Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu - MS Essentials našel hrozby

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
MartinaZ.
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 04 kvě 2016 09:46

Prosím o kontrolu logu - MS Essentials našel hrozby

#1 Příspěvek od MartinaZ. »

Ahoj,
prosím o kontrolu logu ze RSIT, případně o radu, co dál. Notebook není můj, je to starší skříňový kousek, který se snažíme dát dohromady pro případ zálohy. Je to docela výkonné, ale často se to zadýchává :-(.

Díky moc a pěkný nedělní večer!
M.

Kód: Vybrat vše

Logfile of random's system information tool 1.10 (written by random/random)
Run by Jirka at 2017-06-18 21:45:10
Microsoft Windows 10 Home 
System drive C: has 408 GB (69%) free of 595 GB
Total RAM: 6007 MB (62% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 21:45:15, on 18.6.2017
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.15063.0000)
Boot mode: Normal

Running processes:
C:\Users\Jirka.Jirka-PC\AppData\Local\Microsoft\OneDrive\OneDrive.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Mozilla Firefox\firefox.exe
C:\Program Files\trend micro\Jirka.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www1.euro.dell.com/content/default.aspx?c=cz&l=cs&s=bsd
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = 
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = 
F2 - REG:system.ini: UserInit=
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [Google Update] C:\Users\Jirka.Jirka-PC\AppData\Local\Google\Update\1.3.33.5\GoogleUpdateCore.exe
O4 - HKCU\..\Run: [OneDrive] "C:\Users\Jirka.Jirka-PC\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
O4 - HKUS\S-1-5-19\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [OneDriveSetup] C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup (User 'NETWORK SERVICE')
O4 - Startup: Core Temp – zástupce.lnk = Jirka.Jirka-PC\Downloads\CoreTemp32\Core Temp.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office12\EXCEL.EXE/3000
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O15 - Trusted Zone: *.dell.com
O17 - HKLM\System\CCS\Services\Tcpip\..\{480a3c08-a3fb-4ce3-89b0-5a03bc0a4b15}: NameServer = 8.8.8.8
O17 - HKLM\System\CCS\Services\Tcpip\..\{53cb22c4-d421-4f66-ae5c-25e9846100c9}: NameServer = 8.8.8.8
O17 - HKLM\System\CS1\Services\Tcpip\..\{480a3c08-a3fb-4ce3-89b0-5a03bc0a4b15}: NameServer = 8.8.8.8
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O18 - Protocol: windows.tbauth - {14654CA6-5711-491D-B89A-58E571679951} - C:\Windows\SysWOW64\tbauth.dll
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: Andrea ST Filters Service (AESTFilters) - Andrea Electronics Corporation - C:\Program Files\IDT\WDM\AESTSr64.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: @%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000 (diagnosticshub.standardcollector.service) - Unknown owner - C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe (file missing)
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Úložná technologie Intel(R) Rapid (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: Internet Explorer ETW Collector Service (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @mqutil.dll,-6102 (MSMQ) - Unknown owner - C:\WINDOWS\system32\mqsvc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\SecurityHealthAgent.dll,-1002 (SecurityHealthService) - Unknown owner - C:\WINDOWS\system32\SecurityHealthService.exe (file missing)
O23 - Service: @%SystemRoot%\system32\SensorDataService.exe,-101 (SensorDataService) - Unknown owner - C:\WINDOWS\System32\SensorDataService.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spectrum.exe,-101 (spectrum) - Unknown owner - C:\WINDOWS\system32\spectrum.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10122 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: SynTPEnh Caller Service (SynTPEnhService) - Synaptics Incorporated - C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
O23 - Service: @%SystemRoot%\system32\TieringEngineService.exe,-702 (TieringEngineService) - Unknown owner - C:\WINDOWS\system32\TieringEngineService.exe (file missing)
O23 - Service: TurboBoost - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: DW WLAN Tray Service (wltrysvc) - Dell Inc. - C:\Program Files\Dell\DW WLAN Card\WLTRYSVC.EXE
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 9113 bytes

======Listing Processes======








C:\WINDOWS\system32\lsass.exe
winlogon.exe
c:\windows\system32\svchost.exe -k dcomlaunch -s PlugPlay
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
"fontdrvhost.exe"
"fontdrvhost.exe"
c:\windows\system32\svchost.exe -k rpcss
c:\windows\system32\svchost.exe -k dcomlaunch -s LSM
"dwm.exe"
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s NcbService
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s hidserv
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s lmhosts
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s TimeBrokerSvc
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s EventLog
c:\windows\system32\svchost.exe -k localservice -s nsi
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s Dhcp
c:\windows\system32\svchost.exe -k networkservice -s NlaSvc
c:\windows\system32\svchost.exe -k localservice -s netprofm
c:\windows\system32\svchost.exe -k networkservice -s Dnscache
"c:\Program Files\Microsoft Security Client\MsMpEng.exe"
c:\windows\system32\svchost.exe -k appmodel -s StateRepository
c:\windows\system32\svchost.exe -k netsvcs -s gpsvc
c:\windows\system32\svchost.exe -k netsvcs -s Schedule
c:\windows\system32\svchost.exe -k localservice -s WinHttpAutoProxySvc
C:\WINDOWS\system32\atiesrxx.exe
c:\windows\system32\svchost.exe -k netsvcs -s ProfSvc
c:\windows\system32\svchost.exe -k netsvcs -s Themes
c:\windows\system32\svchost.exe -k localservice -s EventSystem
c:\windows\system32\svchost.exe -k netsvcs -s SENS
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s AudioEndpointBuilder
c:\windows\system32\svchost.exe -k localservice -s FontCache
"C:\Program Files\IDT\WDM\STacSV64.exe"
c:\windows\system32\svchost.exe -k netsvcs -s UserManager
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted
c:\windows\system32\svchost.exe -k netsvcs -s ShellHWDetection
C:\WINDOWS\System32\spoolsv.exe
c:\windows\system32\svchost.exe -k localservicenonetwork
c:\windows\system32\svchost.exe -k networkservice -s LanmanWorkstation
c:\windows\system32\svchost.exe -k netsvcs -s WpnService
c:\windows\system32\svchost.exe -k apphost -s AppHostSvc
"C:\Program Files\IDT\WDM\AESTSr64.exe"
"C:\Program Files\Dell\DW WLAN Card\WLTRYSVC.EXE" "C:\Program Files\Dell\DW WLAN Card\bcmwltry.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe"
"C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
c:\windows\system32\svchost.exe -k iissvcs
C:\WINDOWS\System32\svchost.exe -k utcsvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s PcaSvc
c:\windows\system32\svchost.exe -k localservicenonetwork -s DPS
c:\windows\system32\svchost.exe -k netsvcs -s Winmgmt
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -s FDResPub
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s SysMain
c:\windows\system32\svchost.exe -k networkservice -s CryptSvc
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s TrkWks

C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe"
c:\windows\system32\svchost.exe -k appmodel -s tiledatamodelsvc
C:\WINDOWS\system32\mqsvc.exe

c:\windows\system32\svchost.exe -k netsvcs -s LanmanServer
c:\windows\system32\svchost.exe -k localservice -s WdiServiceHost
c:\windows\system32\svchost.exe -k netsvcs -s iphlpsvc

C:\Program Files\Dell\DW WLAN Card\bcmwltry.exe
C:\WINDOWS\system32\WLANExt.exe 2158785708144
\??\C:\WINDOWS\system32\conhost.exe 0x4
c:\windows\system32\svchost.exe -k netsvcs -s Browser
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -s SSDPSRV
c:\windows\system32\svchost.exe -k localserviceandnoimpersonation -s upnphost
c:\windows\system32\svchost.exe -k localservice -s CDPSvc
c:\windows\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\AUDIODG.EXE 0x41c
atieclxx
c:\windows\system32\svchost.exe -k netsvcs -s DoSvc
sihost.exe
c:\windows\system32\svchost.exe -k unistacksvcgroup -s CDPUserSvc
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
c:\windows\system32\svchost.exe -k unistacksvcgroup -s WpnUserService
c:\windows\system32\svchost.exe -k netsvcs -s TokenBroker
C:\WINDOWS\Explorer.EXE
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
c:\windows\system32\svchost.exe -k netsvcs -s Appinfo

"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE" 
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s WdiSystemHost
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s StorSvc
"C:\Windows\SystemApps\Microsoft.Windows.Cortana_cw5n1h2txyewy\SearchUI.exe" -ServerName:CortanaUI.AppXa50dqqa5gqv4a428c9y1jjw7m3btvepj.mca
"C:\Windows\SystemApps\ShellExperienceHost_cw5n1h2txyewy\ShellExperienceHost.exe" -ServerName:App.AppXtk181tbxbce2qsex02s8tw7hfxa9xb3t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_11.17.420.0_x64__kzf8qxf38zg5c\SkypeHost.exe" -ServerName:SkypeHost.ServerServer
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s Netman
"C:\Program Files\Windows Defender\MSASCuiL.exe" 
"C:\Program Files\IDT\WDM\sttray64.exe" 
"C:\Program Files\Dell\QuickSet\quickset.exe" 
C:\WINDOWS\system32\wbem\wmiprvse.exe
"C:\Program Files\Dell\DW WLAN Card\WLTRAY.EXE" 
"C:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey
"C:\Users\Jirka.Jirka-PC\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Mozilla Firefox\firefox.exe" 
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
c:\windows\system32\svchost.exe -k unistacksvcgroup
c:\windows\system32\svchost.exe -k localservicenetworkrestricted -s wscsvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -s wisvc
C:\WINDOWS\system32\wbem\wmiprvse.exe
c:\windows\system32\svchost.exe -k netsvcs -s dmwappushservice
c:\windows\system32\svchost.exe -k localsystemnetworkrestricted -s SmsRouter
C:\WINDOWS\servicing\TrustedInstaller.exe
C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.15063.410_none_9e914f9d2d85dacb\TiWorker.exe -Embedding
taskhostw.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{133EAC4F-5891-4D04-BADA-D84870380A80}
"C:\Users\Jirka.Jirka-PC\Desktop\RSITx64.exe" 

=========Mozilla firefox=========

ProfilePath - C:\Users\Jirka.Jirka-PC\AppData\Roaming\Mozilla\Firefox\Profiles\vxm7cyw8.default

prefs.js - "browser.startup.homepage" -  "http://sport.idnes.cz/"

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 26.0.0.131 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_26_0_0_131.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\Windows\SysWOW64\Adobe\Director\np32dsw_1168638.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\Win32\npPDFXCviewNPPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.21.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Windows\SysWOW64\npDeployJava1.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=11.31.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre1.8.0_31\bin\plugin2\npjp2.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922]
"Description"=WLPG Install MIME type
"Path"=C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=1.1.11]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.0.8]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.2]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll


[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 26.0.0.131 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_26_0_0_131.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@docu-track.com/PDF-XChange Viewer Plugin,version=1.0,application/pdf]
"Description"=
"Path"=C:\Program Files\Tracker Software\PDF Viewer\npPDFXCviewNPPlugin.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\adobe.com/AdobeAAMDetect]
"Description"=
"Path"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\CCM\Utilities\npAdobeAAMDetect64.dll


C:\Program Files (x86)\Mozilla Firefox\components\
Scriptff.dll

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre6\bin\jp2ssv.dll []

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\ssv.dll [2015-03-03 460712]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre1.8.0_31\bin\jp2ssv.dll [2015-03-03 172968]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\Program Files\Windows Defender\MSASCuiL.exe [2017-03-18 629152]
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2010-06-18 487424]
"QuickSet"=C:\Program Files\Dell\QuickSet\QuickSet.exe [2010-01-06 3179288]
"Broadcom Wireless Manager UI"=C:\Program Files\Dell\DW WLAN Card\WLTRAY.exe [2010-02-03 5712896]
"MSC"=c:\Program Files\Microsoft Security Client\msseces.exe [2016-11-14 1353680]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"Google Update"=C:\Users\Jirka.Jirka-PC\AppData\Local\Google\Update\1.3.33.5\GoogleUpdateCore.exe [2017-06-06 601168]
"OneDrive"=C:\Users\Jirka.Jirka-PC\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2017-06-07 1504888]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe ARM]
C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2017-04-25 1162360]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DAEMON Tools Lite]
C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe [2011-11-10 3514176]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dell Webcam Central]
C:\Program Files (x86)\Dell Webcam\Dell Webcam Central\WebcamDell2.exe [2009-06-24 409744]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\DellSystemDetect]
C:\Users\Jirka.Jirka-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell\Dell System Detect.appref-ms [2013-08-21 370]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Desktop Disc Tool]
C:\Program Files (x86)\Roxio\Roxio Burn\RoxioBurnLauncher.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Dropbox Update]
C:\Users\Jirka.Jirka-PC\AppData\Local\Dropbox\Update\DropboxUpdate.exe /c []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\EA Core]
C:\Program Files (x86)\Electronic Arts\EADM\Core.exe -silent []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Update]
C:\Users\Jirka.Jirka-PC\AppData\Local\Google\Update\GoogleUpdate.exe [2015-08-28 144200]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\GoogleChromeAutoLaunch_4F21EDECABA82BB1FC145A43F063F43F]
C:\Users\Jirka.Jirka-PC\AppData\Local\Google\Chrome\Application\chrome.exe [2017-06-15 1197912]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-12-17 508800]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Autoupdate]
C:\PROGRAM FILES\ZONER\PHOTO STUDIO 16\Program32\ZPSTRAY.EXE []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Zoner Photo Studio Service 16]
C:\Program Files\Zoner\Photo Studio 16\Program32\ZPSTRAY.EXEC:\Program Files\Zoner\Photo Studio 16\Program32\ZPSService.exe []

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Users^Jirka.Jirka-PC^AppData^Roaming^Microsoft^Windows^Start Menu^Programs^Startup^Dropbox.lnk]
C:\Users\JIRKA~1.JIR\AppData\Roaming\Dropbox\bin\Dropbox.exe /systemstartup []

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [2010-06-08 284696]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe [2010-06-02 98304]

C:\Users\Jirka.Jirka-PC\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
Core Temp – zástupce.lnk - C:\Users\Jirka.Jirka-PC\Downloads\CoreTemp32\Core Temp.exe

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\TileDataModelSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"midimapper"=midimap.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wavemapper"=msacm32.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2017-06-18 15:21:01 ----D---- C:\rsit
2017-06-18 15:21:01 ----D---- C:\Program Files\trend micro
2017-06-18 13:24:00 ----D---- C:\xampp
2017-06-18 13:09:38 ----D---- C:\Users\Jirka.Jirka-PC\AppData\Roaming\Atom
2017-06-18 12:38:54 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2017-06-18 12:38:49 ----A---- C:\WINDOWS\system32\tquery.dll
2017-06-18 12:38:48 ----A---- C:\WINDOWS\system32\mssrch.dll
2017-06-18 12:38:42 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2017-06-18 12:38:33 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2017-06-18 12:38:29 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2017-06-18 12:38:27 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2017-06-18 12:38:26 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2017-06-18 12:38:24 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2017-06-18 12:38:23 ----A---- C:\WINDOWS\SYSWOW64\gdi32full.dll
2017-06-18 12:38:21 ----A---- C:\WINDOWS\SYSWOW64\CoreUIComponents.dll
2017-06-18 12:38:19 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2017-06-18 12:38:18 ----A---- C:\WINDOWS\SYSWOW64\fontdrvhost.exe
2017-06-18 12:38:18 ----A---- C:\WINDOWS\SYSWOW64\atmfd.dll
2017-06-18 12:38:17 ----A---- C:\WINDOWS\SYSWOW64\devicengccredprov.dll
2017-06-18 12:38:16 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2017-06-18 12:38:15 ----A---- C:\WINDOWS\SYSWOW64\capauthz.dll
2017-06-18 12:38:15 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2017-06-18 12:38:15 ----A---- C:\WINDOWS\system32\drivers\tpm.sys
2017-06-18 12:38:14 ----A---- C:\WINDOWS\SYSWOW64\comctl32.dll
2017-06-18 12:38:13 ----A---- C:\WINDOWS\SYSWOW64\CoreMessaging.dll
2017-06-18 12:38:09 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2017-06-18 12:38:08 ----A---- C:\WINDOWS\SYSWOW64\ucrtbase.dll
2017-06-18 12:38:07 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.Identity.Provider.dll
2017-06-18 12:38:07 ----A---- C:\WINDOWS\SYSWOW64\UserDataTimeUtil.dll
2017-06-18 12:38:07 ----A---- C:\WINDOWS\SYSWOW64\TpmCoreProvisioning.dll
2017-06-18 12:38:07 ----A---- C:\WINDOWS\system32\drivers\BasicRender.sys
2017-06-18 12:38:06 ----A---- C:\WINDOWS\SYSWOW64\AzureSettingSyncProvider.dll
2017-06-18 12:38:04 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2017-06-18 12:38:04 ----A---- C:\WINDOWS\SYSWOW64\aadtb.dll
2017-06-18 12:38:03 ----A---- C:\WINDOWS\SYSWOW64\WpcWebFilter.dll
2017-06-18 12:38:03 ----A---- C:\WINDOWS\SYSWOW64\tzres.dll
2017-06-18 12:38:03 ----A---- C:\WINDOWS\system32\mssprxy.dll
2017-06-18 12:38:02 ----A---- C:\WINDOWS\SYSWOW64\atmlib.dll
2017-06-18 12:38:00 ----A---- C:\WINDOWS\system32\diagtrack.dll
2017-06-18 12:37:59 ----A---- C:\WINDOWS\system32\ngcsvc.dll
2017-06-18 12:37:57 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2017-06-18 12:37:56 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2017-06-18 12:37:55 ----A---- C:\WINDOWS\system32\MusNotificationUx.exe
2017-06-18 12:37:55 ----A---- C:\WINDOWS\system32\MusNotification.exe
2017-06-18 12:37:55 ----A---- C:\WINDOWS\system32\drivers\tdx.sys
2017-06-18 12:37:54 ----A---- C:\WINDOWS\system32\MusNotifyIcon.exe
2017-06-18 12:37:53 ----A---- C:\WINDOWS\system32\UserDataTimeUtil.dll
2017-06-18 12:37:53 ----A---- C:\WINDOWS\system32\ucrtbase.dll
2017-06-18 12:37:53 ----A---- C:\WINDOWS\system32\musdialoghandlers.dll
2017-06-18 12:37:52 ----A---- C:\WINDOWS\system32\utcutil.dll
2017-06-18 12:37:32 ----A---- C:\WINDOWS\system32\edgehtml.dll
2017-06-18 12:37:17 ----A---- C:\WINDOWS\system32\mshtml.dll
2017-06-18 12:37:08 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2017-06-18 12:36:59 ----A---- C:\WINDOWS\system32\Chakra.dll
2017-06-18 12:36:51 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2017-06-18 12:36:45 ----A---- C:\WINDOWS\system32\jscript9.dll
2017-06-18 12:36:42 ----A---- C:\WINDOWS\SYSWOW64\Chakra.dll
2017-06-18 12:36:41 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2017-06-18 12:36:40 ----A---- C:\WINDOWS\system32\wpncore.dll
2017-06-18 12:36:39 ----A---- C:\WINDOWS\system32\ieproxy.dll
2017-06-18 12:36:39 ----A---- C:\WINDOWS\system32\devicengccredprov.dll
2017-06-18 12:36:38 ----A---- C:\WINDOWS\SYSWOW64\ieproxy.dll
2017-06-18 12:36:38 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.Identity.Provider.dll
2017-06-18 12:36:38 ----A---- C:\WINDOWS\system32\win32spl.dll
2017-06-18 12:36:38 ----A---- C:\WINDOWS\system32\mfps.dll
2017-06-18 12:36:36 ----A---- C:\WINDOWS\system32\localspl.dll
2017-06-18 12:36:30 ----A---- C:\WINDOWS\system32\ieframe.dll
2017-06-18 12:36:27 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2017-06-18 12:36:23 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2017-06-18 12:36:22 ----A---- C:\WINDOWS\system32\DWrite.dll
2017-06-18 12:36:21 ----A---- C:\WINDOWS\system32\CoreUIComponents.dll
2017-06-18 12:36:20 ----A---- C:\WINDOWS\system32\FntCache.dll
2017-06-18 12:36:18 ----A---- C:\WINDOWS\system32\dbgeng.dll
2017-06-18 12:36:18 ----A---- C:\WINDOWS\HelpPane.exe
2017-06-18 12:36:15 ----A---- C:\WINDOWS\system32\GamePanel.exe
2017-06-18 12:36:14 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2017-06-18 12:36:14 ----A---- C:\WINDOWS\system32\tzres.dll
2017-06-18 12:36:08 ----A---- C:\WINDOWS\system32\shell32.dll
2017-06-18 12:36:03 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2017-06-18 12:35:59 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2017-06-18 12:35:58 ----A---- C:\WINDOWS\system32\Windows.UI.Logon.dll
2017-06-18 12:35:56 ----A---- C:\WINDOWS\system32\win32kfull.sys
2017-06-18 12:35:55 ----A---- C:\WINDOWS\system32\gdi32full.dll
2017-06-18 12:35:55 ----A---- C:\WINDOWS\system32\dwmcore.dll
2017-06-18 12:35:53 ----A---- C:\WINDOWS\system32\win32kbase.sys
2017-06-18 12:35:51 ----A---- C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2017-06-18 12:35:49 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2017-06-18 12:35:45 ----A---- C:\WINDOWS\system32\mspaint.exe
2017-06-18 12:35:45 ----A---- C:\WINDOWS\system32\atmfd.dll
2017-06-18 12:35:44 ----A---- C:\WINDOWS\system32\ClipSVC.dll
2017-06-18 12:35:43 ----A---- C:\WINDOWS\system32\PerceptionSimulationExtensions.dll
2017-06-18 12:35:43 ----A---- C:\WINDOWS\system32\hvix64.exe
2017-06-18 12:35:43 ----A---- C:\WINDOWS\system32\fontdrvhost.exe
2017-06-18 12:35:42 ----A---- C:\WINDOWS\system32\hvax64.exe
2017-06-18 12:35:42 ----A---- C:\WINDOWS\system32\DeviceCredentialDeployment.exe
2017-06-18 12:35:42 ----A---- C:\WINDOWS\system32\capauthz.dll
2017-06-18 12:35:42 ----A---- C:\WINDOWS\bfsvc.exe
2017-06-18 12:35:41 ----A---- C:\WINDOWS\system32\drivers\tm.sys
2017-06-18 12:35:41 ----A---- C:\WINDOWS\system32\comctl32.dll
2017-06-18 12:35:41 ----A---- C:\WINDOWS\system32\bcdboot.exe
2017-06-18 12:35:40 ----A---- C:\WINDOWS\system32\TpmCoreProvisioning.dll
2017-06-18 12:35:40 ----A---- C:\WINDOWS\system32\MBR2GPT.EXE
2017-06-18 12:35:40 ----A---- C:\WINDOWS\system32\CoreMessaging.dll
2017-06-18 12:35:38 ----A---- C:\WINDOWS\system32\CloudExperienceHost.dll
2017-06-18 12:35:37 ----A---- C:\WINDOWS\system32\AzureSettingSyncProvider.dll
2017-06-18 12:35:36 ----A---- C:\WINDOWS\system32\WpcWebFilter.dll
2017-06-18 12:35:36 ----A---- C:\WINDOWS\system32\winsrv.dll
2017-06-18 12:35:36 ----A---- C:\WINDOWS\system32\dwmredir.dll
2017-06-18 12:35:36 ----A---- C:\WINDOWS\system32\atmlib.dll
2017-06-18 12:35:36 ----A---- C:\WINDOWS\system32\aadtb.dll
2017-06-18 12:16:24 ----D---- C:\Program Files (x86)\SpeedFan
2017-06-08 19:03:33 ----D---- C:\ProgramData\ComposerSetup
2017-06-08 19:03:33 ----D---- C:\Program Files (x86)\ComposerSetup
2017-06-08 19:03:26 ----D---- C:\Users\Jirka.Jirka-PC\AppData\Roaming\Composer
2017-06-08 18:49:02 ----D---- C:\Program Files (x86)\Mozilla Firefox
2017-06-08 17:57:01 ----D---- C:\xampp2
2017-06-07 23:15:22 ----D---- C:\SymCache
2017-06-07 22:32:10 ----D---- C:\Users\Jirka.Jirka-PC\AppData\Roaming\Microsoft FxCop
2017-06-07 22:25:13 ----D---- C:\Users\Jirka.Jirka-PC\AppData\Roaming\NuGet
2017-06-07 17:26:09 ----D---- C:\Program Files (x86)\NuGet
2017-06-07 17:26:09 ----D---- C:\Program Files (x86)\Microsoft ASP.NET Core 1.1 Local Feed - Visual Studio 2017
2017-06-07 17:24:49 ----D---- C:\Program Files (x86)\Microsoft ASP.NET Core 1.0 Local Feed - Visual Studio 2017
2017-06-07 17:22:59 ----D---- C:\Program Files\dotnet
2017-06-07 17:21:48 ----D---- C:\WINDOWS\SYSWOW64\1033
2017-06-07 17:21:48 ----D---- C:\WINDOWS\system32\1033
2017-06-07 17:18:23 ----D---- C:\Program Files (x86)\IIS
2017-06-07 17:18:22 ----D---- C:\Program Files\IIS
2017-06-07 17:18:06 ----D---- C:\Program Files\IIS Express
2017-06-07 17:18:06 ----D---- C:\Program Files (x86)\IIS Express
2017-06-07 17:17:04 ----D---- C:\Program Files (x86)\Entity Framework Tools
2017-06-07 17:11:03 ----D---- C:\Program Files\Microsoft SQL Server
2017-06-07 17:11:01 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 14.0
2017-06-07 17:11:00 ----D---- C:\Program Files (x86)\Microsoft SQL Server
2017-06-07 17:10:45 ----D---- C:\Program Files (x86)\Microsoft Web Tools
2017-06-07 17:10:13 ----D---- C:\UP_help
2017-06-07 17:03:12 ----D---- C:\Program Files (x86)\Windows Kits
2017-06-07 17:03:12 ----D---- C:\Program Files (x86)\Microsoft SDKs
2017-06-07 16:56:08 ----D---- C:\Users\Jirka.Jirka-PC\AppData\Roaming\vstelemetry
2017-06-07 16:56:08 ----D---- C:\Users\Jirka.Jirka-PC\AppData\Roaming\Visual Studio Setup
2017-06-07 16:55:21 ----D---- C:\Windows.old
2017-06-07 16:55:14 ----D---- C:\Program Files (x86)\Microsoft Visual Studio
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\XpsPrint.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\XpsDocumentTargetPrint.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\xboxgipsynthetic.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\wpnapps.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Diagnostics.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.Resources.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.System.Launcher.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\windows.storage.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\WiFiDisplay.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\VEEventDispatcher.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\StoreAgent.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\smartscreenps.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\ShareHost.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\PackageStateRoaming.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\OneDriveSettingSyncProvider.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\MessagingDataModel2.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\MapGeocoder.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\InstallAgentUserBroker.exe
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\InstallAgent.exe
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\DictationManager.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\CloudBackupSettings.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\SYSWOW64\ActivationManager.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\system32\wmpps.dll
2017-06-07 16:53:49 ----A---- C:\WINDOWS\system32\SecurityHealthService.exe
2017-06-07 16:53:35 ----A---- C:\WINDOWS\SYSWOW64\mfmjpegdec.dll
2017-06-07 16:53:35 ----A---- C:\WINDOWS\SYSWOW64\DeviceFlows.DataModel.dll
2017-06-07 16:53:35 ----A---- C:\WINDOWS\system32\mfmjpegdec.dll
2017-06-07 16:53:34 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2017-06-07 16:53:34 ----A---- C:\WINDOWS\SYSWOW64\MSVPXENC.dll
2017-06-07 16:53:34 ----A---- C:\WINDOWS\system32\MSVPXENC.dll
2017-06-07 16:53:33 ----A---- C:\WINDOWS\SYSWOW64\mfsvr.dll
2017-06-07 16:53:33 ----A---- C:\WINDOWS\SYSWOW64\mfplat.dll
2017-06-07 16:53:33 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2017-06-07 16:53:33 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2017-06-07 16:53:33 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2017-06-07 16:53:33 ----A---- C:\WINDOWS\system32\mfplat.dll
2017-06-07 16:53:33 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2017-06-07 16:53:33 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2017-06-07 16:53:33 ----A---- C:\WINDOWS\system32\mfcore.dll
2017-06-07 16:53:32 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2017-06-07 16:53:32 ----A---- C:\WINDOWS\system32\MSVideoDSP.dll
2017-06-07 16:53:32 ----A---- C:\WINDOWS\system32\mfsvr.dll
2017-06-07 16:53:32 ----A---- C:\WINDOWS\system32\fveapi.dll
2017-06-07 16:53:32 ----A---- C:\WINDOWS\system32\drivers\srv.sys
2017-06-07 16:53:31 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2017-06-07 16:53:31 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2017-06-07 16:53:31 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2017-06-07 16:53:31 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2017-06-07 16:53:31 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2017-06-07 16:53:31 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2017-06-07 16:53:31 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2017-06-07 16:53:31 ----A---- C:\WINDOWS\system32\mshtmled.dll
2017-06-07 16:53:31 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2017-06-07 16:53:31 ----A---- C:\WINDOWS\system32\iepeers.dll
2017-06-07 16:53:31 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2017-06-07 16:53:31 ----A---- C:\WINDOWS\system32\dxtrans.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\SYSWOW64\UIRibbonRes.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\SYSWOW64\RstrtMgr.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\SYSWOW64\olepro32.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\SYSWOW64\offreg.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\SYSWOW64\NPSMDesktopProvider.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\SYSWOW64\InputSwitch.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\SYSWOW64\asycfilt.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\winsrvext.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\Windows.UI.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\Windows.UI.AppDefaults.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\Windows.Shell.UnifiedTile.CuratedTileCollections.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\Windows.SharedPC.AccountManager.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\webcheck.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\UIRibbonRes.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\twinui.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\StartTileData.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\SharedStartModel.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\SettingsHandlers_Display.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\RDXService.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\NPSMDesktopProvider.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\NotificationController.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\msfeeds.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\msctf.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\LockAppBroker.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\InputSwitch.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\DeviceFlows.DataModel.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\ConhostV2.dll
2017-06-07 16:53:30 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2017-06-07 16:53:29 ----A---- C:\WINDOWS\system32\XpsPrint.dll
2017-06-07 16:53:29 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2017-06-07 16:53:29 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2017-06-07 16:53:29 ----A---- C:\WINDOWS\system32\LogonController.dll
2017-06-07 16:53:29 ----A---- C:\WINDOWS\system32\LockHostingFramework.dll
2017-06-07 16:53:29 ----A---- C:\WINDOWS\system32\comdlg32.dll
2017-06-07 16:53:29 ----A---- C:\WINDOWS\explorer.exe
2017-06-07 16:53:21 ----A---- C:\WINDOWS\SYSWOW64\imagehlp.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\XpsDocumentTargetPrint.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\XboxNetApiSvc.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\wuaueng.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\wpx.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\wpnprv.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\wpnapps.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\winmde.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\winlogon.exe
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\wininet.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\Windows.Web.Diagnostics.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.ps.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\Windows.Internal.Shell.Broker.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\Windows.Devices.Midi.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\WindowManagement.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\WiFiDisplay.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\vss_ps.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\VEStoreEventHandlers.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\vbscript.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\usocore.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\urlmon.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\updatehandlers.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\UpdateAgent.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\twinui.pcshell.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\TileDataRepository.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\TDLMigration.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\SystemSettingsThresholdAdminFlowUI.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\sysmain.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\StorSvc.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\StoreAgent.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\SRH.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\snmptrap.exe
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\SecurityHealthSSO.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\securekernel.exe
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\RstrtMgr.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\ResetEngine.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\rdbui.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\quartz.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\provengine.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\ole32.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\odbcconf.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\NPSM.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\NotificationObjFactory.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\msIso.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\mmgaserver.exe
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\MMDevAPI.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\MapsStore.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\MapRouter.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\MapGeocoder.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\KernelBase.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\kernel32.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\ISM.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\InstallAgentUserBroker.exe
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\InstallAgent.exe
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\InputService.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\imagehlp.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\iertutil.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\EnterpriseModernAppMgmtCSP.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\EnterpriseAppMgmtSvc.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\efscore.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\drivers\srv2.sys
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\drivers\rootmdm.sys
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\drivers\ksthunk.sys
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\drivers\dxgmms2.sys
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\drivers\dxgmms1.sys
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\drivers\dam.sys
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\dosvc.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\domgmt.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\DictationManager.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\dbghelp.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\daxexec.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\comsvcs.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\CloudBackupSettings.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\cldapi.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\catsrvps.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\browserbroker.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\browser_broker.exe
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\bisrv.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\BingMaps.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\bcdedit.exe
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\autochk.exe
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\audiosrv.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\asycfilt.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2017-06-07 16:53:21 ----A---- C:\WINDOWS\system32\AppResolver.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\xboxgipsynthetic.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\XblGameSaveExt.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.Resources.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\Windows.System.Launcher.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\windows.storage.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\Windows.Gaming.Preview.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\wc_storage.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\umpo.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\smartscreenps.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\smartscreen.exe
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\ShareHost.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\rpcss.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\PackageStateRoaming.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\OneDriveSettingSyncProvider.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\oleaut32.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\msv1_0.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\modernexecserver.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\embeddedmodesvc.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\drivers\wcifs.sys
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\drivers\fastfat.sys
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\crypt32.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\combase.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\ci.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\cdpsvc.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2017-06-07 16:53:20 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\Windows.Devices.Midi.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\TokenBroker.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\PlayToManager.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\odbcconf.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\NPSM.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\msctf.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\mmgaserver.exe
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\MMDevAPI.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\InputService.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\cldapi.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\bcryptprimitives.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\autochk.exe
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\SYSWOW64\AppResolver.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\system32\WpAXHolder.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\system32\TokenBroker.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\system32\offreg.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\system32\MessagingDataModel2.dll
2017-06-07 16:53:18 ----A---- C:\WINDOWS\system32\drivers\xboxgip.sys
2017-06-07 16:53:18 ----A---- C:\WINDOWS\system32\drivers\vhdmp.sys
2017-06-07 16:53:18 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2017-06-07 16:53:18 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2017-06-07 16:53:18 ----A---- C:\WINDOWS\system32\drivers\storahci.sys
2017-06-07 16:53:18 ----A---- C:\WINDOWS\system32\drivers\sdbus.sys
2017-06-07 16:53:18 ----A---- C:\WINDOWS\system32\drivers\netvsc.sys
2017-06-07 16:53:18 ----A---- C:\WINDOWS\system32\drivers\dumpsd.sys
2017-06-07 16:53:18 ----A---- C:\WINDOWS\system32\ActivationManager.dll
2017-06-07 16:48:43 ----D---- C:\WINDOWS\system32\Microsoft
2017-06-07 16:45:25 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2017-06-07 16:45:25 ----D---- C:\WINDOWS\SYSWOW64\BestPractices
2017-06-07 16:45:25 ----D---- C:\WINDOWS\system32\msmq
2017-06-07 16:45:25 ----D---- C:\WINDOWS\system32\BestPractices
2017-06-07 16:45:24 ----D---- C:\Program Files\Reference Assemblies
2017-06-07 16:45:24 ----D---- C:\Program Files\MSBuild
2017-06-07 16:45:24 ----D---- C:\Program Files (x86)\Reference Assemblies
2017-06-07 16:45:24 ----D---- C:\Program Files (x86)\MSBuild
2017-06-07 16:45:24 ----D---- C:\inetpub
2017-06-07 16:44:37 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2017-06-07 16:44:37 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2017-06-07 16:44:37 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-06-07 16:44:30 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2017-06-07 16:44:30 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2017-06-07 16:44:30 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2017-06-07 16:44:10 ----A---- C:\WINDOWS\system32\reseteng.dll
2017-06-07 16:42:22 ----A---- C:\WINDOWS\SYSWOW64\NlsLexicons0009.dll
2017-06-07 16:42:22 ----A---- C:\WINDOWS\SYSWOW64\NlsData0009.dll
2017-06-07 16:42:21 ----A---- C:\WINDOWS\system32\prm0009.dll
2017-06-07 16:42:21 ----A---- C:\WINDOWS\system32\NlsLexicons0009.dll
2017-06-07 16:42:21 ----A---- C:\WINDOWS\system32\NlsData0009.dll
2017-06-07 16:41:39 ----D---- C:\ProgramData\Microsoft OneDrive
2017-06-07 16:36:29 ----SHD---- C:\Recovery
2017-06-07 16:33:36 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2017-06-07 16:20:14 ----ASH---- C:\hiberfil.sys
2017-06-07 16:12:38 ----D---- C:\Program Files\Common Files\SpeechEngines
2017-06-07 16:11:07 ----D---- C:\ProgramData\USOShared
2017-06-07 16:07:48 ----SD---- C:\Users\Jirka.Jirka-PC\AppData\Roaming\Microsoft
2017-06-07 16:06:53 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2017-06-07 16:06:47 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2017-06-07 16:03:19 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2017-06-07 16:02:53 ----D---- C:\Program Files\Synaptics
2017-06-07 16:02:48 ----D---- C:\Program Files\IDT
2017-06-07 16:02:48 ----A---- C:\WINDOWS\system32\ctapo64.dll
2017-06-07 16:02:48 ----A---- C:\WINDOWS\system32\ctapo32.dll
2017-06-07 16:02:48 ----A---- C:\WINDOWS\system32\AESTEC64.dll
2017-06-07 16:02:48 ----A---- C:\WINDOWS\system32\AESTAR64.dll
2017-06-07 16:02:48 ----A---- C:\WINDOWS\system32\AESTAC64.dll
2017-06-07 16:02:47 ----A---- C:\WINDOWS\system32\stlang64.dll
2017-06-07 16:02:47 ----A---- C:\WINDOWS\system32\idt64mp1.exe
2017-06-07 16:02:47 ----A---- C:\WINDOWS\system32\ctppld64.dll
2017-06-07 16:02:47 ----A---- C:\WINDOWS\system32\AESTCo64.dll
2017-06-07 16:02:46 ----D---- C:\WINDOWS\system32\SRSLabs
2017-06-07 16:01:42 ----AS---- C:\WINDOWS\bootstat.dat
2017-06-07 16:01:06 ----D---- C:\WINDOWS\Prefetch
2017-06-07 16:00:03 ----D---- C:\WINDOWS\system32\SleepStudy
2017-06-07 16:00:03 ----D---- C:\WINDOWS\ServiceProfiles
2017-06-07 15:59:56 ----A---- C:\WINDOWS\system32\FNTCACHE.DAT
2017-06-07 15:59:37 ----ASH---- C:\swapfile.sys
2017-06-07 14:20:28 ----DC---- C:\WINDOWS\Panther
2017-06-07 14:20:23 ----HD---- C:\$WINDOWS.~BT
2017-06-07 14:12:41 ----A---- C:\WINDOWS\progress.ini
2017-06-07 14:05:35 ----HD---- C:\$GetCurrent
2017-06-07 14:04:56 ----D---- C:\Windows10Upgrade
2017-06-07 13:27:26 ----SHD---- C:\Config.Msi
2017-06-07 11:40:25 ----A---- C:\WINDOWS\system32\centel.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-utility-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-time-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-string-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-stdio-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-runtime-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-process-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-private-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-multibyte-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-math-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-locale-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-heap-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-filesystem-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-environment-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-convert-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-crt-conio-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-xstate-l2-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-timezone-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-synch-l1-2-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-processthreads-l1-1-1.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-localization-l1-2-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-file-l2-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\SYSWOW64\api-ms-win-core-file-l1-2-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-crt-utility-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-crt-time-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-crt-string-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-crt-stdio-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-crt-runtime-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-crt-process-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-crt-private-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-crt-multibyte-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-crt-math-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-crt-locale-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-crt-heap-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-crt-filesystem-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-crt-environment-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-crt-convert-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-crt-conio-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-core-xstate-l2-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-core-timezone-l1-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-core-synch-l1-2-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-core-processthreads-l1-1-1.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-core-localization-l1-2-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-core-file-l2-1-0.dll
2017-06-07 11:38:51 ----A---- C:\WINDOWS\system32\api-ms-win-core-file-l1-2-0.dll
2017-06-07 11:38:50 ----A---- C:\WINDOWS\system32\UtcResources.dll
2017-06-07 11:38:50 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2017-06-07 11:38:50 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2017-06-07 11:38:48 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.exe
2017-06-07 11:38:48 ----A---- C:\WINDOWS\system32\ieetwcollectorres.dll
2017-06-07 11:38:46 ----A---- C:\WINDOWS\SYSWOW64\mshtmlmedia.dll
2017-06-07 11:38:44 ----A---- C:\WINDOWS\system32\mshtmlmedia.dll
2017-06-07 11:38:35 ----A---- C:\WINDOWS\system32\wu.upgrade.ps.dll
2017-06-07 11:38:18 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll

======List of files/folders modified in the last 1 month======

2017-06-18 21:39:05 ----D---- C:\WINDOWS\AppReadiness
2017-06-18 21:38:33 ----D---- C:\WINDOWS\Temp
2017-06-18 21:38:15 ----RD---- C:\WINDOWS\Microsoft.NET
2017-06-18 21:37:57 ----D---- C:\WINDOWS\system32\config
2017-06-18 21:37:53 ----D---- C:\WINDOWS\system32\sru
2017-06-18 21:37:51 ----D---- C:\WINDOWS\WinSxS
2017-06-18 21:36:30 ----D---- C:\WINDOWS\system32\DriverStore
2017-06-18 21:35:53 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2017-06-18 21:34:57 ----D---- C:\WINDOWS\system32\drivers
2017-06-18 21:34:57 ----D---- C:\Program Files\Microsoft Silverlight
2017-06-18 21:34:55 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2017-06-18 15:31:40 ----D---- C:\WINDOWS\SYSWOW64\cs-CZ
2017-06-18 15:31:40 ----D---- C:\WINDOWS\SysWOW64
2017-06-18 15:31:39 ----D---- C:\WINDOWS\system32\oobe
2017-06-18 15:31:39 ----D---- C:\WINDOWS\system32\cs-CZ
2017-06-18 15:31:39 ----D---- C:\WINDOWS\system32\appraiser
2017-06-18 15:31:39 ----D---- C:\WINDOWS\System32
2017-06-18 15:31:39 ----D---- C:\WINDOWS\INF
2017-06-18 15:31:39 ----D---- C:\WINDOWS\AppPatch
2017-06-18 15:31:39 ----D---- C:\Windows
2017-06-18 15:21:01 ----RD---- C:\Program Files
2017-06-18 12:51:53 ----HD---- C:\Program Files\WindowsApps
2017-06-18 12:51:48 ----D---- C:\WINDOWS\system32\MRT
2017-06-18 12:46:46 ----D---- C:\WINDOWS\debug
2017-06-18 12:46:38 ----AC---- C:\WINDOWS\system32\MRT.exe
2017-06-18 12:46:06 ----D---- C:\WINDOWS\CbsTemp
2017-06-18 12:43:19 ----SHD---- C:\WINDOWS\Installer
2017-06-18 12:41:22 ----D---- C:\System Volume Information
2017-06-18 12:40:38 ----D---- C:\WINDOWS\system32\catroot2
2017-06-18 12:16:24 ----RD---- C:\Program Files (x86)
2017-06-18 12:16:00 ----D---- C:\WINDOWS\Logs
2017-06-18 12:14:28 ----D---- C:\WINDOWS\system32\Macromed
2017-06-18 12:14:25 ----D---- C:\WINDOWS\SYSWOW64\Macromed
2017-06-13 13:50:17 ----D---- C:\WINDOWS\system32\WDI
2017-06-13 13:38:49 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2017-06-10 14:42:33 ----D---- C:\WINDOWS\appcompat
2017-06-10 14:41:49 ----D---- C:\WINDOWS\system32\Tasks
2017-06-09 14:23:37 ----RD---- C:\WINDOWS\assembly
2017-06-08 23:14:34 ----D---- C:\WINDOWS\LiveKernelReports
2017-06-08 19:03:33 ----HD---- C:\ProgramData
2017-06-08 18:32:24 ----D---- C:\Users\Jirka.Jirka-PC\AppData\Roaming\Skype
2017-06-08 18:30:50 ----D---- C:\Users\Jirka.Jirka-PC\AppData\Roaming\Slack
2017-06-08 18:17:58 ----D---- C:\Download
2017-06-08 17:17:39 ----RD---- C:\Users
2017-06-07 23:15:18 ----D---- C:\WINDOWS\system32\LogFiles
2017-06-07 22:50:34 ----D---- C:\WINDOWS\SYSWOW64\inetsrv
2017-06-07 22:50:33 ----D---- C:\WINDOWS\system32\inetsrv
2017-06-07 21:53:47 ----SHD---- C:\$RECYCLE.BIN
2017-06-07 17:23:44 ----D---- C:\ProgramData\Package Cache
2017-06-07 17:22:20 ----D---- C:\Program Files\Common Files\microsoft shared
2017-06-07 17:16:46 ----D---- C:\Program Files (x86)\Microsoft.NET
2017-06-07 17:03:15 ----D---- C:\Program Files (x86)\Common Files
2017-06-07 16:55:32 ----D---- C:\WINDOWS\Setup
2017-06-07 16:55:03 ----SD---- C:\WINDOWS\SYSWOW64\F12
2017-06-07 16:55:03 ----D---- C:\WINDOWS\SYSWOW64\Dism
2017-06-07 16:55:02 ----SD---- C:\WINDOWS\system32\F12
2017-06-07 16:55:02 ----D---- C:\WINDOWS\system32\WinBioPlugIns
2017-06-07 16:55:02 ----D---- C:\WINDOWS\system32\Dism
2017-06-07 16:55:00 ----D---- C:\WINDOWS\ShellExperiences
2017-06-07 16:55:00 ----D---- C:\WINDOWS\Provisioning
2017-06-07 16:55:00 ----D---- C:\Program Files\Windows Photo Viewer
2017-06-07 16:55:00 ----D---- C:\Program Files (x86)\Windows Photo Viewer
2017-06-07 16:55:00 ----D---- C:\Program Files (x86)\Internet Explorer
2017-06-07 16:54:59 ----RD---- C:\Program Files\Windows Defender
2017-06-07 16:54:59 ----D---- C:\Program Files\Internet Explorer
2017-06-07 16:54:57 ----D---- C:\WINDOWS\system32\drivers\UMDF
2017-06-07 16:54:17 ----SD---- C:\ProgramData\Microsoft
2017-06-07 16:45:25 ----D---- C:\WINDOWS\SYSWOW64\MUI
2017-06-07 16:45:25 ----D---- C:\WINDOWS\system32\MUI
2017-06-07 16:45:20 ----A---- C:\WINDOWS\SYSWOW64\mqsnap.dll
2017-06-07 16:45:20 ----A---- C:\WINDOWS\SYSWOW64\mqcertui.dll
2017-06-07 16:45:19 ----A---- C:\WINDOWS\system32\wamregps.dll
2017-06-07 16:45:19 ----A---- C:\WINDOWS\system32\iisRtl.dll
2017-06-07 16:45:19 ----A---- C:\WINDOWS\system32\ahadmin.dll
2017-06-07 16:45:19 ----A---- C:\WINDOWS\system32\admwprox.dll
2017-06-07 16:45:18 ----A---- C:\WINDOWS\system32\iisrstap.dll
2017-06-07 16:45:18 ----A---- C:\WINDOWS\system32\iisreset.exe
2017-06-07 16:45:18 ----A---- C:\WINDOWS\system32\cngkeyhelper.dll
2017-06-07 16:45:17 ----A---- C:\WINDOWS\SYSWOW64\wamregps.dll
2017-06-07 16:45:17 ----A---- C:\WINDOWS\SYSWOW64\iisRtl.dll
2017-06-07 16:45:17 ----A---- C:\WINDOWS\SYSWOW64\iisrstap.dll
2017-06-07 16:45:17 ----A---- C:\WINDOWS\SYSWOW64\iisreset.exe
2017-06-07 16:45:17 ----A---- C:\WINDOWS\SYSWOW64\cngkeyhelper.dll
2017-06-07 16:45:17 ----A---- C:\WINDOWS\SYSWOW64\ahadmin.dll
2017-06-07 16:45:17 ----A---- C:\WINDOWS\SYSWOW64\admwprox.dll
2017-06-07 16:45:16 ----A---- C:\WINDOWS\SYSWOW64\mqoa.dll
2017-06-07 16:45:16 ----A---- C:\WINDOWS\system32\mqrt.dll
2017-06-07 16:45:15 ----A---- C:\WINDOWS\system32\mqlogmgr.dll
2017-06-07 16:45:14 ----A---- C:\WINDOWS\system32\mqutil.dll
2017-06-07 16:45:13 ----A---- C:\WINDOWS\system32\mqsnap.dll
2017-06-07 16:45:13 ----A---- C:\WINDOWS\system32\mqcertui.dll
2017-06-07 16:45:11 ----A---- C:\WINDOWS\SYSWOW64\mqrt.dll
2017-06-07 16:45:11 ----A---- C:\WINDOWS\system32\mqqm.dll
2017-06-07 16:45:11 ----A---- C:\WINDOWS\system32\mqoa.dll
2017-06-07 16:45:09 ----A---- C:\WINDOWS\SYSWOW64\mqutil.dll
2017-06-07 16:45:07 ----A---- C:\WINDOWS\system32\mqsvc.exe
2017-06-07 16:45:07 ----A---- C:\WINDOWS\system32\mqbkup.exe
2017-06-07 16:42:34 ----D---- C:\WINDOWS\OCR
2017-06-07 16:42:12 ----D---- C:\WINDOWS\system32\restore
2017-06-07 16:40:56 ----D---- C:\WINDOWS\SoftwareDistribution
2017-06-07 16:37:35 ----D---- C:\WINDOWS\rescache
2017-06-07 16:36:28 ----D---- C:\Program Files\Windows NT
2017-06-07 16:35:44 ----D---- C:\WINDOWS\system32\WinBioDatabase
2017-06-07 16:34:29 ----RSD---- C:\WINDOWS\Fonts
2017-06-07 16:34:29 ----D---- C:\WINDOWS\system32\Tasks_Migrated
2017-06-07 16:34:08 ----D---- C:\WINDOWS\Registration
2017-06-07 16:33:50 ----D---- C:\WINDOWS\Tasks
2017-06-07 16:33:34 ----D---- C:\WINDOWS\system32\drivers\etc
2017-06-07 16:33:19 ----D---- C:\WINDOWS\system32\wbem
2017-06-07 16:33:14 ----RSD---- C:\WINDOWS\Media
2017-06-07 16:23:52 ----D---- C:\WINDOWS\system32\spool
2017-06-07 16:19:27 ----D---- C:\WINDOWS\SYSWOW64\en-US
2017-06-07 16:19:26 ----D---- C:\WINDOWS\system32\zh-TW
2017-06-07 16:19:26 ----D---- C:\WINDOWS\system32\zh-HK
2017-06-07 16:19:26 ----D---- C:\WINDOWS\system32\zh-CN
2017-06-07 16:19:26 ----D---- C:\WINDOWS\system32\tr-TR
2017-06-07 16:19:26 ----D---- C:\WINDOWS\system32\th-TH
2017-06-07 16:19:26 ----D---- C:\WINDOWS\system32\sv-SE
2017-06-07 16:19:26 ----D---- C:\WINDOWS\system32\sl-SI
2017-06-07 16:19:26 ----D---- C:\WINDOWS\system32\sk-SK
2017-06-07 16:19:26 ----D---- C:\WINDOWS\system32\ru-RU
2017-06-07 16:19:26 ----D---- C:\WINDOWS\system32\ro-RO
2017-06-07 16:19:26 ----D---- C:\WINDOWS\system32\pt-PT
2017-06-07 16:19:26 ----D---- C:\WINDOWS\system32\pt-BR
2017-06-07 16:19:26 ----D---- C:\WINDOWS\system32\pl-PL
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\nl-NL
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\nb-NO
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\lv-LV
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\lt-LT
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\ko-KR
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\ja-jp
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\it-IT
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\hu-HU
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\hr-HR
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\he-IL
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\fr-FR
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\fi-FI
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\et-EE
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\es-ES
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\en-US
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\el-GR
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\de-DE
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\da-DK
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\bg-BG
2017-06-07 16:19:25 ----D---- C:\WINDOWS\system32\ar-SA
2017-06-07 16:19:25 ----AD---- C:\WINDOWS\system32\oem
2017-06-07 16:16:04 ----D---- C:\WINDOWS\SYSWOW64\zh-TW
2017-06-07 16:16:04 ----D---- C:\WINDOWS\SYSWOW64\zh-HK
2017-06-07 16:16:04 ----D---- C:\WINDOWS\SYSWOW64\zh-CN
2017-06-07 16:16:04 ----D---- C:\WINDOWS\SYSWOW64\tr-TR
2017-06-07 16:16:03 ----D---- C:\WINDOWS\SYSWOW64\sv-SE
2017-06-07 16:16:03 ----D---- C:\WINDOWS\SYSWOW64\ru-RU
2017-06-07 16:16:03 ----D---- C:\WINDOWS\SYSWOW64\pt-PT
2017-06-07 16:16:03 ----D---- C:\WINDOWS\SYSWOW64\pt-BR
2017-06-07 16:16:03 ----D---- C:\WINDOWS\SYSWOW64\pl-PL
2017-06-07 16:16:03 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2017-06-07 16:16:03 ----D---- C:\WINDOWS\SYSWOW64\nb-NO
2017-06-07 16:16:02 ----D---- C:\WINDOWS\SYSWOW64\migration
2017-06-07 16:16:02 ----D---- C:\WINDOWS\SYSWOW64\ko-KR
2017-06-07 16:16:02 ----D---- C:\WINDOWS\SYSWOW64\ja-JP
2017-06-07 16:16:02 ----D---- C:\WINDOWS\SYSWOW64\it-IT
2017-06-07 16:16:01 ----D---- C:\WINDOWS\SYSWOW64\IME
2017-06-07 16:16:00 ----D---- C:\WINDOWS\SYSWOW64\hu-HU
2017-06-07 16:16:00 ----D---- C:\WINDOWS\SYSWOW64\GroupPolicy
2017-06-07 16:16:00 ----D---- C:\WINDOWS\SYSWOW64\fr-FR
2017-06-07 16:16:00 ----D---- C:\WINDOWS\SYSWOW64\fi-FI
2017-06-07 16:16:00 ----D---- C:\WINDOWS\SYSWOW64\es-ES
2017-06-07 16:16:00 ----D---- C:\WINDOWS\SYSWOW64\el-GR
2017-06-07 16:16:00 ----D---- C:\WINDOWS\SYSWOW64\de-DE
2017-06-07 16:16:00 ----D---- C:\WINDOWS\SYSWOW64\da-DK
2017-06-07 16:15:58 ----SHD---- C:\WINDOWS\SYSWOW64\AI_RecycleBin
2017-06-07 16:15:58 ----D---- C:\WINDOWS\SYSWOW64\Adobe
2017-06-07 16:15:54 ----D---- C:\WINDOWS\system32\SPReview
2017-06-07 16:15:49 ----D---- C:\WINDOWS\system32\NDF
2017-06-07 16:15:49 ----D---- C:\WINDOWS\system32\migration
2017-06-07 16:15:48 ----D---- C:\WINDOWS\system32\IME
2017-06-07 16:15:48 ----D---- C:\WINDOWS\system32\EventProviders
2017-06-07 16:15:47 ----D---- C:\WINDOWS\system32\drivers\cs-CZ
2017-06-07 16:13:08 ----D---- C:\WINDOWS\schemas
2017-06-07 16:12:55 ----D---- C:\WINDOWS\Help
2017-06-07 16:12:55 ----D---- C:\WINDOWS\ehome
2017-06-07 16:12:43 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2017-06-07 16:12:43 ----D---- C:\Program Files (x86)\Windows Mail
2017-06-07 16:12:40 ----SHD---- C:\Program Files\Windows Sidebar
2017-06-07 16:12:40 ----D---- C:\Program Files\Windows Mail
2017-06-07 16:12:39 ----D---- C:\Program Files\Microsoft Games
2017-06-07 16:12:38 ----D---- C:\Program Files\DVD Maker
2017-06-07 16:12:38 ----D---- C:\Program Files\Common Files
2017-06-07 16:11:13 ----D---- C:\WINDOWS\system32\Recovery
2017-06-07 16:11:09 ----HD---- C:\WINDOWS\system32\GroupPolicy
2017-06-07 16:11:09 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2017-06-07 16:11:07 ----D---- C:\ProgramData\USOPrivate
2017-06-07 16:10:26 ----D---- C:\WINDOWS\system32\CodeIntegrity
2017-06-07 16:06:27 ----D---- C:\WINDOWS\system32\Sysprep
2017-06-07 16:03:41 ----RD---- C:\WINDOWS\PrintDialog
2017-06-07 16:03:41 ----RD---- C:\WINDOWS\MiracastView
2017-06-07 16:03:40 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2017-06-07 16:03:28 ----D---- C:\WINDOWS\HoloShell
2017-06-07 13:56:32 ----D---- C:\Users\Jirka.Jirka-PC\AppData\Roaming\Corel
2017-06-07 13:56:08 ----D---- C:\ProgramData\Corel
2017-06-07 13:51:54 ----D---- C:\Users\Jirka.Jirka-PC\AppData\Roaming\Dropbox
2017-06-07 13:29:58 ----D---- C:\ProgramData\Microsoft Help
2017-06-07 13:27:44 ----D---- C:\WINDOWS\ShellNew
2017-06-07 13:27:40 ----A---- C:\WINDOWS\win.ini
2017-06-07 13:04:39 ----D---- C:\ProgramData\Adobe
2017-06-07 13:04:00 ----D---- C:\Program Files\Common Files\Adobe
2017-06-07 12:29:02 ----D---- C:\Program Files\Microsoft Security Client
2017-06-07 12:28:08 ----D---- C:\Program Files (x86)\Microsoft Security Client
2017-06-06 23:27:47 ----D---- C:\Users\Jirka.Jirka-PC\AppData\Roaming\Google
2017-06-06 23:03:48 ----D---- C:\Users\Jirka.Jirka-PC\AppData\Roaming\HD Tune Pro
2017-06-06 23:03:42 ----D---- C:\Program Files (x86)\HD Tune Pro
2017-05-30 22:45:51 ----A---- C:\WINDOWS\system32\MpSigStub.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 iaStor;@oem30.inf,%*PNP0600.DeviceDesc%;Intel AHCI Controller; C:\WINDOWS\System32\drivers\iaStor.sys [2010-06-08 540696]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2017-03-18 49568]
R0 MpFilter;Microsoft Malware Protection Driver; C:\WINDOWS\system32\DRIVERS\MpFilter.sys [2016-08-25 295000]
R1 dtsoftbus01;@oem29.inf,%DTSoftBus.SVCDESC%;DAEMON Tools Virtual Bus Driver; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [2011-11-15 279616]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2017-03-18 54272]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2017-03-18 8192]
R2 clreg;@%SystemRoot%\system32\drivers\registry.sys,-100; C:\WINDOWS\System32\drivers\registry.sys [2017-03-18 14336]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2017-03-18 50688]
R2 speedfan;speedfan; \??\C:\WINDOWS\SysWOW64\speedfan.sys [2012-12-29 28664]
R2 storqosflt;@%SystemRoot%\System32\drivers\storqosflt.sys,-101; C:\WINDOWS\system32\drivers\storqosflt.sys [2017-03-18 79872]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2015-01-13 11922944]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2015-01-13 359936]
R3 AtiHdmiService;@oem11.inf,%ATIHdAudioDriver.SvcDesc%;ATI Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\AtiHdmi.sys [2010-05-06 125456]
R3 BCM42RLY;BCM42RLY; C:\WINDOWS\system32\drivers\BCM42RLY.sys [2010-02-03 22520]
R3 BCM43XX;@oem9.inf,%BCM43XX_Service_DispName%;Ovladač pro bezdrátovou síťovou kartu DW WLAN; C:\WINDOWS\system32\DRIVERS\bcmwl664.sys [2010-02-03 3058168]
R3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2017-03-18 53664]
R3 CtClsFlt;Creative Camera Class Upper Filter Driver; C:\WINDOWS\system32\DRIVERS\CtClsFlt.sys [2009-06-15 172704]
R3 HECIx64;@oem36.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface; C:\WINDOWS\System32\drivers\HECIx64.sys [2010-03-17 56344]
R3 MQAC;@mqutil.dll,-6101; C:\WINDOWS\system32\drivers\mqac.sys [2017-06-07 177664]
R3 rt640x64;@rt640x64.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2017-03-18 604160]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10322; C:\WINDOWS\system32\DRIVERS\stwrt64.sys [2010-06-18 515584]
R3 SynTP;@oem50.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\WINDOWS\system32\DRIVERS\SynTP.sys [2017-02-24 886368]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2017-03-18 123808]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2017-03-18 103328]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2017-03-18 64416]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2017-03-18 58784]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2017-03-18 61848]
S0 scmbus;@scmbus.inf,%scmbus.SvcDesc%;Microsoft Storage Class Memory Bus Driver; C:\WINDOWS\System32\drivers\scmbus.sys [2017-03-18 91040]
S0 storufs;@storufs.inf,%UfsServiceDesc%;Microsoft Universal Flash Storage (UFS) Driver; C:\WINDOWS\System32\drivers\storufs.sys [2017-03-18 36760]
S2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2017-03-18 12288]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2017-03-18 20480]
S3 ALSysIO;ALSysIO; \??\C:\Users\JIRKA~1.JIR\AppData\Local\Temp\ALSysIO64.sys [2017-06-08 25064]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2017-03-18 17920]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2017-03-18 39424]
S3 CapImg;@capimg.inf,%CapImgHid_Service%;HID driver for CapImg touch screen; C:\WINDOWS\System32\drivers\capimg.sys [2017-03-18 122880]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\drivers\genericusbfn.sys [2017-03-18 21504]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2017-03-18 51104]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2017-03-18 74648]
S3 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2017-03-18 347032]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2017-03-18 2104224]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2017-03-18 33280]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2017-03-18 81408]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2017-03-18 70656]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2017-03-18 85504]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2017-03-18 165376]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2017-03-18 168448]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2017-03-18 526240]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2017-03-18 36864]
S3 irda;IrDA; C:\WINDOWS\system32\drivers\irda.sys [2017-03-18 120320]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2017-03-18 405408]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2017-03-18 51104]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2017-03-18 842656]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2017-03-18 108960]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2017-03-18 122368]
S3 NisDrv;Microsoft Network Inspection System; C:\WINDOWS\system32\DRIVERS\NisDrvWFP.sys [2016-08-25 135928]
S3 nvdimmn;@nvdimmn.inf,%nvdimmn.SvcDesc%;Microsoft NVDIMM-N device driver; C:\WINDOWS\System32\drivers\nvdimmn.sys [2017-03-18 80896]
S3 PCDSRVC{D3412D80-CF3B4A27-06020200}_0;PCDSRVC{D3412D80-CF3B4A27-06020200}_0 - PCDR Kernel Mode Service Helper Driver; \??\c:\program files\my dell\pcdsrvc_x64.pkms [2013-07-10 25584]
S3 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\WINDOWS\System32\drivers\pmem.sys [2017-03-18 101376]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2017-03-18 936864]
S3 SDFRd;@SDFRd.inf,%SDFRd.ServiceDesc%;SDF Reflector; C:\WINDOWS\System32\drivers\SDFRd.sys [2017-03-18 31128]
S3 SpatialGraphFilter;Holographic Spatial Graph Filter; C:\WINDOWS\System32\drivers\SpatialGraphFilter.sys [2017-03-20 40352]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2017-04-25 83056]
R2 AESTFilters;Andrea ST Filters Service; C:\Program Files\IDT\WDM\AESTSr64.exe [2009-03-03 89600]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2015-01-13 238080]
R2 AppHostSvc;@%windir%\system32\inetsrv\iisres.dll,-30011; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R2 CDPUserSvc_1d61bc;Uživatelská služba platformy připojených zařízení_1d61bc; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
R2 IAStorDataMgrSvc;Úložná technologie Intel(R) Rapid; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2010-06-08 13336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2010-03-17 268824]
R2 MDM;Machine Debug Manager; C:\Program Files (x86)\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe [2006-10-26 335872]
R2 MsMpSvc;Microsoft Antimalware Service; c:\Program Files\Microsoft Security Client\MsMpEng.exe [2016-11-14 119864]
R2 MSMQ;@mqutil.dll,-6102; C:\WINDOWS\system32\mqsvc.exe [2017-06-07 26112]
R2 OneSyncSvc_1d61bc;Hostitel synchronizace_1d61bc; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R2 SecurityHealthService;@%systemroot%\system32\SecurityHealthAgent.dll,-1002; C:\WINDOWS\system32\SecurityHealthService.exe [2017-06-07 335808]
R2 SQLWriter;SQL Server VSS Writer; C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2016-04-30 131776]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10122; C:\Program Files\IDT\WDM\STacSV64.exe [2010-06-18 258048]
R2 SynTPEnhService;SynTPEnh Caller Service; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [2017-02-24 263264]
R2 tiledatamodelsvc;@%SystemRoot%\system32\tileobjserver.dll,-1; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
R3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R3 SmsRouter;@%SystemRoot%\System32\SmsRouterSvc.dll,-10001; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R3 StateRepository;@%SystemRoot%\system32\windows.staterepository.dll,-1; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R3 TimeBrokerSvc;@%windir%\system32\TimeBrokerServer.dll,-1001; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
R3 TokenBroker;@%systemroot%\system32\tokenbroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S2 NetMsmqActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8195; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-18 136360]
S2 NetPipeActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8197; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-18 136360]
S2 NetTcpActivator;@%systemroot%\Microsoft.NET\Framework64\v4.0.30319\ServiceModelInstallRC.dll,-8199; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\SMSvcHost.exe [2017-03-18 136360]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2016-03-23 327808]
S3 AdobeFlashPlayerUpdateSvc;Adobe Flash Player Update Service; C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [2017-06-18 272384]
S3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 aspnet_state;@%SystemRoot%\Microsoft.NET\Framework64\v4.0.30319\aspnet_rc.dll,-1; C:\WINDOWS\Microsoft.NET\Framework64\v4.0.30319\aspnet_state.exe [2017-03-18 52920]
S3 BthHFSrv;@%SystemRoot%\System32\BthHFSrv.dll,-103; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 DevicesFlowUserSvc_1d61bc;Tok zařízení_1d61bc; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2017-03-18 86528]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2017-02-10 43696]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 irmon;@%SystemRoot%\System32\irmon.dll,-2000; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 MessagingService_1d61bc;Služba zasílání zpráv_1d61bc; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 MozillaMaintenance;Mozilla Maintenance Service; C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe [2017-06-08 173512]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 NisSrv;Kontrola sítě Microsoft; c:\Program Files\Microsoft Security Client\NisSrv.exe [2016-11-14 361816]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 PimIndexMaintenanceSvc_1d61bc;Data kontaktů_1d61bc; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]
S3 SEMgrSvc;@%SystemRoot%\System32\SEMgrSvc.dll,-1001; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 SensorDataService;@%SystemRoot%\system32\SensorDataService.exe,-101; C:\WINDOWS\System32\SensorDataService.exe [2017-03-18 1284608]
S3 SensorService;@%SystemRoot%\System32\sensorservice.dll,-1000; C:\WINDOWS\system32\svchost.exe [2017-03-18 47664]
S3 spectrum;@%systemroot%\system32\spectrum.exe,-101; C:\WINDOWS\system32\spectrum.exe [2017-03-18 891904]
S3 TieringEngineService;@%SystemRoot%\system32\TieringEngineService.exe,-702; C:\WINDOWS\system32\TieringEngineService.exe [2017-03-18 302592]
S4 shpamsvc;@%SystemRoot%\System32\Windows.SharedPC.AccountManager.dll,-100; C:\WINDOWS\System32\svchost.exe [2017-03-18 47664]

-----------------EOF-----------------

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119659
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - MS Essentials našel hrozby

#2 Příspěvek od Rudy »

Zdravím!
Spusťte tuto utilitu:
Stáhněte AdwCleaner https://toolslib.net/downloads/viewdown ... dwcleaner/
Uložte na plochu
Ukončete všechny programy
Klikněte nejprve na >Scan<(hledání) a pak na >Clean< (mazání).
Proběhne skenováni a pak se objeví log, který sem vložte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

MartinaZ.
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 04 kvě 2016 09:46

Re: Prosím o kontrolu logu - MS Essentials našel hrozby

#3 Příspěvek od MartinaZ. »

Děkuji moc!

Program AdwCleaner vygeneroval toto:

Kód: Vybrat vše

# AdwCleaner v6.047 - Log vytvořen 18/06/2017 v 22:56:51
# Aktualizováno dne 19/05/2017 z Malwarebytes
# Databáze : 2017-06-18.1 [Server]
# Operační systém : Windows 10 Home  (X64)
# Uživatelské jméno : Jirka - JIRKA-PC
# Spuštěno z : C:\Users\Jirka.Jirka-PC\Desktop\adwcleaner_6.047.exe
# Mod: Čištění
# Podpora : https://www.malwarebytes.com/support



***** [ Služby ] *****



***** [ Složky ] *****

[-] Složka smazána: C:\Users\Jirka.Jirka-PC\AppData\Local\17618
[-] Složka smazána: C:\Users\Jirka.Jirka-PC\AppData\Local\slimware utilities inc
[#] Složka smazána po restartu: C:\Users\Jirka.Jirka-PC\AppData\Local\SlimWare Utilities Inc
[-] Složka smazána: C:\Users\Public\Documents\ShopperPro
[-] Složka smazána: C:\Users\Public\Documents\Downloaded Installers
[-] Složka smazána: C:\Program Files (x86)\GreenTree Applications


***** [ Soubory ] *****

[-] Soubor smazán: C:\Program Files (x86)\Common Files\config\uninstinethnfd.exe
[-] Soubor smazán: C:\WINDOWS\SysWOW64\hfnapi.dll


***** [ DLL ] *****



***** [ WMI ] *****



***** [ Zástupci ] *****



***** [ Naplánované úlohy ] *****

[-] Úloha smazána: YTDownloader
[-] Úloha smazána: ytdownloader


***** [ Registry ] *****

[#] Klíč smazán po restartu: {B0660298-91AA-421F-BF0D-BFF6BB8BF3AE}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\AniGIFPpg.AniGIFPpg
[-] Klíč smazán: HKLM\SOFTWARE\Classes\AniGIFPpg2.AniGIFPpg2
[-] Klíč smazán: HKLM\SOFTWARE\Classes\dream.capture
[-] Klíč smazán: HKLM\SOFTWARE\Classes\dream.capture.1
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\AniGIFPpg.AniGIFPpg
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\AniGIFPpg2.AniGIFPpg2
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\dream.capture
[#] Klíč smazán po restartu: [x64] HKLM\SOFTWARE\Classes\dream.capture.1
[-] Klíč smazán: HKLM\SOFTWARE\Classes\CLSID\{1AA60054-57D9-4F99-9A55-D0FBFBE7ECD3}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\CLSID\{5A4E3A41-FA55-4BDA-AED7-CEBE6E7BCB52}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{4E6354DE-9115-4AEE-BD21-C46C3E8A49DB}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{FC073BDA-C115-4A1D-9DF9-9B5C461482E5}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\Interface\{EAC7DE5C-9520-435D-91AA-4A02E4773CEA}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\TypeLib\{A2D733A7-73B0-4C6B-B0C7-06A432950B66}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\TypeLib\{82351433-9094-11D1-A24B-00A0C932C7DF}
[-] Klíč smazán: HKLM\SOFTWARE\Classes\TypeLib\{B0660298-91AA-421F-BF0D-BFF6BB8BF3AE}
[-] Klíč smazán: HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{A5A51D2A-505A-4D84-AFC6-E0FA87E47B8C}
[-] Klíč smazán: HKU\S-1-5-21-2908901544-179838628-2141273195-1001\Software\OB
[-] Klíč smazán: HKU\S-1-5-21-2908901544-179838628-2141273195-1001\Software\SlimWare Utilities Inc
[#] Klíč smazán po restartu: HKCU\Software\OB
[#] Klíč smazán po restartu: HKCU\Software\SlimWare Utilities Inc
[#] Klíč smazán po restartu: [x64] HKCU\Software\OB
[#] Klíč smazán po restartu: [x64] HKCU\Software\SlimWare Utilities Inc
[-] Klíč smazán: [x64] HKLM\SOFTWARE\YTDownloader
[-] Klíč smazán: HKCU\SOFTWARE\Classes\ChromeHTML


***** [ Prohlížeče ] *****

[-] Firefox předvolby vyčištěny: "extensions.wrc.SearchRules.ask.com.style" -  ".WRCN {display:none} #yui-main .tsrc_vnru .title + .WRCN, #yui-main #teoma-results .title + .WRCN {display:inline !important; background: url(\"IMAGE\") right no-repeat}"
[-] Firefox předvolby vyčištěny: "extensions.wrc.SearchRules.ask.com.url" -  "^hxxp(s)?\\:\\/\\/(.+\\.)?ask\\.com\\/.*"
[-] Firefox předvolby vyčištěny: "extensions.wrc.SearchRules.rambler.ru.style" -  ".WRCN {display:none} .search-results .title + .WRCN {display:inline !important; background: url(\"IMAGE\") right no-repeat}"
[-] Firefox předvolby vyčištěny: "extensions.wrc.SearchRules.rambler.ru.url" -  "^hxxp\\:\\/\\/nova\\.rambler\\.ru\\/.+"


*************************

:: "Tracing" klíče smazány
:: Winsock nastavení vyčištěno

*************************

C:\AdwCleaner\AdwCleaner[C0].txt - [4168 Bajty] - [18/06/2017 22:56:51]
C:\AdwCleaner\AdwCleaner[R0].txt - [1323 Bajty] - [25/10/2014 21:05:45]
C:\AdwCleaner\AdwCleaner[S0].txt - [1399 Bajty] - [25/10/2014 21:07:58]
C:\AdwCleaner\AdwCleaner[S1].txt - [4587 Bajty] - [18/06/2017 22:48:41]

########## EOF - C:\AdwCleaner\AdwCleaner[C0].txt - [4460 Bajty] ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119659
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - MS Essentials našel hrozby

#4 Příspěvek od Rudy »

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

MartinaZ.
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 04 kvě 2016 09:46

Re: Prosím o kontrolu logu - MS Essentials našel hrozby

#5 Příspěvek od MartinaZ. »

Po dlouhých chvílích váhání při opakovaných hláškách Firefox, že to není opravdu dobrý nápad staženo, otestováno.

Log kvůli délce přikládám jako odkaz na pastebin.

https://pastebin.com/zdCdWMdb

Škoda, že je nedovoleno přikládat .txt :(.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119659
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - MS Essentials našel hrozby

#6 Příspěvek od Rudy »

Můžete dát i txt, musíte je ale zabalit do raru. Otevřte poznámkový blok a zkopírujte do něj:
Start
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => -> No File
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => -> No File
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => -> No File
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => -> No File
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => -> No File
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => -> No File
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => -> No File
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => -> No File
ShortcutTarget: Core Temp – zástupce.lnk -> C:\Users\Jirka.Jirka-PC\Downloads\CoreTemp32\Core Temp.exe (No File)
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2908901544-179838628-2141273195-1001UA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2908901544-179838628-2141273195-1001Core
C:\Users\Jirka.Jirka-PC\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\Users\Jirka.Jirka-PC\AppData\Local\Temp
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

MartinaZ.
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 04 kvě 2016 09:46

Re: Prosím o kontrolu logu - MS Essentials našel hrozby

#7 Příspěvek od MartinaZ. »

Provedeno, posílám fixlog :)

Fix result of Farbar Recovery Scan Tool (x64) Version: 21-06-2017 01
Ran by Jirka (21-06-2017 23:56:22) Run:1
Running from C:\Users\Jirka.Jirka-PC\Desktop
Loaded Profiles: Jirka (Available Profiles: Jirka & .NET v4.5 & DefaultAppPool & .NET v4.5 Classic)
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
ShellIconOverlayIdentifiers: ["DropboxExt1"] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => -> No File
ShellIconOverlayIdentifiers: ["DropboxExt2"] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => -> No File
ShellIconOverlayIdentifiers: ["DropboxExt3"] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => -> No File
ShellIconOverlayIdentifiers: ["DropboxExt4"] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => -> No File
ShellIconOverlayIdentifiers: ["DropboxExt5"] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => -> No File
ShellIconOverlayIdentifiers: ["DropboxExt6"] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => -> No File
ShellIconOverlayIdentifiers: ["DropboxExt7"] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => -> No File
ShellIconOverlayIdentifiers: ["DropboxExt8"] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => -> No File
ShortcutTarget: Core Temp � z�stupce.lnk -> C:\Users\Jirka.Jirka-PC\Downloads\CoreTemp32\Core Temp.exe (No File)
U3 idsvc; no ImagePath
U3 wpcsvc; no ImagePath
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2908901544-179838628-2141273195-1001UA
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2908901544-179838628-2141273195-1001Core
C:\Users\Jirka.Jirka-PC\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
C:\Users\Jirka.Jirka-PC\AppData\Local\Temp
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched

EmptyTemp:
End
*****************

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt1" => key removed successfully
HKLM\Software\Classes\CLSID\{FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt2" => key removed successfully
HKLM\Software\Classes\CLSID\{FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt3" => key removed successfully
HKLM\Software\Classes\CLSID\{FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt4" => key removed successfully
HKLM\Software\Classes\CLSID\{FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt5" => key removed successfully
HKLM\Software\Classes\CLSID\{FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt6" => key removed successfully
HKLM\Software\Classes\CLSID\{FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt7" => key removed successfully
HKLM\Software\Classes\CLSID\{FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => key not found.
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\"DropboxExt8" => key removed successfully
HKLM\Software\Classes\CLSID\{FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => key not found.
C:\Users\Jirka.Jirka-PC\Downloads\CoreTemp32\Core Temp.exe => not found.
HKLM\System\CurrentControlSet\Services\idsvc => key removed successfully
idsvc => service removed successfully
HKLM\System\CurrentControlSet\Services\wpcsvc => key removed successfully
wpcsvc => service removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2908901544-179838628-2141273195-1001UA => moved successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskUserS-1-5-21-2908901544-179838628-2141273195-1001Core => moved successfully
C:\Users\Jirka.Jirka-PC\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini => moved successfully
C:\Users\Jirka.Jirka-PC\AppData\Local\Temp => moved successfully
HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched => Error: No automatic fix found for this entry.

=========== EmptyTemp: ==========

BITS transfer queue => 6053888 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 40595543 B
Java, Flash, Steam htmlcache => 1092 B
Windows/system/drivers => 63618519 B
Edge => 0 B
Chrome => 8586075 B
Firefox => 474196539 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 33058 B
Users => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 128 B
systemprofile32 => 128 B
LocalService => 9836 B
NetworkService => 31256424 B
Jirka.Jirka-PC => 5421021 B
.NET v4.5 => 33058 B
DefaultAppPool => 33058 B
.NET v4.5 Classic => 33058 B

RecycleBin => 0 B
EmptyTemp: => 600.7 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 23:57:24 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119659
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - MS Essentials našel hrozby

#8 Příspěvek od Rudy »

Smazáno. Log je již OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

MartinaZ.
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 04 kvě 2016 09:46

Re: Prosím o kontrolu logu - MS Essentials našel hrozby

#9 Příspěvek od MartinaZ. »

Díky moc :). Notebook se zdá svižnější, zdá se, že celá akce dost pomohla :worship: !

MartinaZ.
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 04 kvě 2016 09:46

Re: Prosím o kontrolu logu - MS Essentials našel hrozby

#10 Příspěvek od MartinaZ. »

Ještě malé OT:

Nemáte tip na dobrý servis notebooků v Olomouci?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119659
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - MS Essentials našel hrozby

#11 Příspěvek od Rudy »

Bohužel, jsem z Plzně, takže nevím. Mám ale kolegyni zde na fóru ve Šternberku, snad by mohla poradit. Kontakt: motji@forum.viry.cz .
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

MartinaZ.
Návštěvník
Návštěvník
Příspěvky: 21
Registrován: 04 kvě 2016 09:46

Re: Prosím o kontrolu logu - MS Essentials našel hrozby

#12 Příspěvek od MartinaZ. »

Děkuji,
po poradě s majitelem notebooku nakonec opravnu řešit nebudeme.
Prý je na vině grafická karta, která jako zbytek noteboku dostala litrem vody a podléhá velké oxidaci. I když byl vyměněn celý motherboard, tak to má důsledky a bude lépe se upnout k novému notebooku, tento ponechat záložní.

Notebook každopádně běží parádně, záseky jsou pryč a za to Vám ještě jednou velký dík!

Téma můžete zavřít :).

M.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119659
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu - MS Essentials našel hrozby

#13 Příspěvek od Rudy »

Njn, "vykoupaný" NB obvykle dělá problémy. :) Nemáte zač!
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno