
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Windows přestal pracovat
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Windows přestal pracovat
Dobrý den, zhruba měsíc nový notebook a hned jsem se nyní setkal s problémem že mi nenaskočil windows, pouze byla přítomna barva pozadí (bez tapety, pozadí metra) a myš ale lišta, start, či ikonky nic nenaběhlo a vyskočila hláška že windows nepracuje správně a ted možnost či jej ukončit nebo dát storno. Pak nějak přes správce úloh mi windows naběhl tak jsem příležitosti využil abych zaslal tento log, zdali nejsou přítomny nějaké viry, děkuji.
info.txt logfile of random's system information tool 1.10 2015-07-13 00:06:47
======MBR======
0x0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000073998E8000000000200EEFFFFFF01000000FFFFFFFF00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000055AA
======Uninstall list======
-->"C:\Program Files (x86)\WildTangent Games\Game Explorer Categories - genres\Uninstall.exe"
-->MsiExec /X{8A809006-C25A-4A3A-9DAB-94659BCDB107}
abDocs Office AddIn-->MsiExec.exe /I{DCBF3379-246B-47E1-8173-639B63940838}
abDocs-->C:\Program Files (x86)\Acer\abDocs\AcerDocsSetup.exe -uninstall
abMedia-->C:\Program Files (x86)\Acer\abMedia\abMediaSetup.exe -uninstall
abPhoto-->C:\Program Files (x86)\Acer\abPhoto\abPhotoSetup.exe -uninstall
Acer Explorer Agent-->Msiexec.exe /i {4D0F42CF-1693-43D9-BDC8-19141D023EE0} ACER=1 PRODUCTNAME="Acer Explorer Agent" REMOVEUSEC=1 BOOTSTRATOR=1
Acer Launch Manager-->MsiExec.exe /i {C18D55BD-1EC6-466D-B763-8EEDDDA9100E} BOOTSTRATOR=1 GPRODUCTNAME="Acer Launch Manager" BRANDNAME="Acer" ISDT=0 INSTALLDRIVER=1
Acer Power Management-->MsiExec.exe /i {91F52DE4-B789-42B0-9311-A349F10E5479} PRODUCTNAME="Acer Power Management" BRANDNAME="Acer" NEWUPGRADE=0 BOOTSTRATOR=1 ISDT=0
Acer Quick Access-->MsiExec.exe /i {C1FA525F-D701-4B31-9D32-504FC0CF0B98} BOOTSTRATOR=1 GPRODUCTNAME="Acer Quick Access" BRANDNAME="Acer" ISDT=0 INSTALLDRIVER=0
Acer Recovery Management-->Msiexec.exe /i {07F2005A-8CAC-4A4B-83A2-DA98A722CA61} ACER=1 PRODUCTNAME="Acer Recovery Management" REMOVEUSEC=1 BOOTSTRATOR=1 ACERPRELOAD=1
Acer Remote Files-->C:\Program Files\Acer\Remote Files\AcerRemoteFileSetup.exe -uninstall
Acer Screen Grasp-->Msiexec.exe /i {84443E5D-0767-438B-B1C8-6A52FAB2101B} ACER=1 PRODUCTNAME="Acer Screen Grasp" REMOVEUSEC=1 BOOTSTRATOR=1
Acer Theft Shield-->Msiexec.exe /i {8adb0cd2-4e5a-452f-bb3b-3a2984cac749} ACER=1 PRODUCTNAME="Acer Theft Shield" REMOVEUSEC=1 BOOTSTRATOR=1
Acer Touch Tools-->MsiExec.exe /i {BB1F8130-3CB3-4896-9D28-770DFFFDE59C} BOOTSTRATOR=1 GPRODUCTNAME="Acer Touch Tools" BRANDNAME="Acer" ISDT=0
Acer User Experience Improvement Program App Monitor Plugin-->MsiExec.exe /i {978724F6-1863-4DD5-9E66-FB77F5AB5613} PRODUCTNAME="Acer User Experience Improvement Program App Monitor Plugin" BRANDNAME="Acer" BOOTSTRATOR=1
Acer User Experience Improvement Program Framework-->MsiExec.exe /i {12A718F2-2357-4D41-9E1F-18583A4745F7} PRODUCTNAME="Acer User Experience Improvement Program Framework" BRANDNAME="Acer" BOOTSTRATOR=1
Acer Video Player-->C:\Program Files (x86)\Acer\Acer Video Player\clearfiSetup.exe -uninstall
Adobe Reader XI (11.0.04) MUI-->MsiExec.exe /I{AC76BA86-7AD7-FFFF-7B44-AB0000000001}
Antichamber-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/219890
Assassin's Creed Unity-->"C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe" uplay://uninstall/720
Avast Free Antivirus-->C:\Program Files\AVAST Software\Avast\Setup\Instup.exe /control_panel /instop:uninstall
Batman™: Arkham Origins-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/209000
BS.Player FREE-->"C:\Program Files (x86)\Webteh\BSPlayer\uninstall.exe"
Castle Crashers-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/204360
Counter-Strike: Global Offensive-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/730
CyberLink PhotoDirector 3-->"C:\Program Files (x86)\InstallShield Installation Information\{39337565-330E-4ab6-A9AE-AC81E0720B10}\Setup.exe" /z-uninstall
CyberLink PhotoDirector 3-->"C:\Program Files (x86)\InstallShield Installation Information\{39337565-330E-4ab6-A9AE-AC81E0720B10}\Setup.exe" /z-uninstall
CyberLink PowerDirector 10-->"C:\Program Files (x86)\InstallShield Installation Information\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\setup.exe" /z-uninstall
CyberLink PowerDirector 10-->"C:\Program Files (x86)\InstallShield Installation Information\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\setup.exe" /z-uninstall
Definition Update for Microsoft Office 2013 (KB3054786) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{7F7B2328-7070-4089-896C-FCA6ACC9AE13}" "1029" "0"
Dolby Digital Plus Home Theater-->MsiExec.exe /X{7E3D8FA1-6092-469A-955B-68FC4A2C67CA}
ExpressCache-->MsiExec.exe /X{44EAE7F6-8BBF-4C3F-A573-3CD5A3C067FA}
Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.132\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
Google Update Helper-->MsiExec.exe /I{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
HID Monitor-->MsiExec.exe /X{2FB493E5-EE80-4236-AEBD-D06F56446C02}
Hitman: Absolution-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/203140
Identity Card-->MsiExec.exe /X{3D9CB654-99AD-4301-89C6-0D12A790767C}
Insurgency-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/222880
Intel Experience Center - Configuration-->MsiExec.exe /I{C73A16B7-AC35-4262-9BAF-DA9B2039A563}
Intel(R) Experience Center Desktop Software-->"C:\ProgramData\Package Cache\{3608ec0a-56b4-4d9d-b038-9b3e51d72582}\install.exe" /uninstall
Intel(R) Experience Center Driver-->MsiExec.exe /X{09888C31-E15A-4E69-AF26-4BFCEE55821B}
Intel(R) Management Engine Components-->C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\Uninstall\setup.exe -uninstall
Intel(R) Processor Graphics-->C:\Program Files (x86)\Intel\Intel(R) Processor Graphics\Uninstall\setup.exe -uninstall
Intel(R) Rapid Storage Technology-->"C:\ProgramData\Intel\Package Cache\{409CB30E-E457-4008-9B1A-ED1B9EA21140}\Setup.exe" -uninstall
Intel(R) Rapid Storage Technology-->MsiExec.exe /I{E5FAF48A-145F-4B33-A062-DCFAAFAE5D41}
Intel(R) Smart Connect Technology-->MsiExec.exe /I{51AC86D3-C431-48AD-9195-0D6C930D07CD}
Intel® PROSet/Wireless Software-->"C:\ProgramData\Package Cache\{105fa5c4-72e1-41f2-a82c-884d8aa4b381}\Setup.exe" /uninstall
Intel® PROSet/Wireless WiFi Software-->MsiExec.exe /I{3181229B-05DA-46F9-B8D4-4966BDA99A74}
Intel® Trusted Connect Service Client-->MsiExec.exe /I{89AFB053-A343-46EF-97E4-D593AD7184E6}
Live Updater-->MsiExec.exe /X{EE26E302-876A-48D9-9058-3129E5B99999}
Microsoft Access MUI (Czech) 2013-->MsiExec.exe /X{90150000-0015-0405-0000-0000000FF1CE}
Microsoft ASP.NET MVC 4 Runtime-->MsiExec.exe /X{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}
Microsoft DCF MUI (Czech) 2013-->MsiExec.exe /X{90150000-0090-0405-0000-0000000FF1CE}
Microsoft Excel MUI (Czech) 2013-->MsiExec.exe /X{90150000-0016-0405-0000-0000000FF1CE}
Microsoft Groove MUI (Czech) 2013-->MsiExec.exe /X{90150000-00BA-0405-0000-0000000FF1CE}
Microsoft InfoPath MUI (Czech) 2013-->MsiExec.exe /X{90150000-0044-0405-0000-0000000FF1CE}
Microsoft Lync MUI (Czech) 2013-->MsiExec.exe /X{90150000-012B-0405-0000-0000000FF1CE}
Microsoft Office 64-bit Components 2013-->MsiExec.exe /X{90150000-002A-0000-1000-0000000FF1CE}
Microsoft Office Korrekturhilfen 2013 - Deutsch-->MsiExec.exe /X{90150000-001F-0407-0000-0000000FF1CE}
Microsoft Office OSM MUI (Czech) 2013-->MsiExec.exe /X{90150000-00E1-0405-0000-0000000FF1CE}
Microsoft Office OSM UX MUI (Czech) 2013-->MsiExec.exe /X{90150000-00E2-0405-0000-0000000FF1CE}
Microsoft Office Professional Plus 2013-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
Microsoft Office Professional Plus 2013-->MsiExec.exe /X{90150000-0011-0000-0000-0000000FF1CE}
Microsoft Office Proofing (Czech) 2013-->MsiExec.exe /X{90150000-002C-0405-0000-0000000FF1CE}
Microsoft Office Proofing Tools 2013 - English-->MsiExec.exe /X{90150000-001F-0409-0000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (Czech) 2013-->MsiExec.exe /X{90150000-002A-0405-1000-0000000FF1CE}
Microsoft Office Shared MUI (Czech) 2013-->MsiExec.exe /X{90150000-006E-0405-0000-0000000FF1CE}
Microsoft OneNote MUI (Czech) 2013-->MsiExec.exe /X{90150000-00A1-0405-0000-0000000FF1CE}
Microsoft Outlook MUI (Czech) 2013-->MsiExec.exe /X{90150000-001A-0405-0000-0000000FF1CE}
Microsoft PowerPoint MUI (Czech) 2013-->MsiExec.exe /X{90150000-0018-0405-0000-0000000FF1CE}
Microsoft Publisher MUI (Czech) 2013-->MsiExec.exe /X{90150000-0019-0405-0000-0000000FF1CE}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148-->MsiExec.exe /X{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030-->"C:\ProgramData\Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030-->"C:\ProgramData\Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030-->MsiExec.exe /X{37B8F9C7-03FB-3253-8781-2517C99D7C00}
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030-->MsiExec.exe /X{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030-->MsiExec.exe /X{B175520C-86A2-35A7-8619-86DC379688B9}
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030-->MsiExec.exe /X{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}
Microsoft Visual Studio 2010 Tools for Office Runtime (x64)-->c:\Program Files\Common Files\Microsoft Shared\VSTO\10.0\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)\install.exe
Microsoft Visual Studio 2010 Tools for Office Runtime (x64)-->MsiExec.exe /X{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}
Microsoft Word MUI (Czech) 2013-->MsiExec.exe /X{90150000-001B-0405-0000-0000000FF1CE}
Microsoft XNA Framework Redistributable 4.0 Refresh-->MsiExec.exe /I{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}
Middle-earth: Shadow of Mordor-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/241930
My Game Long Name-->C:\Program Files (x86)\Steam\steamapps\common\Antichamber\Binaries\UnSetup.exe /uninstall
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština-->MsiExec.exe /X{90150000-001F-0405-0000-0000000FF1CE}
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina-->MsiExec.exe /X{90150000-001F-041B-0000-0000000FF1CE}
Nero BackItUp 12 Essentials OEM.a01-->MsiExec.exe /I{551AC8F2-FEA2-4B45-ACF7-C98681233CC9}
Nero BackItUp Help (CHM)-->MsiExec.exe /X{EF0D1292-8FC1-41BE-9740-DBC134F66415}
Nero BackItUp-->MsiExec.exe /X{DA2D3078-A58C-45E8-8EE0-18B8BE6B34F7}
Nero ControlCenter Help (CHM)-->MsiExec.exe /X{C994C746-C6D0-4EBA-B09E-DF7B18381B69}
Nero ControlCenter-->MsiExec.exe /X{ABC88553-8770-4B97-B43E-5A90647A5B63}
Nero Core Components-->MsiExec.exe /X{BEBEE34D-84A2-4EDD-8BEA-96CC54371263}
Nero Launcher-->MsiExec.exe /X{0E4630AF-0AB7-440E-A978-1A78FC4F43B9}
Nero RescueAgent Help (CHM)-->MsiExec.exe /X{0B311221-05A5-4766-8D03-7A6446794156}
Nero RescueAgent-->MsiExec.exe /X{A2D43081-CF7B-4637-A9F3-E2651AA5C4A8}
Nero Update-->MsiExec.exe /X{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}
NVIDIA GeForce Experience 2.4.5.44-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.GFExperience
NVIDIA Ovladače grafiky 353.30-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.Driver
NVIDIA PhysX-->MsiExec.exe /X{8A809006-C25A-4A3A-9DAB-94659BCDB107}
NVIDIA Systémový software PhysX 9.15.0428-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.PhysX
Realtek Card Reader-->"C:\Program Files (x86)\InstallShield Installation Information\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}\setup.exe" -runfromtemp -removeonly
Realtek Ethernet Controller Driver-->C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -removeonly
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -removeonly
Rising Storm/Red Orchestra 2 Multiplayer-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/35450
Security Update for Microsoft Office 2013 (KB2880502) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{90E7A66B-723D-4790-824A-6E4EEC0C2CBA}" "1029" "0"
Security Update for Microsoft Office 2013 (KB2910941) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{E0434175-7133-45D2-B53A-78700C2F8BC4}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3039749) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-0000-0000000FF1CE}" "{BAFACDCD-08EE-44EF-89AD-2FE88D117D59}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3039782) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{0E5853A5-B6AC-4B57-9825-71FB2CCC6D62}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3039782) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-0000-0000000FF1CE}" "{0E5853A5-B6AC-4B57-9825-71FB2CCC6D62}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{7F6C4883-A18C-459A-82C1-A2F9403F2DA6}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0015-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0018-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0019-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001B-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0405-0000-0000000FF1CE}" "{0A504FDF-F8F7-4792-9360-1F45E38F005D}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0407-0000-0000000FF1CE}" "{55A588B8-2D30-4B60-AB09-5DB57C592B81}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0409-0000-0000000FF1CE}" "{1F79A96A-2A70-45B3-8A5C-79DA61952879}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-041B-0000-0000000FF1CE}" "{F1B4FD6F-C4F9-42B7-9B9E-BF3B24A8192D}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0000-1000-0000000FF1CE}" "{7A8FE9A6-2BBC-48F7-A2CF-2578F60EC895}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0405-1000-0000000FF1CE}" "{4C4BCB5E-6458-4573-99DF-535EFCFD6AFC}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002C-0405-0000-0000000FF1CE}" "{7C7CDE76-1FF8-411F-9DA4-B4F91DBB58F5}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0044-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-0000-0000000FF1CE}" "{DBBAB83F-8D50-4AFB-B0FF-8B90CA68B215}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0090-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00A1-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00BA-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00E1-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00E2-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
SpeedRunners-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/207140
Spybot - Search & Destroy-->"C:\Program Files (x86)\Spybot - Search & Destroy 2\unins000.exe"
Steam-->C:\Program Files (x86)\Steam\uninstall.exe
Synaptics Pointing Device Driver-->rundll32.exe "%ProgramFiles%\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Update for Microsoft Access 2013 (KB3054795) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{24695AF7-BF9A-4461-9F14-B2BFAD531448}" "1029" "0"
Update for Microsoft Access 2013 (KB3054795) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0015-0405-0000-0000000FF1CE}" "{24695AF7-BF9A-4461-9F14-B2BFAD531448}" "1029" "0"
Update for Microsoft Excel 2013 (KB3054794) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{34431570-CA28-4C59-8743-D9424A254D63}" "1029" "0"
Update for Microsoft Excel 2013 (KB3054794) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0405-0000-0000000FF1CE}" "{34431570-CA28-4C59-8743-D9424A254D63}" "1029" "0"
Update for Microsoft Excel 2013 (KB3054794) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0018-0405-0000-0000000FF1CE}" "{34431570-CA28-4C59-8743-D9424A254D63}" "1029" "0"
Update for Microsoft Excel 2013 (KB3054794) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001B-0405-0000-0000000FF1CE}" "{34431570-CA28-4C59-8743-D9424A254D63}" "1029" "0"
Update for Microsoft Excel 2013 (KB3054794) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-0000-0000000FF1CE}" "{34431570-CA28-4C59-8743-D9424A254D63}" "1029" "0"
Update for Microsoft Office 2013 (KB2760344) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{A7610F07-E844-4444-8E1D-D5BC8AD0B4C5}" "1029" "0"
Update for Microsoft Office 2013 (KB2760371) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{FFF87DE6-6602-4F65-BD75-D481E0539DCD}" "1029" "0"
Update for Microsoft Office 2013 (KB2760544) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{45B7D395-EB9B-414F-9E46-5849B42326E2}" "1029" "0"
Update for Microsoft Office 2013 (KB2837654) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{6D771289-E5A7-442F-82B5-5EC4217AEF03}" "1029" "0"
Update for Microsoft Office 2013 (KB2880487) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{50294D1D-175D-4D3B-84FE-C3809F108CED}" "1029" "0"
Update for Microsoft Office 2013 (KB2880487) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0000-1000-0000000FF1CE}" "{50294D1D-175D-4D3B-84FE-C3809F108CED}" "1029" "0"
Update for Microsoft Office 2013 (KB2881001) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{31849233-AD8B-42D7-9AE1-74C79C8E8C03}" "1029" "0"
Update for Microsoft Office 2013 (KB2881017) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{5F7FA69A-A0E2-46D1-B858-F4AA26AB4977}" "1029" "0"
Update for Microsoft Office 2013 (KB2881076) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{178560C0-1602-4F9D-A5AD-9B9A8BD0BA1A}" "1029" "0"
Update for Microsoft Office 2013 (KB2881076) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0405-0000-0000000FF1CE}" "{178560C0-1602-4F9D-A5AD-9B9A8BD0BA1A}" "1029" "0"
Update for Microsoft Office 2013 (KB2883036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{B8E73381-09B1-4895-ACD0-34385B0F526D}" "1029" "0"
Update for Microsoft Office 2013 (KB2883095) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{7A9AB1AE-98B5-4B45-86B8-33A7B946D7CA}" "1029" "0"
Update for Microsoft Office 2013 (KB2889863) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{52064DE8-AF91-4EAC-8B57-CECA10E8C1C0}" "1029" "0"
Update for Microsoft Office 2013 (KB2899498) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{E4046E6A-999E-45AE-8348-C76677AD0016}" "1029" "0"
Update for Microsoft Office 2013 (KB2899498) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0405-0000-0000000FF1CE}" "{E4046E6A-999E-45AE-8348-C76677AD0016}" "1029" "0"
Update for Microsoft Office 2013 (KB2899522) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{87F6726E-6F99-42F0-8E11-55D798E57DD5}" "1029" "0"
Update for Microsoft Office 2013 (KB2956152) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{E033127B-28B7-445C-BD79-690E2C1D19B5}" "1029" "0"
Update for Microsoft Office 2013 (KB2965253) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{6F138191-3645-4924-9201-B697751436F5}" "1029" "0"
Update for Microsoft Office 2013 (KB2965259) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{87B7CE0B-7E37-45ED-AAD3-8BD14B2ED8B6}" "1029" "0"
Update for Microsoft Office 2013 (KB2965269) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{68AB99E2-2030-4092-9BE3-CB5AC65B7F18}" "1029" "0"
Update for Microsoft Office 2013 (KB2965271) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{05F96E90-A024-4CB1-9694-42C845C38546}" "1029" "0"
Update for Microsoft Office 2013 (KB2975869) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{DC99BDCA-01F1-42F5-AD31-72A5B8C17F12}" "1029" "0"
Update for Microsoft Office 2013 (KB2975869) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-0000-0000000FF1CE}" "{DC99BDCA-01F1-42F5-AD31-72A5B8C17F12}" "1029" "0"
Update for Microsoft Office 2013 (KB3023054) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{CFDCFD85-99D9-433A-B83B-8CB150C1BE14}" "1029" "0"
Update for Microsoft Office 2013 (KB3039761) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{640B3BDF-3BFA-46A9-A9BC-5BFCD6512EF2}" "1029" "0"
Update for Microsoft Office 2013 (KB3039791) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0405-0000-0000000FF1CE}" "{E058D528-D680-4421-BF4F-09A501464218}" "1029" "0"
Update for Microsoft Office 2013 (KB3039791) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0407-0000-0000000FF1CE}" "{310945E1-E2E6-4C87-B3C3-64048C4E7D1E}" "1029" "0"
Update for Microsoft Office 2013 (KB3039791) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0409-0000-0000000FF1CE}" "{BF84EDA2-6BBA-440E-A4F0-64B66EE02498}" "1029" "0"
Update for Microsoft Office 2013 (KB3039791) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-041B-0000-0000000FF1CE}" "{917C0BE0-8D7E-49FA-BE28-65869983421A}" "1029" "0"
Update for Microsoft Office 2013 (KB3054774) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{4AA15AD1-38AD-4149-954E-BBEF8D7E489A}" "1029" "0"
Update for Microsoft Office 2013 (KB3054783) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{C3E627A0-AADD-46D0-8CF6-62AFC66FA08B}" "1029" "0"
Update for Microsoft Office 2013 (KB3054797) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{E3AC7DE1-363B-4D54-8E66-CA8162CB74A7}" "1029" "0"
Update for Microsoft Office 2013 (KB3054797) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0000-1000-0000000FF1CE}" "{E3AC7DE1-363B-4D54-8E66-CA8162CB74A7}" "1029" "0"
Update for Microsoft Office 2013 (KB3054853) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{BEC95BA7-2CED-4FEB-9338-5323CC12CD93}" "1029" "0"
Update for Microsoft Office 2013 (KB3054853) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-0000-0000000FF1CE}" "{BEC95BA7-2CED-4FEB-9338-5323CC12CD93}" "1029" "0"
Update for Microsoft Office 2013 (KB3054856) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{FF0A4C57-A2D2-4ACA-9DF5-23DB94A718A1}" "1029" "0"
Update for Microsoft OneDrive for Business (KB3054825) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{8ACA65FF-48EE-4428-84EC-82B56173394C}" "1029" "0"
Update for Microsoft OneDrive for Business (KB3054825) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0000-1000-0000000FF1CE}" "{8ACA65FF-48EE-4428-84EC-82B56173394C}" "1029" "0"
Update for Microsoft OneDrive for Business (KB3054825) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0405-1000-0000000FF1CE}" "{8ACA65FF-48EE-4428-84EC-82B56173394C}" "1029" "0"
Update for Microsoft OneDrive for Business (KB3054825) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00BA-0405-0000-0000000FF1CE}" "{8ACA65FF-48EE-4428-84EC-82B56173394C}" "1029" "0"
Update for Microsoft OneNote 2013 (KB3039764) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{99EF2BA7-14A6-431B-B88C-FBEF36BA1220}" "1029" "0"
Update for Microsoft OneNote 2013 (KB3039764) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0000-1000-0000000FF1CE}" "{99EF2BA7-14A6-431B-B88C-FBEF36BA1220}" "1029" "0"
Update for Microsoft OneNote 2013 (KB3039764) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00A1-0405-0000-0000000FF1CE}" "{99EF2BA7-14A6-431B-B88C-FBEF36BA1220}" "1029" "0"
Update for Microsoft Outlook 2013 (KB3054855) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{65166A47-CCFE-44B3-806E-5759EDCCC5DA}" "1029" "0"
Update for Microsoft Outlook 2013 (KB3054855) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0405-0000-0000000FF1CE}" "{65166A47-CCFE-44B3-806E-5759EDCCC5DA}" "1029" "0"
Update for Microsoft Outlook Social Connector 2013 (KB3054854) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{3A2EB2A7-9F2D-4FA0-AE80-AD1A5A02A7AA}" "1029" "0"
Update for Microsoft Outlook Social Connector 2013 (KB3054854) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0405-0000-0000000FF1CE}" "{3A2EB2A7-9F2D-4FA0-AE80-AD1A5A02A7AA}" "1029" "0"
Update for Microsoft PowerPoint 2013 (KB3023058) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{620509A2-F7B3-45B9-86F5-B4AE82ED3F8E}" "1029" "0"
Update for Microsoft PowerPoint 2013 (KB3023058) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0018-0405-0000-0000000FF1CE}" "{620509A2-F7B3-45B9-86F5-B4AE82ED3F8E}" "1029" "0"
Update for Microsoft Project 2013 (KB3054830) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0000-1000-0000000FF1CE}" "{83101C57-F4EC-46B7-A2B7-3580C779FE5A}" "1029" "0"
Update for Microsoft Publisher 2013 (KB2883048) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{08F93D29-1D44-4E70-B73F-001BF01144F0}" "1029" "0"
Update for Microsoft Publisher 2013 (KB2883048) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0019-0405-0000-0000000FF1CE}" "{08F93D29-1D44-4E70-B73F-001BF01144F0}" "1029" "0"
Update for Microsoft Visio Viewer 2013 (KB2817301) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{25C61889-2E44-4BE1-9E96-9364BFDCF501}" "1029" "0"
Update for Microsoft Visio Viewer 2013 (KB2817301) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-0000-0000000FF1CE}" "{25C61889-2E44-4BE1-9E96-9364BFDCF501}" "1029" "0"
Update for Microsoft Word 2013 (KB2878319) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{A7CD05CC-CA85-428C-91FD-74A908D126E1}" "1029" "0"
Update for Microsoft Word 2013 (KB3039755) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{4F12EF96-D02D-4475-BE48-61B15953C680}" "1029" "0"
Update for Microsoft Word 2013 (KB3039755) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0405-0000-0000000FF1CE}" "{4F12EF96-D02D-4475-BE48-61B15953C680}" "1029" "0"
Update for Microsoft Word 2013 (KB3039755) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001B-0405-0000-0000000FF1CE}" "{4F12EF96-D02D-4475-BE48-61B15953C680}" "1029" "0"
Update for Microsoft Word 2013 (KB3039755) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0405-0000-0000000FF1CE}" "{4F12EF96-D02D-4475-BE48-61B15953C680}" "1029" "0"
Update for Skype for Business 2015 (KB2889853) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0405-0000-0000000FF1CE}" "{6B99320D-817F-42CE-B45E-5C9AD42678E3}" "1029" "0"
Update for Skype for Business 2015 (KB3054791) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{04ADDEC1-208F-4295-AA61-16789EA56814}" "1029" "0"
Update for Skype for Business 2015 (KB3054791) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0000-1000-0000000FF1CE}" "{04ADDEC1-208F-4295-AA61-16789EA56814}" "1029" "0"
Update for Skype for Business 2015 (KB3054791) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0405-0000-0000000FF1CE}" "{04ADDEC1-208F-4295-AA61-16789EA56814}" "1029" "0"
Uplay-->C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uninstall.exe
======System event log======
Computer Name: WIN-BQUAEVCSI11
Event Code: 7040
Message: Režim spuštění služby Windows Search byl změněn z disabled na auto start.
Record Number: 1697
Source Name: Service Control Manager
Time Written: 20141025193910.590013-000
Event Type: Informace
User: OndraNotebook\Administrator
Computer Name: WIN-BQUAEVCSI11
Event Code: 7040
Message: Režim spuštění služby Windows Search byl změněn z auto start na disabled.
Record Number: 1696
Source Name: Service Control Manager
Time Written: 20141025193859.501497-000
Event Type: Informace
User: OndraNotebook\Administrator
Computer Name: WIN-BQUAEVCSI11
Event Code: 104
Message: Byl vymazán soubor protokolu Setup.
Record Number: 1695
Source Name: Microsoft-Windows-Eventlog
Time Written: 20141025193855.494693-000
Event Type: Informace
User: OndraNotebook\Administrator
Computer Name: WIN-BQUAEVCSI11
Event Code: 104
Message: Byl vymazán soubor protokolu Application.
Record Number: 1694
Source Name: Microsoft-Windows-Eventlog
Time Written: 20141025193855.479066-000
Event Type: Informace
User: OndraNotebook\Administrator
Computer Name: WIN-BQUAEVCSI11
Event Code: 104
Message: Byl vymazán soubor protokolu System.
Record Number: 1693
Source Name: Microsoft-Windows-Eventlog
Time Written: 20141025193855.479066-000
Event Type: Informace
User: OndraNotebook\Administrator
info.txt logfile of random's system information tool 1.10 2015-07-13 00:06:47
======MBR======
0x0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000073998E8000000000200EEFFFFFF01000000FFFFFFFF00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000055AA
======Uninstall list======
-->"C:\Program Files (x86)\WildTangent Games\Game Explorer Categories - genres\Uninstall.exe"
-->MsiExec /X{8A809006-C25A-4A3A-9DAB-94659BCDB107}
abDocs Office AddIn-->MsiExec.exe /I{DCBF3379-246B-47E1-8173-639B63940838}
abDocs-->C:\Program Files (x86)\Acer\abDocs\AcerDocsSetup.exe -uninstall
abMedia-->C:\Program Files (x86)\Acer\abMedia\abMediaSetup.exe -uninstall
abPhoto-->C:\Program Files (x86)\Acer\abPhoto\abPhotoSetup.exe -uninstall
Acer Explorer Agent-->Msiexec.exe /i {4D0F42CF-1693-43D9-BDC8-19141D023EE0} ACER=1 PRODUCTNAME="Acer Explorer Agent" REMOVEUSEC=1 BOOTSTRATOR=1
Acer Launch Manager-->MsiExec.exe /i {C18D55BD-1EC6-466D-B763-8EEDDDA9100E} BOOTSTRATOR=1 GPRODUCTNAME="Acer Launch Manager" BRANDNAME="Acer" ISDT=0 INSTALLDRIVER=1
Acer Power Management-->MsiExec.exe /i {91F52DE4-B789-42B0-9311-A349F10E5479} PRODUCTNAME="Acer Power Management" BRANDNAME="Acer" NEWUPGRADE=0 BOOTSTRATOR=1 ISDT=0
Acer Quick Access-->MsiExec.exe /i {C1FA525F-D701-4B31-9D32-504FC0CF0B98} BOOTSTRATOR=1 GPRODUCTNAME="Acer Quick Access" BRANDNAME="Acer" ISDT=0 INSTALLDRIVER=0
Acer Recovery Management-->Msiexec.exe /i {07F2005A-8CAC-4A4B-83A2-DA98A722CA61} ACER=1 PRODUCTNAME="Acer Recovery Management" REMOVEUSEC=1 BOOTSTRATOR=1 ACERPRELOAD=1
Acer Remote Files-->C:\Program Files\Acer\Remote Files\AcerRemoteFileSetup.exe -uninstall
Acer Screen Grasp-->Msiexec.exe /i {84443E5D-0767-438B-B1C8-6A52FAB2101B} ACER=1 PRODUCTNAME="Acer Screen Grasp" REMOVEUSEC=1 BOOTSTRATOR=1
Acer Theft Shield-->Msiexec.exe /i {8adb0cd2-4e5a-452f-bb3b-3a2984cac749} ACER=1 PRODUCTNAME="Acer Theft Shield" REMOVEUSEC=1 BOOTSTRATOR=1
Acer Touch Tools-->MsiExec.exe /i {BB1F8130-3CB3-4896-9D28-770DFFFDE59C} BOOTSTRATOR=1 GPRODUCTNAME="Acer Touch Tools" BRANDNAME="Acer" ISDT=0
Acer User Experience Improvement Program App Monitor Plugin-->MsiExec.exe /i {978724F6-1863-4DD5-9E66-FB77F5AB5613} PRODUCTNAME="Acer User Experience Improvement Program App Monitor Plugin" BRANDNAME="Acer" BOOTSTRATOR=1
Acer User Experience Improvement Program Framework-->MsiExec.exe /i {12A718F2-2357-4D41-9E1F-18583A4745F7} PRODUCTNAME="Acer User Experience Improvement Program Framework" BRANDNAME="Acer" BOOTSTRATOR=1
Acer Video Player-->C:\Program Files (x86)\Acer\Acer Video Player\clearfiSetup.exe -uninstall
Adobe Reader XI (11.0.04) MUI-->MsiExec.exe /I{AC76BA86-7AD7-FFFF-7B44-AB0000000001}
Antichamber-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/219890
Assassin's Creed Unity-->"C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uplay.exe" uplay://uninstall/720
Avast Free Antivirus-->C:\Program Files\AVAST Software\Avast\Setup\Instup.exe /control_panel /instop:uninstall
Batman™: Arkham Origins-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/209000
BS.Player FREE-->"C:\Program Files (x86)\Webteh\BSPlayer\uninstall.exe"
Castle Crashers-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/204360
Counter-Strike: Global Offensive-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/730
CyberLink PhotoDirector 3-->"C:\Program Files (x86)\InstallShield Installation Information\{39337565-330E-4ab6-A9AE-AC81E0720B10}\Setup.exe" /z-uninstall
CyberLink PhotoDirector 3-->"C:\Program Files (x86)\InstallShield Installation Information\{39337565-330E-4ab6-A9AE-AC81E0720B10}\Setup.exe" /z-uninstall
CyberLink PowerDirector 10-->"C:\Program Files (x86)\InstallShield Installation Information\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\setup.exe" /z-uninstall
CyberLink PowerDirector 10-->"C:\Program Files (x86)\InstallShield Installation Information\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}\setup.exe" /z-uninstall
Definition Update for Microsoft Office 2013 (KB3054786) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{7F7B2328-7070-4089-896C-FCA6ACC9AE13}" "1029" "0"
Dolby Digital Plus Home Theater-->MsiExec.exe /X{7E3D8FA1-6092-469A-955B-68FC4A2C67CA}
ExpressCache-->MsiExec.exe /X{44EAE7F6-8BBF-4C3F-A573-3CD5A3C067FA}
Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\43.0.2357.132\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
Google Update Helper-->MsiExec.exe /I{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
HID Monitor-->MsiExec.exe /X{2FB493E5-EE80-4236-AEBD-D06F56446C02}
Hitman: Absolution-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/203140
Identity Card-->MsiExec.exe /X{3D9CB654-99AD-4301-89C6-0D12A790767C}
Insurgency-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/222880
Intel Experience Center - Configuration-->MsiExec.exe /I{C73A16B7-AC35-4262-9BAF-DA9B2039A563}
Intel(R) Experience Center Desktop Software-->"C:\ProgramData\Package Cache\{3608ec0a-56b4-4d9d-b038-9b3e51d72582}\install.exe" /uninstall
Intel(R) Experience Center Driver-->MsiExec.exe /X{09888C31-E15A-4E69-AF26-4BFCEE55821B}
Intel(R) Management Engine Components-->C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\Uninstall\setup.exe -uninstall
Intel(R) Processor Graphics-->C:\Program Files (x86)\Intel\Intel(R) Processor Graphics\Uninstall\setup.exe -uninstall
Intel(R) Rapid Storage Technology-->"C:\ProgramData\Intel\Package Cache\{409CB30E-E457-4008-9B1A-ED1B9EA21140}\Setup.exe" -uninstall
Intel(R) Rapid Storage Technology-->MsiExec.exe /I{E5FAF48A-145F-4B33-A062-DCFAAFAE5D41}
Intel(R) Smart Connect Technology-->MsiExec.exe /I{51AC86D3-C431-48AD-9195-0D6C930D07CD}
Intel® PROSet/Wireless Software-->"C:\ProgramData\Package Cache\{105fa5c4-72e1-41f2-a82c-884d8aa4b381}\Setup.exe" /uninstall
Intel® PROSet/Wireless WiFi Software-->MsiExec.exe /I{3181229B-05DA-46F9-B8D4-4966BDA99A74}
Intel® Trusted Connect Service Client-->MsiExec.exe /I{89AFB053-A343-46EF-97E4-D593AD7184E6}
Live Updater-->MsiExec.exe /X{EE26E302-876A-48D9-9058-3129E5B99999}
Microsoft Access MUI (Czech) 2013-->MsiExec.exe /X{90150000-0015-0405-0000-0000000FF1CE}
Microsoft ASP.NET MVC 4 Runtime-->MsiExec.exe /X{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}
Microsoft DCF MUI (Czech) 2013-->MsiExec.exe /X{90150000-0090-0405-0000-0000000FF1CE}
Microsoft Excel MUI (Czech) 2013-->MsiExec.exe /X{90150000-0016-0405-0000-0000000FF1CE}
Microsoft Groove MUI (Czech) 2013-->MsiExec.exe /X{90150000-00BA-0405-0000-0000000FF1CE}
Microsoft InfoPath MUI (Czech) 2013-->MsiExec.exe /X{90150000-0044-0405-0000-0000000FF1CE}
Microsoft Lync MUI (Czech) 2013-->MsiExec.exe /X{90150000-012B-0405-0000-0000000FF1CE}
Microsoft Office 64-bit Components 2013-->MsiExec.exe /X{90150000-002A-0000-1000-0000000FF1CE}
Microsoft Office Korrekturhilfen 2013 - Deutsch-->MsiExec.exe /X{90150000-001F-0407-0000-0000000FF1CE}
Microsoft Office OSM MUI (Czech) 2013-->MsiExec.exe /X{90150000-00E1-0405-0000-0000000FF1CE}
Microsoft Office OSM UX MUI (Czech) 2013-->MsiExec.exe /X{90150000-00E2-0405-0000-0000000FF1CE}
Microsoft Office Professional Plus 2013-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
Microsoft Office Professional Plus 2013-->MsiExec.exe /X{90150000-0011-0000-0000-0000000FF1CE}
Microsoft Office Proofing (Czech) 2013-->MsiExec.exe /X{90150000-002C-0405-0000-0000000FF1CE}
Microsoft Office Proofing Tools 2013 - English-->MsiExec.exe /X{90150000-001F-0409-0000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (Czech) 2013-->MsiExec.exe /X{90150000-002A-0405-1000-0000000FF1CE}
Microsoft Office Shared MUI (Czech) 2013-->MsiExec.exe /X{90150000-006E-0405-0000-0000000FF1CE}
Microsoft OneNote MUI (Czech) 2013-->MsiExec.exe /X{90150000-00A1-0405-0000-0000000FF1CE}
Microsoft Outlook MUI (Czech) 2013-->MsiExec.exe /X{90150000-001A-0405-0000-0000000FF1CE}
Microsoft PowerPoint MUI (Czech) 2013-->MsiExec.exe /X{90150000-0018-0405-0000-0000000FF1CE}
Microsoft Publisher MUI (Czech) 2013-->MsiExec.exe /X{90150000-0019-0405-0000-0000000FF1CE}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148-->MsiExec.exe /X{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148-->MsiExec.exe /X{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030-->"C:\ProgramData\Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030-->"C:\ProgramData\Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030-->MsiExec.exe /X{37B8F9C7-03FB-3253-8781-2517C99D7C00}
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030-->MsiExec.exe /X{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030-->MsiExec.exe /X{B175520C-86A2-35A7-8619-86DC379688B9}
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030-->MsiExec.exe /X{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}
Microsoft Visual Studio 2010 Tools for Office Runtime (x64)-->c:\Program Files\Common Files\Microsoft Shared\VSTO\10.0\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)\install.exe
Microsoft Visual Studio 2010 Tools for Office Runtime (x64)-->MsiExec.exe /X{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}
Microsoft Word MUI (Czech) 2013-->MsiExec.exe /X{90150000-001B-0405-0000-0000000FF1CE}
Microsoft XNA Framework Redistributable 4.0 Refresh-->MsiExec.exe /I{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}
Middle-earth: Shadow of Mordor-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/241930
My Game Long Name-->C:\Program Files (x86)\Steam\steamapps\common\Antichamber\Binaries\UnSetup.exe /uninstall
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština-->MsiExec.exe /X{90150000-001F-0405-0000-0000000FF1CE}
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina-->MsiExec.exe /X{90150000-001F-041B-0000-0000000FF1CE}
Nero BackItUp 12 Essentials OEM.a01-->MsiExec.exe /I{551AC8F2-FEA2-4B45-ACF7-C98681233CC9}
Nero BackItUp Help (CHM)-->MsiExec.exe /X{EF0D1292-8FC1-41BE-9740-DBC134F66415}
Nero BackItUp-->MsiExec.exe /X{DA2D3078-A58C-45E8-8EE0-18B8BE6B34F7}
Nero ControlCenter Help (CHM)-->MsiExec.exe /X{C994C746-C6D0-4EBA-B09E-DF7B18381B69}
Nero ControlCenter-->MsiExec.exe /X{ABC88553-8770-4B97-B43E-5A90647A5B63}
Nero Core Components-->MsiExec.exe /X{BEBEE34D-84A2-4EDD-8BEA-96CC54371263}
Nero Launcher-->MsiExec.exe /X{0E4630AF-0AB7-440E-A978-1A78FC4F43B9}
Nero RescueAgent Help (CHM)-->MsiExec.exe /X{0B311221-05A5-4766-8D03-7A6446794156}
Nero RescueAgent-->MsiExec.exe /X{A2D43081-CF7B-4637-A9F3-E2651AA5C4A8}
Nero Update-->MsiExec.exe /X{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}
NVIDIA GeForce Experience 2.4.5.44-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.GFExperience
NVIDIA Ovladače grafiky 353.30-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.Driver
NVIDIA PhysX-->MsiExec.exe /X{8A809006-C25A-4A3A-9DAB-94659BCDB107}
NVIDIA Systémový software PhysX 9.15.0428-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\InstallerCore\NVI2.DLL",UninstallPackage Display.PhysX
Realtek Card Reader-->"C:\Program Files (x86)\InstallShield Installation Information\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}\setup.exe" -runfromtemp -removeonly
Realtek Ethernet Controller Driver-->C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -removeonly
Realtek High Definition Audio Driver-->RunDll32 C:\PROGRA~2\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\50\Intel32\Ctor.dll,LaunchSetup "C:\Program Files (x86)\InstallShield Installation Information\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}\Setup.exe" -removeonly
Rising Storm/Red Orchestra 2 Multiplayer-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/35450
Security Update for Microsoft Office 2013 (KB2880502) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{90E7A66B-723D-4790-824A-6E4EEC0C2CBA}" "1029" "0"
Security Update for Microsoft Office 2013 (KB2910941) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{E0434175-7133-45D2-B53A-78700C2F8BC4}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3039749) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-0000-0000000FF1CE}" "{BAFACDCD-08EE-44EF-89AD-2FE88D117D59}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3039782) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{0E5853A5-B6AC-4B57-9825-71FB2CCC6D62}" "1029" "0"
Security Update for Microsoft Office 2013 (KB3039782) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-0000-0000000FF1CE}" "{0E5853A5-B6AC-4B57-9825-71FB2CCC6D62}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{7F6C4883-A18C-459A-82C1-A2F9403F2DA6}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0015-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0018-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0019-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001B-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0405-0000-0000000FF1CE}" "{0A504FDF-F8F7-4792-9360-1F45E38F005D}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0407-0000-0000000FF1CE}" "{55A588B8-2D30-4B60-AB09-5DB57C592B81}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0409-0000-0000000FF1CE}" "{1F79A96A-2A70-45B3-8A5C-79DA61952879}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-041B-0000-0000000FF1CE}" "{F1B4FD6F-C4F9-42B7-9B9E-BF3B24A8192D}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0000-1000-0000000FF1CE}" "{7A8FE9A6-2BBC-48F7-A2CF-2578F60EC895}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0405-1000-0000000FF1CE}" "{4C4BCB5E-6458-4573-99DF-535EFCFD6AFC}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002C-0405-0000-0000000FF1CE}" "{7C7CDE76-1FF8-411F-9DA4-B4F91DBB58F5}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0044-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-0000-0000000FF1CE}" "{DBBAB83F-8D50-4AFB-B0FF-8B90CA68B215}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0090-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00A1-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00BA-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00E1-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00E2-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0405-0000-0000000FF1CE}" "{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}" "1029" "0"
SpeedRunners-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/207140
Spybot - Search & Destroy-->"C:\Program Files (x86)\Spybot - Search & Destroy 2\unins000.exe"
Steam-->C:\Program Files (x86)\Steam\uninstall.exe
Synaptics Pointing Device Driver-->rundll32.exe "%ProgramFiles%\Synaptics\SynTP\SynISDLL.dll",standAloneUninstall
Update for Microsoft Access 2013 (KB3054795) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{24695AF7-BF9A-4461-9F14-B2BFAD531448}" "1029" "0"
Update for Microsoft Access 2013 (KB3054795) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0015-0405-0000-0000000FF1CE}" "{24695AF7-BF9A-4461-9F14-B2BFAD531448}" "1029" "0"
Update for Microsoft Excel 2013 (KB3054794) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{34431570-CA28-4C59-8743-D9424A254D63}" "1029" "0"
Update for Microsoft Excel 2013 (KB3054794) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0405-0000-0000000FF1CE}" "{34431570-CA28-4C59-8743-D9424A254D63}" "1029" "0"
Update for Microsoft Excel 2013 (KB3054794) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0018-0405-0000-0000000FF1CE}" "{34431570-CA28-4C59-8743-D9424A254D63}" "1029" "0"
Update for Microsoft Excel 2013 (KB3054794) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001B-0405-0000-0000000FF1CE}" "{34431570-CA28-4C59-8743-D9424A254D63}" "1029" "0"
Update for Microsoft Excel 2013 (KB3054794) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-0000-0000000FF1CE}" "{34431570-CA28-4C59-8743-D9424A254D63}" "1029" "0"
Update for Microsoft Office 2013 (KB2760344) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{A7610F07-E844-4444-8E1D-D5BC8AD0B4C5}" "1029" "0"
Update for Microsoft Office 2013 (KB2760371) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{FFF87DE6-6602-4F65-BD75-D481E0539DCD}" "1029" "0"
Update for Microsoft Office 2013 (KB2760544) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{45B7D395-EB9B-414F-9E46-5849B42326E2}" "1029" "0"
Update for Microsoft Office 2013 (KB2837654) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{6D771289-E5A7-442F-82B5-5EC4217AEF03}" "1029" "0"
Update for Microsoft Office 2013 (KB2880487) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{50294D1D-175D-4D3B-84FE-C3809F108CED}" "1029" "0"
Update for Microsoft Office 2013 (KB2880487) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0000-1000-0000000FF1CE}" "{50294D1D-175D-4D3B-84FE-C3809F108CED}" "1029" "0"
Update for Microsoft Office 2013 (KB2881001) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{31849233-AD8B-42D7-9AE1-74C79C8E8C03}" "1029" "0"
Update for Microsoft Office 2013 (KB2881017) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{5F7FA69A-A0E2-46D1-B858-F4AA26AB4977}" "1029" "0"
Update for Microsoft Office 2013 (KB2881076) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{178560C0-1602-4F9D-A5AD-9B9A8BD0BA1A}" "1029" "0"
Update for Microsoft Office 2013 (KB2881076) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0405-0000-0000000FF1CE}" "{178560C0-1602-4F9D-A5AD-9B9A8BD0BA1A}" "1029" "0"
Update for Microsoft Office 2013 (KB2883036) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{B8E73381-09B1-4895-ACD0-34385B0F526D}" "1029" "0"
Update for Microsoft Office 2013 (KB2883095) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{7A9AB1AE-98B5-4B45-86B8-33A7B946D7CA}" "1029" "0"
Update for Microsoft Office 2013 (KB2889863) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{52064DE8-AF91-4EAC-8B57-CECA10E8C1C0}" "1029" "0"
Update for Microsoft Office 2013 (KB2899498) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{E4046E6A-999E-45AE-8348-C76677AD0016}" "1029" "0"
Update for Microsoft Office 2013 (KB2899498) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0016-0405-0000-0000000FF1CE}" "{E4046E6A-999E-45AE-8348-C76677AD0016}" "1029" "0"
Update for Microsoft Office 2013 (KB2899522) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{87F6726E-6F99-42F0-8E11-55D798E57DD5}" "1029" "0"
Update for Microsoft Office 2013 (KB2956152) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{E033127B-28B7-445C-BD79-690E2C1D19B5}" "1029" "0"
Update for Microsoft Office 2013 (KB2965253) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{6F138191-3645-4924-9201-B697751436F5}" "1029" "0"
Update for Microsoft Office 2013 (KB2965259) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{87B7CE0B-7E37-45ED-AAD3-8BD14B2ED8B6}" "1029" "0"
Update for Microsoft Office 2013 (KB2965269) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{68AB99E2-2030-4092-9BE3-CB5AC65B7F18}" "1029" "0"
Update for Microsoft Office 2013 (KB2965271) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{05F96E90-A024-4CB1-9694-42C845C38546}" "1029" "0"
Update for Microsoft Office 2013 (KB2975869) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{DC99BDCA-01F1-42F5-AD31-72A5B8C17F12}" "1029" "0"
Update for Microsoft Office 2013 (KB2975869) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-0000-0000000FF1CE}" "{DC99BDCA-01F1-42F5-AD31-72A5B8C17F12}" "1029" "0"
Update for Microsoft Office 2013 (KB3023054) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{CFDCFD85-99D9-433A-B83B-8CB150C1BE14}" "1029" "0"
Update for Microsoft Office 2013 (KB3039761) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{640B3BDF-3BFA-46A9-A9BC-5BFCD6512EF2}" "1029" "0"
Update for Microsoft Office 2013 (KB3039791) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0405-0000-0000000FF1CE}" "{E058D528-D680-4421-BF4F-09A501464218}" "1029" "0"
Update for Microsoft Office 2013 (KB3039791) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0407-0000-0000000FF1CE}" "{310945E1-E2E6-4C87-B3C3-64048C4E7D1E}" "1029" "0"
Update for Microsoft Office 2013 (KB3039791) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-0409-0000-0000000FF1CE}" "{BF84EDA2-6BBA-440E-A4F0-64B66EE02498}" "1029" "0"
Update for Microsoft Office 2013 (KB3039791) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001F-041B-0000-0000000FF1CE}" "{917C0BE0-8D7E-49FA-BE28-65869983421A}" "1029" "0"
Update for Microsoft Office 2013 (KB3054774) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{4AA15AD1-38AD-4149-954E-BBEF8D7E489A}" "1029" "0"
Update for Microsoft Office 2013 (KB3054783) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{C3E627A0-AADD-46D0-8CF6-62AFC66FA08B}" "1029" "0"
Update for Microsoft Office 2013 (KB3054797) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{E3AC7DE1-363B-4D54-8E66-CA8162CB74A7}" "1029" "0"
Update for Microsoft Office 2013 (KB3054797) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0000-1000-0000000FF1CE}" "{E3AC7DE1-363B-4D54-8E66-CA8162CB74A7}" "1029" "0"
Update for Microsoft Office 2013 (KB3054853) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{BEC95BA7-2CED-4FEB-9338-5323CC12CD93}" "1029" "0"
Update for Microsoft Office 2013 (KB3054853) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-0000-0000000FF1CE}" "{BEC95BA7-2CED-4FEB-9338-5323CC12CD93}" "1029" "0"
Update for Microsoft Office 2013 (KB3054856) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{FF0A4C57-A2D2-4ACA-9DF5-23DB94A718A1}" "1029" "0"
Update for Microsoft OneDrive for Business (KB3054825) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{8ACA65FF-48EE-4428-84EC-82B56173394C}" "1029" "0"
Update for Microsoft OneDrive for Business (KB3054825) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0000-1000-0000000FF1CE}" "{8ACA65FF-48EE-4428-84EC-82B56173394C}" "1029" "0"
Update for Microsoft OneDrive for Business (KB3054825) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0405-1000-0000000FF1CE}" "{8ACA65FF-48EE-4428-84EC-82B56173394C}" "1029" "0"
Update for Microsoft OneDrive for Business (KB3054825) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00BA-0405-0000-0000000FF1CE}" "{8ACA65FF-48EE-4428-84EC-82B56173394C}" "1029" "0"
Update for Microsoft OneNote 2013 (KB3039764) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{99EF2BA7-14A6-431B-B88C-FBEF36BA1220}" "1029" "0"
Update for Microsoft OneNote 2013 (KB3039764) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0000-1000-0000000FF1CE}" "{99EF2BA7-14A6-431B-B88C-FBEF36BA1220}" "1029" "0"
Update for Microsoft OneNote 2013 (KB3039764) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-00A1-0405-0000-0000000FF1CE}" "{99EF2BA7-14A6-431B-B88C-FBEF36BA1220}" "1029" "0"
Update for Microsoft Outlook 2013 (KB3054855) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{65166A47-CCFE-44B3-806E-5759EDCCC5DA}" "1029" "0"
Update for Microsoft Outlook 2013 (KB3054855) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0405-0000-0000000FF1CE}" "{65166A47-CCFE-44B3-806E-5759EDCCC5DA}" "1029" "0"
Update for Microsoft Outlook Social Connector 2013 (KB3054854) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{3A2EB2A7-9F2D-4FA0-AE80-AD1A5A02A7AA}" "1029" "0"
Update for Microsoft Outlook Social Connector 2013 (KB3054854) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0405-0000-0000000FF1CE}" "{3A2EB2A7-9F2D-4FA0-AE80-AD1A5A02A7AA}" "1029" "0"
Update for Microsoft PowerPoint 2013 (KB3023058) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{620509A2-F7B3-45B9-86F5-B4AE82ED3F8E}" "1029" "0"
Update for Microsoft PowerPoint 2013 (KB3023058) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0018-0405-0000-0000000FF1CE}" "{620509A2-F7B3-45B9-86F5-B4AE82ED3F8E}" "1029" "0"
Update for Microsoft Project 2013 (KB3054830) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0000-1000-0000000FF1CE}" "{83101C57-F4EC-46B7-A2B7-3580C779FE5A}" "1029" "0"
Update for Microsoft Publisher 2013 (KB2883048) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{08F93D29-1D44-4E70-B73F-001BF01144F0}" "1029" "0"
Update for Microsoft Publisher 2013 (KB2883048) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0019-0405-0000-0000000FF1CE}" "{08F93D29-1D44-4E70-B73F-001BF01144F0}" "1029" "0"
Update for Microsoft Visio Viewer 2013 (KB2817301) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{25C61889-2E44-4BE1-9E96-9364BFDCF501}" "1029" "0"
Update for Microsoft Visio Viewer 2013 (KB2817301) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-006E-0405-0000-0000000FF1CE}" "{25C61889-2E44-4BE1-9E96-9364BFDCF501}" "1029" "0"
Update for Microsoft Word 2013 (KB2878319) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{A7CD05CC-CA85-428C-91FD-74A908D126E1}" "1029" "0"
Update for Microsoft Word 2013 (KB3039755) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{4F12EF96-D02D-4475-BE48-61B15953C680}" "1029" "0"
Update for Microsoft Word 2013 (KB3039755) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001A-0405-0000-0000000FF1CE}" "{4F12EF96-D02D-4475-BE48-61B15953C680}" "1029" "0"
Update for Microsoft Word 2013 (KB3039755) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-001B-0405-0000-0000000FF1CE}" "{4F12EF96-D02D-4475-BE48-61B15953C680}" "1029" "0"
Update for Microsoft Word 2013 (KB3039755) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0405-0000-0000000FF1CE}" "{4F12EF96-D02D-4475-BE48-61B15953C680}" "1029" "0"
Update for Skype for Business 2015 (KB2889853) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0405-0000-0000000FF1CE}" "{6B99320D-817F-42CE-B45E-5C9AD42678E3}" "1029" "0"
Update for Skype for Business 2015 (KB3054791) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-0011-0000-0000-0000000FF1CE}" "{04ADDEC1-208F-4295-AA61-16789EA56814}" "1029" "0"
Update for Skype for Business 2015 (KB3054791) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-002A-0000-1000-0000000FF1CE}" "{04ADDEC1-208F-4295-AA61-16789EA56814}" "1029" "0"
Update for Skype for Business 2015 (KB3054791) 32-Bit Edition-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\Oarpmany.exe" /removereleaseinpatch "{90150000-012B-0405-0000-0000000FF1CE}" "{04ADDEC1-208F-4295-AA61-16789EA56814}" "1029" "0"
Uplay-->C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\Uninstall.exe
======System event log======
Computer Name: WIN-BQUAEVCSI11
Event Code: 7040
Message: Režim spuštění služby Windows Search byl změněn z disabled na auto start.
Record Number: 1697
Source Name: Service Control Manager
Time Written: 20141025193910.590013-000
Event Type: Informace
User: OndraNotebook\Administrator
Computer Name: WIN-BQUAEVCSI11
Event Code: 7040
Message: Režim spuštění služby Windows Search byl změněn z auto start na disabled.
Record Number: 1696
Source Name: Service Control Manager
Time Written: 20141025193859.501497-000
Event Type: Informace
User: OndraNotebook\Administrator
Computer Name: WIN-BQUAEVCSI11
Event Code: 104
Message: Byl vymazán soubor protokolu Setup.
Record Number: 1695
Source Name: Microsoft-Windows-Eventlog
Time Written: 20141025193855.494693-000
Event Type: Informace
User: OndraNotebook\Administrator
Computer Name: WIN-BQUAEVCSI11
Event Code: 104
Message: Byl vymazán soubor protokolu Application.
Record Number: 1694
Source Name: Microsoft-Windows-Eventlog
Time Written: 20141025193855.479066-000
Event Type: Informace
User: OndraNotebook\Administrator
Computer Name: WIN-BQUAEVCSI11
Event Code: 104
Message: Byl vymazán soubor protokolu System.
Record Number: 1693
Source Name: Microsoft-Windows-Eventlog
Time Written: 20141025193855.479066-000
Event Type: Informace
User: OndraNotebook\Administrator
Re: Windows přestal pracovat
=====Application event log=====
Computer Name: WIN-BQUAEVCSI11
Event Code: 1003
Message: Služba Windows Search byla spuštěna.
Record Number: 959
Source Name: Microsoft-Windows-Search
Time Written: 20141025193910.000000-000
Event Type: Informace
User:
Computer Name: WIN-BQUAEVCSI11
Event Code: 1000
Message: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully. The Record Data in the data section contains the new index values assigned to this service.
Record Number: 958
Source Name: Microsoft-Windows-LoadPerf
Time Written: 20141025193908.776248-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: WIN-BQUAEVCSI11
Event Code: 1001
Message: Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully. The Record Data contains the new values of the system Last Counter and Last Help registry entries.
Record Number: 957
Source Name: Microsoft-Windows-LoadPerf
Time Written: 20141025193908.698125-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: WIN-BQUAEVCSI11
Event Code: 1013
Message: Služba Windows Search byla řádně zastavena.
Record Number: 956
Source Name: Microsoft-Windows-Search
Time Written: 20141025193909.000000-000
Event Type: Informace
User:
Computer Name: WIN-BQUAEVCSI11
Event Code: 103
Message: SearchIndexer (3392) Windows: Databázový stroj zastavil instanci (0).
Nesprávné vypnutí: 0
Sekvence interního načasování: [1] 0.000, [2] 0.000, [3] 0.000, [4] 0.000, [5] 0.016, [6] 0.000, [7] 0.000, [8] 0.000, [9] 0.015, [10] 0.000, [11] 0.000, [12] 0.000, [13] 0.000, [14] 0.000, [15] 0.000.
Record Number: 955
Source Name: ESENT
Time Written: 20141025193909.000000-000
Event Type: Informace
User:
=====Security event log=====
Computer Name: WIN-BQUAEVCSI11
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
Oprávnění: SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 6148
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141025193856.761203-000
Event Type: Úspěšný audit
User:
Computer Name: WIN-BQUAEVCSI11
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: WIN-BQUAEVCSI11$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Typ přihlášení: 5
Úroveň zosobnění: Zosobnění
Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x340
Název procesu: C:\Windows\System32\services.exe
Informace o síti:
Název pracovní stanice:
Adresa zdrojové sítě -
Zdrojový port: -
Podrobné informace o ověření:
Proces přihlášení: Advapi
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole úrovně zosobnění označuje rozsah, ve kterém může být proces v přihlašovací relaci zosobněn.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 6147
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141025193856.761203-000
Event Type: Úspěšný audit
User:
Computer Name: WIN-BQUAEVCSI11
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
Oprávnění: SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 6146
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141025193855.385313-000
Event Type: Úspěšný audit
User:
Computer Name: WIN-BQUAEVCSI11
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: WIN-BQUAEVCSI11$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Typ přihlášení: 5
Úroveň zosobnění: Zosobnění
Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x340
Název procesu: C:\Windows\System32\services.exe
Informace o síti:
Název pracovní stanice:
Adresa zdrojové sítě -
Zdrojový port: -
Podrobné informace o ověření:
Proces přihlášení: Advapi
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole úrovně zosobnění označuje rozsah, ve kterém může být proces v přihlašovací relaci zosobněn.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 6145
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141025193855.385313-000
Event Type: Úspěšný audit
User:
Computer Name: WIN-BQUAEVCSI11
Event Code: 1102
Message: Protokol auditu byl vymazán.
Předmět:
ID zabezpečení: S-1-5-21-1836637139-1634695585-659701357-500
Název účtu: Administrator
Název domény: WIN-BQUAEVCSI11
ID přihlášení: 0x2EA8B
Record Number: 6144
Source Name: Microsoft-Windows-Eventlog
Time Written: 20141025193855.494693-000
Event Type: Úspěšný audit
User:
======Environment variables======
"FP_NO_HOST_CHECK"=NO
"USERNAME"=SYSTEM
"Path"=C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;C:\Program Files\Acer\Remote Files\;C:\Program Files\Condusiv Technologies\ExpressCache\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common
"ComSpec"=%SystemRoot%\system32\cmd.exe
"TMP"=%SystemRoot%\TEMP
"OS"=Windows_NT
"windir"=%SystemRoot%
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=4
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 69 Stepping 1, GenuineIntel
"PROCESSOR_REVISION"=4501
-----------------EOF-----------------
Computer Name: WIN-BQUAEVCSI11
Event Code: 1003
Message: Služba Windows Search byla spuštěna.
Record Number: 959
Source Name: Microsoft-Windows-Search
Time Written: 20141025193910.000000-000
Event Type: Informace
User:
Computer Name: WIN-BQUAEVCSI11
Event Code: 1000
Message: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully. The Record Data in the data section contains the new index values assigned to this service.
Record Number: 958
Source Name: Microsoft-Windows-LoadPerf
Time Written: 20141025193908.776248-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: WIN-BQUAEVCSI11
Event Code: 1001
Message: Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully. The Record Data contains the new values of the system Last Counter and Last Help registry entries.
Record Number: 957
Source Name: Microsoft-Windows-LoadPerf
Time Written: 20141025193908.698125-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM
Computer Name: WIN-BQUAEVCSI11
Event Code: 1013
Message: Služba Windows Search byla řádně zastavena.
Record Number: 956
Source Name: Microsoft-Windows-Search
Time Written: 20141025193909.000000-000
Event Type: Informace
User:
Computer Name: WIN-BQUAEVCSI11
Event Code: 103
Message: SearchIndexer (3392) Windows: Databázový stroj zastavil instanci (0).
Nesprávné vypnutí: 0
Sekvence interního načasování: [1] 0.000, [2] 0.000, [3] 0.000, [4] 0.000, [5] 0.016, [6] 0.000, [7] 0.000, [8] 0.000, [9] 0.015, [10] 0.000, [11] 0.000, [12] 0.000, [13] 0.000, [14] 0.000, [15] 0.000.
Record Number: 955
Source Name: ESENT
Time Written: 20141025193909.000000-000
Event Type: Informace
User:
=====Security event log=====
Computer Name: WIN-BQUAEVCSI11
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
Oprávnění: SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 6148
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141025193856.761203-000
Event Type: Úspěšný audit
User:
Computer Name: WIN-BQUAEVCSI11
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: WIN-BQUAEVCSI11$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Typ přihlášení: 5
Úroveň zosobnění: Zosobnění
Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x340
Název procesu: C:\Windows\System32\services.exe
Informace o síti:
Název pracovní stanice:
Adresa zdrojové sítě -
Zdrojový port: -
Podrobné informace o ověření:
Proces přihlášení: Advapi
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole úrovně zosobnění označuje rozsah, ve kterém může být proces v přihlašovací relaci zosobněn.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 6147
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141025193856.761203-000
Event Type: Úspěšný audit
User:
Computer Name: WIN-BQUAEVCSI11
Event Code: 4672
Message: Novému přihlášení byla přiřazena zvláštní oprávnění.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
Oprávnění: SeAssignPrimaryTokenPrivilege
SeTcbPrivilege
SeSecurityPrivilege
SeTakeOwnershipPrivilege
SeLoadDriverPrivilege
SeBackupPrivilege
SeRestorePrivilege
SeDebugPrivilege
SeAuditPrivilege
SeSystemEnvironmentPrivilege
SeImpersonatePrivilege
Record Number: 6146
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141025193855.385313-000
Event Type: Úspěšný audit
User:
Computer Name: WIN-BQUAEVCSI11
Event Code: 4624
Message: Účet byl úspěšně přihlášen.
Předmět:
ID zabezpečení: S-1-5-18
Název účtu: WIN-BQUAEVCSI11$
Doména účtu: WORKGROUP
ID přihlášení: 0x3E7
Typ přihlášení: 5
Úroveň zosobnění: Zosobnění
Nové přihlášení:
ID zabezpečení: S-1-5-18
Název účtu: SYSTEM
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3E7
GUID přihlášení: {00000000-0000-0000-0000-000000000000}
Informace o procesu:
ID procesu: 0x340
Název procesu: C:\Windows\System32\services.exe
Informace o síti:
Název pracovní stanice:
Adresa zdrojové sítě -
Zdrojový port: -
Podrobné informace o ověření:
Proces přihlášení: Advapi
Balíček ověření: Negotiate
Přenosové služby: -
Název balíčku (pouze NTLM): -
Délka klíče: 0
Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.
Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.
Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).
Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.
Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.
Pole úrovně zosobnění označuje rozsah, ve kterém může být proces v přihlašovací relaci zosobněn.
Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 6145
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20141025193855.385313-000
Event Type: Úspěšný audit
User:
Computer Name: WIN-BQUAEVCSI11
Event Code: 1102
Message: Protokol auditu byl vymazán.
Předmět:
ID zabezpečení: S-1-5-21-1836637139-1634695585-659701357-500
Název účtu: Administrator
Název domény: WIN-BQUAEVCSI11
ID přihlášení: 0x2EA8B
Record Number: 6144
Source Name: Microsoft-Windows-Eventlog
Time Written: 20141025193855.494693-000
Event Type: Úspěšný audit
User:
======Environment variables======
"FP_NO_HOST_CHECK"=NO
"USERNAME"=SYSTEM
"Path"=C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;C:\Program Files\Intel\WiFi\bin\;C:\Program Files\Common Files\Intel\WirelessCommon\;C:\Program Files\Acer\Remote Files\;C:\Program Files\Condusiv Technologies\ExpressCache\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common
"ComSpec"=%SystemRoot%\system32\cmd.exe
"TMP"=%SystemRoot%\TEMP
"OS"=Windows_NT
"windir"=%SystemRoot%
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=4
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 69 Stepping 1, GenuineIntel
"PROCESSOR_REVISION"=4501
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Windows přestal pracovat
Zdarvím!
Dejte log FRST: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .
Dejte log FRST: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Windows přestal pracovat
Zde je výsledek
- Přílohy
-
- Nový textový dokument.rar
- (54.21 KiB) Staženo 111 x
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Windows přestal pracovat
Teď spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Windows přestal pracovat
Zde je další log:
# AdwCleaner v4.208 - Log vytvořen 16/07/2015 v 02:35:44
# Aktualizováno 09/07/2015 by Xplode
# Databáze : 2015-07-15.1 [Server]
# Operační system : Windows 8.1 (x64)
# Uživatelské jméno : OZuna_000 - ONDRANOTEBOOK
# Spuštěno z : C:\Users\OZuna_000\Desktop\adwcleaner_4.208.exe
# Nastavení : Čištění
***** [ Služby ] *****
***** [ Soubory / Složky ] *****
Složka Smazáno : C:\Users\Janička\AppData\Local\pokki
Soubor Smazáno : C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokki Start Menu.lnk
Soubor Smazáno : C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_st.chatango.com_0.localstorage
Soubor Smazáno : C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_st.chatango.com_0.localstorage-journal
***** [ Naplánované úlohy ] *****
***** [ Zástupci ] *****
***** [ Registry ] *****
Klíč Smazáno : HKCU\Software\Classes\pokki
Klíč Smazáno : HKCU\Software\Conduit
Klíč Smazáno : HKLM\SOFTWARE\Conduit
***** [ Prohlížeče ] *****
-\\ Internet Explorer v11.0.9600.17840
-\\ Google Chrome v43.0.2357.134
[C:\Users\Janička\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
[C:\Users\Janička\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=DVS2&o=1586&locale=en_US&apn_uid=26cd44c2-ce67-4210-ba69-cb17e4acfd1a&apn_ptnrs=^AAA&apn_sauid=D6EA4AB4-C6BF-41D9-8C09-38E1EF4DB5A1&apn_dtid=^YYYYYY^YY^CZ&q={searchTerms}
[C:\Users\Janička\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://search.babylon.com/web/{searchTerms}?babsrc=SP_ss&affID=100488&mntrId=accf41fd000000000000001d60562d3d
*************************
AdwCleaner[R0].txt - [2053 bytů] - [16/07/2015 00:19:23]
AdwCleaner[S0].txt - [1923 bytů] - [16/07/2015 02:35:44]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1981 bytů] ##########
# AdwCleaner v4.208 - Log vytvořen 16/07/2015 v 02:35:44
# Aktualizováno 09/07/2015 by Xplode
# Databáze : 2015-07-15.1 [Server]
# Operační system : Windows 8.1 (x64)
# Uživatelské jméno : OZuna_000 - ONDRANOTEBOOK
# Spuštěno z : C:\Users\OZuna_000\Desktop\adwcleaner_4.208.exe
# Nastavení : Čištění
***** [ Služby ] *****
***** [ Soubory / Složky ] *****
Složka Smazáno : C:\Users\Janička\AppData\Local\pokki
Soubor Smazáno : C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pokki Start Menu.lnk
Soubor Smazáno : C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_st.chatango.com_0.localstorage
Soubor Smazáno : C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_st.chatango.com_0.localstorage-journal
***** [ Naplánované úlohy ] *****
***** [ Zástupci ] *****
***** [ Registry ] *****
Klíč Smazáno : HKCU\Software\Classes\pokki
Klíč Smazáno : HKCU\Software\Conduit
Klíč Smazáno : HKLM\SOFTWARE\Conduit
***** [ Prohlížeče ] *****
-\\ Internet Explorer v11.0.9600.17840
-\\ Google Chrome v43.0.2357.134
[C:\Users\Janička\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://en.softonic.com/s/{searchTerms}
[C:\Users\Janička\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://websearch.ask.com/redirect?client=cr&src=kw&tb=DVS2&o=1586&locale=en_US&apn_uid=26cd44c2-ce67-4210-ba69-cb17e4acfd1a&apn_ptnrs=^AAA&apn_sauid=D6EA4AB4-C6BF-41D9-8C09-38E1EF4DB5A1&apn_dtid=^YYYYYY^YY^CZ&q={searchTerms}
[C:\Users\Janička\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Smazáno [Search Provider] : hxxp://search.babylon.com/web/{searchTerms}?babsrc=SP_ss&affID=100488&mntrId=accf41fd000000000000001d60562d3d
*************************
AdwCleaner[R0].txt - [2053 bytů] - [16/07/2015 00:19:23]
AdwCleaner[S0].txt - [1923 bytů] - [16/07/2015 02:35:44]
########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [1981 bytů] ##########
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Windows přestal pracovat
Dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Windows přestal pracovat
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:13-07-2015
Ran by OZuna_000 (administrator) on ONDRANOTEBOOK on 17-07-2015 02:26:20
Running from C:\Users\OZuna_000\Desktop
Loaded Profiles: OZuna_000 (Available Profiles: OZuna_000 & Janička)
Platform: Windows 8.1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Condusiv Technologies) C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
() C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Touch Tools\TouchToolsLaunchSvc.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
() C:\Program Files (x86)\Acer Incorporated\HID Monitor\HIDMonitor.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(Dolby Laboratories Inc.) C:\Program Files\Dolby Digital Plus\ddp.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Screen Grasp\GestureDetection.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Screen Grasp\Launch Screen Grasp.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QuickAccess.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Theft Shield\USecuAppClient.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler64.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(BitTorrent, Inc.) C:\Users\OZuna_000\AppData\Roaming\uTorrent\utorrent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\livecomm.exe
(NVIDIA Corporation) C:\Users\OZuna_000\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2754704 2015-06-24] (NVIDIA Corporation)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13647576 2013-08-27] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-07] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM-x32\...\Run: [Adobe ARM] => c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-09-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe [92928 2015-05-06] ()
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-06-12] (Avast Software s.r.o.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-1836637139-1634695585-659701357-1001\...\Run: [GoogleChromeAutoLaunch_FE2E31A5DDB0C8AEC57FD4B3DA542873] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896 2015-07-13] (Google Inc.)
HKU\S-1-5-21-1836637139-1634695585-659701357-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2892992 2015-06-04] (Valve Corporation)
HKU\S-1-5-21-1836637139-1634695585-659701357-1001\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [4566952 2014-06-24] (Safer-Networking Ltd.)
HKU\S-1-5-21-1836637139-1634695585-659701357-1001\...\MountPoints2: {53d00e26-25b2-11e5-8266-c45444f4ade4} - "D:\autorun.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ISCTSystray.lnk [2014-10-25]
ShortcutTarget: ISCTSystray.lnk -> C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe (Intel Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-06-12] (Avast Software s.r.o.)
BootExecute: autocheck autochk * sdnclean64.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1836637139-1634695585-659701357-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://acer13.msn.com
HKU\S-1-5-21-1836637139-1634695585-659701357-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com/?pc=ACJB
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1836637139-1634695585-659701357-1001 -> {620483FD-B35D-45E5-9A1D-BC6FD626C4C2} URL =
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-06-12] (Avast Software s.r.o.)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-06-16] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-06-25] (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-06-12] (Avast Software s.r.o.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{472218B2-E328-4BDC-9C2D-5D6D9AC2F5BC}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{61132ED1-76D4-434A-AE84-97A88816F38F}: [DhcpNameServer] 10.0.1.2
FireFox:
========
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-04] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-04] (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-04-22] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.)
FF Plugin-x32: Adobe Reader -> c:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2013-09-05] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-04-22] (Microsoft Corporation)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-06-12]
Chrome:
=======
CHR Profile: C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-06-12]
CHR Extension: (Duolingo on the Web) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiahmijlpehemcpleichkcokhegllfjl [2015-06-12]
CHR Extension: (Google Docs) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-06-12]
CHR Extension: (Google Drive) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-06-12]
CHR Extension: (YouTube) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-06-12]
CHR Extension: (Adblock Plus) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-06-12]
CHR Extension: (Google Search) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-06-12]
CHR Extension: (Avast SafePrice) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2015-06-18]
CHR Extension: (Google Sheets) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-06-12]
CHR Extension: (AdBlock) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-06-12]
CHR Extension: (Avast Online Security) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-06-14]
CHR Extension: (Google Wallet) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-06-12]
CHR Extension: (Gmail) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-06-12]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-06-12]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-06-12]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-06-12] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4034896 2015-06-12] (Avast Software)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573544 2014-03-21] (Acer Incorporated)
R2 ExpressCache; C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe [828656 2013-11-18] (Condusiv Technologies)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-06-24] (NVIDIA Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [282096 2014-03-18] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel(R) Corporation)
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [157128 2013-09-19] (Intel Corporation)
R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [200168 2013-12-04] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-04] (Intel Corporation)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [459496 2014-01-18] (Acer Incorporate)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [284912 2013-10-11] ()
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1868432 2015-06-24] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23007376 2015-06-24] (NVIDIA Corporation)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [457960 2014-03-05] (Acer Incorporate)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] ()
R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-03-05] (Acer Incorporate)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
R2 TouchToolsLaunchService; C:\Program Files\Acer\Acer Touch Tools\TouchToolsLaunchSvc.exe [250624 2014-01-09] (Acer Incorporated)
R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [222952 2014-01-25] (acer)
S3 USecuAppSvc; C:\Program Files\Acer\Acer Theft Shield\USecuAppSvc.exe [347176 2013-08-14] (Acer Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3671792 2013-10-11] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-06-12] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2015-06-12] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-06-12] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-06-12] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-06-12] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-06-27] (Avast Software s.r.o.)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2015-06-12] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2015-06-12] ()
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
S3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [140600 2013-07-23] (Motorola Solutions, Inc.)
R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1390904 2013-09-06] (Motorola Solutions, Inc.)
R1 excfs; C:\Windows\System32\DRIVERS\excfs.sys [25840 2013-11-18] (Condusiv Technologies)
R0 excsd; C:\Windows\System32\DRIVERS\excsd.sys [117488 2013-11-18] (Condusiv Technologies)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [118728 2013-09-19] (Intel Corporation)
R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [21408 2013-08-14] ()
R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [21920 2013-08-14] ()
R3 INETMON; C:\Windows\System32\Drivers\INETMON.sys [29088 2013-08-14] ()
R3 ISCT; C:\Windows\System32\drivers\ISCTD64.sys [46568 2013-08-14] ()
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-04] (Intel Corporation)
R3 NETwNb64; C:\Windows\system32\DRIVERS\NETwbw02.sys [3607520 2013-10-14] (Intel Corporation)
S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [4649440 2013-06-18] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-06-24] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [46768 2015-05-19] (NVIDIA Corporation)
S3 QRDCIO; C:\Windows\System32\drivers\QRDCIO.sys [9728 2009-10-20] (QUANTA)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated)
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [427736 2013-08-09] (Realsil Semiconductor Corporation)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-10-01] (Synaptics Incorporated)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-06-12] (Avast Software)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-17 02:25 - 2015-07-17 02:25 - 02133504 _____ (Farbar) C:\Users\OZuna_000\Desktop\FRST64.exe
2015-07-16 23:03 - 2015-07-16 23:05 - 00000000 ____D C:\Users\OZuna_000\Desktop\Kabát - Do pekla do nebe (2015)[FLAC]
2015-07-16 23:02 - 2015-07-16 23:02 - 00012392 _____ C:\Users\OZuna_000\Desktop\[kat.cr]kabát.do.pekla.do.nebe.2015.flac.torrent
2015-07-16 00:18 - 2015-07-16 02:35 - 00000000 ____D C:\AdwCleaner
2015-07-16 00:18 - 2015-07-16 00:18 - 02248704 _____ C:\Users\OZuna_000\Desktop\adwcleaner_4.208.exe
2015-07-15 22:30 - 2015-07-15 22:30 - 00055516 _____ C:\Users\OZuna_000\Desktop\Nový textový dokument.rar
2015-07-15 22:30 - 2015-07-15 22:30 - 00000000 ____D C:\Users\OZuna_000\AppData\Roaming\WinRAR
2015-07-15 22:30 - 2015-07-15 22:30 - 00000000 ____D C:\Users\OZuna_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-07-15 22:30 - 2015-07-15 22:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-07-15 22:30 - 2015-07-15 22:30 - 00000000 ____D C:\Program Files\WinRAR
2015-07-15 22:27 - 2015-07-15 22:27 - 00521117 _____ C:\Users\OZuna_000\Desktop\Nový textový dokument.txt
2015-07-15 22:25 - 2015-07-15 22:26 - 00042256 _____ C:\Users\OZuna_000\Desktop\Addition.txt
2015-07-15 22:24 - 2015-07-17 02:26 - 00022513 _____ C:\Users\OZuna_000\Desktop\FRST.txt
2015-07-15 22:23 - 2015-07-17 02:26 - 00000000 ____D C:\FRST
2015-07-15 22:20 - 2015-07-15 22:21 - 00112640 _____ (forum.viry.cz) C:\Users\OZuna_000\Desktop\FRSTLauncher (1).exe
2015-07-15 01:59 - 2015-07-09 21:51 - 00136904 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-07-15 01:59 - 2015-07-09 20:40 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-07-15 01:59 - 2015-07-09 18:03 - 03701760 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-07-15 01:59 - 2015-07-09 17:54 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-07-15 01:59 - 2015-07-09 17:53 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-07-15 01:59 - 2015-07-09 17:50 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2015-07-15 01:59 - 2015-07-09 17:50 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-07-15 01:59 - 2015-07-09 17:48 - 00891904 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-07-15 01:59 - 2015-07-09 17:46 - 02229248 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-07-15 01:59 - 2015-07-09 17:38 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-07-15 01:59 - 2015-07-09 17:37 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-07-15 01:59 - 2015-07-09 17:35 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-07-15 01:59 - 2015-07-09 17:34 - 00721920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-07-15 01:59 - 2015-06-28 07:07 - 00442712 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-07-15 01:59 - 2015-06-28 07:07 - 00178008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-07-15 01:59 - 2015-06-28 07:06 - 01311960 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-07-15 01:59 - 2015-06-28 07:06 - 00332120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-07-15 01:59 - 2015-06-27 18:42 - 00747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-07-15 01:59 - 2015-06-27 05:13 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-07-15 01:59 - 2015-06-27 05:12 - 00401408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-07-15 01:59 - 2015-06-27 05:12 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-07-15 01:59 - 2015-06-27 05:08 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-07-15 01:59 - 2015-06-27 05:08 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-07-15 01:59 - 2015-06-27 04:40 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-07-15 01:59 - 2015-06-27 04:14 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-07-15 01:59 - 2015-06-27 04:05 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-07-15 01:59 - 2015-06-27 04:00 - 00989184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-07-15 01:59 - 2015-06-27 03:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-07-15 01:59 - 2015-06-27 03:26 - 00802816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-07-15 01:59 - 2015-06-25 04:31 - 04177920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-07-15 01:59 - 2015-06-16 00:41 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-07-15 01:59 - 2015-06-16 00:24 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-07-15 01:59 - 2015-06-15 23:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-07-15 01:59 - 2015-06-15 23:09 - 03607552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-07-15 01:59 - 2015-06-15 22:50 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-07-15 01:59 - 2015-06-15 21:57 - 02460160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-07-15 01:59 - 2015-05-30 23:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2015-07-15 01:59 - 2015-05-30 21:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-07-15 01:59 - 2015-05-30 21:35 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-07-15 01:59 - 2015-05-07 17:21 - 00522240 _____ (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll
2015-07-15 01:59 - 2015-05-07 17:05 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GeofenceMonitorService.dll
2015-07-15 01:59 - 2015-05-03 02:39 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-07-15 01:59 - 2015-04-30 01:22 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2015-07-15 01:58 - 2015-06-16 00:39 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-07-15 01:58 - 2015-06-16 00:38 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-07-15 01:58 - 2015-06-16 00:26 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-07-15 01:58 - 2015-06-16 00:24 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-07-15 01:58 - 2015-06-16 00:02 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-07-15 01:58 - 2015-06-15 23:58 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-07-15 01:58 - 2015-06-15 23:57 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-07-15 01:58 - 2015-06-15 23:56 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-07-15 01:58 - 2015-06-15 23:55 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-07-15 01:58 - 2015-06-15 23:49 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-07-15 01:58 - 2015-06-15 23:41 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-07-15 01:58 - 2015-06-15 23:38 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-07-15 01:58 - 2015-06-15 23:36 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-07-15 01:58 - 2015-06-15 23:17 - 02880000 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-07-15 01:58 - 2015-06-15 23:16 - 02427392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-07-15 01:58 - 2015-06-15 23:15 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-07-15 01:58 - 2015-06-15 23:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-07-15 01:58 - 2015-06-15 23:04 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-07-15 01:58 - 2015-06-15 23:03 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-07-15 01:58 - 2015-06-15 22:52 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-07-15 01:58 - 2015-06-15 22:47 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-07-15 01:58 - 2015-06-15 22:44 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-07-15 01:58 - 2015-06-15 22:43 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-07-15 01:58 - 2015-06-15 22:42 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-07-15 01:58 - 2015-06-15 22:41 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-07-15 01:58 - 2015-06-15 22:37 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-07-15 01:58 - 2015-06-15 22:32 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-07-15 01:58 - 2015-06-15 22:31 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-07-15 01:58 - 2015-06-15 22:30 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-07-15 01:58 - 2015-06-15 22:30 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-07-15 01:58 - 2015-06-15 22:17 - 01048576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-07-15 01:58 - 2015-06-15 22:07 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-07-15 01:58 - 2015-06-15 22:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-07-15 01:57 - 2015-06-30 00:43 - 00026288 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-07-15 01:57 - 2015-06-29 17:07 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-07-15 01:57 - 2015-06-29 17:07 - 01084928 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-07-15 01:57 - 2015-06-29 17:07 - 00764928 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-07-15 01:57 - 2015-06-29 17:07 - 00433152 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-07-15 01:57 - 2015-06-29 17:07 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-07-15 01:57 - 2015-06-27 01:21 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-07-15 01:57 - 2015-06-27 01:21 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-07-15 01:57 - 2015-05-11 20:17 - 01201664 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-07-15 01:57 - 2015-05-07 19:50 - 22292672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-07-15 01:57 - 2015-05-07 19:00 - 03109376 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2015-07-15 01:57 - 2015-05-07 18:53 - 19734960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-07-15 01:57 - 2015-05-07 18:12 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2015-07-15 01:57 - 2015-05-03 17:09 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-07-15 01:57 - 2015-05-03 16:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-07-15 01:57 - 2015-05-03 16:55 - 00971776 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2015-07-15 01:57 - 2015-05-03 16:49 - 00811008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2015-07-15 01:57 - 2015-04-25 04:25 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2015-07-15 01:57 - 2014-11-04 21:25 - 00059712 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\kbdclass.sys
2015-07-15 01:57 - 2014-11-04 21:25 - 00051008 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\mouclass.sys
2015-07-15 01:57 - 2014-11-04 08:55 - 00026112 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sermouse.sys
2015-07-15 01:57 - 2014-11-04 08:54 - 00108544 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\i8042prt.sys
2015-07-15 01:57 - 2014-11-04 08:54 - 00032256 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2015-07-15 01:57 - 2014-11-04 08:54 - 00030208 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\mouhid.sys
2015-07-15 01:56 - 2015-07-03 15:52 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-07-15 01:56 - 2015-07-03 15:52 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-07-15 01:56 - 2015-07-03 15:50 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-07-15 01:56 - 2015-07-03 15:50 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-07-15 01:56 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-07-15 01:56 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-07-15 01:56 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-07-15 01:56 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-07-15 01:56 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-07-15 01:56 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-07-15 01:56 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-07-15 01:56 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-07-15 01:56 - 2015-07-02 00:08 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-07-15 01:56 - 2015-07-01 23:14 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-07-15 01:56 - 2015-06-16 07:36 - 01661576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-07-15 01:56 - 2015-06-16 07:36 - 01212248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-07-15 01:56 - 2015-06-11 05:49 - 01380600 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-07-15 01:56 - 2015-06-10 18:13 - 01097216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-07-15 01:56 - 2015-05-12 15:19 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll
2015-07-15 01:56 - 2015-05-11 18:34 - 00332800 _____ (Microsoft Corporation) C:\Windows\system32\fhcpl.dll
2015-07-15 01:56 - 2015-05-07 18:47 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-07-15 01:56 - 2015-05-03 17:07 - 07784448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2015-07-15 01:56 - 2015-05-03 16:57 - 05264384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2015-07-15 01:56 - 2015-05-02 01:33 - 00410739 _____ C:\Windows\system32\ApnDatabase.xml
2015-07-15 01:56 - 2015-04-28 15:13 - 00513480 _____ C:\Windows\SysWOW64\locale.nls
2015-07-15 01:56 - 2015-04-28 15:13 - 00513480 _____ C:\Windows\system32\locale.nls
2015-07-15 01:56 - 2015-04-23 17:47 - 03084288 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-07-15 01:56 - 2015-04-23 17:16 - 02471424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-07-13 00:46 - 2015-07-13 00:46 - 00000017 _____ C:\Users\OZuna_000\AppData\Local\resmon.resmoncfg
2015-07-13 00:06 - 2015-07-13 00:07 - 00000000 ____D C:\Program Files\trend micro
2015-07-13 00:06 - 2015-07-13 00:06 - 01222144 _____ C:\Users\OZuna_000\Desktop\RSITx64.exe
2015-07-13 00:06 - 2015-07-13 00:06 - 00000000 ____D C:\rsit
2015-07-12 19:08 - 2015-07-12 21:48 - 1432596560 _____ C:\Users\OZuna_000\Desktop\Pán-prstenů---Společenstvo-Prstenu-2001-cz-[natu3].avi
2015-07-10 00:38 - 2015-07-10 00:38 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2015-07-06 12:41 - 2015-07-06 12:41 - 00000000 ____D C:\Users\Janička\AppData\Roaming\Macromedia
2015-07-06 11:10 - 2015-07-06 11:11 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1836637139-1634695585-659701357-1004
2015-07-06 11:07 - 2015-07-06 11:07 - 00002322 _____ C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
2015-07-06 11:05 - 2015-07-06 11:05 - 00001276 _____ C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RtkGUI.lnk
2015-07-06 11:05 - 2015-07-06 11:05 - 00000000 ____D C:\Users\Janička\AppData\Roaming\AVAST Software
2015-07-06 11:05 - 2015-07-06 11:05 - 00000000 ____D C:\Users\Janička\AppData\Local\NVIDIA Corporation
2015-07-06 11:04 - 2015-07-06 11:09 - 00000000 ____D C:\Users\Janička\AppData\Local\Packages
2015-07-06 11:04 - 2015-07-06 11:04 - 00001426 _____ C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-07-06 11:04 - 2015-07-06 11:04 - 00000020 ___SH C:\Users\Janička\ntuser.ini
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Šablony
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Soubory cookie
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Poslední
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Okolní tiskárny
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Okolní síť
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Nabídka Start
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Dokumenty
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Documents\Obrázky
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Documents\Hudba
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Documents\Filmy
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Data aplikací
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\AppData\Local\Data aplikací
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 ____D C:\Users\Janička\AppData\Roaming\Synaptics
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 ____D C:\Users\Janička\AppData\Roaming\Intel
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 ____D C:\Users\Janička\AppData\Roaming\Adobe
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 ____D C:\Users\Janička\AppData\Local\VirtualStore
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 ____D C:\Users\Janička\AppData\Local\NVIDIA
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 ____D C:\Users\Janička\AppData\Local\Google
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 ____D C:\Users\Janička\AppData\Local\Acer
2015-07-06 11:03 - 2015-07-06 11:04 - 00000000 ____D C:\Users\Janička
2015-07-06 11:03 - 2015-06-18 22:21 - 00000000 ____D C:\Users\Janička\AppData\Local\Microsoft Help
2015-07-06 11:03 - 2015-06-16 10:22 - 00000000 ___RD C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-07-06 11:03 - 2015-06-16 01:05 - 00000000 ___RD C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-07-06 11:03 - 2015-06-16 01:05 - 00000000 ___RD C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-07-06 11:03 - 2014-03-18 12:13 - 00000369 _____ C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-07-06 11:03 - 2014-03-18 12:13 - 00000369 _____ C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-07-06 11:03 - 2013-08-22 17:36 - 00000000 ____D C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-07-05 15:22 - 2015-07-05 15:22 - 00000222 _____ C:\Users\OZuna_000\Desktop\Middle-earth Shadow of Mordor.url
2015-07-02 00:46 - 2015-07-02 00:46 - 00000000 ____D C:\Users\OZuna_000\AppData\Roaming\NVIDIA
2015-07-02 00:36 - 2015-07-06 17:11 - 00000000 ____D C:\Users\OZuna_000\Documents\WB Games
2015-06-30 22:13 - 2015-06-30 22:13 - 00000222 _____ C:\Users\OZuna_000\Desktop\Batman Arkham Origins.url
2015-06-29 14:56 - 2015-06-29 14:56 - 00000222 _____ C:\Users\OZuna_000\Desktop\Hitman Absolution.url
2015-06-26 18:54 - 2015-07-08 22:44 - 00000000 ____D C:\Windows\System32\Tasks\McAfee
2015-06-23 23:20 - 2015-06-23 23:20 - 00000000 ____D C:\ProgramData\NVIDIA
2015-06-23 23:20 - 2015-06-17 08:48 - 06873232 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-06-23 23:20 - 2015-06-17 08:48 - 03492168 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-06-23 23:20 - 2015-06-17 08:48 - 02558792 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-06-23 23:20 - 2015-06-17 08:48 - 01059472 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2015-06-23 23:20 - 2015-06-17 08:48 - 00937616 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-06-23 23:20 - 2015-06-17 08:48 - 00385168 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-06-23 23:20 - 2015-06-17 08:48 - 00074896 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2015-06-23 23:20 - 2015-06-17 08:48 - 00062792 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-06-23 23:20 - 2015-06-02 16:11 - 04421614 _____ C:\Windows\system32\nvcoproc.bin
2015-06-23 23:18 - 2015-06-17 11:10 - 42729104 _____ C:\Windows\system32\nvcompiler.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 37748880 _____ C:\Windows\SysWOW64\nvcompiler.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 30481552 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 22947144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 17724600 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 16145200 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 15866992 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 15224784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 14497520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 13263056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 12855416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 11831856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 11011216 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-06-23 23:18 - 2015-06-17 11:10 - 03395648 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 02997544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 02932368 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 02599752 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 01898128 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435330.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 01557832 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435330.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 01060168 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 01050768 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00982672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00975176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00503408 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00408392 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00407296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00364176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00176904 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00155280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00030966 _____ C:\Windows\system32\nvinfo.pb
2015-06-20 20:34 - 2015-06-20 20:34 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-06-18 22:21 - 2015-06-18 22:21 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2015-06-18 22:21 - 2015-06-18 22:21 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2015-06-18 22:18 - 2015-06-18 22:18 - 00000000 ____D C:\Program Files (x86)\Microsoft ASP.NET
2015-06-18 21:22 - 2015-07-02 00:08 - 00000000 ____D C:\Users\OZuna_000\AppData\Local\CrashDumps
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-17 02:25 - 2015-06-12 16:59 - 00000000 ____D C:\Users\OZuna_000\Documents\Assassin's Creed Unity
2015-07-17 02:24 - 2015-06-12 15:32 - 00000000 ____D C:\Program Files (x86)\Steam
2015-07-17 02:18 - 2014-10-25 19:59 - 01465507 _____ C:\Windows\WindowsUpdate.log
2015-07-17 02:17 - 2015-06-14 19:42 - 00000000 ____D C:\Users\OZuna_000\AppData\Roaming\uTorrent
2015-07-17 02:17 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sru
2015-07-16 23:33 - 2015-06-12 15:23 - 00000988 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0a51375ce61e.job
2015-07-16 23:30 - 2015-06-12 15:23 - 00004006 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{C5ABEE74-14FA-4382-9744-7CB8F7D75A35}
2015-07-16 18:26 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp
2015-07-16 17:36 - 2015-06-12 15:17 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1836637139-1634695585-659701357-1001
2015-07-16 12:05 - 2015-06-15 22:10 - 00055808 ___SH C:\Users\OZuna_000\Desktop\Thumbs.db
2015-07-16 11:33 - 2015-06-12 15:23 - 00000984 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-16 11:28 - 2015-06-12 15:23 - 00003960 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1d0a51375ce61e
2015-07-16 11:28 - 2015-06-12 15:23 - 00003724 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-07-16 11:16 - 2015-06-12 15:18 - 00000000 ___DO C:\Users\OZuna_000\OneDrive
2015-07-16 02:42 - 2014-10-25 20:42 - 00739924 _____ C:\Windows\system32\perfh005.dat
2015-07-16 02:42 - 2014-10-25 20:42 - 00151610 _____ C:\Windows\system32\perfc005.dat
2015-07-16 02:42 - 2014-03-18 12:03 - 01745984 _____ C:\Windows\system32\PerfStringBackup.INI
2015-07-16 02:36 - 2013-08-22 16:46 - 00031320 _____ C:\Windows\setupact.log
2015-07-16 02:36 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-07-16 02:36 - 2013-08-22 15:25 - 00524288 ___SH C:\Windows\system32\config\BBI
2015-07-16 02:09 - 2015-06-12 15:09 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-07-16 02:09 - 2015-06-12 15:09 - 00000000 ___SD C:\Windows\system32\GWX
2015-07-15 22:10 - 2015-06-12 15:58 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2015-07-15 22:08 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness
2015-07-15 22:01 - 2013-08-22 16:44 - 00491712 _____ C:\Windows\system32\FNTCACHE.DAT
2015-07-15 03:14 - 2013-08-22 17:36 - 00000000 ___RD C:\Windows\ToastData
2015-07-15 03:14 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\WinStore
2015-07-15 02:52 - 2015-06-12 15:24 - 00002167 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-15 02:44 - 2015-06-16 23:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-07-15 02:44 - 2015-06-15 22:06 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-07-15 02:41 - 2015-06-16 10:22 - 00000000 ____D C:\Windows\system32\appraiser
2015-07-15 02:41 - 2015-06-16 01:04 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-07-15 02:38 - 2015-06-16 02:53 - 00000000 ____D C:\Windows\system32\MRT
2015-07-13 01:04 - 2014-03-18 11:54 - 00029066 _____ C:\Windows\PFRO.log
2015-07-13 01:03 - 2015-06-12 15:09 - 00000000 ____D C:\Users\OZuna_000
2015-07-13 00:20 - 2015-06-12 15:29 - 00001357 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2015-07-13 00:20 - 2014-10-25 20:14 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-07-12 23:59 - 2015-06-12 15:58 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2015-07-08 23:20 - 2015-06-12 15:59 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2015-07-08 22:46 - 2014-04-21 08:02 - 00000000 ____D C:\ProgramData\McAfee
2015-07-08 22:45 - 2013-08-22 17:36 - 00000000 ___HD C:\Windows\ELAMBKUP
2015-07-08 22:45 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\ELAM
2015-07-08 14:20 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\NDF
2015-07-06 23:24 - 2015-06-16 01:12 - 00792568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-07-06 23:24 - 2015-06-16 01:12 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-07-05 15:22 - 2015-06-12 17:05 - 00000000 ____D C:\Users\OZuna_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-07-03 08:43 - 2015-06-16 02:53 - 130333168 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-07-02 00:45 - 2015-06-12 16:58 - 00060503 _____ C:\Windows\DirectX.log
2015-06-27 03:59 - 2015-06-12 15:59 - 00442264 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswsp.sys
2015-06-24 13:36 - 2015-06-12 15:28 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-06-24 13:36 - 2015-06-12 15:28 - 01571696 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-06-24 13:36 - 2015-06-12 15:28 - 01320120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-06-24 13:36 - 2015-06-12 15:28 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-06-23 23:20 - 2014-10-25 20:13 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2015-06-23 23:20 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\Help
2015-06-23 23:18 - 2015-06-12 15:28 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-06-17 14:02 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache
2015-06-17 12:57 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppCompat
==================== Files in the root of some directories =======
2015-06-12 17:20 - 2015-07-02 14:49 - 0002198 _____ () C:\Users\OZuna_000\AppData\Roaming\SpeedRunnersLog.txt
2015-07-02 00:07 - 2015-07-02 00:08 - 0002522 _____ () C:\Users\OZuna_000\AppData\Roaming\TargetInvocationLog.txt
2015-07-13 00:46 - 2015-07-13 00:46 - 0000017 _____ () C:\Users\OZuna_000\AppData\Local\resmon.resmoncfg
2014-10-25 20:45 - 2014-10-25 20:45 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Some files in TEMP:
====================
C:\Users\OZuna_000\AppData\Local\Temp\ose00000.exe
C:\Users\OZuna_000\AppData\Local\Temp\ose00001.exe
C:\Users\OZuna_000\AppData\Local\Temp\Quarantine.exe
C:\Users\OZuna_000\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-07-15 02:19
==================== End of log ============================
Ran by OZuna_000 (administrator) on ONDRANOTEBOOK on 17-07-2015 02:26:20
Running from C:\Users\OZuna_000\Desktop
Loaded Profiles: OZuna_000 (Available Profiles: OZuna_000 & Janička)
Platform: Windows 8.1 (X64) OS Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Condusiv Technologies) C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe
() C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Touch Tools\TouchToolsLaunchSvc.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Avast Software) C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QASvc.exe
(AVAST Software) C:\Program Files\AVAST Software\Avast\ng\ngservice.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\RMSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(acer) C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
() C:\Program Files (x86)\Acer Incorporated\HID Monitor\HIDMonitor.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAEvent.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Launch Manager\LMTray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(Microsoft Corporation) C:\Windows\System32\GWX\GWX.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe
(Safer-Networking Ltd.) C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe
(Avast Software s.r.o.) C:\Program Files\AVAST Software\Avast\avastui.exe
(Dolby Laboratories Inc.) C:\Program Files\Dolby Digital Plus\ddp.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerTray.exe
(Intel Corporation) C:\Windows\System32\igfxext.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerEvent.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Power Management\ePowerWinMonitor.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Screen Grasp\GestureDetection.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Screen Grasp\Launch Screen Grasp.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QAMsg.exe
(Acer Incorporate) C:\Program Files\Acer\Acer Quick Access\QuickAccess.exe
(Acer Incorporated) C:\Program Files\Acer\Acer Theft Shield\USecuAppClient.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.28.1\GoogleCrashHandler64.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(BitTorrent, Inc.) C:\Users\OZuna_000\AppData\Roaming\uTorrent\utorrent.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20911_x64__8wekyb3d8bbwe\livecomm.exe
(NVIDIA Corporation) C:\Users\OZuna_000\AppData\Local\NVIDIA\NvBackend\ApplicationOntology\NvOAWrapperCache.exe
==================== Registry (Whitelisted) ==================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2754704 2015-06-24] (NVIDIA Corporation)
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshellex.dll",TrayApp
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13647576 2013-08-27] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1321688 2013-08-07] (Realtek Semiconductor)
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Logitech Download Assistant] => C:\Windows\system32\rundll32.exe C:\Windows\System32\LogiLDA.dll,LogiFetch
HKLM-x32\...\Run: [Adobe ARM] => c:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [958576 2013-09-05] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [abDocsDllLoader] => C:\Program Files (x86)\Acer\abDocs\abDocsDllLoader.exe [92928 2015-05-06] ()
HKLM-x32\...\Run: [SDTray] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDTray.exe [4101576 2014-06-24] (Safer-Networking Ltd.)
HKLM-x32\...\Run: [AvastUI.exe] => C:\Program Files\AVAST Software\Avast\AvastUI.exe [5515496 2015-06-12] (Avast Software s.r.o.)
Winlogon\Notify\SDWinLogon-x32: SDWinLogon.dll [X]
HKU\S-1-5-21-1836637139-1634695585-659701357-1001\...\Run: [GoogleChromeAutoLaunch_FE2E31A5DDB0C8AEC57FD4B3DA542873] => C:\Program Files (x86)\Google\Chrome\Application\chrome.exe [813896 2015-07-13] (Google Inc.)
HKU\S-1-5-21-1836637139-1634695585-659701357-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [2892992 2015-06-04] (Valve Corporation)
HKU\S-1-5-21-1836637139-1634695585-659701357-1001\...\Run: [Spybot-S&D Cleaning] => C:\Program Files (x86)\Spybot - Search & Destroy 2\SDCleaner.exe [4566952 2014-06-24] (Safer-Networking Ltd.)
HKU\S-1-5-21-1836637139-1634695585-659701357-1001\...\MountPoints2: {53d00e26-25b2-11e5-8266-c45444f4ade4} - "D:\autorun.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\ISCTSystray.lnk [2014-10-25]
ShortcutTarget: ISCTSystray.lnk -> C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTsysTray8.exe (Intel Corporation)
ShellIconOverlayIdentifiers: [00avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\AVAST Software\Avast\ashShA64.dll [2015-06-12] (Avast Software s.r.o.)
BootExecute: autocheck autochk * sdnclean64.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
HKU\S-1-5-21-1836637139-1634695585-659701357-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://acer13.msn.com
HKU\S-1-5-21-1836637139-1634695585-659701357-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://acer13.msn.com/?pc=ACJB
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1836637139-1634695585-659701357-1001 -> {620483FD-B35D-45E5-9A1D-BC6FD626C4C2} URL =
BHO: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2015-06-12] (Avast Software s.r.o.)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2015-06-16] (Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2015-06-25] (Microsoft Corporation)
BHO-x32: avast! Online Security -> {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} -> C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2015-06-12] (Avast Software s.r.o.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{472218B2-E328-4BDC-9C2D-5D6D9AC2F5BC}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{61132ED1-76D4-434A-AE84-97A88816F38F}: [DhcpNameServer] 10.0.1.2
FireFox:
========
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2013-09-04] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2013-09-04] (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-04-22] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.28.1\npGoogleUpdate3.dll [2015-07-16] (Google Inc.)
FF Plugin-x32: Adobe Reader -> c:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2013-09-05] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-04-22] (Microsoft Corporation)
FF HKLM-x32\...\Firefox\Extensions: [wrc@avast.com] - C:\Program Files\AVAST Software\Avast\WebRep\FF
FF Extension: Avast Online Security - C:\Program Files\AVAST Software\Avast\WebRep\FF [2015-06-12]
Chrome:
=======
CHR Profile: C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-06-12]
CHR Extension: (Duolingo on the Web) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiahmijlpehemcpleichkcokhegllfjl [2015-06-12]
CHR Extension: (Google Docs) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2015-06-12]
CHR Extension: (Google Drive) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-06-12]
CHR Extension: (YouTube) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-06-12]
CHR Extension: (Adblock Plus) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2015-06-12]
CHR Extension: (Google Search) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-06-12]
CHR Extension: (Avast SafePrice) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck [2015-06-18]
CHR Extension: (Google Sheets) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-06-12]
CHR Extension: (AdBlock) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2015-06-12]
CHR Extension: (Avast Online Security) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki [2015-06-14]
CHR Extension: (Google Wallet) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2015-06-12]
CHR Extension: (Gmail) - C:\Users\OZuna_000\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-06-12]
CHR HKLM-x32\...\Chrome\Extension: [eofcbnmajmjmplflapaojjnihcjkigck] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChromeSp.crx [2015-06-12]
CHR HKLM-x32\...\Chrome\Extension: [gomekmidlodglbbmalcneegieacbdmki] - C:\Program Files\AVAST Software\Avast\WebRep\Chrome\aswWebRepChrome.crx [2015-06-12]
==================== Services (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [343336 2015-06-12] (Avast Software s.r.o.)
R3 AvastVBoxSvc; C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe [4034896 2015-06-12] (Avast Software)
S3 BthHFSrv; C:\Windows\System32\BthHFSrv.dll [324608 2014-10-29] (Microsoft Corporation)
R3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [2573544 2014-03-21] (Acer Incorporated)
R2 ExpressCache; C:\Program Files\Condusiv Technologies\ExpressCache\ExpressCache.exe [828656 2013-11-18] (Condusiv Technologies)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1152656 2015-06-24] (NVIDIA Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [282096 2014-03-18] (Intel Corporation)
R2 Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [733696 2013-05-12] (Intel(R) Corporation) [File not signed]
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [822232 2013-05-12] (Intel(R) Corporation)
R2 Intel(R) Wireless Bluetooth(R) 4.0 Radio Management; C:\Program Files (x86)\Intel\Bluetooth\ibtrksrv.exe [157128 2013-09-19] (Intel Corporation)
R2 ISCTAgent; C:\Program Files\Intel\Intel(R) Smart Connect Technology Agent\iSCTAgent.exe [200168 2013-12-04] ()
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [169432 2013-09-04] (Intel Corporation)
R2 LMSvc; C:\Program Files\Acer\Acer Launch Manager\LMSvc.exe [459496 2014-01-18] (Acer Incorporate)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [284912 2013-10-11] ()
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1868432 2015-06-24] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [23007376 2015-06-24] (NVIDIA Corporation)
R3 QASvc; C:\Program Files\Acer\Acer Quick Access\QASvc.exe [457960 2014-03-05] (Acer Incorporate)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-24] ()
R3 RMSvc; C:\Program Files\Acer\Acer Quick Access\RMSvc.exe [449768 2014-03-05] (Acer Incorporate)
R2 SDScannerService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDFSSvc.exe [1738168 2014-06-24] (Safer-Networking Ltd.)
R2 SDUpdateService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDUpdSvc.exe [2088408 2014-06-27] (Safer-Networking Ltd.)
R2 SDWSCService; C:\Program Files (x86)\Spybot - Search & Destroy 2\SDWSCSvc.exe [171928 2014-04-25] (Safer-Networking Ltd.)
R2 TouchToolsLaunchService; C:\Program Files\Acer\Acer Touch Tools\TouchToolsLaunchSvc.exe [250624 2014-01-09] (Acer Incorporated)
R3 UEIPSvc; C:\Program Files\Acer\User Experience Improvement Program\Framework\UBTService.exe [222952 2014-01-25] (acer)
S3 USecuAppSvc; C:\Program Files\Acer\Acer Theft Shield\USecuAppSvc.exe [347176 2013-08-14] (Acer Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366520 2015-02-04] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2015-02-04] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3671792 2013-10-11] (Intel® Corporation)
==================== Drivers (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 aswHwid; C:\Windows\system32\drivers\aswHwid.sys [29168 2015-06-12] ()
R2 aswMonFlt; C:\Windows\system32\drivers\aswMonFlt.sys [89944 2015-06-12] (Avast Software s.r.o.)
R1 aswRdr; C:\Windows\system32\drivers\aswRdr2.sys [93528 2015-06-12] (Avast Software s.r.o.)
R0 aswRvrt; C:\Windows\System32\Drivers\aswRvrt.sys [65736 2015-06-12] ()
R1 aswSnx; C:\Windows\system32\drivers\aswSnx.sys [1047320 2015-06-12] (Avast Software s.r.o.)
R1 aswSP; C:\Windows\system32\drivers\aswSP.sys [442264 2015-06-27] (Avast Software s.r.o.)
S2 aswStm; C:\Windows\system32\drivers\aswStm.sys [137288 2015-06-12] (Avast Software s.r.o.)
R0 aswVmm; C:\Windows\System32\Drivers\aswVmm.sys [272248 2015-06-12] ()
S3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-03-18] (Microsoft Corporation)
S3 btmaux; C:\Windows\system32\DRIVERS\btmaux.sys [140600 2013-07-23] (Motorola Solutions, Inc.)
R3 btmhsf; C:\Windows\system32\DRIVERS\btmhsf.sys [1390904 2013-09-06] (Motorola Solutions, Inc.)
R1 excfs; C:\Windows\System32\DRIVERS\excfs.sys [25840 2013-11-18] (Condusiv Technologies)
R0 excsd; C:\Windows\System32\DRIVERS\excsd.sys [117488 2013-11-18] (Condusiv Technologies)
R3 ibtusb; C:\Windows\system32\DRIVERS\ibtusb.sys [118728 2013-09-19] (Intel Corporation)
R3 ikbevent; C:\Windows\system32\DRIVERS\ikbevent.sys [21408 2013-08-14] ()
R3 imsevent; C:\Windows\system32\DRIVERS\imsevent.sys [21920 2013-08-14] ()
R3 INETMON; C:\Windows\System32\Drivers\INETMON.sys [29088 2013-08-14] ()
R3 ISCT; C:\Windows\System32\drivers\ISCTD64.sys [46568 2013-08-14] ()
R3 LMDriver; C:\Windows\System32\drivers\LMDriver.sys [21360 2013-07-17] (Acer Incorporated)
R3 MEIx64; C:\Windows\system32\DRIVERS\TeeDriverx64.sys [99288 2013-09-04] (Intel Corporation)
R3 NETwNb64; C:\Windows\system32\DRIVERS\NETwbw02.sys [3607520 2013-10-14] (Intel Corporation)
S3 NETwNe64; C:\Windows\system32\DRIVERS\NETwew02.sys [4649440 2013-06-18] (Intel Corporation)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [19600 2015-06-24] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [46768 2015-05-19] (NVIDIA Corporation)
S3 QRDCIO; C:\Windows\System32\drivers\QRDCIO.sys [9728 2009-10-20] (QUANTA)
R3 RadioShim; C:\Windows\System32\drivers\RadioShim.sys [14680 2013-07-17] (Acer Incorporated)
R3 RTSPER; C:\Windows\system32\DRIVERS\RtsPer.sys [427736 2013-08-09] (Realsil Semiconductor Corporation)
R3 SmbDrvI; C:\Windows\system32\DRIVERS\Smb_driver_Intel.sys [34544 2013-10-01] (Synaptics Incorporated)
R2 VBoxAswDrv; C:\Program Files\AVAST Software\Avast\ng\vbox\VBoxAswDrv.sys [273824 2015-06-12] (Avast Software)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2015-02-04] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-17 02:25 - 2015-07-17 02:25 - 02133504 _____ (Farbar) C:\Users\OZuna_000\Desktop\FRST64.exe
2015-07-16 23:03 - 2015-07-16 23:05 - 00000000 ____D C:\Users\OZuna_000\Desktop\Kabát - Do pekla do nebe (2015)[FLAC]
2015-07-16 23:02 - 2015-07-16 23:02 - 00012392 _____ C:\Users\OZuna_000\Desktop\[kat.cr]kabát.do.pekla.do.nebe.2015.flac.torrent
2015-07-16 00:18 - 2015-07-16 02:35 - 00000000 ____D C:\AdwCleaner
2015-07-16 00:18 - 2015-07-16 00:18 - 02248704 _____ C:\Users\OZuna_000\Desktop\adwcleaner_4.208.exe
2015-07-15 22:30 - 2015-07-15 22:30 - 00055516 _____ C:\Users\OZuna_000\Desktop\Nový textový dokument.rar
2015-07-15 22:30 - 2015-07-15 22:30 - 00000000 ____D C:\Users\OZuna_000\AppData\Roaming\WinRAR
2015-07-15 22:30 - 2015-07-15 22:30 - 00000000 ____D C:\Users\OZuna_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-07-15 22:30 - 2015-07-15 22:30 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2015-07-15 22:30 - 2015-07-15 22:30 - 00000000 ____D C:\Program Files\WinRAR
2015-07-15 22:27 - 2015-07-15 22:27 - 00521117 _____ C:\Users\OZuna_000\Desktop\Nový textový dokument.txt
2015-07-15 22:25 - 2015-07-15 22:26 - 00042256 _____ C:\Users\OZuna_000\Desktop\Addition.txt
2015-07-15 22:24 - 2015-07-17 02:26 - 00022513 _____ C:\Users\OZuna_000\Desktop\FRST.txt
2015-07-15 22:23 - 2015-07-17 02:26 - 00000000 ____D C:\FRST
2015-07-15 22:20 - 2015-07-15 22:21 - 00112640 _____ (forum.viry.cz) C:\Users\OZuna_000\Desktop\FRSTLauncher (1).exe
2015-07-15 01:59 - 2015-07-09 21:51 - 00136904 _____ (Microsoft Corporation) C:\Windows\system32\wuauclt.exe
2015-07-15 01:59 - 2015-07-09 20:40 - 00359936 _____ (Microsoft Corporation) C:\Windows\system32\WinSetupUI.dll
2015-07-15 01:59 - 2015-07-09 18:03 - 03701760 _____ (Microsoft Corporation) C:\Windows\system32\wuaueng.dll
2015-07-15 01:59 - 2015-07-09 17:54 - 00035840 _____ (Microsoft Corporation) C:\Windows\system32\wuapp.exe
2015-07-15 01:59 - 2015-07-09 17:53 - 00140288 _____ (Microsoft Corporation) C:\Windows\system32\wuwebv.dll
2015-07-15 01:59 - 2015-07-09 17:50 - 00409088 _____ (Microsoft Corporation) C:\Windows\system32\WUSettingsProvider.dll
2015-07-15 01:59 - 2015-07-09 17:50 - 00095744 _____ (Microsoft Corporation) C:\Windows\system32\wudriver.dll
2015-07-15 01:59 - 2015-07-09 17:48 - 00891904 _____ (Microsoft Corporation) C:\Windows\system32\wuapi.dll
2015-07-15 01:59 - 2015-07-09 17:46 - 02229248 _____ (Microsoft Corporation) C:\Windows\system32\wucltux.dll
2015-07-15 01:59 - 2015-07-09 17:38 - 00029696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapp.exe
2015-07-15 01:59 - 2015-07-09 17:37 - 00124928 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuwebv.dll
2015-07-15 01:59 - 2015-07-09 17:35 - 00081920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wudriver.dll
2015-07-15 01:59 - 2015-07-09 17:34 - 00721920 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wuapi.dll
2015-07-15 01:59 - 2015-06-28 07:07 - 00442712 _____ (Microsoft Corporation) C:\Windows\system32\msv1_0.dll
2015-07-15 01:59 - 2015-06-28 07:07 - 00178008 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\ksecpkg.sys
2015-07-15 01:59 - 2015-06-28 07:06 - 01311960 _____ (Microsoft Corporation) C:\Windows\system32\rpcrt4.dll
2015-07-15 01:59 - 2015-06-28 07:06 - 00332120 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msv1_0.dll
2015-07-15 01:59 - 2015-06-27 18:42 - 00747520 _____ (Microsoft Corporation) C:\Windows\SysWOW64\rpcrt4.dll
2015-07-15 01:59 - 2015-06-27 05:13 - 00202240 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb20.sys
2015-07-15 01:59 - 2015-06-27 05:12 - 00401408 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb.sys
2015-07-15 01:59 - 2015-06-27 05:12 - 00284672 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\mrxsmb10.sys
2015-07-15 01:59 - 2015-06-27 05:08 - 00066048 _____ (Microsoft Corporation) C:\Windows\system32\wups.dll
2015-07-15 01:59 - 2015-06-27 05:08 - 00052224 _____ (Microsoft Corporation) C:\Windows\system32\wups2.dll
2015-07-15 01:59 - 2015-06-27 04:40 - 00445440 _____ (Microsoft Corporation) C:\Windows\system32\certcli.dll
2015-07-15 01:59 - 2015-06-27 04:14 - 00027136 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wups.dll
2015-07-15 01:59 - 2015-06-27 04:05 - 01441792 _____ (Microsoft Corporation) C:\Windows\system32\lsasrv.dll
2015-07-15 01:59 - 2015-06-27 04:00 - 00989184 _____ (Microsoft Corporation) C:\Windows\system32\kerberos.dll
2015-07-15 01:59 - 2015-06-27 03:53 - 00324096 _____ (Microsoft Corporation) C:\Windows\SysWOW64\certcli.dll
2015-07-15 01:59 - 2015-06-27 03:26 - 00802816 _____ (Microsoft Corporation) C:\Windows\SysWOW64\kerberos.dll
2015-07-15 01:59 - 2015-06-25 04:31 - 04177920 _____ (Microsoft Corporation) C:\Windows\system32\win32k.sys
2015-07-15 01:59 - 2015-06-16 00:41 - 00065024 _____ (Microsoft Corporation) C:\Windows\system32\msiexec.exe
2015-07-15 01:59 - 2015-06-16 00:24 - 03320320 _____ (Microsoft Corporation) C:\Windows\system32\msi.dll
2015-07-15 01:59 - 2015-06-15 23:16 - 00059904 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msiexec.exe
2015-07-15 01:59 - 2015-06-15 23:09 - 03607552 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msi.dll
2015-07-15 01:59 - 2015-06-15 22:50 - 02774528 _____ (Microsoft Corporation) C:\Windows\system32\authui.dll
2015-07-15 01:59 - 2015-06-15 21:57 - 02460160 _____ (Microsoft Corporation) C:\Windows\SysWOW64\authui.dll
2015-07-15 01:59 - 2015-05-30 23:18 - 00037888 _____ (Microsoft Corporation) C:\Windows\system32\werdiagcontroller.dll
2015-07-15 01:59 - 2015-05-30 21:36 - 00230400 _____ (Microsoft Corporation) C:\Windows\system32\AudioEndpointBuilder.dll
2015-07-15 01:59 - 2015-05-30 21:35 - 00911360 _____ (Microsoft Corporation) C:\Windows\system32\audiosrv.dll
2015-07-15 01:59 - 2015-05-07 17:21 - 00522240 _____ (Microsoft Corporation) C:\Windows\system32\GeofenceMonitorService.dll
2015-07-15 01:59 - 2015-05-07 17:05 - 00367104 _____ (Microsoft Corporation) C:\Windows\SysWOW64\GeofenceMonitorService.dll
2015-07-15 01:59 - 2015-05-03 02:39 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\profsvc.dll
2015-07-15 01:59 - 2015-04-30 01:22 - 00130048 _____ (Microsoft Corporation) C:\Windows\system32\WiFiDisplay.dll
2015-07-15 01:58 - 2015-06-16 00:39 - 00584192 _____ (Microsoft Corporation) C:\Windows\system32\vbscript.dll
2015-07-15 01:58 - 2015-06-16 00:38 - 00088064 _____ (Microsoft Corporation) C:\Windows\system32\MshtmlDac.dll
2015-07-15 01:58 - 2015-06-16 00:26 - 00633856 _____ (Microsoft Corporation) C:\Windows\system32\ieui.dll
2015-07-15 01:58 - 2015-06-16 00:24 - 00816640 _____ (Microsoft Corporation) C:\Windows\system32\jscript.dll
2015-07-15 01:58 - 2015-06-16 00:02 - 00087552 _____ (Microsoft Corporation) C:\Windows\system32\tdc.ocx
2015-07-15 01:58 - 2015-06-15 23:58 - 00199680 _____ (Microsoft Corporation) C:\Windows\system32\msrating.dll
2015-07-15 01:58 - 2015-06-15 23:57 - 00092160 _____ (Microsoft Corporation) C:\Windows\system32\mshtmled.dll
2015-07-15 01:58 - 2015-06-15 23:56 - 00145408 _____ (Microsoft Corporation) C:\Windows\system32\iepeers.dll
2015-07-15 01:58 - 2015-06-15 23:55 - 00316928 _____ (Microsoft Corporation) C:\Windows\system32\dxtrans.dll
2015-07-15 01:58 - 2015-06-15 23:49 - 01032704 _____ (Microsoft Corporation) C:\Windows\system32\inetcomm.dll
2015-07-15 01:58 - 2015-06-15 23:41 - 00262144 _____ (Microsoft Corporation) C:\Windows\system32\webcheck.dll
2015-07-15 01:58 - 2015-06-15 23:38 - 00801280 _____ (Microsoft Corporation) C:\Windows\system32\msfeeds.dll
2015-07-15 01:58 - 2015-06-15 23:36 - 02125824 _____ (Microsoft Corporation) C:\Windows\system32\inetcpl.cpl
2015-07-15 01:58 - 2015-06-15 23:17 - 02880000 _____ (Microsoft Corporation) C:\Windows\system32\actxprxy.dll
2015-07-15 01:58 - 2015-06-15 23:16 - 02427392 _____ (Microsoft Corporation) C:\Windows\system32\wininet.dll
2015-07-15 01:58 - 2015-06-15 23:15 - 00504320 _____ (Microsoft Corporation) C:\Windows\SysWOW64\vbscript.dll
2015-07-15 01:58 - 2015-06-15 23:13 - 00064000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\MshtmlDac.dll
2015-07-15 01:58 - 2015-06-15 23:04 - 00478208 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieui.dll
2015-07-15 01:58 - 2015-06-15 23:03 - 00664064 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript.dll
2015-07-15 01:58 - 2015-06-15 22:52 - 00800768 _____ (Microsoft Corporation) C:\Windows\system32\ieapfltr.dll
2015-07-15 01:58 - 2015-06-15 22:47 - 00073216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\tdc.ocx
2015-07-15 01:58 - 2015-06-15 22:44 - 00168960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msrating.dll
2015-07-15 01:58 - 2015-06-15 22:43 - 00076288 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtmled.dll
2015-07-15 01:58 - 2015-06-15 22:42 - 00128000 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iepeers.dll
2015-07-15 01:58 - 2015-06-15 22:41 - 00285696 _____ (Microsoft Corporation) C:\Windows\SysWOW64\dxtrans.dll
2015-07-15 01:58 - 2015-06-15 22:37 - 00880128 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcomm.dll
2015-07-15 01:58 - 2015-06-15 22:32 - 00230400 _____ (Microsoft Corporation) C:\Windows\SysWOW64\webcheck.dll
2015-07-15 01:58 - 2015-06-15 22:31 - 00689152 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msfeeds.dll
2015-07-15 01:58 - 2015-06-15 22:30 - 02052608 _____ (Microsoft Corporation) C:\Windows\SysWOW64\inetcpl.cpl
2015-07-15 01:58 - 2015-06-15 22:30 - 00327168 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iedkcs32.dll
2015-07-15 01:58 - 2015-06-15 22:17 - 01048576 _____ (Microsoft Corporation) C:\Windows\SysWOW64\actxprxy.dll
2015-07-15 01:58 - 2015-06-15 22:07 - 01951232 _____ (Microsoft Corporation) C:\Windows\SysWOW64\wininet.dll
2015-07-15 01:58 - 2015-06-15 22:02 - 00710144 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieapfltr.dll
2015-07-15 01:57 - 2015-06-30 00:43 - 00026288 _____ (Microsoft Corporation) C:\Windows\system32\CompatTelRunner.exe
2015-07-15 01:57 - 2015-06-29 17:07 - 01145856 _____ (Microsoft Corporation) C:\Windows\system32\aeinv.dll
2015-07-15 01:57 - 2015-06-29 17:07 - 01084928 _____ (Microsoft Corporation) C:\Windows\system32\appraiser.dll
2015-07-15 01:57 - 2015-06-29 17:07 - 00764928 _____ (Microsoft Corporation) C:\Windows\system32\invagent.dll
2015-07-15 01:57 - 2015-06-29 17:07 - 00433152 _____ (Microsoft Corporation) C:\Windows\system32\devinv.dll
2015-07-15 01:57 - 2015-06-29 17:07 - 00067584 _____ (Microsoft Corporation) C:\Windows\system32\acmigration.dll
2015-07-15 01:57 - 2015-06-27 01:21 - 00726528 _____ (Microsoft Corporation) C:\Windows\system32\generaltel.dll
2015-07-15 01:57 - 2015-06-27 01:21 - 00227328 _____ (Microsoft Corporation) C:\Windows\system32\aepdu.dll
2015-07-15 01:57 - 2015-05-11 20:17 - 01201664 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\bthport.sys
2015-07-15 01:57 - 2015-05-07 19:50 - 22292672 _____ (Microsoft Corporation) C:\Windows\system32\shell32.dll
2015-07-15 01:57 - 2015-05-07 19:00 - 03109376 _____ (Microsoft Corporation) C:\Windows\system32\ExplorerFrame.dll
2015-07-15 01:57 - 2015-05-07 18:53 - 19734960 _____ (Microsoft Corporation) C:\Windows\SysWOW64\shell32.dll
2015-07-15 01:57 - 2015-05-07 18:12 - 02706432 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ExplorerFrame.dll
2015-07-15 01:57 - 2015-05-03 17:09 - 00274944 _____ (Microsoft Corporation) C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-07-15 01:57 - 2015-05-03 16:58 - 00210944 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-07-15 01:57 - 2015-05-03 16:55 - 00971776 _____ (Microsoft Corporation) C:\Windows\system32\WSShared.dll
2015-07-15 01:57 - 2015-05-03 16:49 - 00811008 _____ (Microsoft Corporation) C:\Windows\SysWOW64\WSShared.dll
2015-07-15 01:57 - 2015-04-25 04:25 - 00020992 _____ (Microsoft Corporation) C:\Windows\system32\Drivers\usb8023.sys
2015-07-15 01:57 - 2014-11-04 21:25 - 00059712 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\kbdclass.sys
2015-07-15 01:57 - 2014-11-04 21:25 - 00051008 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\mouclass.sys
2015-07-15 01:57 - 2014-11-04 08:55 - 00026112 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\sermouse.sys
2015-07-15 01:57 - 2014-11-04 08:54 - 00108544 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\i8042prt.sys
2015-07-15 01:57 - 2014-11-04 08:54 - 00032256 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\kbdhid.sys
2015-07-15 01:57 - 2014-11-04 08:54 - 00030208 ____C (Microsoft Corporation) C:\Windows\system32\Drivers\mouhid.sys
2015-07-15 01:56 - 2015-07-03 15:52 - 00358912 _____ (Adobe Systems Incorporated) C:\Windows\system32\atmfd.dll
2015-07-15 01:56 - 2015-07-03 15:52 - 00044032 _____ (Adobe Systems) C:\Windows\system32\atmlib.dll
2015-07-15 01:56 - 2015-07-03 15:50 - 00301056 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\atmfd.dll
2015-07-15 01:56 - 2015-07-03 15:50 - 00035840 _____ (Adobe Systems) C:\Windows\SysWOW64\atmlib.dll
2015-07-15 01:56 - 2015-07-02 23:21 - 19877376 _____ (Microsoft Corporation) C:\Windows\SysWOW64\mshtml.dll
2015-07-15 01:56 - 2015-07-02 22:50 - 02279424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\iertutil.dll
2015-07-15 01:56 - 2015-07-02 22:49 - 25193984 _____ (Microsoft Corporation) C:\Windows\system32\mshtml.dll
2015-07-15 01:56 - 2015-07-02 22:23 - 02885632 _____ (Microsoft Corporation) C:\Windows\system32\iertutil.dll
2015-07-15 01:56 - 2015-07-02 22:19 - 12855296 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ieframe.dll
2015-07-15 01:56 - 2015-07-02 21:55 - 01310720 _____ (Microsoft Corporation) C:\Windows\SysWOW64\urlmon.dll
2015-07-15 01:56 - 2015-07-02 21:20 - 14453248 _____ (Microsoft Corporation) C:\Windows\system32\ieframe.dll
2015-07-15 01:56 - 2015-07-02 20:59 - 01545728 _____ (Microsoft Corporation) C:\Windows\system32\urlmon.dll
2015-07-15 01:56 - 2015-07-02 00:08 - 05923840 _____ (Microsoft Corporation) C:\Windows\system32\jscript9.dll
2015-07-15 01:56 - 2015-07-01 23:14 - 04520448 _____ (Microsoft Corporation) C:\Windows\SysWOW64\jscript9.dll
2015-07-15 01:56 - 2015-06-16 07:36 - 01661576 _____ (Microsoft Corporation) C:\Windows\system32\ole32.dll
2015-07-15 01:56 - 2015-06-16 07:36 - 01212248 _____ (Microsoft Corporation) C:\Windows\SysWOW64\ole32.dll
2015-07-15 01:56 - 2015-06-11 05:49 - 01380600 _____ (Microsoft Corporation) C:\Windows\system32\gdi32.dll
2015-07-15 01:56 - 2015-06-10 18:13 - 01097216 _____ (Microsoft Corporation) C:\Windows\SysWOW64\gdi32.dll
2015-07-15 01:56 - 2015-05-12 15:19 - 00294912 _____ (Microsoft Corporation) C:\Windows\system32\SystemEventsBrokerServer.dll
2015-07-15 01:56 - 2015-05-11 18:34 - 00332800 _____ (Microsoft Corporation) C:\Windows\system32\fhcpl.dll
2015-07-15 01:56 - 2015-05-07 18:47 - 00564224 _____ (Microsoft Corporation) C:\Windows\system32\apphelp.dll
2015-07-15 01:56 - 2015-05-03 17:07 - 07784448 _____ (Microsoft Corporation) C:\Windows\system32\Windows.Data.Pdf.dll
2015-07-15 01:56 - 2015-05-03 16:57 - 05264384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\Windows.Data.Pdf.dll
2015-07-15 01:56 - 2015-05-02 01:33 - 00410739 _____ C:\Windows\system32\ApnDatabase.xml
2015-07-15 01:56 - 2015-04-28 15:13 - 00513480 _____ C:\Windows\SysWOW64\locale.nls
2015-07-15 01:56 - 2015-04-28 15:13 - 00513480 _____ C:\Windows\system32\locale.nls
2015-07-15 01:56 - 2015-04-23 17:47 - 03084288 _____ (Microsoft Corporation) C:\Windows\system32\msftedit.dll
2015-07-15 01:56 - 2015-04-23 17:16 - 02471424 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msftedit.dll
2015-07-13 00:46 - 2015-07-13 00:46 - 00000017 _____ C:\Users\OZuna_000\AppData\Local\resmon.resmoncfg
2015-07-13 00:06 - 2015-07-13 00:07 - 00000000 ____D C:\Program Files\trend micro
2015-07-13 00:06 - 2015-07-13 00:06 - 01222144 _____ C:\Users\OZuna_000\Desktop\RSITx64.exe
2015-07-13 00:06 - 2015-07-13 00:06 - 00000000 ____D C:\rsit
2015-07-12 19:08 - 2015-07-12 21:48 - 1432596560 _____ C:\Users\OZuna_000\Desktop\Pán-prstenů---Společenstvo-Prstenu-2001-cz-[natu3].avi
2015-07-10 00:38 - 2015-07-10 00:38 - 00000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdMtpDr_01_11_00.Wdf
2015-07-06 12:41 - 2015-07-06 12:41 - 00000000 ____D C:\Users\Janička\AppData\Roaming\Macromedia
2015-07-06 11:10 - 2015-07-06 11:11 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1836637139-1634695585-659701357-1004
2015-07-06 11:07 - 2015-07-06 11:07 - 00002322 _____ C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC App Store.lnk
2015-07-06 11:05 - 2015-07-06 11:05 - 00001276 _____ C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\RtkGUI.lnk
2015-07-06 11:05 - 2015-07-06 11:05 - 00000000 ____D C:\Users\Janička\AppData\Roaming\AVAST Software
2015-07-06 11:05 - 2015-07-06 11:05 - 00000000 ____D C:\Users\Janička\AppData\Local\NVIDIA Corporation
2015-07-06 11:04 - 2015-07-06 11:09 - 00000000 ____D C:\Users\Janička\AppData\Local\Packages
2015-07-06 11:04 - 2015-07-06 11:04 - 00001426 _____ C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2015-07-06 11:04 - 2015-07-06 11:04 - 00000020 ___SH C:\Users\Janička\ntuser.ini
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Šablony
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Soubory cookie
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Poslední
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Okolní tiskárny
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Okolní síť
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Nabídka Start
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Dokumenty
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Documents\Obrázky
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Documents\Hudba
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Documents\Filmy
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\Data aplikací
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 _SHDL C:\Users\Janička\AppData\Local\Data aplikací
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 ____D C:\Users\Janička\AppData\Roaming\Synaptics
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 ____D C:\Users\Janička\AppData\Roaming\Intel
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 ____D C:\Users\Janička\AppData\Roaming\Adobe
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 ____D C:\Users\Janička\AppData\Local\VirtualStore
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 ____D C:\Users\Janička\AppData\Local\NVIDIA
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 ____D C:\Users\Janička\AppData\Local\Google
2015-07-06 11:04 - 2015-07-06 11:04 - 00000000 ____D C:\Users\Janička\AppData\Local\Acer
2015-07-06 11:03 - 2015-07-06 11:04 - 00000000 ____D C:\Users\Janička
2015-07-06 11:03 - 2015-06-18 22:21 - 00000000 ____D C:\Users\Janička\AppData\Local\Microsoft Help
2015-07-06 11:03 - 2015-06-16 10:22 - 00000000 ___RD C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-07-06 11:03 - 2015-06-16 01:05 - 00000000 ___RD C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-07-06 11:03 - 2015-06-16 01:05 - 00000000 ___RD C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-07-06 11:03 - 2014-03-18 12:13 - 00000369 _____ C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2015-07-06 11:03 - 2014-03-18 12:13 - 00000369 _____ C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2015-07-06 11:03 - 2013-08-22 17:36 - 00000000 ____D C:\Users\Janička\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-07-05 15:22 - 2015-07-05 15:22 - 00000222 _____ C:\Users\OZuna_000\Desktop\Middle-earth Shadow of Mordor.url
2015-07-02 00:46 - 2015-07-02 00:46 - 00000000 ____D C:\Users\OZuna_000\AppData\Roaming\NVIDIA
2015-07-02 00:36 - 2015-07-06 17:11 - 00000000 ____D C:\Users\OZuna_000\Documents\WB Games
2015-06-30 22:13 - 2015-06-30 22:13 - 00000222 _____ C:\Users\OZuna_000\Desktop\Batman Arkham Origins.url
2015-06-29 14:56 - 2015-06-29 14:56 - 00000222 _____ C:\Users\OZuna_000\Desktop\Hitman Absolution.url
2015-06-26 18:54 - 2015-07-08 22:44 - 00000000 ____D C:\Windows\System32\Tasks\McAfee
2015-06-23 23:20 - 2015-06-23 23:20 - 00000000 ____D C:\ProgramData\NVIDIA
2015-06-23 23:20 - 2015-06-17 08:48 - 06873232 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2015-06-23 23:20 - 2015-06-17 08:48 - 03492168 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2015-06-23 23:20 - 2015-06-17 08:48 - 02558792 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2015-06-23 23:20 - 2015-06-17 08:48 - 01059472 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshext.dll
2015-06-23 23:20 - 2015-06-17 08:48 - 00937616 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2015-06-23 23:20 - 2015-06-17 08:48 - 00385168 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2015-06-23 23:20 - 2015-06-17 08:48 - 00074896 _____ (NVIDIA Corporation) C:\Windows\system32\nv3dappshextr.dll
2015-06-23 23:20 - 2015-06-17 08:48 - 00062792 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2015-06-23 23:20 - 2015-06-02 16:11 - 04421614 _____ C:\Windows\system32\nvcoproc.bin
2015-06-23 23:18 - 2015-06-17 11:10 - 42729104 _____ C:\Windows\system32\nvcompiler.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 37748880 _____ C:\Windows\SysWOW64\nvcompiler.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 30481552 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 22947144 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 17724600 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 16145200 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 15866992 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 15224784 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 14497520 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 13263056 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 12855416 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 11831856 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 11011216 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2015-06-23 23:18 - 2015-06-17 11:10 - 03395648 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 02997544 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 02932368 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 02599752 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 01898128 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6435330.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 01557832 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6435330.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 01060168 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 01050768 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00982672 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00975176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00503408 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00408392 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFROpenGL.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00407296 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00364176 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFROpenGL.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00176904 _____ (NVIDIA Corporation) C:\Windows\system32\nvinitx.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00155280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvinit.dll
2015-06-23 23:18 - 2015-06-17 11:10 - 00030966 _____ C:\Windows\system32\nvinfo.pb
2015-06-20 20:34 - 2015-06-20 20:34 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2015-06-18 22:21 - 2015-06-18 22:21 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2015-06-18 22:21 - 2015-06-18 22:21 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2015-06-18 22:18 - 2015-06-18 22:18 - 00000000 ____D C:\Program Files (x86)\Microsoft ASP.NET
2015-06-18 21:22 - 2015-07-02 00:08 - 00000000 ____D C:\Users\OZuna_000\AppData\Local\CrashDumps
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-07-17 02:25 - 2015-06-12 16:59 - 00000000 ____D C:\Users\OZuna_000\Documents\Assassin's Creed Unity
2015-07-17 02:24 - 2015-06-12 15:32 - 00000000 ____D C:\Program Files (x86)\Steam
2015-07-17 02:18 - 2014-10-25 19:59 - 01465507 _____ C:\Windows\WindowsUpdate.log
2015-07-17 02:17 - 2015-06-14 19:42 - 00000000 ____D C:\Users\OZuna_000\AppData\Roaming\uTorrent
2015-07-17 02:17 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\sru
2015-07-16 23:33 - 2015-06-12 15:23 - 00000988 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0a51375ce61e.job
2015-07-16 23:30 - 2015-06-12 15:23 - 00004006 _____ C:\Windows\System32\Tasks\User_Feed_Synchronization-{C5ABEE74-14FA-4382-9744-7CB8F7D75A35}
2015-07-16 18:26 - 2013-08-22 17:20 - 00000000 ____D C:\Windows\CbsTemp
2015-07-16 17:36 - 2015-06-12 15:17 - 00003598 _____ C:\Windows\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-1836637139-1634695585-659701357-1001
2015-07-16 12:05 - 2015-06-15 22:10 - 00055808 ___SH C:\Users\OZuna_000\Desktop\Thumbs.db
2015-07-16 11:33 - 2015-06-12 15:23 - 00000984 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2015-07-16 11:28 - 2015-06-12 15:23 - 00003960 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1d0a51375ce61e
2015-07-16 11:28 - 2015-06-12 15:23 - 00003724 _____ C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
2015-07-16 11:16 - 2015-06-12 15:18 - 00000000 ___DO C:\Users\OZuna_000\OneDrive
2015-07-16 02:42 - 2014-10-25 20:42 - 00739924 _____ C:\Windows\system32\perfh005.dat
2015-07-16 02:42 - 2014-10-25 20:42 - 00151610 _____ C:\Windows\system32\perfc005.dat
2015-07-16 02:42 - 2014-03-18 12:03 - 01745984 _____ C:\Windows\system32\PerfStringBackup.INI
2015-07-16 02:36 - 2013-08-22 16:46 - 00031320 _____ C:\Windows\setupact.log
2015-07-16 02:36 - 2013-08-22 16:45 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2015-07-16 02:36 - 2013-08-22 15:25 - 00524288 ___SH C:\Windows\system32\config\BBI
2015-07-16 02:09 - 2015-06-12 15:09 - 00000000 ___SD C:\Windows\SysWOW64\GWX
2015-07-16 02:09 - 2015-06-12 15:09 - 00000000 ___SD C:\Windows\system32\GWX
2015-07-15 22:10 - 2015-06-12 15:58 - 00000000 ____D C:\ProgramData\Spybot - Search & Destroy
2015-07-15 22:08 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppReadiness
2015-07-15 22:01 - 2013-08-22 16:44 - 00491712 _____ C:\Windows\system32\FNTCACHE.DAT
2015-07-15 03:14 - 2013-08-22 17:36 - 00000000 ___RD C:\Windows\ToastData
2015-07-15 03:14 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\WinStore
2015-07-15 02:52 - 2015-06-12 15:24 - 00002167 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2015-07-15 02:44 - 2015-06-16 23:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2015-07-15 02:44 - 2015-06-15 22:06 - 00000000 ____D C:\ProgramData\Microsoft Help
2015-07-15 02:41 - 2015-06-16 10:22 - 00000000 ____D C:\Windows\system32\appraiser
2015-07-15 02:41 - 2015-06-16 01:04 - 00000000 ___SD C:\Windows\system32\CompatTel
2015-07-15 02:38 - 2015-06-16 02:53 - 00000000 ____D C:\Windows\system32\MRT
2015-07-13 01:04 - 2014-03-18 11:54 - 00029066 _____ C:\Windows\PFRO.log
2015-07-13 01:03 - 2015-06-12 15:09 - 00000000 ____D C:\Users\OZuna_000
2015-07-13 00:20 - 2015-06-12 15:29 - 00001357 _____ C:\Users\Public\Desktop\GeForce Experience.lnk
2015-07-13 00:20 - 2014-10-25 20:14 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2015-07-12 23:59 - 2015-06-12 15:58 - 00000000 ____D C:\Program Files (x86)\Spybot - Search & Destroy 2
2015-07-08 23:20 - 2015-06-12 15:59 - 00004182 _____ C:\Windows\System32\Tasks\avast! Emergency Update
2015-07-08 22:46 - 2014-04-21 08:02 - 00000000 ____D C:\ProgramData\McAfee
2015-07-08 22:45 - 2013-08-22 17:36 - 00000000 ___HD C:\Windows\ELAMBKUP
2015-07-08 22:45 - 2013-08-22 15:25 - 00262144 ___SH C:\Windows\system32\config\ELAM
2015-07-08 14:20 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\system32\NDF
2015-07-06 23:24 - 2015-06-16 01:12 - 00792568 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2015-07-06 23:24 - 2015-06-16 01:12 - 00178168 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2015-07-05 15:22 - 2015-06-12 17:05 - 00000000 ____D C:\Users\OZuna_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2015-07-03 08:43 - 2015-06-16 02:53 - 130333168 _____ (Microsoft Corporation) C:\Windows\system32\MRT.exe
2015-07-02 00:45 - 2015-06-12 16:58 - 00060503 _____ C:\Windows\DirectX.log
2015-06-27 03:59 - 2015-06-12 15:59 - 00442264 _____ (Avast Software s.r.o.) C:\Windows\system32\Drivers\aswsp.sys
2015-06-24 13:36 - 2015-06-12 15:28 - 01756424 _____ (NVIDIA Corporation) C:\Windows\system32\nvspbridge64.dll
2015-06-24 13:36 - 2015-06-12 15:28 - 01571696 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2015-06-24 13:36 - 2015-06-12 15:28 - 01320120 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2015-06-24 13:36 - 2015-06-12 15:28 - 01316000 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspbridge.dll
2015-06-23 23:20 - 2014-10-25 20:13 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2015-06-23 23:20 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\Help
2015-06-23 23:18 - 2015-06-12 15:28 - 00000000 ____D C:\ProgramData\boost_interprocess
2015-06-17 14:02 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\rescache
2015-06-17 12:57 - 2013-08-22 17:36 - 00000000 ____D C:\Windows\AppCompat
==================== Files in the root of some directories =======
2015-06-12 17:20 - 2015-07-02 14:49 - 0002198 _____ () C:\Users\OZuna_000\AppData\Roaming\SpeedRunnersLog.txt
2015-07-02 00:07 - 2015-07-02 00:08 - 0002522 _____ () C:\Users\OZuna_000\AppData\Roaming\TargetInvocationLog.txt
2015-07-13 00:46 - 2015-07-13 00:46 - 0000017 _____ () C:\Users\OZuna_000\AppData\Local\resmon.resmoncfg
2014-10-25 20:45 - 2014-10-25 20:45 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
Some files in TEMP:
====================
C:\Users\OZuna_000\AppData\Local\Temp\ose00000.exe
C:\Users\OZuna_000\AppData\Local\Temp\ose00001.exe
C:\Users\OZuna_000\AppData\Local\Temp\Quarantine.exe
C:\Users\OZuna_000\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap Check =================
(There is no automatic fix for files that do not pass verification.)
C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-07-15 02:19
==================== End of log ============================
- Přílohy
-
- Addition.rar
- (13.29 KiB) Staženo 87 x
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Windows přestal pracovat
Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1836637139-1634695585-659701357-1001 -> {620483FD-B35D-45E5-9A1D-BC6FD626C4C2} URL =
C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0a51375ce61e.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1d0a51375ce61e
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\ProgramData\DP45977C.lfl
C:\Users\OZuna_000\AppData\Local\Temp
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Windows přestal pracovat
Fix result of Farbar Recovery Scan Tool (x64) Version:18-07-2015 01
Ran by OZuna_000 at 2015-07-19 14:46:07 Run:1
Running from C:\Users\OZuna_000\Desktop
Loaded Profiles: OZuna_000 (Available Profiles: OZuna_000 & Janička)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1836637139-1634695585-659701357-1001 -> {620483FD-B35D-45E5-9A1D-BC6FD626C4C2} URL =
C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0a51375ce61e.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1d0a51375ce61e
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\ProgramData\DP45977C.lfl
C:\Users\OZuna_000\AppData\Local\Temp
End
*****************
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKU\S-1-5-21-1836637139-1634695585-659701357-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{620483FD-B35D-45E5-9A1D-BC6FD626C4C2}" => key removed successfully
HKCR\CLSID\{620483FD-B35D-45E5-9A1D-BC6FD626C4C2} => key not found.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0a51375ce61e.job => moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1d0a51375ce61e => moved successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully.
Could not move "C:\ProgramData\DP45977C.lfl" => Scheduled to move on reboot.
C:\Users\OZuna_000\AppData\Local\Temp => moved successfully.
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2015-07-19 14:47:24)<=
C:\ProgramData\DP45977C.lfl => Is moved successfully
==== End of Fixlog 14:47:24 ====
Ran by OZuna_000 at 2015-07-19 14:46:07 Run:1
Running from C:\Users\OZuna_000\Desktop
Loaded Profiles: OZuna_000 (Available Profiles: OZuna_000 & Janička)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1836637139-1634695585-659701357-1001 -> {620483FD-B35D-45E5-9A1D-BC6FD626C4C2} URL =
C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0a51375ce61e.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1d0a51375ce61e
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore
C:\ProgramData\DP45977C.lfl
C:\Users\OZuna_000\AppData\Local\Temp
End
*****************
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKU\S-1-5-21-1836637139-1634695585-659701357-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{620483FD-B35D-45E5-9A1D-BC6FD626C4C2}" => key removed successfully
HKCR\CLSID\{620483FD-B35D-45E5-9A1D-BC6FD626C4C2} => key not found.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA1d0a51375ce61e.job => moved successfully.
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA1d0a51375ce61e => moved successfully.
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore => moved successfully.
Could not move "C:\ProgramData\DP45977C.lfl" => Scheduled to move on reboot.
C:\Users\OZuna_000\AppData\Local\Temp => moved successfully.
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2015-07-19 14:47:24)<=
C:\ProgramData\DP45977C.lfl => Is moved successfully
==== End of Fixlog 14:47:24 ====
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Windows přestal pracovat
Vše bylo smazáno.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Windows přestal pracovat
Děkuji, tak snad vše bude dále dobré 
- Rudy
- Site Admin

- Příspěvky: 119675
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Windows přestal pracovat
Rádo se stalo! 
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?