.2015 00:34 <DIR> Digital Aviation
11.10.2014 00:21 <DIR> Esellerate
29.11.2014 21:11 <DIR> ESET
03.01.2014 21:18 <DIR> FLEXnet
04.08.2014 12:26 <DIR> InstallShield
26.11.2013 18:50 <DIR> Intel
13.01.2015 20:53 <DIR> IsolatedStorage
04.12.2013 13:03 <DIR> Logs
17.04.2015 14:44 <DIR> Microsoft Help
26.11.2013 23:12 <DIR> Mozilla
29.04.2015 17:13 <DIR> NVIDIA
26.11.2013 19:03 <DIR> NVIDIA Corporation
27.03.2014 17:39 <DIR> OO Software
27.11.2013 15:03 <DIR> P4G
16.09.2014 23:26 <DIR> Package Cache
28.04.2015 11:19 <DIR> Reality XP
26.11.2013 18:49 <DIR> Roaming
24.03.2015 20:41 <DIR> Skype
14.08.2014 00:04 <DIR> TEMP
06.04.2015 10:22 <DIR> TracerX
Soubor�: 0, Bajt�: 0
Adres���: 27, Voln�ch bajt�: 39�801�757�696

========= End of CMD: =========


========= dir "%localappdata%" =========

Svazek v jednotce C nem� ��dnou jmenovku.
S�riov� ��slo svazku je 7839-A629.

V�pis adres��e C:\Users\Asus\AppData\Local

29.04.2015 17:12 <DIR> .
29.04.2015 17:12 <DIR> ..
15.04.2015 07:50 <DIR> Adobe
14.11.2014 18:52 <DIR> Akamai
26.11.2013 18:56 <DIR> Apps
28.04.2015 22:34 <DIR> CrashDumps
17.09.2014 00:34 <DIR> DCS
14.01.2015 09:22 <DIR> Deployment
10.04.2015 15:00 <DIR> Diagnostics
21.02.2015 20:21 <DIR> Disney Interactive Studios
27.03.2014 17:39 <DIR> Downloaded Installations
31.12.2013 13:17 <DIR> ElevatedDiagnostics
01.04.2015 12:25 <DIR> ESDG
30.11.2013 11:41 <DIR> ESET
01.04.2015 11:46 126�728 GDIPFONTCACHEV1.DAT
05.04.2014 10:07 <DIR> Google
14.04.2015 20:15 <DIR> Kjs.AppLife.Update
04.07.2014 21:16 <DIR> LucasArts
28.11.2013 01:23 <DIR> Macromedia
24.04.2015 16:28 <DIR> Microsoft
03.01.2014 20:43 <DIR> Microsoft Game Studios
26.11.2013 18:38 <DIR> Microsoft Help
30.12.2013 20:06 <DIR> Mozilla
27.03.2014 17:39 <DIR> O&O
22.02.2015 00:55 <DIR> paint.net
02.01.2014 14:08 <DIR> Programs
17.01.2015 14:00 <DIR> Reality XP
26.01.2014 01:06 7�602 Resmon.ResmonCfg
27.02.2014 23:50 <DIR> Skype
29.04.2015 18:30 <DIR> Temp
04.04.2015 21:35 <DIR> VirtualStore
14.01.2014 19:21 <DIR> World_of_AI
29.08.2014 23:54 80 X-Plane Installer.prf
25.01.2014 14:21 15 X-Plane_drm.prf
25.01.2014 11:25 21 x-plane_install_10.txt
Soubor�: 5, Bajt�: 134�446
Adres���: 30, Voln�ch bajt�: 39�801�757�696

========= End of CMD: =========


========= dir "%appdata%" =========

Svazek v jednotce C nem� ��dnou jmenovku.
S�riov� ��slo svazku je 7839-A629.

V�pis adres��e C:\Users\Asus\AppData\Roaming

29.04.2015 18:30 <DIR> .
29.04.2015 18:30 <DIR> ..
17.01.2015 12:28 <DIR> Adobe
25.07.2014 20:09 <DIR> Aerofiles
30.08.2014 20:34 <DIR> AIFP_2
27.11.2013 15:06 <DIR> Atheros
26.11.2013 23:01 <DIR> AVAST Software
29.04.2015 17:49 <DIR> BitTorrent
03.01.2014 19:55 <DIR> BitTorrent Sync
31.12.2013 19:15 <DIR> DAEMON Tools Lite
15.02.2014 13:40 31 data.dat
28.04.2015 13:10 <DIR> Disk Cleaner
05.12.2014 10:57 <DIR> dvdcss
15.01.2015 11:24 <DIR> ESDG
30.11.2013 11:41 <DIR> ESET
13.01.2015 20:16 <DIR> Flight One Software
15.01.2014 00:40 <DIR> Flight1
08.07.2014 13:18 <DIR> Friday's games
01.01.2014 00:40 <DIR> HiFi
26.11.2013 18:33 <DIR> Identities
08.10.2014 20:07 <DIR> InstallShield
26.11.2013 18:49 <DIR> Intel
13.01.2015 20:53 <DIR> IsolatedStorage
28.04.2015 13:09 <DIR> Macromedia
14.07.2009 09:45 <DIR> Media Center Programs
11.02.2015 20:48 <DIR> MilvizData
26.11.2013 23:39 <DIR> Mozilla
01.04.2015 11:39 <DIR> Navdata
25.01.2014 11:24 <DIR> NVIDIA
28.01.2014 18:30 <DIR> PDF Architect
11.08.2014 22:57 <DIR> QualityWings
15.01.2015 10:47 <DIR> RealAir Simulations
06.04.2015 10:22 <DIR> ScruffyDuck
29.04.2015 17:11 <DIR> Skype
23.04.2015 16:02 <DIR> vlc
01.12.2013 18:22 <DIR> WinRAR
Soubor�: 1, Bajt�: 31
Adres���: 35, Voln�ch bajt�: 39�801�753�600

========= End of CMD: =========

EmptyTemp: => Removed 1.8 GB temporary data.


The system needed a reboot.

==== End of Fixlog 18:30:50 ====

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o kontrolu logu, nestandartní chování IE

#8 Příspěvek od altrok »

Znojmo dekuje za pozdrav. Rado by jej opetovalo, ale nevi kam :D

Vse jste provedl naprosto spravne dle navodu :thumbsup:


Nestandardni chovani IE pretrvava? V logu jiz nevidim nic spatneho, takze ja navrhuji uklid, co Vy? :)
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

koprik
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 21 črc 2008 21:23

Re: Prosím o kontrolu logu, nestandartní chování IE

#9 Příspěvek od koprik »

Dobré dopoledne opět Vás zdravím z Petrova, stř.Čechy do Znojma, moc díky za pomoc.
...něco ale v noťasu zůstává skryto, protože když kliknu na ikonu IE dole na liště pravou myší,tak se mi tam neustále
nabízí weby viz. příloha...snad je to vidět.
Používám i mozzilu firefox, tam je vše OK, takže v nejhorším můžu IE přestat používat úplně.....:-)))

Jinak Disk Cleanerem čistím pravidelně, rád si nechám poradit, jestli je i něco účinnějšího.
Mnohokrát díky, odměnu rád pošlu,
Kopřík
Přílohy
IE_odkazy.PNG
IE_odkazy.PNG (22.6 KiB) Zobrazeno 2359 x

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o kontrolu logu, nestandartní chování IE

#10 Příspěvek od altrok »

Znojmo posila pozdrav do strednich Cech.
Napada me jeste nekolik zpusobu, ktere by mohly pomoct. Zacneme tim nejmene drastickym. Protoze je na screenu "havet" videt jen v Nejcasteji navetevovanych strankach, zkuste vymazat historii IE (navstevovane stranky). Dejte pak jeste aktualni logy (FRST.txt i Addition.txt) z FRST.

S Disk Cleanerem nemam zkusenosti, ale na foru doporucujeme pravidelnou udrzbu pomoci CCleaneru - v defaultnim (standardnim) nastaveni je neskodny, ale systemu odlehci. Nejdulezitejsi vec je chovat se bezpecne - neklikat na kazdou skakajici vyherni blbinu, velikou obezretnost pri otevirani mailovych priloh (v posledni dobe frci tzv. ransomwary (kryptoviry), ktere Vam zasifruji temer vsechno, co v PC najdou a pro desifrovani vyzaduji vykupne). Jsme lidi, takze na stranky pro dospele pouzivat nastroje typu Sandboxie, Virtual Box apod. Dalsi dulezitou veci je udrzovat operacni system, antivir, prohlizece, ale i jeho doplnky jako jsou Flash Player ci Java aktualizovane.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

koprik
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 21 črc 2008 21:23

Re: Prosím o kontrolu logu, nestandartní chování IE

#11 Příspěvek od koprik »

Ok, díky moc za péči.Večer budu pokračovat dle doporučení a poté pošlu logy.
Mějte se báječně,
Kopřík

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o kontrolu logu, nestandartní chování IE

#12 Příspěvek od altrok »

Jasne, jak budete pri PC, napiste a zkusime jeste neco vymyslet :)

Pohodovy den preju
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

koprik
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 21 črc 2008 21:23

Re: Prosím o kontrolu logu, nestandartní chování IE

#13 Příspěvek od koprik »

Srdečně zdravím ješrtě jednou! Tak jsem z historie IE vymazal úplně vše a zdá se, že havě'ť je snad konečně pryč..opatrně zaklepat....:-)))
Posílám logy a přeji hezký prodloužený víkned do Znojma!
Kopřík

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 29-04-2015
Ran by Asus (administrator) on ASUS-PC on 30-04-2015 21:56:44
Running from C:\Users\Asus\Desktop
Loaded Profiles: Asus & UpdatusUser (Available profiles: Asus & UpdatusUser)
Platform: Windows 7 Professional Service Pack 1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodag.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe
(Atheros) C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(Red Bend Ltd.) C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ATKOSD.exe
(ASUS) C:\Program Files\ASUS\P4G\BatteryLife.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\WDC.exe
(ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe
(Intel® Corporation) C:\Program Files\Intel\WiMAX\Bin\WiMAXCU.exe
(Atheros Communications) C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(Atheros Commnucations) C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(O&O Software GmbH) C:\Program Files\OO Software\Defrag\oodtray.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Windows (R) Win 7 DDK provider) C:\Program Files\Fresco Logic\Fresco Logic USB3.0 Host Controller\amd64_host\FLxHCIm.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUS) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
(Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [IntelPAN] => C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe [1935120 2011-05-02] (Intel(R) Corporation)
HKLM\...\Run: [IntelWirelessWiMAX] => C:\Program Files\Intel\WiMAX\Bin\WiMAXCU.exe [1622016 2011-06-02] (Intel® Corporation)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [981664 2011-09-30] (Atheros Communications)
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [799904 2011-09-30] (Atheros Commnucations)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2869008 2012-01-26] (Synaptics Incorporated)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [12446824 2012-01-31] (Realtek Semiconductor)
HKLM\...\Run: [SynAsusAcpi] => C:\Program Files\Synaptics\SynTP\SynAsusAcpi.exe [100112 2012-01-26] (Synaptics Incorporated)
HKLM\...\Run: [OODefragTray] => C:\Program Files\OO Software\Defrag\oodtray.exe [3942216 2011-01-25] (O&O Software GmbH)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Smart Security\egui.exe [5595336 2014-10-01] (ESET)
HKLM-x32\...\Run: [FLxHCIm64] => C:\Program Files\Fresco Logic\Fresco Logic USB3.0 Host Controller\amd64_host\FLxHCIm.exe [48128 2012-07-19] (Windows (R) Win 7 DDK provider)
HKLM-x32\...\Run: [ATKOSD2] => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [318080 2011-12-22] (ASUSTek Computer Inc.)
HKLM-x32\...\Run: [ATKMEDIA] => C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe [174720 2011-10-24] (ASUS)
HKLM-x32\...\Run: [HControlUser] => C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControlUser.exe [105016 2009-06-19] (ASUS)
HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Run: [BitTorrent] => C:\Users\Asus\AppData\Roaming\BitTorrent\BitTorrent.exe [1443160 2015-04-28] (BitTorrent Inc.)
HKU\S-1-5-21-3819283212-2759028170-3360342564-1001\...\Run: [BitTorrent Sync] => C:\Program Files (x86)\BitTorrent Sync\BTSync.exe [1648488 2013-12-30] (BitTorrent, Inc.)
HKU\S-1-5-21-3819283212-2759028170-3360342564-1001\...\Run: [Akamai NetSession Interface] => C:\Users\Asus\AppData\Local\Akamai\netsession_win.exe [4673432 2014-10-30] (Akamai Technologies, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
HKU\S-1-5-21-3819283212-2759028170-3360342564-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
BHO-x32: PDF Architect Helper -> {3A2D5EBA-F86D-4BD3-A177-019765996711} -> C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2013-04-08] (pdfforge GmbH)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation)
BHO-x32: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Bluetooth Suite\IEPlugIn.dll [2011-09-30] (Atheros Commnucations)
Toolbar: HKU\S-1-5-21-3819283212-2759028170-3360342564-1001 -> No Name - {2318C2B1-4965-11D4-9B18-009027A5CD4F} - No File
DPF: HKLM-x32 {0D41B8C5-2599-4893-8183-00195EC8D5F9} http://support.asus.com/select/asusTek_sys_ctrl3.cab
DPF: HKLM-x32 {D27CDB6E-AE6D-11CF-96B8-444553540000} http://fpdownload2.macromedia.com/get/s ... wflash.cab
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.20

FireFox:
========
FF ProfilePath: C:\Users\Asus\AppData\Roaming\Mozilla\Firefox\Profiles\oh1nzrba.default-1390341931323
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF64_17_0_0_169.dll [2015-04-15] ()
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\Windows\SysWOW64\Macromed\Flash\NPSWF32_17_0_0_169.dll [2015-04-15] ()
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll [2014-05-13] ( Microsoft Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2013-03-14] (NVIDIA Corporation)
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2013-03-14] (NVIDIA Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.26.9\npGoogleUpdate3.dll [2015-02-05] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2014-07-23] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2014-12-03] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-3819283212-2759028170-3360342564-1000: @Google.com/GoogleEarthPlugin -> C:\Users\Asus\AppData\Local\Google\Google Earth\plugin\npgeplugin.dll [2012-04-14] (Google)
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF HKLM-x32\...\Firefox\Extensions: [FFPDFArchitectConverter@pdfarchitect.com] - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt
FF Extension: PDF Architect Converter For Firefox - C:\Program Files (x86)\PDF Architect\FFPDFArchitectExt [2014-01-28]
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird

Chrome:
=======
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [Not Found]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [105120 2011-09-30] (Atheros Commnucations) [File not signed]
R2 DMAgent; C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe [498688 2011-06-06] (Red Bend Ltd.) [File not signed]
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1349576 2014-10-01] (ESET)
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-04] (Macrovision Corporation) [File not signed]
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [340240 2011-05-02] ()
R2 OODefragAgent; C:\Program Files\OO Software\Defrag\oodag.exe [3051848 2011-01-25] (O&O Software GmbH)
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
R2 WiMAXAppSrv; C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe [986112 2011-06-06] (Intel(R) Corporation) [File not signed]
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)
R2 ZAtheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [158880 2011-09-30] (Atheros) [File not signed]

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283064 2013-12-31] (Disc Soft Ltd)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [243440 2014-10-10] (ESET)
U5 edevmon; C:\Windows\System32\Drivers\edevmon.sys [241368 2014-10-10] (ESET)
R1 ehdrv; C:\Windows\System32\DRIVERS\ehdrv.sys [169280 2014-10-10] (ESET)
R2 epfw; C:\Windows\System32\DRIVERS\epfw.sys [222280 2014-10-10] (ESET)
R1 EpfwLWF; C:\Windows\System32\DRIVERS\EpfwLWF.sys [44632 2014-10-10] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [63160 2014-10-10] (ESET)
R3 FLxHCIh; C:\Windows\System32\DRIVERS\FLxHCIh.sys [76584 2012-07-19] (Fresco Logic)
S3 RimUsb; C:\Windows\System32\Drivers\RimUsb_AMD64.sys [27520 2007-05-14] (Research In Motion Limited)
R3 SmbDrv; C:\Windows\System32\DRIVERS\Smb_driver.sys [22800 2012-01-26] (Synaptics Incorporated)

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-30 21:51 - 2015-04-30 21:51 - 02832195 _____ () C:\Users\Asus\Downloads\CCMacSetup109.dmg
2015-04-30 21:43 - 2015-04-30 21:52 - 00000000 ____D () C:\Users\Asus\Downloads\Navigraph AIRAC cycle 1505
2015-04-29 17:45 - 2015-04-29 17:45 - 00040689 _____ () C:\Users\Asus\Desktop\Addition.txt
2015-04-29 17:44 - 2015-04-30 21:56 - 00012862 _____ () C:\Users\Asus\Desktop\FRST.txt
2015-04-29 17:44 - 2015-04-30 21:56 - 00000000 ____D () C:\FRST
2015-04-29 17:42 - 2015-04-29 17:42 - 02101248 _____ (Farbar) C:\Users\Asus\Desktop\FRST64.exe
2015-04-29 14:02 - 2015-04-30 10:50 - 00000000 ____D () C:\Users\Asus\Downloads\Black Box Simulator A330+A340+Crack
2015-04-28 11:26 - 2015-04-28 12:28 - 315589891 ____R () C:\Users\Asus\Downloads\Ants Airplanes T-28BC Trojan v1.11.exe
2015-04-28 11:24 - 2015-04-28 11:40 - 327748025 _____ () C:\Users\Asus\Downloads\aaaComp.zip
2015-04-27 23:29 - 2015-04-30 18:50 - 00320592 _____ () C:\Windows\WindowsUpdate.log
2015-04-27 23:27 - 2015-04-27 23:27 - 00003164 _____ () C:\Windows\PFRO.log
2015-04-25 22:45 - 2015-04-30 18:49 - 00000840 _____ () C:\Windows\setupact.log
2015-04-25 22:45 - 2015-04-25 22:45 - 00000000 _____ () C:\Windows\setuperr.log
2015-04-25 22:32 - 2015-04-25 22:32 - 00000000 ____D () C:\Users\Asus\Downloads\UTAX FSX Scenery
2015-04-25 00:20 - 2015-04-25 00:35 - 00000000 ____D () C:\Users\Asus\Documents\Wilco CRJ
2015-04-24 17:03 - 2015-04-24 17:03 - 00000000 ____D () C:\Users\Asus\Downloads\CRJNextGen
2015-04-24 16:48 - 2015-04-24 17:02 - 491320475 ____R () C:\Users\Asus\Downloads\CRJNextGen.rar
2015-04-24 16:11 - 2015-04-24 16:27 - 00000000 ____D () C:\Users\Asus\Downloads\WindowsEnablerv1.1
2015-04-24 16:10 - 2015-04-24 16:11 - 00184400 _____ () C:\Users\Asus\Downloads\WindowsEnablerv1.1.zip
2015-04-24 15:43 - 2015-04-24 15:43 - 00000000 ____D () C:\Program Files (x86)\Mozilla Firefox
2015-04-24 15:29 - 2015-04-24 15:29 - 00000000 ____D () C:\Users\Asus\Downloads\hawkisimu42
2015-04-24 15:11 - 2015-04-24 15:16 - 16471299 _____ () C:\Users\Asus\Downloads\hawkisimu42.zip
2015-04-24 15:06 - 2015-04-24 15:06 - 01272975 _____ () C:\Users\Asus\Downloads\kdzx_st_george_scenery_fsx.zip
2015-04-24 00:25 - 2015-04-24 00:26 - 00000000 ____D () C:\Users\Asus\Downloads\Wilco Fleet CRJ 200 700 900 fsx And all liveries
2015-04-24 00:15 - 2015-04-24 00:16 - 04989764 _____ () C:\Users\Asus\Downloads\fsx_wilco_crj700_usanc.zip
2015-04-24 00:14 - 2015-04-24 00:15 - 04901354 _____ () C:\Users\Asus\Downloads\fsx_wilco_crj700_awe.zip
2015-04-24 00:13 - 2015-04-24 00:21 - 176480009 ____R () C:\Users\Asus\Downloads\Wilco Fleet CRJ 200 700 900 fsx And all liveries.rar
2015-04-23 20:52 - 2015-04-23 20:52 - 00000000 ____D () C:\Users\Asus\Downloads\kama_updated_v2_327623
2015-04-23 20:08 - 2015-04-23 20:09 - 00659357 _____ () C:\Users\Asus\Downloads\rolasnradar-v10.zip
2015-04-23 20:03 - 2015-04-23 20:03 - 01178645 _____ () C:\Users\Asus\Downloads\honeywellfmc.zip
2015-04-23 19:59 - 2015-04-23 20:02 - 79376458 _____ () C:\Users\Asus\Downloads\fokker_f27_mk300m_rnlaf_fsx.zip
2015-04-23 19:46 - 2015-04-23 19:48 - 38547236 _____ () C:\Users\Asus\Downloads\kama_updated_v2_327623.zip
2015-04-23 16:33 - 2015-04-23 16:48 - 419885349 ____R () C:\Users\Asus\Downloads\Flytampa_Toronto_CYYZ.rar
2015-04-22 23:27 - 2015-04-22 23:27 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PMDG Simulations
2015-04-22 18:45 - 2015-04-22 18:45 - 00001453 _____ () C:\Users\Asus\Desktop\nvidiaInspector.exe – zástupce.lnk
2015-04-22 17:48 - 2015-04-22 17:49 - 00000000 ____D () C:\Users\Asus\Downloads\nvidiaInspector
2015-04-22 17:47 - 2015-04-23 16:30 - 430866590 _____ () C:\Users\Asus\Downloads\nvidiaInspector.zip
2015-04-21 23:25 - 2015-04-21 23:25 - 00000000 ____D () C:\Users\Asus\Downloads\tol2015x
2015-04-21 23:24 - 2015-04-21 23:24 - 00000000 ____D () C:\Users\Asus\Downloads\kavik
2015-04-21 23:24 - 2015-04-21 23:24 - 00000000 ____D () C:\Users\Asus\Downloads\ft_collins-loveland_mun_v1
2015-04-21 19:51 - 2015-04-21 19:52 - 10707419 _____ () C:\Users\Asus\Downloads\v2.n78ev.zip
2015-04-21 19:44 - 2015-04-21 19:50 - 08728900 _____ () C:\Users\Asus\Downloads\ft_collins-loveland_mun_v1.zip
2015-04-21 19:41 - 2015-04-21 19:41 - 00264854 _____ () C:\Users\Asus\Downloads\fix_n78ev.zip
2015-04-21 19:37 - 2015-04-21 19:38 - 00542261 _____ () C:\Users\Asus\Downloads\kavik.zip
2015-04-21 19:36 - 2015-04-21 19:37 - 02521159 _____ () C:\Users\Asus\Downloads\unalakleet_paun_v3.0.zip
2015-04-21 19:01 - 2015-04-21 19:54 - 215019133 _____ () C:\Users\Asus\Downloads\kmkgphotoreal_323024.zip
2015-04-21 17:23 - 2015-04-21 17:23 - 00108730 _____ () C:\Users\Asus\Downloads\tol2015xfix.zip
2015-04-21 17:22 - 2015-04-21 17:25 - 112546101 _____ () C:\Users\Asus\Downloads\tol2015x.zip
2015-04-17 14:40 - 2015-04-02 02:17 - 00389808 _____ (Microsoft Corporation) C:\Windows\system32\iedkcs32.dll
2015-04-17 14:40 - 2015-04-02 01:49 - 00342704 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-04-17 14:40 - 2015-03-17 07:22 - 05557696 _____ (Microsoft Corporation) C:\Windows\system32\ntoskrnl.exe
2015-04-17 14:40 - 2015-03-17 07:22 - 00155576 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-04-17 14:40 - 2015-03-17 07:22 - 00095672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecdd.sys
2015-04-17 14:40 - 2015-03-17 07:19 - 01727904 _____ (Microsoft Corporation) C:\Windows\system32\ntdll.dll
2015-04-17 14:40 - 2015-03-17 07:17 - 00362496 _____ (Microsoft Corporation) C:\Windows\system32\wow64win.dll
2015-04-17 14:40 - 2015-03-17 07:17 - 00243712 _____ (Microsoft Corporation) C:\Windows\system32\wow64.dll
2015-04-17 14:40 - 2015-03-17 07:17 - 00013312 _____ (Microsoft Corporation) C:\Windows\system32\wow64cpu.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 01461760 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 01163264 _____ (Microsoft Corporation) C:\Windows\system32\kernel32.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00728064 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00503808 _____ (Microsoft Corporation) C:\Windows\system32\srcore.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00424448 _____ (Microsoft Corporation) C:\Windows\system32\KernelBase.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00341504 _____ (Microsoft Corporation) C:\Windows\system32\schannel.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00314880 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00309760 _____ (Microsoft Corporation) C:\Windows\system32\ncrypt.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00296960 _____ (Microsoft Corporation) C:\Windows\system32\rstrui.exe
2015-04-17 14:40 - 2015-03-17 07:16 - 00215040 _____ (Microsoft Corporation) C:\Windows\system32\winsrv.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00210944 _____ (Microsoft Corporation) C:\Windows\system32\wdigest.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00136192 _____ (Microsoft Corporation) C:\Windows\system32\sspicli.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00112640 _____ (Microsoft Corporation) C:\Windows\system32\smss.exe
2015-04-17 14:40 - 2015-03-17 07:16 - 00086528 _____ (Microsoft Corporation) C:\Windows\system32\TSpkg.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00050176 _____ (Microsoft Corporation) C:\Windows\system32\srclient.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00043520 _____ (Microsoft Corporation) C:\Windows\system32\csrsrv.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00029184 _____ (Microsoft Corporation) C:\Windows\system32\sspisrv.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00028160 _____ (Microsoft Corporation) C:\Windows\system32\secur32.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00022016 _____ (Microsoft Corporation) C:\Windows\system32\credssp.dll
2015-04-17 14:40 - 2015-03-17 07:16 - 00016384 _____ (Microsoft Corporation) C:\Windows\system32\ntvdm64.dll
2015-04-17 14:40 - 2015-03-17 07:15 - 00338432 _____ (Microsoft Corporation) C:\Windows\system32\conhost.exe
2015-04-17 14:40 - 2015-03-17 07:15 - 00064000 _____ (Microsoft Corporation) C:\Windows\system32\auditpol.exe
2015-04-17 14:40 - 2015-03-17 07:15 - 00031232 _____ (Microsoft Corporation) C:\Windows\system32\lsass.exe
2015-04-17 14:40 - 2015-03-17 07:11 - 00006144 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-security-base-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00005120 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-file-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00004608 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-synch-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00004096 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-localization-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-misc-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-memory-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003584 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-heap-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-xstate-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-util-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-string-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-profile-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-io-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-handle-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-fibers-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-delayload-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-debug-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-datetime-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:11 - 00003072 ____H (Microsoft Corporation) C:\Windows\system32\api-ms-win-core-console-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 07:01 - 03976632 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntkrnlpa.exe
2015-04-17 14:40 - 2015-03-17 07:01 - 03920824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntoskrnl.exe
2015-04-17 14:40 - 2015-03-17 06:59 - 01309696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntdll.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00550912 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00259584 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00248832 _____ (Microsoft Corporation) C:\Windows\SysWOW64\schannel.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00221184 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ncrypt.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00172032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wdigest.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00065536 _____ (Microsoft Corporation) C:\Windows\SysWOW64\TSpkg.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00043008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\srclient.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00022016 _____ (Microsoft Corporation) C:\Windows\SysWOW64\secur32.dll
2015-04-17 14:40 - 2015-03-17 06:57 - 00014336 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ntvdm64.dll
2015-04-17 14:40 - 2015-03-17 06:56 - 01114112 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kernel32.dll
2015-04-17 14:40 - 2015-03-17 06:56 - 00274944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\KernelBase.dll
2015-04-17 14:40 - 2015-03-17 06:56 - 00096768 _____ (Microsoft Corporation) C:\Windows\SysWOW64\sspicli.dll
2015-04-17 14:40 - 2015-03-17 06:56 - 00050176 _____ (Microsoft Corporation) C:\Windows\SysWOW64\auditpol.exe
2015-04-17 14:40 - 2015-03-17 06:56 - 00025600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\setup16.exe
2015-04-17 14:40 - 2015-03-17 06:56 - 00017408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\credssp.dll
2015-04-17 14:40 - 2015-03-17 06:56 - 00005120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wow32.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00005120 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-file-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processthreads-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-sysinfo-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-synch-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-misc-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localregistry-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00004096 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-localization-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-processenvironment-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-namedpipe-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-memory-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-interlocked-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-heap-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-string-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-rtlsupport-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-profile-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-io-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-handle-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-fibers-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-errorhandling-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-delayload-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-debug-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-datetime-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 06:50 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-console-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 05:43 - 00006144 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-security-base-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 05:43 - 00004608 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-threadpool-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 05:43 - 00003584 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-xstate-l1-1-0.dll
2015-04-17 14:40 - 2015-03-17 05:43 - 00003072 ____H (Microsoft Corporation) C:\Windows\SysWOW64\api-ms-win-core-util-l1-1-0.dll
2015-04-17 14:40 - 2015-03-13 06:32 - 24980480 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-04-17 14:40 - 2015-03-13 06:25 - 02724864 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.tlb
2015-04-17 14:40 - 2015-03-13 06:25 - 00004096 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollectorres.dll
2015-04-17 14:40 - 2015-03-13 06:09 - 00066560 _____ (Microsoft Corporation) C:\Windows\system32\iesetup.dll
2015-04-17 14:40 - 2015-03-13 06:08 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-04-17 14:40 - 2015-03-13 06:08 - 00417280 _____ (Microsoft Corporation) C:\Windows\system32\html.iec
2015-04-17 14:40 - 2015-03-13 06:08 - 00048640 _____ (Microsoft Corporation) C:\Windows\system32\ieetwproxystub.dll
2015-04-17 14:40 - 2015-03-13 06:07 - 02886144 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-04-17 14:40 - 2015-03-13 06:06 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-04-17 14:40 - 2015-03-13 06:00 - 00054784 _____ (Microsoft Corporation) C:\Windows\system32\jsproxy.dll
2015-04-17 14:40 - 2015-03-13 05:59 - 00034304 _____ (Microsoft Corporation) C:\Windows\system32\iernonce.dll
2015-04-17 14:40 - 2015-03-13 05:55 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-04-17 14:40 - 2015-03-13 05:54 - 00144384 _____ (Microsoft Corporation) C:\Windows\system32\ieUnatt.exe
2015-04-17 14:40 - 2015-03-13 05:54 - 00114688 _____ (Microsoft Corporation) C:\Windows\system32\ieetwcollector.exe
2015-04-17 14:40 - 2015-03-13 05:53 - 00814080 _____ (Microsoft Corporation) C:\Windows\system32\jscript9diag.dll
2015-04-17 14:40 - 2015-03-13 05:50 - 06025216 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-04-17 14:40 - 2015-03-13 05:44 - 00968704 _____ (Microsoft Corporation) C:\Windows\system32\MsSpellCheckingFacility.exe
2015-04-17 14:40 - 2015-03-13 05:42 - 19695616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-04-17 14:40 - 2015-03-13 05:42 - 02724864 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.tlb
2015-04-17 14:40 - 2015-03-13 05:40 - 00490496 _____ (Microsoft Corporation) C:\Windows\system32\dxtmsft.dll
2015-04-17 14:40 - 2015-03-13 05:32 - 00077824 _____ (Microsoft Corporation) C:\Windows\system32\JavaScriptCollectionAgent.dll
2015-04-17 14:40 - 2015-03-13 05:28 - 00503296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-04-17 14:40 - 2015-03-13 05:28 - 00062464 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iesetup.dll
2015-04-17 14:40 - 2015-03-13 05:27 - 00340992 _____ (Microsoft Corporation) C:\Windows\SysWOW64\html.iec
2015-04-17 14:40 - 2015-03-13 05:27 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-04-17 14:40 - 2015-03-13 05:27 - 00047616 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieetwproxystub.dll
2015-04-17 14:40 - 2015-03-13 05:26 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-04-17 14:40 - 2015-03-13 05:26 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-04-17 14:40 - 2015-03-13 05:23 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-04-17 14:40 - 2015-03-13 05:22 - 02278400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-04-17 14:40 - 2015-03-13 05:20 - 00047104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jsproxy.dll
2015-04-17 14:40 - 2015-03-13 05:20 - 00030720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iernonce.dll
2015-04-17 14:40 - 2015-03-13 05:17 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-04-17 14:40 - 2015-03-13 05:16 - 00115712 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieUnatt.exe
2015-04-17 14:40 - 2015-03-13 05:15 - 00620032 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9diag.dll
2015-04-17 14:40 - 2015-03-13 05:08 - 00720384 _____ (Microsoft Corporation) C:\Windows\system32\ie4uinit.exe
2015-04-17 14:40 - 2015-03-13 05:07 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-04-17 14:40 - 2015-03-13 05:06 - 00418304 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtmsft.dll
2015-04-17 14:40 - 2015-03-13 05:05 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-04-17 14:40 - 2015-03-13 05:05 - 01359360 _____ (Microsoft Corporation) C:\Windows\system32\mshtmlmedia.dll
2015-04-17 14:40 - 2015-03-13 05:01 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\JavaScriptCollectionAgent.dll
2015-04-17 14:40 - 2015-03-13 05:00 - 14397440 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-04-17 14:40 - 2015-03-13 04:57 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-04-17 14:40 - 2015-03-13 04:56 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-04-17 14:40 - 2015-03-13 04:54 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-04-17 14:40 - 2015-03-13 04:49 - 04305408 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-04-17 14:40 - 2015-03-13 04:45 - 02358784 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-04-17 14:40 - 2015-03-13 04:44 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-04-17 14:40 - 2015-03-13 04:43 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-04-17 14:40 - 2015-03-13 04:42 - 01155072 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmlmedia.dll
2015-04-17 14:40 - 2015-03-13 04:34 - 12825600 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-04-17 14:40 - 2015-03-13 04:33 - 01548288 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-04-17 14:40 - 2015-03-13 04:22 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-04-17 14:40 - 2015-03-13 04:20 - 01888256 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-04-17 14:40 - 2015-03-13 04:16 - 01311232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-04-17 14:40 - 2015-03-13 04:14 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-04-17 14:39 - 2015-03-25 05:24 - 03298816 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-04-17 14:39 - 2015-03-25 05:24 - 02553856 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-04-17 14:39 - 2015-03-25 05:24 - 00696320 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-04-17 14:39 - 2015-03-25 05:24 - 00191488 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-04-17 14:39 - 2015-03-25 05:24 - 00098304 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-04-17 14:39 - 2015-03-25 05:24 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-04-17 14:39 - 2015-03-25 05:24 - 00037376 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-04-17 14:39 - 2015-03-25 05:24 - 00035328 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-04-17 14:39 - 2015-03-25 05:23 - 00135168 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-04-17 14:39 - 2015-03-25 05:23 - 00036864 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-04-17 14:39 - 2015-03-25 05:23 - 00012288 _____ (Microsoft Corporation) C:\Windows\system32\wu.upgrade.ps.dll
2015-04-17 14:39 - 2015-03-25 05:00 - 00566784 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-04-17 14:39 - 2015-03-25 05:00 - 00173056 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-04-17 14:39 - 2015-03-25 05:00 - 00092672 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-04-17 14:39 - 2015-03-25 05:00 - 00033792 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-04-17 14:39 - 2015-03-25 05:00 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-04-17 14:39 - 2015-03-17 07:13 - 00146432 _____ (Microsoft Corporation) C:\Windows\system32\msaudite.dll
2015-04-17 14:39 - 2015-03-17 07:13 - 00060416 _____ (Microsoft Corporation) C:\Windows\system32\msobjs.dll
2015-04-17 14:39 - 2015-03-17 07:11 - 00686080 _____ (Microsoft Corporation) C:\Windows\system32\adtschema.dll
2015-04-17 14:39 - 2015-03-17 07:11 - 00006656 _____ (Microsoft Corporation) C:\Windows\system32\apisetschema.dll
2015-04-17 14:39 - 2015-03-17 06:53 - 00146432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msaudite.dll
2015-04-17 14:39 - 2015-03-17 06:53 - 00060416 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msobjs.dll
2015-04-17 14:39 - 2015-03-17 06:50 - 00686080 _____ (Microsoft Corporation) C:\Windows\SysWOW64\adtschema.dll
2015-04-17 14:39 - 2015-03-17 06:50 - 00006656 _____ (Microsoft Corporation) C:\Windows\SysWOW64\apisetschema.dll
2015-04-17 14:39 - 2015-03-17 05:45 - 00007680 _____ (Microsoft Corporation) C:\Windows\SysWOW64\instnm.exe
2015-04-17 14:39 - 2015-03-17 05:45 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\user.exe
2015-04-17 14:39 - 2015-03-05 07:12 - 00404480 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-04-17 14:39 - 2015-03-05 06:05 - 00311808 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-04-17 14:39 - 2015-03-04 06:55 - 00367552 _____ (Microsoft Corporation) C:\Windows\system32\clfs.sys
2015-04-17 14:39 - 2015-03-04 06:41 - 00079360 _____ (Microsoft Corporation) C:\Windows\system32\clfsw32.dll
2015-04-17 14:39 - 2015-03-04 06:10 - 00058880 _____ (Microsoft Corporation) C:\Windows\SysWOW64\clfsw32.dll
2015-04-17 14:38 - 2015-03-10 05:25 - 01882624 _____ (Microsoft Corporation) C:\Windows\system32\msxml3.dll
2015-04-17 14:38 - 2015-03-10 05:21 - 00002048 _____ (Microsoft Corporation) C:\Windows\system32\msxml3r.dll
2015-04-17 14:38 - 2015-03-10 05:08 - 01237504 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3.dll
2015-04-17 14:38 - 2015-03-10 05:05 - 00002048 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msxml3r.dll
2015-04-17 14:38 - 2015-02-25 05:18 - 00754688 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\http.sys
2015-04-14 20:15 - 2015-04-14 20:15 - 00000000 ____D () C:\Users\Asus\AppData\Local\Kjs.AppLife.Update
2015-04-14 20:14 - 2015-04-14 20:14 - 00001881 _____ () C:\Users\Asus\Desktop\ADE 165.lnk
2015-04-14 20:14 - 2015-04-14 20:14 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Airport Design Editor 1.65
2015-04-14 20:09 - 2015-04-14 20:09 - 00000000 ____D () C:\ProgramData\Applications
2015-04-13 20:40 - 2015-04-13 20:40 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EZ Scenery Library
2015-04-13 20:34 - 2015-04-13 20:34 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Rwy12 Library
2015-04-13 20:02 - 2015-04-13 20:05 - 00000000 ____D () C:\Users\Asus\Downloads\CARENADO CITATION 550 ISG black update
2015-04-13 20:00 - 2015-04-13 20:10 - 00000000 ____D () C:\Users\Asus\Downloads\CARENADO C 210 FSX + files
2015-04-13 19:59 - 2015-04-13 20:46 - 00000000 ____D () C:\Users\Asus\Downloads\FSX SUPPORT SCENERY FILES
2015-04-13 17:06 - 2015-04-13 17:24 - 255108032 _____ () C:\Users\Asus\Downloads\lowg_v6.zip
2015-04-07 18:07 - 2015-04-07 18:09 - 00000000 ____D () C:\Users\Asus\Downloads\QW Bae 146 LIVERIES
2015-04-06 17:44 - 2015-04-21 23:08 - 00000000 ____D () C:\Users\Asus\Downloads\COLORADO FSX PHOTOSCENERY
2015-04-06 17:01 - 2015-04-06 17:12 - 00000000 ____D () C:\Users\Asus\Downloads\Carenado Beech 90B UPDATE
2015-04-06 15:53 - 2015-04-06 15:59 - 185865162 ____R () C:\Users\Asus\Downloads\Accu-Sim_Skylane_FSX.zip
2015-04-06 10:22 - 2015-04-06 10:22 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\ScruffyDuck
2015-04-06 10:22 - 2015-04-06 10:22 - 00000000 ____D () C:\ProgramData\TracerX
2015-04-06 10:20 - 2015-04-06 10:20 - 00000000 ____D () C:\MSFS
2015-04-06 09:30 - 2015-04-06 09:31 - 19591852 _____ () C:\Users\Asus\Downloads\manual_english_165.zip
2015-04-05 12:59 - 2015-04-05 12:59 - 00000000 ____D () C:\Users\Asus\Downloads\LIONHEART PLANES
2015-04-05 02:11 - 2015-04-05 02:11 - 00000000 ____D () C:\Users\Asus\Downloads\FT1
2015-04-05 02:11 - 2015-04-05 02:11 - 00000000 ____D () C:\Users\Asus\Downloads\AltitaliaX2
2015-04-04 16:50 - 2015-04-04 16:50 - 00000000 ____D () C:\Users\Asus\Downloads\VS-MFS
2015-04-04 16:02 - 2015-04-04 17:15 - 00000000 ____D () C:\Users\Asus\Downloads\FS pdf files
2015-04-04 15:53 - 2015-04-04 23:00 - 00000000 ____D () C:\Users\Asus\Downloads\ISG RETROFITTED PANELS
2015-04-04 13:24 - 2015-04-04 22:46 - 99513606 ____R () C:\Users\Asus\Downloads\FT1.rar
2015-04-04 10:49 - 2015-04-04 22:56 - 00000000 ____D () C:\Users\Asus\Downloads\FSX Missions
2015-04-04 10:46 - 2015-04-04 12:33 - 78362234 ____R () C:\Users\Asus\Downloads\VS-MFS.rar
2015-04-04 03:07 - 2015-04-04 03:07 - 00000000 ____D () C:\Users\Asus\Downloads\Challenges over the Rockies
2015-04-04 02:57 - 2015-04-04 13:14 - 243558076 ____R () C:\Users\Asus\Downloads\FSMap.rar
2015-04-03 11:33 - 2015-04-03 11:33 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PAOB-Fokker50-V1.0
2015-04-02 01:35 - 2015-04-02 01:35 - 00132739 _____ () C:\Users\Asus\Downloads\AltitaliaX2.zip
2015-04-01 11:36 - 2015-04-01 11:36 - 00000000 ____D () C:\Eaglesoft Development Group

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-04-30 21:52 - 2013-11-26 23:50 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\BitTorrent
2015-04-30 18:55 - 2009-07-14 06:45 - 00014256 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2015-04-30 18:55 - 2009-07-14 06:45 - 00014256 ____H () C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2015-04-30 18:54 - 2013-11-26 20:40 - 16534286 _____ () C:\Windows\system32\perfh005.dat
2015-04-30 18:54 - 2013-11-26 20:40 - 05763672 _____ () C:\Windows\system32\perfc005.dat
2015-04-30 18:54 - 2009-07-14 07:13 - 00006212 _____ () C:\Windows\system32\PerfStringBackup.INI
2015-04-30 18:49 - 2013-11-26 19:03 - 00000000 ____D () C:\ProgramData\NVIDIA
2015-04-30 18:49 - 2009-07-14 07:08 - 00000006 ____H () C:\Windows\Tasks\SA.DAT
2015-04-29 17:11 - 2013-11-26 23:05 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\Skype
2015-04-29 17:08 - 2014-09-16 22:46 - 00000000 ___RD () C:\Program Files (x86)\Skype
2015-04-28 23:08 - 2013-11-30 21:16 - 00000000 ____D () C:\Users\Asus\Documents\AAA KOPR
2015-04-28 22:34 - 2013-12-10 08:12 - 00000000 ____D () C:\Users\Asus\AppData\Local\CrashDumps
2015-04-28 13:10 - 2013-12-12 23:22 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\Disk Cleaner
2015-04-28 13:09 - 2013-11-26 22:47 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\Macromedia
2015-04-28 11:57 - 2015-01-17 02:30 - 00000000 ____D () C:\Users\Asus\Downloads\Reality XP
2015-04-28 11:19 - 2015-02-09 21:05 - 00000000 ____D () C:\ProgramData\Reality XP
2015-04-25 22:31 - 2013-12-30 23:59 - 00000000 ____D () C:\Users\Asus\Documents\Flight Simulator X Files
2015-04-24 16:29 - 2013-11-26 23:12 - 00000000 ____D () C:\Program Files (x86)\Mozilla Maintenance Service
2015-04-24 16:19 - 2014-01-06 01:52 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wilco Publishing
2015-04-24 16:19 - 2013-12-31 01:02 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Wilco Publishing
2015-04-23 16:02 - 2013-11-27 00:16 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\vlc
2015-04-22 23:27 - 2014-01-03 21:09 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PMDG Simulations
2015-04-20 23:11 - 2009-07-14 05:20 - 00000000 ____D () C:\Windows\system32\NDF
2015-04-19 09:17 - 2013-11-27 00:20 - 00000000 ____D () C:\Windows\system32\MRT
2015-04-19 09:14 - 2013-11-27 00:20 - 128913832 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-04-17 14:44 - 2013-11-26 18:38 - 00000000 ____D () C:\ProgramData\Microsoft Help
2015-04-15 07:50 - 2014-09-03 19:16 - 00000000 ____D () C:\Users\Asus\AppData\Local\Adobe
2015-04-15 07:49 - 2013-11-26 22:46 - 00778416 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-04-15 07:49 - 2013-11-26 22:46 - 00142512 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-04-14 20:11 - 2013-11-27 21:59 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Games
2015-04-14 20:09 - 2013-11-26 19:05 - 00000000 ___HD () C:\Program Files (x86)\InstallShield Installation Information
2015-04-14 20:07 - 2013-12-30 23:27 - 00000000 ____D () C:\Program Files (x86)\Microsoft Games
2015-04-08 08:23 - 2014-07-22 16:23 - 00000000 ____D () C:\Users\Asus\Downloads\BYDLENÍ VIENNA
2015-04-05 16:55 - 2014-07-03 22:42 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\aerosoft
2015-04-04 21:35 - 2013-11-26 18:33 - 00000000 ____D () C:\Users\Asus\AppData\Local\VirtualStore
2015-04-04 18:33 - 2015-01-20 13:33 - 00000000 ____D () C:\Program Files (x86)\FS Panel Studio
2015-04-04 16:58 - 2014-12-02 00:41 - 00000000 ____D () C:\Users\Asus\Downloads\ALASKA SCENERY FSX
2015-04-03 11:43 - 2013-11-27 21:59 - 00000000 ____D () C:\Users\Asus\Documents\Flight Simulator Files
2015-04-01 12:25 - 2014-08-24 15:53 - 00000000 ____D () C:\Users\Asus\AppData\Local\ESDG
2015-04-01 11:46 - 2013-11-26 18:50 - 00126728 _____ () C:\Users\Asus\AppData\Local\GDIPFONTCACHEV1.DAT
2015-04-01 11:45 - 2009-07-14 06:45 - 00434352 _____ () C:\Windows\system32\FNTCACHE.DAT
2015-04-01 11:39 - 2015-01-15 10:47 - 00000000 ____D () C:\Users\Asus\AppData\Roaming\Navdata

==================== Files in the root of some directories =======

2014-02-15 13:40 - 2014-02-15 13:40 - 0000031 _____ () C:\Users\Asus\AppData\Roaming\data.dat
2014-01-26 01:06 - 2014-01-26 01:06 - 0007602 _____ () C:\Users\Asus\AppData\Local\Resmon.ResmonCfg
2014-01-25 14:18 - 2014-08-29 23:54 - 0000080 _____ () C:\Users\Asus\AppData\Local\X-Plane Installer.prf
2014-01-25 14:19 - 2014-01-25 14:21 - 0000015 _____ () C:\Users\Asus\AppData\Local\X-Plane_drm.prf
2014-01-25 11:25 - 2014-01-25 11:25 - 0000021 _____ () C:\Users\Asus\AppData\Local\x-plane_install_10.txt

Files to move or delete:
====================
C:\Users\Asus\AppData\Roaming\data.dat


==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-04-24 15:52

==================== End Of Log ============================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 29-04-2015
Ran by Asus at 2015-04-30 21:57:11
Running from C:\Users\Asus\Desktop
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3819283212-2759028170-3360342564-500 - Administrator - Disabled)
Asus (S-1-5-21-3819283212-2759028170-3360342564-1000 - Administrator - Enabled) => C:\Users\Asus
Guest (S-1-5-21-3819283212-2759028170-3360342564-501 - Limited - Disabled)
UpdatusUser (S-1-5-21-3819283212-2759028170-3360342564-1001 - Limited - Enabled) => C:\Users\UpdatusUser

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET Smart Security 8.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET Smart Security 8.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
FW: ESET Personální firewall (Enabled) {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2}

==================== Installed Programs ======================

(Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

'757-200 Captain' Pro Pack (HKLM-x32\...\B752PRO_FS9) (Version: 2.2.00 - © 1999-2009 Captain Sim)
Active Sky Advanced (HKLM-x32\...\{78456F0E-278E-4C0D-8B64-2B0151248CA3}) (Version: 1.00.0433 - HiFi Flightware)
Adobe Flash Player 17 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 17.0.0.134 - Adobe Systems Incorporated)
Adobe Flash Player 17 NPAPI (HKLM-x32\...\Adobe Flash Player NPAPI) (Version: 17.0.0.169 - Adobe Systems Incorporated)
Adobe Reader XI (11.0.10) - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AB0000000001}) (Version: 11.0.10 - Adobe Systems Incorporated)
Aerosoft - Iceland X (HKLM-x32\...\{E5390E6D-3012-42EF-9F19-156B1B362372}_is1) (Version: 1 - Aerosoft - Iceland X)
Aerosoft - Kos X (HKLM-x32\...\{4818E804-E461-4EBC-A11C-D2DE2B5B8F46}_is1) (Version: 1 - Aerosoft - X)
Aerosoft's - Aerosoft Launcher (HKLM-x32\...\{EE11CFFC-898C-4875-8A63-8B732A9AD43B}) (Version: 1.1.0.2 - Aerosoft)
aerosoft's - Approaching Innsbruck X (HKLM-x32\...\{70864384-DD19-44CB-A999-A917F32F623D}) (Version: 1.20 - aerosoft)
Aerosoft's - AspenX (HKLM-x32\...\{757F55B9-A5B6-41D6-A126-2B1C0066EA91}) (Version: 1.10 - Aerosoft)
Aerosoft's - Bush Hawk XP (HKLM-x32\...\{E7F6DE96-C3E6-4B05-8EF2-71B7B447CB9C}) (Version: 1.00 - Aerosoft)
Aerosoft's - Corfu X (HKLM-x32\...\{8A073262-FB25-4224-AE36-C2725A616E05}) (Version: 1.10 - Aerosoft)
Aerosoft's - F-16 Fighting Falcon (HKLM-x32\...\{A663BED9-978C-4A04-82A3-3029245055BE}) (Version: 1.10 - Aerosoft)
Aerosoft's - Flight Tales I (HKLM-x32\...\{92B44BC9-B9A1-43F7-ABBC-A197A34A656E}) (Version: 1.00 - Aerosoft)
Aerosoft's - Kastellorizo X - FSX (HKLM-x32\...\Kastellorizo X - FSX) (Version: 1.00 - )
aerosoft's - Lord Howe Island X (HKLM-x32\...\{A5E093C7-72BF-499B-B9E8-39F70200F40C}) (Version: 1.00 - aerosoft)
Aerosoft's - Piper Cheyenne FS2004 (HKLM-x32\...\{AFA0A5F0-A38A-4E0F-A9A4-74BB7D8CBC94}) (Version: 4.00 - Aerosoft)
Aerosoft's - Piper Cheyenne FSX (HKLM-x32\...\{8F00580B-19EC-4709-896D-D21E542630DD}) (Version: 4.00 - Aerosoft)
aerosoft's - Tahiti X (HKLM-x32\...\{4C7F54EE-DC36-431F-9978-DA678D77C4BA}) (Version: 1.10 - aerosoft)
Aerosoft's - Twin Otter X Extended - FSX (HKLM-x32\...\Twin Otter X Extended - FSX) (Version: 1.05 - )
Aeroworx X-treme King Air B200 v.2.0.1 No-Hotstart Patch (HKLM-x32\...\Aeroworx X-treme King Air B200 v.2.0.1 No-Hotstart Patch) (Version: - )
Aeroworx X-treme King Air B200 v.2.2 Patch (HKLM-x32\...\Aeroworx X-treme King Air B200 v.2.2 Patch) (Version: - )
Airport Design Editor 1.65 (HKLM-x32\...\{E8A70E2D-4315-407E-9B03-B4665EDD3A94}) (Version: 1.65.5542.0 - ScruffyDuck Software)
Akamai NetSession Interface (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Akamai) (Version: - Akamai Technologies, Inc)
Akamai NetSession Interface (HKU\S-1-5-21-3819283212-2759028170-3360342564-1001\...\Akamai) (Version: - Akamai Technologies, Inc)
ASUS Power4Gear Hybrid (HKLM\...\{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}) (Version: 1.2.0 - ASUS)
Atheros Bluetooth Suite (64) (HKLM\...\{230D1595-57DA-4933-8C4E-375797EBB7E1}) (Version: 7.04.000.98 - Atheros)
ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0015 - ASUS)
B1900D HD SERIES FSX/P3D (HKLM-x32\...\B1900D HD SERIES FSX/P3D) (Version: 1.00.00.00 - Carenado)
B200 King Air HD SERIES FSX/P3D (HKLM-x32\...\B200 King Air HD SERIES FSX/P3D) (Version: 1.00.00.00 - Carenado)
BiH VFR for FSX (version 1) (HKLM-x32\...\BiH VFR for FSX (version 1)) (Version: - )
BitTorrent (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\BitTorrent) (Version: 7.9.3.40101 - BitTorrent Inc.)
BitTorrent Sync (HKLM-x32\...\BitTorrent Sync) (Version: 1.2.75 - )
BN-2 Islander scenery (HKLM-x32\...\BN-2 Islander scenery) (Version: 1.0 - UK2000 Scenery)
BN-2 Islander v1-6 (HKLM-x32\...\BN-2 Islander v1-6) (Version: - )
C207 Skywagon FSX/P3D (HKLM-x32\...\C207 Skywagon FSX/P3D) (Version: ${PRODUCT_VERSION} - Alabeo)
C90B King Air HD SERIES FSX (HKLM-x32\...\C90B King Air HD SERIES FSX) (Version: 1.00.00.00 - Carenado)
Canon MG5200 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5200_series) (Version: - )
Carenado C172N FSX (HKLM-x32\...\Carenado C172N FSX) (Version: 1.00.00.00 - Carenado)
Carenado C208B Grand Caravan (HKLM-x32\...\Carenado C208B Grand Caravan) (Version: 1.00.00.00 - Carenado)
Carenado Commander 114 FSX (HKLM-x32\...\Carenado Commander 114 FSX) (Version: 1.00.00.00 - Carenado)
Carenado PA32 SARATOGA SP FSX (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Carenado PA32 SARATOGA SP FSX) (Version: - )
Carenado's C172N Skyhawk II FS2004 (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Carenado's C172N Skyhawk II FS2004) (Version: - )
CE208EX HD SERIES FSX/P3D (HKLM-x32\...\CE208EX HD SERIES FSX/P3D) (Version: 1.00.00.00 - Carenado)
CRJ Experience (HKLM-x32\...\CRJ Experience) (Version: - )
CRJ New Generation (HKLM-x32\...\CRJ New Generation) (Version: - )
Croatia v1.0 (HKLM-x32\...\CroatiaFSX_is1) (Version: - Davor Puljevic)
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.48.1.0347 - Disc Soft Ltd)
DCS World (HKLM\...\DCS World_is1) (Version: 1.2.10.30996 - Eagle Dynamics)
Disk Cleaner (remove only) (HKLM-x32\...\DiskCleaner) (Version: - )
Disney Planes (HKLM-x32\...\{6B208644-BBFE-4B6B-9FDD-1CC11902E72E}) (Version: 1.00.0000 - Disney Interactive Studios)
Douglas DC2 for Flightsimulator X (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Douglas DC2 for Flightsimulator X) (Version: - )
Eaglesoft Development Group Citation X 2.0 FSX (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Eaglesoft Development Group Citation X 2.0 FSX) (Version: - )
ESET Smart Security (HKLM\...\{443D1D0A-17E5-4F61-8074-8801BDB430CC}) (Version: 8.0.304.1 - ESET, spol s r. o.)
EZ Scenery Library (HKLM-x32\...\EZ Scenery Library) (Version: - )
F1 2002 WORK IN PROGRESS DEMO (HKLM-x32\...\{BB394D95-C049-4EA4-00B3-F866A3357CCD}) (Version: - )
FeelThere - Phenom 100 (HKLM-x32\...\{401A1F58-9DD2-41A6-A2AE-6CB836E908F8}) (Version: 1.00 - The Silverwingz)
FeelThere ERJ v.2 SP2 (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\FeelThere ERJ v.2 SP2) (Version: - )
Flight One Software - 177 Cardinal (HKLM-x32\...\177cardinal) (Version: 1.1 - Flight One Software)
Flight One Software Pilatus PC-12 fsx (HKLM-x32\...\pc12_FSX) (Version: - )
Flight Simulator X (HKLM-x32\...\RTMshadow_{A9729B90-D37B-4A69-B66A-7436AC1F7274}) (Version: - )
Flight Simulator X Service Pack 1 (HKLM-x32\...\SP1shadow_{A9729B90-D37B-4A69-B66A-7436AC1F7274}) (Version: - )
Flight1 ATR 72-500 for FS2004 (Includes SP3) (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Flight1 ATR 72-500 for FS2004 (Includes SP3)) (Version: - )
Flight1 ATR 72-500 for FSX (Includes SP1) (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Flight1 ATR 72-500 for FSX (Includes SP1)) (Version: - )
Flight1 Citation Mustang (HKLM-x32\...\f1mustang_FSX) (Version: 1.08a - Flight One Software)
Flight1 King Air B200 for FSX (HKLM-x32\...\Flight1 King Air B200 for FSX1.3) (Version: 1.3 - Flight One Software)
Fokker 70-100 FSX (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Fokker 70-100 FSX) (Version: - )
Fresco Logic USB3.0 Host Controller (HKLM\...\{17F94DA8-CB07-4BD8-A6DB-E53A1CC5C433}) (Version: 3.5.73.0 - Fresco Logic Inc.)
FS Global 2010 (HKLM-x32\...\FS Global 2010) (Version: - )
FS Panel Studio for FSX Build 20207 (HKLM-x32\...\FS Panel Studio for FSX) (Version: Build 20207 - )
FSX Beechcraft 1900D (HKLM-x32\...\FSX Beechcraft 1900D) (Version: - )
GNS400W-500W Trainer (HKLM-x32\...\{C59E019B-0952-4B72-A382-68A72224F88F}) (Version: - )
Google Earth (HKLM-x32\...\{28E82311-8616-11E1-BEB0-B8AC6F97B88E}) (Version: 6.2.2.6613 - Google)
Google Earth Pro (HKLM-x32\...\{44FC61F0-2F8A-11E3-8CAE-B8AC6F97B88E}) (Version: 7.1.2.2041 - Google)
Google Update Helper (x32 Version: 1.3.26.9 - Google Inc.) Hidden
iFly 737NG for FSX - 800 Norwegian (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\iFly 737NG for FSX - 800 Norwegian) (Version: - )
iFly 737NG for FSX - 800 Virgin Aus (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\iFly 737NG for FSX - 800 Virgin Aus) (Version: - )
iFly 737NG for FSX - 900 Alaska (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\iFly 737NG for FSX - 900 Alaska) (Version: - )
iFly Jets - The 737NG for FSX (HKLM-x32\...\iFly Jets - The 737NG for FSX) (Version: - )
iFly737 FSX DVD Customer Update 3.1 (HKLM-x32\...\iFly737 FSX DVD Customer Update 3.1) (Version: - )
Intel PROSet Wireless (x32 Version: - ) Hidden
Intel(R) PROSet/Wireless WiFi Software (HKLM\...\{3C41721F-AF0F-4086-AA1C-4C7F29076228}) (Version: 14.01.1000 - Intel Corporation)
Intel® PROSet/Wireless WiMAX Software (HKLM\...\{5C1DA3D9-F590-4317-A4FB-274F658E504B}) (Version: 6.05.0000 - Intel Corporation)
ISG FSX v1.8 (HKLM-x32\...\ISGv1.7_is1) (Version: - SimMarket)
Just Flight - 800XP BizJet for FSX (HKLM-x32\...\{6F321CAD-24D2-490B-BA36-AB5E8CF5DC17}) (Version: 1.00.0000 - Just Flight)
Just Flight Concorde Professional v1.00 (HKLM-x32\...\{DD87EC89-D798-42F1-B58A-6178C231BEFE}) (Version: 1.00.000 - )
JustFlight Mosquito (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\JustFlight Mosquito) (Version: - )
KIAD Washington Dulles FSX (HKLM-x32\...\{ECD78977-137C-4237-BBE6-4DEB81AA42B4}) (Version: 0.2.0 - Imagine Simulation)
Košice International Airport for FSX (HKLM-x32\...\LZKZFSX_is1) (Version: - SimMarket)
Legacy Call 1.06 (HKLM-x32\...\Legacy Call) (Version: 1.06 - FeelThere)
Legacy 'The Luxury Aircraft Collection' (HKLM-x32\...\Legacy 'The Luxury Aircraft Collection') (Version: - )
LegacyX Call 1.06 (HKLM-x32\...\LegacyX Call) (Version: 1.06 - FeelThere)
LEGO Star Wars Demo Disc (HKLM-x32\...\InstallShield_{F7D1D93A-B17A-41F8-9070-0B2A544C6165}) (Version: 1.00.0000 - Giant)
LEGO Star Wars Demo Disc (x32 Version: 1.00.0000 - Giant) Hidden
LEGO Star Wars II (HKLM-x32\...\InstallShield_{578FA426-47C0-4A3F-98A4-01ACD26B7556}) (Version: 1.00.0000 - LucasArts)
LEGO Star Wars II (x32 Version: 1.00.0000 - LucasArts) Hidden
LEGO Star Wars™ The Complete Saga (HKLM-x32\...\{DCCAE709-9860-4488-B07E-589E82433DE4}) (Version: 1.00.0000 - LucasArts)
LHC LJ24B UPDATER (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\LHC LJ24B UPDATER) (Version: - )
Lionheart Creations LJ24B (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Lionheart Creations LJ24B) (Version: - )
Lotus Simulations L-39 Albatros v1.35 (HKLM-x32\...\Lotus Simulations L-39 Albatros v1.35) (Version: - )
Lysander Secret Operations (HKLM-x32\...\Lysander Secret Operations1.0) (Version: 1.0 - FSAddon Publishing)
Majestic MJC8Q300 Version 2.004 (HKLM-x32\...\MJC8Q300) (Version: - )
Majestic MJC8Q400 Version 1.008 (HKLM-x32\...\MJC8Q400) (Version: - )
Microsoft .NET Framework 4.5.1 (čeština) (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1029) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft .NET Framework 4.5.1 (HKLM\...\{92FB6C44-E685-45AD-9B20-CADF4CABA132} - 1033) (Version: 4.5.50938 - Microsoft Corporation)
Microsoft Combat Flight Simulator 3.0 (HKLM-x32\...\Combat Flight Simulator 3.0) (Version: - )
Microsoft Flight Simulator 2004 A Century of Flight (HKLM-x32\...\Flight Simulator 9.0) (Version: 9.0 - Microsoft)
Microsoft Flight Simulator X: Acceleration (HKLM-x32\...\FlightSim_{A9729B90-D37B-4A69-B66A-7436AC1F7274}) (Version: 10.0.61637.0 - Microsoft Game Studios)
Microsoft Flight Simulator X: Acceleration SDK (HKLM-x32\...\{CF56984D-35C6-4ADB-9075-394978A427FB}) (Version: 10.0.61637.0 - Microsoft Game Studios)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.30514.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Mozilla Firefox 37.0.2 (x86 cs) (HKLM-x32\...\Mozilla Firefox 37.0.2 (x86 cs)) (Version: 37.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla)
MSXML 4.0 SP2 (KB954430) (HKLM-x32\...\{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}) (Version: 4.20.9870.0 - Microsoft Corporation)
MSXML 4.0 SP2 (KB973688) (HKLM-x32\...\{F662A8E6-F4DC-41A2-901E-8C11F044BDEC}) (Version: 4.20.9876.0 - Microsoft Corporation)
MSXML 4.0 SP2 Parser and SDK (HKLM-x32\...\{716E0306-8318-4364-8B8F-0CC4E9376BAC}) (Version: 4.20.9818.0 - Microsoft Corporation)
Natalie Brooks - Záhada domu pokladů 1.0 (HKLM-x32\...\{Natalie Brooks - Zahada domu pokladu}_is1) (Version: - Špidla Data Processing, s.r.o.)
NVIDIA Ovladač 3D Vision 311.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 311.44 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.26.4 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.26.4 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 311.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 311.44 - NVIDIA Corporation)
NVIDIA PhysX System Software 9.12.1031 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.12.1031 - NVIDIA Corporation)
NVIDIA Update 1.11.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 1.11.3 - NVIDIA Corporation)
O&O Defrag Free Edition (HKLM\...\{C10CAF82-9D36-4D9A-9DC0-C4549F06B519}) (Version: 14.1.431 - O&O Software GmbH)
Ovládací panel NVIDIA 311.44 (Version: 311.44 - NVIDIA Corporation) Hidden
P46T Malibu 1.sp1 (HKLM-x32\...\P46T Malibu 1.sp1) (Version: - )
PA46-350P HD SERIES FSX/P3D (HKLM-x32\...\PA46-350P HD SERIES FSX/P3D) (Version: 1.00.00.00 - Carenado)
paint.net (HKLM\...\{19BD2C33-16A8-4ED1-B9EA-D9E35B21EC42}) (Version: 4.0.5 - dotPDN LLC)
PAOB-Fokker50-V1.0 (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\PAOB-Fokker50-V1.0) (Version: - )
PDF Architect (HKLM-x32\...\{064A929A-4DE8-40CF-A901-BD40C14E4D25}) (Version: 1.1.83.9982 - pdfforge GmbH)
PDFCreator (HKLM-x32\...\{0001B4FD-9EA3-4D90-A79E-FD14BA3AB01D}) (Version: 1.7.2 - pdfforge)
PMDG 737 6700 NGX RTM (HKLM-x32\...\{C7EE862A-D83D-4A9F-B746-CBDE39BD7001}) (Version: 1.00.3219 - PMDG Simulations, LLC.)
PMDG 737 8900 NGX (HKLM-x32\...\{20708FD5-E94D-4097-A21E-E28564CDBC06}) (Version: 1.00.3219 - PMDG Simulations, LLC.)
PMDG BAe JS4100 (HKLM-x32\...\{FB647DBE-2231-405D-AC36-C73246CBE305}) (Version: 1.10.1016 - PMDG Simulations, LLC.)
PT Tu-154M Czechoslovak version 1.1 (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\PT Tu-154M Czechoslovak version 1.1) (Version: - )
PT Tu-154M Czechoslovak version 1.2 (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\PT Tu-154M Czechoslovak version 1.2) (Version: - )
QualityWings Ultimate 146 Collection FSX (HKLM-x32\...\QualityWings Ultimate 146 Collection FSX) (Version: - )
Quest Kodiak 2.4b (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Quest Kodiak 2.4b) (Version: - )
RealAir Simulations Spitfire XIV (HKLM-x32\...\{6897D3F4-C7D0-45AF-8CFE-B66952A25E7D}) (Version: 1.00.0000 - RealAir Simulations)
RealAir Turbine Duke (HKLM-x32\...\{046F74A1-7792-42FE-A5CE-EC5CC5A41EDA}) (Version: 1.2 - RealAir Simulations)
Reality XP Garmin GNS WAAS for FSX/9 Ver. 1.2 (HKLM-x32\...\RXPGNS32_is1) (Version: 1.2 - Reality XP)
Reality XP Wx500 for FSX Ver. 6.1 (HKLM-x32\...\RXPWX500FSX_is1) (Version: 6.1 - Reality XP)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.44.421.2011 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6564 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.8400.39030 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Reader Driver (HKLM-x32\...\{62BBB2F0-E220-4821-A564-730807D2C34D}) (Version: 6.1.7600.10001 - Realtek Semiconductor Corp.)
RGFLIGHT-Salzburg-Airport-2008-X-v1.0 (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\RGFLIGHT-Salzburg-Airport-2008-X-v1.0) (Version: - )
Rwy12 Library (HKLM-x32\...\Rwy12 Library) (Version: - )
SCS Tu-134A for MS Flight Simulator 2004 (HKLM-x32\...\SCS Tu-134A for MS Flight Simulator 2004) (Version: - )
SCS Tu-134A-3 FSX v2.0 v2.0 (HKLM-x32\...\SCS Tu-134A-3 FSX v2.0 v2.0) (Version: v2.0 - SCS)
SERIES X GMX-SX Avionics Suite by SimFlyer (HKLM-x32\...\SERIES X GMX-SX Avionics Suite by SimFlyer) (Version: - )
SERIES X GNS-SX Avionics Suite by SimFlyer (HKLM-x32\...\SERIES X GNS-SX Avionics Suite by SimFlyer) (Version: - )
SeriesX GPX-SX Avionics Suite by SimFlyer (HKLM-x32\...\SeriesX GPX-SX Avionics Suite by SimFlyer) (Version: - )
Skype™ 7.2 (HKLM-x32\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.2.103 - Skype Technologies S.A.)
Suprunov Design Yak-40 v 2.0.1 Lite Update (HKLM-x32\...\Suprunov Design Yak-40 v 2.0.1 Lite Update) (Version: - )
Suprunov Design Yak-40 v 2.0.1 Release (HKLM-x32\...\Suprunov Design Yak-40 v 2.0.1 Release) (Version: - )
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 15.3.43.0 - Synaptics Incorporated)
TAXI2GATE - WINTER TEXTURES SWITCHER (HKLM-x32\...\TAXI2GATE - WINTER TEXTURES SWITCHER) (Version: - )
Text-o-Matic (HKLM-x32\...\Text-o-Matic) (Version: - )
Text-o-Matic for FSX (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Text-o-Matic for FSX) (Version: - )
TOPCAT 2.70 - Take-Off and Landing Performance Calculation Tool (HKLM-x32\...\TOPCAT) (Version: 2.70 - FlightSimSoft.com Inh. Christian Grill)
Ultimate Airliners - The DC-9 Classic (HKLM-x32\...\Ultimate Airliners - The DC-9 Classic) (Version: - )
Ultimate Terrain - Europe (HKLM-x32\...\Ultimate Terrain - Europe) (Version: - )
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Upernavik X (HKLM-x32\...\{8D442F90-FF1A-4F3D-BFE7-B4C2A7124B91}_is1) (Version: - Mark Bradshaw)
Vagar Airport - Freeware (HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\...\Vagar Airport - Freeware) (Version: 1.0 - Aerofiles)
VistaMare ViMaCore X (HKLM-x32\...\ViMaCore X) (Version: - )
VLC media player (HKLM-x32\...\VLC media player) (Version: 2.1.5 - VideoLAN)
Wings of POWER II: Messerschmitt BF109 (HKLM-x32\...\Wings of POWER II: Messerschmitt BF109) (Version: - )
WinRAR 5.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH)
X-treme King Air B200 v.2.0.1 (HKLM-x32\...\X-treme King Air B200v.2.0.1) (Version: - )

==================== Custom CLSID (selected items): ==========================

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)


==================== Restore Points =========================

28-04-2015 23:01:16 Windows Update
29-04-2015 17:08:00 Removed Skype Click to Call

==================== Hosts content: ==========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts

==================== Scheduled Tasks (whitelisted) =============

(If an entry is included in the fixlist, it will be removed from registry. Any associated file could be listed separately to be moved.)

Task: {0DC12D7E-411D-4C27-9394-C86B4D3250D3} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-12-19] (Adobe Systems Incorporated)
Task: {12413A8E-599C-492C-9F58-745B6ECAA7D5} - System32\Tasks\ASUS P4G => C:\Program Files\ASUS\P4G\BatteryLife.exe [2012-01-04] (ASUS)
Task: {16834462-7AE4-4F83-A200-8D801CB924DA} - System32\Tasks\{8B68E152-3AAD-4F9B-B72A-8281E6DA0F62} => pcalua.exe -a "C:\Program Files (x86)\InstallShield Installation Information\{578FA426-47C0-4A3F-98A4-01ACD26B7556}\setup.exe" -c -runfromtemp -l0x0409
Task: {441ACF30-2163-45DB-B006-C5DC5DA349A8} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-05] (Google Inc.)
Task: {5168AEB4-7B43-4C99-8F1F-E2E5400E17C5} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-02-05] (Google Inc.)
Task: {BE1B5952-2C1D-4B90-B290-05DD5EFE3AA5} - System32\Tasks\{F7B02480-48E1-45CB-80C0-46E32911A2A0} => C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE [2015-02-18] (Microsoft Corporation)
Task: {BE610B8A-0D94-4021-97D9-6FA370F4A2C6} - System32\Tasks\ATKOSD2 => C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe [2011-12-22] (ASUSTek Computer Inc.)
Task: {EEA8257E-03D2-4D04-8699-3889F9FAEA7C} - System32\Tasks\{9B3DE54D-317B-4A91-B9B7-C6B9A38A8A38} => C:\Program Files (x86)\Microsoft Office\Office12\EXCEL.EXE [2015-02-18] (Microsoft Corporation)

==================== Loaded Modules (whitelisted) ==============

2013-11-26 19:03 - 2013-03-14 08:28 - 00087328 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2011-05-02 14:41 - 2011-05-02 14:41 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\Libeay32.dll
2010-07-14 17:11 - 2010-07-14 17:11 - 00031360 _____ () C:\Program Files\ASUS\P4G\DevMng.dll
2011-05-02 14:41 - 2011-05-02 14:41 - 01501696 _____ () C:\Program Files\Common Files\Intel\WirelessCommon\LIBEAY32.dll

==================== Alternate Data Streams (whitelisted) =========

(If an entry is included in the fixlist, only the Alternate Data Streams will be removed.)


==================== Safe Mode (whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (whitelisted) ===============

(If an entry is included in the fixlist, the default will be restored. None default entries will be removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, the associated entry will be removed from the registry.)


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3819283212-2759028170-3360342564-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Asus\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.20

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)


==================== FirewallRules (whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from registry. Any eventual file will not be moved.)

FirewallRules: [SPPSVC-In-TCP] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [SPPSVC-In-TCP-NoScope] => (Allow) %SystemRoot%\system32\sppsvc.exe
FirewallRules: [{613FE427-1BF6-475B-A774-F3E9B5909FE0}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office12\outlook.exe
FirewallRules: [{F416FC4A-E8D3-4C3A-B3E4-7D3CB94F13B2}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office12\GROOVE.EXE
FirewallRules: [{0E9C8023-F38E-478D-8617-039A374A1809}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office12\GROOVE.EXE
FirewallRules: [{9BF97BDE-C04D-4AA9-80F5-238D9EE4A613}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.EXE
FirewallRules: [{277CCEF7-5E8C-4284-80B8-808EE8327694}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office12\ONENOTE.EXE
FirewallRules: [{35566877-F0CB-408E-99DF-02A04312A1D3}] => (Allow) C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
FirewallRules: [{15054ECD-3868-40AB-83D9-F062B75153D4}] => (Allow) C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe
FirewallRules: [{4FD05293-7FBD-456F-B262-6F876A902C65}] => (Allow) C:\Program Files\Intel\WiMAX\Bin\DMAgent.exe
FirewallRules: [{49CBE30A-3C78-4915-BB53-5D692DACF6CC}] => (Allow) C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe
FirewallRules: [{65F57C05-8D92-402B-9EC4-E0586D2842C5}] => (Allow) C:\Program Files\Intel\WiMAX\Bin\AppSrv.exe
FirewallRules: [{F9E2FE5C-2399-48E9-AFA7-9F5F48B2BC0B}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{A1A40986-4ACE-450B-A377-ED80367FED53}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
FirewallRules: [{B5EE992C-CF22-4DB4-B652-CA86D5AE9D30}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [{8C2C779F-E78E-45DD-87BF-F770DF5C3999}] => (Allow) C:\Program Files (x86)\BitTorrent Sync\BTSync.exe
FirewallRules: [{F73E4C0E-51BB-4F26-B039-2A947EF6425D}] => (Allow) C:\Program Files (x86)\BitTorrent Sync\BTSync.exe
FirewallRules: [TCP Query User{EF718689-F52C-4986-A5D6-42A50ACF265E}C:\users\asus\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\asus\appdata\local\akamai\netsession_win.exe
FirewallRules: [UDP Query User{F6B15EA5-FFA2-4F2C-83C0-887D5407729A}C:\users\asus\appdata\local\akamai\netsession_win.exe] => (Allow) C:\users\asus\appdata\local\akamai\netsession_win.exe
FirewallRules: [{4A61F589-89D7-41CC-BD05-4AE2190B5BD2}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{610A9DD6-8940-4969-AD1A-9286D6EFCF4D}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{3324ED25-BB74-4F33-813D-E8740F1F9D6B}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{D7A7C5EB-EBFE-404E-A849-2F9CB2B31443}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{C5E54787-4412-4848-BA2B-988829B4013E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{60B50B92-D42F-4DA3-A5AC-3A30F2309555}] => (Allow) C:\Windows\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe
FirewallRules: [{A0AE498C-41C9-4CD1-94DE-FDFE01432A00}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{7B2EEC9D-87EA-4E8D-9E7C-67175044AFA9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{9BFCEC66-DF2F-4AFC-BB9C-A182F94CA518}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{4807BC71-C352-4EA8-A7E2-81E7771D1871}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{1842D403-BF81-4AEB-AD85-BF85D1CC8327}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{2C848B70-33F6-43FE-9C49-1FED25722C09}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{342E2438-AFBF-405E-8FB3-770277A50505}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{720038B7-C418-4127-99FD-DD526BBC875E}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{FE80C51B-CE3C-45E6-8A62-96C58ED758B3}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{A0E2515B-CF2B-42A4-B2ED-4BFF23D0FFCF}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{8B710246-BBD3-45ED-A5A8-98AB2087C5CB}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{E74A033A-E24F-48D4-BC8C-1E7E63B09E1A}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{9ADA0023-C8A5-48D5-B96B-2D1326DDA902}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{F58240FA-6702-4816-A1B6-D82191244AF9}] => (Allow) C:\Program Files (x86)\Dll-Files.com Fixer\DLLFixer.exe
FirewallRules: [{3D1C966E-96EC-4CAF-B47C-77BCBB5AA02F}] => (Allow) C:\Users\Asus\AppData\Roaming\BitTorrent\BitTorrent.exe
FirewallRules: [{BB9E9CDD-765D-4FC7-AE01-D1976C41092F}] => (Allow) C:\Users\Asus\AppData\Roaming\BitTorrent\BitTorrent.exe
FirewallRules: [{9D245FF7-C710-4154-95D9-97D90E49BD5D}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{A8E098BA-5934-4E28-8C92-8895323D38F4}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe

==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (04/30/2015 06:54:38 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT AUTHORITY)
Description: Uvolnění řetězců čítačů výkonu pro službu WmiApRpl (WmiApRpl) se nezdařilo. První hodnota DWORD v datové oblasti obsahuje kód chyby.

Error: (04/30/2015 06:54:38 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY)
Description: Hodnota řetězce výkonu v registru výkonu je poškozena, pokud proces Performance zprostředkovatele čítače rozšíření. Hodnotu BaseIndex z registru výkonu obsahuje první hodnota DWORD datové části. Hodnotu LastCounter obsahuje druhá hodnota DWORD a hodnotu LastHelp obsahuje třetí hodnota DWORD datové části.

Error: (04/30/2015 06:54:38 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY)
Description: Hodnota řetězce výkonu v registru výkonu je poškozena, pokud proces Performance zprostředkovatele čítače rozšíření. Hodnotu BaseIndex z registru výkonu obsahuje první hodnota DWORD datové části. Hodnotu LastCounter obsahuje druhá hodnota DWORD a hodnotu LastHelp obsahuje třetí hodnota DWORD datové části.

Error: (04/30/2015 10:20:21 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT AUTHORITY)
Description: Uvolnění řetězců čítačů výkonu pro službu WmiApRpl (WmiApRpl) se nezdařilo. První hodnota DWORD v datové oblasti obsahuje kód chyby.

Error: (04/30/2015 10:20:21 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY)
Description: Hodnota řetězce výkonu v registru výkonu je poškozena, pokud proces Performance zprostředkovatele čítače rozšíření. Hodnotu BaseIndex z registru výkonu obsahuje první hodnota DWORD datové části. Hodnotu LastCounter obsahuje druhá hodnota DWORD a hodnotu LastHelp obsahuje třetí hodnota DWORD datové části.

Error: (04/30/2015 10:20:21 AM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY)
Description: Hodnota řetězce výkonu v registru výkonu je poškozena, pokud proces Performance zprostředkovatele čítače rozšíření. Hodnotu BaseIndex z registru výkonu obsahuje první hodnota DWORD datové části. Hodnotu LastCounter obsahuje druhá hodnota DWORD a hodnotu LastHelp obsahuje třetí hodnota DWORD datové části.

Error: (04/29/2015 06:36:06 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT AUTHORITY)
Description: Uvolnění řetězců čítačů výkonu pro službu WmiApRpl (WmiApRpl) se nezdařilo. První hodnota DWORD v datové oblasti obsahuje kód chyby.

Error: (04/29/2015 06:36:06 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY)
Description: Hodnota řetězce výkonu v registru výkonu je poškozena, pokud proces Performance zprostředkovatele čítače rozšíření. Hodnotu BaseIndex z registru výkonu obsahuje první hodnota DWORD datové části. Hodnotu LastCounter obsahuje druhá hodnota DWORD a hodnotu LastHelp obsahuje třetí hodnota DWORD datové části.

Error: (04/29/2015 06:36:06 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3012) (User: NT AUTHORITY)
Description: Hodnota řetězce výkonu v registru výkonu je poškozena, pokud proces Performance zprostředkovatele čítače rozšíření. Hodnotu BaseIndex z registru výkonu obsahuje první hodnota DWORD datové části. Hodnotu LastCounter obsahuje druhá hodnota DWORD a hodnotu LastHelp obsahuje třetí hodnota DWORD datové části.

Error: (04/29/2015 05:18:07 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3011) (User: NT AUTHORITY)
Description: Uvolnění řetězců čítačů výkonu pro službu WmiApRpl (WmiApRpl) se nezdařilo. První hodnota DWORD v datové oblasti obsahuje kód chyby.


System errors:
=============
Error: (04/30/2015 06:50:44 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníSpuštění{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (pomocí LRPC)

Error: (04/30/2015 10:17:04 AM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníSpuštění{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (pomocí LRPC)

Error: (04/29/2015 07:05:41 PM) (Source: Schannel) (EventID: 4119) (User: NT AUTHORITY)
Description: Byla přijata následující výstraha o závažné chybě: 20.

Error: (04/29/2015 06:32:49 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: specifické pro aplikaciMístníSpuštění{C97FCC79-E628-407D-AE68-A06AD6D8B4D1}{344ED43D-D086-4961-86A6-1106F4ACAD9B}NT AUTHORITYSYSTEMS-1-5-18LocalHost (pomocí LRPC)

Error: (04/29/2015 06:31:18 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\Windows\System32\IWMSSvc.dll

Error: (04/29/2015 06:31:18 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\Windows\System32\IWMSSvc.dll

Error: (04/29/2015 06:31:18 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\Windows\System32\IWMSSvc.dll

Error: (04/29/2015 06:31:17 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10003) (User: NT AUTHORITY)
Description: Rozšiřující modul sítě WLAN byl neočekávaně ukončen.

Cesta k modulu: C:\Windows\System32\IWMSSvc.dll

Error: (04/29/2015 06:31:00 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Správce služeb se pokusil o opravnou akci (Restartovat službu) po nečekaném ukončení služby Windows Search, ale tato akce selhala kvůli následující chybě:
%%1056

Error: (04/29/2015 06:30:30 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.


Microsoft Office Sessions:
=========================
Error: (11/28/2014 09:01:29 PM) (Source: Microsoft Office 12 Sessions) (EventID: 7001) (User: )
Description: ID: 6, Application Name: Microsoft Office Outlook, Application Version: 12.0.6691.5000, Microsoft Office Version: 12.0.6612.1000. This session lasted 13880 seconds with 180 seconds of active time. This session ended with a crash.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i7-2630QM CPU @ 2.00GHz
Percentage of memory in use: 14%
Total physical RAM: 16361.16 MB
Available physical RAM: 13956.2 MB
Total Pagefile: 32720.51 MB
Available Pagefile: 30059.23 MB
Total Virtual: 8192 MB
Available Virtual: 8191.84 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:167.68 GB) (Free:34.5 GB) NTFS
Drive d: (08 11 2014) (CDROM) (Total:4.38 GB) (Free:3.81 GB) UDF
Drive e: (Místní disk) (Fixed) (Total:465.66 GB) (Free:283.85 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 167.7 GB) (Disk ID: 389A9F24)
Partition 1: (Not Active) - (Size=167.7 GB) - (Type=07 NTFS)

========================================================
Disk: 1 (MBR Code: Windows 7 or 8) (Size: 465.8 GB) (Disk ID: E1714AA0)
Partition 1: (Active) - (Size=100 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=465.7 GB) - (Type=07 NTFS)

==================== End Of Log ============================

altrok
Moderátor
Moderátor
Příspěvky: 7322
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Prosím o kontrolu logu, nestandartní chování IE

#14 Příspěvek od altrok »

Vyborne, logy vypadaji ciste :thumbsup:
Pres vikend sledujte stav PC a pripadne problemy nahlaste a podivame se na ne :)

Krasny vikend!
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

koprik
Návštěvník
Návštěvník
Příspěvky: 14
Registrován: 21 črc 2008 21:23

Re: Prosím o kontrolu logu, nestandartní chování IE

#15 Příspěvek od koprik »

Provedeno,děkuji mnohokrát, příkazem k převodu právě odesláno 250CZK a veliká pochvala Vám všem!
Se srdečným pozdravem,
Koprik

Zamčeno