Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Spomaleny pc, prosim o kontrolu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Avjeckin
Návštěvník
Návštěvník
Příspěvky: 42
Registrován: 01 zář 2014 20:20

Spomaleny pc, prosim o kontrolu

#1 Příspěvek od Avjeckin »

Dobry den, potreboval by som helfnut od Vas expertov. Moj otec ma pocitac,ktory denne pouziva ale zial on si ho velmi nekontroluje lebo nevie. Pocitac je akysi spomaleny, vsetko dlho trva dokym nacita, aplikacie casto nereaguju,niekedy treba nieco na rychlo a je s tym troska problem. Ja som spravil: precistil som HDD (lebo bol plny), skontroloval som a precistil pc Ccleanerom (bezny bordel), a skontroloval ho avirou (nebolo najdene nic) :?: . Prikladam FRST log a teda ziadam o Vasu pomoc ako dalej postupovat, dakujem velmi pekne.

Logfile of random's system information tool 1.10 (written by random/random)
Run by Dell at 2016-04-06 17:55:44
Microsoft Windows 7 Home Premium Service Pack 1
System drive C: has 76 GB (50%) free of 152 GB
Total RAM: 4085 MB (55% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 17:55:46, on 06/04/2016
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v8.00 (8.00.7601.18487)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
C:\Users\Dell\AppData\Roaming\Dropbox\bin\Dropbox.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Dell.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://safesearch.avira.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = https://safesearch.avira.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = https://safesearch.avira.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://safesearch.avira.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKLM\..\Run: [Avira SystrayStartTrigger] C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe
O4 - HKLM\..\Run: [LogMeIn Hamachi Ui] "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
O4 - HKCU\..\Run: [SoftonicAssistant] "C:\Users\Dell\AppData\Local\SoftonicAssistant\SoftonicAssistant.exe"
O4 - HKCU\..\Run: [Dropbox Update] "C:\Users\Dell\AppData\Local\Dropbox\Update\DropboxUpdate.exe" /c
O4 - HKCU\..\Run: [STUISpeedLauncher] "C:\Program Files\Samsung\Stylish UI Pack\TouchBasedUI.exe" -speedlauncher -minVer:6.6.58.0
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [AviraSpeedup] "C:\Program Files (x86)\Avira\AviraSpeedup\avira_system_speedup.exe" -autorun (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [AviraSpeedup] "C:\Program Files (x86)\Avira\AviraSpeedup\avira_system_speedup.exe" -autorun (User 'Default user')
O4 - Startup: Dropbox.lnk = Dell\AppData\Roaming\Dropbox\bin\Dropbox.exe
O4 - Global Startup: TP-LINK Wireless Configuration Utility.lnk = C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: Avira Mail Protection (AntiVirMailService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Real-Time Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apple Mobile Device Service - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Avira Service Host (Avira.ServiceHost) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: LogMeIn Hamachi Tunneling Engine (Hamachi2Svc) - LogMeIn Inc. - C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: KMService - Unknown owner - C:\Windows\system32\srvany.exe
O23 - Service: LMIGuardianSvc - LogMeIn, Inc. - C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Samsung Printer Dianostics Service - Unknown owner - C:\Windows\system32\\spdsvc.exe
O23 - Service: Samsung Cloud Print Service (SamsungCloudPrintSvc) - Unknown owner - C:\Program Files\Samsung\Samsung Cloud Print PC Agent\SCP_Svc.exe
O23 - Service: Samsung UPD Utility Service (SamsungUPDUtilSvc) - Unknown owner - C:\Windows\SysWOW64\SecUPDUtilSvc.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: TeamViewer 8 (TeamViewer8) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 10509 bytes

======Listing Processes======



\SystemRoot\System32\smss.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
wininit.exe
%SystemRoot%\system32\csrss.exe ObjectDirectory=\Windows SharedSection=1024,20480,768 Windows=On SubSystemType=Windows ServerDll=basesrv,1 ServerDll=winsrv:UserServerDllInitialization,3 ServerDll=winsrv:ConServerDllInitialization,2 ServerDll=sxssrv,4 ProfileControl=Off MaxRequestThreads=16
C:\Windows\system32\services.exe
winlogon.exe
C:\Windows\system32\lsass.exe
C:\Windows\system32\lsm.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k LocalService
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
"C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe"
"taskhost.exe"
"C:\Windows\system32\Dwm.exe"
C:\Windows\Explorer.EXE
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Windows\System32\hkcmd.exe"
C:\Windows\system32\igfxsrvc.exe -Embedding
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe" -nogui
"C:\Users\Dell\AppData\Roaming\Dropbox\bin\Dropbox.exe" /systemstartup
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe" -Embedding
"C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe"
"C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
"C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe"
C:\Windows\SysWOW64\\spdsvc.exe
"C:\Program Files\Samsung\Samsung Cloud Print PC Agent\SCP_Svc.exe"
C:\Windows\SysWOW64\SecUPDUtilSvc.exe
"C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe"
"C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe"
"C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
"C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe" -s
"C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe" /showMiniGui /connectToHost
"C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe" avshadowcontrol0_00000814
C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\Windows\System32\svchost.exe -k LocalServicePeerNet
C:\Windows\system32\svchost.exe -k imgsvc
"taskhost.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=crashpad-handler /prefetch:7 --no-rate-limit "--database=C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Crashpad" --url=https://clients2.google.com/cr/report --annotation=channel=m --annotation=plat=Win32 --annotation=prod=Chrome --annotation=ver=49.0.2623.110 --handshake-handle=0xd0
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/AllExceptAsyncScripts_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_17/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-accelerated-video-decode --channel="4664.2.2070968599\1996385573" /prefetch:1
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-features=AutomaticTabDiscarding<AutomaticTabDiscarding,WebFontsIntervention<WebFontsIntervention --disable-features=UpdateRendererPriorityOnStartup<UpdateRendererPriorityOnStartup --lang=sk --force-fieldtrials=AppBannerTriggering/Aggressive/AutofillProfileOrderByFrecency/Enabled/*AutomaticTabDiscarding/Enabled_Once_10-gen2/CaptivePortalInterstitial/Enabled/*ChildAccountDetection/Disabled/*ClientSideDetectionModel/Model0/*CrossDevicePromo/1DaySingleProfile/*DataReductionProxyConfigService/Enabled/*DirectWriteFontProxy/UseDirectWriteFontProxy/*ExtensionActionRedesign/Enabled/ExtensionDeveloperModeWarning/Enabled/*ExtensionInstallVerification/Enforce/*GFE/Default/InstanceID/Enabled/IntelligentSessionRestore/Enabled2/MaterialDesignDownloads/Enabled/*NetworkQualityEstimator/Enabled/*OmniboxBundledExperimentV1/Unused_2/*PasswordBranding/Disabled/*PasswordGeneration/Disabled/*PreRead/Default/*QUIC/EnabledNoId/ReportCertificateErrors/ShowAndPossiblySend/*ResourcePriorities/AllExceptAsyncScripts_11011_1_1_10/SHA1IdentityUIWarning/Enabled/SHA1ToolbarUIJanuary2016/Warning/SHA1ToolbarUIJanuary2017/Error/*SRTPromptFieldTrial/On/SSLCommonNameMismatchHandling/Disabled/*SafeBrowsingIncidentReportingService/Default/SafeBrowsingUnverifiedDownloads/DisableByParameterMostSbTypes2/*SafeBrowsingUpdateFrequency/Default/*TriggeredResetFieldTrial/On/*UMA-Dynamic-Uniformity-Trial/Group6/*UMA-Population-Restrict/normal/*UMA-Uniformity-Trial-1-Percent/group_49/*UMA-Uniformity-Trial-10-Percent/group_08/*UMA-Uniformity-Trial-100-Percent/group_01/*UMA-Uniformity-Trial-20-Percent/default/*UMA-Uniformity-Trial-5-Percent/group_17/*UMA-Uniformity-Trial-50-Percent/group_01/*UseDelayAgnosticAEC/DefaultEnabled/*WebFontsIntervention/Enabled/WebRTC-LocalIPPermissionCheck/Enabled/WebRTC-PeerConnectionDTLS1.2/Enabled/ --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --blink-settings=fetchDeferLateScripts=true,fetchIncreaseFontPriority=true,fetchIncreasePriorities=true --device-scale-factor=1 --num-raster-threads=1 --content-image-texture-target=3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553,3553 --video-image-texture-target=3553 --disable-accelerated-video-decode --channel="4664.9.462952411\264424166" /prefetch:1
C:\Windows\system32\vssvc.exe
C:\Windows\System32\svchost.exe -k swprv
"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe9_ Global\UsGthrCtrlFltPipeMssGthrPipe9 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\Windows\system32\SearchFilterHost.exe" 0 508 512 520 65536 516
C:\Windows\system32\AUDIODG.EXE 0x7f8
"C:\Users\Dell\Downloads\RSITx64 (1).exe"
C:\Windows\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\Windows\tasks\Adobe Flash Player Updater.job - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\Windows\tasks\AutoKMS.job - C:\Windows\AutoKMS.exe
C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-306012316-2177622386-379303590-1000Core.job - C:\Users\Dell\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c
C:\Windows\tasks\DropboxUpdateTaskUserS-1-5-21-306012316-2177622386-379303590-1000UA.job - C:\Users\Dell\AppData\Local\Dropbox\Update\DropboxUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

=========Mozilla firefox=========

ProfilePath - C:\Users\Dell\AppData\Roaming\Mozilla\Firefox\Profiles\6eg4orbx.default

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=]
"Description"=iTunes Detector Plug-in
"Path"=

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Apple.com/iTunes,version=1.0]
"Description"=
"Path"=C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@divx.com/DivX Web Player Plug-In,version=1.0.0]
"Description"=DivX Web Player
"Path"=C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.25.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWOW64\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.25.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.8]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@divx.com/DivX VOD Helper,version=1.0.0]
"Description"=DivX VOD Helper Plug-in
"Path"=C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/GENUINE]
"Description"=
"Path"=disabled

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL


======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08 2134656]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~2\Office14\URLREDIR.DLL [2010-02-28 688528]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-08-06 463272]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08 1725056]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2010-02-28 561552]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-08-06 171944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2009-09-23 165912]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2009-09-23 385560]
"Persistence"=C:\Windows\system32\igfxpers.exe [2009-09-23 363544]
"CDAServer"=C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [2014-09-08 464608]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"SoftonicAssistant"=C:\Users\Dell\AppData\Local\SoftonicAssistant\SoftonicAssistant.exe [2016-02-18 1846216]
"Dropbox Update"=C:\Users\Dell\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17 134512]
"STUISpeedLauncher"=C:\Program Files\Samsung\Stylish UI Pack\TouchBasedUI.exe [2015-02-09 411136]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14 1085656]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BCSSync]
C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [2010-03-13 91520]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2012-04-17 3671872]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXMediaServer]
C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe [2013-08-21 450560]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DivXUpdate]
C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe [2013-08-29 1861968]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
C:\Program Files\iTunes\iTunesHelper.exe [2015-12-17 170256]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\LogMeIn Hamachi Ui]
C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2016-04-05 5565448]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files (x86)\Skype\Phone\Skype.exe [2016-01-19 50622080]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Spotify Web Helper]
C:\Users\Dell\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe [2014-11-13 1514040]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2013-03-12 253816]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\uTorrent]
C:\Users\Dell\AppData\Roaming\uTorrent\uTorrent.exe [2016-03-03 2094080]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"avgnt"=C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [2016-03-12 807392]
"Avira SystrayStartTrigger"=C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [2016-01-27 66328]
"LogMeIn Hamachi Ui"=C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [2016-04-05 5565448]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
TP-LINK Wireless Configuration Utility.lnk - C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe

C:\Users\Dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Dropbox.lnk - C:\Users\Dell\AppData\Roaming\Dropbox\bin\Dropbox.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2009-09-23 261120]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~2\Office14\GROOVEEX.DLL [2010-03-25 6722448]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2010-03-25 4222864]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=credssp.dll

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AFD]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Hamachi2Svc]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"ConsentPromptBehaviorAdmin"=5
"ConsentPromptBehaviorUser"=3
"EnableUIADesktopToggle"=0
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoActiveDesktop"=1
"NoActiveDesktopChanges"=1
"ForceActiveDesktopOn"=0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"msacm.msadpcm"=msadp32.acm
"midimapper"=midimap.dll
"wavemapper"=msacm32.drv
"VIDC.UYVY"=msyuv.dll
"VIDC.YUY2"=msyuv.dll
"VIDC.YVYU"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.i420"=iyuv_32.dll
"VIDC.YVU9"=tsbyuv.dll
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"VIDC.FPS1"=frapsv64.dll
"msacm.ac3filter"=ac3filter64.acm

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2016-04-06 17:50:17 ----D---- C:\FRST
2016-04-06 12:49:18 ----A---- C:\Windows\system32\FNTCACHE.DAT
2016-04-06 11:28:45 ----D---- C:\Program Files (x86)\LogMeIn Hamachi
2016-04-06 09:23:52 ----D---- C:\ProgramData\Hewlett-Packard
2016-03-12 15:47:16 ----D---- C:\Program Files\Common Files\Common Desktop Agent
2016-03-12 15:46:36 ----A---- C:\Windows\system32\SNWIAUI.dll
2016-03-12 15:46:36 ----A---- C:\Windows\system32\SnMinDrv.dll
2016-03-12 15:46:36 ----A---- C:\Windows\system32\SnImgFlt.dll
2016-03-12 15:46:36 ----A---- C:\Windows\system32\SnErHdlr.dll
2016-03-12 15:46:34 ----A---- C:\Windows\system32\SnWIAMUI.dll
2016-03-12 15:46:34 ----A---- C:\Windows\system32\SnAMPV.dll
2016-03-11 21:08:42 ----A---- C:\Windows\system32\SaMinDrv.dll
2016-03-11 21:08:42 ----A---- C:\Windows\system32\SaImgFlt.dll
2016-03-11 21:08:41 ----A---- C:\Windows\system32\SaErHdlr.dll
2016-03-11 20:13:11 ----D---- C:\ProgramData\SSScan
2016-03-11 20:13:08 ----A---- C:\Windows\wiainst64.exe
2016-03-11 20:11:49 ----A---- C:\Windows\SYSWOW64\TWAINDSM.dll
2016-03-11 20:11:49 ----A---- C:\Windows\system32\TWAINDSM.dll
2016-03-11 19:52:14 ----N---- C:\Windows\SYSWOW64\spdsvc.exe
2016-03-11 19:47:03 ----N---- C:\Windows\TotalUninstaller.exe
2016-03-11 19:47:00 ----A---- C:\Windows\system32\scpd2lm.dll
2016-03-11 19:40:09 ----D---- C:\Program Files\Samsung
2016-03-11 19:39:55 ----D---- C:\ProgramData\Samsung
2016-03-11 19:39:45 ----N---- C:\Windows\system32\DlgSearchEngine.dll
2016-03-11 19:39:44 ----N---- C:\Windows\SYSWOW64\DlgSearchEngine.dll
2016-03-11 19:39:23 ----A---- C:\Windows\system32\us005ci.exe
2016-03-11 19:39:23 ----A---- C:\Windows\system32\SBuySupplies.exe
2016-03-11 19:39:21 ----N---- C:\Windows\SYSWOW64\SecUPDUtilSvc.exe
2016-03-11 19:39:21 ----N---- C:\Windows\system32\SecUPDUtilSvc.exe
2016-03-11 19:39:21 ----D---- C:\Users\Dell\AppData\Roaming\Samsung
2016-03-11 19:39:21 ----D---- C:\Program Files (x86)\Samsung
2016-03-11 19:39:21 ----A---- C:\Windows\system32\us005lm.dll
2016-03-11 19:39:21 ----A---- C:\Windows\system32\us005ci.dll

======List of files/folders modified in the last 1 month======

2016-04-06 17:55:46 ----D---- C:\Windows\Prefetch
2016-04-06 17:55:46 ----D---- C:\Program Files\trend micro
2016-04-06 17:55:45 ----D---- C:\Windows\Temp
2016-04-06 17:53:13 ----D---- C:\Windows
2016-04-06 17:13:44 ----SHD---- C:\System Volume Information
2016-04-06 12:54:03 ----D---- C:\Users\Dell\AppData\Roaming\Dropbox
2016-04-06 12:53:06 ----D---- C:\Windows\inf
2016-04-06 12:49:18 ----D---- C:\Windows\System32
2016-04-06 12:46:06 ----RD---- C:\Program Files (x86)
2016-04-06 11:35:21 ----D---- C:\Users\Dell\AppData\Roaming\uTorrent
2016-04-06 11:35:21 ----D---- C:\Users\Dell\AppData\Roaming\DAEMON Tools Lite
2016-04-06 11:32:19 ----D---- C:\Windows\Minidump
2016-04-06 11:32:19 ----D---- C:\Windows\Logs
2016-04-06 11:29:22 ----SHD---- C:\Windows\Installer
2016-04-06 11:24:41 ----D---- C:\Windows\system32\config
2016-04-06 09:42:35 ----D---- C:\Windows\system32\NDF
2016-04-06 09:39:37 ----D---- C:\Users\Dell\AppData\Roaming\Skype
2016-04-06 09:23:52 ----HD---- C:\ProgramData
2016-04-06 09:12:51 ----A---- C:\Windows\system32\PerfStringBackup.INI
2016-03-24 06:59:25 ----D---- C:\Windows\SysWOW64
2016-03-23 21:43:07 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2016-03-23 17:54:17 ----D---- C:\Windows\system32\catroot
2016-03-23 17:34:18 ----SD---- C:\ProgramData\Microsoft
2016-03-13 08:49:17 ----D---- C:\Windows\system32\catroot2
2016-03-12 15:50:56 ----D---- C:\Windows\system32\DriverStore
2016-03-12 15:49:24 ----RSD---- C:\Windows\assembly
2016-03-12 15:48:54 ----D---- C:\Windows\system32\Tasks
2016-03-12 15:47:33 ----D---- C:\Program Files (x86)\Common Files
2016-03-12 15:47:16 ----D---- C:\Program Files\Common Files
2016-03-12 15:46:24 ----D---- C:\Windows\twain_32
2016-03-12 14:17:39 ----D---- C:\Users\Dell\AppData\Roaming\TP-LINK
2016-03-12 13:05:11 ----D---- C:\Windows\system32\drivers
2016-03-12 00:02:32 ----D---- C:\Windows\Microsoft.NET
2016-03-11 21:52:51 ----SD---- C:\Users\Dell\AppData\Roaming\Microsoft
2016-03-11 19:43:29 ----D---- C:\Windows\SYSWOW64\en-US
2016-03-11 19:43:28 ----D---- C:\Windows\system32\en-US
2016-03-11 19:43:28 ----D---- C:\Program Files (x86)\Microsoft.NET
2016-03-11 19:40:09 ----RD---- C:\Program Files

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 pciide;pciide; C:\Windows\system32\drivers\pciide.sys [2009-07-14 12352]
R0 rdyboost;ReadyBoost; C:\Windows\System32\drivers\rdyboost.sys [2010-11-21 213888]
R1 avipbb;avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [2016-03-12 133168]
R1 avkmgr;avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [2014-05-09 28600]
R1 dtsoftbus01;DAEMON Tools Virtual Bus Driver; C:\Windows\system32\DRIVERS\dtsoftbus01.sys [2013-08-06 283200]
R1 vwififlt;Virtual WiFi Filter Driver; C:\Windows\system32\DRIVERS\vwififlt.sys [2009-07-14 59904]
R2 avgntflt;avgntflt; C:\Windows\system32\DRIVERS\avgntflt.sys [2016-03-12 154816]
R2 avnetflt;avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [2016-03-12 69888]
R2 SSPORT;SSPORT; \??\C:\Windows\system32\Drivers\SSPORT.sys [2015-01-05 11576]
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\Windows\system32\DRIVERS\e1e6032e.sys [2009-06-10 278016]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\Windows\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 hamachi;Hamachi Network Interface; C:\Windows\system32\DRIVERS\hamachi.sys [2009-03-18 33856]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2009-09-23 6180832]
R3 KMWDFILTER;HIDServiceDesc; C:\Windows\system32\DRIVERS\KMWDFILTER.sys [2009-04-29 30208]
R3 RTL8192cu;300Mbps Wireless USB Adapter; C:\Windows\system32\DRIVERS\RTL8192cu.sys [2014-04-08 926824]
R3 StillCam;Still Serial Digital Camera Driver; C:\Windows\system32\DRIVERS\serscan.sys [2009-07-14 12288]
S3 TsUsbFlt;TsUsbFlt; C:\Windows\system32\drivers\tsusbflt.sys [2010-11-21 59392]
S3 TsUsbGD;Remote Desktop Generic USB Device; C:\Windows\system32\drivers\TsUsbGD.sys [2010-11-21 31232]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2013-02-12 19968]
S3 USBAAPL64;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl64.sys [2015-06-17 54784]
S3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2013-07-03 42496]
S3 WinUsb;WinUsb; C:\Windows\system32\DRIVERS\WinUsb.sys [2010-11-21 41984]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-14 82128]
R2 AntiVirSchedulerService;Avira Scheduler; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [2016-03-12 466504]
R2 AntiVirService;Avira Real-Time Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [2016-03-12 466504]
R2 Apple Mobile Device Service;Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2015-10-07 77104]
R2 Avira.ServiceHost;Avira Service Host; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [2016-01-27 260456]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2015-08-12 462096]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2016-01-08 1433216]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2016-01-08 1773696]
R2 Hamachi2Svc;LogMeIn Hamachi Tunneling Engine; C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe [2016-04-05 2550280]
R2 LMIGuardianSvc;LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [2016-04-05 417552]
R2 Samsung Printer Dianostics Service;Samsung Printer Dianostics Service; C:\Windows\syswow64\\spdsvc.exe [2015-11-05 491328]
R2 SamsungCloudPrintSvc;Samsung Cloud Print Service; C:\Program Files\Samsung\Samsung Cloud Print PC Agent\SCP_Svc.exe [2015-09-02 898352]
R2 SamsungUPDUtilSvc;Samsung UPD Utility Service; C:\Windows\SysWOW64\SecUPDUtilSvc.exe [2016-03-12 143664]
R2 TeamViewer8;TeamViewer 8; C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe [2014-08-04 5095264]
S2 AntiVirMailService;Avira Mail Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [2016-03-12 955736]
S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86; C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe [2010-03-18 130384]
S2 clr_optimization_v4.0.30319_64;Microsoft .NET Framework NGEN v4.0.30319_X64; C:\Windows\Microsoft.NET\Framework64\v4.0.30319\mscorsvw.exe [2010-03-18 138576]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
S2 KMService;KMService; C:\Windows\syswow64\srvany.exe [2013-08-06 8192]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2015-07-09 327296]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-23 269504]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27 144200]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2015-12-17 644880]
S3 Microsoft SharePoint Workspace Audit Service;Microsoft SharePoint Workspace Audit Service; C:\Program Files (x86)\Microsoft Office\Office14\GROOVE.EXE [2010-03-25 30969208]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2015-05-26 148080]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2010-01-09 149352]
S3 osppsvc;Office Software Protection Platform; C:\Program Files\Common Files\Microsoft Shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE [2010-01-09 4925184]
S3 WatAdminSvc;@%SystemRoot%\system32\Wat\WatUX.exe,-601; C:\Windows\system32\Wat\WatAdminSvc.exe [2013-08-06 1255736]
S4 AntiVirWebService;Avira Web Protection; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [2016-03-12 1424880]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119427
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomaleny pc, prosim o kontrolu

#2 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Avjeckin
Návštěvník
Návštěvník
Příspěvky: 42
Registrován: 01 zář 2014 20:20

Re: Spomaleny pc, prosim o kontrolu

#3 Příspěvek od Avjeckin »

Zdravim,spravilo mi 2 logy tak posielam obe, dakujem.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
Ran by Dell (administrator) on DELL-PC (06-04-2016 17:50:46)
Running from C:\Users\Dell\Downloads
Loaded Profiles: Dell (Available Profiles: Dell)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
() C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
(Dropbox, Inc.) C:\Users\Dell\AppData\Roaming\Dropbox\bin\Dropbox.exe
() C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
() C:\Windows\SysWOW64\spdsvc.exe
() C:\Program Files\Samsung\Samsung Cloud Print PC Agent\SCP_Svc.exe
() C:\Windows\SysWOW64\SecUPDUtilSvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] ()
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [807392 2016-03-12] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [66328 2016-01-27] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5565448 2016-04-05] (LogMeIn Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-306012316-2177622386-379303590-1000\...\Run: [SoftonicAssistant] => C:\Users\Dell\AppData\Local\SoftonicAssistant\SoftonicAssistant.exe [1846216 2016-02-18] ()
HKU\S-1-5-21-306012316-2177622386-379303590-1000\...\Run: [Dropbox Update] => C:\Users\Dell\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-17] (Dropbox, Inc.)
HKU\S-1-5-21-306012316-2177622386-379303590-1000\...\Run: [STUISpeedLauncher] => C:\Program Files\Samsung\Stylish UI Pack\TouchBasedUI.exe [411136 2015-02-09] ()
HKU\S-1-5-21-306012316-2177622386-379303590-1000\...\MountPoints2: {286bcc1a-fe2e-11e2-9bed-001ec97ea07e} - F:\Setup.exe
HKU\S-1-5-18\...\Run: [AviraSpeedup] => "C:\Program Files (x86)\Avira\AviraSpeedup\avira_system_speedup.exe" -autorun
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK Wireless Configuration Utility.lnk [2016-03-01]
ShortcutTarget: TP-LINK Wireless Configuration Utility.lnk -> C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe ()
Startup: C:\Users\Dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2016-03-19]
ShortcutTarget: Dropbox.lnk -> C:\Users\Dell\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{708D56FA-90DB-445A-B978-BDEF2D02B9F7}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{B5D6B10E-C7FA-4367-B750-1180B347DB8C}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{D71D5A7E-2888-41D1-80E7-C915573BEAA3}: [DhcpNameServer] 192.168.42.129

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxps://safesearch.avira.com/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxps://safesearch.avira.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxps://safesearch.avira.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://safesearch.avira.com/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxps://safesearch.avira.com/
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxps://safesearch.avira.com/
HKU\S-1-5-21-306012316-2177622386-379303590-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/en-gb/?pc=UP97&ocid=UP97DHP
HKU\S-1-5-21-306012316-2177622386-379303590-1000\Software\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.default-search.net?sid=476&aid=106& ... 57&src=hmp
hxxp://www.google.com
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2476} URL = hxxp://www.default-search.net/search?sid=476&a ... earchTerms}
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2476} URL = hxxp://www.default-search.net/search?sid=476&a ... earchTerms}
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-306012316-2177622386-379303590-1000 -> DefaultScope {893D23B2-B8DB-4EBA-B49D-F6A402697030} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97 ... -SearchBox
SearchScopes: HKU\S-1-5-21-306012316-2177622386-379303590-1000 -> {893D23B2-B8DB-4EBA-B49D-F6A402697030} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97 ... -SearchBox
SearchScopes: HKU\S-1-5-21-306012316-2177622386-379303590-1000 -> {9BB47C17-9C68-4BB3-B188-DD9AF0FD2476} URL = hxxp://www.default-search.net/search?sid=476&a ... earchTerms}
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-08-06] (Oracle Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-08-06] (Oracle Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll [2014-05-28] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2014-05-28] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll [2014-05-28] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2014-05-28] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Dell\AppData\Roaming\Mozilla\Firefox\Profiles\6eg4orbx.default
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2011-06-20] (DivX, LLC.)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-10-14] ()
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2011-06-20] (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [2013-08-28] (DivX, LLC)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [2013-08-06] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2013-08-06] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2013-07-31] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-306012316-2177622386-379303590-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Dell\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-07-07] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-306012316-2177622386-379303590-1000: BearSharePlugin -> C:\Program Files (x86)\BearShare Applications\BearShare\npBearSharePlugin.dll [No File]

Chrome:
=======
CHR HomePage: Default -> msn.com/?pc=__PARAM__&ocid=__PARAM__DHP&osmkt=en-us
CHR DefaultSearchURL: Default -> hxxp://www.bing.com/search?FORM=__PARAM__DF&PC ... earchTerms}
CHR DefaultSearchKeyword: Default -> bing.com
CHR DefaultSuggestURL: Default -> hxxp://ssmsp.ask.com/query?sstype=prefix&li=ff&q={searchTerms}
CHR Profile: C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Bing) - C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd [2015-07-02]
CHR Extension: (Skype) - C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-12-18]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR HKU\S-1-5-21-306012316-2177622386-379303590-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [fcfenmboojpjinhpgggodefccipikbpd] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-01-08]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [955736 2016-03-12] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [466504 2016-03-12] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [466504 2016-03-12] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1424880 2016-03-12] (Avira Operations GmbH & Co. KG)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [260456 2016-01-27] (Avira Operations GmbH & Co. KG)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-08] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-08] (Microsoft Corporation)
S2 KMService; C:\Windows\SysWOW64\srvany.exe [8192 2013-08-06] () [File not signed]
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2016-04-05] (LogMeIn, Inc.)
R2 Samsung Printer Dianostics Service; C:\Windows\SysWOW64\\spdsvc.exe [491328 2015-11-05] ()
R2 SamsungCloudPrintSvc; C:\Program Files\Samsung\Samsung Cloud Print PC Agent\SCP_Svc.exe [898352 2015-09-02] ()
R2 SamsungUPDUtilSvc; C:\Windows\SysWOW64\SecUPDUtilSvc.exe [143664 2016-03-12] ()
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [154816 2016-03-12] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [133168 2016-03-12] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-05-09] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [69888 2016-03-12] (Avira Operations GmbH & Co. KG)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-08-06] (DT Soft Ltd)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [926824 2014-04-08] (Realtek Semiconductor Corporation )

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-04-06 17:50 - 2016-04-06 17:51 - 00021378 _____ C:\Users\Dell\Downloads\FRST.txt
2016-04-06 17:50 - 2016-04-06 17:50 - 00000000 ____D C:\FRST
2016-04-06 17:49 - 2016-04-06 17:49 - 02374144 _____ (Farbar) C:\Users\Dell\Downloads\FRST64.exe
2016-04-06 17:40 - 2016-04-06 17:40 - 01725440 _____ (Farbar) C:\Users\Dell\Downloads\FRST.exe
2016-04-06 12:56 - 2016-04-06 12:56 - 00011986 _____ C:\Users\Dell\Desktop\vrecka-na-pizzu.php
2016-04-06 12:52 - 2016-04-06 12:52 - 00108840 _____ C:\Users\Dell\AppData\Local\GDIPFONTCACHEV1.DAT
2016-04-06 12:49 - 2016-04-06 12:49 - 00420888 _____ C:\Windows\system32\FNTCACHE.DAT
2016-04-06 11:28 - 2016-04-06 11:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2016-04-06 11:28 - 2016-04-06 11:28 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2016-04-06 09:23 - 2016-04-06 09:23 - 00000000 ____D C:\ProgramData\Hewlett-Packard
2016-04-03 21:00 - 2016-04-03 21:00 - 00000000 ____D C:\Users\Dell\Desktop\mlyncek
2016-04-03 20:21 - 2016-04-03 20:21 - 00477845 _____ C:\Users\Dell\Downloads\F64E-F83E.pdf
2016-04-03 15:38 - 2016-04-03 15:41 - 00042291 _____ C:\Users\Dell\Desktop\shippingdocuments.pdf
2016-04-02 11:10 - 2016-04-02 11:10 - 00001218 _____ C:\Users\Dell\Downloads\V000011.zip
2016-04-01 21:59 - 2016-04-06 11:23 - 00000000 ____D C:\Users\Dell\AppData\LocalLow\uTorrent
2016-04-01 15:14 - 2016-04-01 15:14 - 00637026 _____ C:\Users\Dell\Desktop\ACFrOgBUG274-Ay2xbK2yHs13Zv7pnfKGs31FOw3My400NTh10k9APoHr066-kwN4ZcsbNoxqZ9cFX0zpO2S2HlQx-9GyPfDIstAQZ1TqTilDijI7SkM2hXvU0fiuuY=.pdf
2016-03-31 20:27 - 2016-03-30 15:36 - 1088226558 _____ C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E11-FullHD-CZ-EN-dabing-2013.mkv
2016-03-28 18:50 - 2016-03-27 16:05 - 1900924884 ____R C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E04-FullHD-CZ-EN-dabing-2013.mkv
2016-03-28 18:50 - 2016-03-27 14:58 - 1465449559 ____R C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E03-FullHD-CZ-EN-dabing-+-cz-tit-2013.mkv
2016-03-28 18:49 - 2016-03-27 18:32 - 1893929372 ____R C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E07-FullHD-CZ-EN-dabing-2013.mkv
2016-03-28 18:48 - 2016-03-27 18:24 - 1988238300 ____R C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E06-FullHD-CZ-EN-dabing-2013.mkv
2016-03-28 18:47 - 2016-03-27 16:56 - 1890607380 ____R C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E05-FullHD-CZ-EN-dabing-2013.mkv
2016-03-27 14:48 - 2016-03-27 11:45 - 723208115 _____ C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E02-CZ-EN-dabing-2013.mkv
2016-03-27 14:47 - 2016-03-27 10:37 - 792979773 _____ C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E01-CZ-EN-dabing-2013.mkv
2016-03-24 20:02 - 2016-03-24 17:57 - 882633126 _____ C:\Users\Dell\Desktop\Dum.z.karet.Domek.z.karet.House.of.Cards.2013-S01E10.HDTV-CZ-Dabing.avi
2016-03-24 16:16 - 2016-03-20 15:29 - 1169004361 ____R C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E08-FullHD-LB-CZ-EN-dabing-2013.mkv
2016-03-24 16:14 - 2016-03-20 16:31 - 1241191695 ____R C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E09-FullHD-LB-CZ-EN-dabing-+-CZ-tit-2013.mkv
2016-03-23 17:52 - 2016-03-23 17:53 - 44251456 _____ C:\Users\Dell\Downloads\C48x_Series_WIN_UPD_V3.00.05.01.01.exe
2016-03-23 17:45 - 2016-03-23 17:46 - 25704312 _____ C:\Users\Dell\Downloads\C48x_Series_WIN_Printer_V3.00.05.01.01.zip
2016-03-23 17:44 - 2016-03-23 17:45 - 10948928 _____ (Samsung Electronics Co., Ltd.) C:\Users\Dell\Downloads\EcoDriver_V2.01.10.exe
2016-03-23 17:39 - 2016-03-23 17:39 - 03715633 _____ C:\Users\Dell\Downloads\480_EasyWirelessSetup_Mac_V1.4.24.zip
2016-03-19 11:58 - 2016-03-19 11:58 - 00000000 ____D C:\Users\Dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-03-12 15:47 - 2016-03-12 15:47 - 00002265 _____ C:\Users\Public\Desktop\Samsung Printer Diagnostics.lnk
2016-03-12 15:47 - 2016-03-12 15:47 - 00000000 ____D C:\Program Files\Common Files\Common Desktop Agent
2016-03-12 15:46 - 2016-03-12 15:48 - 00003432 _____ C:\Windows\System32\Tasks\EPM Preload
2016-03-12 15:46 - 2014-12-05 17:38 - 00580608 _____ C:\Windows\system32\SNWIAUI.dll
2016-03-12 15:46 - 2014-12-05 17:36 - 00755712 _____ C:\Windows\system32\SnMinDrv.dll
2016-03-12 15:46 - 2014-12-05 17:36 - 00155136 _____ C:\Windows\system32\SnImgFlt.dll
2016-03-12 15:46 - 2014-12-05 17:36 - 00068096 _____ C:\Windows\system32\SnErHdlr.dll
2016-03-12 15:46 - 2014-11-21 06:45 - 00355840 _____ (Samsung Electronics) C:\Windows\system32\SnWIAMUI.dll
2016-03-12 15:46 - 2014-11-21 06:45 - 00251904 _____ (TODO: <Company name>) C:\Windows\system32\SnAMPV.dll
2016-03-12 15:46 - 2014-08-19 16:37 - 00120846 _____ C:\Windows\system32\WIAEXSTR.loc
2016-03-11 21:31 - 2016-03-11 21:31 - 00000000 ____D C:\Users\Dell\AppData\Local\Samsung
2016-03-11 21:08 - 2014-12-05 17:32 - 00420352 _____ C:\Windows\system32\SaMinDrv.dll
2016-03-11 21:08 - 2014-12-05 17:31 - 00151040 _____ C:\Windows\system32\SaImgFlt.dll
2016-03-11 21:08 - 2014-12-05 17:31 - 00068096 _____ C:\Windows\system32\SaErHdlr.dll
2016-03-11 20:13 - 2016-03-11 20:13 - 00000000 ____D C:\ProgramData\SSScan
2016-03-11 20:13 - 2015-03-23 06:04 - 00158528 _____ C:\Windows\wiainst64.exe
2016-03-11 20:11 - 2012-03-14 01:58 - 00166640 _____ (TWAIN Working Group) C:\Windows\system32\TWAINDSM.dll
2016-03-11 20:11 - 2012-03-14 01:58 - 00148728 _____ (TWAIN Working Group) C:\Windows\SysWOW64\TWAINDSM.dll
2016-03-11 19:52 - 2015-11-12 14:12 - 00037201 ____N C:\Windows\SysWOW64\spddata.xml
2016-03-11 19:52 - 2015-11-05 22:02 - 00491328 ____N C:\Windows\SysWOW64\spdsvc.exe
2016-03-11 19:47 - 2015-09-11 03:23 - 01571136 ____N C:\Windows\TotalUninstaller.exe
2016-03-11 19:47 - 2014-08-08 11:29 - 00022528 _____ () C:\Windows\system32\scpd2lm.dll
2016-03-11 19:40 - 2016-03-12 15:46 - 00000000 ____D C:\Program Files\Samsung
2016-03-11 19:39 - 2016-03-23 17:58 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers
2016-03-11 19:39 - 2016-03-12 15:51 - 00000000 ____D C:\Users\Dell\AppData\Roaming\Samsung
2016-03-11 19:39 - 2016-03-12 15:50 - 00000000 ____D C:\Program Files (x86)\Samsung
2016-03-11 19:39 - 2016-03-12 15:48 - 00000000 ____D C:\ProgramData\Samsung
2016-03-11 19:39 - 2016-03-12 15:45 - 00143664 ____N C:\Windows\SysWOW64\SecUPDUtilSvc.exe
2016-03-11 19:39 - 2016-03-12 15:45 - 00143664 ____N C:\Windows\system32\SecUPDUtilSvc.exe
2016-03-11 19:39 - 2015-06-11 13:25 - 03055616 ____N C:\Windows\system32\DlgSearchEngine.dll
2016-03-11 19:39 - 2015-06-11 13:25 - 02342400 ____N C:\Windows\SysWOW64\DlgSearchEngine.dll
2016-03-11 19:39 - 2015-02-11 14:20 - 00158016 _____ C:\Windows\system32\us005ci.exe
2016-03-11 19:39 - 2014-11-25 13:15 - 00226424 _____ C:\Windows\system32\SBuySupplies.exe
2016-03-11 19:39 - 2014-11-25 13:14 - 00089600 _____ (SS) C:\Windows\system32\us005ci.dll
2016-03-11 19:39 - 2014-11-25 13:14 - 00022528 _____ () C:\Windows\system32\us005lm.dll
2016-03-09 18:36 - 2016-03-09 18:48 - 00000000 ____D C:\Users\Dell\Desktop\Mix

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-04-06 17:42 - 2013-08-06 03:19 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-04-06 17:26 - 2015-06-17 22:15 - 00000914 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-306012316-2177622386-379303590-1000UA.job
2016-04-06 17:00 - 2013-08-08 14:20 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-04-06 13:00 - 2013-08-08 14:20 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-04-06 12:54 - 2015-01-20 08:11 - 00000000 ___RD C:\Users\Dell\Dropbox
2016-04-06 12:54 - 2015-01-20 08:08 - 00000000 ____D C:\Users\Dell\AppData\Roaming\Dropbox
2016-04-06 12:53 - 2014-12-27 13:42 - 00000000 ____D C:\Users\Dell\AppData\Local\SoftonicAssistant
2016-04-06 12:53 - 2014-04-23 22:12 - 00000000 ____D C:\Users\Dell\AppData\Local\LogMeIn Hamachi
2016-04-06 12:53 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2016-04-06 12:49 - 2014-08-13 21:26 - 00000198 _____ C:\Windows\Tasks\AutoKMS.job
2016-04-06 12:49 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-04-06 11:35 - 2013-08-09 17:28 - 00000000 ____D C:\Users\Dell\AppData\Roaming\uTorrent
2016-04-06 11:35 - 2013-08-06 02:41 - 00000000 ____D C:\Users\Dell\AppData\Roaming\DAEMON Tools Lite
2016-04-06 11:32 - 2016-02-18 19:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DirectX Utilities
2016-04-06 11:32 - 2015-12-31 01:01 - 00000000 ____D C:\Windows\Minidump
2016-04-06 11:28 - 2014-04-23 22:12 - 00000926 _____ C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
2016-04-06 09:42 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2016-04-06 09:39 - 2013-08-08 14:28 - 00000000 ____D C:\Users\Dell\AppData\Roaming\Skype
2016-04-06 09:26 - 2015-06-17 22:15 - 00000862 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-306012316-2177622386-379303590-1000Core.job
2016-04-06 09:12 - 2009-07-14 07:13 - 00726316 _____ C:\Windows\system32\PerfStringBackup.INI
2016-04-05 16:18 - 2013-11-13 18:49 - 00034720 ____H (LogMeIn, Inc.) C:\Windows\system32\hamachi.sys
2016-03-31 02:04 - 2013-08-08 14:20 - 00002207 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-03-27 09:51 - 2015-07-19 23:26 - 00000000 ____D C:\Users\Dell\Desktop\bazar
2016-03-23 21:43 - 2013-08-06 03:19 - 00797376 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-03-23 21:43 - 2013-08-06 03:19 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-03-23 21:43 - 2013-08-06 03:19 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-03-12 14:17 - 2016-03-01 17:13 - 00000000 ____D C:\Users\Dell\AppData\Roaming\TP-LINK
2016-03-12 13:05 - 2014-05-25 12:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2016-03-12 13:04 - 2014-05-25 12:05 - 00154816 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2016-03-12 13:04 - 2014-05-25 12:05 - 00133168 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2016-03-12 13:04 - 2014-05-25 12:05 - 00069888 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2016-03-12 00:28 - 2009-07-14 06:45 - 00020640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-03-12 00:27 - 2009-07-14 06:45 - 00020640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-03-11 21:52 - 2013-08-06 02:22 - 00000000 ____D C:\Users\Dell\AppData\Local\VirtualStore
2016-03-11 15:12 - 2015-11-02 08:25 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk

==================== Files in the root of some directories =======

2016-02-18 19:27 - 2008-03-09 08:25 - 0000236 _____ () C:\Program Files (x86)\Common Files\dx.reg
2005-09-17 03:56 - 2014-08-14 00:30 - 0002755 ____H () C:\Users\Dell\AppData\Roaming\Delllog.dat
2014-01-18 16:06 - 2014-01-19 02:06 - 0000085 _____ () C:\Users\Dell\AppData\Roaming\WB.CFG
2014-09-02 20:44 - 2014-09-02 20:44 - 0007605 _____ () C:\Users\Dell\AppData\Local\Resmon.ResmonCfg

Some files in TEMP:
====================
C:\Users\Dell\AppData\Local\Temp\avgnt.exe


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll
[2010-11-21 05:24] - [2013-08-06 02:20] - 1008640 ____A (Microsoft Corporation) 2C353B6CE0C8D03225CAA2AF33B68D79

C:\Windows\SysWOW64\User32.dll
[2010-11-21 05:24] - [2013-08-06 02:20] - 0833024 ____A (Microsoft Corporation) 861C4346F9281DC0380DE72C8D55D6BE

C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-03-29 08:51

==================== End of FRST.txt ============================

Additional scan result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
Ran by Dell (2016-04-06 17:51:51)
Running from C:\Users\Dell\Downloads
Windows 7 Home Premium Service Pack 1 (X64) (2013-08-06 00:20:58)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-306012316-2177622386-379303590-500 - Administrator - Disabled)
Dell (S-1-5-21-306012316-2177622386-379303590-1000 - Administrator - Enabled) => C:\Users\Dell
Guest (S-1-5-21-306012316-2177622386-379303590-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-306012316-2177622386-379303590-1144 - Limited - Enabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-306012316-2177622386-379303590-1000\...\uTorrent) (Version: 3.4.5.41865 - BitTorrent Inc.)
AC3Filter 2.6.0b (HKLM-x32\...\AC3Filter_is1) (Version: 2.6.0b - Alexander Vigovsky)
Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated)
Adobe Flash Player 21 ActiveX (HKLM-x32\...\Adobe Flash Player ActiveX) (Version: 21.0.0.197 - Adobe Systems Incorporated)
Apple Application Support (32-bit) (HKLM-x32\...\{7FA9ECCF-A2DE-4DA1-BFF3-81260DBDA68F}) (Version: 4.1.2 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{691F30EB-9009-475A-B8A9-E1BF39598FD5}) (Version: 4.1.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{3540181E-340A-4E7A-B409-31663472B2F7}) (Version: 9.1.0.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{FFD1F7F1-1AC9-4BC4-A908-0686D635ABAF}) (Version: 2.1.4.131 - Apple Inc.)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.16.282 - Avira Operations GmbH & Co. KG)
Avira Launcher (HKLM-x32\...\{3b87484e-d70b-4b4f-ad59-2ae89571e2cf}) (Version: 1.1.56.9119 - Avira Operations GmbH & Co. KG)
Avira Launcher (x32 Version: 1.1.56.9119 - Avira Operations GmbH & Co. KG) Hidden
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 4.07 - Piriform)
Codec 8.3a (HKLM-x32\...\Codec_is1) (Version: - )
Common Desktop Agent (Version: 1.62.0 - OEM) Hidden
DAEMON Tools Lite (HKLM-x32\...\DAEMON Tools Lite) (Version: 4.45.4.0315 - DT Soft Ltd)
DirectX10 RC2 Pre Fix 3 (HKLM-x32\...\DirectX10 for Windows XP - Win2000, 2003,..._is1) (Version: - )
DivX Setup (HKLM-x32\...\DivX Setup) (Version: 2.6.1.84 - DivX, LLC)
DJ WICH A EKTOR TETRIS ALBUM 2012 version for Windows (HKLM-x32\...\{737A4787-76DF-5DCF-4B74-9923913EAC28}_is1) (Version: for Windows - )
Dropbox (HKU\S-1-5-21-306012316-2177622386-379303590-1000\...\Dropbox) (Version: 3.16.1 - Dropbox, Inc.)
DTS+AC3 Filter (HKLM-x32\...\DtsFilter) (Version: - )
EA SPORTS online 2004 (HKLM-x32\...\82A44D22-9452-49FB-00FB-CEC7DCAF7E23) (Version: - )
Eco Driver Pack (HKLM-x32\...\Samsung Eco Driver Pack) (Version: 2.01.10.00 (28/05/2015) - Samsung Electronics Co., Ltd.)
Extended Update (HKU\S-1-5-21-306012316-2177622386-379303590-1000\...\AffiliatedUpdate) (Version: - ) <==== ATTENTION
Fraps (HKLM-x32\...\Fraps) (Version: - )
GOM Audio (HKLM-x32\...\GomAudio) (Version: 2.0.8.1130 - Gretech Corporation)
GOM Player (HKLM-x32\...\GOM Player) (Version: 2.2.74.5237 - Gretech Corporation)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 49.0.2623.110 - Spoločnosť Google Inc.)
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
Intel(R) Graphics Media Accelerator Driver (HKLM\...\HDMI) (Version: 8.15.10.1930 - Intel Corporation)
iTunes (HKLM\...\{FBEB98F8-64E4-4FA3-A15E-4A9F42FF962E}) (Version: 12.3.2.35 - Apple Inc.)
Java 7 Update 25 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83217025FF}) (Version: 7.0.250 - Oracle)
LogMeIn Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.2.0.422 - LogMeIn, Inc.)
LogMeIn Hamachi (x32 Version: 2.2.0.422 - LogMeIn, Inc.) Hidden
LowRateVoip (HKLM-x32\...\LowRateVoip_is1) (Version: 4.13 build 722 - Finarea S.A. Switzerland)
MediaInfo 0.7.71 (HKLM\...\MediaInfo) (Version: 0.7.71 - MediaArea.net)
Microsoft .NET Framework 4 Client Profile (HKLM\...\Microsoft .NET Framework 4 Client Profile) (Version: 4.0.30319 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUS) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUSR) (Version: 14.0.4763.1000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Mozilla Firefox 38.0.5 (x86 sk) (HKLM-x32\...\Mozilla Firefox 38.0.5 (x86 sk)) (Version: 38.0.5 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 38.0.5 - Mozilla)
Need for Speed Most Wanted 2012 v1.0.0.0 (HKLM-x32\...\Need for Speed Most Wanted 2012_is1) (Version: 1.0.0.0 - EA Games)
NHL 2004 (HKLM-x32\...\{4816702A-0879-4499-0085-ACFC0F65E811}) (Version: - )
NHL™ 09 (HKLM-x32\...\{827B97A9-B347-4110-9F89-37AF2B758F94}) (Version: 2.0.1.0 - Electronic Arts)
Samsung Cloud Print (HKLM-x32\...\Samsung Cloud Print) (Version: 2.00.120:01 - Samsung Electronics Co., Ltd.)
Samsung Easy Document Creator (HKLM-x32\...\Samsung Easy Document Creator) (Version: 2.01.14 (03/04/2015) - Samsung Electronics Co., Ltd.)
Samsung Easy Printer Manager (HKLM-x32\...\Samsung Easy Printer Manager) (Version: 2.0.0.78 - Samsung Electronics Co., Ltd.)
Samsung Printer Center (HKLM-x32\...\Samsung Printer Center) (Version: 1.0.0.12 - Samsung Electronics Co., Ltd.)
Samsung Printer Diagnostics (HKLM-x32\...\Samsung Printer Diagnostics) (Version: 1.0.4.2 - Samsung Electronics Co., Ltd.)
Samsung Scan Process Machine (x32 Version: 1.03.05.26 - Samsung Electronics Co., Ltd.) Hidden
Samsung Universal Scan Driver (HKLM-x32\...\Samsung Universal Scan Driver) (Version: 3.31.81.01:10 - Samsung Electronics Co., Ltd.)
Shockwave (HKLM-x32\...\Shockwave) (Version: - )
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 8.0.0.9103 - Microsoft Corporation)
Skype™ 7.18 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.18.109 - Skype Technologies S.A.)
SNS Upload for Easy Document Creator (x32 Version: 1.0.0 - Samsung Electronics Co.,Ltd) Hidden
Softonic Assistant (HKU\S-1-5-21-306012316-2177622386-379303590-1000\...\SoftonicAssistant) (Version: 0.2.3 - Softonic International S.A.) <==== ATTENTION
Spotify (HKU\S-1-5-21-306012316-2177622386-379303590-1000\...\Spotify) (Version: 0.9.14.13.gba5645ad - Spotify AB)
Stylish Driver Pack (HKLM-x32\...\Samsung Stylish UI Pack) (Version: 1.01.74.00 (09/02/2015) - Samsung Electronics Co., Ltd.)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.13 - TeamSpeak Systems GmbH)
TeamViewer 8 (HKLM-x32\...\TeamViewer 8) (Version: 8.0.30992 - TeamViewer)
TP-LINK TL-WN821N(C)_TL-WN822N_TL-WN823N Driver (HKLM-x32\...\{852E893E-E4FD-45BB-8B17-72ADDF686974}) (Version: 1.3.1 - TP-LINK)
TP-LINK Wireless Configuration Utility (HKLM-x32\...\{319D91C6-3D44-436C-9F79-36C0D22372DC}) (Version: 1.3.1 - TP-LINK)
Uninstall Samsung Printer Software (HKLM-x32\...\TotalUninstaller) (Version: 4.0.0.12 - Samsung Electronics CO., LTD.)
Unity Web Player (HKU\S-1-5-21-306012316-2177622386-379303590-1000\...\UnityWebPlayer) (Version: 4.5.2f1 - Unity Technologies ApS)
VC80CRTRedist - 8.0.50727.6195 (x32 Version: 1.2.0 - DivX, Inc) Hidden
View User's Guide (HKLM-x32\...\View User Guide) (Version: 4.0.0.6 - )
VLC media player 2.0.8 (HKLM-x32\...\VLC media player) (Version: 2.0.8 - VideoLAN)
WinRAR 5.00 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-306012316-2177622386-379303590-1000_Classes\CLSID\{005A3A96-BAC4-4B0A-94EA-C0CE100EA736}\localserver32 -> C:\Users\Dell\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-306012316-2177622386-379303590-1000_Classes\CLSID\{ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C}\InprocServer32 -> C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-306012316-2177622386-379303590-1000_Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-306012316-2177622386-379303590-1000_Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-306012316-2177622386-379303590-1000_Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-306012316-2177622386-379303590-1000_Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-306012316-2177622386-379303590-1000_Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-306012316-2177622386-379303590-1000_Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-306012316-2177622386-379303590-1000_Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-306012316-2177622386-379303590-1000_Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B}\InprocServer32 -> C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)
CustomCLSID: HKU\S-1-5-21-306012316-2177622386-379303590-1000_Classes\CLSID\{FBC9D74C-AF55-4309-9FB2-C426E071637F}\InprocServer32 -> C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll (Dropbox, Inc.)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {201DCCE5-205E-4565-94E6-E7FA13D0ACB2} - System32\Tasks\EPM Preload => C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2DotNetHandler.exe [2015-04-24] ()
Task: {28EF65BE-B347-4C44-BD25-8CF7C133FB05} - System32\Tasks\{94E56536-3110-4944-B840-7693ACBAD61F} => pcalua.exe -a "C:\Users\Dell\Downloads\IE 6.0 Full\IE6SETUP.EXE" -d "C:\Users\Dell\Downloads\IE 6.0 Full"
Task: {33D92A56-4E69-4536-BBD6-6916E7D1D9D5} - System32\Tasks\AutoKMS => C:\Windows\AutoKMS.exe
Task: {3C2B4D01-E39E-4C6F-9D9A-6275E6F5BF7D} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-306012316-2177622386-379303590-1000Core => C:\Users\Dell\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17] (Dropbox, Inc.)
Task: {44F49977-6274-412B-B7BC-71159DE0C14D} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2015-08-27] (Apple Inc.)
Task: {68B4FC16-C6AA-4458-A2EA-F7E6DB6C3950} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated)
Task: {841E52D7-A9EC-40F5-9ED6-9D022B06BFDF} - System32\Tasks\DropboxUpdateTaskUserS-1-5-21-306012316-2177622386-379303590-1000UA => C:\Users\Dell\AppData\Local\Dropbox\Update\DropboxUpdate.exe [2015-06-17] (Dropbox, Inc.)
Task: {952A9ED8-1C4B-4759-8E5C-6724E5B407CA} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2013-10-22] (Piriform Ltd)
Task: {B1E8BC27-760A-406F-86F0-D12B2820E03F} - System32\Tasks\{7BC3839E-4CEB-49B6-8B5A-3EE49F1F241B} => Chrome.exe hxxp://ui.skype.com/ui/0/7.12.85.101/sk/abandoninstall?page=tsProgressBar
Task: {BE4B8885-0888-40FA-9421-473A96EDC60D} - System32\Tasks\{3761ABED-CA13-46D4-A853-759CA0A5BB3E} => C:\Users\Dell\Downloads\version 8.00_IE8-WindowsXP-x86-ENU.exe [2013-11-07] (Microsoft Corporation)
Task: {C045DD8A-4287-4C35-9BF9-E1479CF13B3B} - System32\Tasks\{903CAF7D-F86D-499A-9E88-933529AD8A1E} => C:\Program Files (x86)\EA Sports\NHL 2004\nhl2004.exe [2013-11-07] ()
Task: {C105749B-79B6-4636-A19C-13211B4972B7} - System32\Tasks\{0C2216C0-48DD-4269-9B24-264CBAB9CADF} => C:\Users\Dell\Downloads\version 8.00_IE8-WindowsXP-x86-ENU.exe [2013-11-07] (Microsoft Corporation)
Task: {D0114290-EC9D-406D-BEB0-22FE202E12A7} - System32\Tasks\Adobe Flash Player Updater => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-03-23] (Adobe Systems Incorporated)
Task: {E2A614A2-8B08-4DFC-ABC2-B4AD2C6F9C16} - System32\Tasks\ASP => C:\Program Files (x86)\Tuneup Pro\systweakasp.exe
Task: {EB53CBDA-0B71-4CED-BB5B-C946DE05A7BB} - System32\Tasks\{C58E9CEC-D4AC-4588-BFA1-308AE5E45C50} => pcalua.exe -a "C:\Program Files\AVAST Software\Avast\aswRunDll.exe" -c "C:\Program Files\AVAST Software\Avast\Setup\setiface.dll" RunSetup
Task: {EBD684AA-0292-4B70-8476-2398D7FDD1D3} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)
Task: {FD3983C9-9A66-4ECA-ACAF-2F78B554835B} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2015-08-27] (Google Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\Adobe Flash Player Updater.job => C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\Windows\Tasks\AutoKMS.job => C:\Windows\AutoKMS.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-306012316-2177622386-379303590-1000Core.job => C:\Users\Dell\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-306012316-2177622386-379303590-1000UA.job => C:\Users\Dell\AppData\Local\Dropbox\Update\DropboxUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2016-03-11 19:47 - 2014-08-08 11:29 - 00022528 _____ () C:\Windows\System32\scpd2lm.dll
2016-03-11 19:39 - 2014-11-25 13:14 - 00022528 _____ () C:\Windows\System32\us005lm.dll
2010-01-30 03:40 - 2010-01-30 03:40 - 04254560 _____ () C:\Program Files\Common Files\Microsoft Shared\OFFICE14\Cultures\OFFICE.ODF
2016-03-01 17:13 - 2014-04-08 10:43 - 00847360 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
2014-09-08 14:39 - 2014-09-08 14:39 - 00464608 _____ () C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
2014-09-08 14:38 - 2014-09-08 14:38 - 00051200 _____ () C:\Program Files\Common Files\Common Desktop Agent\CDASrvPS.dll
2015-02-13 04:20 - 2015-02-13 04:20 - 00085832 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-12-17 19:38 - 2015-12-17 19:38 - 01328912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2016-03-11 19:52 - 2015-11-05 22:02 - 00491328 ____N () C:\Windows\SysWOW64\spdsvc.exe
2015-09-02 12:06 - 2015-09-02 12:06 - 00898352 _____ () C:\Program Files\Samsung\Samsung Cloud Print PC Agent\SCP_Svc.exe
2016-03-11 19:39 - 2016-03-12 15:45 - 00143664 ____N () C:\Windows\SysWOW64\SecUPDUtilSvc.exe
2016-03-12 15:46 - 2014-12-05 17:36 - 00755712 _____ () C:\Windows\system32\SnMinDrv.dll
2015-01-05 14:01 - 2014-08-18 17:08 - 00087552 ____N () C:\Windows\system32\SSDEVM64.DLL
2016-03-01 17:13 - 2014-04-08 10:42 - 01411072 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\nicLan.dll
2016-03-01 17:13 - 2014-04-08 10:42 - 00193024 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\DC_WFF.dll
2016-03-01 17:13 - 2014-04-08 10:42 - 00298496 _____ () C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\WJRtl.dll
2015-12-11 14:29 - 2016-02-23 20:19 - 00034768 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\_multiprocessing.pyd
2016-03-19 11:57 - 2016-02-23 20:20 - 00019408 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\faulthandler.pyd
2016-03-19 11:57 - 2016-02-23 20:19 - 00116688 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\pywintypes27.dll
2015-12-11 14:29 - 2016-02-23 20:19 - 00093640 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\_ctypes.pyd
2015-12-11 14:29 - 2016-02-23 20:19 - 00018376 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\select.pyd
2015-12-11 14:29 - 2016-03-12 02:18 - 00019760 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\tornado.speedups.pyd
2015-12-11 14:29 - 2016-02-23 20:21 - 00105928 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\win32api.pyd
2016-03-19 11:57 - 2016-02-23 20:19 - 00392144 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\pythoncom27.dll
2015-12-11 14:29 - 2016-03-12 02:18 - 00381752 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\win32com.shell.shell.pyd
2015-12-11 14:29 - 2016-02-23 20:19 - 00692688 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\unicodedata.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 00020816 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._constant_time.pyd
2015-12-11 14:29 - 2016-02-23 20:20 - 00112592 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\_cffi_backend.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 01682760 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._openssl.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 00020808 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\cryptography.hazmat.bindings._padding.pyd
2015-12-11 14:29 - 2016-03-12 02:18 - 00020800 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\_cffi_python_x66cf7a7cx17a72769.pyd
2015-12-11 14:29 - 2016-03-12 02:18 - 00021840 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\_cffi_unicode_environ_win32_x8bf8e68bx9968e850.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 00038696 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\fastpath.pyd
2016-03-19 11:57 - 2016-02-23 20:21 - 00020936 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\mmapfile.pyd
2015-12-11 14:29 - 2016-02-23 20:21 - 00024528 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\win32event.pyd
2015-12-11 14:29 - 2016-02-23 20:21 - 00114640 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\win32security.pyd
2015-12-11 14:29 - 2016-02-23 20:21 - 00124880 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\win32file.pyd
2016-02-12 18:45 - 2016-03-12 02:18 - 00021832 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\_cffi_pywin_kernel32_x64d8f881xc8c369be.pyd
2015-12-11 14:29 - 2016-02-23 20:21 - 00024016 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\win32clipboard.pyd
2015-12-11 14:29 - 2016-02-23 20:21 - 00175560 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\win32gui.pyd
2015-12-11 14:29 - 2016-02-23 20:21 - 00030160 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\win32pipe.pyd
2015-12-11 14:29 - 2016-02-23 20:21 - 00043472 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\win32process.pyd
2015-12-11 14:29 - 2016-02-23 20:21 - 00028616 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\win32ts.pyd
2015-12-11 14:29 - 2016-02-23 20:21 - 00048592 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\win32service.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 00026456 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\dropbox.infinite.win.compiled._driverinstallation.pyd
2015-12-11 14:29 - 2016-02-23 20:21 - 00057808 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\win32evtlog.pyd
2015-12-11 14:29 - 2016-02-23 20:21 - 00024016 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\win32profile.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 00117056 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\breakpad.client.windows.handler.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 00024392 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\librsyncffi.compiled._librsyncffi.pyd
2016-03-19 11:57 - 2016-02-23 20:21 - 00036296 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\librsync.dll
2015-12-11 14:29 - 2016-03-12 02:18 - 00023376 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\winscreenshot.compiled._CaptureScreenshot.pyd
2015-12-11 14:29 - 2016-02-23 20:19 - 00134608 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\_elementtree.pyd
2016-03-19 11:57 - 2016-02-23 20:19 - 00134088 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\pyexpat.pyd
2016-03-19 11:57 - 2016-02-23 20:20 - 00240584 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\jpegtran.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 00052024 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\psutil._psutil_windows.pyd
2016-02-12 18:45 - 2016-03-12 02:18 - 00020800 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\winffi.iphlpapi._winffi_iphlpapi.pyd
2016-02-12 18:45 - 2016-03-12 02:18 - 00021824 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\winffi.kernel32._winffi_kernel32.pyd
2016-02-12 18:45 - 2016-03-12 02:18 - 00019776 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\winffi.winerror._winffi_winerror.pyd
2016-02-12 18:45 - 2016-03-12 02:18 - 00020800 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\winffi.wininet._winffi_wininet.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 00020280 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\cpuid.compiled._cpuid.pyd
2015-12-11 14:29 - 2016-02-23 20:21 - 00350152 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\winxpgui.pyd
2016-02-12 18:45 - 2016-03-12 02:18 - 00022352 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\winverifysignature.compiled._VerifySignature.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 00084792 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\dropbox_sqlite_ext.DLL
2016-03-19 11:57 - 2016-03-12 02:18 - 01826096 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\PyQt5.QtCore.pyd
2015-12-11 14:29 - 2016-02-23 20:20 - 00083912 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\sip.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 03928880 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\PyQt5.QtWidgets.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 01971504 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\PyQt5.QtGui.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 00531248 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\PyQt5.QtNetwork.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 00132912 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKit.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 00223544 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\PyQt5.QtWebKitWidgets.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 00207672 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\PyQt5.QtPrintSupport.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 00158008 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\PyQt5.QtWebEngineWidgets.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 00042808 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\PyQt5.QtWebChannel.pyd
2016-03-19 11:57 - 2016-02-23 20:23 - 00017864 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\libEGL.dll
2016-03-19 11:57 - 2016-02-23 20:23 - 01631184 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\libGLESv2.dll
2015-12-11 14:29 - 2016-03-12 02:18 - 00024904 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\_cffi_wpad_proxy_win_x752e3d61xdcfdcc84.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 00546096 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\PyQt5.QtQuick.pyd
2016-03-19 11:57 - 2016-03-12 02:18 - 00357680 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\PyQt5.QtQml.pyd
2015-03-04 23:45 - 2016-02-23 20:25 - 00697304 _____ () C:\Users\Dell\AppData\Roaming\Dropbox\bin\QtQuick\Controls\qtquickcontrolsplugin.dll
2016-03-11 19:39 - 2015-06-11 13:25 - 03055616 ____N () C:\Windows\system32\DlgSearchEngine.dll
2010-01-30 03:41 - 2010-01-30 03:41 - 04254560 _____ () C:\Program Files (x86)\Common Files\microsoft shared\OFFICE14\Cultures\OFFICE.ODF

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Hamachi2Svc => ""="Service"

==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2009-07-14 04:34 - 2009-06-10 23:00 - 00000824 ____A C:\Windows\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-306012316-2177622386-379303590-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\Dell\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

MSCONFIG\startupreg: Adobe ARM => "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
MSCONFIG\startupreg: BCSSync => "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
MSCONFIG\startupreg: DAEMON Tools Lite => "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
MSCONFIG\startupreg: DivXMediaServer => C:\Program Files (x86)\DivX\DivX Media Server\DivXMediaServer.exe
MSCONFIG\startupreg: DivXUpdate => "C:\Program Files (x86)\DivX\DivX Update\DivXUpdate.exe" /CHECKNOW
MSCONFIG\startupreg: iTunesHelper => "C:\Program Files\iTunes\iTunesHelper.exe"
MSCONFIG\startupreg: LogMeIn Hamachi Ui => "C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe" --auto-start
MSCONFIG\startupreg: Skype => "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
MSCONFIG\startupreg: Spotify Web Helper => "C:\Users\Dell\AppData\Roaming\Spotify\Data\SpotifyWebHelper.exe"
MSCONFIG\startupreg: SunJavaUpdateSched => "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
MSCONFIG\startupreg: uTorrent => "C:\Users\Dell\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{DEAA42C4-B9A7-4A54-AC6F-12F2B4B5669B}] => (Allow) C:\Program Files (x86)\Skype\Phone\Skype.exe
FirewallRules: [TCP Query User{BB2DCC7D-1BC8-48AE-A2B7-3E23964F789C}C:\program files (x86)\lowratevoip.com\lowratevoip\lowratevoip.exe] => (Allow) C:\program files (x86)\lowratevoip.com\lowratevoip\lowratevoip.exe
FirewallRules: [UDP Query User{46B463C3-CD02-4FBA-A88A-A279E2B53A8B}C:\program files (x86)\lowratevoip.com\lowratevoip\lowratevoip.exe] => (Allow) C:\program files (x86)\lowratevoip.com\lowratevoip\lowratevoip.exe
FirewallRules: [{9D3EE8DD-8D53-45EE-A29A-3A7FC118C0CE}] => (Allow) C:\Users\Dell\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{5B4CD78F-5E4D-452C-AB91-D70B4F08348F}] => (Allow) C:\Users\Dell\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [TCP Query User{4914AAB6-E4C8-48F2-8EFA-8B10D4C1E1EF}C:\program files (x86)\ea sports\nhl 09\nhl2009.exe] => (Allow) C:\program files (x86)\ea sports\nhl 09\nhl2009.exe
FirewallRules: [UDP Query User{59C33761-D42F-4634-967D-73AC1A457389}C:\program files (x86)\ea sports\nhl 09\nhl2009.exe] => (Allow) C:\program files (x86)\ea sports\nhl 09\nhl2009.exe
FirewallRules: [{9F59E89D-B955-4637-B569-80517AAB5D2E}] => (Block) C:\program files (x86)\ea sports\nhl 09\nhl2009.exe
FirewallRules: [{65EA6077-5390-4B68-A0AD-DB18647039F1}] => (Block) C:\program files (x86)\ea sports\nhl 09\nhl2009.exe
FirewallRules: [TCP Query User{96A51B06-FA7F-4A65-BDD3-EADBB567C020}C:\program files (x86)\ea sports\nhl 2004\nhl2004.exe] => (Allow) C:\program files (x86)\ea sports\nhl 2004\nhl2004.exe
FirewallRules: [UDP Query User{938AC101-B34E-4E8D-A5C0-DF78228253DD}C:\program files (x86)\ea sports\nhl 2004\nhl2004.exe] => (Allow) C:\program files (x86)\ea sports\nhl 2004\nhl2004.exe
FirewallRules: [{5A585B96-0783-4135-9E0A-6FE41627C665}] => (Block) C:\program files (x86)\ea sports\nhl 2004\nhl2004.exe
FirewallRules: [{6E2D4C6F-6594-41D1-9DF2-28F71C2CB527}] => (Block) C:\program files (x86)\ea sports\nhl 2004\nhl2004.exe
FirewallRules: [{E3AB2934-3156-450A-B3E3-5B82151C41E7}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe
FirewallRules: [{ECE860DE-3A97-4C01-9268-BDA2CFA1CBBD}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe
FirewallRules: [{8025E508-83A5-41A8-9329-65CF853B2F18}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
FirewallRules: [{B18C600E-BBE3-49C2-A8DE-6D5ED6C35CBE}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
FirewallRules: [{19E6564E-A3E0-4B7E-9E4F-7D0D21D56318}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{C7A73A4B-8BCA-4869-B68B-ED9B129CE962}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{3FE12553-48D5-45D8-92C6-29EC44427185}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{FC5BC1D6-BB26-4057-A0DC-257B54BB02B9}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{7535A9FC-6814-476A-80CB-EBCB73790CC8}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe
FirewallRules: [{2BCE74F0-6B4D-4361-A8B2-7EE8A0C761C7}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer.exe
FirewallRules: [{48E1AB0B-10D2-43F9-8875-7458A5B5279C}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
FirewallRules: [{5879A6EF-0B60-492D-9157-49598FF402E9}] => (Allow) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
FirewallRules: [{020BA9CF-C954-402E-BD15-0723FE6052E8}] => (Allow) C:\Users\Dell\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [{DBC08B20-F58B-494D-985C-8BAAF3581E46}] => (Allow) C:\Users\Dell\AppData\Roaming\Dropbox\bin\Dropbox.exe
FirewallRules: [TCP Query User{D8994AA1-7320-4E67-96CD-1A29A482FEEC}C:\users\dell\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\dell\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [UDP Query User{A2B445C8-6574-48D2-AFFA-69938CE695FD}C:\users\dell\appdata\roaming\dropbox\bin\dropbox.exe] => (Block) C:\users\dell\appdata\roaming\dropbox\bin\dropbox.exe
FirewallRules: [{31BD9C73-B115-42AE-88BA-92B7D0D202B4}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{2FABEDE9-B70F-49F6-9548-F2F8E295D089}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{FE9AD99F-3615-407F-A5CE-00217280D57D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{E71BC3E6-4C60-4190-AC5B-4B6A1DBFEA22}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{4153F01F-08C5-4906-BC95-2CD1CFB8E700}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{BCCBD8E8-DC0B-4BE0-8B2C-F43FC01B1ABB}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{FDB5B8FE-21C1-4C4F-A85B-D783D45EF2C5}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{EE0B63B6-9CE4-4085-BCC9-B4041BBC121C}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Printer Center\SamsungPrinterCenter.exe
FirewallRules: [{7FB88400-CE67-4832-9626-F4A90ABF0FA1}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [TCP Query User{0649A786-21A0-48AD-846D-35DE6F5AB9B8}C:\program files (x86)\samsung\easy printer manager\easyprintermanagerv2.exe] => (Allow) C:\program files (x86)\samsung\easy printer manager\easyprintermanagerv2.exe
FirewallRules: [UDP Query User{A71BA44A-B6A3-4FBC-8E49-33A4DA8C9700}C:\program files (x86)\samsung\easy printer manager\easyprintermanagerv2.exe] => (Allow) C:\program files (x86)\samsung\easy printer manager\easyprintermanagerv2.exe
FirewallRules: [{9C5B4838-6DA0-429E-8068-0D9B271550DC}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Printer Center\SamsungPrinterCenter.exe
FirewallRules: [{E5160F41-A1F7-4343-8688-3461B717E85B}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ScanCDLM.exe
FirewallRules: [{F5CBAB6C-B939-4B6D-A53C-AC6EE771EAB2}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EasyPrinterManagerV2.exe
FirewallRules: [{F91289BD-CF2C-46E9-8EE5-29DBC2B0DBA1}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\OrderSupplies.exe
FirewallRules: [{45FF2856-B44D-485E-900E-BABF7E2AE27A}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2AlertList.exe
FirewallRules: [{0A80819A-9510-416C-88C1-1289C3C79C4C}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2Migrator.exe
FirewallRules: [{DD8AA113-3D2C-432A-BBB4-43B21849E47C}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{1B98331A-69D6-46AC-A5A1-AC53186ABA69}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDCApp.exe
FirewallRules: [{D4243544-3334-4A2F-A344-B5B494C6DBE3}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDCApp.exe
FirewallRules: [{37D2EBE1-17DA-4D7E-82AD-9ED25758F547}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe
FirewallRules: [{D91A2559-8CE8-4F11-80C5-7B4B3FACA87D}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe
FirewallRules: [{D62BA5CB-D164-4ACF-BFFF-DD47D21A7B68}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{A561426E-F6A0-4745-85AC-6BAEE081F56B}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{B49B06E3-47B7-4F3A-8F06-AD494259D08E}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{3D0022C9-C604-4327-A00B-431180F32C49}] => (Allow) C:\Windows\system32\spool\DRIVERS\x64\3\scpd2.exe
FirewallRules: [{5BB479E3-3AF6-41D0-935D-7895EDB6EE9C}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================


==================== Faulty Device Manager Devices =============


==================== Event log errors: =========================

Application errors:
==================
Error: (04/06/2016 12:51:10 PM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (04/06/2016 12:49:46 PM) (Source: Winlogon) (EventID: 4103) (User: )
Description: Windows license activation failed. Error 0x80070005.

Error: (04/06/2016 11:27:13 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (04/06/2016 11:25:37 AM) (Source: Winlogon) (EventID: 4103) (User: )
Description: Windows license activation failed. Error 0x80070005.

Error: (04/06/2016 11:22:25 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003

Error: (04/06/2016 11:18:48 AM) (Source: Winlogon) (EventID: 4103) (User: )
Description: Windows license activation failed. Error 0x80070005.

Error: (04/06/2016 09:20:36 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: splwow64.exe, version: 6.1.7601.17514, time stamp: 0x4ce7b4c8
Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521eaf24
Exception code: 0xc015000f
Fault offset: 0x000000000006fcec
Faulting process id: 0x11b8
Faulting application start time: 0xsplwow64.exe0
Faulting application path: splwow64.exe1
Faulting module path: splwow64.exe2
Report Id: splwow64.exe3

Error: (04/06/2016 09:19:47 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: splwow64.exe, version: 6.1.7601.17514, time stamp: 0x4ce7b4c8
Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521eaf24
Exception code: 0xc015000f
Fault offset: 0x000000000006fcec
Faulting process id: 0x2b14
Faulting application start time: 0xsplwow64.exe0
Faulting application path: splwow64.exe1
Faulting module path: splwow64.exe2
Report Id: splwow64.exe3

Error: (04/06/2016 09:12:31 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Faulting application name: splwow64.exe, version: 6.1.7601.17514, time stamp: 0x4ce7b4c8
Faulting module name: ntdll.dll, version: 6.1.7601.18247, time stamp: 0x521eaf24
Exception code: 0xc015000f
Fault offset: 0x000000000006fcec
Faulting process id: 0x2698
Faulting application start time: 0xsplwow64.exe0
Faulting application path: splwow64.exe1
Faulting module path: splwow64.exe2
Report Id: splwow64.exe3

Error: (04/05/2016 07:31:36 AM) (Source: WinMgmt) (EventID: 10) (User: )
Description: //./root/CIMV2SELECT * FROM __InstanceModificationEvent WITHIN 60 WHERE TargetInstance ISA "Win32_Processor" AND TargetInstance.LoadPercentage > 990x80041003


System errors:
=============
Error: (04/06/2016 01:49:57 PM) (Source: volsnap) (EventID: 36) (User: )
Description: The shadow copies of volume C: were aborted because the shadow copy storage could not grow due to a user imposed limit.

Error: (04/06/2016 12:49:45 PM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has failed to start.

Module Path: C:\Windows\system32\Rtlihvs.dll
Error Code: 126

Error: (04/06/2016 11:46:13 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has failed to start.

Module Path: C:\Windows\system32\Rtlihvs.dll
Error Code: 126

Error: (04/06/2016 11:29:00 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: The LogMeIn Hamachi Tunneling Engine service is marked as an interactive service. However, the system is configured to not allow interactive services. This service may not function properly.

Error: (04/06/2016 11:26:45 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Avira Service Host service to connect.

Error: (04/06/2016 11:25:36 AM) (Source: Microsoft-Windows-WLAN-AutoConfig) (EventID: 10000) (User: NT AUTHORITY)
Description: WLAN Extensibility Module has failed to start.

Module Path: C:\Windows\system32\Rtlihvs.dll
Error Code: 126

Error: (04/06/2016 11:24:44 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: The Windows Update service terminated with the following error:
%%-2147467243

Error: (04/06/2016 11:20:47 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: The LogMeIn Hamachi Tunneling Engine service failed to start due to the following error:
%%1053

Error: (04/06/2016 11:20:47 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the LogMeIn Hamachi Tunneling Engine service to connect.

Error: (04/06/2016 11:20:16 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: A timeout was reached (30000 milliseconds) while waiting for the Avira Service Host service to connect.


==================== Memory info ===========================

Processor: Intel(R) Core(TM)2 Duo CPU E7400 @ 2.80GHz
Percentage of memory in use: 44%
Total physical RAM: 4085.18 MB
Available physical RAM: 2254.93 MB
Total Virtual: 8168.53 MB
Available Virtual: 6117.63 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:148.85 GB) (Free:73.9 GB) NTFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (MBR Code: Windows 7 or 8) (Size: 149.1 GB) (Disk ID: 50F4E6BB)
Partition 1: (Active) - (Size=204 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=148.8 GB) - (Type=07 NTFS)

==================== End of Addition.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119427
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomaleny pc, prosim o kontrolu

#4 Příspěvek od Rudy »

Teď spusťte tuto utilitu:

Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Avjeckin
Návštěvník
Návštěvník
Příspěvky: 42
Registrován: 01 zář 2014 20:20

Re: Spomaleny pc, prosim o kontrolu

#5 Příspěvek od Avjeckin »

# AdwCleaner v5.109 - Logfile created 06/04/2016 at 20:25:59
# Updated 04/04/2016 by Xplode
# Database : 2016-04-05.1 [Server]
# Operating system : Windows 7 Home Premium Service Pack 1 (x64)
# Username : Dell - DELL-PC
# Running from : C:\Users\Dell\Downloads\adwcleaner_5.109.exe
# Option : Clean
# Support : http://toolslib.net/forum

***** [ Services ] *****


***** [ Folders ] *****

[-] Folder Deleted : C:\Program Files (x86)\Codec
[-] Folder Deleted : C:\ProgramData\apn
[-] Folder Deleted : C:\ProgramData\2b7d046b4a97bc39
[#] Folder Deleted : C:\ProgramData\Application Data\apn
[#] Folder Deleted : C:\ProgramData\Application Data\2b7d046b4a97bc39
[-] Folder Deleted : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Codec
[-] Folder Deleted : C:\Users\Dell\AppData\Local\SoftonicAssistant
[-] Folder Deleted : C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Default\Extensions\fcfenmboojpjinhpgggodefccipikbpd
[-] Folder Deleted : C:\Users\Dell\AppData\Local\VirtualStore\Program Files (x86)\BearShare Applications
[-] Folder Deleted : C:\Users\Dell\AppData\Roaming\IHlpr
[-] Folder Deleted : C:\Users\Dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FLV Player
[#] Folder Deleted : C:\Windows\SysNative\Tasks\ASP

***** [ Files ] *****

[-] File Deleted : C:\END
[-] File Deleted : C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_mppnoffgpafgpgbaigljliadgbnhljfl_0.localstorage
[-] File Deleted : C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_nafaimnnclfjfedmmabolbppcngeolgf_0.localstorage
[-] File Deleted : C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_fcfenmboojpjinhpgggodefccipikbpd_0.localstorage
[-] File Deleted : C:\Users\Dell\Desktop\Live PC Help.lnk

***** [ DLLs ] *****


***** [ Shortcuts ] *****


***** [ Scheduled tasks ] *****

[-] Task Deleted : ASP

***** [ Registry ] *****

[-] Key Deleted : HKLM\SOFTWARE\Classes\Applications\iLividSetup-r362-n-bc.exe
[-] Key Deleted : HKLM\SOFTWARE\Classes\Applications\iLividSetup-r394-n-bc.exe
[-] Key Deleted : HKLM\SOFTWARE\Classes\Applications\iLividSetup-r420-n-bc.exe
[-] Key Deleted : HKLM\SOFTWARE\Classes\Applications\iLividSetup-r429-n-bc (3).exe
[-] Key Deleted : HKLM\SOFTWARE\Classes\Applications\iLividSetup-r429-n-bc.exe
[-] Key Deleted : HKLM\SOFTWARE\Classes\Applications\iLividSetup-r706-n-bc.exe
[-] Key Deleted : HKCU\Software\Google\Chrome\Extensions\fcfenmboojpjinhpgggodefccipikbpd
[-] Key Deleted : HKCU\Software\AffiliatedUpdate
[-] Key Deleted : HKCU\Software\Softonic
[-] Key Deleted : HKCU\Software\Tune
[-] Key Deleted : HKLM\SOFTWARE\SmdmF
[-] Key Deleted : HKLM\SOFTWARE\Tune
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\AffiliatedUpdate
[-] Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Uninstall\SoftonicAssistant
[-] Key Deleted : [x64] HKLM\SOFTWARE\DivX\Install\Setup\WizardLayout\ConduitToolbar
[-] Data Restored : HKCU\Software\Microsoft\Internet Explorer\Main [Secondary Start Pages]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Restored : HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
[-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Search_URL]
[-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Default_Page_URL]
[-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Start Page]
[-] Data Restored : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\Main [Search Page]
[-] Data Restored : HKU\S-1-5-21-306012316-2177622386-379303590-1000\Software\Microsoft\Internet Explorer\Main [Secondary Start Pages]
[-] Key Deleted : HKCU\Software\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2476}
[-] Key Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2476}
[-] Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{9BB47C17-9C68-4BB3-B188-DD9AF0FD2476}
[-] Value Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Run [SoftonicAssistant]
[#] Value Deleted : HKU\S-1-5-21-306012316-2177622386-379303590-1000\Software\Microsoft\Windows\CurrentVersion\Run [SoftonicAssistant]

***** [ Web browsers ] *****

[-] [C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : uk.search.yahoo.com
[-] [C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : uk.ask.com
[-] [C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Default\Web Data] [Search Provider] Deleted : ask.com
[-] [C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : fcfenmboojpjinhpgggodefccipikbpd
[-] [C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : mppnoffgpafgpgbaigljliadgbnhljfl
[-] [C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Default\Secure Preferences] [Extension] Deleted : nafaimnnclfjfedmmabolbppcngeolgf

*************************

:: "Tracing" keys deleted
:: Winsock settings cleared

*************************

C:\AdwCleaner\AdwCleaner[C1].txt - [5470 bytes] - [06/04/2016 20:25:59]
C:\AdwCleaner\AdwCleaner[R0].txt - [16609 bytes] - [26/05/2014 08:55:04]
C:\AdwCleaner\AdwCleaner[R1].txt - [1267 bytes] - [02/09/2014 20:37:57]
C:\AdwCleaner\AdwCleaner[S0].txt - [13894 bytes] - [26/05/2014 08:56:32]
C:\AdwCleaner\AdwCleaner[S1].txt - [7904 bytes] - [02/09/2014 20:38:52]

########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [5837 bytes] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119427
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomaleny pc, prosim o kontrolu

#6 Příspěvek od Rudy »

Dejte nový log FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Avjeckin
Návštěvník
Návštěvník
Příspěvky: 42
Registrován: 01 zář 2014 20:20

Re: Spomaleny pc, prosim o kontrolu

#7 Příspěvek od Avjeckin »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
Ran by Dell (administrator) on DELL-PC (07-04-2016 09:18:22)
Running from C:\Users\Dell\Downloads
Loaded Profiles: Dell (Available Profiles: Dell)
Platform: Windows 7 Home Premium Service Pack 1 (X64) Language: English (United States)
Internet Explorer Version 8 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Intel Corporation) C:\Windows\System32\hkcmd.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Intel Corporation) C:\Windows\System32\igfxsrvc.exe
(Intel Corporation) C:\Windows\System32\igfxpers.exe
() C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe
(Dropbox, Inc.) C:\Users\Dell\AppData\Roaming\Dropbox\bin\Dropbox.exe
() C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe
() C:\Windows\SysWOW64\spdsvc.exe
() C:\Program Files\Samsung\Samsung Cloud Print PC Agent\SCP_Svc.exe
() C:\Windows\SysWOW64\SecUPDUtilSvc.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\Version8\TeamViewer_Service.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe
(LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\Launcher\Avira.Systray.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] ()
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [807392 2016-03-12] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [Avira SystrayStartTrigger] => C:\Program Files (x86)\Avira\Launcher\Avira.SystrayStartTrigger.exe [66328 2016-01-27] (Avira Operations GmbH & Co. KG)
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [5565448 2016-04-05] (LogMeIn Inc.)
Winlogon\Notify\igfxcui: C:\Windows\system32\igfxdev.dll (Intel Corporation)
HKU\S-1-5-21-306012316-2177622386-379303590-1000\...\Run: [Dropbox Update] => C:\Users\Dell\AppData\Local\Dropbox\Update\DropboxUpdate.exe [134512 2015-06-17] (Dropbox, Inc.)
HKU\S-1-5-21-306012316-2177622386-379303590-1000\...\Run: [STUISpeedLauncher] => C:\Program Files\Samsung\Stylish UI Pack\TouchBasedUI.exe [411136 2015-02-09] ()
HKU\S-1-5-21-306012316-2177622386-379303590-1000\...\MountPoints2: {286bcc1a-fe2e-11e2-9bed-001ec97ea07e} - F:\Setup.exe
HKU\S-1-5-18\...\Run: [AviraSpeedup] => "C:\Program Files (x86)\Avira\AviraSpeedup\avira_system_speedup.exe" -autorun
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt64.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt1] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt2] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt3] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt4] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt5] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt6] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt7] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt8] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Users\Dell\AppData\Roaming\Dropbox\bin\DropboxExt.34.dll [2016-03-12] (Dropbox, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\TP-LINK Wireless Configuration Utility.lnk [2016-03-01]
ShortcutTarget: TP-LINK Wireless Configuration Utility.lnk -> C:\Program Files (x86)\TP-LINK\TP-LINK Wireless Configuration Utility\TWCU.exe ()
Startup: C:\Users\Dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Dropbox.lnk [2016-03-19]
ShortcutTarget: Dropbox.lnk -> C:\Users\Dell\AppData\Roaming\Dropbox\bin\Dropbox.exe (Dropbox, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{708D56FA-90DB-445A-B978-BDEF2D02B9F7}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{B5D6B10E-C7FA-4367-B750-1180B347DB8C}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{D71D5A7E-2888-41D1-80E7-C915573BEAA3}: [DhcpNameServer] 192.168.42.129

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
HKU\S-1-5-21-306012316-2177622386-379303590-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.msn.com/en-gb/?pc=UP97&ocid=UP97DHP
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-306012316-2177622386-379303590-1000 -> DefaultScope {893D23B2-B8DB-4EBA-B49D-F6A402697030} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97 ... -SearchBox
SearchScopes: HKU\S-1-5-21-306012316-2177622386-379303590-1000 -> {893D23B2-B8DB-4EBA-B49D-F6A402697030} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97 ... -SearchBox
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2010-03-25] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2013-08-06] (Oracle Corporation)
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2010-02-28] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2013-08-06] (Oracle Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll [2014-05-02] (Skype Technologies)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
Filter: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll [2014-05-28] (Microsoft Corporation)
Filter-x32: deflate - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2014-05-28] (Microsoft Corporation)
Filter: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\System32\urlmon.dll [2014-05-28] (Microsoft Corporation)
Filter-x32: gzip - {8f6b0360-b80d-11d0-a9b3-006097942311} - C:\Windows\SysWOW64\urlmon.dll [2014-05-28] (Microsoft Corporation)

FireFox:
========
FF ProfilePath: C:\Users\Dell\AppData\Roaming\Mozilla\Firefox\Profiles\6eg4orbx.default
FF Plugin: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files\DivX\DivX OVS Helper\npovshelper.dll [2011-06-20] (DivX, LLC.)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~2\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-10-14] ()
FF Plugin-x32: @divx.com/DivX VOD Helper,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX OVS Helper\npovshelper.dll [2011-06-20] (DivX, LLC.)
FF Plugin-x32: @divx.com/DivX Web Player Plug-In,version=1.0.0 -> C:\Program Files (x86)\DivX\DivX Web Player\npdivx32.dll [2013-08-28] (DivX, LLC)
FF Plugin-x32: @java.com/DTPlugin,version=10.25.2 -> C:\Windows\SysWOW64\npDeployJava1.dll [2013-08-06] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=10.25.2 -> C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll [2013-08-06] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-02-02] (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2013-07-31] (VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-306012316-2177622386-379303590-1000: @unity3d.com/UnityPlayer,version=1.0 -> C:\Users\Dell\AppData\LocalLow\Unity\WebPlayer\loader\npUnity3D32.dll [2014-07-07] (Unity Technologies ApS)
FF Plugin HKU\S-1-5-21-306012316-2177622386-379303590-1000: BearSharePlugin -> C:\Program Files (x86)\BearShare Applications\BearShare\npBearSharePlugin.dll [No File]

Chrome:
=======
CHR Profile: C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Skype) - C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl [2015-12-18]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dell\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk] - hxxps://clients2.google.com/service/update2/crx
CHR HKLM-x32\...\Chrome\Extension: [lifbcibllhkdhoafpjfnlhfpfgnpldfl] - C:\Program Files (x86)\Skype\Toolbars\ChromeExtension\skype_chrome_extension.crx [2016-01-08]

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [955736 2016-03-12] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [466504 2016-03-12] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [466504 2016-03-12] (Avira Operations GmbH & Co. KG)
S4 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1424880 2016-03-12] (Avira Operations GmbH & Co. KG)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.)
R2 Avira.ServiceHost; C:\Program Files (x86)\Avira\Launcher\Avira.ServiceHost.exe [260456 2016-01-27] (Avira Operations GmbH & Co. KG)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1433216 2016-01-08] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1773696 2016-01-08] (Microsoft Corporation)
S2 KMService; C:\Windows\SysWOW64\srvany.exe [8192 2013-08-06] () [File not signed]
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\LMIGuardianSvc.exe [417552 2016-04-05] (LogMeIn, Inc.)
R2 Samsung Printer Dianostics Service; C:\Windows\SysWOW64\\spdsvc.exe [491328 2015-11-05] ()
R2 SamsungCloudPrintSvc; C:\Program Files\Samsung\Samsung Cloud Print PC Agent\SCP_Svc.exe [898352 2015-09-02] ()
R2 SamsungUPDUtilSvc; C:\Windows\SysWOW64\SecUPDUtilSvc.exe [143664 2016-03-12] ()
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [154816 2016-03-12] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\System32\DRIVERS\avipbb.sys [133168 2016-03-12] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\System32\DRIVERS\avkmgr.sys [28600 2014-05-09] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\System32\DRIVERS\avnetflt.sys [69888 2016-03-12] (Avira Operations GmbH & Co. KG)
R1 dtsoftbus01; C:\Windows\System32\DRIVERS\dtsoftbus01.sys [283200 2013-08-06] (DT Soft Ltd)
S3 ebdrv; C:\Windows\system32\drivers\evbda.sys [3286016 2009-06-10] (Broadcom Corporation)
R3 RTL8192cu; C:\Windows\System32\DRIVERS\RTL8192cu.sys [926824 2014-04-08] (Realtek Semiconductor Corporation )

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-04-06 20:23 - 2016-04-06 20:23 - 03119168 _____ C:\Users\Dell\Downloads\adwcleaner_5.109.exe
2016-04-06 18:56 - 2016-04-06 19:33 - 650120451 _____ C:\Users\Dell\Downloads\Dům-z-karet---House-of-Cards-S01E12-CZ-EN-dabing-2013.mkv
2016-04-06 17:55 - 2016-04-06 17:55 - 01222144 _____ C:\Users\Dell\Downloads\RSITx64 (1).exe
2016-04-06 17:51 - 2016-04-06 17:53 - 00042418 _____ C:\Users\Dell\Downloads\Addition.txt
2016-04-06 17:50 - 2016-04-07 09:18 - 00019686 _____ C:\Users\Dell\Downloads\FRST.txt
2016-04-06 17:50 - 2016-04-07 09:18 - 00000000 ____D C:\FRST
2016-04-06 17:49 - 2016-04-06 17:49 - 02374144 _____ (Farbar) C:\Users\Dell\Downloads\FRST64.exe
2016-04-06 17:40 - 2016-04-06 17:40 - 01725440 _____ (Farbar) C:\Users\Dell\Downloads\FRST.exe
2016-04-06 12:52 - 2016-04-06 12:52 - 00108840 _____ C:\Users\Dell\AppData\Local\GDIPFONTCACHEV1.DAT
2016-04-06 12:49 - 2016-04-06 12:49 - 00420888 _____ C:\Windows\system32\FNTCACHE.DAT
2016-04-06 11:28 - 2016-04-06 11:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
2016-04-06 11:28 - 2016-04-06 11:28 - 00000000 ____D C:\Program Files (x86)\LogMeIn Hamachi
2016-04-06 09:23 - 2016-04-06 09:23 - 00000000 ____D C:\ProgramData\Hewlett-Packard
2016-04-03 21:00 - 2016-04-03 21:00 - 00000000 ____D C:\Users\Dell\Desktop\mlyncek
2016-04-03 20:21 - 2016-04-03 20:21 - 00477845 _____ C:\Users\Dell\Downloads\F64E-F83E.pdf
2016-04-03 15:38 - 2016-04-03 15:41 - 00042291 _____ C:\Users\Dell\Desktop\shippingdocuments.pdf
2016-04-02 11:10 - 2016-04-02 11:10 - 00001218 _____ C:\Users\Dell\Downloads\V000011.zip
2016-04-01 21:59 - 2016-04-06 11:23 - 00000000 ____D C:\Users\Dell\AppData\LocalLow\uTorrent
2016-04-01 15:14 - 2016-04-01 15:14 - 00637026 _____ C:\Users\Dell\Desktop\ACFrOgBUG274-Ay2xbK2yHs13Zv7pnfKGs31FOw3My400NTh10k9APoHr066-kwN4ZcsbNoxqZ9cFX0zpO2S2HlQx-9GyPfDIstAQZ1TqTilDijI7SkM2hXvU0fiuuY=.pdf
2016-03-31 20:27 - 2016-03-30 15:36 - 1088226558 _____ C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E11-FullHD-CZ-EN-dabing-2013.mkv
2016-03-28 18:50 - 2016-03-27 16:05 - 1900924884 ____R C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E04-FullHD-CZ-EN-dabing-2013.mkv
2016-03-28 18:50 - 2016-03-27 14:58 - 1465449559 ____R C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E03-FullHD-CZ-EN-dabing-+-cz-tit-2013.mkv
2016-03-28 18:49 - 2016-03-27 18:32 - 1893929372 ____R C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E07-FullHD-CZ-EN-dabing-2013.mkv
2016-03-28 18:48 - 2016-03-27 18:24 - 1988238300 ____R C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E06-FullHD-CZ-EN-dabing-2013.mkv
2016-03-28 18:47 - 2016-03-27 16:56 - 1890607380 ____R C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E05-FullHD-CZ-EN-dabing-2013.mkv
2016-03-27 14:48 - 2016-03-27 11:45 - 723208115 _____ C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E02-CZ-EN-dabing-2013.mkv
2016-03-27 14:47 - 2016-03-27 10:37 - 792979773 _____ C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E01-CZ-EN-dabing-2013.mkv
2016-03-24 20:02 - 2016-03-24 17:57 - 882633126 _____ C:\Users\Dell\Desktop\Dum.z.karet.Domek.z.karet.House.of.Cards.2013-S01E10.HDTV-CZ-Dabing.avi
2016-03-24 16:16 - 2016-03-20 15:29 - 1169004361 ____R C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E08-FullHD-LB-CZ-EN-dabing-2013.mkv
2016-03-24 16:14 - 2016-03-20 16:31 - 1241191695 ____R C:\Users\Dell\Desktop\Dům-z-karet---House-of-Cards-S01E09-FullHD-LB-CZ-EN-dabing-+-CZ-tit-2013.mkv
2016-03-23 17:52 - 2016-03-23 17:53 - 44251456 _____ C:\Users\Dell\Downloads\C48x_Series_WIN_UPD_V3.00.05.01.01.exe
2016-03-23 17:45 - 2016-03-23 17:46 - 25704312 _____ C:\Users\Dell\Downloads\C48x_Series_WIN_Printer_V3.00.05.01.01.zip
2016-03-23 17:44 - 2016-03-23 17:45 - 10948928 _____ (Samsung Electronics Co., Ltd.) C:\Users\Dell\Downloads\EcoDriver_V2.01.10.exe
2016-03-23 17:39 - 2016-03-23 17:39 - 03715633 _____ C:\Users\Dell\Downloads\480_EasyWirelessSetup_Mac_V1.4.24.zip
2016-03-19 11:58 - 2016-03-19 11:58 - 00000000 ____D C:\Users\Dell\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dropbox
2016-03-12 15:47 - 2016-03-12 15:47 - 00002265 _____ C:\Users\Public\Desktop\Samsung Printer Diagnostics.lnk
2016-03-12 15:47 - 2016-03-12 15:47 - 00000000 ____D C:\Program Files\Common Files\Common Desktop Agent
2016-03-12 15:46 - 2016-03-12 15:48 - 00003432 _____ C:\Windows\System32\Tasks\EPM Preload
2016-03-12 15:46 - 2014-12-05 17:38 - 00580608 _____ C:\Windows\system32\SNWIAUI.dll
2016-03-12 15:46 - 2014-12-05 17:36 - 00755712 _____ C:\Windows\system32\SnMinDrv.dll
2016-03-12 15:46 - 2014-12-05 17:36 - 00155136 _____ C:\Windows\system32\SnImgFlt.dll
2016-03-12 15:46 - 2014-12-05 17:36 - 00068096 _____ C:\Windows\system32\SnErHdlr.dll
2016-03-12 15:46 - 2014-11-21 06:45 - 00355840 _____ (Samsung Electronics) C:\Windows\system32\SnWIAMUI.dll
2016-03-12 15:46 - 2014-11-21 06:45 - 00251904 _____ (TODO: <Company name>) C:\Windows\system32\SnAMPV.dll
2016-03-12 15:46 - 2014-08-19 16:37 - 00120846 _____ C:\Windows\system32\WIAEXSTR.loc
2016-03-11 21:31 - 2016-03-11 21:31 - 00000000 ____D C:\Users\Dell\AppData\Local\Samsung
2016-03-11 21:08 - 2014-12-05 17:32 - 00420352 _____ C:\Windows\system32\SaMinDrv.dll
2016-03-11 21:08 - 2014-12-05 17:31 - 00151040 _____ C:\Windows\system32\SaImgFlt.dll
2016-03-11 21:08 - 2014-12-05 17:31 - 00068096 _____ C:\Windows\system32\SaErHdlr.dll
2016-03-11 20:13 - 2016-03-11 20:13 - 00000000 ____D C:\ProgramData\SSScan
2016-03-11 20:13 - 2015-03-23 06:04 - 00158528 _____ C:\Windows\wiainst64.exe
2016-03-11 20:11 - 2012-03-14 01:58 - 00166640 _____ (TWAIN Working Group) C:\Windows\system32\TWAINDSM.dll
2016-03-11 20:11 - 2012-03-14 01:58 - 00148728 _____ (TWAIN Working Group) C:\Windows\SysWOW64\TWAINDSM.dll
2016-03-11 19:52 - 2015-11-12 14:12 - 00037201 ____N C:\Windows\SysWOW64\spddata.xml
2016-03-11 19:52 - 2015-11-05 22:02 - 00491328 ____N C:\Windows\SysWOW64\spdsvc.exe
2016-03-11 19:47 - 2015-09-11 03:23 - 01571136 ____N C:\Windows\TotalUninstaller.exe
2016-03-11 19:47 - 2014-08-08 11:29 - 00022528 _____ () C:\Windows\system32\scpd2lm.dll
2016-03-11 19:40 - 2016-03-12 15:46 - 00000000 ____D C:\Program Files\Samsung
2016-03-11 19:39 - 2016-03-23 17:58 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers
2016-03-11 19:39 - 2016-03-12 15:51 - 00000000 ____D C:\Users\Dell\AppData\Roaming\Samsung
2016-03-11 19:39 - 2016-03-12 15:50 - 00000000 ____D C:\Program Files (x86)\Samsung
2016-03-11 19:39 - 2016-03-12 15:48 - 00000000 ____D C:\ProgramData\Samsung
2016-03-11 19:39 - 2016-03-12 15:45 - 00143664 ____N C:\Windows\SysWOW64\SecUPDUtilSvc.exe
2016-03-11 19:39 - 2016-03-12 15:45 - 00143664 ____N C:\Windows\system32\SecUPDUtilSvc.exe
2016-03-11 19:39 - 2015-06-11 13:25 - 03055616 ____N C:\Windows\system32\DlgSearchEngine.dll
2016-03-11 19:39 - 2015-06-11 13:25 - 02342400 ____N C:\Windows\SysWOW64\DlgSearchEngine.dll
2016-03-11 19:39 - 2015-02-11 14:20 - 00158016 _____ C:\Windows\system32\us005ci.exe
2016-03-11 19:39 - 2014-11-25 13:15 - 00226424 _____ C:\Windows\system32\SBuySupplies.exe
2016-03-11 19:39 - 2014-11-25 13:14 - 00089600 _____ (SS) C:\Windows\system32\us005ci.dll
2016-03-11 19:39 - 2014-11-25 13:14 - 00022528 _____ () C:\Windows\system32\us005lm.dll
2016-03-09 18:36 - 2016-03-09 18:48 - 00000000 ____D C:\Users\Dell\Desktop\Mix

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-04-07 09:02 - 2013-08-08 14:20 - 00000898 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
2016-04-07 08:42 - 2013-08-06 03:19 - 00000830 _____ C:\Windows\Tasks\Adobe Flash Player Updater.job
2016-04-07 08:26 - 2015-06-17 22:15 - 00000914 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-306012316-2177622386-379303590-1000UA.job
2016-04-07 08:26 - 2015-01-20 08:11 - 00000000 ___RD C:\Users\Dell\Dropbox
2016-04-07 08:26 - 2015-01-20 08:08 - 00000000 ____D C:\Users\Dell\AppData\Roaming\Dropbox
2016-04-07 08:25 - 2014-04-23 22:12 - 00000000 ____D C:\Users\Dell\AppData\Local\LogMeIn Hamachi
2016-04-07 08:24 - 2014-08-13 21:26 - 00000198 _____ C:\Windows\Tasks\AutoKMS.job
2016-04-07 08:24 - 2013-08-08 14:20 - 00000894 _____ C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
2016-04-07 08:24 - 2009-07-14 07:08 - 00000006 ____H C:\Windows\Tasks\SA.DAT
2016-04-06 20:25 - 2014-05-26 08:55 - 00000000 ____D C:\AdwCleaner
2016-04-06 17:55 - 2014-05-25 12:46 - 00000000 ____D C:\Program Files\trend micro
2016-04-06 12:53 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\inf
2016-04-06 11:35 - 2013-08-09 17:28 - 00000000 ____D C:\Users\Dell\AppData\Roaming\uTorrent
2016-04-06 11:35 - 2013-08-06 02:41 - 00000000 ____D C:\Users\Dell\AppData\Roaming\DAEMON Tools Lite
2016-04-06 11:32 - 2016-02-18 19:27 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DirectX Utilities
2016-04-06 11:32 - 2015-12-31 01:01 - 00000000 ____D C:\Windows\Minidump
2016-04-06 11:28 - 2014-04-23 22:12 - 00000926 _____ C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
2016-04-06 09:42 - 2009-07-14 05:20 - 00000000 ____D C:\Windows\system32\NDF
2016-04-06 09:39 - 2013-08-08 14:28 - 00000000 ____D C:\Users\Dell\AppData\Roaming\Skype
2016-04-06 09:26 - 2015-06-17 22:15 - 00000862 _____ C:\Windows\Tasks\DropboxUpdateTaskUserS-1-5-21-306012316-2177622386-379303590-1000Core.job
2016-04-06 09:12 - 2009-07-14 07:13 - 00726316 _____ C:\Windows\system32\PerfStringBackup.INI
2016-04-05 16:18 - 2013-11-13 18:49 - 00034720 ____H (LogMeIn, Inc.) C:\Windows\system32\hamachi.sys
2016-03-31 02:04 - 2013-08-08 14:20 - 00002207 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-03-27 09:51 - 2015-07-19 23:26 - 00000000 ____D C:\Users\Dell\Desktop\bazar
2016-03-23 21:43 - 2013-08-06 03:19 - 00797376 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerApp.exe
2016-03-23 21:43 - 2013-08-06 03:19 - 00142528 _____ (Adobe Systems Incorporated) C:\Windows\SysWOW64\FlashPlayerCPLApp.cpl
2016-03-23 21:43 - 2013-08-06 03:19 - 00003768 _____ C:\Windows\System32\Tasks\Adobe Flash Player Updater
2016-03-12 14:17 - 2016-03-01 17:13 - 00000000 ____D C:\Users\Dell\AppData\Roaming\TP-LINK
2016-03-12 13:05 - 2014-05-25 12:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira
2016-03-12 13:04 - 2014-05-25 12:05 - 00154816 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avgntflt.sys
2016-03-12 13:04 - 2014-05-25 12:05 - 00133168 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avipbb.sys
2016-03-12 13:04 - 2014-05-25 12:05 - 00069888 _____ (Avira Operations GmbH & Co. KG) C:\Windows\system32\Drivers\avnetflt.sys
2016-03-12 00:28 - 2009-07-14 06:45 - 00020640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2016-03-12 00:27 - 2009-07-14 06:45 - 00020640 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2016-03-11 21:52 - 2013-08-06 02:22 - 00000000 ____D C:\Users\Dell\AppData\Local\VirtualStore
2016-03-11 15:12 - 2015-11-02 08:25 - 00002441 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk

==================== Files in the root of some directories =======

2016-02-18 19:27 - 2008-03-09 08:25 - 0000236 _____ () C:\Program Files (x86)\Common Files\dx.reg
2005-09-17 03:56 - 2014-08-14 00:30 - 0002755 ____H () C:\Users\Dell\AppData\Roaming\Delllog.dat
2014-01-18 16:06 - 2014-01-19 02:06 - 0000085 _____ () C:\Users\Dell\AppData\Roaming\WB.CFG
2014-09-02 20:44 - 2014-09-02 20:44 - 0007605 _____ () C:\Users\Dell\AppData\Local\Resmon.ResmonCfg

Some files in TEMP:
====================
C:\Users\Dell\AppData\Local\Temp\avgnt.exe
C:\Users\Dell\AppData\Local\Temp\libeay32.dll
C:\Users\Dell\AppData\Local\Temp\msvcr120.dll
C:\Users\Dell\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\system32\winlogon.exe => File is digitally signed
C:\Windows\system32\wininit.exe => File is digitally signed
C:\Windows\SysWOW64\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\system32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\system32\services.exe => File is digitally signed
C:\Windows\system32\User32.dll
[2010-11-21 05:24] - [2013-08-06 02:20] - 1008640 ____A (Microsoft Corporation) 2C353B6CE0C8D03225CAA2AF33B68D79

C:\Windows\SysWOW64\User32.dll
[2010-11-21 05:24] - [2013-08-06 02:20] - 0833024 ____A (Microsoft Corporation) 861C4346F9281DC0380DE72C8D55D6BE

C:\Windows\system32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\system32\rpcss.dll => File is digitally signed
C:\Windows\system32\dnsapi.dll => File is digitally signed
C:\Windows\SysWOW64\dnsapi.dll => File is digitally signed
C:\Windows\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-03-29 08:51

==================== End of FRST.txt ============================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119427
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomaleny pc, prosim o kontrolu

#8 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start
HKU\S-1-5-21-306012316-2177622386-379303590-1000\...\MountPoints2: {286bcc1a-fe2e-11e2-9bed-001ec97ea07e} - F:\Setup.exe
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-306012316-2177622386-379303590-1000 -> DefaultScope {893D23B2-B8DB-4EBA-B49D-F6A402697030} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97 ... -SearchBox
SearchScopes: HKU\S-1-5-21-306012316-2177622386-379303590-1000 -> {893D23B2-B8DB-4EBA-B49D-F6A402697030} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97 ... -SearchBox
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
C:\Program Files (x86)\Skype\Toolbars
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin HKU\S-1-5-21-306012316-2177622386-379303590-1000: BearSharePlugin -> C:\Program Files (x86)\BearShare Applications\BearShare\npBearSharePlugin.dll [No File]
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\AutoKMS.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Users\Dell\AppData\Local\Temp
End
Uložte do C:\Users\Dell\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Avjeckin
Návštěvník
Návštěvník
Příspěvky: 42
Registrován: 01 zář 2014 20:20

Re: Spomaleny pc, prosim o kontrolu

#9 Příspěvek od Avjeckin »

Fix result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
Ran by Dell (2016-04-07 18:56:09) Run:1
Running from C:\Users\Dell\Downloads
Loaded Profiles: Dell (Available Profiles: Dell)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
HKU\S-1-5-21-306012316-2177622386-379303590-1000\...\MountPoints2: {286bcc1a-fe2e-11e2-9bed-001ec97ea07e} - F:\Setup.exe
SearchScopes: HKLM -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKLM-x32 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-306012316-2177622386-379303590-1000 -> DefaultScope {893D23B2-B8DB-4EBA-B49D-F6A402697030} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97 ... -SearchBox
SearchScopes: HKU\S-1-5-21-306012316-2177622386-379303590-1000 -> {893D23B2-B8DB-4EBA-B49D-F6A402697030} URL = hxxp://www.bing.com/search?FORM=UP97DF&PC=UP97 ... -SearchBox
BHO: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
C:\Program Files (x86)\Skype\Toolbars
BHO-x32: Skype Click to Call for Internet Explorer -> {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} -> C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2016-01-08] (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2016-01-08] (Microsoft Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin HKU\S-1-5-21-306012316-2177622386-379303590-1000: BearSharePlugin -> C:\Program Files (x86)\BearShare Applications\BearShare\npBearSharePlugin.dll [No File]
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
C:\Windows\Tasks\AutoKMS.job
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
C:\Users\Dell\AppData\Local\Temp
End
*****************

"HKU\S-1-5-21-306012316-2177622386-379303590-1000\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{286bcc1a-fe2e-11e2-9bed-001ec97ea07e}" => key removed successfully
HKCR\CLSID\{286bcc1a-fe2e-11e2-9bed-001ec97ea07e} => key not found.
HKLM\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value restored successfully
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
HKU\S-1-5-21-306012316-2177622386-379303590-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value removed successfully
"HKU\S-1-5-21-306012316-2177622386-379303590-1000\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{893D23B2-B8DB-4EBA-B49D-F6A402697030}" => key removed successfully
HKCR\CLSID\{893D23B2-B8DB-4EBA-B49D-F6A402697030} => key not found.
"HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => key removed successfully
"HKCR\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => key removed successfully
C:\Program Files (x86)\Skype\Toolbars => moved successfully
"HKLM\SOFTWARE\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => key removed successfully
"HKCR\Wow6432Node\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}" => key removed successfully
"HKCR\PROTOCOLS\Handler\skypec2c" => key removed successfully
"HKCR\CLSID\{91774881-D725-4E58-B298-07617B9B86A8}" => key removed successfully
HKCR\Wow6432Node\PROTOCOLS\Handler\skypec2c => key not found.
"HKCR\Wow6432Node\CLSID\{91774881-D725-4E58-B298-07617B9B86A8}" => key removed successfully
"HKLM\Software\MozillaPlugins\@microsoft.com/GENUINE" => key removed successfully
"HKLM\Software\Wow6432Node\MozillaPlugins\@microsoft.com/GENUINE" => key removed successfully
"HKU\S-1-5-21-306012316-2177622386-379303590-1000\Software\MozillaPlugins\BearSharePlugin" => key removed successfully
C:\Program Files (x86)\BearShare Applications\BearShare\npBearSharePlugin.dll => not found.
C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => moved successfully
C:\Windows\Tasks\AutoKMS.job => moved successfully
C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => moved successfully

"C:\Users\Dell\AppData\Local\Temp" folder move:

Could not move "C:\Users\Dell\AppData\Local\Temp" => Scheduled to move on reboot.


Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 2016-04-07 18:58:14)

"C:\Users\Dell\AppData\Local\Temp" => Could not move

==== End of Fixlog 18:58:16 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119427
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomaleny pc, prosim o kontrolu

#10 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Avjeckin
Návštěvník
Návštěvník
Příspěvky: 42
Registrován: 01 zář 2014 20:20

Re: Spomaleny pc, prosim o kontrolu

#11 Příspěvek od Avjeckin »

Ano je to lepsie dakujem. Este ked sa mozem spytat, sestra ma tiez pocitac a prestal jej ist google chrome. On sa spustil ale problem bol v tom ze nechcelo nacitat ziadne stranky, biely priestor. Ostatne prehliace normalne otvorilo a dalo sa s nimi pracovat. Pozrel som si nieco na internete a aplikoval riesenie ze som do cieloveho riadka dopisal -no-sandbox, cize asi nejako tak- "C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" -no-sandbox. Chrome zacal ist ale vypisuje mi tam nieco ze to nie je zabezpecene takze neviem ci som spravil dobre. Sestra hovori ze jej to vraj vypisovalo aj predtym. Neviem ci je to sposobene nejakym virusom alebo je to nejaka ina technicka chyba.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119427
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Spomaleny pc, prosim o kontrolu

#12 Příspěvek od Rudy »

Musel bych vidět log RSIT, nebo FRST.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Avjeckin
Návštěvník
Návštěvník
Příspěvky: 42
Registrován: 01 zář 2014 20:20

Re: Spomaleny pc, prosim o kontrolu

#13 Příspěvek od Avjeckin »

Pridavam sem log (pokracovanie logu a addition log pridam do dalsej spravy lebo mi vypisalo ze presiahlo max. pocet znakov), este som chcel dodat ze stale ked sa chrome spusti tak vyskakuje sprava ze nebol spravne ukonceny, pritom bol ukonceny normalne.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version:05-03-2016 01
Ran by Marcel (administrator) on MELISA (07-04-2016 20:46:01)
Running from C:\Users\Marcel\Downloads
Loaded Profiles: Marcel (Available Profiles: Marcel)
Platform: Windows 10 Home Version 1511 (X64) Language: Slovenčina (Slovensko)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\SysWOW64\IntelCpHeciSvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RTKAUDIOSERVICE64.EXE
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
() C:\Windows\SysWOW64\SecUPDUtilSvc.exe
() C:\Windows\SysWOW64\spdsvc.exe
(Samsung Electronics Co., Ltd.) C:\Windows\System32\spool\drivers\x64\3\NetFaxServer64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe
(Micro-Star International Co., Ltd.) C:\Program Files (x86)\SCM\MSIService.exe
(VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
(TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.29.5\GoogleCrashHandler64.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
() C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(MSI) C:\Program Files (x86)\SCM\Radio Manager.exe
(Apple Inc.) C:\Program Files\iTunes\iTunesHelper.exe
(Spotify Ltd) C:\Users\Marcel\AppData\Roaming\Spotify\SpotifyWebHelper.exe
(Apple Inc.) C:\Program Files\iPod\bin\iPodService.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe
(Samsung Electronics Co., Ltd.) C:\Windows\System32\spool\drivers\x64\3\NetFaxTray64.exe
(MSI) C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe
(SRS Labs, Inc.) C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
() C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
(Avira Operations GmbH & Co. KG) C:\Program Files (x86)\Avira\AntiVir Desktop\avshadow.exe
(DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
(Microsoft Corporation) C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE


==================== Registry (Whitelisted) ===========================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [3347688 2015-07-28] (ELAN Microelectronics Corp.)
HKLM\...\Run: [RtHDVCpl] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [13192848 2012-11-28] (Realtek Semiconductor)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2787264 2016-01-23] (NVIDIA Corporation)
HKLM\...\Run: [ShadowPlay] => "C:\WINDOWS\system32\rundll32.exe" C:\WINDOWS\system32\nvspcap64.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [Radio Manager] => C:\Program Files (x86)\SCM\Radio Manager.exe [406920 2013-03-01] (MSI)
HKLM\...\Run: [SCM] => C:\Program Files (x86)\SCM\SCM.exe [407968 2013-03-01] (MSI)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] ()
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [170256 2015-12-17] (Apple Inc.)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [285240 2012-09-02] (Intel Corporation)
HKLM-x32\...\Run: [Super-Charger] => C:\Program Files (x86)\MSI\Super-Charger\Super-Charger.exe [502328 2012-05-23] (MSI)
HKLM-x32\...\Run: [avgnt] => C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe [807392 2016-03-18] (Avira Operations GmbH & Co. KG)
HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\...\Run: [VoipConnect] => C:\Program Files (x86)\VoipConnect.com\VoipConnect\VoipConnect.exe [23046240 2014-11-13] (VoipConnect)
HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\...\Run: [Spotify Web Helper] => C:\Users\Marcel\AppData\Roaming\Spotify\SpotifyWebHelper.exe [2346096 2016-03-18] (Spotify Ltd)
HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\...\Run: [Spotify] => C:\Users\Marcel\AppData\Roaming\Spotify\Spotify.exe [8316528 2016-03-18] (Spotify Ltd)
HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\...\Run: [STUISpeedLauncher] => C:\Program Files\Samsung\Stylish UI Pack\TouchBasedUI.exe [411136 2015-02-09] ()
HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\...\Run: [DAEMON Tools Pro Agent] => C:\Program Files (x86)\DAEMON Tools Pro\DTAgent.exe [3108480 2012-10-23] (DT Soft Ltd)
HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\...\Run: [iCloudServices] => C:\Program Files (x86)\Common Files\Apple\Internet Services\iCloudServices.exe [60688 2015-11-30] (Apple Inc.)
HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\...\MountPoints2: {0856f504-c00b-11e4-bea1-0cd2923ddab4} - "F:\Setup.exe"
HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\...\MountPoints2: {15e2def6-780d-11e4-824f-806e6f6e6963} - "E:\Setup.exe"
HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\WINDOWS\system32\Bubbles.scr [805888 2015-10-30] (Microsoft Corporation)
AppInit_DLLs: C:\WINDOWS\system32\nvinitx.dll => C:\WINDOWS\system32\nvinitx.dll [176904 2015-07-23] (NVIDIA Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Samsung Network PC Fax.lnk [2016-03-18]
ShortcutTarget: Samsung Network PC Fax.lnk -> C:\Windows\System32\spool\drivers\x64\3\NetFaxTray64.exe (Samsung Electronics Co., Ltd.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SRS PC Sound.lnk [2012-11-30]
ShortcutTarget: SRS PC Sound.lnk -> C:\Program Files\SRS Labs\SRS Control Panel\SRSPanel_64.exe (SRS Labs, Inc.)

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{8bc1763d-2beb-4ca4-8f59-71bd4ba61fb0}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{8faa1abc-a6ae-4475-ab01-43d3e4a3c6a0}: [DhcpNameServer] 192.168.100.1

Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = hxxp://www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = hxxp://www.google.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-3113391118-2788532900-4007831743-1002 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = hxxp://www.google.com/search?q={searchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2016-02-09] (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2016-02-09] (Microsoft Corporation)
BHO: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus64.dll [2015-09-22] (Eyeo GmbH)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2016-02-09] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\ssv.dll [2016-01-28] (Oracle Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2016-02-09] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\jp2ssv.dll [2016-01-28] (Oracle Corporation)
BHO-x32: Adblock Plus for IE Browser Helper Object -> {FFCB3198-32F3-4E8B-9539-4324694ED664} -> C:\Program Files\Adblock Plus for IE\AdblockPlus32.dll [2015-09-22] (Eyeo GmbH)

FireFox:
========
FF ProfilePath: C:\Users\Marcel\AppData\Roaming\Mozilla\Firefox\Profiles\UVBFnsgL.default
FF NewTab: about:newtab
FF Homepage: about:home
FF Session Restore: -> is enabled.
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-10-14] ()
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2012-11-28] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2012-11-28] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.71.2 -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\dtplugin\npDeployJava1.dll [2016-01-28] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.71.2 -> C:\Program Files (x86)\Java\jre1.8.0_71\bin\plugin2\npjp2.dll [2016-01-28] (Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-11-18] (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3503.0728 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2012-07-28] (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-04-07] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-04-07] (Google Inc.)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll [2015-11-18] (Microsoft Corporation)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Extension: Adblock Plus - C:\Users\Marcel\AppData\Roaming\Mozilla\Firefox\Profiles\UVBFnsgL.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2016-04-05]
FF Extension: Default - C:\Program Files (x86)\Mozilla Firefox\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi [2016-04-05] [not signed]

Chrome:
=======
CHR HomePage: Default -> hxxp://search.conduit.com/?ctid=CT3324790&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SPDFE83D26-B284-4EF5-82E6-FA88BDD301F0&SSPV=
CHR StartupUrls: Default -> "hxxp://search.conduit.com/?ctid=CT3324790&octid=EB_ORIGINAL_CTID&SearchSource=55&CUI=&UM=4&UP=SPDFE83D26-B284-4EF5-82E6-FA88BDD301F0&SSPV=","hxxps://isearch.avg.com/?cid={732FF394-617B-41F2-A4FA-4FD776B6A56B}&mid=edfcbcbf9fdf47d09fe9d14868f4e35f-06ce4fc639803a2e3563922518183d8e94088cb9&lang=sk&ds=gm011&pr=sa&d=2012-05-29%2020:31:06&v=12.2.5.32&sap=hp","hxxp://searchfunmoods.com/?f=1&a=stonicrio&chnl=stonicrio&cd=2XzuyEtN2Y1L1QzutDtDtDtCtB0EtCtDtD0A0A0Czz0D0AyDtN0D0Tzu0CtAtCyDtN1L2XzutBtFtBtFtDtFtAyEyE&cr=1328519260","hxxp://search.babylon.com/?affID=116299&babsrc=HP_ss&mntrId=a8c58da500000000000000012e100aac","hxxp://search.conduit.com/?ctid=CT3220468&SearchSource=48","hxxp://isearch.avg.com/?cid={6DFADF38-9363-4507-813F-FBE49CAAAD86}&mid=787fab24a34447d39dc7dd9bd4d93347-c3da11b36e7cf4b05f1b4e50ea632827b6844d3b&lang=sk&ds=gm011&pr=sa&d=2013-02-02%2013:41:08&v=13.2.0.4&sap=hp","hxxp://search.conduit.com/?CUI=UN30874928721883450&ctid=CT3220468&SearchSource=48","hxxp://isearch.babylon.com/?affID=116632&babsrc=HP_ss&mntrId=8a20962e0000000000000cd2923ddab1","hxxp://search.fbdownloader.com/?channel=sfuk206","hxxp://uk.search.yahoo.com/?type=198484&fr=spigot-yhp-ch","hxxp://uk.search.yahoo.com/?type=114576&fr=spigot-yhp-ch","hxxp://uk.search.yahoo.com/?type=443898&fr=spigot-yhp-ch","hxxp://www.google.com/","hxxp://uk.msn.com/?pc ... 4698346983"
CHR Profile: C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Prezentácie Google) - C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-03-09]
CHR Extension: (Dokumenty Google) - C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-03-17]
CHR Extension: (Disk Google) - C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-03-17]
CHR Extension: (YouTube) - C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-03-17]
CHR Extension: (Tabuľky Google) - C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-03-09]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-03-17]
CHR Extension: (AdBlock) - C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2016-03-18]
CHR Extension: (Pink Lake) - C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\lkikaplkcnkehkocaeaddjiicklloajh [2016-03-18]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-04]
CHR Extension: (Gmail) - C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-03-17]
CHR Profile: C:\Users\Marcel\AppData\Local\Google\Chrome\User Data\Profile 1

==================== Services (Whitelisted) ========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 AntiVirMailService; C:\Program Files (x86)\Avira\AntiVir Desktop\avmailc7.exe [955736 2016-03-18] (Avira Operations GmbH & Co. KG)
R2 AntiVirSchedulerService; C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe [466504 2016-03-18] (Avira Operations GmbH & Co. KG)
R2 AntiVirService; C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe [466504 2016-03-18] (Avira Operations GmbH & Co. KG)
S2 AntiVirWebService; C:\Program Files (x86)\Avira\AntiVir Desktop\avwebg7.exe [1424880 2016-03-18] (Avira Operations GmbH & Co. KG)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [77104 2015-10-07] (Apple Inc.)
S2 CLKMSVC10_38F51D56; C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe [243728 2012-05-23] (CyberLink)
R2 ETDService; C:\Program Files\Elantech\ETDService.exe [144104 2015-07-28] (ELAN Microelectronics Corp.)
R2 GfExperienceService; C:\Program Files\NVIDIA Corporation\GeForce Experience Service\GfExperienceService.exe [1163200 2016-01-23] (NVIDIA Corporation)
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [330136 2015-08-27] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-11-28] (Intel Corporation)
S2 MBAMService; C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe [1133880 2015-06-18] (Malwarebytes Corporation)
R2 Micro Star SCM; C:\Program Files (x86)\SCM\MSIService.exe [160768 2013-03-01] (Micro-Star International Co., Ltd.) [File not signed]
R2 MSI_SuperCharger; C:\Program Files (x86)\MSI\Super-Charger\ChargeService.exe [142904 2012-05-23] (MSI)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1879488 2016-01-23] (NVIDIA Corporation)
R3 NvStreamNetworkSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe [6308288 2016-01-23] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [4812736 2016-01-23] (NVIDIA Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [201360 2012-11-28] (Realtek Semiconductor)
R2 Samsung Network Fax Server; C:\WINDOWS\system32\spool\drivers\x64\3\NetFaxServer64.exe [706240 2015-11-27] (Samsung Electronics Co., Ltd.)
R2 Samsung Printer Dianostics Service; C:\WINDOWS\SysWOW64\\spdsvc.exe [491328 2015-11-05] ()
R2 SamsungUPDUtilSvc; C:\WINDOWS\SysWOW64\SecUPDUtilSvc.exe [143664 2016-03-18] ()
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [5448976 2015-04-17] (TeamViewer GmbH)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [364464 2015-10-30] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [24864 2015-10-30] (Microsoft Corporation)

===================== Drivers (Whitelisted) ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 avgntflt; C:\Windows\System32\DRIVERS\avgntflt.sys [128664 2016-03-18] (Avira Operations GmbH & Co. KG)
R1 avipbb; C:\Windows\system32\DRIVERS\avipbb.sys [137952 2016-03-18] (Avira Operations GmbH & Co. KG)
R1 avkmgr; C:\Windows\system32\DRIVERS\avkmgr.sys [35488 2015-12-01] (Avira Operations GmbH & Co. KG)
R2 avnetflt; C:\Windows\system32\DRIVERS\avnetflt.sys [68936 2016-03-18] (Avira Operations GmbH & Co. KG)
R1 dtsoftbus01; C:\Windows\System32\drivers\dtsoftbus01.sys [283200 2015-03-02] (DT Soft Ltd)
S3 ipadtst; C:\Program Files (x86)\MSI\Super-Charger\ipadtst_64.sys [17936 2011-12-12] (Windows (R) Win 7 DDK provider)
R3 MBAMProtector; C:\WINDOWS\system32\drivers\mbam.sys [25816 2015-06-18] (Malwarebytes Corporation)
S3 MBAMWebAccessControl; C:\WINDOWS\system32\drivers\mwac.sys [64216 2015-06-18] (Malwarebytes Corporation)
R3 NETwNe64; C:\Windows\System32\drivers\NETwew01.sys [3343872 2015-10-30] (Intel Corporation)
R3 NTIOLib_1_0_3; C:\Program Files (x86)\MSI\Super-Charger\NTIOLib_X64.sys [14136 2010-01-18] (MSI)
R3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [26560 2016-01-23] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\Windows\system32\drivers\nvvad64v.sys [47760 2015-12-18] (NVIDIA Corporation)
R3 rt640x64; C:\Windows\System32\drivers\rt640x64.sys [589824 2015-10-30] (Realtek )
R0 vsock; C:\Windows\System32\drivers\vsock.sys [73296 2013-10-08] (VMware, Inc.)
S3 WdBoot; C:\Windows\system32\drivers\WdBoot.sys [44568 2015-10-30] (Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\WdFilter.sys [293216 2015-10-30] (Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [118112 2015-10-30] (Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One Month Created files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-04-07 20:46 - 2016-04-07 20:46 - 00023351 _____ C:\Users\Marcel\Downloads\FRST.txt
2016-04-07 20:45 - 2016-04-07 20:46 - 00000000 ____D C:\FRST
2016-04-07 20:43 - 2016-04-07 20:45 - 02374144 _____ (Farbar) C:\Users\Marcel\Downloads\FRST64.exe
2016-04-07 20:05 - 2016-04-07 20:04 - 00337653 _____ C:\Users\Marcel\Desktop\Zmluva_o_studiu Bilgym 2016.pdf
2016-04-07 20:04 - 2016-04-07 20:04 - 00337653 _____ C:\Users\Marcel\Downloads\Zmluva_o_studiu Bilgym 2016.pdf
2016-04-07 19:47 - 2016-04-07 19:47 - 00000000 ____D C:\Users\Marcel\AppData\LocalLow\Temp
2016-04-07 19:45 - 2016-04-07 19:45 - 01516225 _____ C:\Users\Marcel\Desktop\ACFrOgA1um66pgdBGlBLVuhB7F4eptEVvsZCefGmRjqSnYp4cywxEXCTuEka8Cu79EsGmmpnA9e26Uxu7gomfzXYFo6Se0UeZ8Y8VMZ5126wLa5Qvfc2l_2_9mrUwOs=.pdf
2016-04-07 18:50 - 2016-04-07 18:50 - 20355776 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerInstaller.exe
2016-04-07 17:18 - 2016-04-07 17:18 - 00028272 _____ C:\WINDOWS\system32\Drivers\TrueSight.sys
2016-04-07 17:15 - 2016-04-07 17:17 - 00000000 ____D C:\ProgramData\RogueKiller
2016-04-07 17:14 - 2016-04-07 17:15 - 28816648 _____ (Adlice Software ) C:\Users\Marcel\Downloads\setup.exe
2016-04-07 15:43 - 2016-04-07 15:43 - 03119168 _____ C:\Users\Marcel\Downloads\adwcleaner_5.109.exe
2016-04-07 13:08 - 2016-04-07 13:08 - 00002840 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2016-04-07 13:08 - 2016-04-07 13:08 - 00000873 _____ C:\Users\Public\Desktop\CCleaner.lnk
2016-04-07 13:08 - 2016-04-07 13:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-04-07 13:08 - 2016-04-07 13:08 - 00000000 ____D C:\Program Files\CCleaner
2016-04-07 13:07 - 2016-04-07 13:08 - 04765152 _____ (Piriform Ltd) C:\Users\Marcel\Downloads\ccsetup411.exe
2016-04-07 13:04 - 2016-04-07 18:18 - 00002382 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-04-07 13:04 - 2016-04-07 13:04 - 00002370 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-04-07 13:02 - 2016-04-07 20:07 - 00000912 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job
2016-04-07 13:02 - 2016-04-07 17:07 - 00000908 _____ C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2016-04-07 13:02 - 2016-04-07 13:02 - 00003970 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA
2016-04-07 13:02 - 2016-04-07 13:02 - 00003738 _____ C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore
2016-04-05 17:12 - 2016-04-07 13:13 - 00000000 ____D C:\Program Files (x86)\Mozilla Firefox
2016-04-05 14:55 - 2016-04-05 15:08 - 220674170 _____ C:\Users\Marcel\Downloads\2Pac-All_Eyez_On_Me-2CD-(Remastered)-2004-MTD.rar
2016-04-05 14:54 - 2015-03-17 16:15 - 00000000 ____D C:\Users\Marcel\Desktop\Kendrick Lamar - To Pimp A Butterfly (CD - 2015)
2016-04-05 14:37 - 2016-04-05 14:54 - 155059547 _____ C:\Users\Marcel\Downloads\Kendrick-Lamar---To-Pimp-A-Butterfly-(CD---2015).rar
2016-04-04 14:58 - 2016-04-04 14:59 - 00000000 ____D C:\Users\Marcel\Desktop\Kanye West - The Life Of Pablo
2016-04-04 14:13 - 2016-04-04 17:47 - 3688402190 ____R C:\Users\Marcel\Downloads\Rváčův.deník.1995.720p.Xvid.AC3.CZ.avi
2016-04-04 14:12 - 2016-04-04 14:12 - 00018086 _____ C:\Users\Marcel\Downloads\[CzT]Rvacuv_denik_The_Basketball_Diaries_1995_CZ_720pHD_.torrent
2016-04-03 14:57 - 2016-04-04 14:54 - 00000000 ____D C:\Users\Marcel\AppData\LocalLow\uTorrent
2016-04-03 14:57 - 2016-04-03 16:15 - 1345484800 _____ C:\Users\Marcel\Downloads\Rvacuv-denik.avi
2016-04-03 14:57 - 2016-04-03 14:57 - 00013299 _____ C:\Users\Marcel\Downloads\[CzT]Rvacuv_denik_The_Basketball_Diaries_1995_CZ_SK_EN_.torrent
2016-03-23 21:20 - 2016-03-25 16:19 - 00000000 ____D C:\Users\Marcel\Desktop\picovinky
2016-03-20 12:23 - 2016-03-20 12:23 - 00000000 ____D C:\WINDOWS\System32\Tasks\Apple
2016-03-20 12:23 - 2016-03-20 12:23 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-03-20 12:22 - 2016-03-20 12:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iCloud
2016-03-20 11:24 - 2016-03-20 11:24 - 00001899 _____ C:\Users\Marcel\AppData\Roaming\Microsoft\Windows\Start Menu\REACHit Drive.lnk
2016-03-20 11:22 - 2016-03-20 11:22 - 00000000 ____D C:\Users\Marcel\AppData\Local\Lenovo
2016-03-20 11:22 - 2016-03-20 11:22 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo
2016-03-20 11:21 - 2016-03-20 11:24 - 00000000 ____D C:\WINDOWS\System32\Tasks\Lenovo
2016-03-20 11:21 - 2016-03-20 11:23 - 00000000 ____D C:\Users\Marcel\AppData\Local\Downloaded Installations
2016-03-20 11:21 - 2016-03-20 11:22 - 00000000 ____D C:\Program Files (x86)\Lenovo
2016-03-20 11:21 - 2016-03-20 11:21 - 00000000 ____D C:\WINDOWS\Downloaded Installations
2016-03-20 11:21 - 2016-03-20 11:21 - 00000000 ____D C:\Users\Marcel\AppData\Roaming\0G1F1H0M1P1Q1L1T0P1I1T2U1P1C
2016-03-20 11:17 - 2016-02-29 13:16 - 00000000 ____D C:\Users\Marcel\Desktop\MARPO - Lone Survivor 2015
2016-03-20 01:28 - 2016-03-20 01:29 - 00000000 ____D C:\Users\Marcel\Desktop\covery
2016-03-19 23:22 - 2016-03-19 23:22 - 00000000 ____D C:\Users\Marcel\Documents\Electronic Arts
2016-03-19 23:13 - 2016-03-19 23:13 - 00001619 _____ C:\Users\Public\Desktop\The Sims 4.lnk
2016-03-19 23:13 - 2011-02-18 16:07 - 00447752 _____ (On2.com) C:\WINDOWS\SysWOW64\vp6vfw.dll
2016-03-19 22:33 - 2015-12-09 05:39 - 00301728 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-03-19 20:17 - 2016-03-19 20:17 - 00000000 ____D C:\WINDOWS\system32\SleepStudy
2016-03-19 15:46 - 2016-03-22 07:47 - 00000000 ____D C:\Users\Marcel\Downloads\The Sims 4
2016-03-19 15:45 - 2016-03-19 15:45 - 00017527 _____ C:\Users\Marcel\Downloads\[CzT]The_Sims_4_2014_CZ_.torrent
2016-03-19 12:49 - 2016-03-19 12:57 - 100679734 _____ C:\Users\Marcel\Downloads\MARPO---Lone-Survivor-2016.rar
2016-03-19 12:18 - 2016-03-19 12:24 - 106871813 _____ C:\Users\Marcel\Downloads\Ektor---Detektor-2-(2016)(Itunes).rar
2016-03-19 11:39 - 2016-03-19 11:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2016-03-19 11:34 - 2016-04-06 22:17 - 00000000 ____D C:\Users\Marcel\Desktop\este neviem
2016-03-19 11:34 - 2016-03-23 21:57 - 00000000 ____D C:\Users\Marcel\Desktop\albumis
2016-03-19 11:33 - 2016-03-19 11:57 - 371026844 _____ C:\Users\Marcel\Downloads\Kontrafakt---Navždy-(2013)-FLAC.rar
2016-03-19 11:28 - 2016-03-19 11:28 - 00001832 _____ C:\Users\Public\Desktop\iTunes.lnk
2016-03-19 11:28 - 2016-03-19 11:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2016-03-19 11:27 - 2016-03-19 11:28 - 00000000 ____D C:\Program Files\iTunes
2016-03-19 11:27 - 2016-03-19 11:27 - 00000000 ____D C:\Program Files\iPod
2016-03-19 11:27 - 2016-03-19 11:27 - 00000000 ____D C:\Program Files (x86)\iTunes
2016-03-19 11:26 - 2016-03-19 11:26 - 00003224 _____ C:\WINDOWS\System32\Tasks\{47F3BFD0-E61C-4B92-A2B6-16D8B833D24C}
2016-03-19 11:24 - 2016-03-19 11:24 - 00000000 ____D C:\Program Files\Bonjour
2016-03-19 11:24 - 2016-03-19 11:24 - 00000000 ____D C:\Program Files (x86)\Bonjour
2016-03-18 16:57 - 2016-04-07 13:02 - 00987728 _____ (Google Inc.) C:\Users\Marcel\Downloads\ChromeSetup(1).exe
2016-03-18 16:30 - 2016-03-18 16:31 - 00000000 ____D C:\Users\Marcel\Desktop\Pozadia
2016-03-18 16:23 - 2016-03-18 16:29 - 00000000 ____D C:\Users\Marcel\Desktop\Videá
2016-03-18 14:02 - 2016-03-18 14:02 - 00000000 ____D C:\Users\Marcel\Documents\Criterion Games
2016-03-18 13:19 - 2016-03-19 23:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Hry
2016-03-18 13:19 - 2016-03-18 13:19 - 00000889 _____ C:\Users\Public\Desktop\Need for Speed Most Wanted.lnk
2016-03-18 13:19 - 2016-03-18 13:19 - 00000000 ____D C:\WINDOWS\SysWOW64\directx
2016-03-18 12:15 - 2016-03-16 19:05 - 2426787840 ____R C:\Users\Marcel\Desktop\Need for Speed Most Wanted 2012 CZ.iso
2016-03-18 12:07 - 2016-03-20 01:19 - 00000000 ____D C:\Users\Marcel\Desktop\Hry
2016-03-18 11:57 - 2016-03-24 18:41 - 00000000 ____D C:\Users\Marcel\Desktop\Melisa
2016-03-18 11:57 - 2016-03-18 11:57 - 00000000 ____D C:\WINDOWS\PCHEALTH
2016-03-18 11:44 - 2016-02-24 11:51 - 07474528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-03-18 11:44 - 2016-02-24 11:28 - 03449168 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSService.dll
2016-03-18 11:44 - 2016-02-24 10:46 - 06607080 _____ (Microsoft Corporation) C:\WINDOWS\system32\windows.storage.dll
2016-03-18 11:44 - 2016-02-24 10:11 - 01997152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2016-03-18 11:44 - 2016-02-24 10:06 - 05242496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\windows.storage.dll
2016-03-18 11:44 - 2016-02-24 08:11 - 03593216 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-03-18 11:44 - 2016-02-24 08:01 - 01831936 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-03-18 11:44 - 2016-02-24 08:00 - 02273792 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-03-18 11:44 - 2016-02-24 07:55 - 01996288 _____ (Microsoft Corporation) C:\WINDOWS\system32\ActiveSyncProvider.dll
2016-03-18 11:44 - 2016-02-24 07:20 - 22376960 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-03-18 11:44 - 2016-02-24 07:18 - 18677760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2016-03-18 11:44 - 2016-02-24 07:12 - 19339776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-03-18 11:44 - 2016-02-24 07:12 - 05321728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Data.Pdf.dll
2016-03-18 11:44 - 2016-02-24 07:10 - 24600576 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-03-18 11:44 - 2016-02-24 07:09 - 06972416 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Data.Pdf.dll
2016-03-18 11:44 - 2016-02-24 07:05 - 12586496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-03-18 11:44 - 2016-02-24 07:03 - 14252544 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-03-18 11:44 - 2016-02-24 06:59 - 05661696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2016-03-18 11:44 - 2016-02-24 06:55 - 07835648 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-03-18 11:43 - 2016-03-01 07:31 - 00848168 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsvr.dll
2016-03-18 11:43 - 2016-03-01 07:22 - 00709688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsvr.dll
2016-03-18 11:43 - 2016-02-24 11:52 - 01997328 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2016-03-18 11:43 - 2016-02-24 11:48 - 00713568 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-03-18 11:43 - 2016-02-24 11:47 - 01173344 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-03-18 11:43 - 2016-02-24 11:40 - 00513888 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-03-18 11:43 - 2016-02-24 11:34 - 01613664 _____ (Microsoft Corporation) C:\WINDOWS\system32\diagtrack.dll
2016-03-18 11:43 - 2016-02-24 11:15 - 01557768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2016-03-18 11:43 - 2016-02-24 10:58 - 00794888 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfds.dll
2016-03-18 11:43 - 2016-02-24 10:54 - 00127840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2016-03-18 11:43 - 2016-02-24 10:51 - 01322248 _____ (Microsoft Corporation) C:\WINDOWS\system32\ole32.dll
2016-03-18 11:43 - 2016-02-24 10:50 - 00808800 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWAHost.exe
2016-03-18 11:43 - 2016-02-24 10:43 - 00625000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ClipSVC.dll
2016-03-18 11:43 - 2016-02-24 10:39 - 00358752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-03-18 11:43 - 2016-02-24 10:39 - 00141560 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthHost.exe
2016-03-18 11:43 - 2016-02-24 10:19 - 00670928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfds.dll
2016-03-18 11:43 - 2016-02-24 10:14 - 00216416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxAllUserStore.dll
2016-03-18 11:43 - 2016-02-24 10:11 - 00957608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ole32.dll
2016-03-18 11:43 - 2016-02-24 10:11 - 00703840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWAHost.exe
2016-03-18 11:43 - 2016-02-24 10:11 - 00652392 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxgi.dll
2016-03-18 11:43 - 2016-02-24 10:11 - 00394080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms1.sys
2016-03-18 11:43 - 2016-02-24 10:11 - 00258280 _____ (Microsoft Corporation) C:\WINDOWS\system32\sqmapi.dll
2016-03-18 11:43 - 2016-02-24 10:10 - 00630632 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-03-18 11:43 - 2016-02-24 10:10 - 00576864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgmms2.sys
2016-03-18 11:43 - 2016-02-24 10:09 - 00640472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wer.dll
2016-03-18 11:43 - 2016-02-24 10:09 - 00147808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wermgr.exe
2016-03-18 11:43 - 2016-02-24 09:59 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2016-03-18 11:43 - 2016-02-24 09:39 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTypeHelperUtil.dll
2016-03-18 11:43 - 2016-02-24 09:39 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExtrasXmlParser.dll
2016-03-18 11:43 - 2016-02-24 09:38 - 00187744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxAllUserStore.dll
2016-03-18 11:43 - 2016-02-24 09:38 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataTimeUtil.dll
2016-03-18 11:43 - 2016-02-24 09:37 - 00045056 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataLanguageUtil.dll
2016-03-18 11:43 - 2016-02-24 09:36 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenanceClient.dll
2016-03-18 11:43 - 2016-02-24 09:35 - 00540752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2016-03-18 11:43 - 2016-02-24 09:35 - 00523752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxgi.dll
2016-03-18 11:43 - 2016-02-24 09:35 - 00220064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sqmapi.dll
2016-03-18 11:43 - 2016-02-24 09:35 - 00045568 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-03-18 11:43 - 2016-02-24 09:33 - 00538736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wer.dll
2016-03-18 11:43 - 2016-02-24 09:33 - 00141664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wermgr.exe
2016-03-18 11:43 - 2016-02-24 09:31 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-03-18 11:43 - 2016-02-24 09:30 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfapigp.dll
2016-03-18 11:43 - 2016-02-24 09:28 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\POSyncServices.dll
2016-03-18 11:43 - 2016-02-24 09:23 - 00112640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthenum.sys
2016-03-18 11:43 - 2016-02-24 09:23 - 00091648 _____ (Microsoft Corporation) C:\WINDOWS\system32\asycfilt.dll
2016-03-18 11:43 - 2016-02-24 09:23 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataPlatformHelperUtil.dll
2016-03-18 11:43 - 2016-02-24 09:22 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwpolicyiomgr.dll
2016-03-18 11:43 - 2016-02-24 09:20 - 00195072 _____ (Microsoft Corporation) C:\WINDOWS\system32\VCardParser.dll
2016-03-18 11:43 - 2016-02-24 09:20 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-03-18 11:43 - 2016-02-24 09:20 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-03-18 11:43 - 2016-02-24 09:19 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\dssvc.dll
2016-03-18 11:43 - 2016-02-24 09:19 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\system32\seclogon.dll
2016-03-18 11:43 - 2016-02-24 09:15 - 00365568 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-03-18 11:43 - 2016-02-24 09:14 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExSMime.dll
2016-03-18 11:43 - 2016-02-24 09:13 - 00121856 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentActivation.dll
2016-03-18 11:43 - 2016-02-24 09:12 - 00243712 _____ (Microsoft Corporation) C:\WINDOWS\system32\cemapi.dll
2016-03-18 11:43 - 2016-02-24 09:12 - 00221184 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneCallHistoryApis.dll
2016-03-18 11:43 - 2016-02-24 09:10 - 00093184 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpninprc.dll
2016-03-18 11:43 - 2016-02-24 09:09 - 00258560 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataAccountApis.dll
2016-03-18 11:43 - 2016-02-24 09:09 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSip.dll
2016-03-18 11:43 - 2016-02-24 09:07 - 00252928 _____ (Microsoft Corporation) C:\WINDOWS\system32\PimIndexMaintenance.dll
2016-03-18 11:43 - 2016-02-24 09:05 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-03-18 11:43 - 2016-02-24 09:03 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\olepro32.dll
2016-03-18 11:43 - 2016-02-24 09:02 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\CallHistoryClient.dll
2016-03-18 11:43 - 2016-02-24 09:01 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2016-03-18 11:43 - 2016-02-24 09:01 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\AuthBroker.dll
2016-03-18 11:43 - 2016-02-24 09:01 - 00067584 _____ (Microsoft Corporation) C:\WINDOWS\system32\profext.dll
2016-03-18 11:43 - 2016-02-24 09:00 - 00214528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Scanners.dll
2016-03-18 11:43 - 2016-02-24 08:59 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Bluetooth.dll
2016-03-18 11:43 - 2016-02-24 08:59 - 00360448 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultsvc.dll
2016-03-18 11:43 - 2016-02-24 08:59 - 00318976 _____ (Microsoft Corporation) C:\WINDOWS\system32\domgmt.dll
2016-03-18 11:43 - 2016-02-24 08:58 - 00685568 _____ (Microsoft Corporation) C:\WINDOWS\system32\scapi.dll
2016-03-18 11:43 - 2016-02-24 08:55 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\system32\EmailApis.dll
2016-03-18 11:43 - 2016-02-24 08:55 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\PackageStateRoaming.dll
2016-03-18 11:43 - 2016-02-24 08:55 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExtrasXmlParser.dll
2016-03-18 11:43 - 2016-02-24 08:54 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2016-03-18 11:43 - 2016-02-24 08:54 - 00288768 _____ (Microsoft Corporation) C:\WINDOWS\system32\vaultcli.dll
2016-03-18 11:43 - 2016-02-24 08:54 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsqmcons.exe
2016-03-18 11:43 - 2016-02-24 08:54 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTypeHelperUtil.dll
2016-03-18 11:43 - 2016-02-24 08:53 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataTimeUtil.dll
2016-03-18 11:43 - 2016-02-24 08:53 - 00037888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataLanguageUtil.dll
2016-03-18 11:43 - 2016-02-24 08:52 - 00451584 _____ (Microsoft Corporation) C:\WINDOWS\system32\werui.dll
2016-03-18 11:43 - 2016-02-24 08:52 - 00048128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PimIndexMaintenanceClient.dll
2016-03-18 11:43 - 2016-02-24 08:51 - 00037376 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2016-03-18 11:43 - 2016-02-24 08:49 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\ChatApis.dll
2016-03-18 11:43 - 2016-02-24 08:47 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontsub.dll
2016-03-18 11:43 - 2016-02-24 08:46 - 00020480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wfapigp.dll
2016-03-18 11:43 - 2016-02-24 08:44 - 01713664 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-03-18 11:43 - 2016-02-24 08:44 - 00915456 _____ (Microsoft Corporation) C:\WINDOWS\system32\configurationclient.dll
2016-03-18 11:43 - 2016-02-24 08:44 - 00700416 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppointmentApis.dll
2016-03-18 11:43 - 2016-02-24 08:44 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\POSyncServices.dll
2016-03-18 11:43 - 2016-02-24 08:43 - 00957952 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-03-18 11:43 - 2016-02-24 08:43 - 00286720 _____ (Microsoft Corporation) C:\WINDOWS\system32\deviceaccess.dll
2016-03-18 11:43 - 2016-02-24 08:42 - 00954368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bthport.sys
2016-03-18 11:43 - 2016-02-24 08:42 - 00084992 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BTHUSB.SYS
2016-03-18 11:43 - 2016-02-24 08:41 - 00982016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxPackaging.dll
2016-03-18 11:43 - 2016-02-24 08:41 - 00436736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentClient.dll
2016-03-18 11:43 - 2016-02-24 08:40 - 01224704 _____ (Microsoft Corporation) C:\WINDOWS\system32\Unistore.dll
2016-03-18 11:43 - 2016-02-24 08:40 - 00078848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\asycfilt.dll
2016-03-18 11:43 - 2016-02-24 08:40 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataPlatformHelperUtil.dll
2016-03-18 11:43 - 2016-02-24 08:39 - 01390592 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-03-18 11:43 - 2016-02-24 08:39 - 00164864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwpolicyiomgr.dll
2016-03-18 11:43 - 2016-02-24 08:38 - 00150528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\VCardParser.dll
2016-03-18 11:43 - 2016-02-24 08:36 - 01847808 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMPDMC.exe
2016-03-18 11:43 - 2016-02-24 08:34 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContactApis.dll
2016-03-18 11:43 - 2016-02-24 08:34 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\atmfd.dll
2016-03-18 11:43 - 2016-02-24 08:32 - 00223744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExSMime.dll
2016-03-18 11:43 - 2016-02-24 08:32 - 00098304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentActivation.dll
2016-03-18 11:43 - 2016-02-24 08:31 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cemapi.dll
2016-03-18 11:43 - 2016-02-24 08:31 - 00169984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PhoneCallHistoryApis.dll
2016-03-18 11:43 - 2016-02-24 08:28 - 00870912 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2016-03-18 11:43 - 2016-02-24 08:28 - 00196608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserDataAccountApis.dll
2016-03-18 11:43 - 2016-02-24 08:28 - 00135168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxSip.dll
2016-03-18 11:43 - 2016-02-24 08:25 - 00401408 _____ (Microsoft Corporation) C:\WINDOWS\system32\sharemediacpl.dll
2016-03-18 11:43 - 2016-02-24 08:23 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CallHistoryClient.dll
2016-03-18 11:43 - 2016-02-24 08:22 - 00053248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\profext.dll
2016-03-18 11:43 - 2016-02-24 08:21 - 00315904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Internal.Bluetooth.dll
2016-03-18 11:43 - 2016-02-24 08:21 - 00168448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Devices.Scanners.dll
2016-03-18 11:43 - 2016-02-24 08:18 - 01490432 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserDataService.dll
2016-03-18 11:43 - 2016-02-24 08:18 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EmailApis.dll
2016-03-18 11:43 - 2016-02-24 08:18 - 00184832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PackageStateRoaming.dll
2016-03-18 11:43 - 2016-02-24 08:17 - 00369664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2016-03-18 11:43 - 2016-02-24 08:16 - 00394752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\werui.dll
2016-03-18 11:43 - 2016-02-24 08:13 - 00540160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ChatApis.dll
2016-03-18 11:43 - 2016-02-24 08:09 - 01443328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRHInproc.dll
2016-03-18 11:43 - 2016-02-24 08:09 - 00793600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SRH.dll
2016-03-18 11:43 - 2016-02-24 08:09 - 00552960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppointmentApis.dll
2016-03-18 11:43 - 2016-02-24 08:09 - 00228352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\deviceaccess.dll
2016-03-18 11:43 - 2016-02-24 08:07 - 00949248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Unistore.dll
2016-03-18 11:43 - 2016-02-24 08:07 - 00890368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppxPackaging.dll
2016-03-18 11:43 - 2016-02-24 08:07 - 00342528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-03-18 11:43 - 2016-02-24 08:04 - 01497088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMPDMC.exe
2016-03-18 11:43 - 2016-02-24 08:03 - 00769536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ContactApis.dll
2016-03-18 11:43 - 2016-02-24 08:00 - 01098752 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-03-18 11:43 - 2016-02-24 07:57 - 02158592 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-03-18 11:43 - 2016-02-24 07:43 - 00184320 _____ (Microsoft Corporation) C:\WINDOWS\system32\fwbase.dll
2016-03-18 11:43 - 2016-02-24 07:34 - 01707520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ActiveSyncProvider.dll
2016-03-18 11:43 - 2016-02-24 07:22 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fwbase.dll
2016-03-18 11:06 - 2016-03-18 11:06 - 00001061 _____ C:\Users\Marcel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Voliteľné funkcie.lnk
2016-03-18 10:56 - 2016-03-18 10:56 - 22135600 _____ C:\Users\Marcel\Downloads\SamsungUniversalPrintDriver3PS.exe
2016-03-18 10:51 - 2016-03-18 10:51 - 00000000 ____D C:\ProgramData\USOShared
2016-03-18 10:47 - 2016-03-18 10:47 - 00000000 ____D C:\Program Files\Common Files\Common Desktop Agent
2016-03-18 10:46 - 2016-03-18 10:46 - 00000000 ____D C:\Users\Marcel\AppData\Local\Samsung
2016-03-18 10:46 - 2015-11-27 15:02 - 00841920 _____ (Samsung Electronics Co., Ltd.) C:\WINDOWS\system32\NetFaxPort64.dll
2016-03-18 10:46 - 2015-11-27 14:52 - 00474624 _____ (Samsung Software Center) C:\WINDOWS\prinst.exe
2016-03-18 10:30 - 2015-11-12 15:12 - 00037201 ____N C:\WINDOWS\SysWOW64\spddata.xml
2016-03-18 10:30 - 2015-11-05 23:02 - 00491328 ____N C:\WINDOWS\SysWOW64\spdsvc.exe
2016-03-18 10:29 - 2016-03-18 10:29 - 00000000 ____D C:\Users\Marcel\AppData\Local\MicrosoftEdge
2016-03-18 10:25 - 2016-03-18 10:26 - 25704312 _____ C:\Users\Marcel\Downloads\C48x_Series_WIN_Printer_V3.00.05.01.01.zip
2016-03-18 10:21 - 2016-03-18 10:24 - 25323876 _____ C:\Users\Marcel\Downloads\C480_V3.00.01.11.zip
2016-03-18 10:04 - 2016-03-18 10:47 - 00003498 _____ C:\WINDOWS\System32\Tasks\EPM Preload
2016-03-18 10:04 - 2016-03-18 10:04 - 00002360 _____ C:\Users\Public\Desktop\Samsung Printer Diagnostics.lnk
2016-03-18 10:04 - 2016-03-18 10:04 - 00000000 ____D C:\ProgramData\SSScan
2016-03-18 10:04 - 2015-03-23 06:04 - 00158528 _____ C:\WINDOWS\wiainst64.exe
2016-03-18 10:04 - 2014-12-05 18:38 - 00580608 _____ C:\WINDOWS\system32\SNWIAUI.dll
2016-03-18 10:04 - 2014-12-05 18:36 - 00755712 _____ C:\WINDOWS\system32\SnMinDrv.dll
2016-03-18 10:04 - 2014-12-05 18:36 - 00155136 _____ C:\WINDOWS\system32\SnImgFlt.dll
2016-03-18 10:04 - 2014-12-05 18:36 - 00068096 _____ C:\WINDOWS\system32\SnErHdlr.dll
2016-03-18 10:04 - 2014-12-05 18:32 - 00420352 _____ C:\WINDOWS\system32\SaMinDrv.dll
2016-03-18 10:04 - 2014-12-05 18:31 - 00151040 _____ C:\WINDOWS\system32\SaImgFlt.dll
2016-03-18 10:04 - 2014-12-05 18:31 - 00068096 _____ C:\WINDOWS\system32\SaErHdlr.dll
2016-03-18 10:04 - 2014-11-21 06:45 - 00355840 _____ (Samsung Electronics) C:\WINDOWS\system32\SnWIAMUI.dll
2016-03-18 10:04 - 2014-11-21 06:45 - 00251904 _____ (TODO: <Company name>) C:\WINDOWS\system32\SnAMPV.dll
2016-03-18 10:04 - 2014-08-19 17:37 - 00120846 _____ C:\WINDOWS\system32\WIAEXSTR.loc
2016-03-18 10:03 - 2016-03-18 11:02 - 00000000 ____D C:\ProgramData\Samsung
2016-03-18 10:03 - 2016-03-18 10:03 - 00000000 ____D C:\Program Files\Samsung
2016-03-18 10:03 - 2015-06-11 13:25 - 03055616 ____N C:\WINDOWS\system32\DlgSearchEngine.dll
2016-03-18 10:03 - 2015-06-11 13:25 - 02342400 ____N C:\WINDOWS\SysWOW64\DlgSearchEngine.dll
2016-03-18 10:02 - 2016-03-18 10:47 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Printers
2016-03-18 10:02 - 2016-03-18 10:46 - 00000000 ____D C:\Users\Marcel\AppData\Roaming\Samsung
2016-03-18 10:02 - 2016-03-18 10:46 - 00000000 ____D C:\Program Files (x86)\Samsung
2016-03-18 10:02 - 2016-03-18 10:02 - 00143664 ____N C:\WINDOWS\SysWOW64\SecUPDUtilSvc.exe
2016-03-18 10:02 - 2016-03-18 10:02 - 00143664 ____N C:\WINDOWS\system32\SecUPDUtilSvc.exe
2016-03-18 10:02 - 2015-02-11 14:20 - 00158016 _____ C:\WINDOWS\system32\us005ci.exe
2016-03-18 10:02 - 2014-11-25 13:15 - 00226424 _____ C:\WINDOWS\system32\SBuySupplies.exe
2016-03-18 10:02 - 2014-11-25 13:14 - 00089600 _____ (SS) C:\WINDOWS\system32\us005ci.dll
2016-03-18 10:02 - 2014-11-25 13:14 - 00022528 _____ () C:\WINDOWS\system32\us005lm.dll
2016-03-18 09:47 - 2016-03-18 09:47 - 00000000 ____D C:\Users\Marcel\Desktop\wireless printer
2016-03-18 09:43 - 2016-03-18 09:44 - 03715633 _____ C:\Users\Marcel\Downloads\480_EasyWirelessSetup_Mac_V1.4.24.zip
2016-03-18 09:36 - 2016-03-18 09:36 - 00000000 ____D C:\Users\Marcel\AppData\Local\NetworkTiles
2016-03-18 09:35 - 2014-11-25 10:19 - 00011576 _____ (Samsung Electronics) C:\WINDOWS\system32\Drivers\SSPORT.SYS
2016-03-18 08:58 - 2016-03-18 08:58 - 00002424 _____ C:\Users\Marcel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2016-03-18 08:58 - 2016-03-18 08:58 - 00000000 ___RD C:\Users\Marcel\OneDrive
2016-03-18 08:56 - 2016-03-18 08:56 - 00000000 ____D C:\Users\Marcel\AppData\Local\Publishers
2016-03-18 08:56 - 2016-03-18 08:56 - 00000000 ____D C:\Users\Marcel\AppData\Local\ActiveSync
2016-03-18 08:55 - 2016-03-18 08:55 - 00000000 ____D C:\Users\Marcel\AppData\Local\Comms
2016-03-18 08:54 - 2016-03-18 08:54 - 00000000 ____D C:\Users\Marcel\AppData\Local\TileDataLayer
2016-03-18 08:53 - 2016-03-18 08:53 - 00000020 ___SH C:\Users\Marcel\ntuser.ini
2016-03-18 08:50 - 2016-03-18 08:50 - 00000000 ____H C:\WINDOWS\system32\Drivers\Msft_Kernel_ETD_01009.Wdf
2016-03-18 08:45 - 2016-03-18 08:45 - 00000000 ____D C:\ProgramData\Microsoft OneDrive
2016-03-18 02:17 - 2016-04-07 16:20 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-03-18 02:10 - 2016-04-07 13:27 - 00881036 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-03-18 02:06 - 2016-04-07 16:21 - 00146648 ____N (CyberLink Corp.) C:\WINDOWS\system32\Drivers\rikvm_38F51D56.sys
2016-03-18 02:03 - 2016-03-18 02:03 - 00001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-03-18 02:03 - 2016-03-18 02:03 - 00000000 ____D C:\Users\Default\AppData\Local\Microsoft Help
2016-03-18 02:03 - 2016-03-18 02:03 - 00000000 ____D C:\Users\Default User\AppData\Local\Microsoft Help
2016-03-18 01:56 - 2016-03-18 01:56 - 00000000 ____D C:\WINDOWS\system32\config\bbimigrate
2016-03-18 01:54 - 2016-04-07 15:46 - 00000000 ____D C:\Users\Marcel
2016-03-18 01:49 - 2016-03-18 01:58 - 00000000 ____D C:\ProgramData\NVIDIA Corporation
2016-03-18 01:49 - 2016-03-18 01:57 - 00000000 ____D C:\Program Files\Intel
2016-03-18 01:49 - 2016-03-18 01:49 - 00000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2016-03-18 01:49 - 2016-03-18 01:49 - 00000000 ____D C:\WINDOWS\system32\SRSLabs
2016-03-18 01:49 - 2016-03-18 01:49 - 00000000 ____D C:\ProgramData\NVIDIA
2016-03-18 01:49 - 2016-03-18 01:49 - 00000000 ____D C:\Program Files\Realtek
2016-03-18 01:49 - 2015-08-27 20:20 - 00072704 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2016-03-18 01:49 - 2015-08-27 20:20 - 00069120 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2016-03-18 01:49 - 2015-07-23 03:10 - 06873928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2016-03-18 01:49 - 2015-07-23 03:10 - 03493008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvc64.dll
2016-03-18 01:49 - 2015-07-23 03:10 - 02558608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvsvcr.dll
2016-03-18 01:49 - 2015-07-23 03:10 - 01059984 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshext.dll
2016-03-18 01:49 - 2015-07-23 03:10 - 00937800 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvvsvc.exe
2016-03-18 01:49 - 2015-07-23 03:10 - 00385168 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvmctray.dll
2016-03-18 01:49 - 2015-07-23 03:10 - 00074896 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nv3dappshextr.dll
2016-03-18 01:49 - 2015-07-23 03:10 - 00062608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvshext.dll
2016-03-18 01:49 - 2015-07-22 06:29 - 05121613 _____ C:\WINDOWS\system32\nvcoproc.bin
2016-03-18 01:48 - 2016-03-18 08:51 - 00000000 ____D C:\Program Files\Elantech
2016-03-18 01:48 - 2016-03-18 01:57 - 00000000 ____D C:\Program Files\NVIDIA Corporation
2016-03-18 01:48 - 2016-03-18 01:57 - 00000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2016-03-18 01:48 - 2015-10-30 09:17 - 02718208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2016-03-18 01:45 - 2016-03-22 07:48 - 00419296 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-03-18 00:44 - 2016-04-07 13:10 - 00000000 ___DC C:\WINDOWS\Panther
2016-03-18 00:41 - 2016-03-18 00:42 - 00000000 ____D C:\Windows.old
2016-03-18 00:40 - 2016-03-18 00:40 - 22564328 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 21124344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 16986112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 13382656 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 12125696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 11545600 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 09919488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 08705672 _____ (Microsoft Corp.) C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 07979008 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 07533568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 07199232 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 06952088 _____ (Microsoft Corp.) C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 06740992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 06572032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanmm.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mos.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 05503488 _____ (Microsoft Corporation) C:\WINDOWS\system32\d2d1.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingMaps.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 04894208 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 04827136 _____ (Microsoft Corporation) C:\WINDOWS\system32\ExplorerFrame.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 04759040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d2d1.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 04502352 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 04412928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ExplorerFrame.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 04064320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 03993600 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 03671888 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 03666432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 03425792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 03355136 _____ (Microsoft Corporation) C:\WINDOWS\system32\msftedit.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02919320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02912256 _____ (Microsoft Corporation) C:\WINDOWS\system32\CertEnroll.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02843136 _____ (Microsoft Corporation) C:\WINDOWS\system32\cdp.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02793472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02773096 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2016-03-18 00:40 - 2016-03-18 00:40 - 02756096 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2016-03-18 00:40 - 2016-03-18 00:40 - 02755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02680320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msftedit.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02654872 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02635264 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02624512 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02606824 _____ (Microsoft Corporation) C:\WINDOWS\system32\combase.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02604032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CertEnroll.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02597888 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetworkMobileSettings.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02587696 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml6.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02581504 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02544264 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfcore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02352128 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02295808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02186864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02180136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfcore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02155008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02152288 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 02127360 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-03-18 00:40 - 2016-03-18 00:40 - 02061312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02057216 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidsvc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02050048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-03-18 00:40 - 2016-03-18 00:40 - 02026736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml6.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02001408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01946624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputService.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01860096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cdp.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01859960 _____ C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01824264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\combase.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01818696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01814528 _____ (Microsoft Corporation) C:\WINDOWS\system32\pnidui.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01804664 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMALFXGFXDSP.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01799168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Logon.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01750440 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 01731584 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01717248 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01674240 _____ (Microsoft Corporation) C:\WINDOWS\system32\quartz.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01648640 _____ (Microsoft Corporation) C:\WINDOWS\system32\comsvcs.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dwmcore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01594408 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01582080 _____ (Microsoft Corporation) C:\WINDOWS\system32\aitstatic.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 01542816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01542656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\quartz.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RecoveryDrive.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 01467392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01415200 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01399224 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01395200 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01390080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01387520 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01371792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01337240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01328128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\comsvcs.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01318912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifinetworkmanager.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01317640 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-03-18 00:40 - 2016-03-18 00:40 - 01309376 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01299504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetsrc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01281376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01270072 _____ (Microsoft Corporation) C:\WINDOWS\system32\WinTypes.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Xaml.Resources.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01268736 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01255936 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOE.DLL
2016-03-18 00:40 - 2016-03-18 00:40 - 01213440 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01174008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01152328 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfasfsrcsnk.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01141504 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblGameSave.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01139200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01131520 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Audio.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetsrc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01118208 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01105920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Audio.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01092456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfplat.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01089880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 01087488 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01070080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOE.DLL
2016-03-18 00:40 - 2016-03-18 00:40 - 01062480 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01056256 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01054208 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01042432 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingOnlineServices.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01035776 _____ (Microsoft Corporation) C:\WINDOWS\system32\XboxNetApiSvc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01030416 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-03-18 00:40 - 2016-03-18 00:40 - 01017032 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfsrcsnk.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 01009152 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMSPDMOD.DLL
2016-03-18 00:40 - 2016-03-18 00:40 - 00997376 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00990720 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSyncCore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00989536 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-03-18 00:40 - 2016-03-18 00:40 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00988160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00980352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfasfsrcsnk.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00973664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00970752 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00948736 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00938496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00931328 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSMPEG2ENC.DLL
2016-03-18 00:40 - 2016-03-18 00:40 - 00925064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfplat.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00912384 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgr.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00911648 _____ (Microsoft Corporation) C:\WINDOWS\system32\dcomp.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00900608 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00895080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfsrcsnk.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00890880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMSPDMOD.DLL
2016-03-18 00:40 - 2016-03-18 00:40 - 00884736 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasdlg.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00882720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00874968 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00871936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSMPEG2ENC.DLL
2016-03-18 00:40 - 2016-03-18 00:40 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\wpncore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00870400 _____ (Microsoft Corporation) C:\WINDOWS\system32\modernexecserver.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00858952 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfnetcore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00852480 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00851456 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00847360 _____ (Microsoft Corporation) C:\WINDOWS\system32\netlogon.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00828928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.AccountsControl.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00824320 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebFilter.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00820704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WinTypes.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00819648 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00803840 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JpMapControl.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasdlg.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00794112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttp.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00791744 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00786696 _____ (Microsoft Corporation) C:\WINDOWS\system32\WMADMOD.DLL
2016-03-18 00:40 - 2016-03-18 00:40 - 00785088 _____ (Microsoft Corporation) C:\WINDOWS\system32\evr.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NMAA.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00784384 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00779384 _____ (Microsoft Corporation) C:\WINDOWS\system32\taskschd.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00755712 _____ (Microsoft Corporation) C:\WINDOWS\system32\spoolsv.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00754176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSyncCore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00749056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneService.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00733184 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasapi32.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00726528 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlidcli.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00713824 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmpeg2srcsnk.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00713728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\netlogon.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlCore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00709120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BingOnlineServices.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00704000 _____ (Microsoft Corporation) C:\WINDOWS\system32\CellularAPI.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00701384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfnetcore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00698208 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimgapi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00697856 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToManager.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00696160 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00695752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WMADMOD.DLL
2016-03-18 00:40 - 2016-03-18 00:40 - 00687616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00683008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Networking.BackgroundTransfer.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00678912 _____ (Microsoft Corporation) C:\WINDOWS\system32\qedit.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00675064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dcomp.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00673792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00671472 _____ (Microsoft Corporation) C:\WINDOWS\system32\advapi32.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00653312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasapi32.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00652312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\evr.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00649216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngcsvc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00647168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00646656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00644096 _____ (Microsoft Corporation) C:\WINDOWS\system32\uReFS.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00628736 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00623616 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00621568 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbiosrvc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00617984 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00613888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttp.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00613376 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingSync.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00610816 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00606720 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmsvc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00604928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00604672 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00591872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SmsRouterSvc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00589312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MbaeApi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00587776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00586208 _____ (Microsoft Corporation) C:\WINDOWS\system32\mf.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00586080 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wimgapi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00585216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.AccountsControl.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00584704 _____ (Microsoft Corporation) C:\WINDOWS\system32\winlogon.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00578912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\afd.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00574976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.UX.EapRequestHandler.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00573440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qedit.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00572928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WpcWebFilter.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00572272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\taskschd.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00569856 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\qdvd.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00567808 _____ (Microsoft Corporation) C:\WINDOWS\system32\MCRecvSrc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00563552 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\acpi.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00558592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\uReFS.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00558080 _____ (Microsoft Corporation) C:\WINDOWS\system32\MBMediaManager.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00557056 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00555520 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00543232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00538632 _____ (Microsoft Corporation) C:\WINDOWS\system32\WWanAPI.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00536256 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00535040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00534368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBHUB3.SYS
2016-03-18 00:40 - 2016-03-18 00:40 - 00526856 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfreadwrite.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00523776 _____ (Microsoft Corporation) C:\WINDOWS\system32\catsrvut.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00523616 _____ (Microsoft Corporation) C:\WINDOWS\system32\wimserv.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToManager.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00517632 _____ (Microsoft Corporation) C:\WINDOWS\system32\winspool.drv
2016-03-18 00:40 - 2016-03-18 00:40 - 00516544 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00515584 _____ (Microsoft Corporation) C:\WINDOWS\system32\LogonController.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00511320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mf.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00510976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wlidcli.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00503296 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SettingSync.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00502112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupEngine.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00499432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\advapi32.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00498448 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFCaptureEngine.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MessagingDataModel2.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00493568 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmkvsrcsnk.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00489984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00480256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MCRecvSrc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00479232 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00477696 _____ (Microsoft Corporation) C:\WINDOWS\system32\srcore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00476728 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvproc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00475648 _____ (Microsoft Corporation) C:\WINDOWS\system32\DDDS.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00474624 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00472576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DscCore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00470528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MbaeApi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00465920 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanconn.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00463360 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00462760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfreadwrite.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00459776 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00458752 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00456704 _____ (Microsoft Corporation) C:\WINDOWS\system32\ipnathlp.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00454056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00450912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFCaptureEngine.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SyncController.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00440320 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00440152 _____ (Microsoft Corporation) C:\WINDOWS\system32\services.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00431240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WWanAPI.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00430944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00421888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LogonController.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00420928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvproc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00416768 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00415744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\catsrvut.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00414720 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanmsm.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00412512 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifitask.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00409088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\StoreAgent.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00408120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00406528 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusUpdateHandlers.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00405568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00400896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winspool.drv
2016-03-18 00:40 - 2016-03-18 00:40 - 00389992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlanapi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00389120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00387072 _____ (Microsoft Corporation) C:\WINDOWS\system32\qdvd.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00383488 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00382464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuuhext.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00379392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmkvsrcsnk.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00376536 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.MediaControl.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00372224 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDEServer.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00369912 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00366224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\CredProvDataModel.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00349696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupShim.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00346112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapConfiguration.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00345600 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00343552 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsApi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00342016 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00340480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00337840 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFPlay.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00335872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00334736 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00330240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSFlacDecoder.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00320000 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\usbmon.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\wifiprofilessettinghandler.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00305664 _____ (Microsoft Corporation) C:\WINDOWS\system32\ksproxy.ax
2016-03-18 00:40 - 2016-03-18 00:40 - 00304752 _____ (Microsoft Corporation) C:\WINDOWS\system32\systemreset.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00299008 _____ (Microsoft Corporation) C:\WINDOWS\system32\microsoft-windows-system-events.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00297472 _____ (Microsoft Corporation) C:\WINDOWS\system32\thumbcache.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\policymanager.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00292352 _____ (Microsoft Corporation) C:\WINDOWS\system32\provengine.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00289248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFPlay.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00287712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.MediaControl.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\provhandlers.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00277856 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\facecredentialprovider.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00275456 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00274944 _____ (Microsoft Corporation) C:\WINDOWS\system32\DisplayManager.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SensorsApi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00266752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSFlacDecoder.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00264544 _____ (Microsoft Corporation) C:\WINDOWS\system32\ContentDeliveryManager.Utilities.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00264192 _____ (Nokia) C:\WINDOWS\system32\NmaDirect.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00260608 _____ C:\WINDOWS\system32\MTFServer.dll

Avjeckin
Návštěvník
Návštěvník
Příspěvky: 42
Registrován: 01 zář 2014 20:20

Re: Spomaleny pc, prosim o kontrolu

#14 Příspěvek od Avjeckin »

2016-03-18 00:40 - 2016-03-18 00:40 - 00258048 _____ (Microsoft Corporation) C:\WINDOWS\system32\iassam.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00256512 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00248832 _____ (Microsoft Corporation) C:\WINDOWS\system32\UserMgrProxy.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00245840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfps.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TextInputFramework.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BthLEEnum.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00238592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xboxgip.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00237056 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\thumbcache.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00235008 _____ C:\WINDOWS\system32\MTF.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ksproxy.ax
2016-03-18 00:40 - 2016-03-18 00:40 - 00234504 _____ (Microsoft Corporation) C:\WINDOWS\system32\mftranscode.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00231936 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00223232 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00221696 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00216576 _____ (Microsoft Corporation) C:\WINDOWS\system32\QuickActionsDataModel.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\wcmcsp.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00210432 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00208176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mftranscode.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00205824 _____ (Nokia) C:\WINDOWS\SysWOW64\NmaDirect.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-AppModelExecEvents.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00204288 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iassam.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00202472 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscapi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00200704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DisplayManager.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00199168 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimCfg.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\provisioningcsp.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00190464 _____ (Microsoft Corporation) C:\WINDOWS\system32\wscsvc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiDisplay.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00185184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00182784 _____ (Microsoft Corporation) C:\WINDOWS\system32\shutdownux.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00178176 _____ (Microsoft Corporation) C:\WINDOWS\system32\psmsrv.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00176640 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rfcomm.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00175616 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00167936 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityCommon.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00166912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UserMgrProxy.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00166400 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotification.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00165376 _____ (Microsoft Corporation) C:\WINDOWS\system32\provdatastore.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00163840 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerServer.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00163328 _____ (Microsoft Corporation) C:\WINDOWS\system32\provops.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00162816 _____ C:\WINDOWS\SysWOW64\MTF.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00162816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msorcl32.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00162304 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringservice.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00161632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InstallAgent.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SimAuth.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00160768 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00159232 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceCensus.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00157696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimCfg.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WiFiDisplay.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00157184 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcertinst.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00149504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FilterDS.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00148992 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshom.ocx
2016-03-18 00:40 - 2016-03-18 00:40 - 00147968 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rmcast.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00147456 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00146272 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\appid.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00145920 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmclient.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ETWCoreUIComponentsResources.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\ETWCoreUIComponentsResources.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00134656 _____ (Microsoft Corporation) C:\WINDOWS\system32\wificonnapi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbio.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\system32\flvprophandler.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SimAuth.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00126464 _____ (Microsoft Corporation) C:\WINDOWS\system32\dialserver.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00125440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wshom.ocx
2016-03-18 00:40 - 2016-03-18 00:40 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ProximityCommon.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00122368 _____ (Microsoft Corporation) C:\WINDOWS\system32\KnobsCsp.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00120320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00119320 _____ (Microsoft Corporation) C:\WINDOWS\system32\MP3DMOD.DLL
2016-03-18 00:40 - 2016-03-18 00:40 - 00118624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tdx.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mtxoci.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00117248 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\capimg.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00116728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfps.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\system32\srpapi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00115200 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00115040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\offlinelsa.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\bridge.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MapControls.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MapControls.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00110032 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00109056 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasauto.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00104960 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rasl2tp.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offlinelsa.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00100160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MP3DMOD.DLL
2016-03-18 00:40 - 2016-03-18 00:40 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\system32\ngckeyenum.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00097280 _____ (Microsoft Corporation) C:\WINDOWS\system32\winhttpcom.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00095072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdstor.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winbio.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00092352 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\system32\NFCProvisioningPlugin.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00089088 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00088392 _____ (Microsoft Corporation) C:\WINDOWS\system32\remoteaudioendpoint.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapsBtSvc.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAppInstaller.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00086528 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceEnroller.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00085320 _____ (Microsoft Corporation) C:\WINDOWS\system32\OpenWith.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NetSetupApi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00081112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\OpenWith.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00080600 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwapi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winhttpcom.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00079360 _____ (Microsoft Corporation) C:\WINDOWS\system32\cfgbkend.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00078336 _____ (Microsoft Corporation) C:\WINDOWS\system32\BarcodeProvisioningPlugin.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\provpackageapidll.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00077312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProvPluginEng.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\system32\RMSRoamingSecurity.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.XboxLive.ProxyStub.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwanprotdim.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00075264 _____ (Microsoft Corporation) C:\WINDOWS\system32\EditBufferTestHook.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SMSRouter.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\mssign32.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwancfg.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00073360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\remoteaudioendpoint.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00072704 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AppCapture.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManagerProxy.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00069632 _____ (Microsoft Corporation) C:\WINDOWS\system32\EnterpriseDesktopAppMgmtCSP.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00067072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\usbser.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininetlui.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosHostClient.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\system32\ihvrilproxy.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00063528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wwapi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00063488 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cfgbkend.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mssign32.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00060928 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00058408 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosStorage.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosResource.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00058368 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosResource.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\provtool.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\rilproxy.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00055296 _____ (Microsoft Corporation) C:\WINDOWS\system32\MusNotificationUx.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringclient.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemovableMediaProvisioningPlugin.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wwanpref.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00052224 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00051680 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsUtilsV2.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00049152 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcaui.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MosHostClient.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\wfdprov.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00044032 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsplib.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\usermgrcli.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.proxy.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00042496 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapstoasttask.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthManagerProxy.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pcaui.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00041984 _____ (Microsoft Corporation) C:\WINDOWS\system32\TimeBrokerClient.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00037376 _____ (Microsoft Corporation) C:\WINDOWS\system32\LaunchWinApp.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\ztrace_maps.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00036864 _____ (Microsoft Corporation) C:\WINDOWS\system32\BackgroundTransferHost.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UIAutomationCoreRes.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00036352 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCoreRes.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00035680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\wimmount.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00035656 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfpmp.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00034816 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\usermgrcli.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\BackgroundTransferHost.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00032256 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00032040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfpmp.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00031744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TimeBrokerClient.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00031232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ztrace_maps.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\system32\tetheringconfigsp.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorageUsage.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\LaunchWinApp.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-03-18 00:40 - 2016-03-18 00:40 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WordBreakers.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Management.Provisioning.ProxyStub.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\nativemap.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00027648 _____ (Microsoft Corporation) C:\WINDOWS\system32\WiFiConfigSP.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\bcastdvr.proxy.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00026408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansvcpal.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00025088 _____ (Microsoft Corporation) C:\WINDOWS\system32\irmon.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00024064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WordBreakers.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00019456 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasautou.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\wshrm.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasautou.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\rasadhlp.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\IcsEntitlementHost.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\dciman32.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\sscoreext.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastlsext.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rasadhlp.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00013312 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvcProxy.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastlsext.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dciman32.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosTrace.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosTrace.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Microsoft-Windows-MosHost.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00009728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Microsoft-Windows-MosHost.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00007680 _____ (Microsoft Corporation) C:\WINDOWS\system32\readingviewresources.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MapControlStringsRes.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\lpk.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlStringsRes.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00003072 _____ (Microsoft Corporation) C:\WINDOWS\system32\lpk.dll
2016-03-18 00:36 - 2015-10-29 20:43 - 05739520 _____ (Microsoft Corporation) C:\WINDOWS\system32\prm0009.dll
2016-03-18 00:36 - 2015-10-29 20:43 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsLexicons0009.dll
2016-03-18 00:36 - 2015-10-29 20:41 - 02629632 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsLexicons0009.dll
2016-03-18 00:36 - 2015-10-29 20:25 - 06359040 _____ (Microsoft Corporation) C:\WINDOWS\system32\NlsData0009.dll
2016-03-18 00:36 - 2015-10-29 20:24 - 04847616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\NlsData0009.dll
2016-03-18 00:35 - 2016-03-18 00:35 - 00008192 _____ C:\WINDOWS\system32\config\userdiff
2016-03-18 00:30 - 2016-03-18 00:30 - 00000000 ____D C:\Program Files\Reference Assemblies
2016-03-18 00:30 - 2016-03-18 00:30 - 00000000 ____D C:\Program Files\MSBuild
2016-03-18 00:30 - 2016-03-18 00:30 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-03-18 00:30 - 2016-03-18 00:30 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-03-18 00:29 - 2015-10-23 18:47 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2016-03-18 00:29 - 2015-10-23 18:47 - 00103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2016-03-18 00:29 - 2015-10-23 18:47 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2016-03-18 00:29 - 2015-10-23 18:46 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2016-03-18 00:29 - 2015-10-23 18:46 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2016-03-18 00:29 - 2015-10-23 18:45 - 00124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2016-03-18 00:22 - 2016-03-18 01:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avira

==================== One Month Modified files and folders ========

(If an entry is included in the fixlist, the file/folder will be moved.)

2016-04-07 19:49 - 2015-03-16 00:41 - 00000830 _____ C:\WINDOWS\Tasks\Adobe Flash Player Updater.job
2016-04-07 19:48 - 2014-11-16 22:20 - 00000000 ____D C:\Users\Marcel\AppData\Local\Packages
2016-04-07 18:50 - 2015-03-16 00:41 - 00003966 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2016-04-07 18:50 - 2015-03-16 00:41 - 00003816 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2016-04-07 18:50 - 2015-03-16 00:41 - 00000892 _____ C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job
2016-04-07 17:07 - 2014-11-29 23:51 - 00000000 __SHD C:\Users\Marcel\IntelGraphicsProfiles
2016-04-07 16:20 - 2015-10-30 08:28 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-04-07 15:52 - 2015-07-10 14:04 - 00113880 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-04-07 15:46 - 2015-07-10 13:58 - 00000000 ____D C:\AdwCleaner
2016-04-07 13:29 - 2015-10-30 09:24 - 00000000 ___HD C:\Program Files\WindowsApps
2016-04-07 13:29 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-04-07 13:27 - 2015-10-30 09:21 - 00000000 ____D C:\WINDOWS\INF
2016-04-07 13:13 - 2016-01-30 14:50 - 00000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2016-04-07 13:10 - 2015-03-02 02:16 - 00000000 ____D C:\Users\Marcel\AppData\Roaming\DAEMON Tools Pro
2016-04-07 13:10 - 2014-11-16 18:29 - 00000000 ____D C:\Users\Marcel\AppData\Roaming\uTorrent
2016-04-07 13:09 - 2015-05-12 11:28 - 00004200 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{2C79059D-04C7-44C8-A556-F196AA3C4DE9}
2016-04-07 13:03 - 2014-11-17 00:28 - 00000000 ____D C:\Program Files (x86)\Google
2016-04-04 10:46 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-03-25 10:00 - 2015-10-30 09:11 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-03-24 23:03 - 2014-11-16 17:37 - 00000000 ____D C:\Users\Marcel\AppData\Roaming\Skype
2016-03-23 21:19 - 2014-11-19 22:14 - 00000000 ____D C:\Users\Marcel\AppData\Roaming\Apple Computer
2016-03-22 07:51 - 2014-11-29 23:51 - 00000451 _____ C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2016-03-22 00:22 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Portable Devices
2016-03-22 00:22 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Multimedia Platform
2016-03-22 00:22 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-03-22 00:22 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-03-20 12:23 - 2014-11-19 22:11 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-03-20 12:22 - 2014-11-19 22:14 - 00000000 ____D C:\Users\Marcel\AppData\Local\Apple Computer
2016-03-20 12:22 - 2014-11-19 22:11 - 00000000 ____D C:\Program Files\Common Files\Apple
2016-03-20 11:24 - 2015-01-10 12:27 - 00000000 ____D C:\Users\Marcel\Desktop\Programy
2016-03-20 11:21 - 2015-05-30 17:01 - 00001212 _____ C:\Users\Public\Desktop\GOM Audio.lnk
2016-03-19 22:28 - 2015-03-08 19:53 - 00000000 ____D C:\Hry
2016-03-19 19:57 - 2015-10-30 08:28 - 00032768 ___SH C:\WINDOWS\system32\config\ELAM
2016-03-19 11:39 - 2014-11-16 17:37 - 00000000 ____D C:\Users\Marcel\AppData\Local\Skype
2016-03-19 11:39 - 2014-11-16 17:36 - 00002648 _____ C:\Users\Public\Desktop\Skype.lnk
2016-03-19 11:39 - 2014-11-16 17:36 - 00000000 ___RD C:\Program Files (x86)\Skype
2016-03-19 11:39 - 2014-11-16 17:36 - 00000000 ____D C:\ProgramData\Skype
2016-03-19 11:19 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\appcompat
2016-03-19 00:57 - 2014-11-19 22:13 - 00000000 ____D C:\ProgramData\E1864A66-75E3-486a-BD95-D1B7D99A84A7
2016-03-18 23:25 - 2015-10-01 14:48 - 00000000 ____D C:\Users\Marcel\AppData\Local\Spotify
2016-03-18 23:25 - 2015-10-01 14:47 - 00000000 ____D C:\Users\Marcel\AppData\Roaming\Spotify
2016-03-18 18:50 - 2014-11-17 12:38 - 00001241 _____ C:\Users\Marcel\Desktop\VoipConnect.lnk
2016-03-18 18:50 - 2014-11-16 22:21 - 00000949 _____ C:\Users\Marcel\Desktop\Downloads.lnk
2016-03-18 18:50 - 2012-11-30 03:51 - 00000898 _____ C:\Users\Marcel\Desktop\BurnRecovery Help.lnk
2016-03-18 12:07 - 2014-11-16 19:25 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2016-03-18 11:56 - 2012-07-26 07:26 - 00000167 _____ C:\WINDOWS\win.ini
2016-03-18 11:54 - 2014-11-21 01:09 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-03-18 11:47 - 2014-11-21 01:09 - 143659408 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-03-18 11:07 - 2015-10-30 20:00 - 00000000 ____D C:\WINDOWS\OCR
2016-03-18 10:51 - 2015-10-30 09:24 - 00000000 ____D C:\ProgramData\USOPrivate
2016-03-18 09:13 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\DevicesFlow
2016-03-18 08:54 - 2014-11-16 22:05 - 00000000 __RHD C:\Users\Public\AccountPictures
2016-03-18 08:44 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\PurchaseDialog
2016-03-18 08:44 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\PrintDialog
2016-03-18 08:44 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\MiracastView
2016-03-18 08:44 - 2015-10-30 09:24 - 00000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2016-03-18 02:21 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioDatabase
2016-03-18 02:21 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\rescache
2016-03-18 02:21 - 2014-11-29 23:27 - 00041913 _____ C:\WINDOWS\diagwrn.xml
2016-03-18 02:21 - 2014-11-29 23:27 - 00041913 _____ C:\WINDOWS\diagerr.xml
2016-03-18 02:19 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Registration
2016-03-18 02:18 - 2015-03-02 03:30 - 00002172 _____ C:\WINDOWS\System32\Tasks\{455659FF-FD2A-4431-B3AA-FF7AE3B1D876}
2016-03-18 02:18 - 2015-03-02 02:20 - 00002094 _____ C:\WINDOWS\System32\Tasks\{FCCEB276-A57F-470C-B9D6-FF00554BD443}
2016-03-18 02:18 - 2014-12-26 11:47 - 00002764 _____ C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task
2016-03-18 02:18 - 2014-11-29 23:48 - 00022840 _____ C:\WINDOWS\system32\emptyregdb.dat
2016-03-18 02:18 - 2014-11-16 22:27 - 00002752 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3113391118-2788532900-4007831743-1002
2016-03-18 02:18 - 2014-11-16 21:59 - 00002320 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3113391118-2788532900-4007831743-500
2016-03-18 02:12 - 2015-10-30 09:24 - 00000000 __RHD C:\Users\Public\Libraries
2016-03-18 02:10 - 2012-11-30 03:26 - 00879220 _____ C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2016-03-18 02:05 - 2016-02-25 12:40 - 00000000 ____D C:\WINDOWS\SysWOW64\NV
2016-03-18 02:05 - 2016-02-25 12:40 - 00000000 ____D C:\WINDOWS\system32\NV
2016-03-18 02:05 - 2015-10-30 20:02 - 00000000 ____D C:\WINDOWS\ShellNew
2016-03-18 02:05 - 2015-10-30 09:24 - 00000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2016-03-18 02:05 - 2015-07-10 14:04 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-03-18 02:05 - 2015-06-07 23:17 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\The Witcher 2 (CZ)
2016-03-18 02:05 - 2015-03-26 23:37 - 00000000 ____D C:\Users\Marcel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2016-03-18 02:05 - 2015-03-26 20:40 - 00000000 ____D C:\Users\Marcel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\DISE
2016-03-18 02:05 - 2015-03-26 01:18 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2016-03-18 02:05 - 2015-03-02 02:26 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Pro
2016-03-18 02:05 - 2015-02-16 21:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-03-18 02:05 - 2015-02-12 11:34 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2016-03-18 02:05 - 2015-02-11 23:08 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2016-03-18 02:05 - 2015-01-10 12:13 - 00000000 ____D C:\Users\Marcel\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-03-18 02:05 - 2015-01-10 12:13 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2016-03-18 02:05 - 2014-11-17 12:38 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VoipConnect
2016-03-18 02:05 - 2014-11-16 19:39 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM Player
2016-03-18 02:05 - 2012-11-30 03:56 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink PowerDVD 10
2016-03-18 02:05 - 2012-11-30 03:47 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MSI
2016-03-18 02:05 - 2012-11-30 03:28 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SRS Labs
2016-03-18 02:05 - 2012-11-30 03:03 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2016-03-18 02:05 - 2012-11-23 07:10 - 00000000 ____D C:\WINDOWS\en-GB
2016-03-18 02:05 - 2012-11-22 15:22 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
2016-03-18 02:05 - 2012-11-22 15:22 - 00000000 ____D C:\WINDOWS\bg
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\uk
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\tr
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\th
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\sv
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\sl
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\sk
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\ru
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\ro
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\pl
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\nl
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\lv
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\lt
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\ko
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\ja
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\it
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\hu
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\hr
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\he
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\fr
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\fi
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\et
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\es
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\en
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\el
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\de
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\da
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\cs
2016-03-18 02:05 - 2012-11-22 15:21 - 00000000 ____D C:\WINDOWS\ar
2016-03-18 02:03 - 2013-08-22 15:36 - 00000000 ____D C:\Users\Default.migrated
2016-03-18 02:00 - 2015-10-30 20:00 - 00000000 ____D C:\WINDOWS\SysWOW64\winrm
2016-03-18 02:00 - 2015-10-30 20:00 - 00000000 ____D C:\WINDOWS\SysWOW64\WCN
2016-03-18 02:00 - 2015-10-30 20:00 - 00000000 ____D C:\WINDOWS\SysWOW64\sysprep
2016-03-18 02:00 - 2015-10-30 20:00 - 00000000 ____D C:\WINDOWS\SysWOW64\slmgr
2016-03-18 02:00 - 2015-10-30 20:00 - 00000000 ____D C:\WINDOWS\SysWOW64\Printing_Admin_Scripts
2016-03-18 02:00 - 2015-10-30 20:00 - 00000000 ____D C:\WINDOWS\system32\winrm
2016-03-18 02:00 - 2015-10-30 20:00 - 00000000 ____D C:\WINDOWS\system32\WCN
2016-03-18 02:00 - 2015-10-30 20:00 - 00000000 ____D C:\WINDOWS\system32\slmgr
2016-03-18 02:00 - 2015-10-30 20:00 - 00000000 ____D C:\WINDOWS\system32\Printing_Admin_Scripts
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\oobe
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\MUI
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\migwiz
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\IME
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\et-EE
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\SysWOW64\en-GB
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\spool
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\oobe
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\MUI
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\lv-LV
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\lt-LT
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\InputMethod
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\IME
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\et-EE
2016-03-18 02:00 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\en-GB
2016-03-18 02:00 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\SysWOW64\Dism
2016-03-18 02:00 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\system32\Dism
2016-03-18 02:00 - 2015-05-02 13:45 - 00000000 ___HD C:\WINDOWS\system32\WLANProfiles
2016-03-18 02:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2016-03-18 02:00 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2016-03-18 02:00 - 2012-11-30 03:19 - 00000000 ____D C:\WINDOWS\SysWOW64\sda
2016-03-18 02:00 - 2012-11-22 09:41 - 00000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2016-03-18 01:58 - 2015-10-30 20:00 - 00000000 ____D C:\WINDOWS\DigitalLocker
2016-03-18 01:58 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-03-18 01:58 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\LiveKernelReports
2016-03-18 01:58 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\InputMethod
2016-03-18 01:58 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\IME
2016-03-18 01:58 - 2015-07-20 09:56 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CPUID
2016-03-18 01:58 - 2015-05-30 17:01 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GOM
2016-03-18 01:58 - 2014-11-22 13:50 - 00000000 ____D C:\WINDOWS\system32\AutoUpdateLicense
2016-03-18 01:58 - 2014-09-24 10:20 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Embedded Lockdown Manager
2016-03-18 01:58 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\MediaViewer
2016-03-18 01:58 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\ADFS
2016-03-18 01:58 - 2012-11-22 09:06 - 00000000 ____D C:\ProgramData\PRICache
2016-03-18 01:57 - 2015-10-30 20:02 - 00000000 ____D C:\Program Files\Windows Journal
2016-03-18 01:57 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Windows Photo Viewer
2016-03-18 01:57 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Common Files\System
2016-03-18 01:57 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files\Common Files\microsoft shared
2016-03-18 01:57 - 2015-10-30 09:24 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-03-18 01:57 - 2014-11-29 23:21 - 00000000 ____D C:\Program Files (x86)\Intel
2016-03-18 01:57 - 2012-11-30 03:03 - 00000000 ____D C:\Program Files\Common Files\Intel
2016-03-18 01:52 - 2015-10-30 08:28 - 00000000 ____D C:\WINDOWS\system32\Sysprep
2016-03-18 01:49 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Help
2016-03-18 01:45 - 2015-10-30 20:07 - 00000000 ____D C:\WINDOWS\ServiceProfiles
2016-03-18 01:07 - 2015-10-30 20:28 - 00000000 ___HD C:\$WINDOWS.~BT
2016-03-18 00:58 - 2016-02-15 14:14 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2016-03-18 00:44 - 2015-10-30 09:24 - 00028672 _____ C:\WINDOWS\system32\config\BCD-Template
2016-03-18 00:41 - 2015-10-30 09:24 - 00000000 __RSD C:\WINDOWS\Media
2016-03-18 00:41 - 2015-10-30 09:24 - 00000000 ___SD C:\WINDOWS\system32\F12
2016-03-18 00:41 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-03-18 00:41 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\Provisioning
2016-03-18 00:41 - 2015-10-30 09:24 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-03-18 00:20 - 2014-11-16 18:45 - 00137952 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avipbb.sys
2016-03-18 00:20 - 2014-11-16 18:45 - 00128664 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avgntflt.sys
2016-03-18 00:20 - 2014-11-16 18:45 - 00068936 _____ (Avira Operations GmbH & Co. KG) C:\WINDOWS\system32\Drivers\avnetflt.sys
2016-03-09 13:37 - 2015-02-27 20:06 - 00000000 ____D C:\Program Files (x86)\HP
2016-03-09 13:33 - 2015-02-27 20:00 - 00000000 ____D C:\ProgramData\HP
2016-03-09 13:29 - 2014-11-17 00:28 - 00000000 ____D C:\Users\Marcel\AppData\Local\Google
2016-03-09 13:24 - 2015-03-26 01:18 - 00000000 ____D C:\Program Files (x86)\Steam
2016-03-09 13:24 - 2015-03-16 02:22 - 00000000 ____D C:\Users\Marcel\AppData\Roaming\TS3Client
2016-03-09 13:24 - 2015-03-16 01:25 - 00000000 ____D C:\Users\Marcel\AppData\Roaming\TeamViewer
2016-03-09 13:23 - 2016-03-02 01:06 - 00000000 ____D C:\Users\Marcel\AppData\Local\CrashDumps
2016-03-08 16:46 - 2015-03-16 00:08 - 00000000 ____D C:\Users\Marcel\AppData\Local\Steam
2016-03-08 13:57 - 2014-11-26 17:21 - 01487872 ___SH C:\Users\Marcel\Downloads\Thumbs.db
2016-03-08 09:12 - 2015-10-30 09:26 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-03-08 09:12 - 2015-10-30 09:26 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl

==================== Files in the root of some directories =======

2015-08-22 15:42 - 2015-08-22 15:42 - 0000098 _____ () C:\Users\Marcel\AppData\Roaming\LauncherSettings_live.cfg
2015-03-17 12:52 - 2015-03-17 12:52 - 0011776 ____R () C:\Users\Marcel\AppData\Local\Temp-log.txt
2015-09-26 10:50 - 2015-09-26 10:50 - 0000000 ____R () C:\Users\Marcel\AppData\Local\{2FEA3F55-DEEA-48B5-98F1-792A172D5C26}
2015-02-27 20:05 - 2015-02-27 20:05 - 0000057 _____ () C:\ProgramData\Ament.ini

Some files in TEMP:
====================
C:\Users\Marcel\AppData\Local\Temp\avgnt.exe
C:\Users\Marcel\AppData\Local\Temp\dllnt_dump.dll
C:\Users\Marcel\AppData\Local\Temp\libeay32.dll
C:\Users\Marcel\AppData\Local\Temp\msvcr120.dll
C:\Users\Marcel\AppData\Local\Temp\sqlite3.dll


==================== Bamital & volsnap =================

(There is no automatic fix for files that do not pass verification.)

C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2016-04-01 17:39

==================== End of FRST.txt ============================

Avjeckin
Návštěvník
Návštěvník
Příspěvky: 42
Registrován: 01 zář 2014 20:20

Re: Spomaleny pc, prosim o kontrolu

#15 Příspěvek od Avjeckin »

Additional scan result of Farbar Recovery Scan Tool (x64) Version:05-03-2016 01
Ran by Marcel (2016-04-07 20:47:41)
Running from C:\Users\Marcel\Downloads
Windows 10 Home Version 1511 (X64) (2016-03-18 06:43:30)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

Administrator (S-1-5-21-3113391118-2788532900-4007831743-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3113391118-2788532900-4007831743-503 - Limited - Disabled)
Guest (S-1-5-21-3113391118-2788532900-4007831743-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-3113391118-2788532900-4007831743-1007 - Limited - Enabled)
Marcel (S-1-5-21-3113391118-2788532900-4007831743-1002 - Administrator - Enabled) => C:\Users\Marcel

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Avira Antivirus (Enabled - Up to date) {4D041356-F94D-285F-8768-AAE50FA36859}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avira Antivirus (Enabled - Up to date) {F665F2B2-DF77-27D1-BDD8-9197742422E4}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

„Windows Live Essentials“ (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
„Windows Live Mail“ (x32 Version: 16.4.3503.0728 - „Microsoft Corporation“) Hidden
„Windows Live Messenger“ (x32 Version: 16.4.3503.0728 - „Microsoft Corporation“) Hidden
µTorrent (HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\...\uTorrent) (Version: 3.4.5.41865 - BitTorrent Inc.)
Adblock Plus for IE (32-bit and 64-bit) (HKLM\...\{0F347A49-E36C-4639-8D2E-003AD408B8B2}) (Version: 1.5 - Eyeo GmbH)
Adobe Acrobat Reader DC (HKLM-x32\...\{AC76BA86-7AD7-1033-7B44-AC0F074E4100}) (Version: 15.010.20060 - Adobe Systems Incorporated)
Adobe Flash Player 21 PPAPI (HKLM-x32\...\Adobe Flash Player PPAPI) (Version: 21.0.0.213 - Adobe Systems Incorporated)
Aktualizácie NVIDIA 2.9.1.35 (Version: 2.9.1.35 - NVIDIA Corporation) Hidden
Apple Application Support (32-bit) (HKLM-x32\...\{7FA9ECCF-A2DE-4DA1-BFF3-81260DBDA68F}) (Version: 4.1.2 - Apple Inc.)
Apple Application Support (64-bit) (HKLM\...\{691F30EB-9009-475A-B8A9-E1BF39598FD5}) (Version: 4.1.2 - Apple Inc.)
Apple Mobile Device Support (HKLM\...\{3540181E-340A-4E7A-B409-31663472B2F7}) (Version: 9.1.0.6 - Apple Inc.)
Apple Software Update (HKLM-x32\...\{56EC47AA-5813-4FF6-8E75-544026FBEA83}) (Version: 2.2.0.150 - Apple Inc.)
Avira (HKLM-x32\...\{e7c7c227-b742-4878-9425-f09bbf9951db}) (Version: 1.1.27.25527 - Avira Operations & Co. KG)
Avira Antivirus (HKLM-x32\...\Avira Antivirus) (Version: 15.0.16.282 - Avira Operations GmbH & Co. KG)
Battery Calibration (HKLM-x32\...\{619FA785-489B-4D22-911F-82D6EDF5BDB0}) (Version: 1.0.1208.0301 - Micro-Star International Co., Ltd.)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
BurnRecovery (HKLM-x32\...\{2892E1B7-E24D-4CCB-B8A7-B63D4B66F89F}) (Version: 4.0.1211.2101 - Micro-Star International Co., Ltd.)
CCleaner (HKLM\...\CCleaner) (Version: 4.11 - Piriform)
Common Desktop Agent (Version: 1.62.0 - OEM) Hidden
CyberLink PowerDVD 10 (HKLM-x32\...\InstallShield_{DEC235ED-58A4-4517-A278-C41E8DAEAB3B}) (Version: 10.0.4126.52 - CyberLink Corp.)
D3DX10 (x32 Version: 15.4.2368.0902 - Microsoft) Hidden
DAEMON Tools Pro (HKLM-x32\...\DAEMON Tools Pro) (Version: 5.2.0.0348 - DT Soft Ltd)
Dead Island (HKLM-x32\...\Steam App 91310) (Version: - Techland)
Dead Island Riptide (HKLM-x32\...\Steam App 216250) (Version: - Techland)
Dying Light (HKLM-x32\...\Steam App 239140) (Version: - Techland)
Eco Driver Pack (HKLM-x32\...\Samsung Eco Driver Pack) (Version: 2.01.10.00 (28/05/2015) - Samsung Electronics Co., Ltd.)
ELAN Touchpad 15.13.1.1_X64_WHQL (HKLM\...\Elantech) (Version: 15.13.1.1 - ELAN Microelectronic Corp.)
Fotoattēlu galerija (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Fotogaléria (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Fotogalerie (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Fotogalerii (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Fotogalerija (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Foto-galerija (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Fotogalleri (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Fotogalleriet (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Fotoğraf Galerisi (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Fotótár (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Galeria de Fotografias (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Galeria de Fotos (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Galería de fotos (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Galeria fotografii (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Galerie de photos (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Galerie foto (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Galerija fotografija (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
GOM Audio (HKLM-x32\...\GomAudio) (Version: 2.0.11.1156 - Gretech Corporation)
GOM Player (HKLM-x32\...\GOM Player) (Version: 2.2.67.5221 - Gretech Corporation)
GomMediaPlayer Packages (HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\...\GomMediaPlayer Packages) (Version: - ) <==== ATTENTION
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 49.0.2623.110 - Spoločnosť Google Inc.)
Google Update Helper (x32 Version: 1.3.29.5 - Google Inc.) Hidden
iCloud (HKLM\...\{4B48E22A-2FB0-4EFA-B99E-954B1E50CD69}) (Version: 5.1.0.34 - Apple Inc.)
Intel(R) Control Center (HKLM-x32\...\{F8A9085D-4C7A-41a9-8A77-C8998A96C421}) (Version: 1.2.1.1008 - Intel Corporation)
Intel(R) Management Engine Components (HKLM-x32\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.1.0.1281 - Intel Corporation)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 10.18.10.4276 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM-x32\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.6.0.1030 - Intel Corporation)
Intel(R) SDK for OpenCL - CPU Only Runtime Package (HKLM-x32\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: 2.0.0.37149 - Intel Corporation)
Intel® PROSet/Wireless WiFi Software (HKLM\...\{E671D411-5F2E-45D6-957C-EB78641192AB}) (Version: 15.05.4000.1515 - Intel Corporation)
iTunes (HKLM\...\{FBEB98F8-64E4-4FA3-A15E-4A9F42FF962E}) (Version: 12.3.2.35 - Apple Inc.)
Java 8 Update 71 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F83218071F0}) (Version: 8.0.710.15 - Oracle Corporation)
Junk Mail filter update (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
KB9X Radio Switch Driver (HKLM\...\B16388B2E5D3CBA8F0EE88A8C5459BADAF4DE251) (Version: 1.0.7112.20593 - ENE TECHNOLOGY INC.)
Metric Collection SDK (x32 Version: 1.1.0012.00 - Lenovo Group Limited) Hidden
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft Office Professional Plus 2013 (HKLM-x32\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.41212.0 - Microsoft Corporation)
Microsoft SQL Server 2005 Compact Edition [ENU] (HKLM-x32\...\{F0B430D1-B6AA-473D-9B06-AA3DD01FD0B8}) (Version: 3.1.0000 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Movie Maker (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Mozilla Firefox 45.0.1 (x86 en-US) (HKLM-x32\...\Mozilla Firefox 45.0.1 (x86 en-US)) (Version: 45.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 45.0.1.5918 - Mozilla)
MSI Remind Manager (HKLM-x32\...\{7359585E-A828-4EFC-8177-7D1883DDA0B5}) (Version: 2.12.1003 - MSI)
Need for Speed Most Wanted 2012 v1.0.0.0 (HKLM-x32\...\Need for Speed Most Wanted 2012_is1) (Version: 1.0.0.0 - EA Games)
NVIDIA GeForce Experience 2.9.1.35 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 2.9.1.35 - NVIDIA Corporation)
NVIDIA Grafický ovládač 361.91 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 361.91 - NVIDIA Corporation)
NVIDIA PhysX (HKLM-x32\...\{3F5C371F-8EA2-4F25-9D3D-D0B4526E3AEA}) (Version: 9.10.0513 - NVIDIA Corporation)
NVIDIA Softvér systému s podporou technológie PhysX 9.15.0428 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.15.0428 - NVIDIA Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (x32 Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Ovládací panel NVIDIA 353.62 (Version: 353.62 - NVIDIA Corporation) Hidden
PC Sound (HKLM\...\{3007FF9F-5B2C-41FF-8BFC-08BF25DB2681}) (Version: 1.12.2900 - SRS Labs, Inc.)
Poczta usługi Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Podstawowe programy Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Pošta Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Raccolta foto (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
REACHit (HKLM-x32\...\{4532E4C5-C84D-4040-A044-ECFCC5C6995B}) (Version: 2.5.003.11 - Lenovo)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 8.2.612.2012 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6728 - Realtek Semiconductor Corp.)
Realtek USB 2.0 Card Reader (HKLM-x32\...\{96AE7E41-E34E-47D0-AC07-1091A8127911}) (Version: 6.1.8400.30136 - Realtek Semiconductor Corp.)
Samsung Easy Document Creator (HKLM-x32\...\Samsung Easy Document Creator) (Version: 2.02.24 (24/11/2015) - Samsung Electronics Co., Ltd.)
Samsung Easy Printer Manager (HKLM-x32\...\Samsung Easy Printer Manager) (Version: 2.01.00.04 - Samsung Electronics Co., Ltd.)
Samsung Network PC Fax (HKLM-x32\...\Samsung Network PC Fax) (Version: 2.02.14 (27/11/2015) - Samsung Electronics Co., Ltd.)
Samsung Printer Center (HKLM-x32\...\Samsung Printer Center) (Version: 1.0.0.12 - Samsung Electronics Co., Ltd.)
Samsung Printer Diagnostics (HKLM-x32\...\Samsung Printer Diagnostics) (Version: 1.0.4.2 - Samsung Electronics Co., Ltd.)
Samsung Scan Process Machine (x32 Version: 1.03.05.28 - Samsung Electronics Co., Ltd.) Hidden
Samsung Universal Scan Driver (HKLM-x32\...\Samsung Universal Scan Driver) (Version: 3.31.81.01:10 - Samsung Electronics Co., Ltd.)
SCM (HKLM\...\{C6C6E64E-6C48-47FE-A175-4C73C3A465CF}) (Version: 10.013.03016 - Application)
SHIELD Streaming (Version: 4.1.0260 - NVIDIA Corporation) Hidden
SHIELD Wireless Controller Driver (Version: 2.9.1.35 - NVIDIA Corporation) Hidden
Skype Click to Call (HKLM-x32\...\{6D1221A9-17BF-4EC0-81F2-27D30EC30701}) (Version: 7.3.16540.9015 - Microsoft Corporation)
Skype™ 7.18 (HKLM-x32\...\{FC965A47-4839-40CA-B618-18F486F042C6}) (Version: 7.18.112 - Skype Technologies S.A.)
Spotify (HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\...\Spotify) (Version: 1.0.20.101.ge6957e14 - Spotify AB)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Stylish Driver Pack (HKLM-x32\...\Samsung Stylish UI Pack) (Version: 1.01.74.00 (09/02/2015) - Samsung Electronics Co., Ltd.)
TeamSpeak 3 Client (HKLM-x32\...\TeamSpeak 3 Client) (Version: 3.0.16 - TeamSpeak Systems GmbH)
TeamViewer 10 (HKLM-x32\...\TeamViewer) (Version: 10.0.41459 - TeamViewer)
The Sims™ 4 (HKLM-x32\...\{48EBEBBF-B9F8-4520-A3CF-89A730721917}) (Version: 1.0.732.20 - Electronic Arts Inc.)
Uninstall Samsung Printer Software (HKLM-x32\...\TotalUninstaller) (Version: 4.0.0.12 - Samsung Electronics CO., LTD.)
Update for Skype for Business 2015 (KB3039776) 32-Bit Edition (HKLM-x32\...\{90150000-012B-0409-0000-0000000FF1CE}_Office15.PROPLUS_{9F6B3627-AF9E-40A5-AAD5-3497C4327616}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3114831) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{BAEE7A38-3C9E-44DC-9E43-19FC94DD77E2}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3114831) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUS_{BAEE7A38-3C9E-44DC-9E43-19FC94DD77E2}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB3114831) 32-Bit Edition (HKLM-x32\...\{90150000-012B-0409-0000-0000000FF1CE}_Office15.PROPLUS_{BAEE7A38-3C9E-44DC-9E43-19FC94DD77E2}) (Version: - Microsoft)
Valokuvavalikoima (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
View User's Guide (HKLM-x32\...\View User Guide) (Version: 4.0.0.6 - )
VMware Player (HKLM-x32\...\VMware_Player) (Version: 6.0.4 - VMware, Inc)
VMware Player (Version: 6.0.4 - VMware, Inc.) Hidden
Windows Driver Package - Intel (NETwNe64) net (09/12/2012 15.5.4.45) (HKLM\...\A007E57753F87B14A4737DA95057F173950A6A3D) (Version: 09/12/2012 15.5.4.45 - Intel)
Windows Live Essentials (HKLM-x32\...\WinLiveSuite) (Version: 16.4.3503.0728 - Microsoft Corporation)
WinRAR 5.20 beta 1 (32-bit) (HKLM-x32\...\WinRAR archiver) (Version: 5.20.1 - win.rar GmbH)
Συλλογή φωτογραφιών (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Основи Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Основные компоненты Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Почта Windows Live (x32 Version: 16.4.3503.0728 - Корпорация Майкрософт) Hidden
Фотоальбом (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Фотогалерия (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Фотографии (общедоступная версия) (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
Фотоколекція (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
フォト ギャラリー (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
גלריית התמונות (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
بريد Windows Live (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
معرض الصور (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
사진 갤러리 (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
影像中心 (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden
照片库 (x32 Version: 16.4.3503.0728 - Microsoft Corporation) Hidden

==================== Custom CLSID (Whitelisted): ==========================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3113391118-2788532900-4007831743-1002_Classes\CLSID\{71DCE5D6-4B57-496B-AC21-CD5B54EB93FD}\localserver32 -> C:\Users\Marcel\AppData\Local\Microsoft\OneDrive\17.3.6302.0225\FileCoAuth.exe (Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3113391118-2788532900-4007831743-1002_Classes\CLSID\{820D63D5-8CFF-46DE-86AF-4997DEDD6DB5}\localserver32 -> C:\WINDOWS\system32\igfxEM.exe (Intel Corporation)

==================== Scheduled Tasks (Whitelisted) =============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0BA796C2-C01D-4989-8389-5505B2A1AB77} - System32\Tasks\{FCCEB276-A57F-470C-B9D6-FF00554BD443} => pcalua.exe -a C:\Users\Marcel\AppData\Roaming\mystartsearch\UninstallManager.exe -c -ptid=smt
Task: {13A75A2F-E029-45DE-BF38-B3C365DECA81} - System32\Tasks\Adobe Flash Player PPAPI Notifier => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_21_0_0_213_pepper.exe [2016-04-07] (Adobe Systems Incorporated)
Task: {15DC9645-B57B-4913-A3E0-B7FFF323450A} - \Microsoft\Windows\Setup\GWXTriggers\Logon-5d -> No File <==== ATTENTION
Task: {21371A30-11AE-449C-9F08-4E6821F2CA24} - \Microsoft\Windows\Setup\GWXTriggers\MachineUnlock-5d -> No File <==== ATTENTION
Task: {2E085E51-003B-4158-9F3C-CBC49A0F980F} - \Microsoft\Windows\Setup\gwx\launchtrayprocess -> No File <==== ATTENTION
Task: {416B7E3B-4C0C-4EFA-83B3-D08EC0650ACF} - System32\Tasks\{47F3BFD0-E61C-4B92-A2B6-16D8B833D24C} => Chrome.exe hxxp://ui.skype.com/ui/0/7.18.0.112/sk/go/help.faq.installer?LastError=1618
Task: {4438B644-5BB6-4A5A-8989-364AEB49609B} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeReminderTime -> No File <==== ATTENTION
Task: {4558E1FF-88C3-495E-95B6-39A7065A63B6} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-21] (Microsoft Corporation)
Task: {49E26848-520A-4167-BF6D-319BF5722CF3} - System32\Tasks\Lenovo\REACHit Agent Startup => C:\Program Files (x86)\Lenovo\REACHit\REACHitAgent.exe [2016-02-22] (Lenovo)
Task: {563FC6A1-D8F0-44B9-A114-48EC094258AB} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-04-07] (Google Inc.)
Task: {62E4AE87-79D3-48FD-A22C-A10AF44A2256} - System32\Tasks\Lenovo\Lenovo Customer Feedback Program 64 => C:\Program Files (x86)\Lenovo\Customer Feedback Program\Lenovo.TVT.CustomerFeedback.Agent.exe [2015-07-08] (Lenovo)
Task: {7350A4C0-B953-4FF4-8150-02DB28CFBF0A} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [2014-01-21] (Microsoft Corporation)
Task: {77B5BF18-BD0F-49A6-BAF9-C26C03B356E0} - System32\Tasks\Adobe Flash Player Updater => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2016-04-07] (Adobe Systems Incorporated)
Task: {8D1BAD31-8FB1-4E59-BDD2-3E6B8F5537FE} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14] (Adobe Systems Incorporated)
Task: {A45CD34B-48D8-4D0A-9E95-382780790D72} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2016-04-07] (Google Inc.)
Task: {AC7ADA2A-BAAB-4C3B-92F5-5010FFBE66BA} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [2016-02-23] (Apple Inc.)
Task: {B3430D0A-F08A-42B7-A47D-F3084F18F237} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe
Task: {B5B7687E-75DD-4844-AAA4-19F0FE99344C} - \Microsoft\Windows\Setup\GWXTriggers\refreshgwxconfig-B -> No File <==== ATTENTION
Task: {B9374F30-8A1F-440F-AFF0-63568EDE5987} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [2014-02-20] (Piriform Ltd)
Task: {BAC2E2D7-0C0F-47FC-8666-61E8C6BBA5DC} - \Microsoft\Windows\Setup\gwx\refreshgwxconfig -> No File <==== ATTENTION
Task: {C1EBE8BC-37BC-4072-B316-625E2EB8419E} - \Microsoft\Windows\Setup\GWXTriggers\Time-5d -> No File <==== ATTENTION
Task: {C74B1748-3C7B-43EE-8C59-4B4BB99BFDF7} - \Microsoft\Windows\Setup\GWXTriggers\OutOfSleep-5d -> No File <==== ATTENTION
Task: {D96FAE71-D345-4FC3-B2F6-D40DB4AB2227} - System32\Tasks\Lenovo\REACHit Agent Update => C:\Program Files (x86)\Lenovo\REACHit\REACHitAgent.exe [2016-02-22] (Lenovo)
Task: {DDDBDFD5-A773-43F8-8859-4CE47A9729B8} - \Microsoft\Windows\Setup\gwx\refreshgwxcontent -> No File <==== ATTENTION
Task: {E11AAF6E-EBEA-4389-A139-538DA77580E3} - System32\Tasks\EPM Preload => C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2DotNetHandler.exe [2016-01-28] ()
Task: {E836CC13-AA3D-4943-A2D9-6F1832601289} - \Microsoft\Windows\Setup\GWXTriggers\OutOfIdle-5d -> No File <==== ATTENTION
Task: {EE011922-74A1-4874-BE6C-28CCB653A1D5} - \Microsoft\Windows\Setup\GWXTriggers\ScheduleUpgradeTime -> No File <==== ATTENTION
Task: {F40C571F-7704-4373-AA2B-A59C5D98BFA9} - \Microsoft\Windows\Setup\gwx\refreshgwxconfigandcontent -> No File <==== ATTENTION
Task: {F41D87CE-D98B-4424-B5C9-5ABEFC67C168} - System32\Tasks\{455659FF-FD2A-4431-B3AA-FF7AE3B1D876} => pcalua.exe -a "C:\Program Files (x86)\Resident Evil Revelations 2\rerev2.exe" -d "C:\Program Files (x86)\Resident Evil Revelations 2"
Task: {FB655CFC-80A0-4871-8106-30E8D357BCF0} - \Microsoft\Windows\Setup\GWXTriggers\OnIdle-5d -> No File <==== ATTENTION

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\Adobe Flash Player PPAPI Notifier.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashUtil32_21_0_0_213_pepper.exe
Task: C:\WINDOWS\Tasks\Adobe Flash Player Updater.job => C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Shortcuts =============================

(The entries could be listed to be restored or removed.)

==================== Loaded Modules (Whitelisted) ==============

2015-10-30 09:18 - 2015-10-30 09:18 - 00185856 _____ () C:\WINDOWS\SYSTEM32\ism32k.dll
2016-03-18 01:49 - 2015-07-23 03:10 - 00116552 _____ () C:\Program Files\NVIDIA Corporation\Display\NvSmartMax64.dll
2016-03-18 10:02 - 2014-11-25 13:14 - 00022528 _____ () C:\WINDOWS\System32\us005lm.dll
2015-12-17 19:38 - 2015-12-17 19:38 - 00085800 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\zlib1.dll
2015-12-17 19:38 - 2015-12-17 19:38 - 01328912 _____ () C:\Program Files\Common Files\Apple\Apple Application Support\libxml2.dll
2016-03-18 10:02 - 2016-03-18 10:02 - 00143664 ____N () C:\WINDOWS\SysWOW64\SecUPDUtilSvc.exe
2016-03-18 10:30 - 2015-11-05 23:02 - 00491328 ____N () C:\WINDOWS\SysWOW64\spdsvc.exe
2016-02-25 12:40 - 2016-01-23 04:55 - 00291264 _____ () C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamBase.dll
2016-03-18 10:04 - 2014-12-05 18:36 - 00755712 _____ () C:\WINDOWS\system32\SnMinDrv.dll
2015-07-30 08:59 - 2015-07-30 08:59 - 00087552 ____N () C:\WINDOWS\system32\SSDEVM64.DLL
2016-03-18 00:40 - 2016-03-18 00:40 - 02654872 _____ () C:\WINDOWS\system32\CoreUIComponents.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02654872 _____ () C:\WINDOWS\System32\CoreUIComponents.dll
2015-09-15 15:58 - 2015-09-15 15:58 - 08901184 _____ () C:\Program Files\Microsoft Office\Office15\1033\GrooveIntlResource.dll
2016-03-18 15:20 - 2016-03-18 15:20 - 00144384 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeHost.exe
2016-03-18 00:40 - 2016-03-18 00:40 - 00093696 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\Windows.UI.Shell.SharedUtilities.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00472064 _____ () C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\QuickActions.dll
2014-09-08 15:39 - 2014-09-08 15:39 - 00464608 _____ () C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
2014-09-08 15:38 - 2014-09-08 15:38 - 00051200 _____ () C:\Program Files\Common Files\Common Desktop Agent\CDASrvPS.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 07992832 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\CortanaApi.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 00591360 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.Core.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 02483200 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\Cortana.BackgroundTask.dll
2016-03-18 00:40 - 2016-03-18 00:40 - 04089856 _____ () C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\RemindersUI.dll
2016-03-18 10:03 - 2015-06-11 13:25 - 03055616 ____N () C:\WINDOWS\system32\DlgSearchEngine.dll
2014-10-29 17:01 - 2014-10-29 17:01 - 01261272 _____ () C:\Program Files (x86)\VMware\VMware Player\libxml2.dll
2016-03-22 18:34 - 2016-03-22 18:34 - 00016384 _____ () C:\WINDOWS\assembly\NativeImages_v4.0.30319_32\PSIClient\37a2a99616a992574ca6f45078703c7f\PSIClient.ni.dll
2012-11-30 03:14 - 2012-11-28 18:34 - 01198912 _____ () C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\ACE.dll
2016-03-18 15:20 - 2016-03-18 15:20 - 00141312 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkypeBackgroundTasks.dll
2016-03-18 15:20 - 2016-03-18 15:21 - 22330368 _____ () C:\Program Files\WindowsApps\Microsoft.Messaging_2.13.20000.0_x86__8wekyb3d8bbwe\SkyWrap.dll
2015-05-18 19:00 - 2016-01-23 04:55 - 00018880 _____ () C:\Program Files (x86)\NVIDIA Corporation\Update Core\detoured.dll
2014-10-11 15:06 - 2014-10-11 15:06 - 00073544 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\zlib1.dll
2015-12-17 19:38 - 2015-12-17 19:38 - 00237328 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxslt.dll
2015-12-17 19:39 - 2015-12-17 19:39 - 01040144 _____ () C:\Program Files (x86)\Common Files\Apple\Apple Application Support\libxml2.dll

==================== Alternate Data Streams (Whitelisted) =========

(If an entry is included in the fixlist, only the ADS will be removed.)


==================== Safe Mode (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)


==================== EXE Association (Whitelisted) ===============

(If an entry is included in the fixlist, the registry item will be restored to default or removed.)


==================== Internet Explorer trusted/restricted ===============

(If an entry is included in the fixlist, it will be removed from the registry.)


==================== Hosts content: ===============================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-04-30 12:21 - 2015-04-30 12:21 - 00000000 ____A C:\WINDOWS\system32\Drivers\etc\hosts


==================== Other Areas ============================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\Control Panel\Desktop\\Wallpaper -> C:\Users\Marcel\Desktop\Pozadia\Windows-10-Background-2.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(Currently there is no automatic fix for this section.)

HKLM\...\StartupApproved\Run: => "NvBackend"
HKLM\...\StartupApproved\Run: => "ShadowPlay"
HKLM\...\StartupApproved\Run32: => "iTunesHelper"
HKLM\...\StartupApproved\Run32: => "Adobe ARM"
HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\...\StartupApproved\Run: => "VoipConnect"
HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\...\StartupApproved\Run: => "DAEMON Tools Pro Agent"
HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\...\StartupApproved\Run: => "CCleaner Monitoring"
HKU\S-1-5-21-3113391118-2788532900-4007831743-1002\...\StartupApproved\Run: => "Spotify"

==================== FirewallRules (Whitelisted) ===============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [vm-monitoring-nb-session] => (Allow) LPort=139
FirewallRules: [{EB3FD990-EC4E-4285-A7C3-987D3A2E8572}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe
FirewallRules: [{A8D758DC-F74D-495D-B195-945F6FEEB996}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe
FirewallRules: [{22FC430C-FC0F-421F-BB6E-0A104B84F811}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{5C3E073C-473F-482D-AD0D-D9654263E122}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe
FirewallRules: [{C7CED135-A99A-47A4-BEA7-6B5D804AD645}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamUserAgent.exe
FirewallRules: [{3B5B35C6-BA68-4897-8743-C07DEA4D8181}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{4AA0EF8F-BD94-4AB8-8EAA-5A3F43BCC719}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamNetworkService.exe
FirewallRules: [{E5EF4CB8-CAB6-445F-8C5F-2B3761FD8783}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dying Light\DyingLightGame.exe
FirewallRules: [{5A0ED0D5-C76F-4D28-B02A-600CC35A6486}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dying Light\DyingLightGame.exe
FirewallRules: [{7632639C-E94B-46E3-BEDA-B5F3F6F9E35E}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{A19FD1E4-7E24-4ABF-A940-3770B1F3DFCA}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe
FirewallRules: [{FD4BDC29-44F5-4668-A612-C706653D43DD}] => (Block) C:\users\marcel\appdata\roaming\spotify\spotify.exe
FirewallRules: [{4618C1B6-5AB5-44B1-B400-2D1FD26D57FE}] => (Block) C:\users\marcel\appdata\roaming\spotify\spotify.exe
FirewallRules: [UDP Query User{6981E92B-2718-49EE-88AA-BFF9E5D816AD}C:\users\marcel\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\marcel\appdata\roaming\spotify\spotify.exe
FirewallRules: [TCP Query User{BE0DA988-CEC1-4015-BB84-1B1F58354FB3}C:\users\marcel\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\marcel\appdata\roaming\spotify\spotify.exe
FirewallRules: [{BC1E4302-5532-482B-ADB8-2A9FF11405A6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{4810D5DE-E217-48F1-9BD1-D1879F133065}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{0901952C-86AC-48AE-A6C3-75535F47FBA4}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{4C325B24-A494-4602-AA59-589A05FC35DC}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{0FE52632-336D-4230-9F67-9E664A710113}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{0FB5F792-62FC-4045-879E-68DD147D3AC6}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{5567F5E9-5DEC-417F-8E5A-9692E6AB8749}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
FirewallRules: [{2E71B451-C6A8-42D3-A1A9-B4D0667A8CB2}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
FirewallRules: [{324C5E0F-3DBA-4C1A-94D0-7A81C5274838}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\diriptide\DeadIslandGame_x86_rwdi.exe
FirewallRules: [{9D907D1A-9804-48C4-8FF2-4A258C4FDB28}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\diriptide\DeadIslandGame_x86_rwdi.exe
FirewallRules: [{A359106B-D053-4550-8EB8-9282A2837322}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dead Island\DeadIslandGame.exe
FirewallRules: [{D05AAC5B-3F96-4AB4-8DB5-A14881D63907}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dead Island\DeadIslandGame.exe
FirewallRules: [{CC595CCA-B8F7-477B-9FAF-26578C0B2B9C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{75C70991-0772-4CE5-9889-4A5DD9B48B1D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
FirewallRules: [{2611E3EF-AEEB-47A2-B646-8FD7465EBBDE}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{4DAA0B55-BF52-4506-A0B6-EF60D678C09C}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
FirewallRules: [{E1134BB0-2595-4976-A31B-B0B982A6F653}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{AD9A6B91-B80E-4856-98E4-02C3801B52BD}] => (Allow) C:\Program Files (x86)\Steam\bin\steamwebhelper.exe
FirewallRules: [{BAB1BA5A-CC62-475C-8347-5B6D87D7FA65}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{883C96A3-CB90-44CF-93C5-2E34183E2925}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe
FirewallRules: [{FC299980-52A8-45D9-A359-0683067BFEE3}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{DC94F736-4B84-4EF2-8F8D-056AC5028F0A}] => (Allow) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
FirewallRules: [{0598FD00-2DAA-46D2-A321-586DCC771AAE}] => (Allow) C:\Program Files (x86)\Windows Live\Contacts\wlcomm.exe
FirewallRules: [{0AFD600E-FFF2-437F-8C98-1AD7404A2264}] => (Allow) LPort=2869
FirewallRules: [{80E6F86B-D6D4-4DF1-8570-4C1244947B39}] => (Allow) LPort=1900
FirewallRules: [{208ACDB2-28E4-4353-BD22-6B3E1A5C3959}] => (Allow) C:\Program Files (x86)\Windows Live\Messenger\msnmsgr.exe
FirewallRules: [{E50A13B4-DD42-4A65-A481-B2152B735339}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD Cinema\PowerDVDCinema10.exe
FirewallRules: [{C782C086-5225-4E5F-870D-12DB0F6DFFFA}] => (Allow) C:\Program Files (x86)\CyberLink\PowerDVD10\PowerDVD10.EXE
FirewallRules: [{5CCEA5A7-3088-4DDF-ABAD-C7FA7251C464}] => (Allow) C:\Users\Marcel\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{88AA9434-CC20-4D35-A34F-A91F40EEA243}] => (Allow) C:\Users\Marcel\AppData\Roaming\uTorrent\uTorrent.exe
FirewallRules: [{9CE9194A-483F-4124-ABDC-0129D7D33F46}] => (Allow) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
FirewallRules: [{43C15C24-56CE-4D6A-95A9-1CB5E2F7C32B}] => (Allow) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
FirewallRules: [{90953F8B-38C6-48AA-AEA4-440CB5DE7A5D}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
FirewallRules: [{68A7F535-06F6-47A3-AB5D-7F7B29EE4E56}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\lync.exe
FirewallRules: [{9FEBB528-224A-4994-90AA-084CE70B0993}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [{70994B96-51A5-4387-B96F-0F1E4012E30E}] => (Allow) C:\Program Files (x86)\Microsoft Office\Office15\UcMapi.exe
FirewallRules: [TCP Query User{69606527-2015-41E1-889E-250920ACDAFD}C:\program files (x86)\voipconnect.com\voipconnect\voipconnect.exe] => (Allow) C:\program files (x86)\voipconnect.com\voipconnect\voipconnect.exe
FirewallRules: [UDP Query User{D3E694C0-2F56-4F3F-BFC1-579DD240E181}C:\program files (x86)\voipconnect.com\voipconnect\voipconnect.exe] => (Allow) C:\program files (x86)\voipconnect.com\voipconnect\voipconnect.exe
FirewallRules: [{D521FB3F-767D-4AA5-8B92-C809FF414AD0}] => (Allow) C:\Program Files (x86)\VoipConnect.com\VoipConnect\VoipConnect.exe
FirewallRules: [{3DDD3AB0-69D0-4206-8F57-4AF9668E405E}] => (Allow) C:\Program Files (x86)\VoipConnect.com\VoipConnect\VoipConnect.exe
FirewallRules: [TCP Query User{34B939C8-F52B-4B6A-955F-18A204F60F47}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [UDP Query User{6588D87A-EAAD-4AA3-A0F0-7912F838DBF3}C:\program files (x86)\skype\phone\skype.exe] => (Allow) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{8D2A5193-E7A4-48E4-AAE3-28C56B08EB39}] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{54E3C06A-5E78-4618-84D7-06B9FB06B8F4}] => (Block) C:\program files (x86)\skype\phone\skype.exe
FirewallRules: [{351EE83E-F035-4F8F-A511-A1B6190FCFEE}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Printer Center\SamsungPrinterCenter.exe
FirewallRules: [{93D97ACB-8883-4169-8875-F5CA8D8D282C}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ScanCDLM.exe
FirewallRules: [{C37C1F2B-2915-4F70-A7E5-8C108210D801}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{411A49CF-1492-4590-8F93-51DB66B908BF}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDCApp.exe
FirewallRules: [{75184783-3259-45B8-A9D0-24E20F721F1E}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDCApp.exe
FirewallRules: [{AEC50F7A-E863-469A-A4AD-99E1F24BF857}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{508CF604-1EA1-41AD-8FD8-88850C4B7719}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe
FirewallRules: [{CEE00E5F-766B-4A61-92BE-76C1C76AFF70}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe
FirewallRules: [{BD2753C0-65BD-4396-9FF7-E96ACA0ECB55}] => (Allow) C:\Program Files (x86)\Samsung\Network PC Fax\drv\NetFaxMon64.exe
FirewallRules: [{776495B2-B8BC-4927-A40F-A63F65B44852}] => (Allow) C:\Program Files (x86)\Samsung\Network PC Fax\drv\NetFaxMon.exe
FirewallRules: [{12F300E0-77EB-4BEC-BD98-7C4F290C6992}] => (Allow) C:\WINDOWS\system32\spool\drivers\x64\3\NetFaxMon64.exe
FirewallRules: [{5603150F-53E5-4530-90C8-E956682E577A}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EasyPrinterManagerV2.exe
FirewallRules: [{36CCE099-30C1-4505-B47A-C542A9BAE5E7}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\OrderSupplies.exe
FirewallRules: [{A9146992-7654-4133-A0E9-6D4E751F5290}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2AlertList.exe
FirewallRules: [{C5D21169-6FF9-4D82-A6A2-0785055E2445}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2Migrator.exe
FirewallRules: [{DCAA33E0-8C94-48B2-9EE9-89937792E5A0}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{5783267D-617D-46DD-8197-9D85C5BA2481}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{D2780980-69F1-4625-9AA0-BA3AB530CADA}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
FirewallRules: [{9212C527-69BF-4D2D-92A1-61861F3676D5}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{9F66E1DA-F47D-4BCF-93F1-95093C7424E2}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe
FirewallRules: [{4CF76858-4A36-48AB-AA7E-058BF3BB871A}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{B7E0E422-BB9A-4406-8CAF-0F52291ABE6E}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe
FirewallRules: [{B1752184-1CD7-4984-9683-E629A1C20C56}] => (Allow) C:\Program Files\iTunes\iTunes.exe
FirewallRules: [{AE072096-3242-4CF7-B710-F5B58CA751C1}] => (Allow) C:\Hry\The Sims 4\Game\Bin\TS4.exe
FirewallRules: [{39C7ABC0-7499-48DD-8F58-8E3A464DEF80}] => (Allow) C:\Hry\The Sims 4\Game\Bin\TS4.exe
FirewallRules: [{F4306E58-4F1E-46FA-9949-2B32924EE354}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe

==================== Restore Points =========================

02-04-2016 12:50:12 Scheduled Checkpoint

==================== Faulty Device Manager Devices =============

Name: Radio Switch Device
Description: Radio Switch Device
Class Guid: {745a17a0-74d3-11d0-b6fe-00a0c90f57da}
Manufacturer: ENE TECHNOLOGY INC.
Service: mshidumdf
Problem: : Windows has stopped this device because it has reported problems. (Code 43)
Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation.


==================== Event log errors: =========================

Application errors:
==================
Error: (04/07/2016 04:20:55 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT AUTHORITY)
Description: Skipping: Eap method DLL path validation failed. Error: typeId=43, authorId=9, vendorId=0, vendorType=0

Error: (04/07/2016 04:20:55 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT AUTHORITY)
Description: Skipping: Eap method DLL path validation failed. Error: typeId=25, authorId=9, vendorId=0, vendorType=0

Error: (04/07/2016 04:20:55 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT AUTHORITY)
Description: Skipping: Eap method DLL path validation failed. Error: typeId=17, authorId=9, vendorId=0, vendorType=0

Error: (04/07/2016 03:48:42 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT AUTHORITY)
Description: Skipping: Eap method DLL path validation failed. Error: typeId=43, authorId=9, vendorId=0, vendorType=0

Error: (04/07/2016 03:48:42 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT AUTHORITY)
Description: Skipping: Eap method DLL path validation failed. Error: typeId=25, authorId=9, vendorId=0, vendorType=0

Error: (04/07/2016 03:48:42 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT AUTHORITY)
Description: Skipping: Eap method DLL path validation failed. Error: typeId=17, authorId=9, vendorId=0, vendorType=0

Error: (04/07/2016 01:27:31 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (04/07/2016 01:27:31 PM) (Source: Microsoft-Windows-LoadPerf) (EventID: 3006) (User: NT AUTHORITY)
Description: Unable to read the performance counter strings defined for the 01B language ID. The first DWORD in the Data section contains the Win32 error code.

Error: (04/07/2016 01:23:50 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT AUTHORITY)
Description: Skipping: Eap method DLL path validation failed. Error: typeId=43, authorId=9, vendorId=0, vendorType=0

Error: (04/07/2016 01:23:50 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: NT AUTHORITY)
Description: Skipping: Eap method DLL path validation failed. Error: typeId=25, authorId=9, vendorId=0, vendorType=0


System errors:
=============
Error: (04/07/2016 05:10:51 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}

Error: (04/07/2016 04:20:02 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Sync Host_43985 sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 10000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (04/07/2016 04:20:02 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable

Error: (04/07/2016 03:52:39 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: {784E29F4-5EBE-4279-9948-1E8FE941646D}

Error: (04/07/2016 03:47:52 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Sync Host_36132 sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 10000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (04/07/2016 03:47:52 PM) (Source: DCOM) (EventID: 10016) (User: NT AUTHORITY)
Description: application-specificLocalActivation{D63B10C5-BB46-4990-A94F-E40B9D520160}{9CA88EE3-ACB7-47C8-AFC4-AB702511C276}NT AUTHORITYSYSTEMS-1-5-18LocalHost (Using LRPC)UnavailableUnavailable

Error: (04/07/2016 03:47:07 PM) (Source: Service Control Manager) (EventID: 7032) (User: )
Description: Správca riadenia služieb sa po neočakávanom ukončení služby Windows Search pokúsil vykonať opravnú akciu (Reštartovať službu), ale táto činnosť zlyhala s nasledujúcou chybou:
%%1056

Error: (04/07/2016 03:46:38 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Management and Security Application User Notification Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (04/07/2016 03:46:38 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Rapid Storage Technology sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.

Error: (04/07/2016 03:46:38 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba iPod Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1-krát.


CodeIntegrity:
===================================
Date: 2016-03-25 09:05:45.358
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-03-25 08:57:40.904
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-03-22 06:50:22.482
Description: Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume4\Windows\System32\efswrt.dll because the set of per-page image hashes could not be found on the system.

Date: 2016-03-21 22:52:15.158
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-03-21 15:14:24.086
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-03-20 23:15:54.010
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-03-20 23:15:53.804
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-03-20 23:15:53.565
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-03-20 23:15:53.274
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2016-03-20 23:15:53.103
Description: Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Windows Defender\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Program Files\Microsoft Silverlight\xapauthenticodesip.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

Processor: Intel(R) Core(TM) i7-3630QM CPU @ 2.40GHz
Percentage of memory in use: 35%
Total physical RAM: 8081.42 MB
Available physical RAM: 5201.59 MB
Total Virtual: 9361.42 MB
Available Virtual: 7053.12 MB

==================== Drives ================================

Drive c: (OS_Install) (Fixed) (Total:587.81 GB) (Free:416.59 GB) NTFS
Drive d: (Data) (Fixed) (Total:321.26 GB) (Free:300.72 GB) NTFS
Drive e: (SAMSUNG_CMFP) (CDROM) (Total:0.5 GB) (Free:0 GB) CDFS

==================== MBR & Partition Table ==================

========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: E5EBEBDB)

Partition: GPT.

==================== End of Addition.txt ============================

Zamčeno