
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Prosím o kontrolu
Po upgradu w8.1 na w10 se mi někdo naboural do NB, respektive tabletu. Po několika bezproblémových přihlášeních se mi místo obvyklé přihlašovací obrazovky objevil obrázek se dvěma otázkami. Líbí, nelíbí? Po odpovědi na jednu z nich mi zmizeli fota z mé složky a také byla vymazána složka s dokumenty. Datový disk byl rozdělen na dvě části o poloviční velikosti? Tak se mi aspoň objevuje v průzkumníku. Antivir byl zablokován. V event. logu se mi objevují hlášení chyb. Děkuji za pomoc.
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:07-09-2015
Ran by Josef (administrator) on NEXTBOOK (08-09-2015 19:02:39)
Running from C:\Users\Josef\Desktop\FRST-OlderVersion
Loaded Profiles: Josef (Available Profiles: Josef)
Platform: Microsoft Windows 10 Home (X86) Language: Angličtina (Spojené státy)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyLpmService.exe
(Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe
(Symantec Corporation) C:\Program Files\Norton 360\Engine\22.5.2.15\N360.exe
(Symantec Corporation) C:\Program Files\Norton Identity Safe\Engine\2014.7.11.42\NST.exe
() C:\Program Files\REALTEK\REALTEK Bluetooth\BTDevMgr.exe
(Symantec Corporation) C:\Program Files\Norton 360\Engine\22.5.2.15\N360.exe
(Symantec Corporation) C:\Program Files\Norton Identity Safe\Engine\2014.7.11.42\NST.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyLpmServiceHelper.exe
(Microsoft Corporation) C:\Users\Josef\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\System32\LockAppHost.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [81336 2014-12-31] (Intel Corporation)
HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation)
HKU\S-1-5-21-3098118162-3684607140-3420283965-1001\...\Run: [OneDrive] => C:\Users\Josef\AppData\Local\Microsoft\OneDrive\OneDrive.exe [404064 2015-08-27] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton 360\Engine\22.5.2.15\buShell.dll [2015-07-13] (Symantec Corporation)
ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton 360\Engine\22.5.2.15\buShell.dll [2015-07-13] (Symantec Corporation)
ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton 360\Engine\22.5.2.15\buShell.dll [2015-07-13] (Symantec Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 81.92.146.5 192.168.0.1
Tcpip\..\Interfaces\{993fdc17-168a-4adc-81a3-f26eaf5ca059}: [DhcpNameServer] 81.92.146.5 192.168.0.1
Internet Explorer:
==================
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-21-3098118162-3684607140-3420283965-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.centrum.cz/
HKU\S-1-5-21-3098118162-3684607140-3420283965-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com
SearchScopes: HKU\S-1-5-21-3098118162-3684607140-3420283965-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3098118162-3684607140-3420283965-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
BHO: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Norton 360\Engine\22.5.2.15\coIEPlg.dll [2015-07-10] (Symantec Corporation)
BHO: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL No File
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\22.5.2.15\coIEPlg.dll [2015-07-10] (Symantec Corporation)
Toolbar: HKU\S-1-5-21-3098118162-3684607140-3420283965-1001 -> Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\22.5.2.15\coIEPlg.dll [2015-07-10] (Symantec Corporation)
FireFox:
========
FF HKLM\...\Firefox\Extensions: [{F04D2D30-776C-4d02-8627-8E4385ECA58D}] - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.7.11.42\coFFPlgn
FF HKLM\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFPlgn
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFPlgn [2015-09-02]
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton 360\Engine\22.5.2.15\Exts\Chrome.crx [2015-08-27]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - https://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 BTDevManager; C:\Program Files\REALTEK\REALTEK Bluetooth\BTDevMgr.exe [70144 2014-03-12] () [File not signed]
R2 CoreMessagingRegistrar; C:\WINDOWS\system32\coremessaging.dll [588800 2015-07-22] (Microsoft Corporation)
S3 cphs; C:\WINDOWS\system32\IntelCpHeciSvc.exe [290208 2015-07-30] (Intel Corporation)
S3 diagnosticshub.standardcollector.service; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [23040 2015-07-10] (Microsoft Corporation)
S3 DmEnrollmentSvc; C:\WINDOWS\system32\Windows.Internal.Management.dll [193024 2015-07-10] (Microsoft Corporation)
R2 DptfParticipantProcessorService; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [83384 2014-12-31] (Intel Corporation)
R2 DptfPolicyCriticalService; C:\WINDOWS\system32\DptfPolicyCriticalService.exe [97208 2014-12-31] (Intel Corporation)
R2 DptfPolicyLpmService; C:\WINDOWS\system32\DptfPolicyLpmService.exe [90552 2014-12-31] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [283552 2015-07-30] (Intel Corporation)
R2 N360; C:\Program Files\Norton 360\Engine\22.5.2.15\N360.exe [282016 2015-07-16] (Symantec Corporation)
R2 NCO; C:\Program Files\Norton Identity Safe\Engine\2014.7.11.42\NST.exe [131144 2015-03-05] (Symantec Corporation)
R2 OneSyncSvc_Session2; C:\WINDOWS\system32\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
R3 PimIndexMaintenanceSvc_Session2; C:\WINDOWS\system32\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 SensorDataService; C:\WINDOWS\System32\SensorDataService.exe [669696 2015-07-12] (Microsoft Corporation)
R3 UnistoreSvc_Session2; C:\WINDOWS\System32\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
R3 UserDataSvc_Session2; C:\WINDOWS\system32\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [277760 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23264 2015-07-10] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [30720 2015-07-10] (Microsoft Corporation)
R1 BHDrvx86; C:\Program Files\Norton 360\NortonData\22.5.2.15\Definitions\BASHDefs\20150821.001\BHDrvx86.sys [1181936 2015-07-23] (Symantec Corporation)
R3 BthLEEnum; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [193536 2015-07-10] (Microsoft Corporation)
R3 BthMini; C:\WINDOWS\System32\Drivers\BTHMINI.sys [23040 2015-07-10] (Microsoft Corporation)
S3 buttonconverter; C:\WINDOWS\System32\drivers\buttonconverter.sys [23552 2015-07-10] (Microsoft Corporation)
R3 camera; C:\WINDOWS\system32\DRIVERS\camera.sys [461824 2014-08-02] (Intel Corporation) [File not signed]
S3 CapImg; C:\WINDOWS\System32\drivers\capimg.sys [96768 2015-07-10] (Microsoft Corporation)
R1 ccSet_N360; C:\WINDOWS\system32\drivers\N360\1605020.00F\ccSetx86.sys [137456 2015-07-11] (Symantec Corporation)
R1 ccSet_NST; C:\WINDOWS\system32\drivers\NST\7DE070B0.02A\ccSetx86.sys [127064 2013-09-27] (Symantec Corporation)
R3 CompositeBus; C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_x86_a4832450a7024d49\CompositeBus.sys [31232 2015-07-10] (Microsoft Corporation)
S3 DptfDevAmbient; C:\WINDOWS\System32\drivers\DptfDevAmbient.sys [44472 2014-12-31] (Intel Corporation)
R3 DptfDevDBPT; C:\WINDOWS\System32\drivers\DptfDevPower.sys [25528 2014-12-31] (Intel Corporation)
R3 DptfDevDisplay; C:\WINDOWS\System32\drivers\DptfDevDisplay.sys [28088 2014-12-31] (Intel Corporation)
R3 DptfDevGen; C:\WINDOWS\System32\drivers\DptfDevGen.sys [36280 2014-12-31] (Intel Corporation)
R3 DptfDevProc; C:\WINDOWS\System32\drivers\DptfDevProc.sys [80824 2014-12-31] (Intel Corporation)
R3 DptfManager; C:\WINDOWS\System32\drivers\DptfManager.sys [182200 2014-12-31] (Intel Corporation)
R1 eeCtrl; C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [389456 2015-08-20] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [122192 2015-08-20] (Symantec Corporation)
S3 fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [24064 2015-07-10] (Microsoft Corporation)
R1 FileCrypt; C:\WINDOWS\System32\drivers\filecrypt.sys [74240 2015-07-10] (Microsoft Corporation)
R3 gc310; C:\WINDOWS\System32\drivers\gc310.sys [39936 2014-08-02] (Intel Corporation) [File not signed]
S3 genericusbfn; C:\WINDOWS\System32\drivers\genericusbfn.sys [17408 2015-07-10] (Microsoft Corporation)
R3 GPIO; C:\WINDOWS\System32\drivers\iaiogpioe.sys [23552 2014-05-16] (Intel Corporation)
R3 GpioVirtual; C:\WINDOWS\System32\drivers\iaiogpiovirtual.sys [16896 2014-03-22] (Intel Corporation)
R1 GpuEnergyDrv; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [7680 2015-07-10] (Microsoft Corporation)
S3 hidinterrupt; C:\WINDOWS\System32\drivers\hidinterrupt.sys [37728 2015-07-10] (Microsoft Corporation)
R3 hm2056; C:\WINDOWS\System32\drivers\hm2056.sys [43008 2014-05-16] (Intel Corporation)
R3 iaioi2c; C:\WINDOWS\System32\drivers\iaioi2ce.sys [62464 2014-05-16] (Intel Corporation)
R3 iaiouart; C:\WINDOWS\System32\drivers\iaiouart.sys [87552 2014-03-22] (Intel Corporation)
R1 IDSVix86; C:\Program Files\Norton 360\NortonData\22.5.2.15\Definitions\IPSDefs\20150906.001\IDSvix86.sys [580856 2015-08-26] (Symantec Corporation)
S3 intaud_WaveExtensible; C:\WINDOWS\system32\drivers\intelaud.sys [44096 2015-06-26] (Intel Corporation)
R3 IntelBatteryManagement; C:\WINDOWS\System32\drivers\IntelBatteryManagement.sys [38400 2014-08-02] ()
R3 IntelSST; C:\WINDOWS\system32\drivers\isstrtc.sys [260608 2014-06-28] (Intel(R) Corporation)
S3 IoQos; C:\WINDOWS\System32\drivers\ioqos.sys [23040 2015-07-10] (Microsoft Corporation)
R3 iwdbus; C:\WINDOWS\System32\drivers\iwdbus.sys [35904 2015-06-26] (Intel Corporation)
R3 kxspb; C:\WINDOWS\System32\drivers\kxspb.sys [46928 2014-07-03] (Kionix, Inc.)
S0 LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [88928 2015-07-10] (LSI Corporation)
S0 LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [83296 2015-07-10] (Avago Technologies)
R0 MBI; C:\WINDOWS\System32\drivers\MBI.sys [21968 2014-03-16] (Intel Corporation)
S0 megasas; C:\WINDOWS\System32\drivers\megasas.sys [52064 2015-07-10] (Avago Technologies)
R2 MMCSS; C:\WINDOWS\system32\drivers\mmcss.sys [37376 2015-07-10] (Microsoft Corporation)
R3 NAVENG; C:\Program Files\Norton 360\NortonData\22.5.2.15\Definitions\VirusDefs\20150907.019\NAVENG.SYS [104440 2015-05-20] (Symantec Corporation)
R3 NAVEX15; C:\Program Files\Norton 360\NortonData\22.5.2.15\Definitions\VirusDefs\20150907.019\NAVEX15.SYS [1645432 2015-05-20] (Symantec Corporation)
S3 netvsc; C:\WINDOWS\System32\drivers\netvsc.sys [80384 2015-07-10] (Microsoft Corporation)
S0 percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [51040 2015-07-10] (LSI Corporation)
S0 percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [51552 2015-07-10] (Avago Technologies)
R3 PMIC; C:\WINDOWS\System32\drivers\PMIC.sys [66560 2014-08-06] (Intel Corporation)
R3 rtii2sac; C:\WINDOWS\system32\DRIVERS\rtii2sac.sys [185560 2014-06-17] (Realtek Semiconductor Corp.)
R3 RtkUart; C:\WINDOWS\System32\drivers\RtkUart.sys [544000 2015-05-21] (Realtek Semiconductor Corporation)
R3 RtlWlans; C:\WINDOWS\system32\DRIVERS\rtwlans.sys [3098840 2015-07-10] (Realtek Semiconductor Corporation )
R3 SRTSP; C:\WINDOWS\system32\drivers\N360\1605020.00F\SRTSP.SYS [711408 2015-07-11] (Symantec Corporation)
R1 SRTSPX; C:\WINDOWS\system32\drivers\N360\1605020.00F\SRTSPX.SYS [44792 2015-07-11] (Symantec Corporation)
R2 storqosflt; C:\WINDOWS\System32\drivers\storqosflt.sys [52736 2015-07-10] (Microsoft Corporation)
S0 storufs; C:\WINDOWS\System32\drivers\storufs.sys [33632 2015-07-10] (Microsoft Corporation)
R3 swenum; C:\WINDOWS\System32\DriverStore\FileRepository\swenum.inf_x86_b6707c73599dd1b6\swenum.sys [16224 2015-07-10] (Microsoft Corporation)
R0 SymEFASI; C:\WINDOWS\System32\drivers\N360\1605020.00F\SYMEFASI.SYS [1286896 2015-07-11] (Symantec Corporation)
S0 SymELAM; C:\WINDOWS\System32\drivers\N360\1605020.00F\SYMELAM.SYS [22144 2015-07-11] (Symantec Corporation)
R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT.SYS [103152 2015-08-27] (Symantec Corporation)
R1 SymIRON; C:\WINDOWS\system32\drivers\N360\1605020.00F\Ironx86.SYS [234744 2015-07-11] (Symantec Corporation)
R1 SymNetS; C:\WINDOWS\system32\drivers\N360\1605020.00F\SYMNETS.SYS [429816 2015-07-11] (Symantec Corporation)
R3 TXEI; C:\WINDOWS\System32\drivers\TXEI.sys [75792 2014-01-10] (Intel Corporation)
S3 UcmCx0101; C:\WINDOWS\System32\Drivers\UcmCx.sys [45056 2015-07-10] (Microsoft Corporation)
S3 UcmUcsi; C:\WINDOWS\System32\drivers\UcmUcsi.sys [32768 2015-07-14] (Microsoft Corporation)
S3 UdeCx; C:\WINDOWS\System32\drivers\udecx.sys [31744 2015-07-10] ()
S3 Ufx01000; C:\WINDOWS\System32\drivers\ufx01000.sys [190816 2015-07-10] (Microsoft Corporation)
S3 UfxChipidea; C:\WINDOWS\System32\drivers\UfxChipidea.sys [73568 2015-07-10] (Microsoft Corporation)
S3 ufxsynopsys; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [100704 2015-07-10] (Microsoft Corporation)
S3 UrsChipidea; C:\WINDOWS\System32\drivers\urschipidea.sys [21856 2015-07-10] (Microsoft Corporation)
S3 UrsCx01000; C:\WINDOWS\System32\drivers\urscx01000.sys [42848 2015-07-10] (Microsoft Corporation)
S3 UrsSynopsys; C:\WINDOWS\System32\drivers\urssynopsys.sys [21856 2015-07-10] (Microsoft Corporation)
S3 vhf; C:\WINDOWS\System32\drivers\vhf.sys [24064 2015-07-10] (Microsoft Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37400 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [245600 2015-07-10] (Microsoft Corporation)
S3 wdiwifi; C:\WINDOWS\System32\DRIVERS\wdiwifi.sys [488960 2015-08-06] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [97632 2015-07-10] (Microsoft Corporation)
R0 WindowsTrustedRT; C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [86552 2015-07-10] (Microsoft Corporation)
R0 WindowsTrustedRTProxy; C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [15384 2015-07-10] (Microsoft Corporation)
R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [173408 2015-08-06] (Microsoft Corporation)
S3 xboxgip; C:\WINDOWS\System32\drivers\xboxgip.sys [186368 2015-07-10] (Microsoft Corporation)
S3 xinputhid; C:\WINDOWS\System32\drivers\xinputhid.sys [18432 2015-07-10] (Microsoft Corporation)
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
NETSVC: XboxNetApiSvc -> C:\Windows\system32\XboxNetApiSvc.dll (Microsoft Corporation)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-08 19:00 - 2015-09-08 19:00 - 00016148 _____ C:\WINDOWS\system32\NEXTBOOK_Josef_HistoryPrediction.bin
2015-09-03 14:37 - 2015-09-03 14:37 - 00000000 ___HD C:\OneDriveTemp
2015-09-01 16:59 - 2015-09-01 17:07 - 00000000 ____D C:\Users\Josef\AppData\Local\NPE
2015-09-01 16:57 - 2015-09-06 16:39 - 10107368 _____ (Symantec Corporation) C:\Users\Josef\Downloads\NPE.exe
2015-08-28 21:19 - 2015-08-20 07:25 - 06265168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-08-28 21:19 - 2015-08-20 07:22 - 00549160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-08-28 21:19 - 2015-08-20 07:16 - 20857848 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-08-28 21:19 - 2015-08-20 07:11 - 00067776 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-08-28 21:19 - 2015-08-20 06:46 - 00135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2015-08-28 21:19 - 2015-08-20 06:41 - 00165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-08-28 21:19 - 2015-08-20 06:35 - 01829376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-08-28 21:19 - 2015-08-20 06:31 - 18806272 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-08-28 21:19 - 2015-08-20 06:30 - 00725504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2015-08-28 21:19 - 2015-08-18 09:27 - 01771592 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-28 21:19 - 2015-08-18 09:26 - 00284000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2015-08-28 21:19 - 2015-08-18 09:24 - 00963920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-08-28 21:19 - 2015-08-18 09:14 - 00192864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionQueue.dll
2015-08-28 21:19 - 2015-08-18 08:49 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2015-08-28 21:19 - 2015-08-18 08:48 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2015-08-28 21:19 - 2015-08-18 08:47 - 01507840 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-08-28 21:19 - 2015-08-18 08:41 - 01161216 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2015-08-28 21:19 - 2015-08-18 08:40 - 00675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2015-08-28 21:19 - 2015-08-18 08:38 - 01875968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2015-08-28 21:19 - 2015-08-18 08:36 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2015-08-28 21:19 - 2015-08-18 08:35 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWCN.dll
2015-08-28 21:19 - 2015-08-18 08:35 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll
2015-08-28 21:19 - 2015-08-18 08:35 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWCN.dll
2015-08-28 21:19 - 2015-08-18 08:35 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnNetsh.dll
2015-08-28 21:19 - 2015-08-18 08:34 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2015-08-28 21:19 - 2015-08-18 08:34 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2015-08-28 21:19 - 2015-08-18 08:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
2015-08-28 21:19 - 2015-08-18 08:31 - 01917440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-28 21:19 - 2015-08-18 08:30 - 00251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2015-08-28 21:19 - 2015-08-18 08:29 - 01593344 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-08-28 21:19 - 2015-08-18 08:26 - 01499136 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-28 21:19 - 2015-08-18 08:26 - 00921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2015-08-28 21:19 - 2015-08-18 08:26 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2015-08-28 21:19 - 2015-08-18 06:42 - 00006631 _____ C:\WINDOWS\system32\ResPriHMImageList
2015-08-28 21:19 - 2015-08-18 06:42 - 00006313 _____ C:\WINDOWS\system32\ResPriImageList
2015-08-28 14:40 - 2015-09-08 19:02 - 00000000 ____D C:\Users\Josef\Desktop\FRST-OlderVersion
2015-08-28 14:28 - 2015-08-28 14:28 - 00000000 ____D C:\Users\Josef\AppData\Local\NetworkTiles
2015-08-28 05:53 - 2015-08-27 20:23 - 00000000 ___DC C:\WINDOWS\Panther
2015-08-28 05:53 - 2015-08-27 20:03 - 00000000 __SHD C:\Recovery
2015-08-28 05:52 - 2015-08-27 20:10 - 00000000 ____D C:\Windows.old
2015-08-28 05:50 - 2015-08-28 05:50 - 00000000 ____D C:\WINDOWS\system32\cs
2015-08-28 05:50 - 2015-07-10 06:36 - 06473216 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0005.dll
2015-08-28 05:45 - 2015-08-28 05:45 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2015-08-27 21:44 - 2015-08-27 21:49 - 00000000 ____D C:\Program Files\Common Files\Symantec Shared
2015-08-27 21:44 - 2015-08-27 21:44 - 00103152 _____ (Symantec Corporation) C:\WINDOWS\system32\Drivers\SYMEVENT.SYS
2015-08-27 21:44 - 2015-08-27 21:44 - 00008178 _____ C:\WINDOWS\system32\Drivers\SYMEVENT.CAT
2015-08-27 21:44 - 2015-08-27 21:44 - 00002331 _____ C:\Users\Public\Desktop\Norton 360.LNK
2015-08-27 21:42 - 2015-08-27 21:44 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton 360
2015-08-27 21:42 - 2015-08-27 21:42 - 00000000 ____D C:\WINDOWS\system32\Drivers\N360
2015-08-27 21:42 - 2015-08-27 21:42 - 00000000 ____D C:\Program Files\Norton 360
2015-08-27 21:39 - 2015-08-27 21:39 - 01110944 _____ (Symantec Corporation) C:\Users\Josef\Downloads\NortonN360Downloader.exe
2015-08-27 20:57 - 2015-08-27 20:58 - 08758584 _____ (Symantec Corporation) C:\Users\Josef\Downloads\NRnR.exe
2015-08-27 20:35 - 2015-08-03 03:56 - 06878256 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2015-08-27 20:34 - 2015-08-13 06:07 - 19323392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-08-27 20:34 - 2015-08-11 11:40 - 04048808 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-08-27 20:34 - 2015-08-11 11:40 - 02151208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-08-27 20:34 - 2015-08-11 11:31 - 02880032 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-08-27 20:34 - 2015-08-11 10:57 - 13024768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-27 20:34 - 2015-08-11 10:51 - 01916928 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-27 20:34 - 2015-08-11 10:49 - 00586752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-27 20:34 - 2015-08-11 10:45 - 01820672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-27 20:34 - 2015-08-11 10:43 - 02748416 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2015-08-27 20:34 - 2015-08-11 10:40 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-08-27 20:34 - 2015-08-08 08:00 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-08-27 20:34 - 2015-08-08 08:00 - 01391104 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-08-27 20:34 - 2015-08-05 06:29 - 00644128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2015-08-27 20:34 - 2015-08-05 05:40 - 00995840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2015-08-27 20:34 - 2015-08-05 05:32 - 01134592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-08-27 20:34 - 2015-08-04 04:47 - 00898560 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2015-08-27 20:34 - 2015-08-03 03:57 - 01709920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2015-08-27 20:34 - 2015-08-03 03:57 - 00503600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2015-08-27 20:34 - 2015-08-03 03:49 - 00700256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2015-08-27 20:34 - 2015-08-03 03:18 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2015-08-27 20:34 - 2015-08-03 03:13 - 00388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2015-08-27 20:34 - 2015-08-03 03:11 - 00821248 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-08-27 20:34 - 2015-08-03 03:10 - 01162240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-08-27 20:34 - 2015-08-03 03:06 - 03025408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-08-27 20:34 - 2015-08-03 03:03 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2015-08-27 20:34 - 2015-08-03 03:03 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2015-08-27 20:34 - 2015-08-03 03:02 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-08-27 20:34 - 2015-08-03 03:02 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2015-08-27 20:34 - 2015-08-03 03:01 - 11262464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-08-27 20:34 - 2015-07-30 06:26 - 01867160 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2015-08-27 20:34 - 2015-07-30 06:26 - 01341920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2015-08-27 20:34 - 2015-07-30 06:26 - 00877016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-08-27 20:34 - 2015-07-30 06:25 - 01356368 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2015-08-27 20:34 - 2015-07-30 06:25 - 00713312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-08-27 20:34 - 2015-07-30 06:23 - 01808224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-08-27 20:34 - 2015-07-30 06:22 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-08-27 20:34 - 2015-07-30 05:15 - 09889792 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-08-27 20:34 - 2015-07-30 05:12 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-08-27 20:34 - 2015-07-30 05:04 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2015-08-27 20:34 - 2015-07-30 05:04 - 00741376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2015-08-27 20:34 - 2015-07-30 05:04 - 00397312 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2015-08-27 20:34 - 2015-07-30 05:04 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2015-08-27 20:34 - 2015-07-30 05:00 - 01125888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2015-08-27 20:34 - 2015-07-30 04:58 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2015-08-27 20:34 - 2015-07-26 06:30 - 00868752 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2015-08-27 20:34 - 2015-07-26 06:30 - 00751520 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2015-08-27 20:34 - 2015-07-26 06:28 - 05118024 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2015-08-27 20:34 - 2015-07-26 06:28 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2015-08-27 20:34 - 2015-07-26 05:38 - 04350464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2015-08-27 20:34 - 2015-07-26 05:30 - 00750592 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2015-08-27 20:34 - 2015-07-26 05:30 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2015-08-27 20:34 - 2015-07-26 05:29 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-08-27 20:34 - 2015-07-24 05:29 - 00369504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2015-08-27 20:34 - 2015-07-24 04:39 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-08-27 20:34 - 2015-07-24 04:24 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2015-08-27 20:34 - 2015-07-24 04:23 - 01153536 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2015-08-27 20:34 - 2015-07-22 05:59 - 00588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2015-08-27 20:34 - 2015-07-22 05:53 - 00762896 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-08-27 20:34 - 2015-07-22 05:13 - 01611264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-08-27 20:34 - 2015-07-22 05:13 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-08-27 20:34 - 2015-07-22 05:11 - 12589056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2015-08-27 20:34 - 2015-07-22 05:10 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-08-27 20:34 - 2015-07-22 05:03 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2015-08-27 20:34 - 2015-07-19 05:32 - 00520640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2015-08-27 20:34 - 2015-07-18 09:37 - 01043968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2015-08-27 20:34 - 2015-07-18 09:29 - 03443200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2015-08-27 20:34 - 2015-07-17 03:53 - 01084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-08-27 20:34 - 2015-07-17 03:53 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-08-27 20:34 - 2015-07-16 05:47 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2015-08-27 20:34 - 2015-07-16 05:29 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-08-27 20:34 - 2015-07-16 05:27 - 02207744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-08-27 20:34 - 2015-07-16 05:21 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-08-27 20:34 - 2015-07-15 05:18 - 01395568 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-08-27 20:34 - 2015-07-15 05:07 - 00987072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2015-08-27 20:34 - 2015-07-15 04:22 - 02112512 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-08-27 20:34 - 2015-07-15 04:10 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\unenrollhook.dll
2015-08-27 20:34 - 2015-07-12 01:52 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
2015-08-27 20:34 - 2015-07-12 01:46 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2015-08-27 20:34 - 2015-07-11 02:51 - 04398080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2015-08-27 20:34 - 2015-07-11 02:43 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2015-08-27 20:34 - 2015-07-11 02:41 - 03687936 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-08-27 20:34 - 2015-07-11 02:40 - 02606080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-08-27 20:34 - 2015-07-10 17:51 - 00823336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-08-27 20:34 - 2015-07-10 12:27 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2015-08-27 20:34 - 2015-07-10 12:07 - 00821248 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-08-27 20:33 - 2015-08-13 05:55 - 01543680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2015-08-27 20:33 - 2015-08-13 05:53 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-08-27 20:33 - 2015-08-11 11:40 - 00918320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-08-27 20:33 - 2015-08-11 11:40 - 00392032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2015-08-27 20:33 - 2015-08-11 11:38 - 00454000 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2015-08-27 20:33 - 2015-08-11 11:38 - 00066896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2015-08-27 20:33 - 2015-08-11 11:37 - 00243800 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2015-08-27 20:33 - 2015-08-11 11:26 - 00845664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2015-08-27 20:33 - 2015-08-11 11:25 - 01183056 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-08-27 20:33 - 2015-08-11 10:59 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2015-08-27 20:33 - 2015-08-11 10:59 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2015-08-27 20:33 - 2015-08-11 10:58 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2015-08-27 20:33 - 2015-08-11 10:58 - 00177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-08-27 20:33 - 2015-08-11 10:57 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2015-08-27 20:33 - 2015-08-11 10:53 - 00301056 _____ C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-08-27 20:33 - 2015-08-11 10:53 - 00284672 _____ C:\WINDOWS\system32\diagtrack_win.dll
2015-08-27 20:33 - 2015-08-11 10:51 - 01823232 _____ C:\WINDOWS\system32\InputService.dll
2015-08-27 20:33 - 2015-08-11 10:50 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2015-08-27 20:33 - 2015-08-11 10:50 - 00200704 _____ C:\WINDOWS\system32\TextInputFramework.dll
2015-08-27 20:33 - 2015-08-11 10:50 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2015-08-27 20:33 - 2015-08-11 10:49 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-27 20:33 - 2015-08-11 10:49 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2015-08-27 20:33 - 2015-08-11 10:48 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2015-08-27 20:33 - 2015-08-11 10:47 - 00485376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-08-27 20:33 - 2015-08-11 10:47 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2015-08-27 20:33 - 2015-08-11 10:46 - 00923648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-08-27 20:33 - 2015-08-11 10:46 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeParserTask.exe
2015-08-27 20:33 - 2015-08-11 10:44 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\GnssAdapter.dll
2015-08-27 20:33 - 2015-08-11 10:44 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPermissions.dll
2015-08-27 20:33 - 2015-08-11 10:43 - 00722944 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2015-08-27 20:33 - 2015-08-11 10:42 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2015-08-27 20:33 - 2015-08-11 10:41 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2015-08-27 20:33 - 2015-08-11 10:40 - 01112064 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-08-27 20:33 - 2015-08-11 10:40 - 00449536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2015-08-27 20:33 - 2015-08-11 10:39 - 02987008 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-08-27 20:33 - 2015-08-11 10:39 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2015-08-27 20:33 - 2015-08-11 10:38 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2015-08-27 20:33 - 2015-08-11 10:38 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll
2015-08-27 20:33 - 2015-08-11 10:38 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
2015-08-27 20:33 - 2015-08-11 10:37 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2015-08-27 20:33 - 2015-08-08 08:59 - 01535032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-08-27 20:33 - 2015-08-08 08:48 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-08-27 20:33 - 2015-08-08 08:15 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-08-27 20:33 - 2015-08-06 04:50 - 00197472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys
2015-08-27 20:33 - 2015-08-06 04:50 - 00173408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2015-08-27 20:33 - 2015-08-06 04:01 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2015-08-27 20:33 - 2015-08-05 05:39 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
2015-08-27 20:33 - 2015-08-04 05:50 - 00085344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2015-08-27 20:33 - 2015-08-04 05:10 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2015-08-27 20:33 - 2015-08-03 04:28 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2015-08-27 20:33 - 2015-08-03 03:57 - 00436064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2015-08-27 20:33 - 2015-08-03 03:57 - 00415072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-08-27 20:33 - 2015-08-03 03:57 - 00334176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2015-08-27 20:33 - 2015-08-03 03:57 - 00042904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys
2015-08-27 20:33 - 2015-08-03 03:57 - 00036704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpiowin32.sys
2015-08-27 20:33 - 2015-08-03 03:18 - 00189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2015-08-27 20:33 - 2015-08-03 03:13 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll
2015-08-27 20:33 - 2015-08-03 03:12 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2015-08-27 20:33 - 2015-08-03 03:12 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2015-08-27 20:33 - 2015-08-03 03:11 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
2015-08-27 20:33 - 2015-08-03 03:10 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
2015-08-27 20:33 - 2015-08-03 03:06 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2015-08-27 20:33 - 2015-08-03 03:06 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2015-08-27 20:33 - 2015-08-03 03:06 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2015-08-27 20:33 - 2015-08-03 03:05 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkStatus.dll
2015-08-27 20:33 - 2015-08-03 03:03 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2015-08-27 20:33 - 2015-08-03 03:02 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2015-08-27 20:33 - 2015-08-03 02:59 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2015-08-27 20:33 - 2015-07-30 06:24 - 00445240 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2015-08-27 20:33 - 2015-07-30 06:24 - 00407616 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2015-08-27 20:33 - 2015-07-30 06:24 - 00285632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2015-08-27 20:33 - 2015-07-30 06:22 - 00896144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2015-08-27 20:33 - 2015-07-30 06:22 - 00507696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2015-08-27 20:33 - 2015-07-30 06:09 - 00193888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-08-27 20:33 - 2015-07-30 05:24 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2015-08-27 20:33 - 2015-07-30 05:24 - 00189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2015-08-27 20:33 - 2015-07-30 05:22 - 00371200 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2015-08-27 20:33 - 2015-07-30 05:21 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2015-08-27 20:33 - 2015-07-30 05:21 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2015-08-27 20:33 - 2015-07-30 05:17 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2015-08-27 20:33 - 2015-07-30 05:12 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2015-08-27 20:33 - 2015-07-30 05:08 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2015-08-27 20:33 - 2015-07-30 05:07 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2015-08-27 20:33 - 2015-07-30 05:07 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2015-08-27 20:33 - 2015-07-30 05:06 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-08-27 20:33 - 2015-07-30 05:06 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-08-27 20:33 - 2015-07-30 05:06 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2015-08-27 20:33 - 2015-07-30 05:06 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-08-27 20:33 - 2015-07-30 05:06 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2015-08-27 20:33 - 2015-07-30 05:06 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoiceActivationManager.dll
2015-08-27 20:33 - 2015-07-30 05:03 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2015-08-27 20:33 - 2015-07-30 05:01 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2015-08-27 20:33 - 2015-07-30 04:59 - 00473088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2015-08-27 20:33 - 2015-07-26 06:28 - 00902320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2015-08-27 20:33 - 2015-07-26 05:35 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2015-08-27 20:33 - 2015-07-26 05:34 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2015-08-27 20:33 - 2015-07-26 05:29 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll
2015-08-27 20:33 - 2015-07-24 05:12 - 00850784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2015-08-27 20:33 - 2015-07-24 05:12 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2015-08-27 20:33 - 2015-07-24 05:11 - 00442720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2015-08-27 20:33 - 2015-07-24 04:55 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-08-27 20:33 - 2015-07-24 04:53 - 00241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2015-08-27 20:33 - 2015-07-24 04:50 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2015-08-27 20:33 - 2015-07-24 04:37 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2015-08-27 20:33 - 2015-07-24 04:31 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2015-08-27 20:33 - 2015-07-24 04:30 - 00729088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2015-08-27 20:33 - 2015-07-22 06:00 - 00469856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2015-08-27 20:33 - 2015-07-22 05:21 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-08-27 20:33 - 2015-07-22 05:14 - 00476672 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2015-08-27 20:33 - 2015-07-22 05:13 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2015-08-27 20:33 - 2015-07-22 05:09 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-08-27 20:33 - 2015-07-19 05:27 - 00918880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-08-27 20:33 - 2015-07-19 04:52 - 00419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2015-08-27 20:33 - 2015-07-19 04:39 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2015-08-27 20:33 - 2015-07-18 10:47 - 00082616 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
2015-08-27 20:33 - 2015-07-18 10:29 - 00191144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2015-08-27 20:33 - 2015-07-18 09:43 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2015-08-27 20:33 - 2015-07-18 09:35 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2015-08-27 20:33 - 2015-07-18 09:28 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2015-08-27 20:33 - 2015-07-18 09:28 - 00037376 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-08-27 20:33 - 2015-07-18 09:26 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2015-08-27 20:33 - 2015-07-18 09:26 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2015-08-27 20:33 - 2015-07-18 09:26 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll
2015-08-27 20:33 - 2015-07-18 09:25 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2015-08-27 20:33 - 2015-07-18 09:25 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2015-08-27 20:33 - 2015-07-18 09:24 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll
2015-08-27 20:33 - 2015-07-17 05:09 - 00506200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-08-27 20:33 - 2015-07-17 05:03 - 00351072 _____ (Microsoft Corporation) C:\WINDOWS\system32\halmacpi.dll
2015-08-27 20:33 - 2015-07-17 05:03 - 00351072 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2015-08-27 20:33 - 2015-07-17 04:05 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2015-08-27 20:33 - 2015-07-17 04:05 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2015-08-27 20:33 - 2015-07-17 04:00 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2015-08-27 20:33 - 2015-07-17 04:00 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmprc.exe
2015-08-27 20:33 - 2015-07-17 03:59 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-08-27 20:33 - 2015-07-17 03:56 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2015-08-27 20:33 - 2015-07-17 03:51 - 05076480 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2015-08-27 20:33 - 2015-07-17 03:50 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2015-08-27 20:33 - 2015-07-17 03:45 - 00587264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2015-08-27 20:33 - 2015-07-17 03:44 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2015-08-27 20:33 - 2015-07-16 07:28 - 00054112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2015-08-27 20:33 - 2015-07-16 05:52 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2015-08-27 20:33 - 2015-07-16 05:46 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2015-08-27 20:33 - 2015-07-16 05:38 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2015-08-27 20:33 - 2015-07-16 05:32 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2015-08-27 20:33 - 2015-07-16 05:26 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2015-08-27 20:33 - 2015-07-16 05:25 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2015-08-27 20:33 - 2015-07-16 05:21 - 00268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll
2015-08-27 20:33 - 2015-07-16 05:19 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll
2015-08-27 20:33 - 2015-07-15 05:19 - 00257888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2015-08-27 20:33 - 2015-07-15 04:41 - 00025088 _____ C:\WINDOWS\system32\LicenseManagerApi.dll
2015-08-27 20:33 - 2015-07-15 04:32 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\OmaDmAgent.dll
2015-08-27 20:33 - 2015-07-15 04:16 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2015-08-27 20:33 - 2015-07-15 04:13 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2015-08-27 20:33 - 2015-07-15 04:03 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
2015-08-27 20:33 - 2015-07-14 04:37 - 00181088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2015-08-27 20:33 - 2015-07-14 03:44 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys
2015-08-27 20:33 - 2015-07-14 03:30 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2015-08-27 20:33 - 2015-07-14 03:27 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2015-08-27 20:33 - 2015-07-14 03:20 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemcpl.dll
2015-08-27 20:33 - 2015-07-13 01:30 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2015-08-27 20:33 - 2015-07-12 02:05 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2015-08-27 20:33 - 2015-07-11 03:02 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2015-08-27 20:33 - 2015-07-11 02:42 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2015-08-27 20:33 - 2015-07-11 02:40 - 03579904 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-08-27 20:33 - 2015-07-11 02:40 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2015-08-27 20:33 - 2015-07-11 02:34 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2015-08-27 20:33 - 2015-07-10 17:47 - 00265480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2015-08-27 20:33 - 2015-07-10 13:33 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2015-08-27 20:33 - 2015-07-10 12:42 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2015-08-27 20:33 - 2015-07-10 12:09 - 00283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-08-27 20:33 - 2015-07-10 12:05 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2015-08-27 20:28 - 2015-08-27 20:30 - 00000000 ____D C:\Users\Josef\AppData\Local\MicrosoftEdge
2015-08-27 20:28 - 2015-08-27 20:28 - 00002408 _____ C:\Users\Josef\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-08-27 20:27 - 2015-08-27 20:27 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-08-27 20:26 - 2015-08-27 20:26 - 00000000 ____D C:\Users\Josef\AppData\Local\Publishers
2015-08-27 20:24 - 2015-09-06 17:26 - 01674756 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-27 20:24 - 2015-08-27 20:24 - 00000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-08-27 20:24 - 2015-08-27 20:24 - 00000020 ___SH C:\Users\Josef\ntuser.ini
2015-08-27 20:24 - 2015-08-27 20:24 - 00000000 ____D C:\Users\Josef\AppData\Local\TileDataLayer
2015-08-27 20:24 - 2015-08-27 20:24 - 00000000 ____D C:\Users\Josef\AppData\Local\Comms
2015-08-27 20:18 - 2015-08-27 20:18 - 00021316 _____ C:\WINDOWS\system32\emptyregdb.dat
2015-08-27 20:09 - 2015-08-27 20:09 - 00001544 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-08-27 20:06 - 2015-08-27 21:28 - 00000000 ____D C:\Users\Josef
2015-08-27 20:06 - 2015-08-27 20:24 - 00000000 ___RD C:\Users\Josef\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-27 20:06 - 2015-08-27 20:10 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2015-08-27 20:06 - 2015-07-10 10:28 - 00000000 __RSD C:\Users\Josef\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2015-08-27 20:06 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Josef\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-08-27 20:06 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Josef\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-08-27 20:06 - 2015-07-10 10:28 - 00000000 ____D C:\Users\Josef\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-08-27 20:02 - 2015-08-27 20:02 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_SdoV2_02_15_00.Wdf
2015-08-27 20:02 - 2015-08-27 20:02 - 00000000 ____D C:\Program Files\Intel
2015-08-27 20:02 - 2015-07-30 22:41 - 00069104 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2015-08-27 20:01 - 2015-08-27 20:01 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_kxfusion_01_11_00.Wdf
2015-08-27 20:01 - 2015-08-27 20:01 - 00000000 ____D C:\Program Files\Common Files\Intel
2015-08-27 20:00 - 2015-09-08 19:00 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2015-08-27 20:00 - 2015-09-02 16:40 - 00007270 _____ C:\WINDOWS\PFRO.log
2015-08-27 20:00 - 2015-08-27 20:01 - 00029847 _____ C:\WINDOWS\system32\NetSetupMig.log
2015-08-27 19:23 - 2015-08-27 20:20 - 00009528 _____ C:\WINDOWS\diagwrn.xml
2015-08-27 19:23 - 2015-08-27 20:20 - 00009528 _____ C:\WINDOWS\diagerr.xml
2015-08-27 19:23 - 2015-08-27 20:19 - 00006604 _____ C:\WINDOWS\comsetup.log
2015-08-27 19:08 - 2015-08-27 19:08 - 01726978 _____ C:\Users\Josef\Downloads\HowPilotsImpressChicks.mp4
2015-08-27 17:44 - 2015-08-27 20:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Identity Safe
2015-08-27 17:44 - 2015-08-27 17:44 - 00000000 ____D C:\WINDOWS\system32\Drivers\NST
2015-08-27 17:44 - 2015-08-27 17:44 - 00000000 ____D C:\Program Files\Norton Identity Safe
2015-08-24 11:34 - 2015-08-24 11:34 - 00074435 _____ C:\Users\Josef\Downloads\produkey-x64.zip
2015-08-24 11:34 - 2015-08-24 11:34 - 00058799 _____ C:\Users\Josef\Downloads\produkey.zip
2015-08-22 20:19 - 2015-08-22 20:21 - 19648448 _____ (Microsoft Corporation) C:\Users\Josef\Downloads\MediaCreationToolx64.exe
2015-08-22 20:18 - 2015-08-22 20:18 - 18196016 _____ (Microsoft Corporation) C:\Users\Josef\Downloads\MediaCreationTool.exe
2015-08-22 18:00 - 2015-08-22 18:00 - 08682272 _____ (Microsoft Corporation) C:\Users\Josef\Downloads\Windows7UpgradeAdvisorSetup.exe
2015-08-19 16:06 - 2015-09-03 14:37 - 00000000 ____D C:\Users\Josef\AppData\Local\CrashDumps
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-08 19:02 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\sru
2015-09-08 19:02 - 2015-05-10 19:17 - 00000000 ____D C:\FRST
2015-09-08 19:01 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-09-08 15:16 - 2014-12-30 18:07 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log
2015-09-08 13:24 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\Microsoft.NET
2015-09-06 16:46 - 2015-07-10 10:28 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2015-09-05 17:54 - 2014-12-30 21:19 - 00000000 ___DO C:\Users\Josef\OneDrive
2015-09-03 20:58 - 2015-07-10 10:20 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-09-02 19:46 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2015-09-02 16:40 - 2015-07-10 11:55 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-09-02 16:39 - 2015-07-10 08:59 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-09-01 16:59 - 2015-05-19 09:14 - 00000000 ____D C:\ProgramData\Norton
2015-09-01 16:37 - 2015-07-10 11:53 - 00020169 _____ C:\WINDOWS\setupact.log
2015-08-30 20:54 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\rescache
2015-08-29 05:08 - 2015-05-19 09:14 - 00001389 _____ C:\Users\Josef\Desktop\Instalační soubory Norton.lnk
2015-08-29 04:36 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-08-28 14:33 - 2015-07-10 08:59 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2015-08-28 14:28 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\AppCompat
2015-08-28 05:53 - 2015-07-10 10:28 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2015-08-28 05:50 - 2015-07-10 12:50 - 00000000 ____D C:\Program Files\Windows Journal
2015-08-28 05:50 - 2015-07-10 12:43 - 00000000 ____D C:\WINDOWS\OCR
2015-08-28 05:50 - 2015-07-10 12:42 - 00000000 ____D C:\WINDOWS\system32\winrm
2015-08-28 05:50 - 2015-07-10 12:42 - 00000000 ____D C:\WINDOWS\system32\WCN
2015-08-28 05:50 - 2015-07-10 12:42 - 00000000 ____D C:\WINDOWS\system32\slmgr
2015-08-28 05:50 - 2015-07-10 12:42 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2015-08-28 05:50 - 2015-07-10 10:28 - 00000000 ___SD C:\WINDOWS\system32\F12
2015-08-28 05:50 - 2015-07-10 10:28 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2015-08-28 05:50 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\Com
2015-08-28 05:50 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\IME
2015-08-28 05:50 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\Help
2015-08-28 05:50 - 2015-07-10 10:28 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2015-08-28 05:50 - 2015-07-10 10:28 - 00000000 ____D C:\Program Files\Windows Defender
2015-08-28 05:50 - 2015-07-10 10:28 - 00000000 ____D C:\Program Files\Common Files\System
2015-08-27 21:39 - 2015-05-19 09:14 - 00000000 ____D C:\Users\Public\Downloads\Norton
2015-08-27 21:27 - 2015-07-10 11:53 - 00267600 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-08-27 21:10 - 2015-07-10 10:28 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2015-08-27 21:10 - 2015-07-10 10:28 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2015-08-27 21:10 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-27 21:10 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-27 21:10 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-08-27 21:10 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\Provisioning
2015-08-27 20:24 - 2015-07-10 10:28 - 00000000 ___RD C:\WINDOWS\PrintDialog
2015-08-27 20:24 - 2015-07-10 10:28 - 00000000 ___RD C:\WINDOWS\MiracastView
2015-08-27 20:19 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\Registration
2015-08-27 20:18 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\LogFiles
2015-08-27 20:17 - 2015-07-10 10:28 - 00000000 __RHD C:\Users\Public\Libraries
2015-08-27 20:10 - 2015-07-10 10:29 - 00004362 _____ C:\WINDOWS\DtcInstall.log
2015-08-27 20:10 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-08-27 20:10 - 2015-01-01 12:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.3
2015-08-27 20:10 - 2013-08-22 08:21 - 00000000 ____D C:\Users\Default.migrated
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\zh-TW
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\zh-HK
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\zh-CN
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\uk-UA
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\tr-TR
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\th-TH
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\sv-SE
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-RS
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\sl-SI
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\sk-SK
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\ru-RU
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\ro-RO
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\pt-PT
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\pt-BR
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\pl-PL
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\nl-NL
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\nb-NO
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\lv-LV
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\lt-LT
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\ko-KR
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\ja-JP
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\it-IT
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\hu-HU
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\hr-HR
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\he-IL
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\fr-FR
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\fi-FI
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\et-EE
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\en-GB
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\el-GR
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\de-DE
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\bg-BG
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\ar-SA
2015-08-27 20:08 - 2014-03-18 09:45 - 00000000 ____D C:\WINDOWS\system32\ms-my
2015-08-27 20:08 - 2014-03-18 09:45 - 00000000 ____D C:\WINDOWS\system32\gl-es
2015-08-27 20:08 - 2014-03-18 09:45 - 00000000 ____D C:\WINDOWS\system32\eu-es
2015-08-27 20:08 - 2014-03-18 09:45 - 00000000 ____D C:\WINDOWS\system32\ca-es-valencia
2015-08-27 20:08 - 2014-03-18 09:45 - 00000000 ____D C:\WINDOWS\system32\ca-es
2015-08-27 20:08 - 2013-08-22 10:17 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2015-08-27 20:08 - 2013-08-22 10:17 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2015-08-27 20:08 - 2013-08-22 10:17 - 00000000 ____D C:\WINDOWS\MediaViewer
2015-08-27 20:07 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Public
2015-08-27 20:07 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\InputMethod
2015-08-27 20:07 - 2015-04-02 17:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Daum
2015-08-27 20:07 - 2014-09-25 01:04 - 00000000 ____D C:\Program Files\Microsoft Office
2015-08-27 20:07 - 2014-08-19 03:31 - 00000000 ____D C:\Program Files\REALTEK SD Wireless LAN Driver
2015-08-27 20:07 - 2014-08-03 13:51 - 00000000 ____D C:\Program Files\Kionix
2015-08-27 20:07 - 2014-08-03 13:51 - 00000000 ____D C:\Program Files\DIFX
2015-08-27 20:07 - 2014-08-03 13:50 - 00000000 ____D C:\Program Files\REALTEK
2015-08-27 20:07 - 2014-08-03 13:12 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2015-08-27 20:06 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\Recovery
2015-08-27 20:06 - 2015-07-10 10:28 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-08-27 20:00 - 2015-07-10 08:59 - 00000000 __RHD C:\Users\Default
2015-08-27 19:23 - 2015-07-10 13:17 - 00000000 ___HD C:\$Windows.~BT
2015-08-26 19:30 - 2014-12-31 12:54 - 00047616 ___SH C:\Users\Josef\Desktop\Thumbs.db
2015-08-21 17:57 - 2015-08-02 11:42 - 00000000 ____D C:\Users\Josef\Downloads\zasilka-FRT8IK2FCVMY4Y6Z
2015-08-14 05:55 - 2014-08-04 15:44 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-08-14 05:32 - 2014-08-04 15:43 - 129304528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
==================== Files in the root of some directories =======
2015-03-12 17:43 - 2015-03-12 17:43 - 0000017 _____ () C:\Users\Josef\AppData\Local\resmon.resmoncfg
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-08-27 20:00
==================== End of FRST.txt ============================
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:07-09-2015
Ran by Josef (administrator) on NEXTBOOK (08-09-2015 19:02:39)
Running from C:\Users\Josef\Desktop\FRST-OlderVersion
Loaded Profiles: Josef (Available Profiles: Josef)
Platform: Microsoft Windows 10 Home (X86) Language: Angličtina (Spojené státy)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyCriticalService.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyLpmService.exe
(Intel Corporation) C:\Windows\System32\DptfParticipantProcessorService.exe
(Symantec Corporation) C:\Program Files\Norton 360\Engine\22.5.2.15\N360.exe
(Symantec Corporation) C:\Program Files\Norton Identity Safe\Engine\2014.7.11.42\NST.exe
() C:\Program Files\REALTEK\REALTEK Bluetooth\BTDevMgr.exe
(Symantec Corporation) C:\Program Files\Norton 360\Engine\22.5.2.15\N360.exe
(Symantec Corporation) C:\Program Files\Norton Identity Safe\Engine\2014.7.11.42\NST.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(Microsoft Corporation) C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
(Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ink\TabTip.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(Intel Corporation) C:\Windows\System32\DptfPolicyLpmServiceHelper.exe
(Microsoft Corporation) C:\Users\Josef\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Adobe Systems Incorporated) C:\Windows\System32\Macromed\Flash\FlashUtil_ActiveX.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\System32\LockAppHost.exe
(Microsoft Corporation) C:\Windows\System32\InstallAgent.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [DptfPolicyLpmServiceHelper] => C:\WINDOWS\system32\DptfPolicyLpmServiceHelper.exe [81336 2014-12-31] (Intel Corporation)
HKU\S-1-5-19\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation)
HKU\S-1-5-20\...\Run: [OneDriveSetup] => C:\Windows\System32\OneDriveSetup.exe [7805120 2015-07-10] (Microsoft Corporation)
HKU\S-1-5-21-3098118162-3684607140-3420283965-1001\...\Run: [OneDrive] => C:\Users\Josef\AppData\Local\Microsoft\OneDrive\OneDrive.exe [404064 2015-08-27] (Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OverlayExcluded] -> {4433A54A-1AC8-432F-90FC-85F045CF383C} => C:\Program Files\Norton 360\Engine\22.5.2.15\buShell.dll [2015-07-13] (Symantec Corporation)
ShellIconOverlayIdentifiers: [ OverlayPending] -> {F17C0B1E-EF8E-4AD4-8E1B-7D7E8CB23225} => C:\Program Files\Norton 360\Engine\22.5.2.15\buShell.dll [2015-07-13] (Symantec Corporation)
ShellIconOverlayIdentifiers: [ OverlayProtected] -> {476D0EA3-80F9-48B5-B70B-05E677C9C148} => C:\Program Files\Norton 360\Engine\22.5.2.15\buShell.dll [2015-07-13] (Symantec Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 81.92.146.5 192.168.0.1
Tcpip\..\Interfaces\{993fdc17-168a-4adc-81a3-f26eaf5ca059}: [DhcpNameServer] 81.92.146.5 192.168.0.1
Internet Explorer:
==================
HKU\S-1-5-19\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-20\Software\Microsoft\Internet Explorer\Main,Local Page = %11%\blank.htm
HKU\S-1-5-21-3098118162-3684607140-3420283965-1001\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.centrum.cz/
HKU\S-1-5-21-3098118162-3684607140-3420283965-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com
SearchScopes: HKU\S-1-5-21-3098118162-3684607140-3420283965-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3098118162-3684607140-3420283965-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
BHO: Norton Identity Protection -> {602ADB0E-4AFF-4217-8AA1-95DAC4DFA408} -> C:\Program Files\Norton 360\Engine\22.5.2.15\coIEPlg.dll [2015-07-10] (Symantec Corporation)
BHO: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL No File
Toolbar: HKLM - Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\22.5.2.15\coIEPlg.dll [2015-07-10] (Symantec Corporation)
Toolbar: HKU\S-1-5-21-3098118162-3684607140-3420283965-1001 -> Norton Toolbar - {7FEBEFE3-6B19-4349-98D2-FFB09D4B49CA} - C:\Program Files\Norton 360\Engine\22.5.2.15\coIEPlg.dll [2015-07-10] (Symantec Corporation)
FireFox:
========
FF HKLM\...\Firefox\Extensions: [{F04D2D30-776C-4d02-8627-8E4385ECA58D}] - C:\ProgramData\Norton\{92622AAD-05E8-4459-B256-765CE1E929FB}\NST_2014.7.11.42\coFFPlgn
FF HKLM\...\Firefox\Extensions: [{2D3F3651-74B9-4795-BDEC-6DA2F431CB62}] - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFPlgn
FF Extension: Norton Toolbar - C:\ProgramData\Norton\{0C55C096-0F1D-4F28-AAA2-85EF591126E7}\N360_22.5.2.15\coFFPlgn [2015-09-02]
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [cjabmdjcfcfdmffimndhafhblfmpjdpe] - C:\Program Files\Norton 360\Engine\22.5.2.15\Exts\Chrome.crx [2015-08-27]
CHR HKLM\...\Chrome\Extension: [iikflkcanblccfahdhdonehdalibjnif] - https://clients2.google.com/service/update2/crx
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 BTDevManager; C:\Program Files\REALTEK\REALTEK Bluetooth\BTDevMgr.exe [70144 2014-03-12] () [File not signed]
R2 CoreMessagingRegistrar; C:\WINDOWS\system32\coremessaging.dll [588800 2015-07-22] (Microsoft Corporation)
S3 cphs; C:\WINDOWS\system32\IntelCpHeciSvc.exe [290208 2015-07-30] (Intel Corporation)
S3 diagnosticshub.standardcollector.service; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [23040 2015-07-10] (Microsoft Corporation)
S3 DmEnrollmentSvc; C:\WINDOWS\system32\Windows.Internal.Management.dll [193024 2015-07-10] (Microsoft Corporation)
R2 DptfParticipantProcessorService; C:\WINDOWS\system32\DptfParticipantProcessorService.exe [83384 2014-12-31] (Intel Corporation)
R2 DptfPolicyCriticalService; C:\WINDOWS\system32\DptfPolicyCriticalService.exe [97208 2014-12-31] (Intel Corporation)
R2 DptfPolicyLpmService; C:\WINDOWS\system32\DptfPolicyLpmService.exe [90552 2014-12-31] (Intel Corporation)
R2 igfxCUIService1.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [283552 2015-07-30] (Intel Corporation)
R2 N360; C:\Program Files\Norton 360\Engine\22.5.2.15\N360.exe [282016 2015-07-16] (Symantec Corporation)
R2 NCO; C:\Program Files\Norton Identity Safe\Engine\2014.7.11.42\NST.exe [131144 2015-03-05] (Symantec Corporation)
R2 OneSyncSvc_Session2; C:\WINDOWS\system32\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
R3 PimIndexMaintenanceSvc_Session2; C:\WINDOWS\system32\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 SensorDataService; C:\WINDOWS\System32\SensorDataService.exe [669696 2015-07-12] (Microsoft Corporation)
R3 UnistoreSvc_Session2; C:\WINDOWS\System32\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
R3 UserDataSvc_Session2; C:\WINDOWS\system32\svchost.exe [35176 2015-07-10] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [277760 2015-07-10] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23264 2015-07-10] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 BasicRender; C:\WINDOWS\System32\drivers\BasicRender.sys [30720 2015-07-10] (Microsoft Corporation)
R1 BHDrvx86; C:\Program Files\Norton 360\NortonData\22.5.2.15\Definitions\BASHDefs\20150821.001\BHDrvx86.sys [1181936 2015-07-23] (Symantec Corporation)
R3 BthLEEnum; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [193536 2015-07-10] (Microsoft Corporation)
R3 BthMini; C:\WINDOWS\System32\Drivers\BTHMINI.sys [23040 2015-07-10] (Microsoft Corporation)
S3 buttonconverter; C:\WINDOWS\System32\drivers\buttonconverter.sys [23552 2015-07-10] (Microsoft Corporation)
R3 camera; C:\WINDOWS\system32\DRIVERS\camera.sys [461824 2014-08-02] (Intel Corporation) [File not signed]
S3 CapImg; C:\WINDOWS\System32\drivers\capimg.sys [96768 2015-07-10] (Microsoft Corporation)
R1 ccSet_N360; C:\WINDOWS\system32\drivers\N360\1605020.00F\ccSetx86.sys [137456 2015-07-11] (Symantec Corporation)
R1 ccSet_NST; C:\WINDOWS\system32\drivers\NST\7DE070B0.02A\ccSetx86.sys [127064 2013-09-27] (Symantec Corporation)
R3 CompositeBus; C:\WINDOWS\System32\DriverStore\FileRepository\compositebus.inf_x86_a4832450a7024d49\CompositeBus.sys [31232 2015-07-10] (Microsoft Corporation)
S3 DptfDevAmbient; C:\WINDOWS\System32\drivers\DptfDevAmbient.sys [44472 2014-12-31] (Intel Corporation)
R3 DptfDevDBPT; C:\WINDOWS\System32\drivers\DptfDevPower.sys [25528 2014-12-31] (Intel Corporation)
R3 DptfDevDisplay; C:\WINDOWS\System32\drivers\DptfDevDisplay.sys [28088 2014-12-31] (Intel Corporation)
R3 DptfDevGen; C:\WINDOWS\System32\drivers\DptfDevGen.sys [36280 2014-12-31] (Intel Corporation)
R3 DptfDevProc; C:\WINDOWS\System32\drivers\DptfDevProc.sys [80824 2014-12-31] (Intel Corporation)
R3 DptfManager; C:\WINDOWS\System32\drivers\DptfManager.sys [182200 2014-12-31] (Intel Corporation)
R1 eeCtrl; C:\Program Files\Common Files\Symantec Shared\EENGINE\eeCtrl.sys [389456 2015-08-20] (Symantec Corporation)
R3 EraserUtilRebootDrv; C:\Program Files\Common Files\Symantec Shared\EENGINE\EraserUtilRebootDrv.sys [122192 2015-08-20] (Symantec Corporation)
S3 fcvsc; C:\WINDOWS\System32\drivers\fcvsc.sys [24064 2015-07-10] (Microsoft Corporation)
R1 FileCrypt; C:\WINDOWS\System32\drivers\filecrypt.sys [74240 2015-07-10] (Microsoft Corporation)
R3 gc310; C:\WINDOWS\System32\drivers\gc310.sys [39936 2014-08-02] (Intel Corporation) [File not signed]
S3 genericusbfn; C:\WINDOWS\System32\drivers\genericusbfn.sys [17408 2015-07-10] (Microsoft Corporation)
R3 GPIO; C:\WINDOWS\System32\drivers\iaiogpioe.sys [23552 2014-05-16] (Intel Corporation)
R3 GpioVirtual; C:\WINDOWS\System32\drivers\iaiogpiovirtual.sys [16896 2014-03-22] (Intel Corporation)
R1 GpuEnergyDrv; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [7680 2015-07-10] (Microsoft Corporation)
S3 hidinterrupt; C:\WINDOWS\System32\drivers\hidinterrupt.sys [37728 2015-07-10] (Microsoft Corporation)
R3 hm2056; C:\WINDOWS\System32\drivers\hm2056.sys [43008 2014-05-16] (Intel Corporation)
R3 iaioi2c; C:\WINDOWS\System32\drivers\iaioi2ce.sys [62464 2014-05-16] (Intel Corporation)
R3 iaiouart; C:\WINDOWS\System32\drivers\iaiouart.sys [87552 2014-03-22] (Intel Corporation)
R1 IDSVix86; C:\Program Files\Norton 360\NortonData\22.5.2.15\Definitions\IPSDefs\20150906.001\IDSvix86.sys [580856 2015-08-26] (Symantec Corporation)
S3 intaud_WaveExtensible; C:\WINDOWS\system32\drivers\intelaud.sys [44096 2015-06-26] (Intel Corporation)
R3 IntelBatteryManagement; C:\WINDOWS\System32\drivers\IntelBatteryManagement.sys [38400 2014-08-02] ()
R3 IntelSST; C:\WINDOWS\system32\drivers\isstrtc.sys [260608 2014-06-28] (Intel(R) Corporation)
S3 IoQos; C:\WINDOWS\System32\drivers\ioqos.sys [23040 2015-07-10] (Microsoft Corporation)
R3 iwdbus; C:\WINDOWS\System32\drivers\iwdbus.sys [35904 2015-06-26] (Intel Corporation)
R3 kxspb; C:\WINDOWS\System32\drivers\kxspb.sys [46928 2014-07-03] (Kionix, Inc.)
S0 LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [88928 2015-07-10] (LSI Corporation)
S0 LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [83296 2015-07-10] (Avago Technologies)
R0 MBI; C:\WINDOWS\System32\drivers\MBI.sys [21968 2014-03-16] (Intel Corporation)
S0 megasas; C:\WINDOWS\System32\drivers\megasas.sys [52064 2015-07-10] (Avago Technologies)
R2 MMCSS; C:\WINDOWS\system32\drivers\mmcss.sys [37376 2015-07-10] (Microsoft Corporation)
R3 NAVENG; C:\Program Files\Norton 360\NortonData\22.5.2.15\Definitions\VirusDefs\20150907.019\NAVENG.SYS [104440 2015-05-20] (Symantec Corporation)
R3 NAVEX15; C:\Program Files\Norton 360\NortonData\22.5.2.15\Definitions\VirusDefs\20150907.019\NAVEX15.SYS [1645432 2015-05-20] (Symantec Corporation)
S3 netvsc; C:\WINDOWS\System32\drivers\netvsc.sys [80384 2015-07-10] (Microsoft Corporation)
S0 percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [51040 2015-07-10] (LSI Corporation)
S0 percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [51552 2015-07-10] (Avago Technologies)
R3 PMIC; C:\WINDOWS\System32\drivers\PMIC.sys [66560 2014-08-06] (Intel Corporation)
R3 rtii2sac; C:\WINDOWS\system32\DRIVERS\rtii2sac.sys [185560 2014-06-17] (Realtek Semiconductor Corp.)
R3 RtkUart; C:\WINDOWS\System32\drivers\RtkUart.sys [544000 2015-05-21] (Realtek Semiconductor Corporation)
R3 RtlWlans; C:\WINDOWS\system32\DRIVERS\rtwlans.sys [3098840 2015-07-10] (Realtek Semiconductor Corporation )
R3 SRTSP; C:\WINDOWS\system32\drivers\N360\1605020.00F\SRTSP.SYS [711408 2015-07-11] (Symantec Corporation)
R1 SRTSPX; C:\WINDOWS\system32\drivers\N360\1605020.00F\SRTSPX.SYS [44792 2015-07-11] (Symantec Corporation)
R2 storqosflt; C:\WINDOWS\System32\drivers\storqosflt.sys [52736 2015-07-10] (Microsoft Corporation)
S0 storufs; C:\WINDOWS\System32\drivers\storufs.sys [33632 2015-07-10] (Microsoft Corporation)
R3 swenum; C:\WINDOWS\System32\DriverStore\FileRepository\swenum.inf_x86_b6707c73599dd1b6\swenum.sys [16224 2015-07-10] (Microsoft Corporation)
R0 SymEFASI; C:\WINDOWS\System32\drivers\N360\1605020.00F\SYMEFASI.SYS [1286896 2015-07-11] (Symantec Corporation)
S0 SymELAM; C:\WINDOWS\System32\drivers\N360\1605020.00F\SYMELAM.SYS [22144 2015-07-11] (Symantec Corporation)
R3 SymEvent; C:\WINDOWS\system32\Drivers\SYMEVENT.SYS [103152 2015-08-27] (Symantec Corporation)
R1 SymIRON; C:\WINDOWS\system32\drivers\N360\1605020.00F\Ironx86.SYS [234744 2015-07-11] (Symantec Corporation)
R1 SymNetS; C:\WINDOWS\system32\drivers\N360\1605020.00F\SYMNETS.SYS [429816 2015-07-11] (Symantec Corporation)
R3 TXEI; C:\WINDOWS\System32\drivers\TXEI.sys [75792 2014-01-10] (Intel Corporation)
S3 UcmCx0101; C:\WINDOWS\System32\Drivers\UcmCx.sys [45056 2015-07-10] (Microsoft Corporation)
S3 UcmUcsi; C:\WINDOWS\System32\drivers\UcmUcsi.sys [32768 2015-07-14] (Microsoft Corporation)
S3 UdeCx; C:\WINDOWS\System32\drivers\udecx.sys [31744 2015-07-10] ()
S3 Ufx01000; C:\WINDOWS\System32\drivers\ufx01000.sys [190816 2015-07-10] (Microsoft Corporation)
S3 UfxChipidea; C:\WINDOWS\System32\drivers\UfxChipidea.sys [73568 2015-07-10] (Microsoft Corporation)
S3 ufxsynopsys; C:\WINDOWS\System32\drivers\ufxsynopsys.sys [100704 2015-07-10] (Microsoft Corporation)
S3 UrsChipidea; C:\WINDOWS\System32\drivers\urschipidea.sys [21856 2015-07-10] (Microsoft Corporation)
S3 UrsCx01000; C:\WINDOWS\System32\drivers\urscx01000.sys [42848 2015-07-10] (Microsoft Corporation)
S3 UrsSynopsys; C:\WINDOWS\System32\drivers\urssynopsys.sys [21856 2015-07-10] (Microsoft Corporation)
S3 vhf; C:\WINDOWS\System32\drivers\vhf.sys [24064 2015-07-10] (Microsoft Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37400 2015-07-10] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [245600 2015-07-10] (Microsoft Corporation)
S3 wdiwifi; C:\WINDOWS\System32\DRIVERS\wdiwifi.sys [488960 2015-08-06] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [97632 2015-07-10] (Microsoft Corporation)
R0 WindowsTrustedRT; C:\WINDOWS\System32\drivers\WindowsTrustedRT.sys [86552 2015-07-10] (Microsoft Corporation)
R0 WindowsTrustedRTProxy; C:\WINDOWS\System32\drivers\WindowsTrustedRTProxy.sys [15384 2015-07-10] (Microsoft Corporation)
R0 Wof; C:\WINDOWS\system32\Drivers\Wof.sys [173408 2015-08-06] (Microsoft Corporation)
S3 xboxgip; C:\WINDOWS\System32\drivers\xboxgip.sys [186368 2015-07-10] (Microsoft Corporation)
S3 xinputhid; C:\WINDOWS\System32\drivers\xinputhid.sys [18432 2015-07-10] (Microsoft Corporation)
S3 wfpcapture; \SystemRoot\System32\drivers\wfpcapture.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
NETSVC: XboxNetApiSvc -> C:\Windows\system32\XboxNetApiSvc.dll (Microsoft Corporation)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-08 19:00 - 2015-09-08 19:00 - 00016148 _____ C:\WINDOWS\system32\NEXTBOOK_Josef_HistoryPrediction.bin
2015-09-03 14:37 - 2015-09-03 14:37 - 00000000 ___HD C:\OneDriveTemp
2015-09-01 16:59 - 2015-09-01 17:07 - 00000000 ____D C:\Users\Josef\AppData\Local\NPE
2015-09-01 16:57 - 2015-09-06 16:39 - 10107368 _____ (Symantec Corporation) C:\Users\Josef\Downloads\NPE.exe
2015-08-28 21:19 - 2015-08-20 07:25 - 06265168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2015-08-28 21:19 - 2015-08-20 07:22 - 00549160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ci.dll
2015-08-28 21:19 - 2015-08-20 07:16 - 20857848 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2015-08-28 21:19 - 2015-08-20 07:11 - 00067776 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2015-08-28 21:19 - 2015-08-20 06:46 - 00135680 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2015-08-28 21:19 - 2015-08-20 06:41 - 00165888 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2015-08-28 21:19 - 2015-08-20 06:35 - 01829376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2015-08-28 21:19 - 2015-08-20 06:31 - 18806272 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2015-08-28 21:19 - 2015-08-20 06:30 - 00725504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2015-08-28 21:19 - 2015-08-18 09:27 - 01771592 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2015-08-28 21:19 - 2015-08-18 09:26 - 00284000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2015-08-28 21:19 - 2015-08-18 09:24 - 00963920 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2015-08-28 21:19 - 2015-08-18 09:14 - 00192864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionQueue.dll
2015-08-28 21:19 - 2015-08-18 08:49 - 00274432 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2015-08-28 21:19 - 2015-08-18 08:48 - 00387584 _____ (Microsoft Corporation) C:\WINDOWS\system32\WlanMediaManager.dll
2015-08-28 21:19 - 2015-08-18 08:47 - 01507840 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2015-08-28 21:19 - 2015-08-18 08:41 - 01161216 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2015-08-28 21:19 - 2015-08-18 08:40 - 00675328 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2015-08-28 21:19 - 2015-08-18 08:38 - 01875968 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2015-08-28 21:19 - 2015-08-18 08:36 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcnwiz.dll
2015-08-28 21:19 - 2015-08-18 08:35 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafWCN.dll
2015-08-28 21:19 - 2015-08-18 08:35 - 00100352 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnApi.dll
2015-08-28 21:19 - 2015-08-18 08:35 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\fdWCN.dll
2015-08-28 21:19 - 2015-08-18 08:35 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\WcnNetsh.dll
2015-08-28 21:19 - 2015-08-18 08:34 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2015-08-28 21:19 - 2015-08-18 08:34 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2015-08-28 21:19 - 2015-08-18 08:33 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\system32\BthRadioMedia.dll
2015-08-28 21:19 - 2015-08-18 08:31 - 01917440 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2015-08-28 21:19 - 2015-08-18 08:30 - 00251904 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2015-08-28 21:19 - 2015-08-18 08:29 - 01593344 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2015-08-28 21:19 - 2015-08-18 08:26 - 01499136 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2015-08-28 21:19 - 2015-08-18 08:26 - 00921088 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2015-08-28 21:19 - 2015-08-18 08:26 - 00195584 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2015-08-28 21:19 - 2015-08-18 06:42 - 00006631 _____ C:\WINDOWS\system32\ResPriHMImageList
2015-08-28 21:19 - 2015-08-18 06:42 - 00006313 _____ C:\WINDOWS\system32\ResPriImageList
2015-08-28 14:40 - 2015-09-08 19:02 - 00000000 ____D C:\Users\Josef\Desktop\FRST-OlderVersion
2015-08-28 14:28 - 2015-08-28 14:28 - 00000000 ____D C:\Users\Josef\AppData\Local\NetworkTiles
2015-08-28 05:53 - 2015-08-27 20:23 - 00000000 ___DC C:\WINDOWS\Panther
2015-08-28 05:53 - 2015-08-27 20:03 - 00000000 __SHD C:\Recovery
2015-08-28 05:52 - 2015-08-27 20:10 - 00000000 ____D C:\Windows.old
2015-08-28 05:50 - 2015-08-28 05:50 - 00000000 ____D C:\WINDOWS\system32\cs
2015-08-28 05:50 - 2015-07-10 06:36 - 06473216 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0005.dll
2015-08-28 05:45 - 2015-08-28 05:45 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2015-08-27 21:44 - 2015-08-27 21:49 - 00000000 ____D C:\Program Files\Common Files\Symantec Shared
2015-08-27 21:44 - 2015-08-27 21:44 - 00103152 _____ (Symantec Corporation) C:\WINDOWS\system32\Drivers\SYMEVENT.SYS
2015-08-27 21:44 - 2015-08-27 21:44 - 00008178 _____ C:\WINDOWS\system32\Drivers\SYMEVENT.CAT
2015-08-27 21:44 - 2015-08-27 21:44 - 00002331 _____ C:\Users\Public\Desktop\Norton 360.LNK
2015-08-27 21:42 - 2015-08-27 21:44 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton 360
2015-08-27 21:42 - 2015-08-27 21:42 - 00000000 ____D C:\WINDOWS\system32\Drivers\N360
2015-08-27 21:42 - 2015-08-27 21:42 - 00000000 ____D C:\Program Files\Norton 360
2015-08-27 21:39 - 2015-08-27 21:39 - 01110944 _____ (Symantec Corporation) C:\Users\Josef\Downloads\NortonN360Downloader.exe
2015-08-27 20:57 - 2015-08-27 20:58 - 08758584 _____ (Symantec Corporation) C:\Users\Josef\Downloads\NRnR.exe
2015-08-27 20:35 - 2015-08-03 03:56 - 06878256 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2015-08-27 20:34 - 2015-08-13 06:07 - 19323392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2015-08-27 20:34 - 2015-08-11 11:40 - 04048808 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2015-08-27 20:34 - 2015-08-11 11:40 - 02151208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2015-08-27 20:34 - 2015-08-11 11:31 - 02880032 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2015-08-27 20:34 - 2015-08-11 10:57 - 13024768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2015-08-27 20:34 - 2015-08-11 10:51 - 01916928 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2015-08-27 20:34 - 2015-08-11 10:49 - 00586752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2015-08-27 20:34 - 2015-08-11 10:45 - 01820672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2015-08-27 20:34 - 2015-08-11 10:43 - 02748416 _____ (Microsoft Corporation) C:\WINDOWS\system32\tquery.dll
2015-08-27 20:34 - 2015-08-11 10:40 - 01964544 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssrch.dll
2015-08-27 20:34 - 2015-08-08 08:00 - 01985024 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2015-08-27 20:34 - 2015-08-08 08:00 - 01391104 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2015-08-27 20:34 - 2015-08-05 06:29 - 00644128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2015-08-27 20:34 - 2015-08-05 05:40 - 00995840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2015-08-27 20:34 - 2015-08-05 05:32 - 01134592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2015-08-27 20:34 - 2015-08-04 04:47 - 00898560 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2015-08-27 20:34 - 2015-08-03 03:57 - 01709920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2015-08-27 20:34 - 2015-08-03 03:57 - 00503600 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2015-08-27 20:34 - 2015-08-03 03:49 - 00700256 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2015-08-27 20:34 - 2015-08-03 03:18 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2015-08-27 20:34 - 2015-08-03 03:13 - 00388096 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2015-08-27 20:34 - 2015-08-03 03:11 - 00821248 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2015-08-27 20:34 - 2015-08-03 03:10 - 01162240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2015-08-27 20:34 - 2015-08-03 03:06 - 03025408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2015-08-27 20:34 - 2015-08-03 03:03 - 00494592 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2015-08-27 20:34 - 2015-08-03 03:03 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.Desktop.dll
2015-08-27 20:34 - 2015-08-03 03:02 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2015-08-27 20:34 - 2015-08-03 03:02 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppBroker.dll
2015-08-27 20:34 - 2015-08-03 03:01 - 11262464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2015-08-27 20:34 - 2015-07-30 06:26 - 01867160 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2015-08-27 20:34 - 2015-07-30 06:26 - 01341920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmpmde.dll
2015-08-27 20:34 - 2015-07-30 06:26 - 00877016 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2015-08-27 20:34 - 2015-07-30 06:25 - 01356368 _____ (Microsoft Corporation) C:\WINDOWS\system32\winmde.dll
2015-08-27 20:34 - 2015-07-30 06:25 - 00713312 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2015-08-27 20:34 - 2015-07-30 06:23 - 01808224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2015-08-27 20:34 - 2015-07-30 06:22 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\rpcrt4.dll
2015-08-27 20:34 - 2015-07-30 05:15 - 09889792 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2015-08-27 20:34 - 2015-07-30 05:12 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2015-08-27 20:34 - 2015-07-30 05:04 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2015-08-27 20:34 - 2015-07-30 05:04 - 00741376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2015-08-27 20:34 - 2015-07-30 05:04 - 00397312 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationController.dll
2015-08-27 20:34 - 2015-07-30 05:04 - 00335360 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2015-08-27 20:34 - 2015-07-30 05:00 - 01125888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2015-08-27 20:34 - 2015-07-30 04:58 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2015-08-27 20:34 - 2015-07-26 06:30 - 00868752 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2015-08-27 20:34 - 2015-07-26 06:30 - 00751520 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2015-08-27 20:34 - 2015-07-26 06:28 - 05118024 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2015-08-27 20:34 - 2015-07-26 06:28 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2015-08-27 20:34 - 2015-07-26 05:38 - 04350464 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2015-08-27 20:34 - 2015-07-26 05:30 - 00750592 _____ (Microsoft Corporation) C:\WINDOWS\system32\comdlg32.dll
2015-08-27 20:34 - 2015-07-26 05:30 - 00452608 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2015-08-27 20:34 - 2015-07-26 05:29 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2015-08-27 20:34 - 2015-07-24 05:29 - 00369504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbhub.sys
2015-08-27 20:34 - 2015-07-24 04:39 - 02646528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2015-08-27 20:34 - 2015-07-24 04:24 - 00925696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2015-08-27 20:34 - 2015-07-24 04:23 - 01153536 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2015-08-27 20:34 - 2015-07-22 05:59 - 00588800 _____ (Microsoft Corporation) C:\WINDOWS\system32\CoreMessaging.dll
2015-08-27 20:34 - 2015-07-22 05:53 - 00762896 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2015-08-27 20:34 - 2015-07-22 05:13 - 01611264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Immersive.dll
2015-08-27 20:34 - 2015-07-22 05:13 - 00677888 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2015-08-27 20:34 - 2015-07-22 05:11 - 12589056 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2015-08-27 20:34 - 2015-07-22 05:10 - 00828416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2015-08-27 20:34 - 2015-07-22 05:03 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2015-08-27 20:34 - 2015-07-19 05:32 - 00520640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2015-08-27 20:34 - 2015-07-18 09:37 - 01043968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Editing.dll
2015-08-27 20:34 - 2015-07-18 09:29 - 03443200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbon.dll
2015-08-27 20:34 - 2015-07-17 03:53 - 01084416 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2015-08-27 20:34 - 2015-07-17 03:53 - 00437248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Sensors.dll
2015-08-27 20:34 - 2015-07-16 05:47 - 00754688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2015-08-27 20:34 - 2015-07-16 05:29 - 01380864 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2015-08-27 20:34 - 2015-07-16 05:27 - 02207744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2015-08-27 20:34 - 2015-07-16 05:21 - 01275392 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2015-08-27 20:34 - 2015-07-15 05:18 - 01395568 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2015-08-27 20:34 - 2015-07-15 05:07 - 00987072 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipUp.exe
2015-08-27 20:34 - 2015-07-15 04:22 - 02112512 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2015-08-27 20:34 - 2015-07-15 04:10 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\unenrollhook.dll
2015-08-27 20:34 - 2015-07-12 01:52 - 00669696 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorDataService.exe
2015-08-27 20:34 - 2015-07-12 01:46 - 00441344 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppContracts.dll
2015-08-27 20:34 - 2015-07-11 02:51 - 04398080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2015-08-27 20:34 - 2015-07-11 02:43 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BlockedShutdown.dll
2015-08-27 20:34 - 2015-07-11 02:41 - 03687936 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2015-08-27 20:34 - 2015-07-11 02:40 - 02606080 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2015-08-27 20:34 - 2015-07-10 17:51 - 00823336 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2015-08-27 20:34 - 2015-07-10 12:27 - 00872448 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2015-08-27 20:34 - 2015-07-10 12:07 - 00821248 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2015-08-27 20:33 - 2015-08-13 05:55 - 01543680 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2015-08-27 20:33 - 2015-08-13 05:53 - 00311808 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2015-08-27 20:33 - 2015-08-11 11:40 - 00918320 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2015-08-27 20:33 - 2015-08-11 11:40 - 00392032 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2015-08-27 20:33 - 2015-08-11 11:38 - 00454000 _____ (Microsoft Corporation) C:\WINDOWS\system32\directmanipulation.dll
2015-08-27 20:33 - 2015-08-11 11:38 - 00066896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\stornvme.sys
2015-08-27 20:33 - 2015-08-11 11:37 - 00243800 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2015-08-27 20:33 - 2015-08-11 11:26 - 00845664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReAgent.dll
2015-08-27 20:33 - 2015-08-11 11:25 - 01183056 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2015-08-27 20:33 - 2015-08-11 10:59 - 00120832 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2015-08-27 20:33 - 2015-08-11 10:59 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2015-08-27 20:33 - 2015-08-11 10:58 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2015-08-27 20:33 - 2015-08-11 10:58 - 00177152 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Notifications.dll
2015-08-27 20:33 - 2015-08-11 10:57 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2015-08-27 20:33 - 2015-08-11 10:53 - 00301056 _____ C:\WINDOWS\system32\diagtrack_wininternal.dll
2015-08-27 20:33 - 2015-08-11 10:53 - 00284672 _____ C:\WINDOWS\system32\diagtrack_win.dll
2015-08-27 20:33 - 2015-08-11 10:51 - 01823232 _____ C:\WINDOWS\system32\InputService.dll
2015-08-27 20:33 - 2015-08-11 10:50 - 00420352 _____ (Microsoft Corporation) C:\WINDOWS\system32\GamePanel.exe
2015-08-27 20:33 - 2015-08-11 10:50 - 00200704 _____ C:\WINDOWS\system32\TextInputFramework.dll
2015-08-27 20:33 - 2015-08-11 10:50 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2015-08-27 20:33 - 2015-08-11 10:49 - 00247808 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2015-08-27 20:33 - 2015-08-11 10:49 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2015-08-27 20:33 - 2015-08-11 10:48 - 00671232 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApiPublic.dll
2015-08-27 20:33 - 2015-08-11 10:47 - 00485376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2015-08-27 20:33 - 2015-08-11 10:47 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2015-08-27 20:33 - 2015-08-11 10:46 - 00923648 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2015-08-27 20:33 - 2015-08-11 10:46 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeParserTask.exe
2015-08-27 20:33 - 2015-08-11 10:44 - 00159744 _____ (Microsoft Corporation) C:\WINDOWS\system32\GnssAdapter.dll
2015-08-27 20:33 - 2015-08-11 10:44 - 00105984 _____ (Microsoft Corporation) C:\WINDOWS\system32\LocationPermissions.dll
2015-08-27 20:33 - 2015-08-11 10:43 - 00722944 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2015-08-27 20:33 - 2015-08-11 10:42 - 05454848 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2015-08-27 20:33 - 2015-08-11 10:41 - 00133120 _____ (Microsoft Corporation) C:\WINDOWS\system32\cloudAP.dll
2015-08-27 20:33 - 2015-08-11 10:40 - 01112064 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2015-08-27 20:33 - 2015-08-11 10:40 - 00449536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2015-08-27 20:33 - 2015-08-11 10:39 - 02987008 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2015-08-27 20:33 - 2015-08-11 10:39 - 00280576 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchProtocolHost.exe
2015-08-27 20:33 - 2015-08-11 10:38 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdbui.dll
2015-08-27 20:33 - 2015-08-11 10:38 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\syncutil.dll
2015-08-27 20:33 - 2015-08-11 10:38 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\ReInfo.dll
2015-08-27 20:33 - 2015-08-11 10:37 - 00864256 _____ (Microsoft Corporation) C:\WINDOWS\system32\sysmain.dll
2015-08-27 20:33 - 2015-08-08 08:59 - 01535032 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2015-08-27 20:33 - 2015-08-08 08:48 - 00539728 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2015-08-27 20:33 - 2015-08-08 08:15 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2015-08-27 20:33 - 2015-08-06 04:50 - 00197472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdyboost.sys
2015-08-27 20:33 - 2015-08-06 04:50 - 00173408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wof.sys
2015-08-27 20:33 - 2015-08-06 04:01 - 00488960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2015-08-27 20:33 - 2015-08-05 05:39 - 00261632 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActionCenter.dll
2015-08-27 20:33 - 2015-08-04 05:50 - 00085344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mountmgr.sys
2015-08-27 20:33 - 2015-08-04 05:10 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\VPNv2CSP.dll
2015-08-27 20:33 - 2015-08-03 04:28 - 00268800 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2015-08-27 20:33 - 2015-08-03 03:57 - 00436064 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2015-08-27 20:33 - 2015-08-03 03:57 - 00415072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2015-08-27 20:33 - 2015-08-03 03:57 - 00334176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2015-08-27 20:33 - 2015-08-03 03:57 - 00042904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wpcfltr.sys
2015-08-27 20:33 - 2015-08-03 03:57 - 00036704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpiowin32.sys
2015-08-27 20:33 - 2015-08-03 03:18 - 00189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_UserAccount.dll
2015-08-27 20:33 - 2015-08-03 03:13 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModelShim.dll
2015-08-27 20:33 - 2015-08-03 03:12 - 00217088 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2015-08-27 20:33 - 2015-08-03 03:12 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2015-08-27 20:33 - 2015-08-03 03:11 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\configmanager2.dll
2015-08-27 20:33 - 2015-08-03 03:10 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\coredpus.dll
2015-08-27 20:33 - 2015-08-03 03:06 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\system32\notepad.exe
2015-08-27 20:33 - 2015-08-03 03:06 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\notepad.exe
2015-08-27 20:33 - 2015-08-03 03:06 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\system32\SubscriptionMgr.dll
2015-08-27 20:33 - 2015-08-03 03:05 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkStatus.dll
2015-08-27 20:33 - 2015-08-03 03:03 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinBioDataModel.dll
2015-08-27 20:33 - 2015-08-03 03:02 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.LockScreen.dll
2015-08-27 20:33 - 2015-08-03 02:59 - 00752640 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctfuimanager.dll
2015-08-27 20:33 - 2015-07-30 06:24 - 00445240 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2015-08-27 20:33 - 2015-07-30 06:24 - 00407616 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2015-08-27 20:33 - 2015-07-30 06:24 - 00285632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2015-08-27 20:33 - 2015-07-30 06:22 - 00896144 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2015-08-27 20:33 - 2015-07-30 06:22 - 00507696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2015-08-27 20:33 - 2015-07-30 06:09 - 00193888 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2015-08-27 20:33 - 2015-07-30 05:24 - 00196096 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2015-08-27 20:33 - 2015-07-30 05:24 - 00189440 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2015-08-27 20:33 - 2015-07-30 05:22 - 00371200 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2015-08-27 20:33 - 2015-07-30 05:21 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2015-08-27 20:33 - 2015-07-30 05:21 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2015-08-27 20:33 - 2015-07-30 05:17 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2015-08-27 20:33 - 2015-07-30 05:12 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\ACPBackgroundManagerPolicy.dll
2015-08-27 20:33 - 2015-07-30 05:08 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2015-08-27 20:33 - 2015-07-30 05:07 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2015-08-27 20:33 - 2015-07-30 05:07 - 00128512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tunnel.sys
2015-08-27 20:33 - 2015-07-30 05:06 - 00373248 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2015-08-27 20:33 - 2015-07-30 05:06 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2015-08-27 20:33 - 2015-07-30 05:06 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2015-08-27 20:33 - 2015-07-30 05:06 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2015-08-27 20:33 - 2015-07-30 05:06 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthhfenum.sys
2015-08-27 20:33 - 2015-07-30 05:06 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\VoiceActivationManager.dll
2015-08-27 20:33 - 2015-07-30 05:03 - 00016896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationControllerPS.dll
2015-08-27 20:33 - 2015-07-30 05:01 - 00066048 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2015-08-27 20:33 - 2015-07-30 04:59 - 00473088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpnapps.dll
2015-08-27 20:33 - 2015-07-26 06:28 - 00902320 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2015-08-27 20:33 - 2015-07-26 05:35 - 00322048 _____ (Microsoft Corporation) C:\WINDOWS\system32\stobject.dll
2015-08-27 20:33 - 2015-07-26 05:34 - 00798208 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2015-08-27 20:33 - 2015-07-26 05:29 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\sendmail.dll
2015-08-27 20:33 - 2015-07-24 05:12 - 00850784 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2015-08-27 20:33 - 2015-07-24 05:12 - 00584544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2015-08-27 20:33 - 2015-07-24 05:11 - 00442720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2015-08-27 20:33 - 2015-07-24 04:55 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2015-08-27 20:33 - 2015-07-24 04:53 - 00241152 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2015-08-27 20:33 - 2015-07-24 04:50 - 00124416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_Privacy.dll
2015-08-27 20:33 - 2015-07-24 04:37 - 00236032 _____ (Microsoft Corporation) C:\WINDOWS\system32\usocore.dll
2015-08-27 20:33 - 2015-07-24 04:31 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2015-08-27 20:33 - 2015-07-24 04:30 - 00729088 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpccpl.dll
2015-08-27 20:33 - 2015-07-22 06:00 - 00469856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2015-08-27 20:33 - 2015-07-22 05:21 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\calc.exe
2015-08-27 20:33 - 2015-07-22 05:14 - 00476672 _____ (Microsoft Corporation) C:\WINDOWS\system32\uxtheme.dll
2015-08-27 20:33 - 2015-07-22 05:13 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2015-08-27 20:33 - 2015-07-22 05:09 - 00296960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2015-08-27 20:33 - 2015-07-19 05:27 - 00918880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2015-08-27 20:33 - 2015-07-19 04:52 - 00419328 _____ (Microsoft Corporation) C:\WINDOWS\system32\sppcomapi.dll
2015-08-27 20:33 - 2015-07-19 04:39 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2015-08-27 20:33 - 2015-07-18 10:47 - 00082616 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcd.dll
2015-08-27 20:33 - 2015-07-18 10:29 - 00191144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininit.exe
2015-08-27 20:33 - 2015-07-18 09:43 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Import.dll
2015-08-27 20:33 - 2015-07-18 09:35 - 00185344 _____ (Microsoft Corporation) C:\WINDOWS\system32\DevicesFlowBroker.dll
2015-08-27 20:33 - 2015-07-18 09:28 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIRibbonRes.dll
2015-08-27 20:33 - 2015-07-18 09:28 - 00037376 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2015-08-27 20:33 - 2015-07-18 09:26 - 00363520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdedit.exe
2015-08-27 20:33 - 2015-07-18 09:26 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\BootMenuUX.dll
2015-08-27 20:33 - 2015-07-18 09:26 - 00069120 _____ (Microsoft Corporation) C:\WINDOWS\system32\spbcd.dll
2015-08-27 20:33 - 2015-07-18 09:25 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2015-08-27 20:33 - 2015-07-18 09:25 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcdboot.exe
2015-08-27 20:33 - 2015-07-18 09:24 - 00056832 _____ (Microsoft Corporation) C:\WINDOWS\system32\setbcdlocale.dll
2015-08-27 20:33 - 2015-07-17 05:09 - 00506200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2015-08-27 20:33 - 2015-07-17 05:03 - 00351072 _____ (Microsoft Corporation) C:\WINDOWS\system32\halmacpi.dll
2015-08-27 20:33 - 2015-07-17 05:03 - 00351072 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2015-08-27 20:33 - 2015-07-17 04:05 - 00328704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2015-08-27 20:33 - 2015-07-17 04:05 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmapi.dll
2015-08-27 20:33 - 2015-07-17 04:00 - 00102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2015-08-27 20:33 - 2015-07-17 04:00 - 00043008 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmprc.exe
2015-08-27 20:33 - 2015-07-17 03:59 - 00257024 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2015-08-27 20:33 - 2015-07-17 03:56 - 06101504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2015-08-27 20:33 - 2015-07-17 03:51 - 05076480 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2015-08-27 20:33 - 2015-07-17 03:50 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\efscore.dll
2015-08-27 20:33 - 2015-07-17 03:45 - 00587264 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2015-08-27 20:33 - 2015-07-17 03:44 - 00712192 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchIndexer.exe
2015-08-27 20:33 - 2015-07-16 07:28 - 00054112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dam.sys
2015-08-27 20:33 - 2015-07-16 05:52 - 00123904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2015-08-27 20:33 - 2015-07-16 05:46 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.OneCore.dll
2015-08-27 20:33 - 2015-07-16 05:38 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2015-08-27 20:33 - 2015-07-16 05:32 - 00667136 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2015-08-27 20:33 - 2015-07-16 05:26 - 00198144 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConsoleLogon.dll
2015-08-27 20:33 - 2015-07-16 05:25 - 00141312 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2015-08-27 20:33 - 2015-07-16 05:21 - 00268288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ConhostV2.dll
2015-08-27 20:33 - 2015-07-16 05:19 - 00179200 _____ (Microsoft Corporation) C:\WINDOWS\system32\srumsvc.dll
2015-08-27 20:33 - 2015-07-15 05:19 - 00257888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pci.sys
2015-08-27 20:33 - 2015-07-15 04:41 - 00025088 _____ C:\WINDOWS\system32\LicenseManagerApi.dll
2015-08-27 20:33 - 2015-07-15 04:32 - 00153088 _____ (Microsoft Corporation) C:\WINDOWS\system32\OmaDmAgent.dll
2015-08-27 20:33 - 2015-07-15 04:16 - 00251392 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2015-08-27 20:33 - 2015-07-15 04:13 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.ProxyStub.dll
2015-08-27 20:33 - 2015-07-15 04:03 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Cortana.PAL.Desktop.dll
2015-08-27 20:33 - 2015-07-14 04:37 - 00181088 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2015-08-27 20:33 - 2015-07-14 03:44 - 00032768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys
2015-08-27 20:33 - 2015-07-14 03:30 - 00296448 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2015-08-27 20:33 - 2015-07-14 03:27 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\TabSvc.dll
2015-08-27 20:33 - 2015-07-14 03:20 - 00279552 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemcpl.dll
2015-08-27 20:33 - 2015-07-13 01:30 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2015-08-27 20:33 - 2015-07-12 02:05 - 00211456 _____ (Microsoft Corporation) C:\WINDOWS\system32\updatehandlers.dll
2015-08-27 20:33 - 2015-07-11 03:02 - 00283648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.BioFeedback.dll
2015-08-27 20:33 - 2015-07-11 02:42 - 00191488 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2015-08-27 20:33 - 2015-07-11 02:40 - 03579904 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2015-08-27 20:33 - 2015-07-11 02:40 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\msiexec.exe
2015-08-27 20:33 - 2015-07-11 02:34 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2015-08-27 20:33 - 2015-07-10 17:47 - 00265480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wintrust.dll
2015-08-27 20:33 - 2015-07-10 13:33 - 00131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_SignInOptions.dll
2015-08-27 20:33 - 2015-07-10 12:42 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hmkd.dll
2015-08-27 20:33 - 2015-07-10 12:09 - 00283136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncsi.dll
2015-08-27 20:33 - 2015-07-10 12:05 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2015-08-27 20:28 - 2015-08-27 20:30 - 00000000 ____D C:\Users\Josef\AppData\Local\MicrosoftEdge
2015-08-27 20:28 - 2015-08-27 20:28 - 00002408 _____ C:\Users\Josef\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2015-08-27 20:27 - 2015-08-27 20:27 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2015-08-27 20:26 - 2015-08-27 20:26 - 00000000 ____D C:\Users\Josef\AppData\Local\Publishers
2015-08-27 20:24 - 2015-09-06 17:26 - 01674756 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2015-08-27 20:24 - 2015-08-27 20:24 - 00000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2015-08-27 20:24 - 2015-08-27 20:24 - 00000020 ___SH C:\Users\Josef\ntuser.ini
2015-08-27 20:24 - 2015-08-27 20:24 - 00000000 ____D C:\Users\Josef\AppData\Local\TileDataLayer
2015-08-27 20:24 - 2015-08-27 20:24 - 00000000 ____D C:\Users\Josef\AppData\Local\Comms
2015-08-27 20:18 - 2015-08-27 20:18 - 00021316 _____ C:\WINDOWS\system32\emptyregdb.dat
2015-08-27 20:09 - 2015-08-27 20:09 - 00001544 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2015-08-27 20:06 - 2015-08-27 21:28 - 00000000 ____D C:\Users\Josef
2015-08-27 20:06 - 2015-08-27 20:24 - 00000000 ___RD C:\Users\Josef\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-27 20:06 - 2015-08-27 20:10 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2015-08-27 20:06 - 2015-07-10 10:28 - 00000000 __RSD C:\Users\Josef\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Windows PowerShell
2015-08-27 20:06 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Josef\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2015-08-27 20:06 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Josef\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2015-08-27 20:06 - 2015-07-10 10:28 - 00000000 ____D C:\Users\Josef\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2015-08-27 20:02 - 2015-08-27 20:02 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_SdoV2_02_15_00.Wdf
2015-08-27 20:02 - 2015-08-27 20:02 - 00000000 ____D C:\Program Files\Intel
2015-08-27 20:02 - 2015-07-30 22:41 - 00069104 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2015-08-27 20:01 - 2015-08-27 20:01 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_User_kxfusion_01_11_00.Wdf
2015-08-27 20:01 - 2015-08-27 20:01 - 00000000 ____D C:\Program Files\Common Files\Intel
2015-08-27 20:00 - 2015-09-08 19:00 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2015-08-27 20:00 - 2015-09-02 16:40 - 00007270 _____ C:\WINDOWS\PFRO.log
2015-08-27 20:00 - 2015-08-27 20:01 - 00029847 _____ C:\WINDOWS\system32\NetSetupMig.log
2015-08-27 19:23 - 2015-08-27 20:20 - 00009528 _____ C:\WINDOWS\diagwrn.xml
2015-08-27 19:23 - 2015-08-27 20:20 - 00009528 _____ C:\WINDOWS\diagerr.xml
2015-08-27 19:23 - 2015-08-27 20:19 - 00006604 _____ C:\WINDOWS\comsetup.log
2015-08-27 19:08 - 2015-08-27 19:08 - 01726978 _____ C:\Users\Josef\Downloads\HowPilotsImpressChicks.mp4
2015-08-27 17:44 - 2015-08-27 20:10 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Norton Identity Safe
2015-08-27 17:44 - 2015-08-27 17:44 - 00000000 ____D C:\WINDOWS\system32\Drivers\NST
2015-08-27 17:44 - 2015-08-27 17:44 - 00000000 ____D C:\Program Files\Norton Identity Safe
2015-08-24 11:34 - 2015-08-24 11:34 - 00074435 _____ C:\Users\Josef\Downloads\produkey-x64.zip
2015-08-24 11:34 - 2015-08-24 11:34 - 00058799 _____ C:\Users\Josef\Downloads\produkey.zip
2015-08-22 20:19 - 2015-08-22 20:21 - 19648448 _____ (Microsoft Corporation) C:\Users\Josef\Downloads\MediaCreationToolx64.exe
2015-08-22 20:18 - 2015-08-22 20:18 - 18196016 _____ (Microsoft Corporation) C:\Users\Josef\Downloads\MediaCreationTool.exe
2015-08-22 18:00 - 2015-08-22 18:00 - 08682272 _____ (Microsoft Corporation) C:\Users\Josef\Downloads\Windows7UpgradeAdvisorSetup.exe
2015-08-19 16:06 - 2015-09-03 14:37 - 00000000 ____D C:\Users\Josef\AppData\Local\CrashDumps
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2015-09-08 19:02 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\sru
2015-09-08 19:02 - 2015-05-10 19:17 - 00000000 ____D C:\FRST
2015-09-08 19:01 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\AppReadiness
2015-09-08 15:16 - 2014-12-30 18:07 - 00000275 _____ C:\WINDOWS\WindowsUpdate.log
2015-09-08 13:24 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\Microsoft.NET
2015-09-06 16:46 - 2015-07-10 10:28 - 00000000 ___HD C:\WINDOWS\ELAMBKUP
2015-09-05 17:54 - 2014-12-30 21:19 - 00000000 ___DO C:\Users\Josef\OneDrive
2015-09-03 20:58 - 2015-07-10 10:20 - 00000000 ____D C:\WINDOWS\CbsTemp
2015-09-02 19:46 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2015-09-02 16:40 - 2015-07-10 11:55 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2015-09-02 16:39 - 2015-07-10 08:59 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2015-09-01 16:59 - 2015-05-19 09:14 - 00000000 ____D C:\ProgramData\Norton
2015-09-01 16:37 - 2015-07-10 11:53 - 00020169 _____ C:\WINDOWS\setupact.log
2015-08-30 20:54 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\rescache
2015-08-29 05:08 - 2015-05-19 09:14 - 00001389 _____ C:\Users\Josef\Desktop\Instalační soubory Norton.lnk
2015-08-29 04:36 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\appraiser
2015-08-28 14:33 - 2015-07-10 08:59 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2015-08-28 14:28 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\AppCompat
2015-08-28 05:53 - 2015-07-10 10:28 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2015-08-28 05:50 - 2015-07-10 12:50 - 00000000 ____D C:\Program Files\Windows Journal
2015-08-28 05:50 - 2015-07-10 12:43 - 00000000 ____D C:\WINDOWS\OCR
2015-08-28 05:50 - 2015-07-10 12:42 - 00000000 ____D C:\WINDOWS\system32\winrm
2015-08-28 05:50 - 2015-07-10 12:42 - 00000000 ____D C:\WINDOWS\system32\WCN
2015-08-28 05:50 - 2015-07-10 12:42 - 00000000 ____D C:\WINDOWS\system32\slmgr
2015-08-28 05:50 - 2015-07-10 12:42 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2015-08-28 05:50 - 2015-07-10 10:28 - 00000000 ___SD C:\WINDOWS\system32\F12
2015-08-28 05:50 - 2015-07-10 10:28 - 00000000 ___SD C:\WINDOWS\system32\DiagSvcs
2015-08-28 05:50 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\Com
2015-08-28 05:50 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\IME
2015-08-28 05:50 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\Help
2015-08-28 05:50 - 2015-07-10 10:28 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2015-08-28 05:50 - 2015-07-10 10:28 - 00000000 ____D C:\Program Files\Windows Defender
2015-08-28 05:50 - 2015-07-10 10:28 - 00000000 ____D C:\Program Files\Common Files\System
2015-08-27 21:39 - 2015-05-19 09:14 - 00000000 ____D C:\Users\Public\Downloads\Norton
2015-08-27 21:27 - 2015-07-10 11:53 - 00267600 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2015-08-27 21:10 - 2015-07-10 10:28 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2015-08-27 21:10 - 2015-07-10 10:28 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2015-08-27 21:10 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-27 21:10 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2015-08-27 21:10 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2015-08-27 21:10 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\Provisioning
2015-08-27 20:24 - 2015-07-10 10:28 - 00000000 ___RD C:\WINDOWS\PrintDialog
2015-08-27 20:24 - 2015-07-10 10:28 - 00000000 ___RD C:\WINDOWS\MiracastView
2015-08-27 20:19 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\Registration
2015-08-27 20:18 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\LogFiles
2015-08-27 20:17 - 2015-07-10 10:28 - 00000000 __RHD C:\Users\Public\Libraries
2015-08-27 20:10 - 2015-07-10 10:29 - 00004362 _____ C:\WINDOWS\DtcInstall.log
2015-08-27 20:10 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\NDF
2015-08-27 20:10 - 2015-01-01 12:31 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice 4.3
2015-08-27 20:10 - 2013-08-22 08:21 - 00000000 ____D C:\Users\Default.migrated
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\zh-TW
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\zh-HK
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\zh-CN
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\uk-UA
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\tr-TR
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\th-TH
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\sv-SE
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\sr-Latn-RS
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\sl-SI
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\sk-SK
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\ru-RU
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\ro-RO
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\pt-PT
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\pt-BR
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\pl-PL
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\nl-NL
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\nb-NO
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\lv-LV
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\lt-LT
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\ko-KR
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\ja-JP
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\it-IT
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\hu-HU
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\hr-HR
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\he-IL
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\fr-FR
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\fi-FI
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\et-EE
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\en-GB
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\el-GR
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\de-DE
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\bg-BG
2015-08-27 20:08 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\ar-SA
2015-08-27 20:08 - 2014-03-18 09:45 - 00000000 ____D C:\WINDOWS\system32\ms-my
2015-08-27 20:08 - 2014-03-18 09:45 - 00000000 ____D C:\WINDOWS\system32\gl-es
2015-08-27 20:08 - 2014-03-18 09:45 - 00000000 ____D C:\WINDOWS\system32\eu-es
2015-08-27 20:08 - 2014-03-18 09:45 - 00000000 ____D C:\WINDOWS\system32\ca-es-valencia
2015-08-27 20:08 - 2014-03-18 09:45 - 00000000 ____D C:\WINDOWS\system32\ca-es
2015-08-27 20:08 - 2013-08-22 10:17 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2015-08-27 20:08 - 2013-08-22 10:17 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2015-08-27 20:08 - 2013-08-22 10:17 - 00000000 ____D C:\WINDOWS\MediaViewer
2015-08-27 20:07 - 2015-07-10 10:28 - 00000000 ___RD C:\Users\Public
2015-08-27 20:07 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\InputMethod
2015-08-27 20:07 - 2015-04-02 17:14 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Daum
2015-08-27 20:07 - 2014-09-25 01:04 - 00000000 ____D C:\Program Files\Microsoft Office
2015-08-27 20:07 - 2014-08-19 03:31 - 00000000 ____D C:\Program Files\REALTEK SD Wireless LAN Driver
2015-08-27 20:07 - 2014-08-03 13:51 - 00000000 ____D C:\Program Files\Kionix
2015-08-27 20:07 - 2014-08-03 13:51 - 00000000 ____D C:\Program Files\DIFX
2015-08-27 20:07 - 2014-08-03 13:50 - 00000000 ____D C:\Program Files\REALTEK
2015-08-27 20:07 - 2014-08-03 13:12 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2015-08-27 20:06 - 2015-07-10 10:28 - 00000000 ____D C:\WINDOWS\system32\Recovery
2015-08-27 20:06 - 2015-07-10 10:28 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2015-08-27 20:00 - 2015-07-10 08:59 - 00000000 __RHD C:\Users\Default
2015-08-27 19:23 - 2015-07-10 13:17 - 00000000 ___HD C:\$Windows.~BT
2015-08-26 19:30 - 2014-12-31 12:54 - 00047616 ___SH C:\Users\Josef\Desktop\Thumbs.db
2015-08-21 17:57 - 2015-08-02 11:42 - 00000000 ____D C:\Users\Josef\Downloads\zasilka-FRT8IK2FCVMY4Y6Z
2015-08-14 05:55 - 2014-08-04 15:44 - 00000000 ____D C:\WINDOWS\system32\MRT
2015-08-14 05:32 - 2014-08-04 15:43 - 129304528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
==================== Files in the root of some directories =======
2015-03-12 17:43 - 2015-03-12 17:43 - 0000017 _____ () C:\Users\Josef\AppData\Local\resmon.resmoncfg
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2015-08-27 20:00
==================== End of FRST.txt ============================
- Rudy
- Site Admin

- Příspěvky: 119674
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu
Zde je log, doufam, ze spravny.
# AdwCleaner v5.007 - Logfile created 09/09/2015 at 11:25:26
# Updated 08/09/2015 by Xplode
# Database : 2015-09-08.2 [Server]
# Operating system : Windows 10 Home (x86)
# Username : Josef - NEXTBOOK
# Running from : C:\Users\Josef\Downloads\adwcleaner_5.007.exe
# Option : Scan
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
***** [ Web browsers ] *****
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [544 bytes] ##########
# AdwCleaner v5.007 - Logfile created 09/09/2015 at 11:25:26
# Updated 08/09/2015 by Xplode
# Database : 2015-09-08.2 [Server]
# Operating system : Windows 10 Home (x86)
# Username : Josef - NEXTBOOK
# Running from : C:\Users\Josef\Downloads\adwcleaner_5.007.exe
# Option : Scan
# Support : http://toolslib.net/forum
***** [ Services ] *****
***** [ Folders ] *****
***** [ Files ] *****
***** [ Shortcuts ] *****
***** [ Scheduled tasks ] *****
***** [ Registry ] *****
***** [ Web browsers ] *****
########## EOF - C:\AdwCleaner\AdwCleaner[S1].txt - [544 bytes] ##########
- Rudy
- Site Admin

- Příspěvky: 119674
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu
Toto je OK. Otevřte poznámkový blok a zkopírujte do něj:
Uložte do C:\Users\Josef\Desktop\FRST-OlderVersion jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
HKU\S-1-5-21-3098118162-3684607140-3420283965-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com
SearchScopes: HKU\S-1-5-21-3098118162-3684607140-3420283965-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3098118162-3684607140-3420283965-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
BHO: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL No File
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu
Zde je log
Fix result of Farbar Recovery Scan Tool (x86) Version:07-09-2015
Ran by Josef (2015-09-09 20:32:55) Run:1
Running from C:\Users\Josef\Desktop\FRST-OlderVersion
Loaded Profiles: Josef (Available Profiles: Josef)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKU\S-1-5-21-3098118162-3684607140-3420283965-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com
SearchScopes: HKU\S-1-5-21-3098118162-3684607140-3420283965-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3098118162-3684607140-3420283965-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
BHO: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL No File
End
*****************
HKU\S-1-5-21-3098118162-3684607140-3420283965-1001\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKU\S-1-5-21-3098118162-3684607140-3420283965-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully.
"HKU\S-1-5-21-3098118162-3684607140-3420283965-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}" => key removed successfully.
"HKCR\CLSID\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}" => key removed successfully.
==== End of Fixlog 20:32:55 ====
Fix result of Farbar Recovery Scan Tool (x86) Version:07-09-2015
Ran by Josef (2015-09-09 20:32:55) Run:1
Running from C:\Users\Josef\Desktop\FRST-OlderVersion
Loaded Profiles: Josef (Available Profiles: Josef)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKU\S-1-5-21-3098118162-3684607140-3420283965-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.bing.com
SearchScopes: HKU\S-1-5-21-3098118162-3684607140-3420283965-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
SearchScopes: HKU\S-1-5-21-3098118162-3684607140-3420283965-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = hxxp://www.bing.com/search?PC=WCUG&FORM=WCUGDF&q={searchTerms}
BHO: Norton Vulnerability Protection -> {6D53EC84-6AAE-4787-AEEE-F4628F01010C} -> C:\Program Files\Norton 360\Engine\21.7.0.11\IPS\IPSBHO.DLL No File
End
*****************
HKU\S-1-5-21-3098118162-3684607140-3420283965-1001\Software\Microsoft\Internet Explorer\Main\\Default_Page_URL => value restored successfully
HKU\S-1-5-21-3098118162-3684607140-3420283965-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully.
"HKU\S-1-5-21-3098118162-3684607140-3420283965-1001\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}" => key removed successfully.
HKCR\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} => key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}" => key removed successfully.
"HKCR\CLSID\{6D53EC84-6AAE-4787-AEEE-F4628F01010C}" => key removed successfully.
==== End of Fixlog 20:32:55 ====
- Rudy
- Site Admin

- Příspěvky: 119674
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu
Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu
Dobrý den, bohužel dvojí zobrazení vložené karty zůstalo, v průzkumníku je soubor s příponou *.lock. Vkládám obsah souboru.
[Lockdata]
User=NEXTBOOK/Josef
Host=NEXTBOOK
Stamp=2308BE4E8B357706E0DC1DEEFD55C6C7
Time=Thu Sep 03 21:00:02 2015
IPCServer=true
V eventlogu jsem našel tuto hlášenou chybu, zde vkládám. Nejsem z toho dost nadšen, je tam také hlášení o nedokončené aktualizaci, atd.
Název chybující aplikace: OHub.exe, verze: 16.0.6203.2351, časové razítko: 0x55e86a6b
Název chybujícího modulu: ntdll.dll, verze: 10.0.10240.16430, časové razítko: 0x55c599e6
Kód výjimky: 0xc0000374
Posun chyby: 0x000e1267
ID chybujícího procesu: 0x1c60
Čas spuštění chybující aplikace: 0x01d0ebef81b9b294
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6203.23511.0_x86__8wekyb3d8bbwe\OHub.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: b2f32be8-8db8-49a5-a447-afb074c77505
Úplný název chybujícího balíčku: Microsoft.MicrosoftOfficeHub_17.6203.23511.0_x86__8wekyb3d8bbwe
ID aplikace související s chybujícím balíčkem: Microsoft.MicrosoftOfficeHub
[Lockdata]
User=NEXTBOOK/Josef
Host=NEXTBOOK
Stamp=2308BE4E8B357706E0DC1DEEFD55C6C7
Time=Thu Sep 03 21:00:02 2015
IPCServer=true
V eventlogu jsem našel tuto hlášenou chybu, zde vkládám. Nejsem z toho dost nadšen, je tam také hlášení o nedokončené aktualizaci, atd.
Název chybující aplikace: OHub.exe, verze: 16.0.6203.2351, časové razítko: 0x55e86a6b
Název chybujícího modulu: ntdll.dll, verze: 10.0.10240.16430, časové razítko: 0x55c599e6
Kód výjimky: 0xc0000374
Posun chyby: 0x000e1267
ID chybujícího procesu: 0x1c60
Čas spuštění chybující aplikace: 0x01d0ebef81b9b294
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_17.6203.23511.0_x86__8wekyb3d8bbwe\OHub.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID zprávy: b2f32be8-8db8-49a5-a447-afb074c77505
Úplný název chybujícího balíčku: Microsoft.MicrosoftOfficeHub_17.6203.23511.0_x86__8wekyb3d8bbwe
ID aplikace související s chybujícím balíčkem: Microsoft.MicrosoftOfficeHub
- Rudy
- Site Admin

- Příspěvky: 119674
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu
Zkuste obnovu systému k datu, kdy korektně fungoval.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu
Zdravím a přeji pěkný den. Bohužel to jsem chtěl udělat hned, jenže systém píše, že žádný bod obnovy není vytvořen, vidím jedině možnost se vrátit k W8.1.?
- Rudy
- Site Admin

- Příspěvky: 119674
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu
Zkuste ještě sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu
Zde je log, změnil se mi systémový čas sám od sebe. V event logu se objevil divný audit přihlášení přes učet mikrosoftu, nevidím důvod.
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 14.09.2015
Čas skenování: 13:55
Protokol: scan.txt
Správce: Ano
Verze: 2.1.8.1057
Databáze malwaru: v2015.09.14.05
Databáze rootkitů: v2015.08.16.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto
OS: Windows 10
CPU: x86
Souborový systém: NTFS
Uživatel: Josef
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 306114
Uplynulý čas: 7 hod, 11 min, 58 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 2
PUP.PSWTool.ProductKey, C:\Users\Josef\Downloads\produkey-x64.zip, , [725be847acdf3ff727e290df3dc356aa],
PUP.PSWTool.ProductKey, C:\Users\Josef\Downloads\produkey.zip, , [a5287ab5a2e91a1c99702e41c73955ab],
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
Malwarebytes Anti-Malware
www.malwarebytes.org
Datum skenování: 14.09.2015
Čas skenování: 13:55
Protokol: scan.txt
Správce: Ano
Verze: 2.1.8.1057
Databáze malwaru: v2015.09.14.05
Databáze rootkitů: v2015.08.16.01
Licence: Zkušební verze
Ochrana proti malwaru: Zapnuto
Ochrana proti škodlivým webovým stránkám: Zapnuto
Ochrana programu: Vypnuto
OS: Windows 10
CPU: x86
Souborový systém: NTFS
Uživatel: Josef
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 306114
Uplynulý čas: 7 hod, 11 min, 58 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 2
PUP.PSWTool.ProductKey, C:\Users\Josef\Downloads\produkey-x64.zip, , [725be847acdf3ff727e290df3dc356aa],
PUP.PSWTool.ProductKey, C:\Users\Josef\Downloads\produkey.zip, , [a5287ab5a2e91a1c99702e41c73955ab],
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
- Rudy
- Site Admin

- Příspěvky: 119674
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu
Nálezy smažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu
Zdravím a omlouvám se za prodlevu. Nálezy smazány, problémy přetrvávají. Prohlížel jsem prohlížeč událostí a našel tam tolik podivností, že nevím co s tím. Má cenu posílat ke shlédnutí protokol, měl byste chut a čas je zkoumat? Jak je poslat?
- Rudy
- Site Admin

- Příspěvky: 119674
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu
Spíše ještě dejte log ComboFix:
Dále doporučuji si všechno, kam máte přístup přes heslo, přeheslovat. Pokud se vám někdo do PC dostal a instaloval tam backdoor, CF to odhalí.Stahnete a ulozte nejlepe na plochu ComboFix: http://download.bleepingcomputer.com/sUBs/ComboFix.exe
pote spustte aplikaci pod uctem s administratorskym opravnenim
hned po startu se zobrazi obrazovka s licencnimi podminkami, pokracujte kliknutim na tlacitko Ano.
v klidu si postavte na kafe (cela akce trva cca. 5-10 minut, nekdy i dele - dle toho, o jak rychly stroj se
jedna a kolika soubory se skener bude muset prodirat), behem skenu se nepokousejte spoustet zadne jine
aplikace ani nic jineho
behem skenovani nepropadejte panice, vas stroj muze byt restartovan (predevsim pri prvni aplikaci skeneru)
upozorneni: pokud pouzivate antispyware s rezidentnim stitem, prepnete jeho rezidentni stit do Install Mode,
pripadne jej po dobu skenu uplne deaktivujte, protoze dochazi pri skenu a vymazu pripadneho malware k
nezadoucim kolizim s rezidentem antispyware.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu
Zdravím a omlouvám se za prodlevu. Nálezy smazány, problémy přetrvávají. Prohlížel jsem prohlížeč událostí a našel tam tolik podivností, že nevím co s tím. Má cenu posílat ke shlédnutí protokol, měl byste chut a čas je z koumat? Jak je poslat?
Bohužel mi to píše, že tato verze nepodporuje W10. Co dál?
Bohužel mi to píše, že tato verze nepodporuje W10. Co dál?

Přispějete na provoz fóra?