
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Po startu Win 10 delší vytížení procesoru
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Po startu Win 10 delší vytížení procesoru
Ahoj, několik měsíců po upgrade na Win 10 se mi po startu dlouho vytěžuje procesor. Přes správce úloh za tím je Hostitel služby: Místní systém (omezená síť).
Logfile of random's system information tool 1.10 (written by random/random)
Run by Ondra at 2016-04-18 18:16:17
Microsoft Windows 10 Home
System drive C: has 27 GB (27%) free of 99 GB
Total RAM: 2047 MB (40% free)
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-4232016968-1834718543-1254348729-1000Core.job - C:\Users\Ondra\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-4232016968-1834718543-1254348729-1000UA.job - C:\Users\Ondra\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_60\bin\ssv.dll [2015-08-30 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2014-05-19 364824]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-08-30 172640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"PrnStatusMX"=C:\Program Files\Hewlett-Packard\PrnStatusMX\PrnStatusMX.exe [2012-07-04 1077248]
"C:\Windows\system32\V0330Ext.ax"=C:\Windows\system32\RegSvr32.exe [2015-10-30 16896]
"ShadowPlay"=C:\Windows\system32\nvspcap.dll [2013-12-10 982232]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2014-05-19 2303256]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2015-08-04 597552]
"MalwareProtectionLive"=C:\Users\Ondra\AppData\Local\MalwareProtectionLive\MalwareProtectionClient.exe [2015-12-03 857632]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]
""= []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files\Steam\steam.exe [2016-02-04 3014224]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14 1085656]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Speed Launcher]
1431617753 []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BDRegion]
C:\Program Files\Cyberlink\Shared files\brs.exe [2010-11-17 75048]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner.exe [2016-03-11 6667992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\Ondra\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-23 116648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDAudDeck]
C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe [2012-04-24 2154096]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP LaserJet Professional M1530 MFP Series Fax]
C:\Program Files\HP\Digital Imaging\Fax\Fax Driver 0.6 Base\hppfaxprintersrv.exe [2010-08-24 2459192]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Kernel and Hardware Abstraction Layer]
KHALMNPR.EXE []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper]
C:\Program Files\Samsung\Kies\KiesHelper.exe [2012-05-04 955792]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPDLR]
C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2012-05-04 21392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent]
C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [2012-05-04 3521424]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSC]
C:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MusicManager]
C:\Users\Ondra\AppData\Local\Programs\Google\MusicManager\MusicManager.exe [2014-04-24 7631872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2013-12-10 2279712]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nvtmru]
C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-08-27 1028896]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PrnStatusMX]
C:\Program Files\Hewlett-Packard\PrnStatusMX\PrnStatusMX.exe [2012-07-04 1077248]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl10]
C:\Program Files\CyberLink\PowerDVD10\PDVD10Serv.exe [2010-02-03 87336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2016-03-01 50670720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2015-08-04 597552]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ToolboxFX]
C:\Program Files\HP\ToolboxFX\bin\HPTLBXFX.exe [2010-10-25 58936]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Logitech SetPoint.lnk]
C:\PROGRA~1\Logitech\SetPoint\SetPoint.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Ondra^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Logitech . Registrace produktu.lnk]
C:\PROGRA~1\COMMON~1\Logishrd\eReg\SetPoint\eReg.exe [2008-11-07 517384]
C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Mámemail Pošťák.lnk - C:\Program Files\Mamemail\Mamemail Postak\Postak.exe
speedfan.lnk - C:\Program Files\SpeedFan\speedfan.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2014-03-25 64280]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"ConsentPromptBehaviorAdmin"=0
"PromptOnSecureDesktop"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=221
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.cvid"=iccvid.dll
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"vidc.XVID"=xvidvfw.dll
"VIDC.VP80"=vp8vfw.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-18 18:13:46 ----D---- C:\rsit
2016-04-18 18:13:46 ----D---- C:\Program Files\trend micro
2016-04-14 20:18:14 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2016-04-12 20:13:22 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-04-12 20:13:22 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-04-12 20:13:21 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-04-12 20:13:18 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-04-12 20:13:06 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-04-12 20:13:05 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-04-12 20:13:05 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-04-12 20:13:04 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-04-12 20:13:02 ----A---- C:\WINDOWS\system32\wininet.dll
2016-04-12 20:13:02 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-04-12 20:13:01 ----A---- C:\WINDOWS\system32\twinui.dll
2016-04-12 20:13:00 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-04-12 20:12:59 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-04-12 20:12:59 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-04-12 20:12:58 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-04-12 20:12:58 ----A---- C:\WINDOWS\system32\InputService.dll
2016-04-12 20:12:57 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-04-12 20:12:56 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-04-12 20:12:56 ----A---- C:\WINDOWS\system32\SRH.dll
2016-04-12 20:12:54 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-04-12 20:12:53 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-12 20:12:52 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-04-12 20:12:51 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-04-12 20:12:49 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-04-12 20:12:49 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-04-12 20:12:47 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-04-12 20:12:46 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-04-12 20:12:45 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-04-12 20:12:44 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-04-12 20:12:42 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-04-12 20:12:41 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-04-12 20:12:40 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-04-12 20:12:40 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-04-12 20:12:40 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-04-12 20:12:39 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-04-12 20:12:39 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-04-12 20:12:39 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-04-12 20:12:39 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-04-12 20:12:38 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-04-12 20:12:38 ----A---- C:\WINDOWS\system32\esent.dll
2016-04-12 20:12:37 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-04-12 20:12:37 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-04-12 20:12:36 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-04-12 20:12:36 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2016-04-12 20:12:36 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-04-12 20:12:36 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-04-12 20:12:36 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-04-12 20:12:36 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-04-12 20:12:35 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-04-12 20:12:34 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-04-12 20:12:34 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-04-12 20:12:33 ----A---- C:\WINDOWS\system32\winload.exe
2016-04-12 20:12:32 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-04-12 20:12:32 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-04-12 20:12:32 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-04-12 20:12:31 ----A---- C:\WINDOWS\system32\winresume.exe
2016-04-12 20:12:31 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2016-04-12 20:12:31 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-04-12 20:12:31 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-04-12 20:12:30 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2016-04-12 20:12:30 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-04-12 20:12:29 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-04-12 20:12:29 ----A---- C:\WINDOWS\system32\SensorService.dll
2016-04-12 20:12:29 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-04-12 20:12:29 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-04-12 20:12:29 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-04-12 20:12:29 ----A---- C:\WINDOWS\system32\AccountsRt.dll
2016-04-12 20:12:28 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-04-12 20:12:28 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-04-12 20:12:28 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-04-12 20:12:28 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-04-12 20:12:27 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-12 20:12:27 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-04-12 20:12:26 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-04-12 20:12:26 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-04-12 20:12:26 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-04-12 20:12:22 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-04-12 20:12:22 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-04-12 20:12:21 ----A---- C:\WINDOWS\system32\msxml3.dll
2016-04-12 20:12:21 ----A---- C:\WINDOWS\system32\msi.dll
2016-04-12 20:12:21 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-04-12 20:12:21 ----A---- C:\WINDOWS\system32\drivers\http.sys
2016-04-12 20:12:20 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2016-04-12 20:12:20 ----A---- C:\WINDOWS\system32\policymanager.dll
2016-04-12 20:12:20 ----A---- C:\WINDOWS\system32\drivers\ufx01000.sys
2016-04-12 20:12:19 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-04-12 20:12:19 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2016-04-12 20:12:18 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-04-12 20:12:18 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-04-12 20:12:18 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-04-12 20:12:18 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2016-04-12 20:12:18 ----A---- C:\WINDOWS\system32\bdesvc.dll
2016-04-12 20:12:17 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2016-04-12 20:12:17 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-04-12 20:12:17 ----A---- C:\WINDOWS\system32\msorcl32.dll
2016-04-12 20:12:17 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2016-04-12 20:12:17 ----A---- C:\WINDOWS\system32\dnsapi.dll
2016-04-12 20:12:16 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-04-12 20:12:16 ----A---- C:\WINDOWS\system32\policymanagerprecheck.dll
2016-04-12 20:12:16 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-04-12 20:12:16 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-04-12 20:12:15 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-04-12 20:12:13 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-04-12 20:12:13 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-04-12 20:12:12 ----A---- C:\WINDOWS\system32\profsvc.dll
2016-04-12 20:12:12 ----A---- C:\WINDOWS\system32\ncbservice.dll
2016-04-12 20:12:12 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys
2016-04-12 20:12:11 ----A---- C:\WINDOWS\system32\srvcli.dll
2016-04-12 20:12:11 ----A---- C:\WINDOWS\system32\omadmapi.dll
2016-04-12 20:12:11 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-04-12 20:12:11 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2016-04-12 20:12:10 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-04-12 20:12:10 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2016-04-12 20:12:09 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-04-12 20:12:09 ----A---- C:\WINDOWS\system32\netapi32.dll
2016-04-12 20:12:09 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2016-04-12 20:12:08 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-04-12 20:12:08 ----A---- C:\WINDOWS\system32\wkscli.dll
2016-04-12 20:12:08 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-04-12 20:12:08 ----A---- C:\WINDOWS\system32\easinvoker.exe
2016-04-12 20:12:07 ----A---- C:\WINDOWS\system32\iuilp.dll
2016-04-12 20:12:07 ----A---- C:\WINDOWS\system32\BFE.DLL
2016-04-12 20:12:06 ----A---- C:\WINDOWS\system32\WSDApi.dll
2016-04-12 20:12:06 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-04-12 20:12:06 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-04-12 20:12:06 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-04-12 20:12:05 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2016-04-12 20:12:05 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2016-04-12 20:12:05 ----A---- C:\WINDOWS\system32\oleacc.dll
2016-04-12 20:12:05 ----A---- C:\WINDOWS\system32\fveui.dll
2016-04-12 20:12:04 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-04-12 20:12:04 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2016-04-12 20:12:04 ----A---- C:\WINDOWS\system32\dmcsps.dll
2016-04-12 20:12:03 ----A---- C:\WINDOWS\system32\DAFWSD.dll
2016-04-12 20:12:02 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-12 20:12:02 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2016-04-12 20:12:02 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2016-04-12 20:12:01 ----A---- C:\WINDOWS\system32\wsdchngr.dll
2016-04-12 20:12:01 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2016-04-12 20:12:01 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-04-12 20:12:01 ----A---- C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-04-12 20:12:00 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-04-12 20:12:00 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2016-04-12 20:11:59 ----A---- C:\WINDOWS\system32\credprovhost.dll
2016-04-12 20:11:58 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll
2016-04-12 20:11:58 ----A---- C:\WINDOWS\system32\browcli.dll
2016-04-12 20:11:57 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-04-12 20:11:57 ----A---- C:\WINDOWS\system32\win32spl.dll
2016-04-12 20:11:57 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-04-12 20:11:57 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-04-12 20:11:57 ----A---- C:\WINDOWS\system32\basesrv.dll
2016-04-12 20:11:56 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-04-12 20:11:56 ----A---- C:\WINDOWS\system32\fvewiz.dll
2016-04-12 20:11:56 ----A---- C:\WINDOWS\system32\easwrt.dll
2016-04-12 20:11:56 ----A---- C:\WINDOWS\system32\browser.dll
2016-04-12 20:11:55 ----A---- C:\WINDOWS\system32\FontProvider.dll
2016-04-12 20:11:54 ----A---- C:\WINDOWS\system32\fvecpl.dll
2016-04-12 20:11:54 ----A---- C:\WINDOWS\system32\drivers\serial.sys
2016-04-12 20:11:53 ----A---- C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-04-12 20:11:53 ----A---- C:\WINDOWS\system32\tbauth.dll
2016-04-12 20:11:53 ----A---- C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-04-12 20:11:53 ----A---- C:\WINDOWS\system32\moshost.dll
2016-04-12 20:11:53 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2016-04-12 20:11:53 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2016-04-12 20:11:52 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2016-04-12 20:11:52 ----A---- C:\WINDOWS\system32\mos.dll
2016-04-12 20:11:52 ----A---- C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-04-12 20:11:52 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-04-12 20:11:51 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-04-12 20:11:51 ----A---- C:\WINDOWS\system32\samlib.dll
2016-04-12 20:11:51 ----A---- C:\WINDOWS\system32\mtxoci.dll
2016-04-12 20:11:51 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-04-12 20:11:51 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-04-12 20:11:51 ----A---- C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-04-12 20:11:50 ----A---- C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-04-12 20:11:50 ----A---- C:\WINDOWS\system32\oleacchooks.dll
2016-04-12 20:11:50 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-04-12 20:11:50 ----A---- C:\WINDOWS\system32\fveskybackup.dll
2016-04-12 20:11:49 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-04-12 20:11:48 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-04-12 20:11:45 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-04-12 20:11:45 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-04-12 20:11:45 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-04-12 20:11:41 ----A---- C:\WINDOWS\system32\MTF.dll
2016-04-01 18:50:25 ----AD---- C:\Program Files\Common Files\Skype
======List of files/folders modified in the last 1 month======
2016-04-18 18:13:57 ----D---- C:\WINDOWS\Prefetch
2016-04-18 18:13:46 ----RD---- C:\Program Files
2016-04-18 18:01:33 ----D---- C:\WINDOWS\Temp
2016-04-18 17:21:08 ----D---- C:\WINDOWS\system32\sru
2016-04-17 23:46:41 ----D---- C:\WINDOWS\Microsoft.NET
2016-04-17 23:35:17 ----D---- C:\WINDOWS\System32
2016-04-17 23:35:17 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-17 23:35:16 ----D---- C:\WINDOWS\INF
2016-04-17 23:33:04 ----D---- C:\Program Files\SpeedFan
2016-04-17 23:31:17 ----D---- C:\ProgramData\NVIDIA
2016-04-17 19:36:03 ----SHD---- C:\System Volume Information
2016-04-17 19:32:28 ----AD---- C:\KMPlayer
2016-04-17 18:42:05 ----D---- C:\WINDOWS\AppReadiness
2016-04-16 11:22:44 ----HD---- C:\Program Files\WindowsApps
2016-04-14 01:45:06 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2016-04-13 19:50:12 ----D---- C:\Windows
2016-04-13 19:40:19 ----RSD---- C:\WINDOWS\assembly
2016-04-13 19:29:32 ----D---- C:\WINDOWS\system32\config
2016-04-12 23:32:07 ----D---- C:\WINDOWS\rescache
2016-04-12 23:13:25 ----D---- C:\WINDOWS\system32\DriverStore
2016-04-12 23:13:23 ----D---- C:\WINDOWS\WinSxS
2016-04-12 23:00:14 ----D---- C:\Users\Ondra\AppData\Roaming\TeamViewer
2016-04-12 23:00:02 ----D---- C:\WINDOWS\debug
2016-04-12 22:48:00 ----D---- C:\WINDOWS\system32\drivers
2016-04-12 22:46:01 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-04-12 22:46:01 ----D---- C:\WINDOWS\system32\cs-CZ
2016-04-12 22:46:01 ----D---- C:\WINDOWS\system32\Boot
2016-04-12 22:46:01 ----D---- C:\WINDOWS\system32\appraiser
2016-04-12 22:45:57 ----D---- C:\WINDOWS\PolicyDefinitions
2016-04-12 22:45:57 ----D---- C:\WINDOWS\bcastdvr
2016-04-12 22:45:57 ----D---- C:\WINDOWS\apppatch
2016-04-12 22:32:18 ----D---- C:\WINDOWS\CbsTemp
2016-04-12 22:31:14 ----D---- C:\WINDOWS\system32\MRT
2016-04-12 22:25:21 ----A---- C:\WINDOWS\system32\MRT.exe
2016-04-12 20:03:16 ----D---- C:\WINDOWS\system32\catroot2
2016-04-12 18:50:53 ----D---- C:\WINDOWS\system32\Tasks
2016-04-12 18:50:53 ----AD---- C:\Program Files\TeamViewer
2016-04-12 18:50:46 ----RSD---- C:\WINDOWS\Fonts
2016-04-11 19:51:54 ----D---- C:\WINDOWS\SoftwareDistribution
2016-04-09 09:52:01 ----AD---- C:\Program Files\CCleaner
2016-04-07 16:32:47 ----D---- C:\WINDOWS\Minidump
2016-04-06 20:32:08 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2016-04-05 19:00:05 ----D---- C:\Users\Ondra\AppData\Roaming\Skype
2016-04-03 13:28:24 ----AD---- C:\Program Files\Malwarebytes Anti-Malware
2016-04-01 22:28:27 ----SHD---- C:\WINDOWS\Installer
2016-04-01 18:50:34 ----D---- C:\ProgramData\Skype
2016-04-01 18:50:33 ----SHD---- C:\Config.Msi
2016-04-01 18:50:25 ----RD---- C:\Program Files\Skype
2016-04-01 18:50:25 ----D---- C:\Program Files\Common Files
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 76288]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 7680]
R1 MpKsl862609d9;MpKsl862609d9; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{588BE92E-BF26-4EF0-828F-640E116A46C0}\MpKsl862609d9.sys [2016-04-17 39168]
R2 giveio;giveio; C:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 36864]
R2 speedfan;speedfan; \??\C:\Windows\system32\speedfan.sys [2012-12-29 24184]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 62464]
R3 FsUsbExDisk;FsUsbExDisk; \??\C:\Windows\system32\FsUsbExDisk.SYS [2011-01-20 36640]
R3 HPFXFAX;HPFXFAX; C:\WINDOWS\system32\drivers\hppcfaxio.sys [2010-12-14 21528]
R3 L1C;@netl1c63x86.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\L1C63x86.sys [2015-10-30 102912]
R3 L8042Kbd;@oem60.inf,%L8042Kbd.SvcDesc%;Logitech SetPoint Keyboard Driver; C:\WINDOWS\System32\drivers\L8042Kbd.sys [2014-03-19 19992]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-12-13 130560]
R3 MTsensor;@oem34.inf,%ASACPI.DisplayName%;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NVHDA;@oem181.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda32v.sys [2015-12-11 171336]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-12-11 9247344]
R3 nvvad_WaveExtensible;@oem70.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad32v.sys [2013-12-05 34080]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 88928]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 83288]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 51040]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 51552]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 27992]
S2 aksfridge;aksfridge; \??\C:\Windows\system32\drivers\aksfridge.sys [2010-09-27 356864]
S2 hardlock;hardlock; \??\C:\Windows\system32\drivers\hardlock.sys [2009-12-09 588800]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 8192]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 26624]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-13 96768]
S3 CrystalSysInfo;CrystalSysInfo; \??\C:\Program Files\MediaCoder\SysInfo.sys [2007-09-25 15152]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 17408]
S3 GPIO;@iaiogpio.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpio.sys [2015-10-30 22016]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 38240]
S3 HPFXBULKLEDM;HPFXBULKLEDM; C:\WINDOWS\system32\drivers\hppcbulkio.sys [2010-12-14 20504]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 66048]
S3 iaioi2c;@iaioi2c.inf,%Driver_Service.Desc%;Intel(R) Atom(TM) Processor I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2c.sys [2015-10-30 61936]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 23040]
S3 ProcObsrv;Process creation detector.; \??\C:\Program Files\Glary Utilities 3\ProcObsrv.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-14 82128]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 ASGT;ASGT; C:\Windows\System32\ASGT.exe [2012-01-17 55296]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 FsUsbExService;FsUsbExService; C:\Windows\system32\FsUsbExService.Exe [2011-01-20 217088]
R2 hasplms;Sentinel HASP License Manager; C:\Windows\system32\hasplms.exe [2010-09-27 4180576]
R2 HP LaserJet Service;HP LaserJet Service; C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [2010-10-25 145920]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2016-02-18 26680]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-12-13 25088]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [2013-12-10 1494304]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-12-10 14658848]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-08-07 671024]
R2 OneSyncSvc_5381f;Hostitel synchronizace_5381f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-02-08 411936]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
R3 PimIndexMaintenanceSvc_5381f;Data kontaktů_5381f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2015-10-30 37256]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_1449e0;Hostitel synchronizace_1449e0; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_1668dc;Hostitel synchronizace_1668dc; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_208f3f;Hostitel synchronizace_208f3f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_24197b;Hostitel synchronizace_24197b; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_242f19;Hostitel synchronizace_242f19; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_3b0bf;Hostitel synchronizace_3b0bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_3bc92;Hostitel synchronizace_3bc92; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_3ddde;Hostitel synchronizace_3ddde; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_402fa;Hostitel synchronizace_402fa; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_441ef;Hostitel synchronizace_441ef; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_65388;Hostitel synchronizace_65388; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_7a740;Hostitel synchronizace_7a740; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_83102;Hostitel synchronizace_83102; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_9f89e22;Hostitel synchronizace_9f89e22; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_b2750;Hostitel synchronizace_b2750; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_c6d08;Hostitel synchronizace_c6d08; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_c8ef9;Hostitel synchronizace_c8ef9; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2015-10-30 37256]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2016-01-29 327296]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2015-10-30 45752]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 26112]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2014-03-25 293144]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_1449e0;Služba zasílání zpráv_1449e0; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_1668dc;Služba zasílání zpráv_1668dc; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_208f3f;Služba zasílání zpráv_208f3f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_24197b;Služba zasílání zpráv_24197b; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_242f19;Služba zasílání zpráv_242f19; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_3b0bf;Služba zasílání zpráv_3b0bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_3bc92;Služba zasílání zpráv_3bc92; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_3ddde;Služba zasílání zpráv_3ddde; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_402fa;Služba zasílání zpráv_402fa; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_441ef;Služba zasílání zpráv_441ef; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_5381f;Služba zasílání zpráv_5381f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_65388;Služba zasílání zpráv_65388; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_7a740;Služba zasílání zpráv_7a740; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_83102;Služba zasílání zpráv_83102; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_9f89e22;Služba zasílání zpráv_9f89e22; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_b2750;Služba zasílání zpráv_b2750; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_c6d08;Služba zasílání zpráv_c6d08; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_c8ef9;Služba zasílání zpráv_c8ef9; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_1449e0;Data kontaktů_1449e0; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_1668dc;Data kontaktů_1668dc; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_208f3f;Data kontaktů_208f3f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_24197b;Data kontaktů_24197b; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_242f19;Data kontaktů_242f19; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_3b0bf;Data kontaktů_3b0bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_3bc92;Data kontaktů_3bc92; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_3ddde;Data kontaktů_3ddde; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_402fa;Data kontaktů_402fa; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_441ef;Data kontaktů_441ef; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_65388;Data kontaktů_65388; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_7a740;Data kontaktů_7a740; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_83102;Data kontaktů_83102; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_9f89e22;Data kontaktů_9f89e22; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_b2750;Data kontaktů_b2750; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_c6d08;Data kontaktů_c6d08; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_c8ef9;Data kontaktů_c8ef9; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 900096]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S4 DiagTrack;Propojená uživatelská prostředí a telemetrie; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
-----------------EOF-----------------
Logfile of random's system information tool 1.10 (written by random/random)
Run by Ondra at 2016-04-18 18:16:17
Microsoft Windows 10 Home
System drive C: has 27 GB (27%) free of 99 GB
Total RAM: 2047 MB (40% free)
======Scheduled tasks folder======
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-4232016968-1834718543-1254348729-1000Core.job - C:\Users\Ondra\AppData\Local\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskUserS-1-5-21-4232016968-1834718543-1254348729-1000UA.job - C:\Users\Ondra\AppData\Local\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre1.8.0_60\bin\ssv.dll [2015-08-30 460384]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2014-05-19 364824]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-08-30 172640]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"PrnStatusMX"=C:\Program Files\Hewlett-Packard\PrnStatusMX\PrnStatusMX.exe [2012-07-04 1077248]
"C:\Windows\system32\V0330Ext.ax"=C:\Windows\system32\RegSvr32.exe [2015-10-30 16896]
"ShadowPlay"=C:\Windows\system32\nvspcap.dll [2013-12-10 982232]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2014-05-19 2303256]
"SunJavaUpdateSched"=C:\Program Files\Common Files\Java\Java Update\jusched.exe [2015-08-04 597552]
"MalwareProtectionLive"=C:\Users\Ondra\AppData\Local\MalwareProtectionLive\MalwareProtectionClient.exe [2015-12-03 857632]
"HP Software Update"=C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]
""= []
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Steam"=C:\Program Files\Steam\steam.exe [2016-02-04 3014224]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-12-14 1085656]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Speed Launcher]
1431617753 []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BDRegion]
C:\Program Files\Cyberlink\Shared files\brs.exe [2010-11-17 75048]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring]
C:\Program Files\CCleaner\CCleaner.exe [2016-03-11 6667992]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\Ondra\AppData\Local\Google\Update\GoogleUpdate.exe [2012-05-23 116648]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDAudDeck]
C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe [2012-04-24 2154096]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP LaserJet Professional M1530 MFP Series Fax]
C:\Program Files\HP\Digital Imaging\Fax\Fax Driver 0.6 Base\hppfaxprintersrv.exe [2010-08-24 2459192]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [2013-05-30 96056]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Kernel and Hardware Abstraction Layer]
KHALMNPR.EXE []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper]
C:\Program Files\Samsung\Kies\KiesHelper.exe [2012-05-04 955792]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPDLR]
C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe [2012-05-04 21392]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent]
C:\Program Files\Samsung\Kies\KiesTrayAgent.exe [2012-05-04 3521424]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSC]
C:\Program Files\Microsoft Security Client\msseces.exe -hide -runkey []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MusicManager]
C:\Users\Ondra\AppData\Local\Programs\Google\MusicManager\MusicManager.exe [2014-04-24 7631872]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend]
C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe [2013-12-10 2279712]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nvtmru]
C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe [2013-08-27 1028896]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PrnStatusMX]
C:\Program Files\Hewlett-Packard\PrnStatusMX\PrnStatusMX.exe [2012-07-04 1077248]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl10]
C:\Program Files\CyberLink\PowerDVD10\PDVD10Serv.exe [2010-02-03 87336]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype]
C:\Program Files\Skype\Phone\Skype.exe [2016-03-01 50670720]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files\Common Files\Java\Java Update\jusched.exe [2015-08-04 597552]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ToolboxFX]
C:\Program Files\HP\ToolboxFX\bin\HPTLBXFX.exe [2010-10-25 58936]
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Logitech SetPoint.lnk]
C:\PROGRA~1\Logitech\SetPoint\SetPoint.exe []
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Ondra^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Logitech . Registrace produktu.lnk]
C:\PROGRA~1\COMMON~1\Logishrd\eReg\SetPoint\eReg.exe [2008-11-07 517384]
C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Mámemail Pošťák.lnk - C:\Program Files\Mamemail\Mamemail Postak\Postak.exe
speedfan.lnk - C:\Program Files\SpeedFan\speedfan.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2014-03-25 64280]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iaioi2c.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"ConsentPromptBehaviorAdmin"=0
"PromptOnSecureDesktop"=0
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoDriveTypeAutoRun"=221
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.cvid"=iccvid.dll
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"vidc.XVID"=xvidvfw.dll
"VIDC.VP80"=vp8vfw.dll
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2016-04-18 18:13:46 ----D---- C:\rsit
2016-04-18 18:13:46 ----D---- C:\Program Files\trend micro
2016-04-14 20:18:14 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2016-04-12 20:13:22 ----A---- C:\WINDOWS\system32\wininetlui.dll
2016-04-12 20:13:22 ----A---- C:\WINDOWS\system32\urlmon.dll
2016-04-12 20:13:21 ----A---- C:\WINDOWS\system32\ieframe.dll
2016-04-12 20:13:18 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2016-04-12 20:13:06 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-04-12 20:13:05 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2016-04-12 20:13:05 ----A---- C:\WINDOWS\system32\atmfd.dll
2016-04-12 20:13:04 ----A---- C:\WINDOWS\system32\win32kfull.sys
2016-04-12 20:13:02 ----A---- C:\WINDOWS\system32\wininet.dll
2016-04-12 20:13:02 ----A---- C:\WINDOWS\system32\jsproxy.dll
2016-04-12 20:13:01 ----A---- C:\WINDOWS\system32\twinui.dll
2016-04-12 20:13:00 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2016-04-12 20:12:59 ----A---- C:\WINDOWS\system32\wuaueng.dll
2016-04-12 20:12:59 ----A---- C:\WINDOWS\system32\storewuauth.dll
2016-04-12 20:12:58 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2016-04-12 20:12:58 ----A---- C:\WINDOWS\system32\InputService.dll
2016-04-12 20:12:57 ----A---- C:\WINDOWS\system32\Chakra.dll
2016-04-12 20:12:56 ----A---- C:\WINDOWS\system32\SRHInproc.dll
2016-04-12 20:12:56 ----A---- C:\WINDOWS\system32\SRH.dll
2016-04-12 20:12:54 ----A---- C:\WINDOWS\system32\kerberos.dll
2016-04-12 20:12:53 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-12 20:12:52 ----A---- C:\WINDOWS\system32\lsasrv.dll
2016-04-12 20:12:51 ----A---- C:\WINDOWS\system32\mshtml.dll
2016-04-12 20:12:49 ----A---- C:\WINDOWS\system32\wwansvc.dll
2016-04-12 20:12:49 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-04-12 20:12:47 ----A---- C:\WINDOWS\system32\edgehtml.dll
2016-04-12 20:12:46 ----A---- C:\WINDOWS\system32\BingMaps.dll
2016-04-12 20:12:45 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2016-04-12 20:12:44 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-04-12 20:12:42 ----A---- C:\WINDOWS\system32\XblAuthManager.dll
2016-04-12 20:12:41 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2016-04-12 20:12:40 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-04-12 20:12:40 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2016-04-12 20:12:40 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-04-12 20:12:39 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2016-04-12 20:12:39 ----A---- C:\WINDOWS\system32\dwmcore.dll
2016-04-12 20:12:39 ----A---- C:\WINDOWS\system32\dosvc.dll
2016-04-12 20:12:39 ----A---- C:\WINDOWS\system32\audiosrv.dll
2016-04-12 20:12:38 ----A---- C:\WINDOWS\system32\win32kbase.sys
2016-04-12 20:12:38 ----A---- C:\WINDOWS\system32\esent.dll
2016-04-12 20:12:37 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-04-12 20:12:37 ----A---- C:\WINDOWS\system32\MapControlCore.dll
2016-04-12 20:12:36 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2016-04-12 20:12:36 ----A---- C:\WINDOWS\system32\PhoneProviders.dll
2016-04-12 20:12:36 ----A---- C:\WINDOWS\system32\NetSetupShim.dll
2016-04-12 20:12:36 ----A---- C:\WINDOWS\system32\MapsStore.dll
2016-04-12 20:12:36 ----A---- C:\WINDOWS\system32\MapConfiguration.dll
2016-04-12 20:12:36 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-04-12 20:12:35 ----A---- C:\WINDOWS\system32\NetSetupEngine.dll
2016-04-12 20:12:34 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2016-04-12 20:12:34 ----A---- C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-04-12 20:12:33 ----A---- C:\WINDOWS\system32\winload.exe
2016-04-12 20:12:32 ----A---- C:\WINDOWS\system32\fveapi.dll
2016-04-12 20:12:32 ----A---- C:\WINDOWS\system32\fontsub.dll
2016-04-12 20:12:32 ----A---- C:\WINDOWS\system32\atmlib.dll
2016-04-12 20:12:31 ----A---- C:\WINDOWS\system32\winresume.exe
2016-04-12 20:12:31 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2016-04-12 20:12:31 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-04-12 20:12:31 ----A---- C:\WINDOWS\system32\bisrv.dll
2016-04-12 20:12:30 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2016-04-12 20:12:30 ----A---- C:\WINDOWS\system32\audiodg.exe
2016-04-12 20:12:29 ----A---- C:\WINDOWS\system32\StorSvc.dll
2016-04-12 20:12:29 ----A---- C:\WINDOWS\system32\SensorService.dll
2016-04-12 20:12:29 ----A---- C:\WINDOWS\system32\RDXService.dll
2016-04-12 20:12:29 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2016-04-12 20:12:29 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2016-04-12 20:12:29 ----A---- C:\WINDOWS\system32\AccountsRt.dll
2016-04-12 20:12:28 ----A---- C:\WINDOWS\system32\tileobjserver.dll
2016-04-12 20:12:28 ----A---- C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-04-12 20:12:28 ----A---- C:\WINDOWS\system32\LockAppHost.exe
2016-04-12 20:12:28 ----A---- C:\WINDOWS\system32\CredProvDataModel.dll
2016-04-12 20:12:27 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-12 20:12:27 ----A---- C:\WINDOWS\system32\NetSetupSvc.dll
2016-04-12 20:12:26 ----A---- C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-04-12 20:12:26 ----A---- C:\WINDOWS\system32\msv1_0.dll
2016-04-12 20:12:26 ----A---- C:\WINDOWS\system32\JpMapControl.dll
2016-04-12 20:12:22 ----A---- C:\WINDOWS\system32\RDXTaskFactory.dll
2016-04-12 20:12:22 ----A---- C:\WINDOWS\system32\accountaccessor.dll
2016-04-12 20:12:21 ----A---- C:\WINDOWS\system32\msxml3.dll
2016-04-12 20:12:21 ----A---- C:\WINDOWS\system32\msi.dll
2016-04-12 20:12:21 ----A---- C:\WINDOWS\system32\moshostcore.dll
2016-04-12 20:12:21 ----A---- C:\WINDOWS\system32\drivers\http.sys
2016-04-12 20:12:20 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2016-04-12 20:12:20 ----A---- C:\WINDOWS\system32\policymanager.dll
2016-04-12 20:12:20 ----A---- C:\WINDOWS\system32\drivers\ufx01000.sys
2016-04-12 20:12:19 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-04-12 20:12:19 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2016-04-12 20:12:18 ----A---- C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-04-12 20:12:18 ----A---- C:\WINDOWS\system32\NetSetupApi.dll
2016-04-12 20:12:18 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-04-12 20:12:18 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2016-04-12 20:12:18 ----A---- C:\WINDOWS\system32\bdesvc.dll
2016-04-12 20:12:17 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2016-04-12 20:12:17 ----A---- C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-04-12 20:12:17 ----A---- C:\WINDOWS\system32\msorcl32.dll
2016-04-12 20:12:17 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2016-04-12 20:12:17 ----A---- C:\WINDOWS\system32\dnsapi.dll
2016-04-12 20:12:16 ----A---- C:\WINDOWS\system32\samsrv.dll
2016-04-12 20:12:16 ----A---- C:\WINDOWS\system32\policymanagerprecheck.dll
2016-04-12 20:12:16 ----A---- C:\WINDOWS\system32\MosStorage.dll
2016-04-12 20:12:16 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2016-04-12 20:12:15 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-04-12 20:12:13 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-04-12 20:12:13 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2016-04-12 20:12:12 ----A---- C:\WINDOWS\system32\profsvc.dll
2016-04-12 20:12:12 ----A---- C:\WINDOWS\system32\ncbservice.dll
2016-04-12 20:12:12 ----A---- C:\WINDOWS\system32\drivers\dfsc.sys
2016-04-12 20:12:11 ----A---- C:\WINDOWS\system32\srvcli.dll
2016-04-12 20:12:11 ----A---- C:\WINDOWS\system32\omadmapi.dll
2016-04-12 20:12:11 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2016-04-12 20:12:11 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2016-04-12 20:12:10 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-04-12 20:12:10 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2016-04-12 20:12:09 ----A---- C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-04-12 20:12:09 ----A---- C:\WINDOWS\system32\netapi32.dll
2016-04-12 20:12:09 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2016-04-12 20:12:08 ----A---- C:\WINDOWS\system32\wuapi.dll
2016-04-12 20:12:08 ----A---- C:\WINDOWS\system32\wkscli.dll
2016-04-12 20:12:08 ----A---- C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-04-12 20:12:08 ----A---- C:\WINDOWS\system32\easinvoker.exe
2016-04-12 20:12:07 ----A---- C:\WINDOWS\system32\iuilp.dll
2016-04-12 20:12:07 ----A---- C:\WINDOWS\system32\BFE.DLL
2016-04-12 20:12:06 ----A---- C:\WINDOWS\system32\WSDApi.dll
2016-04-12 20:12:06 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2016-04-12 20:12:06 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2016-04-12 20:12:06 ----A---- C:\WINDOWS\system32\dafBth.dll
2016-04-12 20:12:05 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2016-04-12 20:12:05 ----A---- C:\WINDOWS\system32\SensorsNativeApi.dll
2016-04-12 20:12:05 ----A---- C:\WINDOWS\system32\oleacc.dll
2016-04-12 20:12:05 ----A---- C:\WINDOWS\system32\fveui.dll
2016-04-12 20:12:04 ----A---- C:\WINDOWS\system32\VEEventDispatcher.dll
2016-04-12 20:12:04 ----A---- C:\WINDOWS\system32\drivers\nwifi.sys
2016-04-12 20:12:04 ----A---- C:\WINDOWS\system32\dmcsps.dll
2016-04-12 20:12:03 ----A---- C:\WINDOWS\system32\DAFWSD.dll
2016-04-12 20:12:02 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-12 20:12:02 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2016-04-12 20:12:02 ----A---- C:\WINDOWS\system32\drivers\WdiWiFi.sys
2016-04-12 20:12:01 ----A---- C:\WINDOWS\system32\wsdchngr.dll
2016-04-12 20:12:01 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2016-04-12 20:12:01 ----A---- C:\WINDOWS\system32\browserbroker.dll
2016-04-12 20:12:01 ----A---- C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-04-12 20:12:00 ----A---- C:\WINDOWS\system32\ieproxy.dll
2016-04-12 20:12:00 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2016-04-12 20:11:59 ----A---- C:\WINDOWS\system32\credprovhost.dll
2016-04-12 20:11:58 ----A---- C:\WINDOWS\system32\wuautoappupdate.dll
2016-04-12 20:11:58 ----A---- C:\WINDOWS\system32\browcli.dll
2016-04-12 20:11:57 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-04-12 20:11:57 ----A---- C:\WINDOWS\system32\win32spl.dll
2016-04-12 20:11:57 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-04-12 20:11:57 ----A---- C:\WINDOWS\system32\SyncController.dll
2016-04-12 20:11:57 ----A---- C:\WINDOWS\system32\basesrv.dll
2016-04-12 20:11:56 ----A---- C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-04-12 20:11:56 ----A---- C:\WINDOWS\system32\fvewiz.dll
2016-04-12 20:11:56 ----A---- C:\WINDOWS\system32\easwrt.dll
2016-04-12 20:11:56 ----A---- C:\WINDOWS\system32\browser.dll
2016-04-12 20:11:55 ----A---- C:\WINDOWS\system32\FontProvider.dll
2016-04-12 20:11:54 ----A---- C:\WINDOWS\system32\fvecpl.dll
2016-04-12 20:11:54 ----A---- C:\WINDOWS\system32\drivers\serial.sys
2016-04-12 20:11:53 ----A---- C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-04-12 20:11:53 ----A---- C:\WINDOWS\system32\tbauth.dll
2016-04-12 20:11:53 ----A---- C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-04-12 20:11:53 ----A---- C:\WINDOWS\system32\moshost.dll
2016-04-12 20:11:53 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2016-04-12 20:11:53 ----A---- C:\WINDOWS\system32\drivers\portcls.sys
2016-04-12 20:11:52 ----A---- C:\WINDOWS\system32\tzautoupdate.dll
2016-04-12 20:11:52 ----A---- C:\WINDOWS\system32\mos.dll
2016-04-12 20:11:52 ----A---- C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-04-12 20:11:52 ----A---- C:\WINDOWS\system32\actxprxy.dll
2016-04-12 20:11:51 ----A---- C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-04-12 20:11:51 ----A---- C:\WINDOWS\system32\samlib.dll
2016-04-12 20:11:51 ----A---- C:\WINDOWS\system32\mtxoci.dll
2016-04-12 20:11:51 ----A---- C:\WINDOWS\system32\mapsupdatetask.dll
2016-04-12 20:11:51 ----A---- C:\WINDOWS\system32\fveapibase.dll
2016-04-12 20:11:51 ----A---- C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-04-12 20:11:50 ----A---- C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-04-12 20:11:50 ----A---- C:\WINDOWS\system32\oleacchooks.dll
2016-04-12 20:11:50 ----A---- C:\WINDOWS\system32\NMAA.dll
2016-04-12 20:11:50 ----A---- C:\WINDOWS\system32\fveskybackup.dll
2016-04-12 20:11:49 ----A---- C:\WINDOWS\system32\MapsBtSvc.dll
2016-04-12 20:11:48 ----A---- C:\WINDOWS\system32\MapsCSP.dll
2016-04-12 20:11:45 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2016-04-12 20:11:45 ----A---- C:\WINDOWS\system32\bcastdvr.exe
2016-04-12 20:11:45 ----A---- C:\WINDOWS\system32\AppCapture.dll
2016-04-12 20:11:41 ----A---- C:\WINDOWS\system32\MTF.dll
2016-04-01 18:50:25 ----AD---- C:\Program Files\Common Files\Skype
======List of files/folders modified in the last 1 month======
2016-04-18 18:13:57 ----D---- C:\WINDOWS\Prefetch
2016-04-18 18:13:46 ----RD---- C:\Program Files
2016-04-18 18:01:33 ----D---- C:\WINDOWS\Temp
2016-04-18 17:21:08 ----D---- C:\WINDOWS\system32\sru
2016-04-17 23:46:41 ----D---- C:\WINDOWS\Microsoft.NET
2016-04-17 23:35:17 ----D---- C:\WINDOWS\System32
2016-04-17 23:35:17 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-17 23:35:16 ----D---- C:\WINDOWS\INF
2016-04-17 23:33:04 ----D---- C:\Program Files\SpeedFan
2016-04-17 23:31:17 ----D---- C:\ProgramData\NVIDIA
2016-04-17 19:36:03 ----SHD---- C:\System Volume Information
2016-04-17 19:32:28 ----AD---- C:\KMPlayer
2016-04-17 18:42:05 ----D---- C:\WINDOWS\AppReadiness
2016-04-16 11:22:44 ----HD---- C:\Program Files\WindowsApps
2016-04-14 01:45:06 ----N---- C:\WINDOWS\system32\MpSigStub.exe
2016-04-13 19:50:12 ----D---- C:\Windows
2016-04-13 19:40:19 ----RSD---- C:\WINDOWS\assembly
2016-04-13 19:29:32 ----D---- C:\WINDOWS\system32\config
2016-04-12 23:32:07 ----D---- C:\WINDOWS\rescache
2016-04-12 23:13:25 ----D---- C:\WINDOWS\system32\DriverStore
2016-04-12 23:13:23 ----D---- C:\WINDOWS\WinSxS
2016-04-12 23:00:14 ----D---- C:\Users\Ondra\AppData\Roaming\TeamViewer
2016-04-12 23:00:02 ----D---- C:\WINDOWS\debug
2016-04-12 22:48:00 ----D---- C:\WINDOWS\system32\drivers
2016-04-12 22:46:01 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2016-04-12 22:46:01 ----D---- C:\WINDOWS\system32\cs-CZ
2016-04-12 22:46:01 ----D---- C:\WINDOWS\system32\Boot
2016-04-12 22:46:01 ----D---- C:\WINDOWS\system32\appraiser
2016-04-12 22:45:57 ----D---- C:\WINDOWS\PolicyDefinitions
2016-04-12 22:45:57 ----D---- C:\WINDOWS\bcastdvr
2016-04-12 22:45:57 ----D---- C:\WINDOWS\apppatch
2016-04-12 22:32:18 ----D---- C:\WINDOWS\CbsTemp
2016-04-12 22:31:14 ----D---- C:\WINDOWS\system32\MRT
2016-04-12 22:25:21 ----A---- C:\WINDOWS\system32\MRT.exe
2016-04-12 20:03:16 ----D---- C:\WINDOWS\system32\catroot2
2016-04-12 18:50:53 ----D---- C:\WINDOWS\system32\Tasks
2016-04-12 18:50:53 ----AD---- C:\Program Files\TeamViewer
2016-04-12 18:50:46 ----RSD---- C:\WINDOWS\Fonts
2016-04-11 19:51:54 ----D---- C:\WINDOWS\SoftwareDistribution
2016-04-09 09:52:01 ----AD---- C:\Program Files\CCleaner
2016-04-07 16:32:47 ----D---- C:\WINDOWS\Minidump
2016-04-06 20:32:08 ----A---- C:\WINDOWS\system32\FlashPlayerApp.exe
2016-04-05 19:00:05 ----D---- C:\Users\Ondra\AppData\Roaming\Skype
2016-04-03 13:28:24 ----AD---- C:\Program Files\Malwarebytes Anti-Malware
2016-04-01 22:28:27 ----SHD---- C:\WINDOWS\Installer
2016-04-01 18:50:34 ----D---- C:\ProgramData\Skype
2016-04-01 18:50:33 ----SHD---- C:\Config.Msi
2016-04-01 18:50:25 ----RD---- C:\Program Files\Skype
2016-04-01 18:50:25 ----D---- C:\Program Files\Common Files
======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2015-10-30 76288]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2015-10-30 7680]
R1 MpKsl862609d9;MpKsl862609d9; \??\C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{588BE92E-BF26-4EF0-828F-640E116A46C0}\MpKsl862609d9.sys [2016-04-17 39168]
R2 giveio;giveio; C:\WINDOWS\system32\giveio.sys [1996-04-03 5248]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2015-10-30 36864]
R2 speedfan;speedfan; \??\C:\Windows\system32\speedfan.sys [2012-12-29 24184]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2015-10-30 62464]
R3 FsUsbExDisk;FsUsbExDisk; \??\C:\Windows\system32\FsUsbExDisk.SYS [2011-01-20 36640]
R3 HPFXFAX;HPFXFAX; C:\WINDOWS\system32\drivers\hppcfaxio.sys [2010-12-14 21528]
R3 L1C;@netl1c63x86.inf,%L1C.Service.DispName%;NDIS Miniport Driver for Qualcomm Atheros AR81xx PCI-E Ethernet Controller; C:\WINDOWS\System32\drivers\L1C63x86.sys [2015-10-30 102912]
R3 L8042Kbd;@oem60.inf,%L8042Kbd.SvcDesc%;Logitech SetPoint Keyboard Driver; C:\WINDOWS\System32\drivers\L8042Kbd.sys [2014-03-19 19992]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2015-12-13 130560]
R3 MTsensor;@oem34.inf,%ASACPI.DisplayName%;ATK0110 ACPI UTILITY; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [2004-08-13 5810]
R3 NVHDA;@oem181.inf,%NVHDA.SvcDesc%;Service for NVIDIA High Definition Audio Driver; C:\WINDOWS\system32\drivers\nvhda32v.sys [2015-12-11 171336]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\system32\DRIVERS\nvlddmkm.sys [2015-12-11 9247344]
R3 nvvad_WaveExtensible;@oem70.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad32v.sys [2013-12-05 34080]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2015-10-30 88928]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2015-10-30 83288]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2015-10-30 51040]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2015-10-30 51552]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2015-10-30 27992]
S2 aksfridge;aksfridge; \??\C:\Windows\system32\drivers\aksfridge.sys [2010-09-27 356864]
S2 hardlock;hardlock; \??\C:\Windows\system32\drivers\hardlock.sys [2009-12-09 588800]
S3 bcmfn;@bcmfn.inf,%bcmfn.SVCDESC%;bcmfn Service; C:\WINDOWS\System32\drivers\bcmfn.sys [2015-10-30 8192]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2015-10-30 26624]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2015-12-13 96768]
S3 CrystalSysInfo;CrystalSysInfo; \??\C:\Program Files\MediaCoder\SysInfo.sys [2007-09-25 15152]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2015-10-30 17408]
S3 GPIO;@iaiogpio.inf,%GPIO.SVCDESC%;Intel SoC GPIO Controller Driver; C:\WINDOWS\System32\drivers\iaiogpio.sys [2015-10-30 22016]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2015-10-30 38240]
S3 HPFXBULKLEDM;HPFXBULKLEDM; C:\WINDOWS\system32\drivers\hppcbulkio.sys [2010-12-14 20504]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2015-10-30 66048]
S3 iaioi2c;@iaioi2c.inf,%Driver_Service.Desc%;Intel(R) Atom(TM) Processor I2C Controller Service; C:\WINDOWS\System32\drivers\iaioi2c.sys [2015-10-30 61936]
S3 IoQos;@%SystemRoot%\system32\drivers\ioqos.sys,-100; C:\WINDOWS\system32\drivers\ioqos.sys [2015-10-30 23040]
S3 ProcObsrv;Process creation detector.; \??\C:\Program Files\Glary Utilities 3\ProcObsrv.sys []
======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======
R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files\Common Files\Adobe\ARM\1.0\armsvc.exe [2015-12-14 82128]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 ASGT;ASGT; C:\Windows\System32\ASGT.exe [2012-01-17 55296]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 390504]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 FsUsbExService;FsUsbExService; C:\Windows\system32\FsUsbExService.Exe [2011-01-20 217088]
R2 hasplms;Sentinel HASP License Manager; C:\Windows\system32\hasplms.exe [2010-09-27 4180576]
R2 HP LaserJet Service;HP LaserJet Service; C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [2010-10-25 145920]
R2 HPSupportSolutionsFrameworkService;HP Support Solutions Framework Service; C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [2016-02-18 26680]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2015-12-13 25088]
R2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
R2 NvNetworkService;NVIDIA Network Service; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [2013-12-10 1494304]
R2 NvStreamSvc;NVIDIA Streamer Service; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [2013-12-10 14658848]
R2 nvsvc;NVIDIA Display Driver Service; C:\WINDOWS\system32\nvvsvc.exe [2015-08-07 671024]
R2 OneSyncSvc_5381f;Hostitel synchronizace_5381f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R2 Stereo Service;NVIDIA Stereoscopic 3D Driver Service; C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe [2014-02-08 411936]
R3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
R3 PimIndexMaintenanceSvc_5381f;Data kontaktů_5381f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2015-10-30 37256]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\SMSvcHost.exe [2015-10-30 135848]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_1449e0;Hostitel synchronizace_1449e0; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_1668dc;Hostitel synchronizace_1668dc; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_208f3f;Hostitel synchronizace_208f3f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_24197b;Hostitel synchronizace_24197b; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_242f19;Hostitel synchronizace_242f19; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_3b0bf;Hostitel synchronizace_3b0bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_3bc92;Hostitel synchronizace_3bc92; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_3ddde;Hostitel synchronizace_3ddde; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_402fa;Hostitel synchronizace_402fa; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_441ef;Hostitel synchronizace_441ef; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_65388;Hostitel synchronizace_65388; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_7a740;Hostitel synchronizace_7a740; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_83102;Hostitel synchronizace_83102; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_9f89e22;Hostitel synchronizace_9f89e22; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_b2750;Hostitel synchronizace_b2750; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_c6d08;Hostitel synchronizace_c6d08; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 OneSyncSvc_c8ef9;Hostitel synchronizace_c8ef9; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2015-10-30 37256]
S2 SkypeUpdate;Skype Updater; C:\Program Files\Skype\Updater\Updater.exe [2016-01-29 327296]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework\v4.0.30319\aspnet_state.exe [2015-10-30 45752]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DcpSvc;@%SystemRoot%\system32\dcpsvc.dll,-3001; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2015-10-30 26112]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe [2015-10-23 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files\Google\Update\GoogleUpdate.exe [2015-08-30 144200]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2014-03-25 293144]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_1449e0;Služba zasílání zpráv_1449e0; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_1668dc;Služba zasílání zpráv_1668dc; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_208f3f;Služba zasílání zpráv_208f3f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_24197b;Služba zasílání zpráv_24197b; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_242f19;Služba zasílání zpráv_242f19; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_3b0bf;Služba zasílání zpráv_3b0bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_3bc92;Služba zasílání zpráv_3bc92; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_3ddde;Služba zasílání zpráv_3ddde; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_402fa;Služba zasílání zpráv_402fa; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_441ef;Služba zasílání zpráv_441ef; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_5381f;Služba zasílání zpráv_5381f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_65388;Služba zasílání zpráv_65388; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_7a740;Služba zasílání zpráv_7a740; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_83102;Služba zasílání zpráv_83102; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_9f89e22;Služba zasílání zpráv_9f89e22; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_b2750;Služba zasílání zpráv_b2750; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_c6d08;Služba zasílání zpráv_c6d08; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 MessagingService_c8ef9;Služba zasílání zpráv_c8ef9; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2011-07-20 440696]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_1449e0;Data kontaktů_1449e0; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_1668dc;Data kontaktů_1668dc; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_208f3f;Data kontaktů_208f3f; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_24197b;Data kontaktů_24197b; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_242f19;Data kontaktů_242f19; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_3b0bf;Data kontaktů_3b0bf; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_3bc92;Data kontaktů_3bc92; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_3ddde;Data kontaktů_3ddde; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_402fa;Data kontaktů_402fa; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_441ef;Data kontaktů_441ef; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_65388;Data kontaktů_65388; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_7a740;Data kontaktů_7a740; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_83102;Data kontaktů_83102; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_9f89e22;Data kontaktů_9f89e22; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_b2750;Data kontaktů_b2750; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_c6d08;Data kontaktů_c6d08; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 PimIndexMaintenanceSvc_c8ef9;Data kontaktů_c8ef9; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2015-10-30 900096]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S3 Sony PC Companion;Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [2013-02-04 155824]
S3 Steam Client Service;Steam Client Service; C:\Program Files\Common Files\Steam\SteamService.exe [2016-02-04 835152]
S4 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2015-10-30 37256]
S4 DiagTrack;Propojená uživatelská prostředí a telemetrie; C:\WINDOWS\System32\svchost.exe [2015-10-30 37256]
-----------------EOF-----------------
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Po startu Win 10 delší vytížení procesoru
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Stáhněte AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan< a pak na >Clean<.
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Po startu Win 10 delší vytížení procesoru
# AdwCleaner v5.112 - Log soubor vytvořen 18/04/2016 o 19:54:21
# Aktualizováno 17/04/2016 by Xplode
# Databáze : 2016-04-17.1 [Server]
# Operační systém : Windows 10 Home (X86)
# Jméno uživatele : Ondra - ONDRA-PC
# Spuštěno z : C:\Users\Ondra\Desktop\adwcleaner_5.112.exe
# Volba : Čištění
# Podpora : http://toolslib.net/forum
***** [ Služby ] *****
***** [ Složky ] *****
[-] Složka smazáno : C:\Program Files\FreeRIP
[-] Složka smazáno : C:\Program Files\GreenTree Applications
[-] Složka smazáno : C:\ProgramData\Ask
[-] Složka smazáno : C:\ProgramData\FreeRIP
[-] Složka smazáno : C:\ProgramData\ytd video downloader
[-] Složka smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader
[-] Složka smazáno : C:\Users\Ondra\AppData\Local\MalwareProtectionLive
[-] Složka smazáno : C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil
[-] Složka smazáno : C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FreeRIP
***** [ Soubory ] *****
[-] Soubor smazáno : C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_elicpjhcidhpjomhibiffojpinpmmpil_0.localstorage
[-] Soubor smazáno : C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\elicpjhcidhpjomhibiffojpinpmmpil
[-] Soubor smazáno : C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_d16fk4ms6rqz1v.cloudfront.net_0.localstorage
[-] Soubor smazáno : C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_d2i49pn6mosg0g.cloudfront.net_0.localstorage
[-] Soubor smazáno : C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage
[-] Soubor smazáno : C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage
[-] Soubor smazáno : C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.threadingmyway.com_0.localstorage
[-] Soubor smazáno : C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Malware Protection Live.lnk
[-] Soubor smazáno : C:\Users\Public\Desktop\YTD Video Downloader.lnk
***** [ DLLs ] *****
***** [ Zástupci ] *****
***** [ Naplánované úkoly ] *****
***** [ Registr ] *****
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2964B}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4C4AD}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A}
[-] Klávesa smazáno : HKCU\Software\APN PIP
[-] Klávesa smazáno : HKCU\Software\Softonic
[-] Klávesa smazáno : HKLM\SOFTWARE\PIP
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MalwareProtectionLive
[-] Hodnota smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [MalwareProtectionLive]
[-] Hodnota smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [MalwareProtectionLive]
***** [ Webové prohlížeče ] *****
*************************
:: "Tracing" odstraněných kláves
:: Nastavení Winsock odstraněno
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [3477 bytes] - [18/04/2016 19:54:21]
C:\AdwCleaner\AdwCleaner[S1].txt - [3589 bytes] - [18/04/2016 19:52:15]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [3623 bytes] ##########
# Aktualizováno 17/04/2016 by Xplode
# Databáze : 2016-04-17.1 [Server]
# Operační systém : Windows 10 Home (X86)
# Jméno uživatele : Ondra - ONDRA-PC
# Spuštěno z : C:\Users\Ondra\Desktop\adwcleaner_5.112.exe
# Volba : Čištění
# Podpora : http://toolslib.net/forum
***** [ Služby ] *****
***** [ Složky ] *****
[-] Složka smazáno : C:\Program Files\FreeRIP
[-] Složka smazáno : C:\Program Files\GreenTree Applications
[-] Složka smazáno : C:\ProgramData\Ask
[-] Složka smazáno : C:\ProgramData\FreeRIP
[-] Složka smazáno : C:\ProgramData\ytd video downloader
[-] Složka smazáno : C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ytd video downloader
[-] Složka smazáno : C:\Users\Ondra\AppData\Local\MalwareProtectionLive
[-] Složka smazáno : C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil
[-] Složka smazáno : C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FreeRIP
***** [ Soubory ] *****
[-] Soubor smazáno : C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Local Storage\chrome-extension_elicpjhcidhpjomhibiffojpinpmmpil_0.localstorage
[-] Soubor smazáno : C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Local Extension Settings\elicpjhcidhpjomhibiffojpinpmmpil
[-] Soubor smazáno : C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_d16fk4ms6rqz1v.cloudfront.net_0.localstorage
[-] Soubor smazáno : C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_d2i49pn6mosg0g.cloudfront.net_0.localstorage
[-] Soubor smazáno : C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_wlogin.icq.com_0.localstorage
[-] Soubor smazáno : C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.azlyrics.com_0.localstorage
[-] Soubor smazáno : C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxp_www.threadingmyway.com_0.localstorage
[-] Soubor smazáno : C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Malware Protection Live.lnk
[-] Soubor smazáno : C:\Users\Public\Desktop\YTD Video Downloader.lnk
***** [ DLLs ] *****
***** [ Zástupci ] *****
***** [ Naplánované úkoly ] *****
***** [ Registr ] *****
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{3CCC052E-BDEE-408A-BEA7-90914EF2964B}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{61F47056-E400-43D3-AF1E-AB7DFFD4C4AD}
[-] Klávesa smazáno : HKLM\SOFTWARE\Classes\CLSID\{E2B98EEA-EE55-4E9B-A8C1-6E5288DF785A}
[-] Klávesa smazáno : HKCU\Software\APN PIP
[-] Klávesa smazáno : HKCU\Software\Softonic
[-] Klávesa smazáno : HKLM\SOFTWARE\PIP
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\{1a413f37-ed88-4fec-9666-5c48dc4b7bb7}
[-] Klávesa smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MalwareProtectionLive
[-] Hodnota smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run [MalwareProtectionLive]
[-] Hodnota smazáno : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run [MalwareProtectionLive]
***** [ Webové prohlížeče ] *****
*************************
:: "Tracing" odstraněných kláves
:: Nastavení Winsock odstraněno
*************************
C:\AdwCleaner\AdwCleaner[C1].txt - [3477 bytes] - [18/04/2016 19:54:21]
C:\AdwCleaner\AdwCleaner[S1].txt - [3589 bytes] - [18/04/2016 19:52:15]
########## EOF - C:\AdwCleaner\AdwCleaner[C1].txt - [3623 bytes] ##########
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Po startu Win 10 delší vytížení procesoru
Teď dejte log FRST: http://forum.viry.cz/viewtopic.php?f=13&t=133100 .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Po startu Win 10 delší vytížení procesoru
Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version:17-04-2016
Ran by Ondra (administrator) on ONDRA-PC (18-04-2016 21:08:04)
Running from C:\Users\Ondra\Desktop
Loaded Profiles: Ondra (Available Profiles: Ondra & DefaultAppPool)
Platform: Microsoft Windows 10 Home Version 1511 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Windows\System32\ASGT.exe
(Teruten) C:\Windows\System32\FsUsbExService.Exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(SafeNet Inc.) C:\Windows\System32\hasplms.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(HP) C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Marvell Semiconductor, Inc.) C:\Program Files\Hewlett-Packard\PrnStatusMX\PrnStatusMX.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe
(Almico Software (almico.com)) C:\Program Files\SpeedFan\speedfan.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(forum.viry.cz) C:\Users\Ondra\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [PrnStatusMX] => C:\Program Files\Hewlett-Packard\PrnStatusMX\PrnStatusMX.exe [1077248 2012-07-04] (Marvell Semiconductor, Inc.)
HKLM\...\Run: [C:\Windows\system32\V0330Ext.ax] => C:\Windows\system32\RegSvr32.exe /s C:\Windows\system32\V0330Ext.ax
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [2303256 2014-05-19] (Logitech, Inc.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation)
HKLM\...\Run: [HP Software Update] => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM\...\Run: [] => [X]
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2014-03-25] (Logitech, Inc.)
HKU\S-1-5-21-4232016968-1834718543-1254348729-1000\...\Run: [Steam] => C:\Program Files\Steam\steam.exe [3014224 2016-02-04] (Valve Corporation)
HKU\S-1-5-21-4232016968-1834718543-1254348729-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
Startup: C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mámemail Pošťák.lnk [2015-06-17]
ShortcutTarget: Mámemail Pošťák.lnk -> C:\Program Files\Mamemail\Mamemail Postak\Postak.exe (TB development & investment, s.r.o.)
Startup: C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\speedfan.lnk [2012-04-24]
ShortcutTarget: speedfan.lnk -> C:\Program Files\SpeedFan\speedfan.exe (Almico Software (almico.com))
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 01 C:\WINDOWS\system32\NLAapi.dll [65024 2015-10-30] (Microsoft Corporation) ATTENTION: LibraryPath should be "C:\WINDOWS)\system32\NLAapi.dll"
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 213.46.172.37 213.46.172.36
Tcpip\..\Interfaces\{15c03677-4ee4-4720-8afe-71abf13f8987}: [DhcpNameServer] 213.46.172.37 213.46.172.36
Tcpip\..\Interfaces\{70b41fad-d645-431a-b39f-cfa89e5f5e5a}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKU\S-1-5-21-4232016968-1834718543-1254348729-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.jw.org/cs
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_60\bin\ssv.dll [2015-08-30] (Oracle Corporation)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2014-05-19] (Logitech, Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-08-30] (Oracle Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2016-02-01] (Skype Technologies)
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-03-27] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1218158.dll [2015-04-17] (Adobe Systems, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-08-30] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-08-30] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2014-02-08] (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2014-02-08] (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-01-30] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-01-30] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-4232016968-1834718543-1254348729-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Ondra\AppData\Local\Google\Update\1.3.24.7\npGoogleUpdate3.dll [2014-05-07] (Google Inc.)
FF Plugin HKU\S-1-5-21-4232016968-1834718543-1254348729-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Ondra\AppData\Local\Google\Update\1.3.24.7\npGoogleUpdate3.dll [2014-05-07] (Google Inc.)
FF HKLM\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2014-12-27] [not signed]
Chrome:
=======
CHR StartupUrls: Default -> "hxxp://www.google.cz/"
CHR DefaultSearchKeyword: Default -> google.cz_
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\49.0.2623.112\ppGoogleNaClPluginChrome.dll => No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\49.0.2623.112\pdf.dll => No File
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\49.0.2623.112\gcswf32.dll => No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll => No File
CHR Profile: C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (YouTube) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-01]
CHR Extension: (Vyhledávání Google) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Kalendář Google) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2015-10-14]
CHR Extension: (Video Downloader professional) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2016-04-18]
CHR Extension: (Send Link) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\elophlokcoblconmkfdbebbcfjaobcnd [2012-04-30] [UpdateUrl: hxxp://hexextension.googlecode.com/files/update.xml] <==== ATTENTION
CHR Extension: (Centrum.cz Email Notifikátor) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmmnahgmbjnpgdoadbfoficgoamahklm [2013-04-09]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR Extension: (Gmail) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ASGT; C:\Windows\System32\ASGT.exe [55296 2012-01-17] () [File not signed]
R2 FsUsbExService; C:\Windows\system32\FsUsbExService.Exe [217088 2011-01-20] (Teruten) [File not signed]
R2 hasplms; C:\Windows\system32\hasplms.exe [4180576 2010-09-27] (SafeNet Inc.)
R2 HP LaserJet Service; C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [145920 2010-10-25] (HP) [File not signed]
R2 HPSupportSolutionsFrameworkService; C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [26680 2016-02-18] (Hewlett-Packard Company)
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44032 2010-01-18] (Hewlett-Packard) [File not signed]
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [14658848 2013-12-10] (NVIDIA Corporation)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2010-01-18] (Hewlett-Packard) [File not signed]
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software) [File not signed]
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [6942480 2016-03-02] (TeamViewer GmbH)
R2 VIAKaraokeService; C:\WINDOWS\system32\viakaraokesrv.exe [36504 2015-06-22] (VIA Technologies, Inc.)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [280376 2015-10-30] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23256 2015-10-30] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 aksfridge; C:\Windows\system32\drivers\aksfridge.sys [356864 2010-09-27] (SafeNet Inc.)
S3 CrystalSysInfo; C:\Program Files\MediaCoder\SysInfo.sys [15152 2007-09-25] ()
R3 FsUsbExDisk; C:\Windows\system32\FsUsbExDisk.SYS [36640 2011-01-20] () [File not signed]
R2 giveio; C:\WINDOWS\system32\giveio.sys [5248 1996-04-03] () [File not signed]
S2 hardlock; C:\Windows\system32\drivers\hardlock.sys [588800 2009-12-09] (SafeNet Inc.)
S3 HPFXBULKLEDM; C:\WINDOWS\system32\drivers\hppcbulkio.sys [20504 2010-12-14] (Hewlett Packard)
R3 HPFXFAX; C:\WINDOWS\system32\drivers\hppcfaxio.sys [21528 2010-12-14] (Hewlett Packard)
R1 MpKsl88a553e7; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{05DB8FDD-5704-4DCC-BED4-9137CD278B63}\MpKsl88a553e7.sys [39168 2016-04-18] (Microsoft Corporation)
R3 MTsensor; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [5810 2004-08-13] ()
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad32v.sys [34080 2013-12-05] (NVIDIA Corporation)
R2 speedfan; C:\Windows\system32\speedfan.sys [24184 2012-12-29] (Almico Software)
R3 VIAHdAudAddService; C:\WINDOWS\system32\drivers\viahduaa.sys [575184 2015-06-22] (VIA Technologies, Inc.)
S3 w800bus; C:\WINDOWS\System32\drivers\w800bus.sys [60768 2005-06-13] (MCCI)
S3 w800mdfl; C:\WINDOWS\system32\DRIVERS\w800mdfl.sys [9264 2005-06-13] (MCCI)
S3 w800mdm; C:\WINDOWS\system32\DRIVERS\w800mdm.sys [96224 2005-06-13] (MCCI)
S3 w800mgmt; C:\WINDOWS\system32\DRIVERS\w800mgmt.sys [87792 2005-06-13] (MCCI)
S3 w800obex; C:\WINDOWS\system32\DRIVERS\w800obex.sys [85664 2005-06-13] (MCCI)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [37400 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [246104 2015-10-30] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [98648 2015-10-30] (Microsoft Corporation)
R3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [163328 2015-10-30] (Microsoft Corporation)
R2 {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC}; C:\Program Files\CyberLink\PowerDVD10\NavFilter\000.fcl [87536 2010-11-17] (CyberLink Corp.)
U3 idsvc; no ImagePath
S3 ProcObsrv; \??\C:\Program Files\Glary Utilities 3\ProcObsrv.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-04-18 21:08 - 2016-04-18 21:08 - 00014919 _____ C:\Users\Ondra\Desktop\FRST.txt
2016-04-18 21:07 - 2016-04-18 21:08 - 00000000 ____D C:\FRST
2016-04-18 21:04 - 2016-04-18 21:06 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\FRSTLauncher.exe
2016-04-18 20:31 - 2016-04-18 20:31 - 00298560 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-04-18 19:51 - 2016-04-18 19:54 - 00000000 ____D C:\AdwCleaner
2016-04-18 19:51 - 2016-04-18 19:51 - 03683904 _____ C:\Users\Ondra\Desktop\adwcleaner_5.112.exe
2016-04-18 18:13 - 2016-04-18 18:16 - 00000000 ____D C:\rsit
2016-04-18 18:13 - 2016-04-18 18:16 - 00000000 ____D C:\Program Files\trend micro
2016-04-18 18:12 - 2016-04-18 18:13 - 01107968 _____ C:\Users\Ondra\Desktop\RSIT.exe
2016-04-18 18:08 - 2016-04-18 21:06 - 01726464 _____ (Farbar) C:\Users\Ondra\Desktop\FRST.exe
2016-04-14 22:09 - 2016-04-15 14:06 - 00000000 ____D C:\Users\Ondra\Documents\Excel
2016-04-12 20:13 - 2016-03-29 11:38 - 05797216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-04-12 20:13 - 2016-03-29 11:36 - 01820512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-04-12 20:13 - 2016-03-29 10:01 - 00541304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-04-12 20:13 - 2016-03-29 09:12 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-04-12 20:13 - 2016-03-29 09:12 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-04-12 20:13 - 2016-03-29 09:02 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-04-12 20:13 - 2016-03-29 08:14 - 02975232 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-04-12 20:13 - 2016-03-29 08:05 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-04-12 20:13 - 2016-03-29 08:02 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-04-12 20:13 - 2016-03-29 08:01 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-04-12 20:13 - 2016-03-29 07:51 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-04-12 20:13 - 2016-03-29 07:41 - 12125184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-04-12 20:12 - 2016-04-02 06:17 - 00297072 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-04-12 20:12 - 2016-04-02 06:14 - 00757192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2016-04-12 20:12 - 2016-04-02 06:14 - 00613112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-04-12 20:12 - 2016-04-02 06:14 - 00305296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-04-12 20:12 - 2016-04-02 05:29 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-04-12 20:12 - 2016-04-02 05:26 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-04-12 20:12 - 2016-04-02 05:25 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2016-04-12 20:12 - 2016-04-02 05:23 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-04-12 20:12 - 2016-04-02 05:22 - 00390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-04-12 20:12 - 2016-04-02 05:20 - 00826368 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-04-12 20:12 - 2016-04-02 05:20 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-04-12 20:12 - 2016-04-02 05:17 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-04-12 20:12 - 2016-04-02 05:14 - 03197440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-04-12 20:12 - 2016-04-02 05:12 - 01887744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-04-12 20:12 - 2016-04-02 05:11 - 01524736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-04-12 20:12 - 2016-04-02 05:10 - 02871296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-12 20:12 - 2016-04-02 05:05 - 01074688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-04-12 20:12 - 2016-03-29 11:41 - 00875992 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-04-12 20:12 - 2016-03-29 11:41 - 00771120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-04-12 20:12 - 2016-03-29 11:41 - 00228696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-04-12 20:12 - 2016-03-29 11:38 - 01051584 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-04-12 20:12 - 2016-03-29 11:38 - 00927072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-04-12 20:12 - 2016-03-29 11:37 - 01862008 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-12 20:12 - 2016-03-29 11:33 - 00084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2016-04-12 20:12 - 2016-03-29 11:28 - 00535080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-04-12 20:12 - 2016-03-29 11:21 - 00922456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-04-12 20:12 - 2016-03-29 11:20 - 00856928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-04-12 20:12 - 2016-03-29 11:19 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-04-12 20:12 - 2016-03-29 11:13 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-04-12 20:12 - 2016-03-29 10:44 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-04-12 20:12 - 2016-03-29 10:44 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-04-12 20:12 - 2016-03-29 10:41 - 00203104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys
2016-04-12 20:12 - 2016-03-29 10:41 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-04-12 20:12 - 2016-03-29 10:34 - 00153952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-04-12 20:12 - 2016-03-29 10:32 - 00253088 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-04-12 20:12 - 2016-03-29 10:26 - 00073872 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2016-04-12 20:12 - 2016-03-29 10:25 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2016-04-12 20:12 - 2016-03-29 10:24 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-04-12 20:12 - 2016-03-29 10:24 - 00063008 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2016-04-12 20:12 - 2016-03-29 10:23 - 00069744 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2016-04-12 20:12 - 2016-03-29 09:46 - 01861984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-04-12 20:12 - 2016-03-29 09:46 - 00771424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-04-12 20:12 - 2016-03-29 09:42 - 00287072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2016-04-12 20:12 - 2016-03-29 09:30 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msorcl32.dll
2016-04-12 20:12 - 2016-03-29 09:28 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-04-12 20:12 - 2016-03-29 09:20 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-04-12 20:12 - 2016-03-29 09:20 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll
2016-04-12 20:12 - 2016-03-29 09:19 - 00037376 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-04-12 20:12 - 2016-03-29 09:16 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-04-12 20:12 - 2016-03-29 09:11 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-04-12 20:12 - 2016-03-29 09:06 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-04-12 20:12 - 2016-03-29 09:05 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-04-12 20:12 - 2016-03-29 09:05 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-04-12 20:12 - 2016-03-29 09:04 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-04-12 20:12 - 2016-03-29 09:00 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2016-04-12 20:12 - 2016-03-29 08:59 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-04-12 20:12 - 2016-03-29 08:56 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-04-12 20:12 - 2016-03-29 08:55 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-04-12 20:12 - 2016-03-29 08:54 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-04-12 20:12 - 2016-03-29 08:53 - 00424448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2016-04-12 20:12 - 2016-03-29 08:53 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2016-04-12 20:12 - 2016-03-29 08:53 - 00150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-04-12 20:12 - 2016-03-29 08:52 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-04-12 20:12 - 2016-03-29 08:52 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-04-12 20:12 - 2016-03-29 08:52 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2016-04-12 20:12 - 2016-03-29 08:49 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-04-12 20:12 - 2016-03-29 08:48 - 00346624 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-04-12 20:12 - 2016-03-29 08:47 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-04-12 20:12 - 2016-03-29 08:46 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-04-12 20:12 - 2016-03-29 08:44 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-04-12 20:12 - 2016-03-29 08:44 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2016-04-12 20:12 - 2016-03-29 08:43 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2016-04-12 20:12 - 2016-03-29 08:43 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-04-12 20:12 - 2016-03-29 08:42 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-12 20:12 - 2016-03-29 08:41 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-04-12 20:12 - 2016-03-29 08:41 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-04-12 20:12 - 2016-03-29 08:40 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-04-12 20:12 - 2016-03-29 08:39 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2016-04-12 20:12 - 2016-03-29 08:39 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-04-12 20:12 - 2016-03-29 08:38 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-04-12 20:12 - 2016-03-29 08:38 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-04-12 20:12 - 2016-03-29 08:37 - 01444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-04-12 20:12 - 2016-03-29 08:37 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-04-12 20:12 - 2016-03-29 08:37 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-04-12 20:12 - 2016-03-29 08:36 - 00649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-04-12 20:12 - 2016-03-29 08:36 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-04-12 20:12 - 2016-03-29 08:35 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-04-12 20:12 - 2016-03-29 08:34 - 01152512 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-04-12 20:12 - 2016-03-29 08:34 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-04-12 20:12 - 2016-03-29 08:34 - 00682496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-04-12 20:12 - 2016-03-29 08:32 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-04-12 20:12 - 2016-03-29 08:32 - 00951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-04-12 20:12 - 2016-03-29 08:32 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-04-12 20:12 - 2016-03-29 08:32 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-04-12 20:12 - 2016-03-29 08:31 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-04-12 20:12 - 2016-03-29 08:31 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-04-12 20:12 - 2016-03-29 08:30 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-04-12 20:12 - 2016-03-29 08:29 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-04-12 20:12 - 2016-03-29 08:28 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-04-12 20:12 - 2016-03-29 08:28 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-04-12 20:12 - 2016-03-29 08:27 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-04-12 20:12 - 2016-03-29 08:27 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-04-12 20:12 - 2016-03-29 08:27 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-04-12 20:12 - 2016-03-29 08:25 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-04-12 20:12 - 2016-03-29 08:23 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-04-12 20:12 - 2016-03-29 08:22 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-04-12 20:12 - 2016-03-29 08:18 - 00265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-04-12 20:12 - 2016-03-29 08:14 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-04-12 20:12 - 2016-03-29 08:13 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-04-12 20:12 - 2016-03-29 08:10 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-04-12 20:12 - 2016-03-29 08:07 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-04-12 20:12 - 2016-03-29 08:06 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-04-12 20:12 - 2016-03-29 08:06 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-04-12 20:12 - 2016-03-29 08:06 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-04-12 20:12 - 2016-03-29 08:06 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2016-04-12 20:12 - 2016-03-29 08:05 - 01894912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-04-12 20:12 - 2016-03-29 08:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-04-12 20:12 - 2016-03-29 08:04 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-04-12 20:12 - 2016-03-29 07:58 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-04-12 20:12 - 2016-03-29 07:55 - 00614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-04-12 20:12 - 2016-03-29 07:49 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-04-12 20:12 - 2016-03-29 07:49 - 01085952 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-04-12 20:12 - 2016-03-29 07:46 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-04-12 20:12 - 2016-03-29 07:43 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-04-12 20:12 - 2016-03-29 07:42 - 00705024 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-04-12 20:12 - 2016-03-29 07:38 - 18673664 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-04-12 20:12 - 2016-03-29 07:38 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-04-12 20:12 - 2016-03-29 07:37 - 19340800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-04-12 20:12 - 2016-03-29 07:36 - 02722816 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-04-12 20:12 - 2016-03-29 07:36 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2016-04-12 20:12 - 2016-03-29 07:32 - 00742400 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-04-12 20:12 - 2016-03-29 07:27 - 05662208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-04-12 20:12 - 2016-03-29 07:25 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-04-12 20:12 - 2016-03-29 07:25 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2016-04-12 20:11 - 2016-04-02 05:30 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-04-12 20:11 - 2016-04-02 05:08 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-04-12 20:11 - 2016-03-29 09:30 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-04-12 20:11 - 2016-03-29 09:20 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-04-12 20:11 - 2016-03-29 09:20 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-04-12 20:11 - 2016-03-29 09:19 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2016-04-12 20:11 - 2016-03-29 09:14 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2016-04-12 20:11 - 2016-03-29 09:14 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-04-12 20:11 - 2016-03-29 09:13 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-04-12 20:11 - 2016-03-29 09:11 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-04-12 20:11 - 2016-03-29 09:11 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-04-12 20:11 - 2016-03-29 09:11 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll
2016-04-12 20:11 - 2016-03-29 09:09 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-04-12 20:11 - 2016-03-29 09:09 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys
2016-04-12 20:11 - 2016-03-29 09:09 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2016-04-12 20:11 - 2016-03-29 09:08 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-04-12 20:11 - 2016-03-29 09:08 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-04-12 20:11 - 2016-03-29 09:06 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-04-12 20:11 - 2016-03-29 09:06 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-04-12 20:11 - 2016-03-29 09:05 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-04-12 20:11 - 2016-03-29 09:05 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-04-12 20:11 - 2016-03-29 09:05 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-04-12 20:11 - 2016-03-29 09:05 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2016-04-12 20:11 - 2016-03-29 09:03 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-04-12 20:11 - 2016-03-29 09:02 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2016-04-12 20:11 - 2016-03-29 08:53 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-04-12 20:11 - 2016-03-29 08:52 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2016-04-12 20:11 - 2016-03-29 08:52 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-04-12 20:11 - 2016-03-29 08:51 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-04-12 20:11 - 2016-03-29 08:39 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-04-12 20:11 - 2016-03-29 08:34 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-04-12 20:11 - 2016-03-29 08:32 - 00601600 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-04-12 20:11 - 2016-03-29 08:27 - 00162816 _____ C:\WINDOWS\system32\MTF.dll
2016-04-12 20:11 - 2016-03-29 08:26 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-04-12 20:11 - 2016-03-29 08:26 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-04-12 20:11 - 2016-03-29 08:05 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-04-12 20:11 - 2016-03-29 08:00 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-04-12 20:11 - 2016-03-29 07:30 - 00782336 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-04-12 20:11 - 2016-03-29 07:25 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2016-04-12 20:11 - 2016-03-29 07:24 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-04-12 20:11 - 2016-03-29 07:21 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll
2016-04-12 18:50 - 2016-04-12 18:50 - 00000998 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2016-04-12 18:50 - 2016-04-12 18:50 - 00000986 _____ C:\Users\Public\Desktop\TeamViewer 11.lnk
2016-04-01 18:50 - 2016-04-01 18:50 - 00000000 ____D C:\Program Files\Common Files\Skype
2016-03-20 22:50 - 2016-03-20 22:50 - 00306717 _____ C:\Users\Ondra\Documents\Skoleni_HBludovice.pdf
2016-03-20 12:23 - 2016-03-20 12:23 - 00160845 _____ C:\Users\Ondra\Documents\Usneseni_technika_HBludovice.pdf
2016-03-19 22:32 - 2016-04-14 23:13 - 00000000 ____D C:\Users\Ondra\Documents\ebooks
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-04-18 20:36 - 2015-12-13 11:52 - 02021774 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-18 20:36 - 2015-10-30 17:08 - 00837620 _____ C:\WINDOWS\system32\perfh005.dat
2016-04-18 20:36 - 2015-10-30 17:08 - 00189706 _____ C:\WINDOWS\system32\perfc005.dat
2016-04-18 20:36 - 2015-10-30 07:47 - 00000000 ____D C:\WINDOWS\INF
2016-04-18 20:34 - 2012-04-24 21:56 - 00000000 ____D C:\Program Files\SpeedFan
2016-04-18 20:31 - 2015-12-13 12:04 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-04-18 20:31 - 2015-12-13 11:50 - 00000000 ____D C:\ProgramData\NVIDIA
2016-04-18 20:30 - 2015-10-30 07:13 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-04-18 19:55 - 2015-12-13 11:52 - 00000000 ____D C:\Users\Ondra
2016-04-17 19:32 - 2016-01-03 13:47 - 00000000 ____D C:\KMPlayer
2016-04-17 18:42 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-04-16 11:22 - 2015-10-30 07:48 - 00000000 ___HD C:\Program Files\WindowsApps
2016-04-15 21:10 - 2016-03-06 17:43 - 00019898 _____ C:\Users\Ondra\Desktop\2016-03.m3u
2016-04-14 01:45 - 2012-04-23 15:00 - 00374944 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-04-13 16:12 - 2015-08-07 06:27 - 00000000 ____D C:\Users\Ondra\AppData\Local\Packages
2016-04-12 23:32 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\rescache
2016-04-12 23:00 - 2015-04-19 18:17 - 00000000 ____D C:\Users\Ondra\AppData\Roaming\TeamViewer
2016-04-12 22:46 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-04-12 22:46 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-04-12 22:45 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-04-12 22:45 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-04-12 22:32 - 2015-10-30 07:39 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-04-12 22:31 - 2013-08-15 03:07 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-04-12 22:25 - 2012-04-23 15:09 - 132539272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-04-12 18:50 - 2015-04-19 17:14 - 00000000 ____D C:\Program Files\TeamViewer
2016-04-11 23:04 - 2014-08-29 17:57 - 00002218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-04-09 09:52 - 2012-04-24 22:01 - 00000000 ____D C:\Program Files\CCleaner
2016-04-07 16:32 - 2016-02-15 17:31 - 00000000 ____D C:\WINDOWS\Minidump
2016-04-06 20:32 - 2015-10-30 07:49 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2016-04-06 20:32 - 2015-10-30 07:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2016-04-05 19:00 - 2012-04-24 06:38 - 00000000 ____D C:\Users\Ondra\AppData\Roaming\Skype
2016-04-03 13:29 - 2015-01-01 16:04 - 00170200 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-04-03 13:28 - 2015-01-01 16:03 - 00001133 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-04-03 13:28 - 2015-01-01 16:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-04-03 13:28 - 2015-01-01 16:03 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2016-04-01 18:50 - 2012-04-24 06:38 - 00000000 ___RD C:\Program Files\Skype
2016-04-01 18:50 - 2012-04-24 06:38 - 00000000 ____D C:\ProgramData\Skype
2016-03-19 22:35 - 2012-05-09 06:00 - 00000000 ____D C:\Users\Ondra\Documents\Theo
==================== Files in the root of some directories =======
2012-10-06 02:27 - 2013-03-24 01:37 - 0000576 _____ () C:\Users\Ondra\AppData\Roaming\All CPU MeterV3_Settings.ini
2012-10-06 02:22 - 2013-03-31 02:46 - 0000839 _____ () C:\Users\Ondra\AppData\Roaming\Drives Meter_Settings.ini
2016-01-17 00:07 - 2016-01-17 00:07 - 0003584 _____ () C:\Users\Ondra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-05-03 22:31 - 2012-05-03 22:31 - 0000093 _____ () C:\Users\Ondra\AppData\Local\fusioncache.dat
2013-01-20 15:31 - 2015-05-10 19:58 - 0007615 _____ () C:\Users\Ondra\AppData\Local\Resmon.ResmonCfg
2013-04-02 02:39 - 2013-04-02 05:46 - 0055569 _____ () C:\Users\Ondra\AppData\Local\SRDownloader.err
2013-03-23 22:54 - 2013-04-02 18:04 - 0001128 _____ () C:\Users\Ondra\AppData\Local\SRDownloader.nast
2012-08-04 14:05 - 2012-08-04 14:05 - 0001534 _____ () C:\ProgramData\ss.ini
Some files in TEMP:
====================
C:\Users\Ondra\AppData\Local\Temp\libeay32.dll
C:\Users\Ondra\AppData\Local\Temp\msvcr120.dll
C:\Users\Ondra\AppData\Local\Temp\sfamcc00001.dll
C:\Users\Ondra\AppData\Local\Temp\sfareca00001.dll
C:\Users\Ondra\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-4232016968-1834718543-1254348729-1000Core.job => C:\Users\Ondra\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-4232016968-1834718543-1254348729-1000UA.job => C:\Users\Ondra\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Ondra\Desktop" je 59 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher
"C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Speed Launcher
C:\Program Files\Cyberlink\Shared files\brs.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BDRegion
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring
"C:\Users\Ondra\AppData\Local\Google\Update\GoogleUpdate.exe" /c [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update
C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe -r [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDAudDeck
C:\Program Files\HP\Digital Imaging\Fax\Fax Driver 0.6 Base\hppfaxprintersrv.exe "HP LaserJet Professional M1530 MFP Series Fax" [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP LaserJet Professional M1530 MFP Series Fax
C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update
C:\Program Files\Samsung\Kies\KiesHelper.exe /s [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Kernel and Hardware Abstraction Layer
C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper
C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPDLR
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent
"C:\Users\Ondra\AppData\Local\Programs\Google\MusicManager\MusicManager.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSC
"C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MusicManager
"C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend
C:\Program Files\Hewlett-Packard\PrnStatusMX\PrnStatusMX.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nvtmru
"C:\Program Files\CyberLink\PowerDVD10\PDVD10Serv.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PrnStatusMX
"C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl10
"C:\Program Files\Common Files\Java\Java Update\jusched.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype
"C:\Program Files\HP\ToolboxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
ECHO is off.
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ToolboxFX
ECHO is off.
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Logitech SetPoint.lnk
C:\PROGRA~1\Logitech\SetPoint\SetPoint.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Ondra^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Logitech . Registrace produktu.lnk
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
==================== End Of Log ==============================
Ran by Ondra (administrator) on ONDRA-PC (18-04-2016 21:08:04)
Running from C:\Users\Ondra\Desktop
Loaded Profiles: Ondra (Available Profiles: Ondra & DefaultAppPool)
Platform: Microsoft Windows 10 Home Version 1511 (X86) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
() C:\Windows\System32\ASGT.exe
(Teruten) C:\Windows\System32\FsUsbExService.Exe
(Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(SafeNet Inc.) C:\Windows\System32\hasplms.exe
(VIA Technologies, Inc.) C:\Windows\System32\ViakaraokeSrv.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(TeamViewer GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(HP) C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\NisSrv.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Marvell Semiconductor, Inc.) C:\Program Files\Hewlett-Packard\PrnStatusMX\PrnStatusMX.exe
(Logitech, Inc.) C:\Program Files\Logitech\SetPointP\SetPoint.exe
(Logitech, Inc.) C:\Program Files\Common Files\Logishrd\KHAL3\KHALMNPR.exe
(Almico Software (almico.com)) C:\Program Files\SpeedFan\speedfan.exe
(Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Google Inc.) C:\Program Files\Google\Chrome\Application\chrome.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MSASCui.exe
(forum.viry.cz) C:\Users\Ondra\Desktop\FRSTLauncher.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [PrnStatusMX] => C:\Program Files\Hewlett-Packard\PrnStatusMX\PrnStatusMX.exe [1077248 2012-07-04] (Marvell Semiconductor, Inc.)
HKLM\...\Run: [C:\Windows\system32\V0330Ext.ax] => C:\Windows\system32\RegSvr32.exe /s C:\Windows\system32\V0330Ext.ax
HKLM\...\Run: [ShadowPlay] => C:\Windows\system32\rundll32.exe C:\Windows\system32\nvspcap.dll,ShadowPlayOnSystemStart
HKLM\...\Run: [EvtMgr6] => C:\Program Files\Logitech\SetPointP\SetPoint.exe [2303256 2014-05-19] (Logitech, Inc.)
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation)
HKLM\...\Run: [HP Software Update] => C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe [96056 2013-05-30] (Hewlett-Packard)
HKLM\...\Run: [] => [X]
Winlogon\Notify\LBTWlgn: c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2014-03-25] (Logitech, Inc.)
HKU\S-1-5-21-4232016968-1834718543-1254348729-1000\...\Run: [Steam] => C:\Program Files\Steam\steam.exe [3014224 2016-02-04] (Valve Corporation)
HKU\S-1-5-21-4232016968-1834718543-1254348729-1000\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
Startup: C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Mámemail Pošťák.lnk [2015-06-17]
ShortcutTarget: Mámemail Pošťák.lnk -> C:\Program Files\Mamemail\Mamemail Postak\Postak.exe (TB development & investment, s.r.o.)
Startup: C:\Users\Ondra\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\speedfan.lnk [2012-04-24]
ShortcutTarget: speedfan.lnk -> C:\Program Files\SpeedFan\speedfan.exe (Almico Software (almico.com))
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 01 C:\WINDOWS\system32\NLAapi.dll [65024 2015-10-30] (Microsoft Corporation) ATTENTION: LibraryPath should be "C:\WINDOWS)\system32\NLAapi.dll"
Winsock: Catalog5 07 C:\Program Files\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 213.46.172.37 213.46.172.36
Tcpip\..\Interfaces\{15c03677-4ee4-4720-8afe-71abf13f8987}: [DhcpNameServer] 213.46.172.37 213.46.172.36
Tcpip\..\Interfaces\{70b41fad-d645-431a-b39f-cfa89e5f5e5a}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKU\S-1-5-21-4232016968-1834718543-1254348729-1000\Software\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.jw.org/cs
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_60\bin\ssv.dll [2015-08-30] (Oracle Corporation)
BHO: Logitech SetPoint -> {AF949550-9094-4807-95EC-D1C317803333} -> C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2014-05-19] (Logitech, Inc.)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_60\bin\jp2ssv.dll [2015-08-30] (Oracle Corporation)
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files\Common Files\Skype\Skype4COM.dll [2016-02-01] (Skype Technologies)
FireFox:
========
FF Plugin: @adobe.com/FlashPlayer -> C:\Windows\system32\Macromed\Flash\NPSWF32_17_0_0_134.dll [2015-03-27] ()
FF Plugin: @adobe.com/ShockwavePlayer -> C:\Windows\system32\Adobe\Director\np32dsw_1218158.dll [2015-04-17] (Adobe Systems, Inc.)
FF Plugin: @java.com/DTPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\dtplugin\npDeployJava1.dll [2015-08-30] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.60.2 -> C:\Program Files\Java\jre1.8.0_60\bin\plugin2\npjp2.dll [2015-08-30] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.41212.0\npctrl.dll [2015-12-12] ( Microsoft Corporation)
FF Plugin: @nvidia.com/3DVision -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dv.dll [2014-02-08] (NVIDIA Corporation)
FF Plugin: @nvidia.com/3DVisionStreaming -> C:\Program Files\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2014-02-08] (NVIDIA Corporation)
FF Plugin: @tools.google.com/Google Update;version=3 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-01-30] (Google Inc.)
FF Plugin: @tools.google.com/Google Update;version=9 -> C:\Program Files\Google\Update\1.3.29.5\npGoogleUpdate3.dll [2016-01-30] (Google Inc.)
FF Plugin: Adobe Reader -> C:\Program Files\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2015-12-18] (Adobe Systems Inc.)
FF Plugin HKU\S-1-5-21-4232016968-1834718543-1254348729-1000: @tools.google.com/Google Update;version=3 -> C:\Users\Ondra\AppData\Local\Google\Update\1.3.24.7\npGoogleUpdate3.dll [2014-05-07] (Google Inc.)
FF Plugin HKU\S-1-5-21-4232016968-1834718543-1254348729-1000: @tools.google.com/Google Update;version=9 -> C:\Users\Ondra\AppData\Local\Google\Update\1.3.24.7\npGoogleUpdate3.dll [2014-05-07] (Google Inc.)
FF HKLM\...\Firefox\Extensions: [{F003DA68-8256-4b37-A6C4-350FA04494DF}] - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt
FF Extension: Logitech SetPoint - C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2014-12-27] [not signed]
Chrome:
=======
CHR StartupUrls: Default -> "hxxp://www.google.cz/"
CHR DefaultSearchKeyword: Default -> google.cz_
CHR Plugin: (Native Client) - C:\Program Files\Google\Chrome\Application\49.0.2623.112\ppGoogleNaClPluginChrome.dll => No File
CHR Plugin: (Chrome PDF Viewer) - C:\Program Files\Google\Chrome\Application\49.0.2623.112\pdf.dll => No File
CHR Plugin: (Shockwave Flash) - C:\Program Files\Google\Chrome\Application\49.0.2623.112\gcswf32.dll => No File
CHR Plugin: (Adobe Acrobat) - C:\Program Files\Adobe\Reader 9.0\Reader\Browser\nppdf32.dll => No File
CHR Profile: C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (YouTube) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-10-01]
CHR Extension: (Vyhledávání Google) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-10-27]
CHR Extension: (Kalendář Google) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\ejjicmeblgpmajnghnpcppodonldlgfn [2015-10-14]
CHR Extension: (Video Downloader professional) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2016-04-18]
CHR Extension: (Send Link) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\elophlokcoblconmkfdbebbcfjaobcnd [2012-04-30] [UpdateUrl: hxxp://hexextension.googlecode.com/files/update.xml] <==== ATTENTION
CHR Extension: (Centrum.cz Email Notifikátor) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\hmmnahgmbjnpgdoadbfoficgoamahklm [2013-04-09]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-02]
CHR Extension: (Gmail) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-03-28]
==================== Services (Whitelisted) ========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ASGT; C:\Windows\System32\ASGT.exe [55296 2012-01-17] () [File not signed]
R2 FsUsbExService; C:\Windows\system32\FsUsbExService.Exe [217088 2011-01-20] (Teruten) [File not signed]
R2 hasplms; C:\Windows\system32\hasplms.exe [4180576 2010-09-27] (SafeNet Inc.)
R2 HP LaserJet Service; C:\Program Files\HP\HPLaserJetService\HPLaserJetService.exe [145920 2010-10-25] (HP) [File not signed]
R2 HPSupportSolutionsFrameworkService; C:\Program Files\Hewlett-Packard\HP Support Solutions\HPSupportSolutionsFrameworkService.exe [26680 2016-02-18] (Hewlett-Packard Company)
R2 Net Driver HPZ12; C:\Windows\system32\HPZinw12.dll [44032 2010-01-18] (Hewlett-Packard) [File not signed]
R2 NvNetworkService; C:\Program Files\NVIDIA Corporation\NetService\NvNetworkService.exe [1494304 2013-12-10] (NVIDIA Corporation)
R2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamsvc.exe [14658848 2013-12-10] (NVIDIA Corporation)
R2 Pml Driver HPZ12; C:\Windows\system32\HPZipm12.dll [53760 2010-01-18] (Hewlett-Packard) [File not signed]
S3 Sony PC Companion; C:\Program Files\Sony\Sony PC Companion\PCCService.exe [155824 2013-02-04] (Avanquest Software) [File not signed]
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [6942480 2016-03-02] (TeamViewer GmbH)
R2 VIAKaraokeService; C:\WINDOWS\system32\viakaraokesrv.exe [36504 2015-06-22] (VIA Technologies, Inc.)
R3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [280376 2015-10-30] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23256 2015-10-30] (Microsoft Corporation)
===================== Drivers (Whitelisted) ==========================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 aksfridge; C:\Windows\system32\drivers\aksfridge.sys [356864 2010-09-27] (SafeNet Inc.)
S3 CrystalSysInfo; C:\Program Files\MediaCoder\SysInfo.sys [15152 2007-09-25] ()
R3 FsUsbExDisk; C:\Windows\system32\FsUsbExDisk.SYS [36640 2011-01-20] () [File not signed]
R2 giveio; C:\WINDOWS\system32\giveio.sys [5248 1996-04-03] () [File not signed]
S2 hardlock; C:\Windows\system32\drivers\hardlock.sys [588800 2009-12-09] (SafeNet Inc.)
S3 HPFXBULKLEDM; C:\WINDOWS\system32\drivers\hppcbulkio.sys [20504 2010-12-14] (Hewlett Packard)
R3 HPFXFAX; C:\WINDOWS\system32\drivers\hppcfaxio.sys [21528 2010-12-14] (Hewlett Packard)
R1 MpKsl88a553e7; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{05DB8FDD-5704-4DCC-BED4-9137CD278B63}\MpKsl88a553e7.sys [39168 2016-04-18] (Microsoft Corporation)
R3 MTsensor; C:\WINDOWS\system32\DRIVERS\ASACPI.sys [5810 2004-08-13] ()
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad32v.sys [34080 2013-12-05] (NVIDIA Corporation)
R2 speedfan; C:\Windows\system32\speedfan.sys [24184 2012-12-29] (Almico Software)
R3 VIAHdAudAddService; C:\WINDOWS\system32\drivers\viahduaa.sys [575184 2015-06-22] (VIA Technologies, Inc.)
S3 w800bus; C:\WINDOWS\System32\drivers\w800bus.sys [60768 2005-06-13] (MCCI)
S3 w800mdfl; C:\WINDOWS\system32\DRIVERS\w800mdfl.sys [9264 2005-06-13] (MCCI)
S3 w800mdm; C:\WINDOWS\system32\DRIVERS\w800mdm.sys [96224 2005-06-13] (MCCI)
S3 w800mgmt; C:\WINDOWS\system32\DRIVERS\w800mgmt.sys [87792 2005-06-13] (MCCI)
S3 w800obex; C:\WINDOWS\system32\DRIVERS\w800obex.sys [85664 2005-06-13] (MCCI)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [37400 2015-10-30] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [246104 2015-10-30] (Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [98648 2015-10-30] (Microsoft Corporation)
R3 WUDFWpdMtp; C:\WINDOWS\system32\DRIVERS\WUDFRd.sys [163328 2015-10-30] (Microsoft Corporation)
R2 {1BA31E5A-C098-42d8-8F88-3C9F78A2FDDC}; C:\Program Files\CyberLink\PowerDVD10\NavFilter\000.fcl [87536 2010-11-17] (CyberLink Corp.)
U3 idsvc; no ImagePath
S3 ProcObsrv; \??\C:\Program Files\Glary Utilities 3\ProcObsrv.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-04-18 21:08 - 2016-04-18 21:08 - 00014919 _____ C:\Users\Ondra\Desktop\FRST.txt
2016-04-18 21:07 - 2016-04-18 21:08 - 00000000 ____D C:\FRST
2016-04-18 21:04 - 2016-04-18 21:06 - 00112640 _____ (forum.viry.cz) C:\Users\Ondra\Desktop\FRSTLauncher.exe
2016-04-18 20:31 - 2016-04-18 20:31 - 00298560 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-04-18 19:51 - 2016-04-18 19:54 - 00000000 ____D C:\AdwCleaner
2016-04-18 19:51 - 2016-04-18 19:51 - 03683904 _____ C:\Users\Ondra\Desktop\adwcleaner_5.112.exe
2016-04-18 18:13 - 2016-04-18 18:16 - 00000000 ____D C:\rsit
2016-04-18 18:13 - 2016-04-18 18:16 - 00000000 ____D C:\Program Files\trend micro
2016-04-18 18:12 - 2016-04-18 18:13 - 01107968 _____ C:\Users\Ondra\Desktop\RSIT.exe
2016-04-18 18:08 - 2016-04-18 21:06 - 01726464 _____ (Farbar) C:\Users\Ondra\Desktop\FRST.exe
2016-04-14 22:09 - 2016-04-15 14:06 - 00000000 ____D C:\Users\Ondra\Documents\Excel
2016-04-12 20:13 - 2016-03-29 11:38 - 05797216 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-04-12 20:13 - 2016-03-29 11:36 - 01820512 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2016-04-12 20:13 - 2016-03-29 10:01 - 00541304 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2016-04-12 20:13 - 2016-03-29 09:12 - 00065536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininetlui.dll
2016-04-12 20:13 - 2016-03-29 09:12 - 00045568 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2016-04-12 20:13 - 2016-03-29 09:02 - 00303104 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\atmfd.dll
2016-04-12 20:13 - 2016-03-29 08:14 - 02975232 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2016-04-12 20:13 - 2016-03-29 08:05 - 01500672 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-04-12 20:13 - 2016-03-29 08:02 - 02229760 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-04-12 20:13 - 2016-03-29 08:01 - 13018624 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Xaml.dll
2016-04-12 20:13 - 2016-03-29 07:51 - 09918976 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-04-12 20:13 - 2016-03-29 07:41 - 12125184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-04-12 20:12 - 2016-04-02 06:17 - 00297072 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2016-04-12 20:12 - 2016-04-02 06:14 - 00757192 _____ (Microsoft Corporation) C:\WINDOWS\system32\iuilp.dll
2016-04-12 20:12 - 2016-04-02 06:14 - 00613112 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2016-04-12 20:12 - 2016-04-02 06:14 - 00305296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2016-04-12 20:12 - 2016-04-02 05:29 - 00083968 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEDataLayerHelpers.dll
2016-04-12 20:12 - 2016-04-02 05:26 - 00526336 _____ (Microsoft Corporation) C:\WINDOWS\system32\PhoneProviders.dll
2016-04-12 20:12 - 2016-04-02 05:25 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NotificationObjFactory.dll
2016-04-12 20:12 - 2016-04-02 05:23 - 00219648 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEEventDispatcher.dll
2016-04-12 20:12 - 2016-04-02 05:22 - 00390144 _____ (Microsoft Corporation) C:\WINDOWS\system32\tileobjserver.dll
2016-04-12 20:12 - 2016-04-02 05:20 - 00826368 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2016-04-12 20:12 - 2016-04-02 05:20 - 00738816 _____ (Microsoft Corporation) C:\WINDOWS\system32\SharedStartModel.dll
2016-04-12 20:12 - 2016-04-02 05:17 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXService.dll
2016-04-12 20:12 - 2016-04-02 05:14 - 03197440 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers_nt.dll
2016-04-12 20:12 - 2016-04-02 05:12 - 01887744 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentServer.dll
2016-04-12 20:12 - 2016-04-02 05:11 - 01524736 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2016-04-12 20:12 - 2016-04-02 05:10 - 02871296 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2016-04-12 20:12 - 2016-04-02 05:05 - 01074688 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Shell.dll
2016-04-12 20:12 - 2016-03-29 11:41 - 00875992 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-04-12 20:12 - 2016-03-29 11:41 - 00771120 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-04-12 20:12 - 2016-03-29 11:41 - 00228696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2016-04-12 20:12 - 2016-03-29 11:38 - 01051584 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-04-12 20:12 - 2016-03-29 11:38 - 00927072 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-04-12 20:12 - 2016-03-29 11:37 - 01862008 _____ C:\WINDOWS\system32\CoreUIComponents.dll
2016-04-12 20:12 - 2016-03-29 11:33 - 00084216 _____ (Microsoft Corporation) C:\WINDOWS\system32\omadmapi.dll
2016-04-12 20:12 - 2016-03-29 11:28 - 00535080 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2016-04-12 20:12 - 2016-03-29 11:21 - 00922456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ndis.sys
2016-04-12 20:12 - 2016-03-29 11:20 - 00856928 _____ (Microsoft Corporation) C:\WINDOWS\system32\SecConfig.efi
2016-04-12 20:12 - 2016-03-29 11:19 - 00296488 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanager.dll
2016-04-12 20:12 - 2016-03-29 11:13 - 00986976 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManager.dll
2016-04-12 20:12 - 2016-03-29 10:44 - 00502104 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupEngine.dll
2016-04-12 20:12 - 2016-03-29 10:44 - 00084832 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupApi.dll
2016-04-12 20:12 - 2016-03-29 10:41 - 00203104 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ufx01000.sys
2016-04-12 20:12 - 2016-03-29 10:41 - 00051128 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.dll
2016-04-12 20:12 - 2016-03-29 10:34 - 00153952 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2016-04-12 20:12 - 2016-03-29 10:32 - 00253088 _____ (Microsoft Corporation) C:\WINDOWS\system32\LockAppHost.exe
2016-04-12 20:12 - 2016-03-29 10:26 - 00073872 _____ (Microsoft Corporation) C:\WINDOWS\system32\srvcli.dll
2016-04-12 20:12 - 2016-03-29 10:25 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\system32\wkscli.dll
2016-04-12 20:12 - 2016-03-29 10:24 - 00294752 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2016-04-12 20:12 - 2016-03-29 10:24 - 00063008 _____ (Microsoft Corporation) C:\WINDOWS\system32\easinvoker.exe
2016-04-12 20:12 - 2016-03-29 10:23 - 00069744 _____ (Microsoft Corporation) C:\WINDOWS\system32\netapi32.dll
2016-04-12 20:12 - 2016-03-29 09:46 - 01861984 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2016-04-12 20:12 - 2016-03-29 09:46 - 00771424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\http.sys
2016-04-12 20:12 - 2016-03-29 09:42 - 00287072 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBXHCI.SYS
2016-04-12 20:12 - 2016-03-29 09:30 - 00161792 _____ (Microsoft Corporation) C:\WINDOWS\system32\msorcl32.dll
2016-04-12 20:12 - 2016-03-29 09:28 - 00018944 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\xinputhid.sys
2016-04-12 20:12 - 2016-03-29 09:20 - 00073728 _____ (Microsoft Corporation) C:\WINDOWS\system32\policymanagerprecheck.dll
2016-04-12 20:12 - 2016-03-29 09:20 - 00026112 _____ (Microsoft Corporation) C:\WINDOWS\system32\wsdchngr.dll
2016-04-12 20:12 - 2016-03-29 09:19 - 00037376 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2016-04-12 20:12 - 2016-03-29 09:16 - 00093696 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontsub.dll
2016-04-12 20:12 - 2016-03-29 09:11 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\MosStorage.dll
2016-04-12 20:12 - 2016-03-29 09:06 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\system32\dafBth.dll
2016-04-12 20:12 - 2016-03-29 09:05 - 00074240 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2016-04-12 20:12 - 2016-03-29 09:05 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppxSysprep.dll
2016-04-12 20:12 - 2016-03-29 09:04 - 00103936 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Devices.dll
2016-04-12 20:12 - 2016-03-29 09:00 - 00193536 _____ (Microsoft Corporation) C:\WINDOWS\system32\DAFWSD.dll
2016-04-12 20:12 - 2016-03-29 08:59 - 00203264 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshostcore.dll
2016-04-12 20:12 - 2016-03-29 08:56 - 00415232 _____ (Microsoft Corporation) C:\WINDOWS\system32\StoreAgent.dll
2016-04-12 20:12 - 2016-03-29 08:55 - 00142336 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupSvc.dll
2016-04-12 20:12 - 2016-03-29 08:54 - 00497664 _____ (Microsoft Corporation) C:\WINDOWS\system32\StorSvc.dll
2016-04-12 20:12 - 2016-03-29 08:53 - 00424448 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2016-04-12 20:12 - 2016-03-29 08:53 - 00323072 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacc.dll
2016-04-12 20:12 - 2016-03-29 08:53 - 00150016 _____ (Microsoft Corporation) C:\WINDOWS\system32\storewuauth.dll
2016-04-12 20:12 - 2016-03-29 08:52 - 00464896 _____ (Microsoft Corporation) C:\WINDOWS\system32\enterprisecsps.dll
2016-04-12 20:12 - 2016-03-29 08:52 - 00306176 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieproxy.dll
2016-04-12 20:12 - 2016-03-29 08:52 - 00222720 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsrslvr.dll
2016-04-12 20:12 - 2016-03-29 08:49 - 00246272 _____ (Microsoft Corporation) C:\WINDOWS\system32\profsvc.dll
2016-04-12 20:12 - 2016-03-29 08:48 - 00346624 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapConfiguration.dll
2016-04-12 20:12 - 2016-03-29 08:47 - 00239616 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorService.dll
2016-04-12 20:12 - 2016-03-29 08:46 - 00130560 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmmigrator.dll
2016-04-12 20:12 - 2016-03-29 08:44 - 00498176 _____ (Microsoft Corporation) C:\WINDOWS\system32\MessagingDataModel2.dll
2016-04-12 20:12 - 2016-03-29 08:44 - 00497152 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdiWiFi.sys
2016-04-12 20:12 - 2016-03-29 08:43 - 00358400 _____ (Microsoft Corporation) C:\WINDOWS\system32\AccountsRt.dll
2016-04-12 20:12 - 2016-03-29 08:43 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\RDXTaskFactory.dll
2016-04-12 20:12 - 2016-03-29 08:42 - 00250880 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2016-04-12 20:12 - 2016-03-29 08:41 - 00538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthManager.dll
2016-04-12 20:12 - 2016-03-29 08:41 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\AboveLockAppHost.dll
2016-04-12 20:12 - 2016-03-29 08:40 - 00445952 _____ (Microsoft Corporation) C:\WINDOWS\system32\PsmServiceExtHost.dll
2016-04-12 20:12 - 2016-03-29 08:39 - 00564224 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSDApi.dll
2016-04-12 20:12 - 2016-03-29 08:39 - 00350720 _____ (Microsoft Corporation) C:\WINDOWS\system32\CredProvDataModel.dll
2016-04-12 20:12 - 2016-03-29 08:38 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\JpMapControl.dll
2016-04-12 20:12 - 2016-03-29 08:38 - 00609280 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsStore.dll
2016-04-12 20:12 - 2016-03-29 08:37 - 01444352 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRHInproc.dll
2016-04-12 20:12 - 2016-03-29 08:37 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SRH.dll
2016-04-12 20:12 - 2016-03-29 08:37 - 00792064 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2016-04-12 20:12 - 2016-03-29 08:36 - 00649728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2016-04-12 20:12 - 2016-03-29 08:36 - 00453632 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2016-04-12 20:12 - 2016-03-29 08:35 - 00354304 _____ (Microsoft Corporation) C:\WINDOWS\system32\NetSetupShim.dll
2016-04-12 20:12 - 2016-03-29 08:34 - 01152512 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2016-04-12 20:12 - 2016-03-29 08:34 - 00711680 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapControlCore.dll
2016-04-12 20:12 - 2016-03-29 08:34 - 00682496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Input.Inking.dll
2016-04-12 20:12 - 2016-03-29 08:32 - 01588224 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2016-04-12 20:12 - 2016-03-29 08:32 - 00951808 _____ (Microsoft Corporation) C:\WINDOWS\system32\wwansvc.dll
2016-04-12 20:12 - 2016-03-29 08:32 - 00854528 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2016-04-12 20:12 - 2016-03-29 08:32 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.dll
2016-04-12 20:12 - 2016-03-29 08:31 - 01117184 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Speech.dll
2016-04-12 20:12 - 2016-03-29 08:31 - 00705536 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2016-04-12 20:12 - 2016-03-29 08:30 - 01139712 _____ (Microsoft Corporation) C:\WINDOWS\system32\UIAutomationCore.dll
2016-04-12 20:12 - 2016-03-29 08:29 - 00114176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-04-12 20:12 - 2016-03-29 08:28 - 01944576 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputService.dll
2016-04-12 20:12 - 2016-03-29 08:28 - 00764928 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Cred.dll
2016-04-12 20:12 - 2016-03-29 08:27 - 00245760 _____ (Microsoft Corporation) C:\WINDOWS\system32\TextInputFramework.dll
2016-04-12 20:12 - 2016-03-29 08:27 - 00133632 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2016-04-12 20:12 - 2016-03-29 08:27 - 00083456 _____ (Microsoft Corporation) C:\WINDOWS\system32\InputLocaleManager.dll
2016-04-12 20:12 - 2016-03-29 08:25 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\BitLockerDeviceEncryption.exe
2016-04-12 20:12 - 2016-03-29 08:23 - 00777728 _____ (Microsoft Corporation) C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2016-04-12 20:12 - 2016-03-29 08:22 - 00638464 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBroker.dll
2016-04-12 20:12 - 2016-03-29 08:18 - 00265216 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveui.dll
2016-04-12 20:12 - 2016-03-29 08:14 - 01072128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.Http.dll
2016-04-12 20:12 - 2016-03-29 08:13 - 00592384 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Web.dll
2016-04-12 20:12 - 2016-03-29 08:10 - 03671040 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2016-04-12 20:12 - 2016-03-29 08:07 - 00359936 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenrollengine.dll
2016-04-12 20:12 - 2016-03-29 08:06 - 00813056 _____ (Microsoft Corporation) C:\WINDOWS\system32\dosvc.dll
2016-04-12 20:12 - 2016-03-29 08:06 - 00151040 _____ (Microsoft Corporation) C:\WINDOWS\system32\mdmregistration.dll
2016-04-12 20:12 - 2016-03-29 08:06 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\enrollmentapi.dll
2016-04-12 20:12 - 2016-03-29 08:06 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmcsps.dll
2016-04-12 20:12 - 2016-03-29 08:05 - 01894912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2016-04-12 20:12 - 2016-03-29 08:05 - 01626624 _____ (Microsoft Corporation) C:\WINDOWS\system32\dwmcore.dll
2016-04-12 20:12 - 2016-03-29 08:04 - 00204800 _____ (Microsoft Corporation) C:\WINDOWS\system32\accountaccessor.dll
2016-04-12 20:12 - 2016-03-29 07:58 - 01799680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Logon.dll
2016-04-12 20:12 - 2016-03-29 07:55 - 00614912 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2016-04-12 20:12 - 2016-03-29 07:49 - 05202944 _____ (Microsoft Corporation) C:\WINDOWS\system32\BingMaps.dll
2016-04-12 20:12 - 2016-03-29 07:49 - 01085952 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-04-12 20:12 - 2016-03-29 07:46 - 00307712 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2016-04-12 20:12 - 2016-03-29 07:43 - 00521728 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2016-04-12 20:12 - 2016-03-29 07:42 - 00705024 _____ (Microsoft Corporation) C:\WINDOWS\system32\samsrv.dll
2016-04-12 20:12 - 2016-03-29 07:38 - 18673664 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2016-04-12 20:12 - 2016-03-29 07:38 - 02798080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.dll
2016-04-12 20:12 - 2016-03-29 07:37 - 19340800 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-04-12 20:12 - 2016-03-29 07:36 - 02722816 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-04-12 20:12 - 2016-03-29 07:36 - 00294912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncbservice.dll
2016-04-12 20:12 - 2016-03-29 07:32 - 00742400 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2016-04-12 20:12 - 2016-03-29 07:27 - 05662208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2016-04-12 20:12 - 2016-03-29 07:25 - 00712704 _____ (Microsoft Corporation) C:\WINDOWS\system32\RemoteNaturalLanguage.dll
2016-04-12 20:12 - 2016-03-29 07:25 - 00554496 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2016-04-12 20:11 - 2016-04-02 05:30 - 00118784 _____ (Microsoft Corporation) C:\WINDOWS\system32\VEStoreEventHandlers.dll
2016-04-12 20:11 - 2016-04-02 05:08 - 02193408 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-04-12 20:11 - 2016-03-29 09:30 - 00074752 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsCSP.dll
2016-04-12 20:11 - 2016-03-29 09:20 - 00080384 _____ (Microsoft Corporation) C:\WINDOWS\system32\SensorsNativeApi.V2.dll
2016-04-12 20:11 - 2016-03-29 09:20 - 00033792 _____ (Microsoft Corporation) C:\WINDOWS\system32\dmenterprisediagnostics.dll
2016-04-12 20:11 - 2016-03-29 09:19 - 00010240 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleacchooks.dll
2016-04-12 20:11 - 2016-03-29 09:14 - 00059904 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveskybackup.dll
2016-04-12 20:11 - 2016-03-29 09:14 - 00023552 _____ (Microsoft Corporation) C:\WINDOWS\system32\mapsupdatetask.dll
2016-04-12 20:11 - 2016-03-29 09:13 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\LicenseManagerShellext.exe
2016-04-12 20:11 - 2016-03-29 09:11 - 00161280 _____ (Microsoft Corporation) C:\WINDOWS\system32\InstallAgent.exe
2016-04-12 20:11 - 2016-03-29 09:11 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\samlib.dll
2016-04-12 20:11 - 2016-03-29 09:11 - 00043520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browcli.dll
2016-04-12 20:11 - 2016-03-29 09:09 - 00087040 _____ (Microsoft Corporation) C:\WINDOWS\system32\MapsBtSvc.dll
2016-04-12 20:11 - 2016-03-29 09:09 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys
2016-04-12 20:11 - 2016-03-29 09:09 - 00030208 _____ (Microsoft Corporation) C:\WINDOWS\system32\tbauth.dll
2016-04-12 20:11 - 2016-03-29 09:08 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\mtxoci.dll
2016-04-12 20:11 - 2016-03-29 09:08 - 00085504 _____ (Microsoft Corporation) C:\WINDOWS\system32\FontProvider.dll
2016-04-12 20:11 - 2016-03-29 09:06 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\tzautoupdate.dll
2016-04-12 20:11 - 2016-03-29 09:06 - 00022528 _____ (Microsoft Corporation) C:\WINDOWS\system32\TokenBrokerCookies.exe
2016-04-12 20:11 - 2016-03-29 09:05 - 00088576 _____ (Microsoft Corporation) C:\WINDOWS\system32\BdeHdCfgLib.dll
2016-04-12 20:11 - 2016-03-29 09:05 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\system32\OnDemandConnRouteHelper.dll
2016-04-12 20:11 - 2016-03-29 09:05 - 00050688 _____ (Microsoft Corporation) C:\WINDOWS\system32\moshost.dll
2016-04-12 20:11 - 2016-03-29 09:05 - 00028160 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuautoappupdate.dll
2016-04-12 20:11 - 2016-03-29 09:03 - 00070656 _____ (Microsoft Corporation) C:\WINDOWS\system32\AppCapture.dll
2016-04-12 20:11 - 2016-03-29 09:02 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\browser.dll
2016-04-12 20:11 - 2016-03-29 08:53 - 00193024 _____ (Microsoft Corporation) C:\WINDOWS\system32\credprovhost.dll
2016-04-12 20:11 - 2016-03-29 08:52 - 00241664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\portcls.sys
2016-04-12 20:11 - 2016-03-29 08:52 - 00141824 _____ (Microsoft Corporation) C:\WINDOWS\system32\easwrt.dll
2016-04-12 20:11 - 2016-03-29 08:51 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcastdvr.exe
2016-04-12 20:11 - 2016-03-29 08:39 - 00496128 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Security.Authentication.Web.Core.dll
2016-04-12 20:11 - 2016-03-29 08:34 - 00784896 _____ (Microsoft Corporation) C:\WINDOWS\system32\NMAA.dll
2016-04-12 20:11 - 2016-03-29 08:32 - 00601600 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2016-04-12 20:11 - 2016-03-29 08:27 - 00162816 _____ C:\WINDOWS\system32\MTF.dll
2016-04-12 20:11 - 2016-03-29 08:26 - 00192512 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapibase.dll
2016-04-12 20:11 - 2016-03-29 08:26 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.DeviceEncryptionHandlers.dll
2016-04-12 20:11 - 2016-03-29 08:05 - 00450560 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncController.dll
2016-04-12 20:11 - 2016-03-29 08:00 - 06297088 _____ (Microsoft Corporation) C:\WINDOWS\system32\mos.dll
2016-04-12 20:11 - 2016-03-29 07:30 - 00782336 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvewiz.dll
2016-04-12 20:11 - 2016-03-29 07:25 - 00269824 _____ (Microsoft Corporation) C:\WINDOWS\system32\FWPUCLNT.DLL
2016-04-12 20:11 - 2016-03-29 07:24 - 00310272 _____ (Microsoft Corporation) C:\WINDOWS\system32\fvecpl.dll
2016-04-12 20:11 - 2016-03-29 07:21 - 00055808 _____ (Microsoft Corporation) C:\WINDOWS\system32\basesrv.dll
2016-04-12 18:50 - 2016-04-12 18:50 - 00000998 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 11.lnk
2016-04-12 18:50 - 2016-04-12 18:50 - 00000986 _____ C:\Users\Public\Desktop\TeamViewer 11.lnk
2016-04-01 18:50 - 2016-04-01 18:50 - 00000000 ____D C:\Program Files\Common Files\Skype
2016-03-20 22:50 - 2016-03-20 22:50 - 00306717 _____ C:\Users\Ondra\Documents\Skoleni_HBludovice.pdf
2016-03-20 12:23 - 2016-03-20 12:23 - 00160845 _____ C:\Users\Ondra\Documents\Usneseni_technika_HBludovice.pdf
2016-03-19 22:32 - 2016-04-14 23:13 - 00000000 ____D C:\Users\Ondra\Documents\ebooks
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-04-18 20:36 - 2015-12-13 11:52 - 02021774 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-04-18 20:36 - 2015-10-30 17:08 - 00837620 _____ C:\WINDOWS\system32\perfh005.dat
2016-04-18 20:36 - 2015-10-30 17:08 - 00189706 _____ C:\WINDOWS\system32\perfc005.dat
2016-04-18 20:36 - 2015-10-30 07:47 - 00000000 ____D C:\WINDOWS\INF
2016-04-18 20:34 - 2012-04-24 21:56 - 00000000 ____D C:\Program Files\SpeedFan
2016-04-18 20:31 - 2015-12-13 12:04 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-04-18 20:31 - 2015-12-13 11:50 - 00000000 ____D C:\ProgramData\NVIDIA
2016-04-18 20:30 - 2015-10-30 07:13 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-04-18 19:55 - 2015-12-13 11:52 - 00000000 ____D C:\Users\Ondra
2016-04-17 19:32 - 2016-01-03 13:47 - 00000000 ____D C:\KMPlayer
2016-04-17 18:42 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-04-16 11:22 - 2015-10-30 07:48 - 00000000 ___HD C:\Program Files\WindowsApps
2016-04-15 21:10 - 2016-03-06 17:43 - 00019898 _____ C:\Users\Ondra\Desktop\2016-03.m3u
2016-04-14 01:45 - 2012-04-23 15:00 - 00374944 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-04-13 16:12 - 2015-08-07 06:27 - 00000000 ____D C:\Users\Ondra\AppData\Local\Packages
2016-04-12 23:32 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\rescache
2016-04-12 23:00 - 2015-04-19 18:17 - 00000000 ____D C:\Users\Ondra\AppData\Roaming\TeamViewer
2016-04-12 22:46 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2016-04-12 22:46 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-04-12 22:45 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\PolicyDefinitions
2016-04-12 22:45 - 2015-10-30 07:48 - 00000000 ____D C:\WINDOWS\bcastdvr
2016-04-12 22:32 - 2015-10-30 07:39 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-04-12 22:31 - 2013-08-15 03:07 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-04-12 22:25 - 2012-04-23 15:09 - 132539272 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-04-12 18:50 - 2015-04-19 17:14 - 00000000 ____D C:\Program Files\TeamViewer
2016-04-11 23:04 - 2014-08-29 17:57 - 00002218 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-04-09 09:52 - 2012-04-24 22:01 - 00000000 ____D C:\Program Files\CCleaner
2016-04-07 16:32 - 2016-02-15 17:31 - 00000000 ____D C:\WINDOWS\Minidump
2016-04-06 20:32 - 2015-10-30 07:49 - 00829944 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerApp.exe
2016-04-06 20:32 - 2015-10-30 07:49 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\system32\FlashPlayerCPLApp.cpl
2016-04-05 19:00 - 2012-04-24 06:38 - 00000000 ____D C:\Users\Ondra\AppData\Roaming\Skype
2016-04-03 13:29 - 2015-01-01 16:04 - 00170200 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-04-03 13:28 - 2015-01-01 16:03 - 00001133 _____ C:\Users\Public\Desktop\Malwarebytes Anti-Malware.lnk
2016-04-03 13:28 - 2015-01-01 16:03 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-04-03 13:28 - 2015-01-01 16:03 - 00000000 ____D C:\Program Files\Malwarebytes Anti-Malware
2016-04-01 18:50 - 2012-04-24 06:38 - 00000000 ___RD C:\Program Files\Skype
2016-04-01 18:50 - 2012-04-24 06:38 - 00000000 ____D C:\ProgramData\Skype
2016-03-19 22:35 - 2012-05-09 06:00 - 00000000 ____D C:\Users\Ondra\Documents\Theo
==================== Files in the root of some directories =======
2012-10-06 02:27 - 2013-03-24 01:37 - 0000576 _____ () C:\Users\Ondra\AppData\Roaming\All CPU MeterV3_Settings.ini
2012-10-06 02:22 - 2013-03-31 02:46 - 0000839 _____ () C:\Users\Ondra\AppData\Roaming\Drives Meter_Settings.ini
2016-01-17 00:07 - 2016-01-17 00:07 - 0003584 _____ () C:\Users\Ondra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2012-05-03 22:31 - 2012-05-03 22:31 - 0000093 _____ () C:\Users\Ondra\AppData\Local\fusioncache.dat
2013-01-20 15:31 - 2015-05-10 19:58 - 0007615 _____ () C:\Users\Ondra\AppData\Local\Resmon.ResmonCfg
2013-04-02 02:39 - 2013-04-02 05:46 - 0055569 _____ () C:\Users\Ondra\AppData\Local\SRDownloader.err
2013-03-23 22:54 - 2013-04-02 18:04 - 0001128 _____ () C:\Users\Ondra\AppData\Local\SRDownloader.nast
2012-08-04 14:05 - 2012-08-04 14:05 - 0001534 _____ () C:\ProgramData\ss.ini
Some files in TEMP:
====================
C:\Users\Ondra\AppData\Local\Temp\libeay32.dll
C:\Users\Ondra\AppData\Local\Temp\msvcr120.dll
C:\Users\Ondra\AppData\Local\Temp\sfamcc00001.dll
C:\Users\Ondra\AppData\Local\Temp\sfareca00001.dll
C:\Users\Ondra\AppData\Local\Temp\sqlite3.dll
==================== Bamital & volsnap =================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===
==================== Drive and Memory info ===================
==================== MBR and Partition Table ==================
==================== Scheduled Tasks (whitelisted) ==================
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-4232016968-1834718543-1254348729-1000Core.job => C:\Users\Ondra\AppData\Local\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskUserS-1-5-21-4232016968-1834718543-1254348729-1000UA.job => C:\Users\Ondra\AppData\Local\Google\Update\GoogleUpdate.exe
==================== Alternate Data Streams (whitelisted) ==================
==================== Security Center ==================
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)
***** Velikost "Plochy" *****
Velikost slozky "C:\Users\Ondra\Desktop" je 59 MB.
***** Startup Programs *****
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM
"C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher
"C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Speed Launcher
C:\Program Files\Cyberlink\Shared files\brs.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\BDRegion
"C:\Program Files\CCleaner\CCleaner.exe" /MONITOR [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CCleaner Monitoring
"C:\Users\Ondra\AppData\Local\Google\Update\GoogleUpdate.exe" /c [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update
C:\Program Files\VIA\VIAudioi\VDeck\VDeck.exe -r [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HDAudDeck
C:\Program Files\HP\Digital Imaging\Fax\Fax Driver 0.6 Base\hppfaxprintersrv.exe "HP LaserJet Professional M1530 MFP Series Fax" [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP LaserJet Professional M1530 MFP Series Fax
C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update
C:\Program Files\Samsung\Kies\KiesHelper.exe /s [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Kernel and Hardware Abstraction Layer
C:\Program Files\Samsung\Kies\External\FirmwareUpdate\KiesPDLR.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesHelper
C:\Program Files\Samsung\Kies\KiesTrayAgent.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesPDLR
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\KiesTrayAgent
"C:\Users\Ondra\AppData\Local\Programs\Google\MusicManager\MusicManager.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSC
"C:\Program Files\NVIDIA Corporation\Update Core\NvBackend.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MusicManager
"C:\Program Files\NVIDIA Corporation\NVIDIA Update Core\nvtmru.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvBackend
C:\Program Files\Hewlett-Packard\PrnStatusMX\PrnStatusMX.exe
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Nvtmru
"C:\Program Files\CyberLink\PowerDVD10\PDVD10Serv.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PrnStatusMX
"C:\Program Files\Skype\Phone\Skype.exe" /minimized /regrun [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RemoteControl10
"C:\Program Files\Common Files\Java\Java Update\jusched.exe"
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Skype
"C:\Program Files\HP\ToolboxFX\bin\HPTLBXFX.exe" /enum:on /alerts:on /notifications:on /fl:on /fr:on /appData:on /tmcp:on [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched
ECHO is off.
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ToolboxFX
ECHO is off.
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^ProgramData^Microsoft^Windows^Start Menu^Programs^Startup^Logitech SetPoint.lnk
C:\PROGRA~1\Logitech\SetPoint\SetPoint.exe [x]
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Ondra^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Logitech . Registrace produktu.lnk
***** Firewall rules *****
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
DisableNotifications REG_DWORD 0x0
EnableFirewall REG_DWORD 0x1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]
[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]
***** System Restore *****
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
==================== End Of Log ==============================
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Po startu Win 10 delší vytížení procesoru
Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation)
CHR Extension: (Send Link) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\elophlokcoblconmkfdbebbcfjaobcnd [2012-04-30] [UpdateUrl: hxxp://hexextension.googlecode.com/files/update.xml] <==== ATTENTION
R2 ASGT; C:\Windows\System32\ASGT.exe [55296 2012-01-17] () [File not signed]
C:\Users\Ondra\AppData\Roaming\All CPU MeterV3_Settings.ini
C:\Users\Ondra\AppData\Roaming\Drives Meter_Settings.ini
C:\Users\Ondra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\Users\Ondra\AppData\Local\Temp
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Po startu Win 10 delší vytížení procesoru
Fix result of Farbar Recovery Scan Tool (x86) Version:17-04-2016
Ran by Ondra (2016-04-18 22:12:41) Run:1
Running from C:\Users\Ondra\Desktop
Loaded Profiles: Ondra (Available Profiles: Ondra & DefaultAppPool)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation)
CHR Extension: (Send Link) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\elophlokcoblconmkfdbebbcfjaobcnd [2012-04-30] [UpdateUrl: hxxp://hexextension.googlecode.com/files/update.xml] <==== ATTENTION
R2 ASGT; C:\Windows\System32\ASGT.exe [55296 2012-01-17] () [File not signed]
C:\Users\Ondra\AppData\Roaming\All CPU MeterV3_Settings.ini
C:\Users\Ondra\AppData\Roaming\Drives Meter_Settings.ini
C:\Users\Ondra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\Users\Ondra\AppData\Local\Temp
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value removed successfully.
C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\elophlokcoblconmkfdbebbcfjaobcnd <==== ATTENTION => not found.
ASGT => Service stopped successfully.
ASGT => service removed successfully.
C:\Users\Ondra\AppData\Roaming\All CPU MeterV3_Settings.ini => moved successfully
C:\Users\Ondra\AppData\Roaming\Drives Meter_Settings.ini => moved successfully
C:\Users\Ondra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini => moved successfully
C:\Users\Ondra\AppData\Local\Temp => moved successfully
==== End of Fixlog 22:12:44 ====
Ran by Ondra (2016-04-18 22:12:41) Run:1
Running from C:\Users\Ondra\Desktop
Loaded Profiles: Ondra (Available Profiles: Ondra & DefaultAppPool)
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
HKLM\...\Run: [SunJavaUpdateSched] => C:\Program Files\Common Files\Java\Java Update\jusched.exe [597552 2015-08-04] (Oracle Corporation)
CHR Extension: (Send Link) - C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\elophlokcoblconmkfdbebbcfjaobcnd [2012-04-30] [UpdateUrl: hxxp://hexextension.googlecode.com/files/update.xml] <==== ATTENTION
R2 ASGT; C:\Windows\System32\ASGT.exe [55296 2012-01-17] () [File not signed]
C:\Users\Ondra\AppData\Roaming\All CPU MeterV3_Settings.ini
C:\Users\Ondra\AppData\Roaming\Drives Meter_Settings.ini
C:\Users\Ondra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\Users\Ondra\AppData\Local\Temp
End
*****************
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched => value removed successfully.
C:\Users\Ondra\AppData\Local\Google\Chrome\User Data\Default\Extensions\elophlokcoblconmkfdbebbcfjaobcnd <==== ATTENTION => not found.
ASGT => Service stopped successfully.
ASGT => service removed successfully.
C:\Users\Ondra\AppData\Roaming\All CPU MeterV3_Settings.ini => moved successfully
C:\Users\Ondra\AppData\Roaming\Drives Meter_Settings.ini => moved successfully
C:\Users\Ondra\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini => moved successfully
C:\Users\Ondra\AppData\Local\Temp => moved successfully
==== End of Fixlog 22:12:44 ====
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Po startu Win 10 delší vytížení procesoru
Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Po startu Win 10 delší vytížení procesoru
Zdá se, že jo. Ve správci úloh už uvedený Hostitel služby nezahřívá CPU 
Budu to sledovat v dalších dnech a kdyby něco, ozvu se.
Moc díky za rady, Ondra
Budu to sledovat v dalších dnech a kdyby něco, ozvu se.
Moc díky za rady, Ondra
Re: Po startu Win 10 delší vytížení procesoru
Tak dneska jsem zapl PC a situace je stejná, opět Hostitel služby: Místní systém (omezená síť) zaměstnává CPU až do 30% i po vypnutí Superfetch (což někde doporučují).
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Po startu Win 10 delší vytížení procesoru
Udělejte kompletní sken MBAM: http://www.malwarebytes.org/mbam.php a dejte log. Předem nic nemažte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Po startu Win 10 delší vytížení procesoru
Malwarebytes Anti-Malware
http://www.malwarebytes.org
Datum skenování: 19.4.2016
Čas skenování: 19:10
Protokol:
Správce: Ano
Verze: 2.2.1.1043
Databáze malwaru: v2016.04.19.05
Databáze rootkitů: v2016.04.17.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto
OS: Windows 10
CPU: x86
Souborový systém: NTFS
Uživatel: Ondra
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 382743
Uplynulý čas: 11 min, 56 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
http://www.malwarebytes.org
Datum skenování: 19.4.2016
Čas skenování: 19:10
Protokol:
Správce: Ano
Verze: 2.2.1.1043
Databáze malwaru: v2016.04.19.05
Databáze rootkitů: v2016.04.17.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Ochrana programu: Vypnuto
OS: Windows 10
CPU: x86
Souborový systém: NTFS
Uživatel: Ondra
Typ skenu: Sken hrozeb
Výsledek: Dokončeno
Prohledaných objektů: 382743
Uplynulý čas: 11 min, 56 sek
Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristika: Zapnuto
PUP: Zapnuto
PUM: Zapnuto
Procesy: 0
(Nenalezeny žádné škodlivé položky)
Moduly: 0
(Nenalezeny žádné škodlivé položky)
Klíče registru: 0
(Nenalezeny žádné škodlivé položky)
Hodnoty registru: 0
(Nenalezeny žádné škodlivé položky)
Data registru: 0
(Nenalezeny žádné škodlivé položky)
Složky: 0
(Nenalezeny žádné škodlivé položky)
Soubory: 0
(Nenalezeny žádné škodlivé položky)
Fyzické sektory: 0
(Nenalezeny žádné škodlivé položky)
(end)
- Rudy
- Site Admin

- Příspěvky: 119673
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Po startu Win 10 delší vytížení procesoru
Toto je OK, mvirový problém to nebude. Zkuste vypnout službu superfetch. Do správy služeb se dostanete přes přík. řádek, do něhož napíšete services.msc a odentrujete.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?