Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Preventívka

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
ferenc77
Návštěvník
Návštěvník
Příspěvky: 235
Registrován: 28 lis 2012 13:21

Preventívka

#1 Příspěvek od ferenc77 »

Logfile of random's system information tool 1.10 (written by random/random)
Run by Adam at 2016-03-22 20:36:55
Microsoft Windows 10 Home
System drive C: has 29 GB (56%) free of 51 GB
Total RAM: 1023 MB (45% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 20:37:09, on 22. 3. 2016
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.10586.0020)
Boot mode: Normal

Running processes:
C:\Program Files\ESET\ESET Smart Security\egui.exe
C:\WINDOWS\system32\taskhostw.exe
C:\WINDOWS\system32\sihost.exe
C:\WINDOWS\Explorer.EXE
C:\Windows\System32\RuntimeBroker.exe
C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe
C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe
C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\SearchFilterHost.exe
C:\Users\Adam\Desktop\RSIT.exe
C:\Program Files\trend micro\Adam.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.8.0_73\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre1.8.0_73\bin\jp2ssv.dll
O4 - HKLM\..\Run: [NvBackend] "C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe"
O4 - HKLM\..\Run: [ShadowPlay] C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap.dll,ShadowPlayOnSystemStart
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Adam\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\System32\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Global Startup: TP-LINK Wireless Configuration Utility.lnk = C:\Program Files\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\MSI\BToes Bluetooth Software\btsendto_ie_ctx.htm
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: http://help.eset.com (HKLM)
O15 - ESC Trusted Zone: http://help.eset.com (HKLM)
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\System32\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\ekrn.exe
O23 - Service: NVIDIA GeForce Experience Service (GfExperienceService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
O23 - Service: ggbugreport - Unknown owner - C:\Program Files\SearchesToYesbnd\bugreport.exe
O23 - Service: LiveUpdate (LiveUpdateSvc) - IObit - C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: NVIDIA Network Service (NvNetworkService) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
O23 - Service: NVIDIA Streamer Service (NvStreamSvc) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
O23 - Service: NVIDIA Display Driver Service (nvsvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvvsvc.exe
O23 - Service: NVIDIA Stereoscopic 3D Driver Service (Stereo Service) - NVIDIA Corporation - C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
O23 - Service: Winsere - Unknown owner - C:\Program Files\Winsere\Winsere\Winsere.exe

--
End of file - 4902 bytes

======Scheduled tasks folder======

C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe

=========Mozilla firefox=========

ProfilePath - C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1

prefs.js - "browser.search.useDBForOrder" - true
prefs.js - "browser.startup.homepage" - "www.google.sk"
prefs.js - "keyword.URL" - "http://www.yessearches.com/chrome.php?u ... toolbar&q="

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 21.0.0.182 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF32_21_0_0_182.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\system32\Adobe\Director\np32dsw_1222172.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/DTPlugin,version=11.73.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@java.com/JavaPlugin,version=11.73.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files\Java\jre1.8.0_73\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVision]
"Description"=NVIDIA stereo images plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@nvidia.com/3DVisionStreaming]
"Description"=NVIDIA 3D Vision Streaming plugin for Mozilla browsers
"Path"=C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.0]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.2.1]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\
DD1B66D4.xml

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_73\bin\ssv.dll [2016-03-16 460384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-03-16 172640]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"NvBackend"=C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2016-01-29 2585744]
"ShadowPlay"=C:\WINDOWS\system32\nvspcap.dll [2016-01-29 1278920]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2016-01-29 594992]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"=C:\Users\Adam\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2015-08-13 402632]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-13 1085656]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AirDroid 3]
C:\Program Files\AirDroid\AirDroid.exe /start []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner.exe [2016-02-12 6638296]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2016-01-29 2585744]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Plex Media Server]
C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2016-01-29 594992]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
C:\Users\Adam\AppData\Roaming\uTorrent\uTorrent.exe /MINIMIZED []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^TVMOBiLiArtworkManager.lnk]
C:\PROGRA~1\TVMOBiLi\bin\ITUNES~1.EXE /path:C:\ProgramData\TVMOBiLi\cache []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Universal Media Server.lnk]
C:\Program Files\Universal Media Server\UMS.exe [2016-03-12 603865]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Adam^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^ConnectAir.lnk]
C:\Program Files\ConnectAir\ConnectAir.exe -hide []

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
TP-LINK Wireless Configuration Utility.lnk - C:\Program Files\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableLUA"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=145

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.cvid"=iccvid.dll
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave5"=wdmaud.drv
"midi5"=wdmaud.drv
"mixer5"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave3"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-03-22 20:36:56 ----D---- C:\Program Files\trend micro
2016-03-22 20:36:55 ----D---- C:\rsit
2016-03-21 21:42:51 ----D---- C:\Program Files\Clementine
2016-03-21 21:17:08 ----D---- C:\Users\Adam\AppData\Roaming\AIMP
2016-03-21 21:16:51 ----D---- C:\Program Files\AIMP
2016-03-21 21:05:34 ----D---- C:\Users\Adam\AppData\Roaming\dlg
2016-03-21 21:04:54 ----D---- C:\Program Files\Winsere
2016-03-21 21:04:52 ----D---- C:\Program Files\WinTaske
2016-03-21 21:04:50 ----D---- C:\Program Files\SearchesToYesbnd
2016-03-21 21:01:31 ----D---- C:\Users\Adam\AppData\Roaming\COWON
2016-03-21 20:59:18 ----D---- C:\Program Files\JetAudio
2016-03-21 20:36:54 ----D---- C:\Users\Adam\AppData\Roaming\r2 Studios
2016-03-20 19:53:03 ----D---- C:\Program Files\Mozilla Firefox
2016-03-19 18:15:10 ----D---- C:\ProgramData\Apple
2016-03-19 18:13:35 ----D---- C:\Users\Adam\AppData\Roaming\5kplayer
2016-03-19 17:51:51 ----D---- C:\ProgramData\Package Cache
2016-03-19 11:55:59 ----A---- C:\WINDOWS\RtlRack.ini
2016-03-16 20:51:59 ----A---- C:\WINDOWS\system32\nvStreaming.exe
2016-03-16 20:50:32 ----A---- C:\WINDOWS\system32\OpenCL.dll
2016-03-16 20:48:26 ----A---- C:\WINDOWS\system32\nvhdap32.dll
2016-03-16 20:48:25 ----A---- C:\WINDOWS\system32\nvopencl.dll
2016-03-16 20:48:25 ----A---- C:\WINDOWS\system32\nvoglv32.dll
2016-03-16 20:48:24 ----A---- C:\WINDOWS\system32\NvIFR.dll
2016-03-16 20:48:24 ----A---- C:\WINDOWS\system32\NvFBC.dll
2016-03-16 20:48:23 ----A---- C:\WINDOWS\system32\nvdispgenco3234195.dll
2016-03-16 20:48:23 ----A---- C:\WINDOWS\system32\nvdispco3234195.dll
2016-03-16 20:48:22 ----A---- C:\WINDOWS\system32\nvd3dum.dll
2016-03-16 20:48:22 ----A---- C:\WINDOWS\system32\nvcuvid.dll
2016-03-16 20:48:22 ----A---- C:\WINDOWS\system32\nvcuda.dll
2016-03-16 20:48:21 ----A---- C:\WINDOWS\system32\nvcompiler.dll
2016-03-16 20:36:51 ----D---- C:\Program Files\Common Files\Java
2016-03-16 20:36:23 ----A---- C:\WINDOWS\system32\WindowsAccessBridge.dll
2016-03-16 20:28:12 ----D---- C:\ProgramData\Sun
2016-03-09 20:59:16 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 20:59:15 ----A---- C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 20:59:14 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-03-09 20:59:10 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-03-09 20:59:08 ----A---- C:\WINDOWS\system32\Unistore.dll
2016-03-09 20:59:06 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-03-09 20:59:03 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-03-09 20:58:58 ----A---- C:\WINDOWS\system32\wmp.dll
2016-03-09 20:58:57 ----A---- C:\WINDOWS\system32\WSService.dll
2016-03-09 20:58:56 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 20:58:56 ----A---- C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 20:58:55 ----A---- C:\WINDOWS\system32\windows.storage.dll
2016-03-09 20:58:54 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-03-09 20:58:50 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-03-09 20:58:49 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2016-03-09 20:58:49 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 20:58:46 ----A---- C:\WINDOWS\system32\KernelBase.dll
2016-03-09 20:58:46 ----A---- C:\WINDOWS\system32\diagtrack.dll
2016-03-09 20:58:45 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 20:58:44 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-03-09 20:58:43 ----A---- C:\WINDOWS\system32\mfsvr.dll
2016-03-09 20:58:43 ----A---- C:\WINDOWS\system32\dxgi.dll
2016-03-09 20:58:42 ----A---- C:\WINDOWS\system32\WWAHost.exe
2016-03-09 20:58:42 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 20:58:42 ----A---- C:\WINDOWS\system32\mfds.dll
2016-03-09 20:58:42 ----A---- C:\WINDOWS\system32\ContactApis.dll
2016-03-09 20:58:41 ----A---- C:\WINDOWS\system32\invagent.dll
2016-03-09 20:58:40 ----A---- C:\WINDOWS\system32\SRH.dll
2016-03-09 20:58:40 ----A---- C:\WINDOWS\system32\ole32.dll
2016-03-09 20:58:40 ----A---- C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 20:58:39 ----A---- C:\WINDOWS\system32\wer.dll
2016-03-09 20:58:39 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2016-03-09 20:58:39 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 20:58:38 ----A---- C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 20:58:38 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-03-09 20:58:38 ----A---- C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 20:58:37 ----A---- C:\WINDOWS\system32\sqmapi.dll
2016-03-09 20:58:37 ----A---- C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 20:58:36 ----A---- C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 20:58:35 ----A---- C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 20:58:35 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2016-03-09 20:58:35 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 20:58:34 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 20:58:34 ----A---- C:\WINDOWS\system32\ChatApis.dll
2016-03-09 20:58:34 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 20:58:33 ----A---- C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 20:58:33 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-03-09 20:58:33 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 20:58:32 ----A---- C:\WINDOWS\system32\EmailApis.dll
2016-03-09 20:58:32 ----A---- C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 20:58:32 ----A---- C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 20:58:31 ----A---- C:\WINDOWS\system32\cemapi.dll
2016-03-09 20:58:30 ----A---- C:\WINDOWS\system32\fwbase.dll
2016-03-09 20:58:29 ----A---- C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 20:58:29 ----A---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2016-03-09 20:58:26 ----A---- C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 20:58:26 ----A---- C:\WINDOWS\system32\olepro32.dll
2016-03-09 20:58:25 ----A---- C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 20:58:25 ----A---- C:\WINDOWS\system32\AuthHost.exe
2016-03-09 20:58:24 ----A---- C:\WINDOWS\system32\wermgr.exe
2016-03-09 20:58:24 ----A---- C:\WINDOWS\system32\VCardParser.dll
2016-03-09 20:58:23 ----A---- C:\WINDOWS\system32\devinv.dll
2016-03-09 20:58:23 ----A---- C:\WINDOWS\system32\asycfilt.dll
2016-03-09 20:58:22 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 20:58:22 ----A---- C:\WINDOWS\system32\aeinv.dll
2016-03-09 20:58:21 ----A---- C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 20:58:21 ----A---- C:\WINDOWS\system32\ExSMime.dll
2016-03-09 20:58:21 ----A---- C:\WINDOWS\system32\AppxSip.dll
2016-03-09 20:58:19 ----A---- C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 20:58:19 ----A---- C:\WINDOWS\system32\domgmt.dll
2016-03-09 20:58:18 ----A---- C:\WINDOWS\system32\wpninprc.dll
2016-03-09 20:58:18 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 20:58:18 ----A---- C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 20:58:18 ----A---- C:\WINDOWS\system32\dssvc.dll
2016-03-09 20:58:17 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-03-09 20:58:17 ----A---- C:\WINDOWS\system32\seclogon.dll
2016-03-09 20:58:17 ----A---- C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 20:58:17 ----A---- C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 20:58:16 ----A---- C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 20:58:16 ----A---- C:\WINDOWS\system32\profext.dll
2016-03-09 20:58:16 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 20:58:15 ----A---- C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 20:58:11 ----A---- C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 20:58:11 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-03-09 20:58:09 ----A---- C:\WINDOWS\system32\UserDataService.dll
2016-03-09 20:58:09 ----A---- C:\WINDOWS\system32\configurationclient.dll
2016-03-09 20:58:08 ----A---- C:\WINDOWS\system32\wfapigp.dll
2016-03-09 20:58:08 ----A---- C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 20:58:07 ----A---- C:\WINDOWS\system32\werui.dll
2016-03-09 20:58:06 ----A---- C:\WINDOWS\system32\vaultcli.dll
2016-03-09 20:58:06 ----A---- C:\WINDOWS\system32\scapi.dll
2016-03-09 20:58:05 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 20:57:58 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-03-09 20:57:57 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-03-03 21:08:45 ----D---- C:\Program Files\LG Electronics
2016-03-01 20:08:15 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-01 20:08:12 ----A---- C:\WINDOWS\system32\ntdll.dll
2016-03-01 20:08:07 ----A---- C:\WINDOWS\system32\jscript9.dll
2016-03-01 20:07:55 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-03-01 20:07:54 ----A---- C:\WINDOWS\system32\wininet.dll
2016-03-01 20:07:53 ----A---- C:\WINDOWS\system32\iertutil.dll
2016-03-01 20:07:50 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-03-01 20:07:49 ----A---- C:\WINDOWS\system32\InputService.dll
2016-03-01 20:07:49 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-03-01 20:07:48 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-03-01 20:07:34 ----A---- C:\WINDOWS\system32\shell32.dll
2016-03-01 20:07:32 ----A---- C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-01 20:07:32 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-01 20:07:31 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-01 20:07:31 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-03-01 20:07:26 ----A---- C:\WINDOWS\system32\d3d11.dll
2016-03-01 20:07:25 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-03-01 20:07:25 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-01 20:07:23 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-03-01 20:07:20 ----A---- C:\WINDOWS\system32\twinui.dll
2016-03-01 20:07:19 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-03-01 20:07:18 ----A---- C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-01 20:07:18 ----A---- C:\WINDOWS\system32\ipnathlp.dll
2016-03-01 20:07:17 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-01 20:07:16 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-03-01 20:07:16 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-03-01 20:07:16 ----A---- C:\WINDOWS\system32\AudioSes.dll
2016-03-01 20:07:16 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-03-01 20:07:15 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-01 20:07:15 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-01 20:07:14 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-01 20:07:11 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-01 20:07:10 ----A---- C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-01 20:07:10 ----A---- C:\WINDOWS\system32\mfcore.dll
2016-03-01 20:07:09 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-03-01 20:07:09 ----A---- C:\WINDOWS\system32\SMSRouter.dll
2016-03-01 20:07:08 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2016-03-01 20:07:08 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-01 20:07:06 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-03-01 20:07:06 ----A---- C:\WINDOWS\system32\DisplayManager.dll
2016-03-01 20:07:05 ----A---- C:\WINDOWS\system32\schedsvc.dll
2016-03-01 20:07:05 ----A---- C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-01 20:07:04 ----A---- C:\WINDOWS\system32\mstscax.dll
2016-03-01 20:07:02 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-01 20:07:02 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-01 20:07:02 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2016-03-01 20:07:02 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2016-03-01 20:07:01 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-03-01 20:07:00 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-01 20:06:59 ----A---- C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-01 20:06:59 ----A---- C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-01 20:06:59 ----A---- C:\WINDOWS\system32\MDEServer.exe
2016-03-01 20:06:59 ----A---- C:\WINDOWS\system32\MBMediaManager.dll
2016-03-01 20:06:58 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-01 20:06:58 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2016-03-01 20:06:57 ----A---- C:\WINDOWS\system32\XblGameSave.dll
2016-03-01 20:06:57 ----A---- C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-01 20:06:56 ----A---- C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-01 20:06:56 ----A---- C:\WINDOWS\system32\ngckeyenum.dll
2016-03-01 20:06:56 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-01 20:06:56 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-01 20:06:55 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-03-01 20:06:55 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-01 20:06:54 ----A---- C:\WINDOWS\system32\taskschd.dll
2016-03-01 20:06:54 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-03-01 20:06:54 ----A---- C:\WINDOWS\system32\flvprophandler.dll
2016-03-01 20:06:53 ----A---- C:\WINDOWS\system32\winload.exe
2016-03-01 20:06:53 ----A---- C:\WINDOWS\system32\thumbcache.dll
2016-03-01 20:06:52 ----A---- C:\WINDOWS\system32\winresume.exe
2016-03-01 20:06:52 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-01 20:06:51 ----A---- C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-01 20:06:50 ----A---- C:\WINDOWS\system32\SettingSync.dll
2016-03-01 20:06:50 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-03-01 20:06:50 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-03-01 20:06:49 ----A---- C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-01 20:06:49 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2016-03-01 20:06:49 ----A---- C:\WINDOWS\system32\msvproc.dll
2016-03-01 20:06:49 ----A---- C:\WINDOWS\system32\generaltel.dll
2016-03-01 20:06:48 ----A---- C:\WINDOWS\system32\usbmon.dll
2016-03-01 20:06:48 ----A---- C:\WINDOWS\system32\drivers\bridge.sys
2016-03-01 20:06:47 ----A---- C:\WINDOWS\system32\uDWM.dll
2016-03-01 20:06:47 ----A---- C:\WINDOWS\system32\netlogon.dll
2016-03-01 20:06:47 ----A---- C:\WINDOWS\system32\localspl.dll
2016-03-01 20:06:47 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2016-03-01 20:06:46 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-03-01 20:06:46 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-03-01 20:06:45 ----A---- C:\WINDOWS\system32\spoolsv.exe
2016-03-01 20:06:45 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2016-03-01 20:06:44 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-03-01 20:06:44 ----A---- C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-01 20:06:43 ----A---- C:\WINDOWS\system32\wlanapi.dll
2016-03-01 20:06:43 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-01 20:06:42 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-03-01 20:06:42 ----A---- C:\WINDOWS\system32\drivers\appid.sys
2016-03-01 20:06:41 ----A---- C:\WINDOWS\system32\wuuhext.dll
2016-03-01 20:06:41 ----A---- C:\WINDOWS\system32\wlansvc.dll
2016-03-01 20:06:41 ----A---- C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-01 20:06:40 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2016-03-01 20:06:38 ----A---- C:\WINDOWS\system32\halmacpi.dll
2016-03-01 20:06:38 ----A---- C:\WINDOWS\system32\hal.dll
2016-03-01 20:06:37 ----A---- C:\WINDOWS\system32\psmsrv.dll
2016-03-01 20:06:37 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-01 20:06:37 ----A---- C:\WINDOWS\system32\drivers\USBHUB3.SYS
2016-03-01 20:06:37 ----A---- C:\WINDOWS\system32\DeviceCensus.exe
2016-03-01 20:06:36 ----A---- C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-01 20:06:36 ----A---- C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-01 20:06:35 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-01 20:06:35 ----A---- C:\WINDOWS\system32\provpackageapidll.dll
2016-03-01 20:06:35 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-03-01 20:06:34 ----A---- C:\WINDOWS\system32\srpapi.dll
2016-03-01 20:06:33 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2016-03-01 20:06:33 ----A---- C:\WINDOWS\system32\drivers\mrxsmb10.sys
2016-03-01 20:06:32 ----A---- C:\WINDOWS\system32\wfdprov.dll
2016-03-01 20:06:31 ----A---- C:\WINDOWS\system32\wlansvcpal.dll
2016-03-01 20:06:31 ----A---- C:\WINDOWS\system32\wlansec.dll
2016-03-01 20:06:31 ----A---- C:\WINDOWS\system32\wlanmsm.dll
2016-03-01 20:06:31 ----A---- C:\WINDOWS\system32\irmon.dll
2016-03-01 20:06:30 ----A---- C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-01 20:06:30 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-01 20:06:30 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-03-01 20:06:30 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-03-01 20:06:29 ----A---- C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-01 20:06:29 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-01 19:53:08 ----A---- C:\WINDOWS\DIFxAPI.dll
2016-03-01 19:21:46 ----D---- C:\Users\Adam\AppData\Roaming\Easeware
2016-02-28 22:11:17 ----D---- C:\WINDOWS\system32\DAX2
2016-02-28 22:04:07 ----D---- C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0}
2016-02-28 22:04:05 ----D---- C:\Users\Adam\AppData\Roaming\Apple Computer
2016-02-28 22:01:39 ----D---- C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
2016-02-28 22:01:38 ----D---- C:\Users\Adam\AppData\Roaming\ProductData
2016-02-28 22:00:56 ----D---- C:\Program Files\Common Files\IObit
2016-02-28 21:58:56 ----D---- C:\ProgramData\ProductData
2016-02-28 21:58:50 ----D---- C:\Users\Adam\AppData\Roaming\IObit
2016-02-28 21:58:50 ----D---- C:\ProgramData\IObit
2016-02-28 21:58:50 ----A---- C:\WINDOWS\system32\drivers\HWiNFO32.SYS
2016-02-28 21:58:32 ----D---- C:\Program Files\IObit

======List of files/folders modified in the last 1 month======

2016-03-22 20:36:56 ----RD---- C:\Program Files
2016-03-22 20:30:12 ----D---- C:\WINDOWS\system32\config
2016-03-22 20:28:30 ----D---- C:\WINDOWS\Temp
2016-03-22 20:28:16 ----D---- C:\WINDOWS\Microsoft.NET
2016-03-22 20:28:03 ----D---- C:\WINDOWS\Prefetch
2016-03-22 20:20:53 ----D---- C:\WINDOWS\CbsTemp
2016-03-22 20:20:53 ----D---- C:\Windows
2016-03-22 20:20:52 ----D---- C:\WINDOWS\system32\catroot2
2016-03-22 20:20:44 ----D---- C:\WINDOWS\WinSxS
2016-03-22 20:14:52 ----D---- C:\ProgramData\NVIDIA
2016-03-22 20:14:06 ----D---- C:\WINDOWS\system32\sru
2016-03-22 20:05:08 ----D---- C:\Program Files\Mozilla Maintenance Service
2016-03-21 22:02:51 ----HD---- C:\ProgramData
2016-03-21 22:00:58 ----D---- C:\Program Files\Winamp
2016-03-21 22:00:36 ----D---- C:\Program Files\Common Files\PX Storage Engine
2016-03-21 21:12:29 ----HD---- C:\Program Files\InstallShield Installation Information
2016-03-21 21:12:24 ----D---- C:\Program Files\Common Files
2016-03-21 21:06:21 ----HD---- C:\WINDOWS\system32\GroupPolicy
2016-03-21 21:04:55 ----D---- C:\WINDOWS\system32\Tasks
2016-03-21 20:58:58 ----SHD---- C:\System Volume Information
2016-03-21 16:18:32 ----D---- C:\ProgramData\UMS
2016-03-20 17:10:51 ----D---- C:\WINDOWS\SoftwareDistribution
2016-03-20 17:09:53 ----D---- C:\WINDOWS\INF
2016-03-20 17:08:38 ----D---- C:\WINDOWS\System32
2016-03-20 17:08:32 ----D---- C:\WINDOWS\Minidump
2016-03-20 17:08:27 ----SHD---- C:\Config.Msi
2016-03-19 21:40:48 ----D---- C:\WINDOWS\Logs
2016-03-19 18:48:45 ----SHD---- C:\WINDOWS\Installer
2016-03-19 18:36:30 ----D---- C:\Users\Adam\AppData\Roaming\vlc
2016-03-19 17:30:32 ----D---- C:\WINDOWS\AppReadiness
2016-03-19 17:30:29 ----HD---- C:\Program Files\WindowsApps
2016-03-19 17:26:18 ----D---- C:\Program Files\Common Files\microsoft shared
2016-03-19 17:24:31 ----HD---- C:\Program Files\Temp
2016-03-19 17:24:22 ----D---- C:\WINDOWS\system32\drivers
2016-03-19 17:24:19 ----D---- C:\WINDOWS\system32\DriverStore
2016-03-16 20:49:55 ----D---- C:\Program Files\NVIDIA Corporation
2016-03-16 20:36:45 ----D---- C:\ProgramData\Oracle
2016-03-16 20:34:46 ----D---- C:\Program Files\Java
2016-03-13 21:25:17 ----D---- C:\Users\Adam\AppData\Roaming\LG Electronics
2016-03-13 13:53:08 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-10 20:56:27 ----RD---- C:\WINDOWS\assembly
2016-03-10 19:33:55 ----D---- C:\WINDOWS\system32\migration
2016-03-10 19:33:49 ----D---- C:\WINDOWS\apppatch
2016-03-10 19:33:49 ----D---- C:\Program Files\Windows Portable Devices
2016-03-10 19:33:49 ----D---- C:\Program Files\Windows Multimedia Platform
2016-03-10 19:33:49 ----D---- C:\Program Files\Windows Media Player
2016-03-10 19:33:48 ----D---- C:\Program Files\Internet Explorer
2016-03-09 20:17:12 ----A---- C:\debug.ini
2016-03-08 08:12:26 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2016-03-02 18:07:10 ----D---- C:\WINDOWS\rescache
2016-03-01 22:06:07 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-03-01 22:06:07 ----D---- C:\WINDOWS\system32\wbem
2016-03-01 22:06:07 ----D---- C:\WINDOWS\system32\SystemResetPlatform
2016-03-01 22:06:06 ----D---- C:\WINDOWS\system32\Dism
2016-03-01 22:06:06 ----D---- C:\WINDOWS\system32\Boot
2016-03-01 22:06:06 ----D---- C:\WINDOWS\system32\appraiser
2016-03-01 22:06:01 ----RSD---- C:\WINDOWS\Media
2016-03-01 22:06:01 ----RD---- C:\WINDOWS\PurchaseDialog
2016-03-01 22:06:00 ----RSD---- C:\WINDOWS\Fonts
2016-03-01 22:06:00 ----D---- C:\WINDOWS\bcastdvr
2016-03-01 22:06:00 ----D---- C:\Program Files\Windows Journal
2016-03-01 20:27:49 ----D---- C:\WINDOWS\Tasks
2016-03-01 19:43:07 ----D---- C:\WINDOWS\debug
2016-03-01 19:42:20 ----D---- C:\WINDOWS\system32\CatRoot
2016-02-28 22:18:09 ----DC---- C:\WINDOWS\Panther
2016-02-25 23:00:08 ----D---- C:\Program Files\Universal Media Server
2016-02-23 17:16:46 ----D---- C:\ProgramData\LG Software

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 edevmon;edevmon; C:\WINDOWS\system32\DRIVERS\edevmon.sys [2015-07-14 199608]
R0 epfwwfp;epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [2016-03-16 71488]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2016-03-16 206312]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2015-12-19 146024]
R1 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2016-03-16 152728]
R1 EpfwLWF;@oem26.inf,%EpfwLWF_Desc%;ESET Personal Firewall; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [2016-03-16 44608]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 76288]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 7680]
R1 HWiNFO32;HWiNFO32/64 Kernel Driver; \??\C:\WINDOWS\system32\drivers\HWiNFO32.SYS [2016-02-28 23840]
R2 ekbdflt;ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [2015-12-19 111040]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 36864]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 62464]
R3 athur;@oem2.inf,%ATHR.Service.DispName%;Atheros AR9271 Wireless Network Adapter Service; C:\WINDOWS\System32\drivers\athur.sys [2013-06-28 1570304]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-11-19 130560]
R3 NVHDA;@oem31.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda32v.sys [2015-11-19 171312]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2016-01-29 10718264]
R3 NvStreamKms;NvStreamKms; \??\C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [2016-01-29 18576]
R3 nvvad_WaveExtensible;@oem7.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad32v.sys [2015-08-18 32912]
R3 rt640x86;@rt640x86.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x86.sys [2015-10-30 494080]
S0 eelam;eelam; C:\WINDOWS\system32\DRIVERS\eelam.sys [2015-09-23 14464]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 88928]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 83288]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 51040]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 51552]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 27992]
S3 AndnetBus;@oem28.inf,%LGSI.Service.Desc%;LGE Mobile USB Composite Device; C:\WINDOWS\System32\drivers\lgandnetbus.sys [2015-01-21 15744]
S3 AndNetDiag;@oem19.inf,%Lgsi.Service.Name%;LGE AndroidNet USB Serial Port; C:\WINDOWS\system32\DRIVERS\lgandnetdiag.sys [2015-01-26 24576]
S3 ANDNetModem;@oem23.inf,%LGSI.Service.Name%;LGE AndroidNet USB Modem; C:\WINDOWS\system32\DRIVERS\lgandnetmodem.sys [2015-01-26 29696]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 8192]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 26624]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-11-22 96768]
S3 DFX11_1;DFX Audio Enhancer 11.1; C:\WINDOWS\system32\drivers\dfx11_1.sys [2012-12-13 24424]
S3 DrvAgent32;DrvAgent32; \??\C:\WINDOWS\system32\Drivers\DrvAgent32.sys [2015-11-25 31832]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 17408]
S3 GPIO;@iaiogpio.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpio.sys [2015-10-30 22016]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 38240]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 66048]
S3 iaioi2c;@iaioi2c.inf,%Driver_Service.Desc%;Intel(R) Atom(TM) Processor I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2c.sys [2015-10-30 61936]
S3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHDA.sys []
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 23040]
S3 jrvad_service;JRiver Media Center 20 (service); C:\WINDOWS\system32\drivers\JRiverWDMDriver.sys [2015-01-26 30168]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-13 82128]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [2016-03-16 1983264]
R2 GfExperienceService;NVIDIA GeForce Experience Service; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [2016-01-29 915600]
R2 LiveUpdateSvc;LiveUpdate; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2016-01-14 2945312]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-11-19 25088]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [2016-01-29 1706128]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2016-01-29 19775632]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2016-01-29 678968]
R2 OneSyncSvc_5115f;Sync Host_5115f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2016-01-29 426040]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 ggbugreport;ggbugreport; C:\Program Files\SearchesToYesbnd\bugreport.exe [2016-03-15 1592888]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_1b2fb;Sync Host_1b2fb; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_25d00;Sync Host_25d00; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_278e13;Sync Host_278e13; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_2835e;Sync Host_2835e; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_285af;Sync Host_285af; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_28af7c;Sync Host_28af7c; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_2cb53;Sync Host_2cb53; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_32967;Sync Host_32967; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_38ce5;Sync Host_38ce5; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_3f5229;Sync Host_3f5229; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_425d54;Sync Host_425d54; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_61e86;Sync Host_61e86; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_65b22b;Sync Host_65b22b; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_8fbe52;Sync Host_8fbe52; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_99fe4;Sync Host_99fe4; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_a0512;Sync Host_a0512; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\system32\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-10 269504]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_1b2fb;MessagingService_1b2fb; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_25d00;MessagingService_25d00; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_278e13;MessagingService_278e13; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_2835e;MessagingService_2835e; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_285af;MessagingService_285af; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_28af7c;MessagingService_28af7c; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_32967;MessagingService_32967; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_38ce5;MessagingService_38ce5; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_425d54;MessagingService_425d54; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_5115f;MessagingService_5115f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_61e86;MessagingService_61e86; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_8fbe52;MessagingService_8fbe52; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_99fe4;MessagingService_99fe4; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_a0512;MessagingService_a0512; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files\Mozilla Maintenance Service\maintenanceservice.exe [2016-03-20 146888]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_1b2fb;Kontaktné údaje_1b2fb; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_25d00;Kontaktné údaje_25d00; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_278e13;Kontaktné údaje_278e13; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_2835e;Kontaktné údaje_2835e; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_285af;Kontaktné údaje_285af; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_28af7c;Kontaktné údaje_28af7c; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_32967;Kontaktné údaje_32967; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_38ce5;Kontaktné údaje_38ce5; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_425d54;Kontaktné údaje_425d54; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_5115f;Kontaktné údaje_5115f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_61e86;Kontaktné údaje_61e86; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_8fbe52;Kontaktné údaje_8fbe52; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_99fe4;Kontaktné údaje_99fe4; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_a0512;Kontaktné údaje_a0512; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 900096]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2015-10-30 256512]
S4 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2015-10-30 45752]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S4 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 26112]
S4 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]

-----------------EOF-----------------

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Preventívka

#2 Příspěvek od altrok »

Krasny den Vam preju :bye:


:arrow: V ramci cisteni Vam budou vyprazdneny docasne adresare (vcetne Kose).


:arrow: Ulozte na plochu AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/ (nebo http://www.bleepingcomputer.com/download/adwcleaner/ )
  • ukoncete vsechny programy
  • kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
  • kliknete na Scan, pote na Cleaning
  • po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\AdwCleaner[Cx].txt), jehoz obsah zkopirujte do pristi odpovedi
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

ferenc77
Návštěvník
Návštěvník
Příspěvky: 235
Registrován: 28 lis 2012 13:21

Re: Preventívka

#3 Příspěvek od ferenc77 »

# AdwCleaner v5.105 - Logfile created 23/03/2016 at 19:58:20
# Updated 21/03/2016 by Xplode
# Database : 2016-03-23.1 [Server]
# Operating system : Windows 10 Home (x86)
# Username : Adam - ADAM-PC
# Running from : C:\Users\Adam\Desktop\AdwCleaner.exe
# Option : Clean
# Support : http://toolslib.net/forum

***** [ Services ] *****

[-] Service Deleted : ggbugreport
[-] Service Deleted : Winsere

***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files\SearchesToYesbnd
[-] Folder Deleted : C:\Program Files\Winsere
[-] Folder Deleted : C:\Program Files\WinTaske
[-] Folder Deleted : C:\Users\Adam\AppData\Local\DriverToolkit
[-] Folder Deleted : C:\Users\Adam\AppData\Local\eSupport.com
[-] Folder Deleted : C:\Users\Adam\AppData\Roaming\Easeware
[-] Folder Deleted : C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\YourGSearchFinder_br
[#] Folder Deleted : C:\WINDOWS\system32\Tasks\WinTaske

***** [ Files ] *****


***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****

[-] Task Deleted : WinTaske

***** [ Registry ] *****

[-] Key Deleted : HKCU\Software\DriverToolkit
[-] Key Deleted : HKCU\Software\eSupport.com
[-] Key Deleted : HKLM\SOFTWARE\yessearchesSoftware

***** [ Web browsers ] *****

[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.newtab.url", "hxxp://www.yessearches.com/?ts=AHEpC3ItA3MrAk. ... ode=ffseng");
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.search.defaultenginename", "yessearches");
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.search.hiddenOneOffs", "yessearches");
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.search.searchengine.hp", "hxxp://www.yessearches.com/?ts=AHEpC3ItA3MrAk. ... =ffsengext");
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.search.searchengine.sp", "hxxp://www.yessearches.com/chrome.php?mode=ffs ... v=20160315");
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.search.searchengine.url", "hxxp://www.yessearches.com/chrome.php?mode=ffs ... v=20160315");
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("browser.search.selectedEngine", "yessearches");
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.BUTTON_STRUCTURE", "[{\"b\":224520315,\"c\":\"mindspark.magnify\",\"p\":\"L.0\"},{\"b\":224520316,\"c\":\"mindspark.entersearchterms\",\"p\":\"L.0.0[...]
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.browser.version.last", "45.0");
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.firstKnownVersion", "7.38.8.45986");
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.homepage", "/index.jhtml?n=782a35dc");
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.hp.enabled", false);
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.initialized", true);
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.installation.installDate", "2016032220");
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.installation.success", true);
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.lastActivePing", "1458675247301");
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.lastKnownVersion", "7.38.8.45986");
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.lssState", "{\"previousLocales\":[\"sk\",\"cs\",\"en-US\",\"en\"],\"supportedLocales\":[\"de\",\"es\",\"pt\",\"ja\",\"en\"],\"defaultLocale\":\"en\"[...]
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.defaultSearch", false);
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.homePageEnabled", false);
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.keywordEnabled", true);
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.options.tabEnabled", false);
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.language", "en");
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.productDeliveryOption.type", "Toolbar");
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.shownUninstall", true);
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.startupTasks", "{\"clearPrefs\":[\"extensions.toolbar.mindspark._brMembers_.shownUninstall\"],\"undoDisableHPGuard\":[\"true\"]}");
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.successUrl", "hxxp://www.yessearches.com/chrome.php?uid=4BED ... ttoolbar&q[...]
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.toolbarCollapsed", false);
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark._brMembers_.uninstallTasks", "{\"prefBranchesToDelete\":[\"extensions.toolbar.mindspark._brMembers_.\"],\"filesToDelete\":[\"C:\\\\Users\\\\Adam\\\\AppData\\\\R[...]
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark.hp.enabled", false);
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("extensions.toolbar.mindspark.lastInstalled", "yourGSearchfinder@GSearch.com");
[-] [C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\prefs.js] [Preference] Deleted : user_pref("keyword.URL", "hxxp://www.yessearches.com/chrome.php?uid=4BED ... toolbar&q=");

*************************

:: "Tracing" keys removed
:: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [8499 bytes] - [23/03/2016 19:58:20]
C:\AdwCleaner\AdwCleaner[S1].txt - [8459 bytes] - [23/03/2016 19:56:51]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [8645 bytes] ##########

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Preventívka

#4 Příspěvek od altrok »

:arrow: Dejte logy FRST.txt a Addition.txt - http://forum.viry.cz/viewtopic.php?f=30&t=133101
Pozn. pri druhem a dalsim spusteni FRST je pro vytvoreni logu Addition.txt nutne tuto volbu explicitne zatrhnout pred zacatkem skenu.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

ferenc77
Návštěvník
Návštěvník
Příspěvky: 235
Registrován: 28 lis 2012 13:21

Re: Preventívka

#5 Příspěvek od ferenc77 »

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:05-03-2016 01
Ran by Adam (administrator) on ADAM-PC (27-03-2016 20:44:15)
Running from C:\Users\Adam\Desktop
Loaded Profiles: Adam (Available Profiles: Adam & DefaultAppPool)
Platform: Microsoft Windows 10 Home Version 1511 (X86) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: FF)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ESET) C:\Program Files\ESET\ESET Smart Security\ekrn.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(IObit) C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2585744 2016-01-29] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => C:\WINDOWS\system32\rundll32.exe C:\WINDOWS\system32\nvspcap.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [594992 2016-01-29] (Oracle Corporation)
HKU\S-1-5-21-3409903947-2537725115-4003705135-1000\...\MountPoints2: {d18cac8a-bb6b-11e5-9400-bc5ff4731384} - "F:\LG_PC_Programs.exe"
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK Wireless Configuration Utility.lnk [2015-12-09]
ShortcutTarget: TP-LINK Wireless Configuration Utility.lnk -> C:\Program Files\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe ()

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.16.1
Tcpip\..\Interfaces\{9faf7755-338d-4d05-bd3d-89ae930c6797}: [DhcpNameServer] 192.168.16.1
Tcpip\..\Interfaces\{e2bde535-7fba-4946-a97d-1fc50b9be709}: [DhcpNameServer] 192.168.1.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.google.com
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_73\bin\ssv.dll [2016-03-16] (Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_73\bin\jp2ssv.dll [2016-03-16] (Oracle Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1
FF DefaultSearchEngine: yessearches
FF Homepage: http://www.google.sk
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF32_21_0_0_197.dll [2016-03-23] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\WINDOWS\system32\Adobe\Director\np32dsw_1222172.dll [2015-11-19] (Adobe Systems, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.73.2 -> C:\Program Files\Java\jre1.8.0_73\bin\dtplugin\npDeployJava1.dll [2016-03-16] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.73.2 -> C:\Program Files\Java\jre1.8.0_73\bin\plugin2\npjp2.dll [2016-03-16] (Oracle Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2016-01-29] (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2016-01-29] (NVIDIA Corporation)
FF Plugin: @videolan.org/vlc,version=2.1.5 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.0 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: @videolan.org/vlc,version=2.2.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2015-04-13] (VideoLAN)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Users\Adam\AppData\Roaming\mozilla\plugins\npPxPlay.dll [2015-12-08] ( )
FF SearchPlugin: C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\DD1B66D4.xml [2016-03-21]
FF Extension: Forecastfox (fix version) - C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\qln0hwp1.default-1457634195668\Extensions\forecastfox@s3_fix_version.xpi [2016-03-19]
FF Extension: YouTube™ Flash® Player - C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\qln0hwp1.default-1457634195668\Extensions\jid1-HAV2inXAnQPIeA@jetpack.xpi [2016-03-10]
FF Extension: Adblock Plus - C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\qln0hwp1.default-1457634195668\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-03-10]
FF Extension: YouTube™ Flash® Player - C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\Extensions\jid1-HAV2inXAnQPIeA@jetpack.xpi [2016-03-10]
FF Extension: Adblock Plus - C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-03-10]
FF Extension: Default - C:\Program Files\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi [2016-03-20] [not signed]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ekrn; C:\Program Files\ESET\ESET Smart Security\ekrn.exe [1983264 2016-03-16] (ESET)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [915600 2016-01-29] (NVIDIA Corporation)
R2 LiveUpdateSvc; C:\Program Files\IObit\LiveUpdate\LiveUpdate.exe [2945312 2016-01-14] (IObit)
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1706128 2016-01-29] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [19775632 2016-01-29] (NVIDIA Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [280376 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23256 2015-10-30] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AndnetBus; C:\WINDOWS\System32\drivers\lgandnetbus.sys [15744 2015-01-21] (LG Electronics Inc.)
S3 AndNetDiag; C:\WINDOWS\system32\DRIVERS\lgandnetdiag.sys [24576 2015-01-26] (LG Electronics Inc.)
S3 ANDNetModem; C:\WINDOWS\system32\DRIVERS\lgandnetmodem.sys [29696 2015-01-26] (LG Electronics Inc.)
R3 athur; C:\WINDOWS\System32\drivers\athur.sys [1570304 2013-06-28] (Atheros Communications, Inc.)
S3 DFX11_1; C:\WINDOWS\system32\drivers\dfx11_1.sys [24424 2012-12-13] (Windows (R) Win 7 DDK provider)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [206312 2016-03-16] (ESET)
R0 edevmon; C:\WINDOWS\System32\DRIVERS\edevmon.sys [199608 2015-07-14] (ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [14464 2015-09-23] (ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [146024 2015-12-19] (ESET)
R2 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [111040 2015-12-19] (ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [152728 2016-03-16] (ESET)
R1 EpfwLWF; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [44608 2016-03-16] (ESET)
R0 epfwwfp; C:\WINDOWS\System32\DRIVERS\epfwwfp.sys [71488 2016-03-16] (ESET)
R1 HWiNFO32; C:\WINDOWS\system32\drivers\HWiNFO32.SYS [23840 2016-02-28] (REALiX(tm))
S3 jrvad_service; C:\WINDOWS\System32\drivers\JRiverWDMDriver.sys [30168 2015-01-26] (JRiver, Inc.)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [18576 2016-01-29] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad32v.sys [32912 2015-08-18] (NVIDIA Corporation)
R3 rt640x86; C:\WINDOWS\System32\drivers\rt640x86.sys [494080 2015-10-30] (Realtek )
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [37400 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [246104 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [98648 2015-10-30] (Microsoft Corporation)
S3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [163328 2015-10-30] (Microsoft Corporation)
S3 IntcAzAudAddService; \SystemRoot\system32\drivers\RTKVHDA.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-03-27 20:44 - 2016-03-27 20:45 - 00010297 _____ C:\Users\Adam\Desktop\FRST.txt
2016-03-27 20:43 - 2016-03-27 20:44 - 00000000 ____D C:\FRST
2016-03-27 20:42 - 2016-03-27 20:42 - 01725440 _____ (Farbar) C:\Users\Adam\Desktop\FRST.exe
2016-03-23 20:55 - 2016-03-23 20:58 - 00000000 ____D C:\AdwCleaner
2016-03-23 00:23 - 2016-03-23 00:23 - 00164148 _____ C:\WINDOWS\Minidump\032216-22812-01.dmp
2016-03-22 21:36 - 2016-03-22 21:37 - 00000000 ____D C:\rsit
2016-03-22 21:36 - 2016-03-22 21:37 - 00000000 ____D C:\Program Files\trend micro
2016-03-21 23:19 - 2016-03-21 23:19 - 00001671 _____ C:\Users\Adam\Desktop\AIMP.lnk
2016-03-21 22:44 - 2016-03-21 22:44 - 00000000 ____D C:\Users\Adam\.config
2016-03-21 22:42 - 2016-03-21 23:13 - 00000000 ____D C:\Program Files\Clementine
2016-03-21 22:17 - 2016-03-23 22:35 - 00000000 ____D C:\Users\Adam\AppData\Roaming\AIMP
2016-03-21 22:16 - 2016-03-21 22:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AIMP
2016-03-21 22:16 - 2016-03-21 22:16 - 00000000 ____D C:\Program Files\AIMP
2016-03-21 22:06 - 2016-03-21 23:02 - 00000290 __RSH C:\ProgramData\ntuser.pol
2016-03-21 22:05 - 2016-03-21 22:05 - 00000000 ____D C:\Users\Adam\AppData\Roaming\dlg
2016-03-21 22:04 - 2016-03-21 22:04 - 00000000 ____D C:\Users\Public\Documents\dmp
2016-03-21 22:04 - 2016-03-21 22:04 - 00000000 ____D C:\Users\Adam\AppData\Local\F727A298-4DB4-456A-AC54-A93EA5F8554D
2016-03-21 22:04 - 2016-03-21 22:04 - 00000000 ____D C:\Users\Adam\AppData\Local\3810282D-6C19-47B0-8283-5C6C29A7E108
2016-03-21 22:01 - 2016-03-21 22:12 - 00000000 ____D C:\Users\Adam\AppData\Roaming\COWON
2016-03-21 21:59 - 2016-03-21 22:12 - 00000000 ____D C:\Program Files\JetAudio
2016-03-21 21:36 - 2016-03-21 22:12 - 00000000 ____D C:\Users\Adam\AppData\Roaming\r2 Studios
2016-03-20 20:53 - 2016-03-21 20:02 - 00000000 ____D C:\Program Files\Mozilla Firefox
2016-03-20 18:08 - 2016-03-23 00:22 - 169948872 _____ C:\WINDOWS\MEMORY.DMP
2016-03-20 18:08 - 2016-03-20 18:09 - 00160732 _____ C:\WINDOWS\Minidump\032016-33640-01.dmp
2016-03-19 19:15 - 2016-03-19 19:15 - 00000000 ____D C:\ProgramData\Apple
2016-03-19 19:13 - 2016-03-19 19:46 - 00000000 ____D C:\Users\Adam\AppData\Roaming\5kplayer
2016-03-19 18:51 - 2016-03-19 18:51 - 00000000 ____D C:\ProgramData\Package Cache
2016-03-19 12:55 - 2016-03-19 12:55 - 00000169 _____ C:\WINDOWS\RtlRack.ini
2016-03-16 21:51 - 2016-01-29 10:45 - 00614848 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvStreaming.exe
2016-03-16 21:50 - 2016-01-29 14:04 - 00067520 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2016-03-16 21:48 - 2016-01-29 14:04 - 24207296 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvoglv32.dll
2016-03-16 21:48 - 2016-01-29 14:04 - 15302712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcompiler.dll
2016-03-16 21:48 - 2016-01-29 14:04 - 14497760 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvd3dum.dll
2016-03-16 21:48 - 2016-01-29 14:04 - 11272240 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvopencl.dll
2016-03-16 21:48 - 2016-01-29 14:04 - 11209192 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2016-03-16 21:48 - 2016-01-29 14:04 - 03994560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2016-03-16 21:48 - 2016-01-29 14:04 - 01060400 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispco3234195.dll
2016-03-16 21:48 - 2016-01-29 14:04 - 00917048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR.dll
2016-03-16 21:48 - 2016-01-29 14:04 - 00912248 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdispgenco3234195.dll
2016-03-16 21:48 - 2016-01-29 14:04 - 00878648 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC.dll
2016-03-16 21:48 - 2015-11-19 23:41 - 00037168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvhdap32.dll
2016-03-16 21:36 - 2016-03-16 21:36 - 00095840 _____ (Oracle Corporation) C:\WINDOWS\system32\WindowsAccessBridge.dll
2016-03-16 21:36 - 2016-03-16 21:36 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-03-16 21:36 - 2016-03-16 21:36 - 00000000 ____D C:\Program Files\Common Files\Java
2016-03-16 21:28 - 2016-03-16 21:28 - 00000000 ____D C:\ProgramData\Sun
2016-03-09 21:59 - 2016-02-24 11:15 - 05797216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-03-09 21:59 - 2016-02-24 08:07 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2016-03-09 21:59 - 2016-02-24 07:46 - 02977280 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-03-09 21:59 - 2016-02-24 07:37 - 01895936 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-03-09 21:59 - 2016-02-24 07:34 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-09 21:59 - 2016-02-24 07:18 - 18677760 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-03-09 21:59 - 2016-02-24 07:12 - 19339776 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-03-09 21:58 - 2016-03-01 07:22 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-03-09 21:58 - 2016-02-24 11:15 - 01561392 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-03-09 21:58 - 2016-02-24 11:11 - 00599904 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-03-09 21:58 - 2016-02-24 11:10 - 00959840 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-03-09 21:58 - 2016-02-24 11:03 - 00433504 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-03-09 21:58 - 2016-02-24 10:57 - 01174368 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-03-09 21:58 - 2016-02-24 10:50 - 02885680 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-03-09 21:58 - 2016-02-24 10:19 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2016-03-09 21:58 - 2016-02-24 10:15 - 00107872 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2016-03-09 21:58 - 2016-02-24 10:11 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-03-09 21:58 - 2016-02-24 10:11 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-03-09 21:58 - 2016-02-24 10:06 - 05242496 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-03-09 21:58 - 2016-02-24 10:03 - 00510880 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-03-09 21:58 - 2016-02-24 09:59 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-03-09 21:58 - 2016-02-24 09:59 - 00118304 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
2016-03-09 21:58 - 2016-02-24 09:38 - 00187744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-09 21:58 - 2016-02-24 09:35 - 01714016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-03-09 21:58 - 2016-02-24 09:35 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-03-09 21:58 - 2016-02-24 09:35 - 00523752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-03-09 21:58 - 2016-02-24 09:35 - 00482656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-03-09 21:58 - 2016-02-24 09:35 - 00335712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-03-09 21:58 - 2016-02-24 09:35 - 00220064 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2016-03-09 21:58 - 2016-02-24 09:33 - 00538736 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-03-09 21:58 - 2016-02-24 09:33 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2016-03-09 21:58 - 2016-02-24 09:03 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\olepro32.dll
2016-03-09 21:58 - 2016-02-24 08:55 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-09 21:58 - 2016-02-24 08:54 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-09 21:58 - 2016-02-24 08:53 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-09 21:58 - 2016-02-24 08:53 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-09 21:58 - 2016-02-24 08:52 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-09 21:58 - 2016-02-24 08:46 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2016-03-09 21:58 - 2016-02-24 08:44 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll
2016-03-09 21:58 - 2016-02-24 08:40 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2016-03-09 21:58 - 2016-02-24 08:40 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-09 21:58 - 2016-02-24 08:39 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-09 21:58 - 2016-02-24 08:38 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll
2016-03-09 21:58 - 2016-02-24 08:38 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-03-09 21:58 - 2016-02-24 08:37 - 00116224 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2016-03-09 21:58 - 2016-02-24 08:37 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-03-09 21:58 - 2016-02-24 08:37 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2016-03-09 21:58 - 2016-02-24 08:34 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-03-09 21:58 - 2016-02-24 08:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll
2016-03-09 21:58 - 2016-02-24 08:32 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-09 21:58 - 2016-02-24 08:31 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll
2016-03-09 21:58 - 2016-02-24 08:31 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-09 21:58 - 2016-02-24 08:29 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2016-03-09 21:58 - 2016-02-24 08:28 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-09 21:58 - 2016-02-24 08:28 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2016-03-09 21:58 - 2016-02-24 08:27 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-09 21:58 - 2016-02-24 08:25 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-03-09 21:58 - 2016-02-24 08:23 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-09 21:58 - 2016-02-24 08:23 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-03-09 21:58 - 2016-02-24 08:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2016-03-09 21:58 - 2016-02-24 08:21 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-09 21:58 - 2016-02-24 08:21 - 00266240 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2016-03-09 21:58 - 2016-02-24 08:21 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-03-09 21:58 - 2016-02-24 08:21 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-09 21:58 - 2016-02-24 08:20 - 00444416 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-03-09 21:58 - 2016-02-24 08:18 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-03-09 21:58 - 2016-02-24 08:18 - 00221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2016-03-09 21:58 - 2016-02-24 08:18 - 00202752 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2016-03-09 21:58 - 2016-02-24 08:18 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-09 21:58 - 2016-02-24 08:17 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2016-03-09 21:58 - 2016-02-24 08:16 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2016-03-09 21:58 - 2016-02-24 08:13 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-03-09 21:58 - 2016-02-24 08:09 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-03-09 21:58 - 2016-02-24 08:09 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-03-09 21:58 - 2016-02-24 08:09 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-03-09 21:58 - 2016-02-24 08:09 - 00525824 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-03-09 21:58 - 2016-02-24 08:09 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-03-09 21:58 - 2016-02-24 08:07 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-03-09 21:58 - 2016-02-24 08:07 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-09 21:58 - 2016-02-24 08:06 - 01154048 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-03-09 21:58 - 2016-02-24 08:04 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-03-09 21:58 - 2016-02-24 08:03 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-03-09 21:58 - 2016-02-24 07:59 - 00674304 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-03-09 21:58 - 2016-02-24 07:55 - 00356352 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2016-03-09 21:58 - 2016-02-24 07:51 - 01184256 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-03-09 21:58 - 2016-02-24 07:38 - 01524224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-09 21:58 - 2016-02-24 07:37 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-03-09 21:58 - 2016-02-24 07:34 - 01887744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-09 21:58 - 2016-02-24 07:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2016-03-09 21:58 - 2016-02-24 07:12 - 05321728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-09 21:58 - 2016-02-24 07:05 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-03-09 21:58 - 2016-02-24 06:59 - 05661696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-03-09 21:57 - 2016-02-24 08:51 - 00037376 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-03-09 21:57 - 2016-02-24 08:47 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-03-06 19:36 - 2016-03-06 23:55 - 3533810847 _____ C:\Users\Adam\Desktop\Most špiónov.mkv
2016-03-03 22:12 - 2016-03-03 22:12 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LG PC Suite
2016-03-03 22:08 - 2016-03-03 22:10 - 00000000 ____D C:\Program Files\LG Electronics
2016-03-01 21:08 - 2016-02-23 12:33 - 01541792 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-03-01 21:08 - 2016-02-23 11:38 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-01 21:08 - 2016-02-23 08:36 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-03-01 21:07 - 2016-02-23 12:34 - 01859960 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-01 21:07 - 2016-02-23 12:32 - 01820512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-03-01 21:07 - 2016-02-23 11:39 - 00297072 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-03-01 21:07 - 2016-02-23 11:38 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-03-01 21:07 - 2016-02-23 11:38 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-01 21:07 - 2016-02-23 11:38 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-01 21:07 - 2016-02-23 11:38 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-01 21:07 - 2016-02-23 11:38 - 00450912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-01 21:07 - 2016-02-23 11:37 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-01 21:07 - 2016-02-23 11:37 - 00405568 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-03-01 21:07 - 2016-02-23 11:37 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-01 21:07 - 2016-02-23 11:30 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-03-01 21:07 - 2016-02-23 11:27 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-03-01 21:07 - 2016-02-23 10:56 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-03-01 21:07 - 2016-02-23 10:06 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-03-01 21:07 - 2016-02-23 10:06 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-03-01 21:07 - 2016-02-23 09:51 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2016-03-01 21:07 - 2016-02-23 09:49 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-03-01 21:07 - 2016-02-23 09:48 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-03-01 21:07 - 2016-02-23 09:43 - 00411136 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-01 21:07 - 2016-02-23 09:42 - 00238080 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-01 21:07 - 2016-02-23 09:36 - 00484864 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-03-01 21:07 - 2016-02-23 09:35 - 00538112 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-03-01 21:07 - 2016-02-23 09:30 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-01 21:07 - 2016-02-23 09:28 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-03-01 21:07 - 2016-02-23 09:28 - 00810496 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-03-01 21:07 - 2016-02-23 09:25 - 00951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-03-01 21:07 - 2016-02-23 09:24 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-01 21:07 - 2016-02-23 09:24 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-03-01 21:07 - 2016-02-23 09:23 - 01028608 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-01 21:07 - 2016-02-23 09:22 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-03-01 21:07 - 2016-02-23 09:21 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-03-01 21:07 - 2016-02-23 09:21 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-01 21:07 - 2016-02-23 09:16 - 00396288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-03-01 21:07 - 2016-02-23 08:59 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-03-01 21:07 - 2016-02-23 08:56 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-01 21:07 - 2016-02-23 08:55 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-03-01 21:07 - 2016-02-23 08:53 - 01799168 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-01 21:07 - 2016-02-23 08:50 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-03-01 21:07 - 2016-02-23 08:36 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-03-01 21:07 - 2016-02-23 08:33 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-03-01 21:07 - 2016-02-23 08:32 - 02793472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-03-01 21:07 - 2016-02-23 08:30 - 02061312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-01 21:07 - 2016-02-23 08:28 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-03-01 21:07 - 2016-02-09 05:23 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-03-01 21:07 - 2016-02-09 05:07 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-03-01 21:06 - 2016-02-23 12:37 - 00875992 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-03-01 21:06 - 2016-02-23 12:37 - 00771120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-03-01 21:06 - 2016-02-23 12:34 - 01051584 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-03-01 21:06 - 2016-02-23 12:34 - 00926568 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-03-01 21:06 - 2016-02-23 12:33 - 00354656 _____ (Microsoft Corporation) C:\WINDOWS\system32\halmacpi.dll
2016-03-01 21:06 - 2016-02-23 12:33 - 00354656 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2016-03-01 21:06 - 2016-02-23 12:32 - 00462688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2016-03-01 21:06 - 2016-02-23 12:22 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2016-03-01 21:06 - 2016-02-23 12:16 - 00856928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-03-01 21:06 - 2016-02-23 11:40 - 00306840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-03-01 21:06 - 2016-02-23 11:39 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-01 21:06 - 2016-02-23 11:38 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2016-03-01 21:06 - 2016-02-23 11:23 - 00124256 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2016-03-01 21:06 - 2016-02-23 10:51 - 00381280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-03-01 21:06 - 2016-02-23 10:43 - 00639168 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-03-01 21:06 - 2016-02-23 10:38 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-01 21:06 - 2016-02-23 10:36 - 00429920 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-03-01 21:06 - 2016-02-23 10:25 - 00722432 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll
2016-03-01 21:06 - 2016-02-23 10:25 - 00201216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-03-01 21:06 - 2016-02-23 10:22 - 00021504 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-03-01 21:06 - 2016-02-23 10:21 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-03-01 21:06 - 2016-02-23 10:18 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2016-03-01 21:06 - 2016-02-23 10:16 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-01 21:06 - 2016-02-23 10:14 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-01 21:06 - 2016-02-23 10:14 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-03-01 21:06 - 2016-02-23 10:13 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll
2016-03-01 21:06 - 2016-02-23 10:08 - 00080896 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2016-03-01 21:06 - 2016-02-23 10:07 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-01 21:06 - 2016-02-23 10:07 - 00039424 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2016-03-01 21:06 - 2016-02-23 10:05 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-03-01 21:06 - 2016-02-23 10:05 - 00020992 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll
2016-03-01 21:06 - 2016-02-23 10:03 - 00094208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2016-03-01 21:06 - 2016-02-23 10:01 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2016-03-01 21:06 - 2016-02-23 10:01 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2016-03-01 21:06 - 2016-02-23 10:01 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-01 21:06 - 2016-02-23 09:59 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-03-01 21:06 - 2016-02-23 09:57 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-03-01 21:06 - 2016-02-23 09:57 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-01 21:06 - 2016-02-23 09:50 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-01 21:06 - 2016-02-23 09:50 - 00143360 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2016-03-01 21:06 - 2016-02-23 09:49 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-01 21:06 - 2016-02-23 09:48 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-01 21:06 - 2016-02-23 09:47 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-01 21:06 - 2016-02-23 09:46 - 00278016 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-01 21:06 - 2016-02-23 09:45 - 00433664 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-03-01 21:06 - 2016-02-23 09:45 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-03-01 21:06 - 2016-02-23 09:44 - 00395264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-03-01 21:06 - 2016-02-23 09:41 - 00247296 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2016-03-01 21:06 - 2016-02-23 09:40 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-03-01 21:06 - 2016-02-23 09:38 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-01 21:06 - 2016-02-23 09:38 - 00337920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-03-01 21:06 - 2016-02-23 09:36 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-03-01 21:06 - 2016-02-23 09:36 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-01 21:06 - 2016-02-23 09:36 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-01 21:06 - 2016-02-23 09:35 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-03-01 21:06 - 2016-02-23 09:34 - 00447488 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-01 21:06 - 2016-02-23 09:31 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-01 21:06 - 2016-02-23 09:29 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-03-01 21:06 - 2016-02-23 09:29 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-03-01 21:06 - 2016-02-23 09:28 - 00739328 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-03-01 21:06 - 2016-02-23 09:28 - 00689152 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-03-01 21:06 - 2016-02-23 09:24 - 00291328 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-03-01 21:06 - 2016-02-23 09:24 - 00233984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-03-01 21:06 - 2016-02-23 09:23 - 00509952 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-03-01 21:06 - 2016-02-23 09:20 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-01 21:06 - 2016-02-23 09:20 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-01 21:06 - 2016-02-23 09:14 - 00694272 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-03-01 21:06 - 2016-02-23 09:05 - 00922624 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-03-01 21:06 - 2016-02-23 09:05 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-03-01 21:06 - 2016-02-23 08:58 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-03-01 21:06 - 2016-02-23 08:58 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-03-01 21:06 - 2016-02-23 08:51 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-01 21:06 - 2016-02-23 08:47 - 01075200 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-01 21:06 - 2016-02-23 08:36 - 01931776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-03-01 21:06 - 2016-02-09 06:32 - 00228704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-03-01 21:06 - 2016-02-09 06:14 - 00153952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-03-01 21:06 - 2016-02-09 05:18 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2016-03-01 21:06 - 2016-02-09 05:09 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-01 20:53 - 2016-03-01 20:53 - 00319456 _____ (Microsoft Corporation) C:\WINDOWS\DIFxAPI.dll
2016-02-28 23:11 - 2016-03-01 21:28 - 00000000 ____D C:\WINDOWS\system32\DAX2
2016-02-28 23:11 - 2016-02-28 23:11 - 00000000 ____H C:\ProgramData\DP45977C.lfl
2016-02-28 23:04 - 2016-02-28 23:04 - 00000000 ____D C:\Users\Adam\AppData\Roaming\Apple Computer
2016-02-28 23:04 - 2016-02-28 23:04 - 00000000 ____D C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0}
2016-02-28 23:01 - 2016-02-28 23:05 - 00000000 ____D C:\Users\Adam\AppData\Roaming\ProductData
2016-02-28 23:01 - 2016-02-28 23:01 - 00000000 ____D C:\WINDOWS\Tasks\ImCleanDisabled
2016-02-28 23:01 - 2016-02-28 23:01 - 00000000 ____D C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
2016-02-28 23:00 - 2016-02-28 23:03 - 00000000 ____D C:\Program Files\Common Files\IObit
2016-02-28 22:58 - 2016-03-22 21:06 - 00000000 ____D C:\ProgramData\ProductData
2016-02-28 22:58 - 2016-03-01 20:43 - 00000000 ____D C:\Program Files\IObit
2016-02-28 22:58 - 2016-02-28 23:06 - 00000000 ____D C:\Users\Adam\AppData\Roaming\IObit
2016-02-28 22:58 - 2016-02-28 23:04 - 00000000 ____D C:\Users\Adam\AppData\LocalLow\IObit
2016-02-28 22:58 - 2016-02-28 23:03 - 00000000 ____D C:\ProgramData\IObit
2016-02-28 22:58 - 2016-02-28 22:58 - 00023840 _____ (REALiX(tm)) C:\WINDOWS\system32\Drivers\HWiNFO32.SYS

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-03-27 20:21 - 2015-12-08 18:35 - 00001892 _____ C:\Users\Public\Desktop\Mozilla Firefox.lnk
2016-03-27 20:21 - 2014-12-01 23:06 - 00001028 _____ C:\Users\Public\Desktop\VLC media player.lnk
2016-03-27 19:58 - 2014-11-30 20:00 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-03-26 15:14 - 2015-02-26 12:02 - 00000000 ____D C:\ProgramData\UMS
2016-03-24 18:44 - 2015-11-20 01:10 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-03-24 18:44 - 2015-11-20 00:44 - 00000000 ____D C:\ProgramData\NVIDIA
2016-03-24 00:33 - 2015-10-30 07:13 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-03-23 00:40 - 2015-11-20 00:50 - 00000000 ____D C:\Users\Adam
2016-03-23 00:23 - 2016-02-14 22:53 - 00000000 ____D C:\WINDOWS\Minidump
2016-03-22 21:45 - 2015-10-30 07:39 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-03-22 21:05 - 2015-12-08 18:35 - 00000000 ____D C:\Program Files\Mozilla Maintenance Service
2016-03-21 23:02 - 2015-12-08 18:35 - 00001904 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2016-03-21 23:00 - 2014-11-30 18:34 - 00000000 ____D C:\Program Files\Common Files\PX Storage Engine
2016-03-21 23:00 - 2014-11-30 18:33 - 00000000 ____D C:\Program Files\Winamp
2016-03-21 22:12 - 2015-04-28 12:00 - 00000000 ___HD C:\Program Files\InstallShield Installation Information
2016-03-21 22:06 - 2009-07-14 04:37 - 00000000 ___HD C:\WINDOWS\system32\GroupPolicy
2016-03-20 18:09 - 2015-10-30 07:47 - 00000000 ____D C:\WINDOWS\INF
2016-03-19 19:36 - 2014-12-05 22:57 - 00000000 ____D C:\Users\Adam\AppData\Roaming\vlc
2016-03-19 18:30 - 2015-10-30 07:48 - 00000000 ___HD C:\Program Files\WindowsApps
2016-03-19 18:30 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-03-19 18:30 - 2015-08-13 15:06 - 00000000 ____D C:\Users\Adam\AppData\Local\Packages
2016-03-19 18:26 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-03-19 18:24 - 2014-11-30 17:00 - 00000000 ___HD C:\Program Files\Temp
2016-03-16 21:52 - 2015-08-26 14:41 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2016-03-16 21:49 - 2015-11-20 00:43 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2016-03-16 21:36 - 2014-11-30 18:40 - 00000000 ____D C:\ProgramData\Oracle
2016-03-16 21:34 - 2014-11-30 18:40 - 00000000 ____D C:\Program Files\Java
2016-03-16 21:00 - 2015-07-14 15:29 - 00071488 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwwfp.sys
2016-03-16 21:00 - 2015-03-10 17:24 - 00206312 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys
2016-03-16 21:00 - 2015-03-10 17:24 - 00152728 _____ (ESET) C:\WINDOWS\system32\Drivers\epfw.sys
2016-03-16 21:00 - 2015-03-10 17:24 - 00044608 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwlwf.sys
2016-03-13 22:25 - 2016-01-19 00:24 - 00000000 ____D C:\Users\Adam\AppData\Roaming\LG Electronics
2016-03-13 14:53 - 2015-11-20 00:48 - 00986768 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-12 18:17 - 2015-02-26 12:02 - 00001959 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Universal Media Server.lnk
2016-03-10 20:36 - 2015-11-20 00:41 - 00193104 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-03-10 20:33 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-03-10 20:33 - 2015-10-30 07:48 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-03-09 21:17 - 2016-01-23 22:06 - 00000030 _____ C:\debug.ini
2016-03-09 20:19 - 2015-09-18 18:17 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-03-08 09:12 - 2015-10-30 07:49 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2016-03-08 09:12 - 2015-10-30 07:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2016-03-03 22:12 - 2016-01-19 00:22 - 00000000 ____D C:\Users\Adam\AppData\Local\LG Electronics
2016-03-02 19:07 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\rescache
2016-03-02 18:50 - 2015-08-13 15:06 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-03-01 23:06 - 2015-10-30 16:58 - 00000000 ____D C:\Program Files\Windows Journal
2016-03-01 23:06 - 2015-10-30 07:48 - 00000000 __RSD C:\WINDOWS\Media
2016-03-01 23:06 - 2015-10-30 07:48 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-03-01 23:06 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-03-01 23:06 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-03-01 23:06 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-03-01 23:06 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-03-01 23:06 - 2015-10-30 07:13 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-02-28 23:18 - 2015-11-20 00:40 - 00000000 ___DC C:\WINDOWS\Panther
2016-02-26 00:00 - 2015-10-02 14:07 - 00000000 ____D C:\Program Files\Universal Media Server

==================== Files in the root of some directories =======

2015-09-28 21:25 - 2015-09-28 21:30 - 0005632 _____ () C:\Users\Adam\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2016-02-28 23:11 - 2016-02-28 23:11 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
2015-06-18 15:17 - 2015-06-18 15:17 - 0000100 _____ () C:\ProgramData\Microsoft.SqlServer.Compact.400.32.bc
2015-09-28 21:31 - 2015-09-28 22:09 - 0001540 _____ () C:\ProgramData\__FileUploader.log

Some files in TEMP:
====================
C:\Users\Adam\AppData\Local\Temp\oalinst.exe
C:\Users\Adam\AppData\Local\Temp\sqlite3.dll
C:\Users\Adam\AppData\Local\Temp\vcredist_x86.exe


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-03-26 15:24

==================== End of FRST.txt ============================
Přílohy
Addition.rar
(7.93 KiB) Staženo 46 x

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Preventívka

#6 Příspěvek od altrok »

  • Do Poznamkoveho bloku (Start -> spustit -> notepad) zkopirujte obsah bileho pole
  • ulozte na plochu jako fixlist (Typ souboru: Textovy dokument)
  • znovu spustte FRST a kliknete na Fix
  • po restartu bude na plose ulozen fixlog, jehoz obsah vlozte do pristi odpovedi

    Kód: Vybrat vše

    Start
    CreateRestorePoint:
    CloseProcesses:
    Folder: C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
    Folder: C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0}
    HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2585744 2016-01-29] (NVIDIA Corporation)
    HKU\S-1-5-21-3409903947-2537725115-4003705135-1000\...\MountPoints2: {d18cac8a-bb6b-11e5-9400-bc5ff4731384} - "F:\LG_PC_Programs.exe" 
    FF DefaultSearchEngine: yessearches
    FF SearchPlugin: C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\DD1B66D4.xml [2016-03-21]
    2016-03-22 21:36 - 2016-03-22 21:37 - 00000000 ____D C:\rsit
    2016-03-22 21:36 - 2016-03-22 21:37 - 00000000 ____D C:\Program Files\trend micro
    Task: {0701E2B7-71DB-4AF2-A75E-86BC4D43B485} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
    Task: {14E3DF6B-1C82-4C76-ADB7-2C9F6DA1C5D4} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
    Task: {15F81952-00C0-4259-BF1F-07E339EE2A72} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
    Task: {184A4656-2D65-44E5-8655-BFAFEB12CBBA} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
    Task: {35EC43FF-6459-4B09-8ACB-0E2B7BE5C070} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
    Task: {3E1764C9-A583-4DC6-93A0-903FC3F0EB10} - System32\Tasks\{F9103839-0420-4FD9-A678-532B012F9FEF} => pcalua.exe -a "C:\Program Files\SimpleFiles\Uninstall.exe"
    Task: {49B067E8-26A1-4AEC-B9F7-CB856D1A9292} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
    Task: {67998E00-F2AA-43E1-81FB-7140B5BD5B23} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
    Task: {ABD77015-73EE-4578-9912-4B9E9FF0A79E} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
    Task: {BD07AF13-D52C-4ED1-AE87-75379991585A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
    Task: {D7168B37-8944-4887-91A2-BC687DA7A2B8} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
    Task: {E5776D4C-A8D0-4C80-B45E-B1AC922240B2} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
    Task: {EE28B868-0512-477B-B258-4F244111E595} - System32\Tasks\{C8E899BC-92E2-4EB4-9B96-7111594ADA27} => pcalua.exe -a "C:\Users\Adam\Desktop\Need for Speed Underground 2\eauninstall.exe" -d "C:\Users\Adam\Desktop\Need for Speed Underground 2"
    CMD: dir "C:\PROGRA~1"
    CMD: dir "C:\PROGRA~2"
    CMD: dir "C:\PROGRA~3"
    CMD: dir "%localappdata%"
    CMD: dir "%appdata%"
    EmptyTemp:
    End
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

ferenc77
Návštěvník
Návštěvník
Příspěvky: 235
Registrován: 28 lis 2012 13:21

Re: Preventívka

#7 Příspěvek od ferenc77 »

Fix result of Farbar Recovery Scan Tool (x86) Version:05-03-2016 01
Ran by Adam (2016-03-29 16:34:36) Run:1
Running from C:\Users\Adam\Desktop
Loaded Profiles: Adam (Available Profiles: Adam & DefaultAppPool)
Boot Mode: Normal

==============================================

fixlist content:
*****************
Start
CreateRestorePoint:
CloseProcesses:
Folder: C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
Folder: C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0}
HKLM\...\Run: [NvBackend] => C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2585744 2016-01-29] (NVIDIA Corporation)
HKU\S-1-5-21-3409903947-2537725115-4003705135-1000\...\MountPoints2: {d18cac8a-bb6b-11e5-9400-bc5ff4731384} - "F:\LG_PC_Programs.exe"
FF DefaultSearchEngine: yessearches
FF SearchPlugin: C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\DD1B66D4.xml [2016-03-21]
2016-03-22 21:36 - 2016-03-22 21:37 - 00000000 ____D C:\rsit
2016-03-22 21:36 - 2016-03-22 21:37 - 00000000 ____D C:\Program Files\trend micro
Task: {0701E2B7-71DB-4AF2-A75E-86BC4D43B485} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {14E3DF6B-1C82-4C76-ADB7-2C9F6DA1C5D4} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {15F81952-00C0-4259-BF1F-07E339EE2A72} - \Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd -> No File <==== ATTENTION
Task: {184A4656-2D65-44E5-8655-BFAFEB12CBBA} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {35EC43FF-6459-4B09-8ACB-0E2B7BE5C070} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {3E1764C9-A583-4DC6-93A0-903FC3F0EB10} - System32\Tasks\{F9103839-0420-4FD9-A678-532B012F9FEF} => pcalua.exe -a "C:\Program Files\SimpleFiles\Uninstall.exe"
Task: {49B067E8-26A1-4AEC-B9F7-CB856D1A9292} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {67998E00-F2AA-43E1-81FB-7140B5BD5B23} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {ABD77015-73EE-4578-9912-4B9E9FF0A79E} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {BD07AF13-D52C-4ED1-AE87-75379991585A} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {D7168B37-8944-4887-91A2-BC687DA7A2B8} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {E5776D4C-A8D0-4C80-B45E-B1AC922240B2} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {EE28B868-0512-477B-B258-4F244111E595} - System32\Tasks\{C8E899BC-92E2-4EB4-9B96-7111594ADA27} => pcalua.exe -a "C:\Users\Adam\Desktop\Need for Speed Underground 2\eauninstall.exe" -d "C:\Users\Adam\Desktop\Need for Speed Underground 2"
CMD: dir "C:\PROGRA~1"
CMD: dir "C:\PROGRA~2"
CMD: dir "C:\PROGRA~3"
CMD: dir "%localappdata%"
CMD: dir "%appdata%"
EmptyTemp:
End
*****************

Restore point was successfully created.
Processes closed successfully.

========================= Folder: C:\ProgramData\{FD6F83C0-EC70-4581-8361-C70CD1AA4B98} ========================


====== End of Folder: ======


========================= Folder: C:\ProgramData\{BAF091CA-86C4-4627-ADA1-897E2621C1B0} ========================


====== End of Folder: ======

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\NvBackend => value removed successfully.
"HKU\S-1-5-21-3409903947-2537725115-4003705135-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{d18cac8a-bb6b-11e5-9400-bc5ff4731384}" => key removed successfully.
HKCR\CLSID\{d18cac8a-bb6b-11e5-9400-bc5ff4731384} => key not found.
FF DefaultSearchEngine: yessearches => not found
C:\Users\Adam\AppData\Roaming\Mozilla\Firefox\Profiles\41A66E7E5EE1\searchplugins\DD1B66D4.xml => moved successfully
C:\rsit => moved successfully
C:\Program Files\trend micro => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0701E2B7-71DB-4AF2-A75E-86BC4D43B485}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0701E2B7-71DB-4AF2-A75E-86BC4D43B485}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\launchtrayprocess" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{14E3DF6B-1C82-4C76-ADB7-2C9F6DA1C5D4}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{14E3DF6B-1C82-4C76-ADB7-2C9F6DA1C5D4}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxcontent" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{15F81952-00C0-4259-BF1F-07E339EE2A72}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{15F81952-00C0-4259-BF1F-07E339EE2A72}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Telemetry-4xd" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{184A4656-2D65-44E5-8655-BFAFEB12CBBA}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{184A4656-2D65-44E5-8655-BFAFEB12CBBA}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfig" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{35EC43FF-6459-4B09-8ACB-0E2B7BE5C070}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{35EC43FF-6459-4B09-8ACB-0E2B7BE5C070}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{3E1764C9-A583-4DC6-93A0-903FC3F0EB10}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3E1764C9-A583-4DC6-93A0-903FC3F0EB10}" => key removed successfully.
C:\Windows\System32\Tasks\{F9103839-0420-4FD9-A678-532B012F9FEF} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{F9103839-0420-4FD9-A678-532B012F9FEF}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{49B067E8-26A1-4AEC-B9F7-CB856D1A9292}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{49B067E8-26A1-4AEC-B9F7-CB856D1A9292}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{67998E00-F2AA-43E1-81FB-7140B5BD5B23}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{67998E00-F2AA-43E1-81FB-7140B5BD5B23}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Logon-5d" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{ABD77015-73EE-4578-9912-4B9E9FF0A79E}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ABD77015-73EE-4578-9912-4B9E9FF0A79E}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BD07AF13-D52C-4ED1-AE87-75379991585A}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BD07AF13-D52C-4ED1-AE87-75379991585A}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D7168B37-8944-4887-91A2-BC687DA7A2B8}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D7168B37-8944-4887-91A2-BC687DA7A2B8}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\Time-5d" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E5776D4C-A8D0-4C80-B45E-B1AC922240B2}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E5776D4C-A8D0-4C80-B45E-B1AC922240B2}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{EE28B868-0512-477B-B258-4F244111E595}" => key removed successfully.
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{EE28B868-0512-477B-B258-4F244111E595}" => key removed successfully.
C:\Windows\System32\Tasks\{C8E899BC-92E2-4EB4-9B96-7111594ADA27} => moved successfully
"HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\{C8E899BC-92E2-4EB4-9B96-7111594ADA27}" => key removed successfully.

========= dir "C:\PROGRA~1" =========

Volume in drive C has no label.
Volume Serial Number is 90DF-A189

Directory of C:\PROGRA~1

29. 03. 2016 16:35 <DIR> .
29. 03. 2016 16:35 <DIR> ..
18. 09. 2015 18:16 <DIR> Adobe
21. 03. 2016 22:16 <DIR> AIMP
28. 03. 2016 17:45 <DIR> AviSynth
25. 11. 2015 22:58 <DIR> CCleaner
21. 03. 2016 23:13 <DIR> Clementine
21. 03. 2016 22:12 <DIR> Common Files
08. 02. 2016 22:31 <DIR> Defraggler
10. 04. 2015 17:15 <DIR> ESET
01. 10. 2015 17:06 <DIR> Google
10. 03. 2016 20:33 <DIR> Internet Explorer
01. 03. 2016 20:43 <DIR> IObit
16. 03. 2016 21:34 <DIR> Java
21. 03. 2016 22:12 <DIR> JetAudio
03. 03. 2016 22:10 <DIR> LG Electronics
21. 03. 2016 20:02 <DIR> Mozilla Firefox
22. 03. 2016 21:05 <DIR> Mozilla Maintenance Service
20. 11. 2015 00:27 <DIR> MSBuild
16. 03. 2016 21:49 <DIR> NVIDIA Corporation
20. 11. 2015 00:27 <DIR> Reference Assemblies
28. 04. 2015 12:02 <DIR> TP-LINK
26. 02. 2016 00:00 <DIR> Universal Media Server
01. 12. 2014 23:04 <DIR> VideoLAN
21. 03. 2016 23:00 <DIR> Winamp
30. 10. 2015 16:56 <DIR> Windows Defender
01. 03. 2016 23:06 <DIR> Windows Journal
20. 11. 2015 00:53 <DIR> Windows Mail
10. 03. 2016 20:33 <DIR> Windows Media Player
10. 03. 2016 20:33 <DIR> Windows Multimedia Platform
30. 10. 2015 07:48 <DIR> Windows NT
30. 10. 2015 16:56 <DIR> Windows Photo Viewer
10. 03. 2016 20:33 <DIR> Windows Portable Devices
01. 12. 2014 23:02 <DIR> WinRAR
0 File(s) 0 bytes
34 Dir(s) 29�471�059�968 bytes free

========= End of CMD: =========


========= dir "C:\PROGRA~2" =========

Volume in drive C has no label.
Volume Serial Number is 90DF-A189

Directory of C:\PROGRA~2

18. 09. 2015 18:15 <DIR> Adobe
19. 03. 2016 19:15 <DIR> Apple
08. 02. 2015 23:58 <DIR> Auslogics
30. 10. 2015 07:48 <DIR> Comms
19. 11. 2015 22:28 <DIR> ESET
28. 02. 2016 23:03 <DIR> IObit
23. 02. 2016 18:22 <DIR> LG Software
05. 02. 2015 22:56 <DIR> Malwarebytes
04. 01. 2015 01:39 <DIR> Microsoft OneDrive
18. 06. 2015 15:17 100 Microsoft.SqlServer.Compact.400.32.bc
13. 12. 2015 01:49 <DIR> Nero
27. 12. 2015 00:03 <DIR> NFS Underground
24. 03. 2016 18:44 <DIR> NVIDIA
20. 11. 2015 00:53 <DIR> NVIDIA Corporation
12. 12. 2015 18:42 <DIR> OO Software
16. 03. 2016 21:36 <DIR> Oracle
19. 03. 2016 18:51 <DIR> Package Cache
28. 09. 2015 21:15 <DIR> Pinnacle
26. 02. 2015 12:00 <DIR> PMS
22. 03. 2016 21:06 <DIR> ProductData
30. 10. 2015 16:58 <DIR> regid.1991-06.com.microsoft
20. 11. 2015 00:53 <DIR> SoftwareDistribution
25. 11. 2015 21:09 <DIR> Spybot - Search & Destroy
16. 03. 2016 21:28 <DIR> Sun
28. 04. 2015 12:02 <DIR> TP-LINK
28. 03. 2016 17:47 <DIR> UMS
20. 11. 2015 00:53 <DIR> USOPrivate
10. 07. 2015 11:56 <DIR> USOShared
02. 08. 2015 22:03 <DIR> Verimatrix
28. 09. 2015 22:09 1�540 __FileUploader.log
28. 02. 2016 23:04 <DIR> {BAF091CA-86C4-4627-ADA1-897E2621C1B0}
28. 02. 2016 23:01 <DIR> {FD6F83C0-EC70-4581-8361-C70CD1AA4B98}
2 File(s) 1�640 bytes
30 Dir(s) 29�471�055�872 bytes free

========= End of CMD: =========


========= dir "C:\PROGRA~3" =========

Volume in drive C has no label.
Volume Serial Number is 90DF-A189

Directory of C:\

File Not Found

========= End of CMD: =========


========= dir "%localappdata%" =========

Volume in drive C has no label.
Volume Serial Number is 90DF-A189

Directory of C:\Users\Adam\AppData\Local

23. 03. 2016 20:58 <DIR> .
23. 03. 2016 20:58 <DIR> ..
21. 03. 2016 22:04 <DIR> 3810282D-6C19-47B0-8283-5C6C29A7E108
31. 12. 2014 17:43 <DIR> 4kdownload.com
20. 11. 2015 01:24 <DIR> ActiveSync
14. 02. 2016 22:43 <DIR> Adobe
30. 11. 2014 16:10 <DIR> Apps
12. 10. 2015 13:04 <DIR> CEF
15. 08. 2015 20:42 <DIR> Comms
28. 09. 2015 21:30 5�632 DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
15. 08. 2015 22:48 <DIR> DFX
31. 01. 2016 15:37 <DIR> Diagnostics
28. 09. 2015 21:14 <DIR> Downloaded Installations
17. 01. 2016 18:06 <DIR> ElevatedDiagnostics
30. 11. 2014 18:09 <DIR> ESET
21. 03. 2016 22:04 <DIR> F727A298-4DB4-456A-AC54-A93EA5F8554D
26. 02. 2015 12:03 <DIR> fontconfig
24. 02. 2015 01:44 58�016 GDIPFONTCACHEV1.DAT
01. 10. 2015 17:05 <DIR> Google
01. 06. 2015 12:43 <DIR> GWX
03. 03. 2016 22:12 <DIR> LG Electronics
30. 11. 2014 20:14 <DIR> Macromedia
17. 02. 2016 20:37 <DIR> Microsoft
24. 10. 2015 03:47 <DIR> MicrosoftEdge
08. 12. 2015 20:19 <DIR> Microsoft_Corporation
30. 11. 2014 16:53 <DIR> Mozilla
09. 12. 2015 19:12 <DIR> Nero
13. 08. 2015 15:16 <DIR> NetworkTiles
27. 12. 2015 01:27 <DIR> NFS Underground 2
13. 10. 2015 17:07 <DIR> NVIDIA
13. 10. 2015 17:08 <DIR> NVIDIA Corporation
12. 12. 2015 18:46 <DIR> O&O
01. 02. 2015 21:34 <DIR> Opera Software
19. 03. 2016 18:30 <DIR> Packages
25. 02. 2015 17:26 <DIR> Plex Media Server
31. 12. 2014 17:41 <DIR> Programs
13. 08. 2015 15:12 <DIR> Publishers
29. 03. 2016 16:34 <DIR> Temp
13. 08. 2015 15:06 <DIR> TileDataLayer
25. 11. 2015 22:19 <DIR> VirtualStore
13. 12. 2015 01:42 <DIR> Windows Live
09. 01. 2015 17:32 <DIR> Windows Live Writer
2 File(s) 63�648 bytes
40 Dir(s) 29�471�051�776 bytes free

========= End of CMD: =========


========= dir "%appdata%" =========

Volume in drive C has no label.
Volume Serial Number is 90DF-A189

Directory of C:\Users\Adam\AppData\Roaming

23. 03. 2016 20:58 <DIR> .
23. 03. 2016 20:58 <DIR> ..
19. 03. 2016 19:46 <DIR> 5kplayer
30. 11. 2014 20:14 <DIR> Adobe
27. 03. 2016 22:28 <DIR> AIMP
28. 02. 2016 23:04 <DIR> Apple Computer
16. 09. 2015 20:27 <DIR> Audacity
21. 03. 2016 22:12 <DIR> COWON
21. 03. 2016 22:05 <DIR> dlg
30. 11. 2014 18:09 <DIR> ESET
30. 11. 2015 00:08 <DIR> Geek Uninstaller
30. 11. 2014 16:07 <DIR> Identities
28. 02. 2016 23:06 <DIR> IObit
25. 02. 2015 18:33 <DIR> J River
13. 03. 2016 22:25 <DIR> LG Electronics
30. 11. 2014 20:14 <DIR> Macromedia
14. 07. 2009 09:50 <DIR> Media Center Programs
25. 02. 2015 14:59 <DIR> MiniGet
08. 12. 2015 20:27 <DIR> Mozilla
09. 12. 2015 19:12 <DIR> Nero
08. 12. 2015 20:27 <DIR> Netscape
01. 03. 2015 21:08 <DIR> NVIDIA
01. 02. 2015 21:34 <DIR> Opera Software
17. 10. 2015 12:19 <DIR> PC Remote
08. 12. 2015 20:26 <DIR> Photodex
28. 02. 2016 23:05 <DIR> ProductData
21. 03. 2016 22:12 <DIR> r2 Studios
08. 02. 2015 14:08 <DIR> Remote Control Server
18. 09. 2015 17:36 <DIR> Sun
30. 01. 2015 14:30 <DIR> TeamViewer
13. 10. 2015 17:48 <DIR> TP-LINK
19. 03. 2016 19:36 <DIR> vlc
09. 01. 2015 17:29 <DIR> Windows Live Writer
01. 12. 2014 23:01 <DIR> WinRAR
21. 11. 2015 14:02 <DIR> WOW
04. 01. 2015 01:54 <DIR> Youtube Downloader HD
0 File(s) 0 bytes
36 Dir(s) 29�471�051�776 bytes free

========= End of CMD: =========

EmptyTemp: => 390.7 MB temporary data Removed.


The system needed a reboot.

==== End of Fixlog 16:36:01 ====

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Preventívka

#8 Příspěvek od altrok »

Takze jeste uklidime.
A pokud nejsou dotazy ci jine problemy, je to ode mne vse.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

ferenc77
Návštěvník
Návštěvník
Příspěvky: 235
Registrován: 28 lis 2012 13:21

Re: Preventívka

#9 Příspěvek od ferenc77 »

Tak občas je taký spomalený, keď je viac aplikácii spustených, ale dôvod je asi ten, že už na dosť starý počítač a ešte k tomu má len 1 GB ram som dal Windows 10, takže asi nemôžem čakať plynulý chod.

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Preventívka

#10 Příspěvek od altrok »

Tema bylo zalozeno v sekci preventivky, bylo pojmenovano "Preventívka" a nikde jste zadne problemy neuvedl, proto jsem opravdu predpokladal, ze se jedna jen a pouze o preventivni kontrolu...

Pokud je PC zpomaleny az kdyz je vice aplikaci spustenych, tak to opravdu vypada na typicke chovani pro nedostatek RAM/vykonu. Jeste jednou jsem projizdel logy a zadnou aktivni havet ve Vasem PC jiz nevidim.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

ferenc77
Návštěvník
Návštěvník
Příspěvky: 235
Registrován: 28 lis 2012 13:21

Re: Preventívka

#11 Příspěvek od ferenc77 »

Áno, ako nie sú nejaké problémy, len som poznamenal, že dôvod bude asi ten :)

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Preventívka

#12 Příspěvek od altrok »

Souhlasim. Dle meho to bude nedostatkem RAM/vykonu.
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

ferenc77
Návštěvník
Návštěvník
Příspěvky: 235
Registrován: 28 lis 2012 13:21

Re: Preventívka

#13 Příspěvek od ferenc77 »

Ale ďakujem a prajem pekný zvyšok týždňa :)

altrok
Moderátor
Moderátor
Příspěvky: 7317
Registrován: 15 lis 2012 22:26
Bydliště: Znojmo

Re: Preventívka

#14 Příspěvek od altrok »

Dekuji, i Vam. Nemate zac, rad jsem pomohl :worship:


Mejte se krasne a treba zase nekdy :bye:
Pokud je cokoliv nejasného, ihned se ptej.
V případě spokojenosti prosím podpořte forum.
Pro dotazy, které se nehodí na forum, je možné využít altrokzavináčforum.viry.cz
Máš-li chuť pomáhat návštěvníkům tohoto fora, přihlas se do naší školičky.

Zamčeno