Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím očištění za sekaního pc

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
DriverPlayerCZE
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 05 zář 2015 20:18

Prosím očištění za sekaního pc

#1 Příspěvek od DriverPlayerCZE »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Dominik at 2015-09-05 20:21:06
Microsoft Windows 8.1
System drive C: has 182 GB (48%) free of 381 GB
Total RAM: 3982 MB (51% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:21:26, on 5. 9. 2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17840)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe
C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe
C:\Program Files (x86)\ASUS\Splendid\ACMON.exe
C:\Program Files (x86)\IObit\Start Menu 8\StartMenu8.exe
C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
C:\Program Files (x86)\Common Files\Microsoft Shared\Ink\TabTip32.exe
C:\Users\Dominik\AppData\Local\Microsoft\BingSvc\BingSvc.exe
C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe
C:\Program Files (x86)\AVG\AVG2015\avgui.exe
C:\WINDOWS\SysWOW64\ctfmon.exe
C:\Program Files (x86)\Steam\Steam.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Dominik.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://asus13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://asus13.msn.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [ASUSPRP] "C:\Program Files (x86)\ASUS\APRP\APRP.EXE"
O4 - HKLM\..\Run: [ASUSWebStorage] C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe /S
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKLM\..\Run: [AVG_UI] "C:\Program Files (x86)\AVG\AVG2015\avgui.exe" /TRAYONLY
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [BingSvc] C:\Users\Dominik\AppData\Local\Microsoft\BingSvc\BingSvc.exe
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [Steam] "C:\Program Files (x86)\Steam\steam.exe" -silent
O4 - HKUS\S-1-5-21-2330037179-736564475-2884274896-1001\..\RunOnce: [WAB Migrate] %ProgramFiles%\Windows Mail\wab.exe /Upgrade (User 'UpdatusUser')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~2\MICROS~1\Office12\REFIEBAR.DLL
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: dssrequest - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: sacore - {5513F07E-936B-4E52-9B00-067394E91CC5} - c:\PROGRA~2\mcafee\SITEAD~1\mcieplg.dll
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: ASLDR Service (ASLDRService) - ASUSTek Computer Inc. - C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe
O23 - Service: ASUS InstantOn Service (ASUS InstantOn) - ASUS - C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe
O23 - Service: Asus WebStorage Windows Service - Unknown owner - C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe
O23 - Service: ATKGFNEX Service (ATKGFNEXSrv) - ASUS - C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe
O23 - Service: AVGIDSAgent - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe
O23 - Service: AVG WatchDog (avgwd) - AVG Technologies CZ, s.r.o. - C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: @oem5.inf,%WIN32_DPTF_PARTICIPANT_PROC_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform and Thermal Framework Processor Participant Service Application (DptfParticipantProcessorService) - Unknown owner - C:\WINDOWS\system32\DptfParticipantProcessorService.exe (file missing)
O23 - Service: @oem5.inf,%WIN32_DPTF_POLICY_CONFIGTDP_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform and Thermal Framework Config TDP Service Application (DptfPolicyConfigTDPService) - Unknown owner - C:\WINDOWS\system32\DptfPolicyConfigTDPService.exe (file missing)
O23 - Service: @oem5.inf,%WIN32_DPTF_POLICY_LPM_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform and Thermal Framework Low Power Mode Service Application (DptfPolicyLpmService) - Unknown owner - C:\WINDOWS\system32\DptfPolicyLpmService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: GamesAppService - WildTangent, Inc. - C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: McAfee SiteAdvisor Service - McAfee, Inc. - C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (nvsvc) - Unknown owner - C:\WINDOWS\system32\nvvsvc.exe (file missing)
O23 - Service: NVIDIA Update Service Daemon (nvUpdatusService) - NVIDIA Corporation - C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: StartMenu8 Service (StartMenuService) - IObit - C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: ASUS Wake Service (WakeupService) - ASUSTek Computer Inc. - C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13217 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"C:\WINDOWS\system32\nvvsvc.exe"
"dwm.exe"
"C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe"
C:\WINDOWS\system32\nvvsvc.exe -session -first
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe"
"C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
C:\WINDOWS\System32\svchost.exe -k utcsvc
dashost.exe {5e787e59-9f8d-4d73-b504771c929acfb2}
C:\WINDOWS\system32\DptfParticipantProcessorService.exe
C:\WINDOWS\system32\DptfPolicyConfigTDPService.exe
C:\WINDOWS\system32\DptfPolicyLpmService.exe
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe"
"C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
"C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe"
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnWMI.exe"
taskhostex.exe
"C:\Program Files (x86)\ASUS\USBChargerPlus\USBChargerPlus.exe"
C:\ProgramData\AsTouchPanel\AsPatchTouchPanel64.exe
"C:\Program Files\ASUS\P4G\BatteryLife.exe"
"C:\Program Files (x86)\ASUS\Splendid\ColorUService.exe"
"C:\Program Files (x86)\ASUS\Splendid\ACMON.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe
KBFiltr.exe
C:\WINDOWS\Explorer.EXE
"C:\Program Files (x86)\IObit\Start Menu 8\StartMenu8.exe" Service
"C:\Program Files\ASUS\ASUS VivoBook\VivoBook.exe" /RunWithHide
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\IObit\Start Menu 8\StartMenu_Hook.exe"
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
/QuitInfo:0000000000000808;0000000000000B34;
/loadhooks /Parent:0000000000000f48
"C:/Program Files/NVIDIA Corporation/Display/nvtray.exe" -user_has_logged_in 1
C:\Windows\System32\skydrive.exe -Embedding
"C:\Program Files (x86)\IObit\Start Menu 8\InstallServices.exe" /HotCorners
"C:\Windows\System32\DptfPolicyLpmServiceHelper.exe"
"C:\Windows\System32\igfxtray.exe"
"C:\WINDOWS\system32\igfxsrvc.exe" -Embedding
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /MAXX3
"C:\Users\Dominik\AppData\Local\Microsoft\BingSvc\BingSvc.exe"
"C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe" -hidden
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\WINDOWS\system32\GWX\GWX.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPLoader.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x64\QuickGesture64.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\QuickGesture\x86\QuickGesture.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPHelper.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe"
C:\Program Files (x86)\AVG\AVG2015\avgcsrva.exe /pipeName=c2feea3f-0200-0000-2b65-cf5fa8b24171 /binaryPath="C:\Program Files (x86)\AVG\AVG2015"
"C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgnsa.exe"
"C:\Program Files (x86)\AVG\AVG2015\avgemca.exe"
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files (x86)\AVG\AVG2015\avgui.exe"
ctfmon.exe
C:\Program Files (x86)\AVG\AVG2015\avgrsa.exe
"C:\Program Files (x86)\ASUS\ASUS Smart Gesture\AsTPCenter\x64\AsusTPCenter.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Steam\Steam.exe"
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" -cefhost -cachedir "C:\Users\Dominik\AppData\Local\Steam\htmlcache" -steampid 5496 -buildid 1440016726 -steamid "0" --disable-gpu-compositing --disable-gpu --process-per-tab --enable-system-flash --disable-spell-checking --enable-direct-write
"C:\Program Files (x86)\Common Files\Steam\SteamService.exe" /RunAsService
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --no-sandbox --enable-deferred-image-decoding --lang=en-US --lang=en-US --product-version="Valve Steam Client" --disable-spell-checking --enable-system-flash --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=6312 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --disable-accelerated-video-decode --disable-gpu-compositing --channel="6312.0.429519956\991820070" /prefetch:673131151
"C:\Program Files (x86)\Steam\bin\steamwebhelper.exe" --type=renderer --disable-gpu-compositing --enable-pinch --no-sandbox --enable-deferred-image-decoding --lang=en-US --lang=en-US --product-version="Valve Steam Client" --disable-spell-checking --enable-system-flash --enable-pinch --device-scale-factor=1 --font-cache-shared-mem-suffix=6312 --enable-pinch-virtual-viewport --enable-delegated-renderer --num-raster-threads=2 --use-image-texture-target=3553 --disable-accelerated-video-decode --disable-gpu-compositing --channel="6312.2.150946258\1427175072" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="2876.0.497441727\830390129" --supports-dual-gpus=false --gpu-driver-bug-workarounds=2,20,45 --disable-accelerated-video-decode --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3308 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/AutofillEnabled/Default/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/InstanceID/Enabled/*IntelligentSessionRestore/Disabled/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PluginPowerSaver/Disabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/Enabled/RefreshTokenDeviceId/Enabled/RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingSocialEngineeringStrings/Disabled/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_61/*UMA-Uniformity-Trial-10-Percent/group_06/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --disable-accelerated-video-decode --channel="2876.2.301793874\975758677" --font-cache-shared-handle=3224 /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --lang=cs --force-fieldtrials="AffiliationBasedMatching/Enabled/AudioProcessing48kHzSupport/Default/*AutofillEnabled/Default/*BrowserBlacklist/Enabled/CaptivePortalInterstitial/Enabled/ChildAccountDetection/Disabled/ChromeDashboard/Default/*ClientSideDetectionModel/Model0/*DomRel-Enable/enable/*EmbeddedSearch/Group1 pct:10a stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnableSessionCrashedBubbleUI/Disabled/*EnhancedBookmarks/Default/*ExtensionContentVerification/Enforce/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GoogleNow/Enable/*IconNTP/Default/InstanceID/Enabled/*IntelligentSessionRestore/Disabled/*NetworkQualityEstimator/Enabled/*NewProfileManagement/Enabled/NewVideoRendererTrial/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordGeneration/Disabled/PasswordLinkInSettings/Enabled/*PluginPowerSaver/Disabled/*PrerenderFromOmnibox/OmniboxPrerenderEnabled/*QUIC/Enabled/RefreshTokenDeviceId/Enabled/RememberCertificateErrorDecisions/Default/ReportCertificateErrors/ShowAndPossiblySend/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingSocialEngineeringStrings/Disabled/SessionRestoreBackgroundLoading/Restore/*SettingsEnforcement/enforce_always_with_extensions_and_dse/*SlimmingPaint/EnableSlimmingPaint/SyncBackingDatabase32K/Enabled/*UMA-Dynamic-Binary-Uniformity-Trial/default/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_61/*UMA-Uniformity-Trial-10-Percent/group_06/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/group_01/*UMA-Uniformity-Trial-5-Percent/group_12/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/VoiceTrigger/Install/WebRTC-UDPSocketNonBlockingIO/Default/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --num-raster-threads=2 --gpu-rasterization-msaa-sample-count=8 --content-image-texture-target=3553 --video-image-texture-target=3553 --disable-accelerated-video-decode --channel="2876.6.1007759043\688456256" --font-cache-shared-handle=4280 /prefetch:673131151
"C:\Users\Dominik\Downloads\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\WINDOWS\tasks\0615piUpdateInfo.job - C:\ProgramData\Avg_Update_0615pi\0615pi_AVG-Secure-Search-Update.exe /SETINFO /CMPID=0615pi /INFORETRY=3
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2015-04-18 553384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2015-05-01 2133632]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2015-04-18 210856]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2010-11-15 62376]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2015-05-01 1724032]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"DptfPolicyLpmServiceHelper"=C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [2013-01-18 27024]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2013-10-01 391128]
"HotKeysCmds"=C:\WINDOWS\system32\hkcmd.exe [2013-10-01 771032]
"Persistence"=C:\WINDOWS\system32\igfxpers.exe [2013-10-01 769496]
"RTHDVCPL"=C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [2013-01-23 13267016]
"RtHDVBg"=C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [2013-01-18 1276488]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2014-02-27 558496]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2015-03-13 7451928]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2015-06-29 53288576]
"BingSvc"=C:\Users\Dominik\AppData\Local\Microsoft\BingSvc\BingSvc.exe [2015-04-07 144008]
"LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2011-04-16 2741616]
"Steam"=C:\Program Files (x86)\Steam\steam.exe [2015-08-19 2899136]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Adobe Reader Speed Launcher"=C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe [2010-11-15 35736]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2010-11-15 932288]
"ASUSPRP"=C:\Program Files (x86)\ASUS\APRP\APRP.EXE [2013-04-26 3187360]
"ASUSWebStorage"=C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSPanel.exe [2012-12-19 3576784]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-03-28 91432]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2015-02-10 335232]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-02-22 406992]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2015-08-03 5579624]
"AVG_UI"=C:\Program Files (x86)\AVG\AVG2015\avgui.exe [2015-08-24 3775912]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"="C:\Windows\system32\nvinitx.dll"

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\WINDOWS\system32\igfxdev.dll [2013-10-01 623104]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=0
"PromptOnSecureDesktop"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"vidc.tscc"=C:\WINDOWS\SysWOW64\tsccvid64.dll
"vidc.tsc2"=C:\WINDOWS\SysWOW64\tsc2_codec64.dll
"VIDC.FPS1"=frapsv64.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.X264"=x264vfw64.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"msacm.l3codecp"=l3codecp.acm
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"aux2"=wdmaud.drv
"wave6"=wdmaud.drv
"midi6"=wdmaud.drv
"mixer6"=wdmaud.drv
"aux3"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-09-05 20:21:09 ----D---- C:\Program Files\trend micro
2015-09-05 20:21:06 ----D---- C:\rsit
2015-09-05 10:33:45 ----SHD---- C:\Config.Msi
2015-09-05 10:29:39 ----D---- C:\ProgramData\AVG
2015-09-05 10:26:22 ----D---- C:\ProgramData\Avg_Update_0615pi
2015-09-05 10:22:22 ----D---- C:\Users\Dominik\AppData\Roaming\AVG2015
2015-09-05 10:21:20 ----D---- C:\Program Files\Common Files\AV
2015-09-05 10:20:09 ----D---- C:\Users\Dominik\AppData\Roaming\TuneUp Software
2015-09-05 10:19:08 ----HD---- C:\$AVG
2015-09-05 10:19:08 ----D---- C:\ProgramData\AVG2015
2015-09-05 10:18:33 ----D---- C:\Program Files (x86)\AVG
2015-09-05 10:13:48 ----HD---- C:\ProgramData\Common Files
2015-09-05 10:13:47 ----D---- C:\ProgramData\MFAData
2015-08-29 17:16:20 ----D---- C:\ProgramData\regid.1995-08.com.techsmith
2015-08-29 17:16:15 ----D---- C:\Program Files (x86)\QuickTime
2015-08-29 17:14:51 ----D---- C:\ProgramData\TechSmith
2015-08-29 17:14:51 ----D---- C:\Program Files (x86)\TechSmith
2015-08-28 19:38:17 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2015-08-19 17:52:14 ----D---- C:\Program Files (x86)\Steam
2015-08-19 11:53:56 ----A---- C:\WINDOWS\system32\drivers\avgidsha.sys
2015-08-19 11:52:30 ----A---- C:\WINDOWS\system32\drivers\avgidsdrivera.sys
2015-08-19 10:48:19 ----A---- C:\WINDOWS\system32\mshtml.dll
2015-08-19 10:48:16 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2015-08-15 20:02:44 ----D---- C:\WINDOWS\system32\appraiser
2015-08-13 17:23:58 ----D---- C:\Users\Dominik\AppData\Roaming\MPC-HC
2015-08-13 13:28:44 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2015-08-13 13:28:44 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2015-08-13 13:01:13 ----D---- C:\WINDOWS\PCHEALTH
2015-08-13 08:59:38 ----A---- C:\WINDOWS\system32\UtcResources.dll
2015-08-13 08:59:38 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2015-08-13 08:59:38 ----A---- C:\WINDOWS\system32\diagtrack.dll
2015-08-13 08:59:32 ----A---- C:\WINDOWS\system32\sppobjs.dll
2015-08-13 08:59:29 ----A---- C:\WINDOWS\system32\CompatTelRunner.exe
2015-08-13 08:59:28 ----A---- C:\WINDOWS\system32\generaltel.dll
2015-08-13 08:59:28 ----A---- C:\WINDOWS\system32\devinv.dll
2015-08-13 08:59:28 ----A---- C:\WINDOWS\system32\appraiser.dll
2015-08-13 08:59:27 ----A---- C:\WINDOWS\system32\invagent.dll
2015-08-13 08:59:27 ----A---- C:\WINDOWS\system32\aepic.dll
2015-08-13 08:59:27 ----A---- C:\WINDOWS\system32\aepdu.dll
2015-08-13 08:59:27 ----A---- C:\WINDOWS\system32\aeinv.dll
2015-08-13 08:59:27 ----A---- C:\WINDOWS\system32\acmigration.dll
2015-08-13 08:57:19 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2015-08-13 08:57:19 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2015-08-11 23:33:25 ----D---- C:\WINDOWS\pss
2015-08-11 22:27:21 ----SHD---- C:\Recovery
2015-08-11 22:27:07 ----DC---- C:\WINDOWS\Panther
2015-08-11 22:26:37 ----D---- C:\Windows.old
2015-08-11 22:25:57 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2015-08-11 22:25:45 ----A---- C:\WINDOWS\system32\fhcpl.dll
2015-08-11 22:25:34 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll
2015-08-11 22:25:34 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2015-08-11 22:25:34 ----A---- C:\WINDOWS\system32\rdvidcrl.dll
2015-08-11 22:25:34 ----A---- C:\WINDOWS\system32\mstscax.dll
2015-08-11 22:25:01 ----AC---- C:\WINDOWS\system32\drivers\vhdmp.sys
2015-08-11 22:25:01 ----AC---- C:\WINDOWS\system32\drivers\intelpep.sys
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\WSDApi.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\WinSCard.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\vsstrace.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\vssapi.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\rasser.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\rasmxs.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\rasdiag.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\rascfg.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\rasapi32.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\QSVRMGMT.DLL
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\QSHVHOST.DLL
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\nshwfp.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\FWPUCLNT.DLL
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\eventcls.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\DevicePairing.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\WSDMon.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\WSDApi.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\WinSCard.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\VSSVC.exe
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\vsstrace.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\vssapi.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\vpnike.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\untfs.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\spoolsv.exe
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\rasser.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\rasmxs.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\rasdiag.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\rascfg.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\rasapi32.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\QSVRMGMT.DLL
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\QSHVHOST.DLL
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\nshwfp.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\mfplat.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\eventcls.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\drivers\wanarp.sys
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\drivers\usbser.sys
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\drivers\ndproxy.sys
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\drivers\ndistapi.sys
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\dnsapi.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\DevicePairing.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\BFE.DLL
2015-08-11 22:25:01 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2015-08-11 22:25:01 ----A---- C:\WINDOWS\splwow64.exe
2015-08-11 22:23:36 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2015-08-11 22:23:36 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2015-08-11 22:23:36 ----A---- C:\WINDOWS\system32\dbghelp.dll
2015-08-11 22:23:36 ----A---- C:\WINDOWS\system32\dbgeng.dll
2015-08-11 22:23:19 ----A---- C:\WINDOWS\SYSWOW64\PhotoMetadataHandler.dll
2015-08-11 22:23:19 ----A---- C:\WINDOWS\system32\PhotoMetadataHandler.dll
2015-08-11 22:23:08 ----A---- C:\WINDOWS\SYSWOW64\notepad.exe
2015-08-11 22:23:08 ----A---- C:\WINDOWS\system32\notepad.exe
2015-08-11 22:23:08 ----A---- C:\WINDOWS\notepad.exe
2015-08-11 22:22:58 ----A---- C:\WINDOWS\system32\drivers\udfs.sys
2015-08-11 22:22:38 ----A---- C:\WINDOWS\SYSWOW64\authz.dll
2015-08-11 22:22:38 ----A---- C:\WINDOWS\system32\authz.dll
2015-08-11 22:22:27 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2015-08-11 22:22:27 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2015-08-11 22:21:53 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2015-08-11 22:21:53 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2015-08-11 22:21:53 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2015-08-11 22:21:53 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2015-08-11 22:21:53 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2015-08-11 22:21:33 ----A---- C:\WINDOWS\SYSWOW64\msiexec.exe
2015-08-11 22:21:33 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2015-08-11 22:21:33 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2015-08-11 22:21:33 ----A---- C:\WINDOWS\system32\msiexec.exe
2015-08-11 22:21:33 ----A---- C:\WINDOWS\system32\msi.dll
2015-08-11 22:21:33 ----A---- C:\WINDOWS\system32\authui.dll
2015-08-11 22:21:20 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2015-08-11 22:21:20 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2015-08-11 22:21:10 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2015-08-11 22:21:10 ----A---- C:\WINDOWS\system32\oleaut32.dll
2015-08-11 22:20:46 ----AC---- C:\WINDOWS\system32\drivers\sermouse.sys
2015-08-11 22:20:46 ----AC---- C:\WINDOWS\system32\drivers\mouhid.sys
2015-08-11 22:20:46 ----AC---- C:\WINDOWS\system32\drivers\mouclass.sys
2015-08-11 22:20:46 ----AC---- C:\WINDOWS\system32\drivers\kbdhid.sys
2015-08-11 22:20:46 ----AC---- C:\WINDOWS\system32\drivers\kbdclass.sys
2015-08-11 22:20:46 ----AC---- C:\WINDOWS\system32\drivers\i8042prt.sys
2015-08-11 22:20:06 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2015-08-11 22:20:06 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2015-08-11 22:19:32 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2015-08-11 22:19:16 ----A---- C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2015-08-11 22:18:57 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2015-08-11 22:18:44 ----D---- C:\Users\Dominik\AppData\Roaming\Identities
2015-08-11 22:18:25 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2015-08-11 22:18:25 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2015-08-11 22:18:25 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2015-08-11 22:18:25 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2015-08-11 22:18:25 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2015-08-11 22:18:25 ----A---- C:\WINDOWS\system32\wuwebv.dll
2015-08-11 22:18:25 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2015-08-11 22:18:25 ----A---- C:\WINDOWS\system32\wups2.dll
2015-08-11 22:18:25 ----A---- C:\WINDOWS\system32\wups.dll
2015-08-11 22:18:25 ----A---- C:\WINDOWS\system32\wudriver.dll
2015-08-11 22:18:25 ----A---- C:\WINDOWS\system32\wucltux.dll
2015-08-11 22:18:25 ----A---- C:\WINDOWS\system32\wuaueng.dll
2015-08-11 22:18:25 ----A---- C:\WINDOWS\system32\wuauclt.exe
2015-08-11 22:18:25 ----A---- C:\WINDOWS\system32\wuapp.exe
2015-08-11 22:18:25 ----A---- C:\WINDOWS\system32\wuapi.dll
2015-08-11 22:18:25 ----A---- C:\WINDOWS\system32\WinSetupUI.dll
2015-08-11 22:18:07 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2015-08-11 22:18:07 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2015-08-11 22:18:07 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2015-08-11 22:18:07 ----A---- C:\WINDOWS\system32\win32k.sys
2015-08-11 22:18:07 ----A---- C:\WINDOWS\system32\FntCache.dll
2015-08-11 22:18:07 ----A---- C:\WINDOWS\system32\DWrite.dll
2015-08-11 22:18:07 ----A---- C:\WINDOWS\system32\atmlib.dll
2015-08-11 22:18:07 ----A---- C:\WINDOWS\system32\atmfd.dll
2015-08-11 22:17:54 ----AC---- C:\WINDOWS\system32\drivers\bthhfenum.sys
2015-08-11 22:17:44 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2015-08-11 22:17:44 ----A---- C:\WINDOWS\system32\schannel.dll
2015-08-11 22:17:32 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2015-08-11 22:17:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-11 22:17:32 ----A---- C:\WINDOWS\system32\WSShared.dll
2015-08-11 22:17:32 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-11 22:17:04 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2015-08-11 22:17:04 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-11 22:16:49 ----A---- C:\WINDOWS\system32\nlasvc.dll
2015-08-11 22:16:49 ----A---- C:\WINDOWS\system32\ncsi.dll
2015-08-11 22:16:39 ----A---- C:\WINDOWS\system32\LockScreenContentServer.exe
2015-08-11 22:16:30 ----A---- C:\WINDOWS\system32\rdpudd.dll
2015-08-11 22:16:30 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2015-08-11 22:16:20 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2015-08-11 22:16:20 ----A---- C:\WINDOWS\system32\crypt32.dll
2015-08-11 22:16:10 ----A---- C:\WINDOWS\SYSWOW64\eapphost.dll
2015-08-11 22:16:10 ----A---- C:\WINDOWS\SYSWOW64\eappgnui.dll
2015-08-11 22:16:10 ----A---- C:\WINDOWS\SYSWOW64\eappcfg.dll
2015-08-11 22:16:10 ----A---- C:\WINDOWS\SYSWOW64\eapp3hst.dll
2015-08-11 22:16:10 ----A---- C:\WINDOWS\system32\eapphost.dll
2015-08-11 22:16:10 ----A---- C:\WINDOWS\system32\eappgnui.dll
2015-08-11 22:16:10 ----A---- C:\WINDOWS\system32\eappcfg.dll
2015-08-11 22:16:10 ----A---- C:\WINDOWS\system32\eapp3hst.dll
2015-08-11 22:15:58 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2015-08-11 22:15:58 ----A---- C:\WINDOWS\system32\win32spl.dll
2015-08-11 22:15:58 ----A---- C:\WINDOWS\system32\puiobj.dll
2015-08-11 22:15:58 ----A---- C:\WINDOWS\system32\localspl.dll
2015-08-11 22:15:58 ----A---- C:\WINDOWS\system32\compstui.dll
2015-08-11 22:15:34 ----SD---- C:\WINDOWS\SYSWOW64\GWX
2015-08-11 22:15:33 ----SD---- C:\WINDOWS\system32\GWX
2015-08-11 22:15:14 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2015-08-11 22:15:14 ----A---- C:\WINDOWS\system32\comctl32.dll
2015-08-11 22:15:03 ----A---- C:\WINDOWS\SYSWOW64\WMPhoto.dll
2015-08-11 22:15:03 ----A---- C:\WINDOWS\system32\WMPhoto.dll
2015-08-11 22:14:53 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2015-08-11 22:14:53 ----A---- C:\WINDOWS\system32\ole32.dll
2015-08-11 22:14:44 ----A---- C:\WINDOWS\SYSWOW64\clfsw32.dll
2015-08-11 22:14:44 ----A---- C:\WINDOWS\system32\drivers\clfs.sys
2015-08-11 22:14:44 ----A---- C:\WINDOWS\system32\clfsw32.dll
2015-08-11 22:14:33 ----A---- C:\WINDOWS\SYSWOW64\tracerpt.exe
2015-08-11 22:14:33 ----A---- C:\WINDOWS\SYSWOW64\tdh.dll
2015-08-11 22:14:33 ----A---- C:\WINDOWS\SYSWOW64\sechost.dll
2015-08-11 22:14:33 ----A---- C:\WINDOWS\system32\tracerpt.exe
2015-08-11 22:14:33 ----A---- C:\WINDOWS\system32\tdh.dll
2015-08-11 22:14:33 ----A---- C:\WINDOWS\system32\sechost.dll
2015-08-11 22:14:19 ----A---- C:\WINDOWS\system32\drivers\usb8023.sys
2015-08-11 22:13:55 ----A---- C:\WINDOWS\system32\csrsrv.dll
2015-08-11 22:13:55 ----A---- C:\WINDOWS\system32\basesrv.dll
2015-08-11 22:13:26 ----AC---- C:\WINDOWS\system32\drivers\dumpsd.sys
2015-08-11 22:13:25 ----AC---- C:\WINDOWS\system32\drivers\sdbus.sys
2015-08-11 22:13:16 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2015-08-11 22:13:16 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2015-08-11 22:13:07 ----A---- C:\WINDOWS\system32\drivers\ahcache.sys
2015-08-11 22:12:55 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2015-08-11 22:12:55 ----A---- C:\WINDOWS\SYSWOW64\msvcp120_clr0400.dll
2015-08-11 22:12:55 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2015-08-11 22:12:55 ----A---- C:\WINDOWS\system32\msvcp120_clr0400.dll
2015-08-11 22:12:22 ----A---- C:\WINDOWS\system32\TSWbPrxy.exe
2015-08-11 22:12:13 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2015-08-11 22:12:13 ----A---- C:\WINDOWS\system32\msctf.dll
2015-08-11 22:11:35 ----AC---- C:\WINDOWS\system32\drivers\hidbth.sys
2015-08-11 22:11:15 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2015-08-11 22:11:15 ----A---- C:\WINDOWS\system32\gdi32.dll
2015-08-11 22:11:05 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2015-08-11 22:11:05 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2015-08-11 22:11:05 ----A---- C:\WINDOWS\system32\msxml6.dll
2015-08-11 22:11:05 ----A---- C:\WINDOWS\system32\msxml3.dll
2015-08-11 22:10:26 ----A---- C:\WINDOWS\SYSWOW64\wpdshext.dll
2015-08-11 22:10:26 ----A---- C:\WINDOWS\system32\wpdshext.dll
2015-08-11 22:10:16 ----A---- C:\WINDOWS\SYSWOW64\mfc42u.dll
2015-08-11 22:10:16 ----A---- C:\WINDOWS\SYSWOW64\mfc42.dll
2015-08-11 22:10:16 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2015-08-11 22:10:16 ----A---- C:\WINDOWS\system32\mfc42u.dll
2015-08-11 22:10:16 ----A---- C:\WINDOWS\system32\mfc42.dll
2015-08-11 22:10:16 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2015-08-11 22:09:55 ----A---- C:\WINDOWS\system32\apphelp.dll
2015-08-11 22:09:44 ----A---- C:\WINDOWS\system32\profsvc.dll
2015-08-11 22:09:23 ----A---- C:\WINDOWS\system32\ubpm.dll
2015-08-11 22:08:55 ----A---- C:\WINDOWS\system32\lsm.dll
2015-08-11 22:08:43 ----AC---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2015-08-11 22:08:34 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2015-08-11 22:08:25 ----A---- C:\WINDOWS\SYSWOW64\rgb9rast.dll
2015-08-11 22:08:09 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2015-08-11 22:07:55 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2015-08-11 22:07:55 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2015-08-11 22:07:55 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2015-08-11 22:07:55 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2015-08-11 22:07:55 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2015-08-11 22:07:55 ----A---- C:\WINDOWS\system32\msv1_0.dll
2015-08-11 22:07:55 ----A---- C:\WINDOWS\system32\lsasrv.dll
2015-08-11 22:07:55 ----A---- C:\WINDOWS\system32\kerberos.dll
2015-08-11 22:07:55 ----A---- C:\WINDOWS\system32\drivers\mrxsmb20.sys
2015-08-11 22:07:55 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2015-08-11 22:07:55 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2015-08-11 22:07:55 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2015-08-11 22:07:55 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2015-08-11 22:07:55 ----A---- C:\WINDOWS\system32\certcli.dll
2015-08-11 22:07:37 ----A---- C:\WINDOWS\SYSWOW64\StorageContextHandler.dll
2015-08-11 22:07:37 ----A---- C:\WINDOWS\system32\StorageContextHandler.dll
2015-08-11 22:07:28 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2015-08-11 22:07:28 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2015-08-11 22:07:12 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2015-08-11 22:07:12 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2015-08-11 22:07:12 ----A---- C:\WINDOWS\system32\shell32.dll
2015-08-11 22:07:12 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2015-08-11 22:06:58 ----A---- C:\WINDOWS\system32\services.exe
2015-08-11 22:06:49 ----A---- C:\WINDOWS\SYSWOW64\netcfgx.dll
2015-08-11 22:06:49 ----A---- C:\WINDOWS\system32\netcfgx.dll
2015-08-11 22:06:49 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2015-08-11 22:06:40 ----A---- C:\WINDOWS\system32\perfi005.dat
2015-08-11 22:06:40 ----A---- C:\WINDOWS\system32\perfh005.dat
2015-08-11 22:06:40 ----A---- C:\WINDOWS\system32\perfd005.dat
2015-08-11 22:06:40 ----A---- C:\WINDOWS\system32\perfc005.dat
2015-08-11 22:06:18 ----D---- C:\WINDOWS\SYSWOW64\cs
2015-08-11 22:06:15 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2015-08-11 22:06:15 ----D---- C:\WINDOWS\SYSWOW64\drivers\cs-CZ
2015-08-11 22:06:15 ----D---- C:\WINDOWS\system32\cs
2015-08-11 22:06:15 ----D---- C:\WINDOWS\cs-CZ
2015-08-11 22:06:14 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2015-08-11 21:57:23 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2015-08-11 21:57:23 ----A---- C:\WINDOWS\system32\SRH.dll
2015-08-11 21:57:10 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2015-08-11 21:57:10 ----A---- C:\WINDOWS\system32\winshfhc.dll
2015-08-11 21:57:10 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2015-08-11 21:57:10 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2015-08-11 21:57:10 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2015-08-11 21:56:58 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Input.Inking.dll
2015-08-11 21:56:58 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2015-08-11 21:56:54 ----A---- C:\WINDOWS\SYSWOW64\calc.exe
2015-08-11 21:56:54 ----A---- C:\WINDOWS\system32\calc.exe
2015-08-11 21:56:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2015-08-11 21:56:39 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2015-08-11 21:56:34 ----A---- C:\WINDOWS\SYSWOW64\WebClnt.dll
2015-08-11 21:56:34 ----A---- C:\WINDOWS\SYSWOW64\davclnt.dll
2015-08-11 21:56:34 ----A---- C:\WINDOWS\system32\WebClnt.dll
2015-08-11 21:56:34 ----A---- C:\WINDOWS\system32\davclnt.dll
2015-08-11 21:56:27 ----A---- C:\WINDOWS\system32\wuaext.dll
2015-08-11 21:56:27 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2015-08-11 21:56:27 ----A---- C:\WINDOWS\system32\storewuauth.dll
2015-08-11 21:56:16 ----A---- C:\WINDOWS\system32\drivers\mrxdav.sys
2015-08-11 21:56:08 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2015-08-11 21:56:08 ----A---- C:\WINDOWS\system32\pku2u.dll
2015-08-11 21:56:01 ----A---- C:\WINDOWS\SYSWOW64\wow32.dll
2015-08-11 21:56:01 ----A---- C:\WINDOWS\SYSWOW64\user.exe
2015-08-11 21:56:01 ----A---- C:\WINDOWS\SYSWOW64\setup16.exe
2015-08-11 21:56:01 ----A---- C:\WINDOWS\SYSWOW64\ntvdm64.dll
2015-08-11 21:56:01 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2015-08-11 21:56:01 ----A---- C:\WINDOWS\SYSWOW64\instnm.exe
2015-08-11 21:56:01 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2015-08-11 21:56:01 ----A---- C:\WINDOWS\system32\wow64.dll
2015-08-11 21:56:01 ----A---- C:\WINDOWS\system32\sysmain.dll
2015-08-11 21:56:01 ----A---- C:\WINDOWS\system32\ntvdm64.dll
2015-08-11 21:56:01 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2015-08-11 21:56:01 ----A---- C:\WINDOWS\system32\ntdll.dll
2015-08-11 21:56:01 ----A---- C:\WINDOWS\system32\microsoft-windows-system-events.dll
2015-08-11 21:56:01 ----A---- C:\WINDOWS\system32\drivers\mountmgr.sys
2015-08-11 21:55:52 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2015-08-11 21:55:52 ----A---- C:\WINDOWS\system32\SHCore.dll
2015-08-11 21:54:32 ----AC---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2015-08-11 21:54:28 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2015-08-11 21:54:28 ----A---- C:\WINDOWS\system32\dwmcore.dll
2015-08-11 21:54:23 ----A---- C:\WINDOWS\SYSWOW64\scesrv.dll
2015-08-11 21:54:23 ----A---- C:\WINDOWS\system32\scesrv.dll
2015-08-11 21:54:20 ----A---- C:\WINDOWS\SYSWOW64\atlthunk.dll
2015-08-11 21:54:00 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2015-08-11 21:54:00 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2015-08-11 21:54:00 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2015-08-11 21:54:00 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2015-08-11 21:54:00 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2015-08-11 21:54:00 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2015-08-11 21:54:00 ----A---- C:\WINDOWS\system32\tquery.dll
2015-08-11 21:54:00 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2015-08-11 21:54:00 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2015-08-11 21:54:00 ----A---- C:\WINDOWS\system32\mssvp.dll
2015-08-11 21:54:00 ----A---- C:\WINDOWS\system32\mssrch.dll
2015-08-11 21:54:00 ----A---- C:\WINDOWS\system32\mssphtb.dll
2015-08-11 21:54:00 ----A---- C:\WINDOWS\system32\mssph.dll
2015-08-11 21:52:46 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2015-08-11 21:52:46 ----A---- C:\WINDOWS\explorer.exe
2015-08-11 21:52:39 ----A---- C:\WINDOWS\SYSWOW64\GeofenceMonitorService.dll
2015-08-11 21:52:39 ----A---- C:\WINDOWS\system32\GeofenceMonitorService.dll
2015-08-11 21:52:34 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2015-08-11 21:52:34 ----A---- C:\WINDOWS\system32\poqexec.exe
2015-08-11 21:52:24 ----A---- C:\WINDOWS\SYSWOW64\rastapi.dll
2015-08-11 21:52:24 ----A---- C:\WINDOWS\system32\rastapi.dll
2015-08-11 21:52:18 ----A---- C:\WINDOWS\system32\drivers\http.sys
2015-08-11 21:51:51 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2015-08-11 21:51:51 ----A---- C:\WINDOWS\system32\msftedit.dll
2015-08-11 21:51:47 ----A---- C:\WINDOWS\SYSWOW64\photowiz.dll
2015-08-11 21:51:47 ----A---- C:\WINDOWS\system32\photowiz.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\wininet.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\webcheck.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\vbscript.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\urlmon.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\msrating.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\mshtmled.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\msfeeds.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\jscript9.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\jscript.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\inseng.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\inetcomm.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\ieui.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\iertutil.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\iepeers.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\ieframe.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\dxtrans.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2015-08-11 21:51:04 ----A---- C:\WINDOWS\system32\actxprxy.dll
2015-08-11 21:49:45 ----A---- C:\WINDOWS\SYSWOW64\WerFaultSecure.exe
2015-08-11 21:49:45 ----A---- C:\WINDOWS\SYSWOW64\wer.dll
2015-08-11 21:49:45 ----A---- C:\WINDOWS\SYSWOW64\Faultrep.dll
2015-08-11 21:49:45 ----A---- C:\WINDOWS\system32\WerFaultSecure.exe
2015-08-11 21:49:45 ----A---- C:\WINDOWS\system32\werdiagcontroller.dll
2015-08-11 21:49:45 ----A---- C:\WINDOWS\system32\wer.dll
2015-08-11 21:49:45 ----A---- C:\WINDOWS\system32\Faultrep.dll
2015-08-11 21:49:45 ----A---- C:\WINDOWS\system32\EncDump.dll
2015-08-11 21:49:45 ----A---- C:\WINDOWS\system32\ci.dll
2015-08-11 21:49:45 ----A---- C:\WINDOWS\system32\audiosrv.dll
2015-08-11 21:49:45 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-08-11 21:46:58 ----D---- C:\Program Files (x86)\Reference Assemblies
2015-08-11 21:46:58 ----D---- C:\Program Files (x86)\MSBuild
2015-08-11 21:46:57 ----D---- C:\Program Files\Reference Assemblies
2015-08-11 21:46:57 ----D---- C:\Program Files\MSBuild
2015-08-11 21:46:15 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2015-08-11 21:46:13 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2015-08-11 21:45:55 ----A---- C:\WINDOWS\SYSWOW64\sdbinst.exe
2015-08-11 21:45:55 ----A---- C:\WINDOWS\system32\sdbinst.exe
2015-08-11 21:44:15 ----SD---- C:\Users\Dominik\AppData\Roaming\Microsoft
2015-08-11 21:34:57 ----A---- C:\WINDOWS\system32\drivers\RTWAVES30.dat
2015-08-11 21:34:51 ----D---- C:\WINDOWS\SYSWOW64\RTCOM
2015-08-11 21:34:51 ----D---- C:\Program Files\Realtek
2015-08-11 21:34:22 ----A---- C:\WINDOWS\system32\nvvsvc.exe
2015-08-11 21:34:22 ----A---- C:\WINDOWS\system32\nvsvcr.dll
2015-08-11 21:34:22 ----A---- C:\WINDOWS\system32\nvsvc64.dll
2015-08-11 21:34:22 ----A---- C:\WINDOWS\system32\nvshext.dll
2015-08-11 21:34:22 ----A---- C:\WINDOWS\system32\nvmctray.dll
2015-08-11 21:34:22 ----A---- C:\WINDOWS\system32\nvcpl.dll
2015-08-11 21:34:22 ----A---- C:\WINDOWS\system32\nv3dappshextr.dll
2015-08-11 21:34:22 ----A---- C:\WINDOWS\system32\nv3dappshext.dll
2015-08-11 21:33:29 ----D---- C:\ProgramData\NVIDIA Corporation
2015-08-11 21:33:20 ----D---- C:\Program Files\NVIDIA Corporation
2015-08-11 21:33:20 ----D---- C:\Program Files (x86)\NVIDIA Corporation
2015-08-11 21:33:06 ----D---- C:\Program Files (x86)\Intel
2015-08-11 21:33:04 ----A---- C:\WINDOWS\SYSWOW64\OpenCL.DLL
2015-08-11 21:33:04 ----A---- C:\WINDOWS\system32\OpenCL.DLL
2015-08-11 21:31:23 ----D---- C:\WINDOWS\Prefetch
2015-08-09 10:44:39 ----D---- C:\ProgramData\SplitMediaLabs
2015-08-09 10:33:21 ----D---- C:\Users\Dominik\AppData\Roaming\SplitmediaLabs
2015-08-08 23:08:44 ----D---- C:\Program Files\OBS
2015-08-08 23:08:36 ----D---- C:\Program Files (x86)\OBS

======List of files/folders modified in the last 1 month======

2015-09-05 20:21:09 ----RD---- C:\Program Files
2015-09-05 20:21:02 ----D---- C:\Users\Dominik\AppData\Roaming\Skype
2015-09-05 20:17:56 ----D---- C:\WINDOWS\Temp
2015-09-05 20:00:05 ----D---- C:\WINDOWS\system32\sru
2015-09-05 16:58:05 ----SHD---- C:\System Volume Information
2015-09-05 16:43:42 ----RD---- C:\WINDOWS\System32
2015-09-05 16:43:42 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2015-09-05 16:43:41 ----D---- C:\WINDOWS\Inf
2015-09-05 16:02:35 ----SHD---- C:\WINDOWS\Installer
2015-09-05 16:01:51 ----D---- C:\WINDOWS\system32\drivers
2015-09-05 16:01:50 ----HD---- C:\WINDOWS\ELAMBKUP
2015-09-05 16:01:07 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2015-09-05 15:58:15 ----D---- C:\Windows
2015-09-05 12:00:22 ----D---- C:\WINDOWS\system32\Tasks
2015-09-05 11:20:45 ----D---- C:\Users\Dominik\AppData\Roaming\uTorrent
2015-09-05 10:29:39 ----HD---- C:\ProgramData
2015-09-05 10:26:22 ----D---- C:\WINDOWS\Tasks
2015-09-05 10:21:20 ----D---- C:\Program Files\Common Files
2015-09-05 10:18:33 ----RD---- C:\Program Files (x86)
2015-09-05 09:10:23 ----D---- C:\WINDOWS\Microsoft.NET
2015-09-04 18:50:00 ----D---- C:\Users\Dominik\AppData\Roaming\.minecraft
2015-09-04 16:52:34 ----D---- C:\WINDOWS\SoftwareDistribution
2015-09-04 14:57:36 ----D---- C:\WINDOWS\debug
2015-09-04 06:06:18 ----D---- C:\WINDOWS\system32\config
2015-09-01 06:15:00 ----D---- C:\ProgramData\ProductData
2015-08-31 09:27:02 ----D---- C:\ProgramData\Adobe
2015-08-31 09:25:27 ----D---- C:\WINDOWS\system32\DriverStore
2015-08-30 21:22:03 ----SHD---- C:\$Recycle.Bin
2015-08-29 23:28:39 ----D---- C:\Games
2015-08-29 17:15:38 ----D---- C:\Program Files (x86)\Common Files
2015-08-28 23:31:44 ----D---- C:\WINDOWS\system32\wdi
2015-08-22 09:27:42 ----D---- C:\WINDOWS\WinSxS
2015-08-21 12:31:53 ----D---- C:\WINDOWS\AppReadiness
2015-08-21 11:12:38 ----HD---- C:\Program Files\WindowsApps
2015-08-19 11:00:20 ----D---- C:\WINDOWS\SysWOW64
2015-08-19 10:49:28 ----D---- C:\WINDOWS\CbsTemp
2015-08-19 10:48:02 ----D---- C:\WINDOWS\Logs
2015-08-17 11:03:29 ----D---- C:\WINDOWS\LiveKernelReports
2015-08-16 15:43:51 ----HD---- C:\$Windows.~BT
2015-08-16 14:55:18 ----RSD---- C:\WINDOWS\assembly
2015-08-16 13:07:30 ----D---- C:\WINDOWS\rescache
2015-08-16 01:36:46 ----D---- C:\WINDOWS\AppCompat
2015-08-15 20:03:42 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2015-08-15 20:03:42 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2015-08-15 20:03:37 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2015-08-15 20:03:37 ----D---- C:\WINDOWS\system32\cs-CZ
2015-08-15 20:03:34 ----D---- C:\WINDOWS\system32\en-US
2015-08-15 20:02:49 ----D---- C:\WINDOWS\SYSWOW64\en-US
2015-08-15 20:02:45 ----SD---- C:\WINDOWS\system32\CompatTel
2015-08-15 20:02:44 ----D---- C:\WINDOWS\system32\wbem
2015-08-15 20:02:43 ----D---- C:\WINDOWS\apppatch
2015-08-15 16:14:28 ----D---- C:\WINDOWS\system32\catroot
2015-08-13 13:50:20 ----D---- C:\Users\Dominik\AppData\Roaming\MMFApplications
2015-08-13 13:31:44 ----D---- C:\ProgramData\Microsoft Help
2015-08-13 13:27:22 ----D---- C:\WINDOWS\system32\MRT
2015-08-13 13:14:58 ----A---- C:\WINDOWS\system32\MRT.exe
2015-08-13 09:58:42 ----D---- C:\WINDOWS\system32\drivers\UMDF
2015-08-12 23:50:39 ----D---- C:\WINDOWS\system32\catroot2
2015-08-11 23:35:22 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2015-08-11 22:26:04 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2015-08-11 22:25:20 ----D---- C:\WINDOWS\SYSWOW64\setup
2015-08-11 22:25:20 ----D---- C:\WINDOWS\system32\setup
2015-08-11 22:17:40 ----D---- C:\WINDOWS\WinStore
2015-08-11 22:16:06 ----RD---- C:\WINDOWS\ToastData
2015-08-11 22:15:58 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2015-08-11 22:08:42 ----D---- C:\WINDOWS\Registration
2015-08-11 22:08:18 ----D---- C:\WINDOWS\system32\LogFiles
2015-08-11 22:06:18 ----D---- C:\WINDOWS\SYSWOW64\winrm
2015-08-11 22:06:18 ----D---- C:\WINDOWS\SYSWOW64\slmgr
2015-08-11 22:06:18 ----D---- C:\WINDOWS\SYSWOW64\oobe
2015-08-11 22:06:18 ----D---- C:\WINDOWS\SYSWOW64\migration
2015-08-11 22:06:18 ----D---- C:\WINDOWS\servicing
2015-08-11 22:06:18 ----D---- C:\Program Files\Windows Photo Viewer
2015-08-11 22:06:18 ----D---- C:\Program Files\Windows Mail
2015-08-11 22:06:18 ----D---- C:\Program Files\Windows Journal
2015-08-11 22:06:18 ----D---- C:\Program Files\Windows Defender
2015-08-11 22:06:18 ----D---- C:\Program Files\Internet Explorer
2015-08-11 22:06:18 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2015-08-11 22:06:18 ----D---- C:\Program Files (x86)\Windows Mail
2015-08-11 22:06:18 ----D---- C:\Program Files (x86)\Windows Defender
2015-08-11 22:06:18 ----D---- C:\Program Files (x86)\Internet Explorer
2015-08-11 22:06:15 ----D---- C:\WINDOWS\SYSWOW64\wbem
2015-08-11 22:06:15 ----D---- C:\WINDOWS\SYSWOW64\Printing_Admin_Scripts
2015-08-11 22:06:15 ----D---- C:\WINDOWS\SYSWOW64\Dism
2015-08-11 22:06:15 ----D---- C:\WINDOWS\SYSWOW64\Com
2015-08-11 22:06:15 ----D---- C:\WINDOWS\system32\winrm
2015-08-11 22:06:15 ----D---- C:\WINDOWS\system32\slmgr
2015-08-11 22:06:15 ----D---- C:\WINDOWS\system32\migwiz
2015-08-11 22:06:15 ----D---- C:\WINDOWS\system32\migration
2015-08-11 22:06:15 ----D---- C:\WINDOWS\system32\Boot
2015-08-11 22:06:14 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2015-08-11 22:06:14 ----D---- C:\WINDOWS\system32\Printing_Admin_Scripts
2015-08-11 22:06:14 ----D---- C:\WINDOWS\system32\Dism
2015-08-11 22:06:14 ----D---- C:\WINDOWS\system32\Com
2015-08-11 22:06:14 ----D---- C:\WINDOWS\FileManager
2015-08-11 22:06:12 ----RSD---- C:\WINDOWS\Media
2015-08-11 21:59:14 ----D---- C:\WINDOWS\SYSWOW64\NV
2015-08-11 21:59:14 ----D---- C:\WINDOWS\system32\NV
2015-08-11 21:56:06 ----D---- C:\WINDOWS\system32\drivers\en-US
2015-08-11 21:53:29 ----D---- C:\WINDOWS\SYSWOW64\drivers
2015-08-11 21:53:29 ----D---- C:\WINDOWS\system32\Sysprep
2015-08-11 21:53:28 ----D---- C:\WINDOWS\ShellNew
2015-08-11 21:53:28 ----D---- C:\WINDOWS\nl
2015-08-11 21:53:28 ----D---- C:\WINDOWS\it
2015-08-11 21:53:26 ----RSD---- C:\WINDOWS\Fonts
2015-08-11 21:53:26 ----D---- C:\WINDOWS\fr
2015-08-11 21:53:26 ----D---- C:\WINDOWS\en-GB
2015-08-11 21:53:26 ----D---- C:\WINDOWS\de
2015-08-11 21:53:26 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2015-08-11 21:53:26 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2015-08-11 21:49:58 ----D---- C:\WINDOWS\SYSWOW64\xlive
2015-08-11 21:49:58 ----D---- C:\WINDOWS\SYSWOW64\WCN
2015-08-11 21:49:57 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2015-08-11 21:49:57 ----D---- C:\WINDOWS\SYSWOW64\SMI
2015-08-11 21:49:57 ----D---- C:\WINDOWS\SYSWOW64\sda
2015-08-11 21:49:57 ----D---- C:\WINDOWS\SYSWOW64\MUI
2015-08-11 21:49:57 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2015-08-11 21:49:57 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2015-08-11 21:49:56 ----D---- C:\WINDOWS\SYSWOW64\IME
2015-08-11 21:49:55 ----D---- C:\WINDOWS\SYSWOW64\en-GB
2015-08-11 21:49:55 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2015-08-11 21:49:54 ----D---- C:\WINDOWS\SYSWOW64\catroot
2015-08-11 21:49:52 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2015-08-11 21:49:52 ----D---- C:\WINDOWS\system32\WCN
2015-08-11 21:49:51 ----D---- C:\WINDOWS\system32\spool
2015-08-11 21:49:49 ----D---- C:\WINDOWS\system32\AdvancedInstallers
2015-08-11 21:49:48 ----D---- C:\WINDOWS\system32\oobe
2015-08-11 21:49:48 ----D---- C:\WINDOWS\system32\NDF
2015-08-11 21:49:47 ----D---- C:\WINDOWS\system32\MUI
2015-08-11 21:49:47 ----D---- C:\WINDOWS\system32\IME
2015-08-11 21:49:47 ----D---- C:\WINDOWS\system32\en-GB
2015-08-11 21:49:47 ----D---- C:\WINDOWS\system32\CodeIntegrity
2015-08-11 21:49:22 ----SD---- C:\WINDOWS\system32\Microsoft
2015-08-11 21:48:27 ----D---- C:\WINDOWS\PolicyDefinitions
2015-08-11 21:48:26 ----D---- C:\WINDOWS\Migration
2015-08-11 21:48:21 ----D---- C:\WINDOWS\IME
2015-08-11 21:48:19 ----D---- C:\WINDOWS\Help
2015-08-11 21:48:14 ----D---- C:\WINDOWS\DigitalLocker
2015-08-11 21:48:12 ----RD---- C:\Users
2015-08-11 21:48:11 ----SD---- C:\ProgramData\Microsoft
2015-08-11 21:48:11 ----D---- C:\ProgramData\PRICache
2015-08-11 21:48:05 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2015-08-11 21:48:05 ----D---- C:\Program Files (x86)\Windows Media Player
2015-08-11 21:48:02 ----D---- C:\Program Files (x86)\Microsoft.NET
2015-08-11 21:47:55 ----SHD---- C:\Program Files\Windows Sidebar
2015-08-11 21:47:55 ----D---- C:\Program Files\Windows Media Player
2015-08-11 21:47:53 ----D---- C:\Program Files\Common Files\System
2015-08-11 21:47:53 ----D---- C:\Program Files\Common Files\microsoft shared
2015-08-11 21:45:31 ----D---- C:\WINDOWS\system32\Recovery
2015-08-11 21:34:29 ----D---- C:\Temp
2015-08-10 23:10:09 ----D---- C:\Program Files\Adobe
2015-08-10 23:10:01 ----D---- C:\Program Files\Common Files\Adobe
2015-08-09 10:29:24 ----D---- C:\WINDOWS\AUInstallAgent
2015-08-08 14:55:08 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2015-08-08 10:40:51 ----D---- C:\ProgramData\Riot Games
2015-08-08 10:40:07 ----D---- C:\Users\Dominik\AppData\Roaming\Riot Games

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 AVGIDSHA;AVGIDSHA; C:\WINDOWS\system32\DRIVERS\avgidsha.sys [2015-08-19 297904]
R0 Avgloga;AVG Logging Driver; C:\WINDOWS\system32\DRIVERS\avgloga.sys [2015-05-07 378336]
R0 Avgmfx64;AVG Mini-Filter Resident Anti-Virus Shield; C:\WINDOWS\system32\DRIVERS\avgmfx64.sys [2015-08-04 250800]
R0 Avgrkx64;AVG Anti-Rootkit Driver; C:\WINDOWS\system32\DRIVERS\avgrkx64.sys [2015-03-20 40928]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-12-07 652344]
R0 nvpciflt;nvpciflt; C:\WINDOWS\system32\DRIVERS\nvpciflt.sys [2013-12-10 32544]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2011-09-07 17536]
R1 Avgdiska;AVG Disk Driver; C:\WINDOWS\system32\DRIVERS\avgdiska.sys [2015-03-11 162784]
R1 AVGIDSDriver;AVGIDSDriver; C:\WINDOWS\system32\DRIVERS\avgidsdrivera.sys [2015-08-19 313264]
R1 Avgldx64;AVG AVI Loader Driver; C:\WINDOWS\system32\DRIVERS\avgldx64.sys [2015-06-16 259040]
R1 Avgwfpa;AVG Firewall Driver; C:\WINDOWS\system32\DRIVERS\avgwfpa.sys [2015-08-04 304560]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2013-08-22 71680]
R2 ASMMAP64;ASMMAP64; \??\C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\ASMMAP64.sys [2009-07-02 15416]
R3 AiCharger;ASUS Charger Driver; C:\WINDOWS\system32\DRIVERS\AiCharger.sys [2012-09-18 17152]
R3 athr;@athw8x.inf,%ATHR.Service.DispName%;Qualcomm Atheros Extensible Wireless LAN device driver; C:\WINDOWS\system32\DRIVERS\athw8x.sys [2013-06-18 3680256]
R3 ATP;@oem6.inf,%PS2.DeviceDesc%;ASUS Input Device; C:\WINDOWS\System32\drivers\AsusTP.sys [2013-01-16 65784]
R3 DptfDevDram;DptfDevDram; C:\WINDOWS\system32\DRIVERS\DptfDevDram.sys [2013-01-18 107920]
R3 DptfDevFan;DptfDevFan; C:\WINDOWS\system32\DRIVERS\DptfDevFan.sys [2013-01-18 43408]
R3 DptfDevGen;DptfDevGen; C:\WINDOWS\system32\DRIVERS\DptfDevGen.sys [2013-01-18 65424]
R3 DptfDevProc;DptfDevProc; C:\WINDOWS\system32\DRIVERS\DptfDevProc.sys [2013-01-18 229776]
R3 DptfManager;DptfManager; C:\WINDOWS\system32\DRIVERS\DptfManager.sys [2013-01-18 363920]
R3 Hamachi;LogMeIn Hamachi Virtual Miniport); C:\WINDOWS\system32\DRIVERS\Hamdrv.sys [2015-08-03 45680]
R3 HIDSwitch;@oem10.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsHIDSwitch64.sys [2012-05-31 21152]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2013-10-01 4177920]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2013-01-23 3308360]
R3 IntcDAud;@oem27.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-10-08 342528]
R3 iwdbus;@oem35.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys [2013-08-22 26008]
R3 kbfiltr;@oem9.inf,%kbfiltr.SvcDesc%;Keyboard Filter; C:\WINDOWS\System32\drivers\kbfiltr.sys [2012-08-02 14992]
R3 MEIx64;@oem3.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-02 62784]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2013-12-10 12572960]
R3 RSBASTOR;@oem8.inf,%Rts5208%;Realtek PCIE CardReader Driver - BA; C:\WINDOWS\system32\DRIVERS\RtsBaStor.sys [2012-06-13 294544]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2014-11-22 212736]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2013-08-22 36864]
S0 Avgboota;AVG Early Launch Anti-Malware Driver; C:\WINDOWS\system32\DRIVERS\avgboota.sys [2015-03-27 21152]
S3 dg_ssudbus;@oem12.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 intaud_WaveExtensible;@oem34.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\WINDOWS\system32\drivers\intelaud.sys [2013-08-22 39320]
S3 nmwcd;@oem17.inf,%MFG% %SVC%;Nokia USB Phone Parent Driver; C:\WINDOWS\system32\drivers\ccdcmbx64.sys [2011-08-17 19968]
S3 nmwcdc;@oem21.inf,%MFG% %SVC%;Nokia USB Communication Driver; C:\WINDOWS\system32\drivers\ccdcmbox64.sys [2011-08-17 27136]
S3 ssudmdm;@oem15.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 upperdev;upperdev; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltx64.sys [2011-08-17 9216]
S3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;USB Audio Driver (WDM); C:\WINDOWS\system32\drivers\usbaudio.sys [2014-11-22 121088]
S3 usbser;USB Modem Driver; C:\WINDOWS\system32\drivers\usbser.sys [2015-08-11 33280]
S3 UsbserFilt;UsbserFilt; C:\WINDOWS\system32\DRIVERS\usbser_lowerfltjx64.sys [2011-08-17 9216]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\ASLDRSrv.exe [2012-10-05 110976]
R2 ASUS InstantOn;ASUS InstantOn Service; C:\Program Files (x86)\ASUS\ASUS InstantOn\InsOnSrv.exe [2012-04-13 277120]
R2 Asus WebStorage Windows Service;Asus WebStorage Windows Service; C:\Program Files (x86)\ASUS\WebStorage Sync Agent\1.1.18.159\AsusWSWinService.exe [2012-12-19 72192]
R2 ATKGFNEXSrv;ATKGFNEX Service; C:\Program Files (x86)\ASUS\ATK Package\ATKGFNEX\GFNEXSrv.exe [2011-11-21 96896]
R2 AVGIDSAgent;AVGIDSAgent; C:\Program Files (x86)\AVG\AVG2015\avgidsagent.exe [2015-08-24 3637160]
R2 avgwd;AVG WatchDog; C:\Program Files (x86)\AVG\AVG2015\avgwdsvc.exe [2015-08-24 335656]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2015-05-01 1394816]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2015-05-01 1772672]
R2 DiagTrack;@%SystemRoot%\system32\UtcResources.dll,-3001; C:\WINDOWS\System32\svchost.exe [2014-11-22 38792]
R2 DptfParticipantProcessorService;@oem5.inf,%WIN32_DPTF_PARTICIPANT_PROC_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform and Thermal Framework Processor Participant Service Application; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [2013-01-18 31632]
R2 DptfPolicyConfigTDPService;@oem5.inf,%WIN32_DPTF_POLICY_CONFIGTDP_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform and Thermal Framework Config TDP Service Application; C:\WINDOWS\system32\DptfPolicyConfigTDPService.exe [2013-01-18 33168]
R2 DptfPolicyLpmService;@oem5.inf,%WIN32_DPTF_POLICY_LPM_SERVICE_DISPLAY_NAME%;Intel(R) Dynamic Platform and Thermal Framework Low Power Mode Service Application; C:\WINDOWS\system32\DptfPolicyLpmService.exe [2013-01-18 39824]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2015-08-03 2545512]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2012-06-27 129856]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-06-25 166720]
R2 LightScribeService;LightScribeService Direct Disc Labeling Service; C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe [2011-04-16 73728]
R2 LiveUpdateSvc;LiveUpdate; C:\Program Files (x86)\IObit\LiveUpdate\LiveUpdate.exe [2015-07-30 2909472]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [2015-08-03 417552]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-17 277824]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2013-10-23 922912]
R2 StartMenuService;StartMenu8 Service; C:\Program Files (x86)\IObit\Start Menu 8\StartMenuServices.exe [2015-03-20 1055008]
R2 TeamViewer;TeamViewer 10; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [2015-03-30 5448464]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-17 365376]
R2 WakeupService;ASUS Wake Service; C:\Program Files\ASUS\ASUS VivoBook\ASUSWakeupService.exe [2012-12-20 45488]
R3 Steam Client Service;Steam Client Service; C:\Program Files (x86)\Common Files\Steam\SteamService.exe [2015-08-19 838336]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-11 107848]
S2 nvUpdatusService;NVIDIA Update Service Daemon; C:\Program Files (x86)\NVIDIA Corporation\NVIDIA Update Core\daemonu.exe [2013-12-10 1364256]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-06-03 327296]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2014-11-22 38792]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2013-10-01 279000]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 GamesAppService;GamesAppService; C:\Program Files (x86)\WildTangent Games\App\GamesAppService.exe [2010-10-12 206072]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-04-11 107848]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [2005-04-04 69632]
S3 McAfee SiteAdvisor Service;McAfee SiteAdvisor Service; C:\Program Files (x86)\McAfee\SiteAdvisor\McSACore.exe [2015-02-19 155368]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

-----------------EOF-----------------

DriverPlayerCZE
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 05 zář 2015 20:18

Re: Prosím očištění za sekaního pc

#2 Příspěvek od DriverPlayerCZE »

info.txt logfile of random's system information tool 1.10 2015-09-05 20:21:50

======MBR======

0x0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000BD508ABF000000000200EEFFFFFF01000000FFFFFFFF00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000055AA

======Uninstall list======

ASUS VivoBook-->MsiExec.exe /I{04FDBE69-F9FD-42A2-9008-E5CE7F60C6BE}
-->"C:\Program Files (x86)\WildGames\Game Explorer Categories - genres\Uninstall.exe"
-->MsiExec /X{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}
Adobe AIR-->C:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
Adobe Community Help-->msiexec /qb /x {0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}
Adobe Community Help-->MsiExec.exe /I{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}
Adobe Media Player-->msiexec /qb /x {DE3A9DC5-9A5D-6485-9662-347162C7E4CA}
Adobe Media Player-->MsiExec.exe /I{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}
Adobe Photoshop CS5-->C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDApp.exe --appletID="DWA_UI" --appletVersion="1.0" --mode="Uninstall" --mediaSignature="{15FEDA5F-141C-4127-8D7E-B962D1742728}"
Adobe Reader X MUI-->MsiExec.exe /I{AC76BA86-7AD7-FFFF-7B44-AA0000000001}
ASUS InstantOn-->MsiExec.exe /I{749F674B-2674-47E8-879C-5626A06B2A91}
ASUS LifeFrame3-->MsiExec.exe /X{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}
ASUS Live Update-->MsiExec.exe /X{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}
ASUS Power4Gear Hybrid-->MsiExec.exe /I{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}
ASUS Screen Saver-->MsiExec.exe /I{0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2}
ASUS Smart Gesture-->MsiExec.exe /I{4D3286A6-F6AB-498A-82A4-E4F040529F3D}
ASUS Splendid Video Enhancement Technology-->MsiExec.exe /X{0969AF05-4FF6-4C00-9406-43599238DE0D}
ASUS USB Charger Plus-->MsiExec.exe /X{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}
ASUS WebStorage Sync Agent-->C:\Program Files (x86)\ASUS\WebStorage Sync Agent\uninst.exe
ASUSDVD-->"C:\Program Files (x86)\InstallShield Installation Information\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}\Setup.exe" /z-uninstall
ASUSDVD-->"C:\Program Files (x86)\InstallShield Installation Information\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}\Setup.exe" /z-uninstall
ATK Package-->MsiExec.exe /I{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}
AVG 2015-->"C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe" /AppMode=SETUP /Uninstall /UDS=1
AVG 2015-->MsiExec.exe /I{6B171EFC-F41F-4055-A4DE-5B9480DA17AA}
AVG 2015-->MsiExec.exe /I{CEEAE734-B717-41D1-BF50-378EC081C6B1}
Azteca-->"C:\Program Files (x86)\WildGames\Azteca\uninstall\uninstaller.exe"
Bejeweled 3-->"C:\Program Files (x86)\WildGames\Bejeweled 3\uninstall\uninstaller.exe"
Camtasia Studio 8-->MsiExec.exe /I{474DFABF-E55B-4905-ABAA-40791A6AC77F}
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
Cut the Rope-->"C:\Program Files (x86)\WildGames\Cut the Rope\uninstall\uninstaller.exe"
D3DX10-->MsiExec.exe /X{E09C4DB7-630C-4F06-A631-8EA7239923AF}
Fotogalerie-->MsiExec.exe /X{3CBD94C1-BA15-488C-888B-D8DD296CC6DC}
Galerie de photos-->MsiExec.exe /X{446CC8CE-0E90-44F7-ADD0-774B243EF090}
Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.85\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
Google Update Helper-->MsiExec.exe /I{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
Intel(R) Dynamic Platform and Thermal Framework-->C:\Program Files (x86)\Intel\Intel(R) Dynamic Platform and Thermal Framework\Uninstall\setup.exe -uninstall
Intel(R) Management Engine Components-->C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\Uninstall\setup.exe -uninstall
Intel(R) Processor Graphics-->C:\Program Files (x86)\Intel\Intel(R) Processor Graphics\Uninstall\setup.exe -uninstall
Intel(R) SDK for OpenCL - CPU Only Runtime Package-->C:\Program Files (x86)\Intel\OpenCL SDK\2.0\Uninstall\setup.exe -uninstall
Intel® Trusted Connect Service Client-->MsiExec.exe /I{F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}
Java 7 Update 51 (64-bit)-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F86417051FF}
K-Lite Mega Codec Pack 11.2.0-->"C:\Program Files (x86)\K-Lite Codec Pack\unins000.exe"
League of Legends-->msiexec.exe /x {79BF4901-1EC4-4726-B3C2-A7859706C6E7}
League of Legends-->MsiExec.exe /X{6B84E528-9705-4D36-9C97-97B8E23DAB75}
League of Legends-->MsiExec.exe /X{79BF4901-1EC4-4726-B3C2-A7859706C6E7}
LightScribe System Software-->MsiExec.exe /X{10427BCB-0742-43BE-81E2-3920972946F5}
LogMeIn Hamachi-->C:\WINDOWS\SysWOW64\\msiexec.exe /i {517E7DBD-7A5B-4B7F-B137-82AB4DAD68FC} REMOVE=ALL
LogMeIn Hamachi-->MsiExec.exe /I{517E7DBD-7A5B-4B7F-B137-82AB4DAD68FC}
McAfee SiteAdvisor-->C:\PROGRA~2\McAfee\SITEAD~1\UNINST~1.EXE
Metric Collection SDK 35-->MsiExec.exe /X{C2B5B5B0-2545-4E94-B4BA-548D4BF0B196}
Microsoft Games for Windows - LIVE -->MsiExec.exe /X{4AA3D64E-9EC3-4B0F-AB91-5885AC55641F}
Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{FD052FB9-FE90-4438-B355-15EDC89D8FB1}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {6E107EB7-8B55-48BF-ACCB-199F86A2CD93}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {664655D8-B9BB-455D-8A58-7EAF7B0B2862}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0409-1000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0044-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0115-0409-0000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0116-0409-1000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0117-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office Access MUI (English) 2007-->MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
Microsoft Office Access Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (English) 2007-->MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
Microsoft Office Office 64-bit Components 2007-->MsiExec.exe /X{90120000-002A-0000-1000-0000000FF1CE}
Microsoft Office Outlook MUI (English) 2007-->MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
Microsoft Office Professional Plus 2007-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
Microsoft Office Professional Plus 2007-->MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {1FF96026-A04A-4C3E-B50A-BB7022654D0F}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {71F055E8-E2C6-4214-BB3D-BFE03561B89E}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}
Microsoft Office Publisher MUI (English) 2007-->MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (English) 2007-->MsiExec.exe /X{90120000-002A-0409-1000-0000000FF1CE}
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0116-0409-1000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft Office-->MsiExec.exe /X{90150000-0138-0409-0000-0000000FF1CE}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030-->"C:\ProgramData\Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030-->"C:\ProgramData\Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030-->MsiExec.exe /X{37B8F9C7-03FB-3253-8781-2517C99D7C00}
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030-->MsiExec.exe /X{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030-->MsiExec.exe /X{B175520C-86A2-35A7-8619-86DC379688B9}
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030-->MsiExec.exe /X{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005-->"C:\ProgramData\Package Cache\{ce085a78-074e-4823-8dc1-8a721b94b76d}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005-->MsiExec.exe /X{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}
Microsoft XNA Framework Redistributable 4.0-->MsiExec.exe /I{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}
Microsoft_VC80_ATL_x86_x64-->MsiExec.exe /I{925D058B-564A-443A-B4B2-7E90C6432E55}
Microsoft_VC80_CRT_x86_x64-->MsiExec.exe /I{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}
Microsoft_VC80_CRT_x86-->MsiExec.exe /I{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}
Microsoft_VC80_MFC_x86_x64-->MsiExec.exe /I{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}
Microsoft_VC80_MFC_x86-->MsiExec.exe /I{D1A19B02-817E-4296-A45B-07853FD74D57}
Microsoft_VC80_MFCLOC_x86_x64-->MsiExec.exe /I{1E9FC118-651D-4934-97BE-E53CAE5C7D45}
Microsoft_VC80_MFCLOC_x86-->MsiExec.exe /I{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}
Microsoft_VC90_ATL_x86_x64-->MsiExec.exe /I{8557397C-A42D-486F-97B3-A2CBC2372593}
Microsoft_VC90_ATL_x86-->MsiExec.exe /I{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}
Microsoft_VC90_CRT_x86_x64-->MsiExec.exe /I{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}
Microsoft_VC90_CRT_x86-->MsiExec.exe /I{08D2E121-7F6A-43EB-97FD-629B44903403}
Microsoft_VC90_MFC_x86_x64-->MsiExec.exe /I{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}
Microsoft_VC90_MFC_x86-->MsiExec.exe /I{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}
Movie Maker-->MsiExec.exe /X{03CC9D58-B132-4CC0-A521-4F3660AA43C7}
Movie Maker-->MsiExec.exe /X{701FE1BC-834A-4857-AF62-6EBA50CFBC78}
Movie Maker-->MsiExec.exe /X{8E6E8CBB-8E58-493C-943F-4664F5F2FEDB}
Movie Maker-->MsiExec.exe /X{A17946CA-18E5-4CF0-8D55-A56D804718F8}
Movie Maker-->MsiExec.exe /X{AE8044B5-FCA3-4EBE-AC78-0FB3A6E8DC76}
Movie Maker-->MsiExec.exe /X{ED6C77F9-4D7E-447C-9EC0-9A212D075535}
MSVCRT-->MsiExec.exe /I{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
MSVCRT110_amd64-->MsiExec.exe /I{E9FA781F-3E80-4399-825A-AD3E11C28C77}
MSVCRT110-->MsiExec.exe /I{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}
MyBitCast 2.0-->C:\Program Files (x86)\ASUS\MyBitCast\uninst.exe
Nokia Connectivity Cable Driver-->RUNDLL32.EXE ccdcmbwux64.dll,WuUninstall
NVIDIA Graphics Driver 331.65-->"C:\WINDOWS\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{668D2DEC-DDE8-4B66-B317-2A11316AF5D2}\NVI2.DLL",UninstallPackage Display.Driver
NVIDIA HD Audio Driver 1.3.18.0-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{9267DCB4-5ED2-48AB-88E6-51DB6D63B3D9}\NVI2.DLL",UninstallPackage HDAudio.Driver
NVIDIA PhysX System Software 9.12.1031-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{9267DCB4-5ED2-48AB-88E6-51DB6D63B3D9}\NVI2.DLL",UninstallPackage Display.PhysX
NVIDIA PhysX-->MsiExec.exe /I{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}
NVIDIA Update 1.11.3-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{9267DCB4-5ED2-48AB-88E6-51DB6D63B3D9}\NVI2.DLL",UninstallPackage Display.Update
PDF Settings CS5-->MsiExec.exe /I{A78FE97A-C0C8-49CE-89D0-EDD524A17392}
Peggle-->"C:\Program Files (x86)\WildGames\Peggle\uninstall\uninstaller.exe"
Penguins!-->"C:\Program Files (x86)\WildGames\Penguins!\uninstall\uninstaller.exe"
Photo Common-->MsiExec.exe /X{49110532-D289-4BFF-807C-45B782E66A7C}
Photo Common-->MsiExec.exe /X{4AF53C99-315D-4536-873F-029D2D274AE2}
Photo Common-->MsiExec.exe /X{743FD554-A73F-4FE8-BE7B-C283D16297F9}
Photo Common-->MsiExec.exe /X{E1203F8C-FF34-4968-A4A5-B4F1F8533DAB}
Photo Common-->MsiExec.exe /X{F54030F3-14B6-432D-9361-78DCB1473920}
Photo Gallery-->MsiExec.exe /X{30F99474-EBE3-4134-A02B-F6CD38CFE243}
Photo Gallery-->MsiExec.exe /X{63824BC0-B747-43F3-9863-1066D64AD919}
Photo Gallery-->MsiExec.exe /X{F67CA22C-C11F-4573-8406-57F75BA06B51}
PunkBuster Services-->C:\WINDOWS\system32\pbsvc.exe -u
Qualcomm Atheros Client Installation Program-->"C:\Program Files (x86)\InstallShield Installation Information\{28006915-2739-4EBE-B5E8-49B25D32EB33}\setup.exe" -runfromtemp -l0x0409 -removeonly
Raccolta foto-->MsiExec.exe /X{D04EBB49-C985-4A38-8695-62000861293A}
Realtek Ethernet Controller Driver-->C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -l0x0409 -removeonly
Realtek High Definition Audio Driver-->C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe -r -m -nrg2709
Realtek PCIE Card Reader-->"C:\Program Files (x86)\InstallShield Installation Information\{C1594429-8296-4652-BF54-9DBE4932A44C}\setup.exe" -runfromtemp -removeonly
Security Update for Microsoft Office 2007 suites (KB2596650) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {DF2F5DAC-93D7-434B-96B1-EAF4D891AD24}
Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {B145DBBB-7778-4A5D-9D2B-DA6569F02391}
Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {E34960DB-2A93-45DB-A208-02650F7AB09C}
Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {B7727B4D-5EA3-4C11-9D30-15E47616DCAF}
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {293FB6BE-D3EB-4162-B522-F9108040B9FE}
Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {2B3C041A-A7F2-4A24-968D-4BEB6A123D15}
Security Update for Microsoft Office 2007 suites (KB2687409) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {A33F3451-9AD4-46C0-9CDB-AA38071CDAB5}
Security Update for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {3579CE34-B225-4B19-A3AF-DE5F562A212F}
Security Update for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {8907F32C-DF89-4C2F-AEDE-0DB4B65451C0}
Security Update for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {319FC809-3841-4739-A25F-FDBADF073697}
Security Update for Microsoft Office 2007 suites (KB2817330) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {32DA925D-8B7D-4298-B893-6291D28CE809}
Security Update for Microsoft Office 2007 suites (KB2825645) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {BF11577A-6876-45AA-86C9-2BA4CFB8B019}
Security Update for Microsoft Office 2007 suites (KB2825645) 32-Bit Edition -->msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {BF11577A-6876-45AA-86C9-2BA4CFB8B019}
Security Update for Microsoft Office 2007 suites (KB2837610) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {BBF521D0-8A73-4B87-8AF5-1D26CFF6303F}
Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {6B4A3804-666A-4DD8-84A7-B97701416784}
Security Update for Microsoft Office 2007 suites (KB2880507) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {36842896-D83B-4C92-8261-6312B7DEB562}
Security Update for Microsoft Office 2007 suites (KB2880508) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4C1BE82B-9AC0-4AB9-B76D-5467131955E1}
Security Update for Microsoft Office 2007 suites (KB2881069) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {FC572B0C-6356-46CC-A01E-CCCEC4340BF5}
Security Update for Microsoft Office 2007 suites (KB2920795) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {56BB0BAB-7C3C-40C1-8F70-1AAE6A5FE45F}
Security Update for Microsoft Office 2007 suites (KB3054888) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {63F8EA0A-DB47-4896-AF49-9D1F81D4997F}
Security Update for Microsoft Office 2007 suites (KB3054890) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {BAA41D34-C953-47F5-9430-87E74D9DF0A7}
Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB2863812) 32-Bit Edition -->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {180F5C31-2C4F-43A6-9539-801D5EC77F89}
Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB2965208) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {C79D9A1A-32DB-4B96-BC3C-772000D6FAB1}
Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB2986254) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {2EE92094-C692-4E9F-9034-DBC586621C99}
Security Update for Microsoft Office Excel 2007 (KB3054992) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {0385F9E8-5593-4E2E-915E-916960B2FEA3}
Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {8F311D6C-D8DD-4C32-9457-1A129CABD1A5}
Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {0EF0D4FB-BB23-4515-AAEA-1240AC2DA525}
Security Update for Microsoft Office PowerPoint 2007 (KB3055051) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {7759139C-222D-443A-87D3-0A22925A584D}
Security Update for Microsoft Office Publisher 2007 (KB2817565) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F88656FB-92A1-484E-911E-D259B15CF420}
Security Update for Microsoft Office Word 2007 (KB3055052) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {424ADE6E-3852-4C0C-B32A-92701D358032}
Shared C Run-time for x64-->MsiExec.exe /I{EF79C448-6946-4D71-8134-03407888C054}
Skype Click to Call-->MsiExec.exe /X{6D1221A9-17BF-4EC0-81F2-27D30EC30701}
Skype™ 7.6-->MsiExec.exe /X{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
Start Menu 8-->"C:\Program Files (x86)\IObit\Start Menu 8\unins000.exe"
Steam-->C:\Program Files (x86)\Steam\uninstall.exe
Tales of Lagoona-->"C:\Program Files (x86)\WildGames\Tales of Lagoona\uninstall\uninstaller.exe"
Team Fortress 2-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/440
TeamViewer 10-->C:\Program Files (x86)\TeamViewer\uninstall.exe
Unturned-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/304930
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for Microsoft Office 2007 Help for Common Features (KB963673)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {AB365889-0395-4FAD-B702-CA5985D53D42}
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {A024FC7B-77DE-45DE-A058-1C049A17BFB3}
Update for Microsoft Office 2007 suites (KB2596787) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {02206DCC-0CAF-46BB-8EDC-6C281AA21EFA}
Update for Microsoft Office 2007 suites (KB2596787) 32-Bit Edition-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {02206DCC-0CAF-46BB-8EDC-6C281AA21EFA}
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}
Update for Microsoft Office 2007 suites (KB2965286) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {7C3337E5-1294-4270-A64F-DCEF812159E5}
Update for Microsoft Office Access 2007 Help (KB963663)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {6B76A18A-AA1E-42AB-A7AD-6C84BBB43987}
Update for Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {199DF7B6-169C-448C-B511-1054101BE9C9}
Update for Microsoft Office Infopath 2007 Help (KB963662)-->msiexec /package {90120000-0044-0409-0000-0000000FF1CE} /uninstall {716B81B8-B13C-41DF-8EAC-7A2F656CAB63}
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {ED38F8A3-4F61-494E-8BCA-E3AC7760C924}
Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {53DEC068-4690-4F6B-9946-7D21EF02236B}
Update for Microsoft Office Outlook 2007 Help (KB963677)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {0451F231-E3E3-4943-AB9F-58EB96171784}
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB3055023) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {EE216216-FA20-4871-B8F9-388B34D2D55F}
Update for Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {397B1D4F-ED7B-4ACA-A637-43B670843876}
Update for Microsoft Office Publisher 2007 Help (KB963667)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {2E40DE55-B289-4C8B-8901-5D369B16814F}
Update for Microsoft Office Script Editor Help (KB963671)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {CD11C6A2-FFC6-4271-8EAB-79C3582F505C}
Update for Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {80E762AA-C921-4839-9D7D-DB62A72C0726}
Update Installer for WildTangent Games App-->"C:\Program Files (x86)\WildTangent Games\App\Uninstall.exe"
Visual Studio 2012 x64 Redistributables-->MsiExec.exe /I{8C775E70-A791-4DA8-BCC3-6AB7136F4484}
Visual Studio 2012 x86 Redistributables-->MsiExec.exe /I{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}
WARMODE-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/391460
WildTangent Games App-->"C:\Program Files (x86)\WildTangent Games\Touchpoints\asus\Uninstall.exe"
WildTangent Games-->"C:\Program Files (x86)\WildGames\Uninstall.exe"
Windows Driver Package - ASUS (ATP) Mouse (01/10/2013 1.0.0.170)-->C:\PROGRA~1\DIFX\A66243~1\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\asustp.inf_amd64_536dba63d5fddbba\asustp.inf
Windows Live Communications Platform-->MsiExec.exe /I{0454BB9A-2A7A-4214-BDFF-937F7A711A44}
Windows Live Essentials-->C:\Program Files (x86)\Windows Live\Installer\wlarp.exe
Windows Live Essentials-->MsiExec.exe /I{690F5BA3-5DEB-42CD-962B-F687EE59FAA7}
Windows Live Essentials-->MsiExec.exe /I{6CEA775F-E70A-4D72-A3B4-1EB3A5AD4B5C}
Windows Live Essentials-->MsiExec.exe /I{B096A0E4-26A1-4E9F-8548-577964B9434B}
Windows Live Essentials-->MsiExec.exe /I{B7F31B9C-8775-4500-8E9D-6ABE9AE17CF4}
Windows Live Installer-->MsiExec.exe /I{C424CD5E-EA05-4D3E-B5DA-F9F149E1D3AC}
Windows Live Photo Common-->MsiExec.exe /X{C9B6EFD0-4F01-4BBA-8374-39AD99A3ED72}
Windows Live PIMT Platform-->MsiExec.exe /I{6A8DB215-7BCD-4377-B015-2E4541A3E7C6}
Windows Live SOXE Definitions-->MsiExec.exe /I{8A642ACD-CE3A-4A23-A8B1-A0F7EB12B214}
Windows Live SOXE-->MsiExec.exe /I{FE7C0B3D-50B9-4951-BE78-A321CBF86552}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{4AA2A466-8031-403A-8236-5301B4E391FB}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{90993BD9-C7D9-4C2F-B56C-2F7AFEBD4CD0}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{B727564C-47D3-473A-AC9E-F4BE7B1BD5D3}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{CE542E0D-E056-4426-9F98-084C13E18641}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{F21F0424-B2FF-40BF-A984-9E0D7FB4C97E}
Windows Live UX Platform-->MsiExec.exe /I{4CCBD1F4-CEEC-452A-9CB8-46564B501315}
Windows Live-->MsiExec.exe /I{8D813AFF-D91D-4EE0-821F-B901FC2E89FA}
WinFlash-->MsiExec.exe /X{8F21291E-0444-4B1D-B9F9-4370A73E346D}
WinRAR 5.21 (64-bit)-->C:\Program Files\WinRAR\uninstall.exe

======System event log======

Computer Name: WIN-CBBJMM2V1JS
Event Code: 7040
Message: Režim spuštění služby Windows Search byl změněn z disabled na auto start.
Record Number: 1062
Source Name: Service Control Manager
Time Written: 20131202093733.297284-000
Event Type: Informace
User: LPSkitty\Administrator

Computer Name: WIN-CBBJMM2V1JS
Event Code: 7040
Message: Režim spuštění služby Windows Search byl změněn z auto start na disabled.
Record Number: 1061
Source Name: Service Control Manager
Time Written: 20131202093732.234747-000
Event Type: Informace
User: LPSkitty\Administrator

Computer Name: WIN-CBBJMM2V1JS
Event Code: 104
Message: Byl vymazán soubor protokolu Setup.
Record Number: 1060
Source Name: Microsoft-Windows-Eventlog
Time Written: 20131202093725.796926-000
Event Type: Informace
User: LPSkitty\Administrator

Computer Name: WIN-CBBJMM2V1JS
Event Code: 104
Message: Byl vymazán soubor protokolu Application.
Record Number: 1059
Source Name: Microsoft-Windows-Eventlog
Time Written: 20131202093725.703171-000
Event Type: Informace
User: LPSkitty\Administrator

Computer Name: WIN-CBBJMM2V1JS
Event Code: 104
Message: Byl vymazán soubor protokolu System.
Record Number: 1058
Source Name: Microsoft-Windows-Eventlog
Time Written: 20131202093725.656294-000
Event Type: Informace
User: LPSkitty\Administrator

=====Application event log=====

Computer Name: WIN-CBBJMM2V1JS
Event Code: 5001
Message:
Record Number: 689
Source Name: AVLogEvent
Time Written: 20131202093735.000000-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: WIN-CBBJMM2V1JS
Event Code: 6000
Message: Odběratel oznámení přihlašování do systému Windows <SessionEnv> nemohl zpracovat událost upozornění.
Record Number: 688
Source Name: Microsoft-Windows-Winlogon
Time Written: 20131202093735.000000-000
Event Type: Informace
User:

Computer Name: WIN-CBBJMM2V1JS
Event Code: 1003
Message: Služba Windows Search byla spuštěna.

Record Number: 687
Source Name: Microsoft-Windows-Search
Time Written: 20131202093733.000000-000
Event Type: Informace
User:

Computer Name: WIN-CBBJMM2V1JS
Event Code: 1013
Message: Služba Windows Search byla řádně zastavena.

Record Number: 686
Source Name: Microsoft-Windows-Search
Time Written: 20131202093732.000000-000
Event Type: Informace
User:

Computer Name: WIN-CBBJMM2V1JS
Event Code: 103
Message: SearchIndexer (3776) Windows: Databázový stroj zastavil instanci (0).

Nesprávné vypnutí: 0

Sekvence interního načasování: [1] 0.000, [2] 0.015, [3] 0.000, [4] 0.000, [5] 0.032, [6] 0.000, [7] 0.000, [8] 0.000, [9] 0.031, [10] 0.000, [11] 0.000, [12] 0.000, [13] 0.000, [14] 0.000, [15] 0.000.
Record Number: 685
Source Name: ESENT
Time Written: 20131202093732.000000-000
Event Type: Informace
User:

=====Security event log=====

Computer Name: LPSkitty
Event Code: 4624
Message: Účet byl úspěšně přihlášen.

Předmět:
ID zabezpečení: S-1-0-0
Název účtu: -
Doména účtu: -
ID přihlášení: 0x0

Typ přihlášení: 3

Úroveň zosobnění: Zosobnění

Nové přihlášení:
ID zabezpečení: S-1-5-7
Název účtu: ANONYMOUS LOGON
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3B74812
GUID přihlášení: {00000000-0000-0000-0000-000000000000}

Informace o procesu:
ID procesu: 0x0
Název procesu: -

Informace o síti:
Název pracovní stanice: ASUS
Adresa zdrojové sítě 10.0.0.33
Zdrojový port: 52423

Podrobné informace o ověření:
Proces přihlášení: NtLmSsp
Balíček ověření: NTLM
Přenosové služby: -
Název balíčku (pouze NTLM): NTLM V1
Délka klíče: 128

Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.

Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.

Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).

Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.

Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.

Pole úrovně zosobnění označuje rozsah, ve kterém může být proces v přihlašovací relaci zosobněn.

Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 72807
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150728184405.539979-000
Event Type: Úspěšný audit
User:

Computer Name: LPSkitty
Event Code: 4634
Message: Účet byl odhlášen.

Předmět:
ID zabezpečení: S-1-5-7
Název účtu: ANONYMOUS LOGON
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3B747EF

Typ přihlášení: 3

Tato událost je generována, pokud je zničena relace přihlášení. Může být spojena s událostí přihlášení pomocí hodnoty ID přihlášení. Hodnoty ID přihlášení jsou jednoznačné pouze v rámci jednotlivých restartů stejného počítače.
Record Number: 72806
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150728184405.428904-000
Event Type: Úspěšný audit
User:

Computer Name: LPSkitty
Event Code: 4624
Message: Účet byl úspěšně přihlášen.

Předmět:
ID zabezpečení: S-1-0-0
Název účtu: -
Doména účtu: -
ID přihlášení: 0x0

Typ přihlášení: 3

Úroveň zosobnění: Zosobnění

Nové přihlášení:
ID zabezpečení: S-1-5-7
Název účtu: ANONYMOUS LOGON
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3B747EF
GUID přihlášení: {00000000-0000-0000-0000-000000000000}

Informace o procesu:
ID procesu: 0x0
Název procesu: -

Informace o síti:
Název pracovní stanice: ASUS
Adresa zdrojové sítě 10.0.0.33
Zdrojový port: 52422

Podrobné informace o ověření:
Proces přihlášení: NtLmSsp
Balíček ověření: NTLM
Přenosové služby: -
Název balíčku (pouze NTLM): NTLM V1
Délka klíče: 128

Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.

Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.

Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).

Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.

Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.

Pole úrovně zosobnění označuje rozsah, ve kterém může být proces v přihlašovací relaci zosobněn.

Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 72805
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150728184405.424910-000
Event Type: Úspěšný audit
User:

Computer Name: LPSkitty
Event Code: 4797
Message: Došlo k pokusu o zadání dotazu na existenci prázdného hesla pro účet.

Subjekt:
ID zabezpečení: S-1-5-21-2330037179-736564475-2884274896-1002
Název účtu: Dominik
Doména účtu: LPSKITTY
ID přihlášení: 0x71BE0

Další informace:
Pracovní stanice volajícího: LPSKITTY
Název cílového účtu: UpdatusUser
Doména cílového účtu: LPSkitty
Record Number: 72804
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150728184217.153660-000
Event Type: Úspěšný audit
User:

Computer Name: LPSkitty
Event Code: 4797
Message: Došlo k pokusu o zadání dotazu na existenci prázdného hesla pro účet.

Subjekt:
ID zabezpečení: S-1-5-21-2330037179-736564475-2884274896-1002
Název účtu: Dominik
Doména účtu: LPSKITTY
ID přihlášení: 0x71BE0

Další informace:
Pracovní stanice volajícího: LPSKITTY
Název cílového účtu: HomeGroupUser$
Doména cílového účtu: LPSkitty
Record Number: 72803
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150728184217.145655-000
Event Type: Úspěšný audit
User:

======Environment variables======

"FP_NO_HOST_CHECK"=NO
"USERNAME"=SYSTEM
"ComSpec"=%SystemRoot%\system32\cmd.exe
"TMP"=%SystemRoot%\TEMP
"OS"=Windows_NT
"windir"=%SystemRoot%
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=4
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
"PROCESSOR_REVISION"=3a09
"Path"=C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x86;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x64;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Skype\Phone\;
"configsetroot"=%SystemRoot%\ConfigSetRoot

-----------------EOF-----------------

DriverPlayerCZE
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 05 zář 2015 20:18

Re: Prosím očištění za sekaního pc

#3 Příspěvek od DriverPlayerCZE »

info.txt logfile of random's system information tool 1.10 2015-09-05 20:21:50

======MBR======

0x0000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000BD508ABF000000000200EEFFFFFF01000000FFFFFFFF00000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000000055AA

======Uninstall list======

ASUS VivoBook-->MsiExec.exe /I{04FDBE69-F9FD-42A2-9008-E5CE7F60C6BE}
-->"C:\Program Files (x86)\WildGames\Game Explorer Categories - genres\Uninstall.exe"
-->MsiExec /X{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}
Adobe AIR-->C:\Program Files (x86)\Common Files\Adobe AIR\Versions\1.0\Resources\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{A2BCA9F1-566C-4805-97D1-7FDC93386723}
Adobe Community Help-->msiexec /qb /x {0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}
Adobe Community Help-->MsiExec.exe /I{0D2DBE8A-43D0-7830-7AE7-CA6C99A832E7}
Adobe Media Player-->msiexec /qb /x {DE3A9DC5-9A5D-6485-9662-347162C7E4CA}
Adobe Media Player-->MsiExec.exe /I{DE3A9DC5-9A5D-6485-9662-347162C7E4CA}
Adobe Photoshop CS5-->C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\core\PDApp.exe --appletID="DWA_UI" --appletVersion="1.0" --mode="Uninstall" --mediaSignature="{15FEDA5F-141C-4127-8D7E-B962D1742728}"
Adobe Reader X MUI-->MsiExec.exe /I{AC76BA86-7AD7-FFFF-7B44-AA0000000001}
ASUS InstantOn-->MsiExec.exe /I{749F674B-2674-47E8-879C-5626A06B2A91}
ASUS LifeFrame3-->MsiExec.exe /X{1DBD1F12-ED93-49C0-A7CC-56CBDE488158}
ASUS Live Update-->MsiExec.exe /X{FA540E67-095C-4A1B-97BA-4D547DEC9AF4}
ASUS Power4Gear Hybrid-->MsiExec.exe /I{9B6239BF-4E85-4590-8D72-51E30DB1A9AA}
ASUS Screen Saver-->MsiExec.exe /I{0FBEEDF8-30FA-4FA3-B31F-C9C7E7E8DFA2}
ASUS Smart Gesture-->MsiExec.exe /I{4D3286A6-F6AB-498A-82A4-E4F040529F3D}
ASUS Splendid Video Enhancement Technology-->MsiExec.exe /X{0969AF05-4FF6-4C00-9406-43599238DE0D}
ASUS USB Charger Plus-->MsiExec.exe /X{A859E3E5-C62F-4BFA-AF1D-2B95E03166AF}
ASUS WebStorage Sync Agent-->C:\Program Files (x86)\ASUS\WebStorage Sync Agent\uninst.exe
ASUSDVD-->"C:\Program Files (x86)\InstallShield Installation Information\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}\Setup.exe" /z-uninstall
ASUSDVD-->"C:\Program Files (x86)\InstallShield Installation Information\{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}\Setup.exe" /z-uninstall
ATK Package-->MsiExec.exe /I{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}
AVG 2015-->"C:\Program Files (x86)\AVG\AVG2015\avgmfapx.exe" /AppMode=SETUP /Uninstall /UDS=1
AVG 2015-->MsiExec.exe /I{6B171EFC-F41F-4055-A4DE-5B9480DA17AA}
AVG 2015-->MsiExec.exe /I{CEEAE734-B717-41D1-BF50-378EC081C6B1}
Azteca-->"C:\Program Files (x86)\WildGames\Azteca\uninstall\uninstaller.exe"
Bejeweled 3-->"C:\Program Files (x86)\WildGames\Bejeweled 3\uninstall\uninstaller.exe"
Camtasia Studio 8-->MsiExec.exe /I{474DFABF-E55B-4905-ABAA-40791A6AC77F}
CCleaner-->"C:\Program Files\CCleaner\uninst.exe"
Cut the Rope-->"C:\Program Files (x86)\WildGames\Cut the Rope\uninstall\uninstaller.exe"
D3DX10-->MsiExec.exe /X{E09C4DB7-630C-4F06-A631-8EA7239923AF}
Fotogalerie-->MsiExec.exe /X{3CBD94C1-BA15-488C-888B-D8DD296CC6DC}
Galerie de photos-->MsiExec.exe /X{446CC8CE-0E90-44F7-ADD0-774B243EF090}
Google Chrome-->"C:\Program Files (x86)\Google\Chrome\Application\45.0.2454.85\Installer\setup.exe" --uninstall --multi-install --chrome --system-level
Google Update Helper-->MsiExec.exe /I{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}
Intel(R) Dynamic Platform and Thermal Framework-->C:\Program Files (x86)\Intel\Intel(R) Dynamic Platform and Thermal Framework\Uninstall\setup.exe -uninstall
Intel(R) Management Engine Components-->C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\Uninstall\setup.exe -uninstall
Intel(R) Processor Graphics-->C:\Program Files (x86)\Intel\Intel(R) Processor Graphics\Uninstall\setup.exe -uninstall
Intel(R) SDK for OpenCL - CPU Only Runtime Package-->C:\Program Files (x86)\Intel\OpenCL SDK\2.0\Uninstall\setup.exe -uninstall
Intel® Trusted Connect Service Client-->MsiExec.exe /I{F4404AFD-2EF3-40C1-8C09-29E5F3B6972B}
Java 7 Update 51 (64-bit)-->MsiExec.exe /X{26A24AE4-039D-4CA4-87B4-2F86417051FF}
K-Lite Mega Codec Pack 11.2.0-->"C:\Program Files (x86)\K-Lite Codec Pack\unins000.exe"
League of Legends-->msiexec.exe /x {79BF4901-1EC4-4726-B3C2-A7859706C6E7}
League of Legends-->MsiExec.exe /X{6B84E528-9705-4D36-9C97-97B8E23DAB75}
League of Legends-->MsiExec.exe /X{79BF4901-1EC4-4726-B3C2-A7859706C6E7}
LightScribe System Software-->MsiExec.exe /X{10427BCB-0742-43BE-81E2-3920972946F5}
LogMeIn Hamachi-->C:\WINDOWS\SysWOW64\\msiexec.exe /i {517E7DBD-7A5B-4B7F-B137-82AB4DAD68FC} REMOVE=ALL
LogMeIn Hamachi-->MsiExec.exe /I{517E7DBD-7A5B-4B7F-B137-82AB4DAD68FC}
McAfee SiteAdvisor-->C:\PROGRA~2\McAfee\SITEAD~1\UNINST~1.EXE
Metric Collection SDK 35-->MsiExec.exe /X{C2B5B5B0-2545-4E94-B4BA-548D4BF0B196}
Microsoft Games for Windows - LIVE -->MsiExec.exe /X{4AA3D64E-9EC3-4B0F-AB91-5885AC55641F}
Microsoft Games for Windows - LIVE Redistributable-->MsiExec.exe /X{FD052FB9-FE90-4438-B355-15EDC89D8FB1}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {6E107EB7-8B55-48BF-ACCB-199F86A2CD93}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {664655D8-B9BB-455D-8A58-7EAF7B0B2862}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-002A-0409-1000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0044-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0115-0409-0000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0116-0409-1000-0000000FF1CE} /uninstall {98333358-268C-4164-B6D4-C96DF5153727}
Microsoft Office 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-0117-0409-0000-0000000FF1CE} /uninstall {AAA19365-932B-49BD-8138-BE28CEE9C4B4}
Microsoft Office Access MUI (English) 2007-->MsiExec.exe /X{90120000-0015-0409-0000-0000000FF1CE}
Microsoft Office Access Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0117-0409-0000-0000000FF1CE}
Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
Microsoft Office InfoPath MUI (English) 2007-->MsiExec.exe /X{90120000-0044-0409-0000-0000000FF1CE}
Microsoft Office Office 64-bit Components 2007-->MsiExec.exe /X{90120000-002A-0000-1000-0000000FF1CE}
Microsoft Office Outlook MUI (English) 2007-->MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
Microsoft Office Professional Plus 2007-->"C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall PROPLUS /dll OSETUP.DLL
Microsoft Office Professional Plus 2007-->MsiExec.exe /X{90120000-0011-0000-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {1FF96026-A04A-4C3E-B50A-BB7022654D0F}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {71F055E8-E2C6-4214-BB3D-BFE03561B89E}
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {2314F9A1-126F-45CC-8A5E-DFAF866F3FBC}
Microsoft Office Publisher MUI (English) 2007-->MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
Microsoft Office Shared 64-bit MUI (English) 2007-->MsiExec.exe /X{90120000-002A-0409-1000-0000000FF1CE}
Microsoft Office Shared 64-bit Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0116-0409-1000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft Office-->MsiExec.exe /X{90150000-0138-0409-0000-0000000FF1CE}
Microsoft SQL Server 2005 Compact Edition [ENU]-->MsiExec.exe /I{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}
Microsoft Visual C++ 2005 Redistributable (x64)-->MsiExec.exe /X{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{837b34e3-7c30-493c-8f6a-2b0f04e2912c}
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161-->MsiExec.exe /X{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17-->MsiExec.exe /X{9A25302D-30C0-39D9-BD6F-21E6EC160475}
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161-->MsiExec.exe /X{9BE518E6-ECC6-35A9-88E4-87755C07200F}
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219-->MsiExec.exe /X{1D8E6291-B0D5-35EC-8441-6616F567A0F7}
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219-->MsiExec.exe /X{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030-->"C:\ProgramData\Package Cache\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}\vcredist_x64.exe" /uninstall
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030-->"C:\ProgramData\Package Cache\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030-->MsiExec.exe /X{37B8F9C7-03FB-3253-8781-2517C99D7C00}
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030-->MsiExec.exe /X{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030-->MsiExec.exe /X{B175520C-86A2-35A7-8619-86DC379688B9}
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030-->MsiExec.exe /X{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005-->"C:\ProgramData\Package Cache\{ce085a78-074e-4823-8dc1-8a721b94b76d}\vcredist_x86.exe" /uninstall
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005-->MsiExec.exe /X{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005-->MsiExec.exe /X{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}
Microsoft XNA Framework Redistributable 4.0-->MsiExec.exe /I{2BFC7AA0-544C-4E3A-8796-67F3BE655BE9}
Microsoft_VC80_ATL_x86_x64-->MsiExec.exe /I{925D058B-564A-443A-B4B2-7E90C6432E55}
Microsoft_VC80_CRT_x86_x64-->MsiExec.exe /I{4569AD91-47F4-4D9E-8FC9-717EC32D7AE1}
Microsoft_VC80_CRT_x86-->MsiExec.exe /I{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}
Microsoft_VC80_MFC_x86_x64-->MsiExec.exe /I{C8C1BAD5-54E6-4146-AD07-3A8AD36569C3}
Microsoft_VC80_MFC_x86-->MsiExec.exe /I{D1A19B02-817E-4296-A45B-07853FD74D57}
Microsoft_VC80_MFCLOC_x86_x64-->MsiExec.exe /I{1E9FC118-651D-4934-97BE-E53CAE5C7D45}
Microsoft_VC80_MFCLOC_x86-->MsiExec.exe /I{D92BBB52-82FF-42ED-8A3C-4E062F944AB7}
Microsoft_VC90_ATL_x86_x64-->MsiExec.exe /I{8557397C-A42D-486F-97B3-A2CBC2372593}
Microsoft_VC90_ATL_x86-->MsiExec.exe /I{033E378E-6AD3-4AD5-BDEB-CBD69B31046C}
Microsoft_VC90_CRT_x86_x64-->MsiExec.exe /I{92A3CA0D-55CD-4C5D-BA95-5C2600C20F26}
Microsoft_VC90_CRT_x86-->MsiExec.exe /I{08D2E121-7F6A-43EB-97FD-629B44903403}
Microsoft_VC90_MFC_x86_x64-->MsiExec.exe /I{A472B9E4-0AFF-4F7B-B25D-F64F8E928AAB}
Microsoft_VC90_MFC_x86-->MsiExec.exe /I{635FED5B-2C6D-49BE-87E6-7A6FCD22BC5A}
Movie Maker-->MsiExec.exe /X{03CC9D58-B132-4CC0-A521-4F3660AA43C7}
Movie Maker-->MsiExec.exe /X{701FE1BC-834A-4857-AF62-6EBA50CFBC78}
Movie Maker-->MsiExec.exe /X{8E6E8CBB-8E58-493C-943F-4664F5F2FEDB}
Movie Maker-->MsiExec.exe /X{A17946CA-18E5-4CF0-8D55-A56D804718F8}
Movie Maker-->MsiExec.exe /X{AE8044B5-FCA3-4EBE-AC78-0FB3A6E8DC76}
Movie Maker-->MsiExec.exe /X{ED6C77F9-4D7E-447C-9EC0-9A212D075535}
MSVCRT-->MsiExec.exe /I{8DD46C6A-0056-4FEC-B70A-28BB16A1F11F}
MSVCRT110_amd64-->MsiExec.exe /I{E9FA781F-3E80-4399-825A-AD3E11C28C77}
MSVCRT110-->MsiExec.exe /I{8E14DDC8-EA60-4E18-B3E3-1937104D5BDA}
MyBitCast 2.0-->C:\Program Files (x86)\ASUS\MyBitCast\uninst.exe
Nokia Connectivity Cable Driver-->RUNDLL32.EXE ccdcmbwux64.dll,WuUninstall
NVIDIA Graphics Driver 331.65-->"C:\WINDOWS\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{668D2DEC-DDE8-4B66-B317-2A11316AF5D2}\NVI2.DLL",UninstallPackage Display.Driver
NVIDIA HD Audio Driver 1.3.18.0-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{9267DCB4-5ED2-48AB-88E6-51DB6D63B3D9}\NVI2.DLL",UninstallPackage HDAudio.Driver
NVIDIA PhysX System Software 9.12.1031-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{9267DCB4-5ED2-48AB-88E6-51DB6D63B3D9}\NVI2.DLL",UninstallPackage Display.PhysX
NVIDIA PhysX-->MsiExec.exe /I{8B922CF8-8A6C-41CE-A858-F1755D7F5D29}
NVIDIA Update 1.11.3-->"C:\Windows\SysWOW64\RunDll32.EXE" "C:\Program Files\NVIDIA Corporation\Installer2\installer.{9267DCB4-5ED2-48AB-88E6-51DB6D63B3D9}\NVI2.DLL",UninstallPackage Display.Update
PDF Settings CS5-->MsiExec.exe /I{A78FE97A-C0C8-49CE-89D0-EDD524A17392}
Peggle-->"C:\Program Files (x86)\WildGames\Peggle\uninstall\uninstaller.exe"
Penguins!-->"C:\Program Files (x86)\WildGames\Penguins!\uninstall\uninstaller.exe"
Photo Common-->MsiExec.exe /X{49110532-D289-4BFF-807C-45B782E66A7C}
Photo Common-->MsiExec.exe /X{4AF53C99-315D-4536-873F-029D2D274AE2}
Photo Common-->MsiExec.exe /X{743FD554-A73F-4FE8-BE7B-C283D16297F9}
Photo Common-->MsiExec.exe /X{E1203F8C-FF34-4968-A4A5-B4F1F8533DAB}
Photo Common-->MsiExec.exe /X{F54030F3-14B6-432D-9361-78DCB1473920}
Photo Gallery-->MsiExec.exe /X{30F99474-EBE3-4134-A02B-F6CD38CFE243}
Photo Gallery-->MsiExec.exe /X{63824BC0-B747-43F3-9863-1066D64AD919}
Photo Gallery-->MsiExec.exe /X{F67CA22C-C11F-4573-8406-57F75BA06B51}
PunkBuster Services-->C:\WINDOWS\system32\pbsvc.exe -u
Qualcomm Atheros Client Installation Program-->"C:\Program Files (x86)\InstallShield Installation Information\{28006915-2739-4EBE-B5E8-49B25D32EB33}\setup.exe" -runfromtemp -l0x0409 -removeonly
Raccolta foto-->MsiExec.exe /X{D04EBB49-C985-4A38-8695-62000861293A}
Realtek Ethernet Controller Driver-->C:\Program Files (x86)\InstallShield Installation Information\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}\setup.exe -runfromtemp -l0x0409 -removeonly
Realtek High Definition Audio Driver-->C:\Program Files\Realtek\Audio\HDA\RtlUpd64.exe -r -m -nrg2709
Realtek PCIE Card Reader-->"C:\Program Files (x86)\InstallShield Installation Information\{C1594429-8296-4652-BF54-9DBE4932A44C}\setup.exe" -runfromtemp -removeonly
Security Update for Microsoft Office 2007 suites (KB2596650) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {DF2F5DAC-93D7-434B-96B1-EAF4D891AD24}
Security Update for Microsoft Office 2007 suites (KB2596754) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {B145DBBB-7778-4A5D-9D2B-DA6569F02391}
Security Update for Microsoft Office 2007 suites (KB2596792) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {E34960DB-2A93-45DB-A208-02650F7AB09C}
Security Update for Microsoft Office 2007 suites (KB2596825) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {B7727B4D-5EA3-4C11-9D30-15E47616DCAF}
Security Update for Microsoft Office 2007 suites (KB2596871) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {293FB6BE-D3EB-4162-B522-F9108040B9FE}
Security Update for Microsoft Office 2007 suites (KB2597969) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {2B3C041A-A7F2-4A24-968D-4BEB6A123D15}
Security Update for Microsoft Office 2007 suites (KB2687409) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {A33F3451-9AD4-46C0-9CDB-AA38071CDAB5}
Security Update for Microsoft Office 2007 suites (KB2687439) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {3579CE34-B225-4B19-A3AF-DE5F562A212F}
Security Update for Microsoft Office 2007 suites (KB2760585) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {8907F32C-DF89-4C2F-AEDE-0DB4B65451C0}
Security Update for Microsoft Office 2007 suites (KB2760591) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {319FC809-3841-4739-A25F-FDBADF073697}
Security Update for Microsoft Office 2007 suites (KB2817330) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {32DA925D-8B7D-4298-B893-6291D28CE809}
Security Update for Microsoft Office 2007 suites (KB2825645) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {BF11577A-6876-45AA-86C9-2BA4CFB8B019}
Security Update for Microsoft Office 2007 suites (KB2825645) 32-Bit Edition -->msiexec /package {90120000-002A-0000-1000-0000000FF1CE} /uninstall {BF11577A-6876-45AA-86C9-2BA4CFB8B019}
Security Update for Microsoft Office 2007 suites (KB2837610) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {BBF521D0-8A73-4B87-8AF5-1D26CFF6303F}
Security Update for Microsoft Office 2007 suites (KB2850022) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {6B4A3804-666A-4DD8-84A7-B97701416784}
Security Update for Microsoft Office 2007 suites (KB2880507) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {36842896-D83B-4C92-8261-6312B7DEB562}
Security Update for Microsoft Office 2007 suites (KB2880508) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {4C1BE82B-9AC0-4AB9-B76D-5467131955E1}
Security Update for Microsoft Office 2007 suites (KB2881069) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {FC572B0C-6356-46CC-A01E-CCCEC4340BF5}
Security Update for Microsoft Office 2007 suites (KB2920795) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {56BB0BAB-7C3C-40C1-8F70-1AAE6A5FE45F}
Security Update for Microsoft Office 2007 suites (KB3054888) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {63F8EA0A-DB47-4896-AF49-9D1F81D4997F}
Security Update for Microsoft Office 2007 suites (KB3054890) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {BAA41D34-C953-47F5-9430-87E74D9DF0A7}
Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB2863812) 32-Bit Edition -->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {180F5C31-2C4F-43A6-9539-801D5EC77F89}
Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB2965208) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {C79D9A1A-32DB-4B96-BC3C-772000D6FAB1}
Security Update for Microsoft Office Compatibility Pack Service Pack 3 (KB2986254) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {2EE92094-C692-4E9F-9034-DBC586621C99}
Security Update for Microsoft Office Excel 2007 (KB3054992) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {0385F9E8-5593-4E2E-915E-916960B2FEA3}
Security Update for Microsoft Office InfoPath 2007 (KB2687440) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {8F311D6C-D8DD-4C32-9457-1A129CABD1A5}
Security Update for Microsoft Office PowerPoint 2007 (KB2596912) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {0EF0D4FB-BB23-4515-AAEA-1240AC2DA525}
Security Update for Microsoft Office PowerPoint 2007 (KB3055051) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {7759139C-222D-443A-87D3-0A22925A584D}
Security Update for Microsoft Office Publisher 2007 (KB2817565) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {F88656FB-92A1-484E-911E-D259B15CF420}
Security Update for Microsoft Office Word 2007 (KB3055052) 32-Bit Edition -->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {424ADE6E-3852-4C0C-B32A-92701D358032}
Shared C Run-time for x64-->MsiExec.exe /I{EF79C448-6946-4D71-8134-03407888C054}
Skype Click to Call-->MsiExec.exe /X{6D1221A9-17BF-4EC0-81F2-27D30EC30701}
Skype™ 7.6-->MsiExec.exe /X{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}
Start Menu 8-->"C:\Program Files (x86)\IObit\Start Menu 8\unins000.exe"
Steam-->C:\Program Files (x86)\Steam\uninstall.exe
Tales of Lagoona-->"C:\Program Files (x86)\WildGames\Tales of Lagoona\uninstall\uninstaller.exe"
Team Fortress 2-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/440
TeamViewer 10-->C:\Program Files (x86)\TeamViewer\uninstall.exe
Unturned-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/304930
Update for 2007 Microsoft Office System (KB967642)-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {C444285D-5E4F-48A4-91DD-47AAAA68E92D}
Update for Microsoft Office 2007 Help for Common Features (KB963673)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {AB365889-0395-4FAD-B702-CA5985D53D42}
Update for Microsoft Office 2007 suites (KB2596620) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {A024FC7B-77DE-45DE-A058-1C049A17BFB3}
Update for Microsoft Office 2007 suites (KB2596787) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {02206DCC-0CAF-46BB-8EDC-6C281AA21EFA}
Update for Microsoft Office 2007 suites (KB2596787) 32-Bit Edition-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {02206DCC-0CAF-46BB-8EDC-6C281AA21EFA}
Update for Microsoft Office 2007 suites (KB2767916) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {E9A82945-BA29-4EE8-8F2A-2F49545E9CF2}
Update for Microsoft Office 2007 suites (KB2965286) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {7C3337E5-1294-4270-A64F-DCEF812159E5}
Update for Microsoft Office Access 2007 Help (KB963663)-->msiexec /package {90120000-0015-0409-0000-0000000FF1CE} /uninstall {6B76A18A-AA1E-42AB-A7AD-6C84BBB43987}
Update for Microsoft Office Excel 2007 Help (KB963678)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {199DF7B6-169C-448C-B511-1054101BE9C9}
Update for Microsoft Office Infopath 2007 Help (KB963662)-->msiexec /package {90120000-0044-0409-0000-0000000FF1CE} /uninstall {716B81B8-B13C-41DF-8EAC-7A2F656CAB63}
Update for Microsoft Office Outlook 2007 (KB2687404) 32-Bit Edition-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {ED38F8A3-4F61-494E-8BCA-E3AC7760C924}
Update for Microsoft Office Outlook 2007 (KB2863811) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {53DEC068-4690-4F6B-9946-7D21EF02236B}
Update for Microsoft Office Outlook 2007 Help (KB963677)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {0451F231-E3E3-4943-AB9F-58EB96171784}
Update for Microsoft Office Outlook 2007 Junk Email Filter (KB3055023) 32-Bit Edition-->msiexec /package {90120000-0011-0000-0000-0000000FF1CE} /uninstall {EE216216-FA20-4871-B8F9-388B34D2D55F}
Update for Microsoft Office Powerpoint 2007 Help (KB963669)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {397B1D4F-ED7B-4ACA-A637-43B670843876}
Update for Microsoft Office Publisher 2007 Help (KB963667)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {2E40DE55-B289-4C8B-8901-5D369B16814F}
Update for Microsoft Office Script Editor Help (KB963671)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {CD11C6A2-FFC6-4271-8EAB-79C3582F505C}
Update for Microsoft Office Word 2007 Help (KB963665)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {80E762AA-C921-4839-9D7D-DB62A72C0726}
Update Installer for WildTangent Games App-->"C:\Program Files (x86)\WildTangent Games\App\Uninstall.exe"
Visual Studio 2012 x64 Redistributables-->MsiExec.exe /I{8C775E70-A791-4DA8-BCC3-6AB7136F4484}
Visual Studio 2012 x86 Redistributables-->MsiExec.exe /I{98EFF19A-30AB-4E4B-B943-F06B1C63EBF8}
WARMODE-->"C:\Program Files (x86)\Steam\steam.exe" steam://uninstall/391460
WildTangent Games App-->"C:\Program Files (x86)\WildTangent Games\Touchpoints\asus\Uninstall.exe"
WildTangent Games-->"C:\Program Files (x86)\WildGames\Uninstall.exe"
Windows Driver Package - ASUS (ATP) Mouse (01/10/2013 1.0.0.170)-->C:\PROGRA~1\DIFX\A66243~1\dpinst.exe /u C:\Windows\System32\DriverStore\FileRepository\asustp.inf_amd64_536dba63d5fddbba\asustp.inf
Windows Live Communications Platform-->MsiExec.exe /I{0454BB9A-2A7A-4214-BDFF-937F7A711A44}
Windows Live Essentials-->C:\Program Files (x86)\Windows Live\Installer\wlarp.exe
Windows Live Essentials-->MsiExec.exe /I{690F5BA3-5DEB-42CD-962B-F687EE59FAA7}
Windows Live Essentials-->MsiExec.exe /I{6CEA775F-E70A-4D72-A3B4-1EB3A5AD4B5C}
Windows Live Essentials-->MsiExec.exe /I{B096A0E4-26A1-4E9F-8548-577964B9434B}
Windows Live Essentials-->MsiExec.exe /I{B7F31B9C-8775-4500-8E9D-6ABE9AE17CF4}
Windows Live Installer-->MsiExec.exe /I{C424CD5E-EA05-4D3E-B5DA-F9F149E1D3AC}
Windows Live Photo Common-->MsiExec.exe /X{C9B6EFD0-4F01-4BBA-8374-39AD99A3ED72}
Windows Live PIMT Platform-->MsiExec.exe /I{6A8DB215-7BCD-4377-B015-2E4541A3E7C6}
Windows Live SOXE Definitions-->MsiExec.exe /I{8A642ACD-CE3A-4A23-A8B1-A0F7EB12B214}
Windows Live SOXE-->MsiExec.exe /I{FE7C0B3D-50B9-4951-BE78-A321CBF86552}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{4AA2A466-8031-403A-8236-5301B4E391FB}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{90993BD9-C7D9-4C2F-B56C-2F7AFEBD4CD0}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{B727564C-47D3-473A-AC9E-F4BE7B1BD5D3}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{CE542E0D-E056-4426-9F98-084C13E18641}
Windows Live UX Platform Language Pack-->MsiExec.exe /I{F21F0424-B2FF-40BF-A984-9E0D7FB4C97E}
Windows Live UX Platform-->MsiExec.exe /I{4CCBD1F4-CEEC-452A-9CB8-46564B501315}
Windows Live-->MsiExec.exe /I{8D813AFF-D91D-4EE0-821F-B901FC2E89FA}
WinFlash-->MsiExec.exe /X{8F21291E-0444-4B1D-B9F9-4370A73E346D}
WinRAR 5.21 (64-bit)-->C:\Program Files\WinRAR\uninstall.exe

======System event log======

Computer Name: WIN-CBBJMM2V1JS
Event Code: 7040
Message: Režim spuštění služby Windows Search byl změněn z disabled na auto start.
Record Number: 1062
Source Name: Service Control Manager
Time Written: 20131202093733.297284-000
Event Type: Informace
User: LPSkitty\Administrator

Computer Name: WIN-CBBJMM2V1JS
Event Code: 7040
Message: Režim spuštění služby Windows Search byl změněn z auto start na disabled.
Record Number: 1061
Source Name: Service Control Manager
Time Written: 20131202093732.234747-000
Event Type: Informace
User: LPSkitty\Administrator

Computer Name: WIN-CBBJMM2V1JS
Event Code: 104
Message: Byl vymazán soubor protokolu Setup.
Record Number: 1060
Source Name: Microsoft-Windows-Eventlog
Time Written: 20131202093725.796926-000
Event Type: Informace
User: LPSkitty\Administrator

Computer Name: WIN-CBBJMM2V1JS
Event Code: 104
Message: Byl vymazán soubor protokolu Application.
Record Number: 1059
Source Name: Microsoft-Windows-Eventlog
Time Written: 20131202093725.703171-000
Event Type: Informace
User: LPSkitty\Administrator

Computer Name: WIN-CBBJMM2V1JS
Event Code: 104
Message: Byl vymazán soubor protokolu System.
Record Number: 1058
Source Name: Microsoft-Windows-Eventlog
Time Written: 20131202093725.656294-000
Event Type: Informace
User: LPSkitty\Administrator

=====Application event log=====

Computer Name: WIN-CBBJMM2V1JS
Event Code: 5001
Message:
Record Number: 689
Source Name: AVLogEvent
Time Written: 20131202093735.000000-000
Event Type: Informace
User: NT AUTHORITY\SYSTEM

Computer Name: WIN-CBBJMM2V1JS
Event Code: 6000
Message: Odběratel oznámení přihlašování do systému Windows <SessionEnv> nemohl zpracovat událost upozornění.
Record Number: 688
Source Name: Microsoft-Windows-Winlogon
Time Written: 20131202093735.000000-000
Event Type: Informace
User:

Computer Name: WIN-CBBJMM2V1JS
Event Code: 1003
Message: Služba Windows Search byla spuštěna.

Record Number: 687
Source Name: Microsoft-Windows-Search
Time Written: 20131202093733.000000-000
Event Type: Informace
User:

Computer Name: WIN-CBBJMM2V1JS
Event Code: 1013
Message: Služba Windows Search byla řádně zastavena.

Record Number: 686
Source Name: Microsoft-Windows-Search
Time Written: 20131202093732.000000-000
Event Type: Informace
User:

Computer Name: WIN-CBBJMM2V1JS
Event Code: 103
Message: SearchIndexer (3776) Windows: Databázový stroj zastavil instanci (0).

Nesprávné vypnutí: 0

Sekvence interního načasování: [1] 0.000, [2] 0.015, [3] 0.000, [4] 0.000, [5] 0.032, [6] 0.000, [7] 0.000, [8] 0.000, [9] 0.031, [10] 0.000, [11] 0.000, [12] 0.000, [13] 0.000, [14] 0.000, [15] 0.000.
Record Number: 685
Source Name: ESENT
Time Written: 20131202093732.000000-000
Event Type: Informace
User:

=====Security event log=====

Computer Name: LPSkitty
Event Code: 4624
Message: Účet byl úspěšně přihlášen.

Předmět:
ID zabezpečení: S-1-0-0
Název účtu: -
Doména účtu: -
ID přihlášení: 0x0

Typ přihlášení: 3

Úroveň zosobnění: Zosobnění

Nové přihlášení:
ID zabezpečení: S-1-5-7
Název účtu: ANONYMOUS LOGON
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3B74812
GUID přihlášení: {00000000-0000-0000-0000-000000000000}

Informace o procesu:
ID procesu: 0x0
Název procesu: -

Informace o síti:
Název pracovní stanice: ASUS
Adresa zdrojové sítě 10.0.0.33
Zdrojový port: 52423

Podrobné informace o ověření:
Proces přihlášení: NtLmSsp
Balíček ověření: NTLM
Přenosové služby: -
Název balíčku (pouze NTLM): NTLM V1
Délka klíče: 128

Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.

Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.

Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).

Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.

Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.

Pole úrovně zosobnění označuje rozsah, ve kterém může být proces v přihlašovací relaci zosobněn.

Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 72807
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150728184405.539979-000
Event Type: Úspěšný audit
User:

Computer Name: LPSkitty
Event Code: 4634
Message: Účet byl odhlášen.

Předmět:
ID zabezpečení: S-1-5-7
Název účtu: ANONYMOUS LOGON
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3B747EF

Typ přihlášení: 3

Tato událost je generována, pokud je zničena relace přihlášení. Může být spojena s událostí přihlášení pomocí hodnoty ID přihlášení. Hodnoty ID přihlášení jsou jednoznačné pouze v rámci jednotlivých restartů stejného počítače.
Record Number: 72806
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150728184405.428904-000
Event Type: Úspěšný audit
User:

Computer Name: LPSkitty
Event Code: 4624
Message: Účet byl úspěšně přihlášen.

Předmět:
ID zabezpečení: S-1-0-0
Název účtu: -
Doména účtu: -
ID přihlášení: 0x0

Typ přihlášení: 3

Úroveň zosobnění: Zosobnění

Nové přihlášení:
ID zabezpečení: S-1-5-7
Název účtu: ANONYMOUS LOGON
Doména účtu: NT AUTHORITY
ID přihlášení: 0x3B747EF
GUID přihlášení: {00000000-0000-0000-0000-000000000000}

Informace o procesu:
ID procesu: 0x0
Název procesu: -

Informace o síti:
Název pracovní stanice: ASUS
Adresa zdrojové sítě 10.0.0.33
Zdrojový port: 52422

Podrobné informace o ověření:
Proces přihlášení: NtLmSsp
Balíček ověření: NTLM
Přenosové služby: -
Název balíčku (pouze NTLM): NTLM V1
Délka klíče: 128

Tato událost je generována po vytvoření relace přihlášení. Je generována v počítači, ke kterému byl získán přístup.

Pole s předmětem označují účet v místním systému, který požadoval přihlášení. Jedná se nejčastěji o službu, například službu serveru nebo místní proces, například Winlogon.exe nebo Services.exe.

Pole Typ přihlášení označuje, k jakému typu přihlášení došlo. Nejběžnější typy jsou 2 (interaktivní) a 3 (síť).

Pole Nové přihlášení označují účet, pro který bylo nové přihlášení vytvořeno, tj. účet, který byl přihlášen.

Pole Síť označují původ požadavku na vzdálené přihlášení. Název pracovní stanice není vždy k dispozici a v některých případech může být toto pole prázdné.

Pole úrovně zosobnění označuje rozsah, ve kterém může být proces v přihlašovací relaci zosobněn.

Pole s informacemi o ověření poskytují podrobné informace o tomto konkrétním požadavku na přihlášení.
- GUID přihlášení je jednoznačný identifikátor, který je možné použít ke spojení této události s událostí KDC.
- Přenosové služby označují, které pomocné služby se podílely na tomto požadavku na přihlášení.
- Název balíčku označuje, který dílčí protokol z protokolů NTLM byl použit.
- Délka klíče označuje délku generovaného klíče relace. Tato hodnota bude 0, pokud nebyl požadován žádný klíč relace.
Record Number: 72805
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150728184405.424910-000
Event Type: Úspěšný audit
User:

Computer Name: LPSkitty
Event Code: 4797
Message: Došlo k pokusu o zadání dotazu na existenci prázdného hesla pro účet.

Subjekt:
ID zabezpečení: S-1-5-21-2330037179-736564475-2884274896-1002
Název účtu: Dominik
Doména účtu: LPSKITTY
ID přihlášení: 0x71BE0

Další informace:
Pracovní stanice volajícího: LPSKITTY
Název cílového účtu: UpdatusUser
Doména cílového účtu: LPSkitty
Record Number: 72804
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150728184217.153660-000
Event Type: Úspěšný audit
User:

Computer Name: LPSkitty
Event Code: 4797
Message: Došlo k pokusu o zadání dotazu na existenci prázdného hesla pro účet.

Subjekt:
ID zabezpečení: S-1-5-21-2330037179-736564475-2884274896-1002
Název účtu: Dominik
Doména účtu: LPSKITTY
ID přihlášení: 0x71BE0

Další informace:
Pracovní stanice volajícího: LPSKITTY
Název cílového účtu: HomeGroupUser$
Doména cílového účtu: LPSkitty
Record Number: 72803
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20150728184217.145655-000
Event Type: Úspěšný audit
User:

======Environment variables======

"FP_NO_HOST_CHECK"=NO
"USERNAME"=SYSTEM
"ComSpec"=%SystemRoot%\system32\cmd.exe
"TMP"=%SystemRoot%\TEMP
"OS"=Windows_NT
"windir"=%SystemRoot%
"PROCESSOR_ARCHITECTURE"=AMD64
"TEMP"=%SystemRoot%\TEMP
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PSModulePath"=%SystemRoot%\system32\WindowsPowerShell\v1.0\Modules\
"NUMBER_OF_PROCESSORS"=4
"PROCESSOR_LEVEL"=6
"PROCESSOR_IDENTIFIER"=Intel64 Family 6 Model 58 Stepping 9, GenuineIntel
"PROCESSOR_REVISION"=3a09
"Path"=C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\Windows Live\Shared;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x86;C:\Program Files (x86)\Intel\OpenCL SDK\2.0\bin\x64;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files (x86)\Skype\Phone\;
"configsetroot"=%SystemRoot%\ConfigSetRoot

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím očištění za sekaního pc

#4 Příspěvek od Márty84 »

Zdravim :)

Pokud budete priste zakladat nove tema, dejte jen jeden log. Kdyz si hned na zacatku sam odpovite, vypada to, ze uz tema nekdo resi a muze trvat dele, nez si vas nekdo vsimne.


:arrow: Doporucuji odinstalovat vse od IObit. Dokaze to nadelat peknou paseku.

:arrow: Odinstalujte McAfee SiteAdvisor.

:arrow: Stahnete crystal disk info http://sourceforge.jp/projects/crystald ... 5_0_0.zip/
Spustte jako spravce. Za chvili se zobrazi vysledek.
Kliknete nahore na napis Úpravy a pak na napis Kopírovat. To co se zkopiruje (ulozi se to do pameti) mi sem vlozte (ctrl + V)

:arrow: Stahnete AdwCleaner https://toolslib.net/downloads/finish/1/ a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Cleaning
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner[C?].txt ). Ten mi sem zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

DriverPlayerCZE
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 05 zář 2015 20:18

Re: Prosím očištění za sekaního pc

#5 Příspěvek od DriverPlayerCZE »

od Iobit mám pouze start menu 8.

discinfo:
----------------------------------------------------------------------------
CrystalDiskInfo 5.0.0 (C) 2008-2012 hiyohiyo
Crystal Dew World : http://crystalmark.info/
----------------------------------------------------------------------------

OS : Windows 8 [6.2 Build 9200] (x64)
Date : 2015/09/06 11:41:54

-- Controller Map ----------------------------------------------------------
+ Intel(R) 7 Series Chipset Family SATA AHCI Controller [ATA]
- WDC WD10JPVT-80A1YT0
- MATSHITA DVD-RAM UJ8DB S
- Řadič prostorů úložišť [SCSI]

-- Disk List ---------------------------------------------------------------
(1) WDC WD10JPVT-80A1YT0 : 1000,2 GB [0/0/0, pd1]

----------------------------------------------------------------------------
(1) WDC WD10JPVT-80A1YT0
----------------------------------------------------------------------------
Model : WDC WD10JPVT-80A1YT0
Firmware : 01.01A01
Serial Number : WD-WXQ1A91E7245
Disk Size : 1000,2 GB (8,4/137,4/1000,2)
Buffer Size : 8192 KB
Queue Depth : 32
# of Sectors : 1953525168
Rotation Rate : 5400 RPM
Interface : Serial ATA
Major Version : ATA8-ACS
Minor Version : ----
Transfer Mode : SATA/300
Power On Hours : 2985 hod.
Power On Count : 624 krát
Temparature : 38 C (100 F)
Health Status : Pozor
Features : S.M.A.R.T., APM, 48bit LBA, NCQ
APM Level : 0080h [ON]
AAM Level : ----

-- S.M.A.R.T. --------------------------------------------------------------
ID Cur Wor Thr RawValues(6) Attribute Name
01 200 200 _51 000000000038 Počet chyb čtení
03 180 178 _21 0000000007BF Čas na roztočení ploten
04 100 100 __0 00000000027C Počet spuštění/zastavení
05 200 200 140 000000000000 Počet přemapovaných sektorů
07 200 200 __0 000000000000 Počet chybných hledání
09 _96 _96 __0 000000000BA9 Hodin v činnosti
0A 100 100 __0 000000000000 Počet opakovaných pokusů o roztočení ploten
0B 100 100 __0 000000000000 Počet pokusů o překalibrování
0C 100 100 __0 000000000270 Počet cyklů zapnutí zařízení
BF __1 __1 __0 0000000000C5 Počet udalostí zaznamenaných otřesovým senzorem
C0 200 200 __0 000000000024 Počet vypnutí disku
C1 184 184 __0 00000000BE6E Počet cyklů načítání/vymazání
C2 109 101 __0 000000000026 Teplota
C4 200 200 __0 000000000000 Počet udalostí s číslem realokování sektorů
C5 200 200 __0 000000000001 Počet podezřelých sektorů
C6 100 253 __0 000000000000 Počet neopravitelných sektorů
C7 200 200 __0 000000000000 Počet chyb v kontrolním součtu UltraDMA
C8 100 253 __0 000000000000 Počet chyb při zápisu sektorů

-- IDENTIFY_DEVICE ---------------------------------------------------------
0 1 2 3 4 5 6 7 8 9
000: 427A 3FFF C837 0010 0000 003F 003F 0000 0000 0000
010: 2020 2020 2057 442D 5758 4139 4139 3145 3732 3435
020: 0000 4000 0000 3031 2E30 3031 3031 5744 4320 5744
030: 3130 4A50 5654 2D38 3041 5430 5430 2020 2020 2020
040: 2020 2020 2020 2020 2020 2020 2020 8010 0000 2F00
050: 4001 0000 0000 0007 3FFF 003F 003F FC10 00FB 0100
060: FFFF 0FFF 0000 0107 0003 0078 0078 0078 0078 0000
070: 0000 0000 0000 0000 0000 1F06 1F06 0004 004C 0048
080: 01FE 0000 746B 7D09 6123 BC09 BC09 6123 007F 005C
090: 005C 0080 FFFE 0000 0000 0000 0000 0000 0000 0000
100: 6DB0 7470 0000 0000 0000 6003 6003 0000 5001 4EE6
110: AD37 6049 0000 0000 0000 0000 0000 0000 0000 4018
120: 4018 0000 0000 0000 0000 0000 0000 0000 0029 0000
130: 0000 0000 0000 16E8 0000 0000 0000 0000 0000 0000
140: 0000 0000 0004 0000 0000 0000 0000 0000 0000 0000
150: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
160: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
170: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
180: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
190: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
200: 0000 0000 0000 0000 0000 70B5 70B5 0000 0000 4000
210: 0000 0000 0000 0000 0000 0000 0000 1518 0000 0000
220: 0000 0000 103E 0000 0000 0000 0000 0000 0000 0000
230: 0000 0000 0000 0000 0001 0000 0000 0000 0000 0000
240: 0000 0000 0000 0000 0000 0000 0000 0000 0000 0000
250: 0000 0000 0000 0000 0000 D1A5

DriverPlayerCZE
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 05 zář 2015 20:18

Re: Prosím očištění za sekaního pc

#6 Příspěvek od DriverPlayerCZE »

# AdwCleaner v5.005 - Logfile created 06/09/2015 at 11:49:35
# Updated 31/08/2015 by Xplode
# Database : 2015-09-04.4 [Server]
# Operating system : Windows 8.1 (x64)
# Username : Dominik - LPSKITTY
# Running from : C:\Users\Dominik\Desktop\adwcleaner_5.005.exe
# Option : Cleaning
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd
[-] Folder Deleted : C:\Users\Dominik\AppData\Roaming\OpenCandy

***** [ Files ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****


***** [ Registry ] *****

[-] Key Deleted : HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd
[-] Key Deleted : HKLM\SOFTWARE\Avg Secure Update

***** [ Web browsers ] *****

[-] [C:\Users\Dominik\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : fcfenmboojpjinhpgggodefccipikbpd

*************************

:: Winsock settings cleared

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [1086 bytes] ##########

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím očištění za sekaního pc

#7 Příspěvek od Márty84 »

Disk hlasi chyby. Muze to byt pricina problemu. Uvidime po docisteni.


:arrow: Udelejte kontrolu programem HD Tune
Stahnete http://www.slunecnice.cz/sw/hd-tune/ , nainstalujte a spustte jako spravce (pokud vam pri instalaci nabidne nejaky doplnek, odmitnete ho!)
V tom okne kliknete na posledni zalozku - Error Scan (pokud bude zatrzeny quick scan, tak zatrzitko zruste) a kliknete na Start.
Kontrola bude nejakou dobu trvat. Dejte vedet, jestli tam bylo nejake cervene policko.
Taky se podivejte na zalozku Health a opiste mi (vyfotte), co se tam pise. Melo by tam byt OK http://www.google.cz/imgres?um=1&hl=cs& ... s:20,i:143


:arrow: Udelejte kontrolu s MBAM. Test nastavte podle tohoto navodu (cili Vlastni sken vsech disku) http://forum.viry.cz/viewtopic.php?f=29&t=144868 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

DriverPlayerCZE
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 05 zář 2015 20:18

Re: Prosím očištění za sekaního pc

#8 Příspěvek od DriverPlayerCZE »

HD Tune: ATA WDC WD10JPVT-80A Health

ID Current Worst ThresholdData Status
(01) Raw Read Error Rate 200 200 51 57 Ok
(03) Spin Up Time 179 178 21 2008 Ok
(04) Start/Stop Count 100 100 0 637 Ok
(05) Reallocated Sector Count 200 200 140 0 Ok
(07) Seek Error Rate 100 253 0 0 Ok
(09) Power On Hours Count 96 96 0 2991 Ok
(0A) Spin Retry Count 100 100 0 0 Ok
(0B) Calibration Retry Count 100 100 0 0 Ok
(0C) Power Cycle Count 100 100 0 625 Ok
(BF) G-sense Error Rate 1 1 0 198 Ok
(C0) Power Off Retract Count 200 200 0 36 Ok
(C1) Load Cycle Count 184 184 0 48811 Ok
(C2) Temperature 111 101 0 36 Ok
(C4) Reallocated Event Count 200 200 0 0 Ok
(C5) Current Pending Sector 200 200 0 1 Ok
(C6) Offline Uncorrectable 100 253 0 0 Ok
(C7) Ultra DMA CRC Error Count 200 200 0 0 Ok
(C8) Write Error Rate 100 253 0 0 Ok

Power On Time : 2991
Health Status : Ok

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím očištění za sekaního pc

#9 Příspěvek od Márty84 »

Byly tam nejake cervene ctverecky?
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

DriverPlayerCZE
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 05 zář 2015 20:18

Re: Prosím očištění za sekaního pc

#10 Příspěvek od DriverPlayerCZE »

nebil

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím očištění za sekaního pc

#11 Příspěvek od Márty84 »

A co MBAM?
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

DriverPlayerCZE
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 05 zář 2015 20:18

Re: Prosím očištění za sekaního pc

#12 Příspěvek od DriverPlayerCZE »

udělal sem sken a co mám dělat dál

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím očištění za sekaního pc

#13 Příspěvek od Márty84 »

DriverPlayerCZE píše:udělal sem sken a co mám dělat dál
Tak jak se pise v tom navodu, dat sem vysledky testu, abych vedel, jestli neco (pripadne co a kde) nasel a podle toho zvolil nejlepsi postup.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

DriverPlayerCZE
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 05 zář 2015 20:18

Re: Prosím očištění za sekaního pc

#14 Příspěvek od DriverPlayerCZE »

MBAM

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 10. 9. 2015
Čas skenování: 20:38
Protokol: z.txt
Správce: Ano

Verze: 0.0.0.0000
Databáze malwaru: v2015.09.10.07
Databáze rootkitů: v2015.08.16.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto

OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: Dominik

Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 662090
Uplynulý čas: 5 hod, 59 min, 39 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Zapnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(Nenalezeny žádné škodlivé položky)

Moduly: 0
(Nenalezeny žádné škodlivé položky)

Klíče registru: 0
(Nenalezeny žádné škodlivé položky)

Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)

Data registru: 0
(Nenalezeny žádné škodlivé položky)

Složky: 0
(Nenalezeny žádné škodlivé položky)

Soubory: 0
(Nenalezeny žádné škodlivé položky)

Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)


(end)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím očištění za sekaního pc

#15 Příspěvek od Márty84 »

:arrow: MBAM odinstalujte.

:arrow: Dejte logy podle tohoto navodu http://forum.viry.cz/viewtopic.php?f=13&t=133100 - vypnete na chvili antivir, je mozne, ze to bude blokovat jako skodnou, ale pouzivame to porad, jedna se o falesny poplach :)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Zamčeno