
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-11-2017 03
Ran by Petr (administrator) on PETROVO (13-11-2017 16:30:47)
Running from C:\Users\Petr\Desktop
Loaded Profiles: Petr & sipet_000 & Administrator (Available Profiles: Petr & sipet_000 & Administrator)
Platform: Windows 10 Home Version 1709 16299.19 (X64) Language: Čeština (Česko)
Internet Explorer Version 11 (Default browser: Opera)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Windows (R) Win 7 DDK provider) C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\AdminService.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 18.0.0\avp.exe
() C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 18.0.0\avpui.exe
(Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(Filipe Lourenço) C:\Program Files (x86)\BatteryCare\BatteryCare.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
() C:\Windows\System32\igfxTray.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(Pixart Imaging Inc) C:\Windows\System32\TiltWheelMouse.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(Waves Audio Ltd.) C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe
(Valve Corporation) C:\Program Files (x86)\Steam\Steam.exe
(TrucksBook) C:\Program Files (x86)\TrucksBook Client\TB Client.exe
(Esumsoft) C:\Program Files (x86)\POP Peeper\POPPeeper.exe
(Dell) C:\Users\Petr\AppData\Local\Apps\2.0\O8ACTZN9.BAP\E6TYY72D.Z0Q\dell..tion_831211ca63b981c5_0008.0008_b150a6542eb950c1\DellSystemDetect.exe
(Microsoft Corporation) C:\Program Files\Windows Sidebar\sidebar.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7\steamwebhelper.exe
(Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(Intel Corporation) C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(Dell Inc.) C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe
(Dell Inc.) C:\Program Files (x86)\Dell Customer Connect\DCCService.exe
(Dell Products, LP.) C:\Program Files (x86)\Dell Digital Delivery\DeliveryService.exe
(Dell Inc.) C:\Program Files (x86)\Dell Update\DellUpService.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdge.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(Microsoft Corporation) C:\Windows\System32\browser_broker.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksde.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Dell Inc.) C:\Program Files (x86)\Dell Update\DellUpTray.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksdeui.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
() C:\Windows\System32\Windows.WARP.JITService.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\MicrosoftEdgeCP.exe
() C:\Windows\System32\Windows.WARP.JITService.exe
(Dell Inc.) C:\Program Files\Dell\DellDataVault\nvapiw.exe
(SoftThinks - Dell) C:\Program Files (x86)\Dell Backup and Recovery\Toaster.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(SoftThinks - Dell) C:\Program Files (x86)\Dell Backup and Recovery\Components\Shell\DBRSync.exe
(Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(PC-Doctor, Inc.) C:\Program Files\Dell\SupportAssist\uaclauncher.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
==================== Registry (Whitelisted) ===========================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [9197568 2017-01-11] (Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1483264 2017-01-11] (Realtek Semiconductor)
HKLM\...\Run: [MouseDriver] => C:\WINDOWS\system32\TiltWheelMouse.exe [241152 2013-04-09] (Pixart Imaging Inc)
HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [3777696 2014-01-16] (Dell Inc.)
HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [2398776 2016-06-15] (NVIDIA Corporation)
HKLM\...\Run: [IAStorIcon] => C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [287592 2013-08-30] (Intel Corporation)
HKLM\...\Run: [WavesSvc] => C:\Program Files\Waves\MaxxAudio\WavesSvc64.exe [600496 2015-07-07] (Waves Audio Ltd.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2017-09-05] (Oracle Corporation)
HKU\S-1-5-21-1365893992-1965150912-503066826-1002\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [3102496 2017-10-31] (Valve Corporation)
HKU\S-1-5-21-1365893992-1965150912-503066826-1002\...\Run: [TB Client] => C:\Program Files (x86)\TrucksBook Client\TB Client.exe [380928 2017-10-12] (TrucksBook)
HKU\S-1-5-21-1365893992-1965150912-503066826-1002\...\Run: [POP Peeper] => C:\Program Files (x86)\POP Peeper\POPPeeper.exe [2688720 2016-10-23] (Esumsoft)
HKU\S-1-5-21-1365893992-1965150912-503066826-1002\...\Run: [DellSystemDetect] => C:\Users\Petr\AppData\Local\Apps\2.0\O8ACTZN9.BAP\E6TYY72D.Z0Q\dell..tion_831211ca63b981c5_0008.0008_b150a6542eb950c1\DellSystemDetect.exe [314544 2017-10-30] (Dell)
HKU\S-1-5-21-1365893992-1965150912-503066826-1002\...\Policies\Explorer: [NoLowDiskSpaceChecks] 1
HKU\S-1-5-21-1365893992-1965150912-503066826-1002\...\Policies\Explorer: [HideSCAPower] 0
HKU\S-1-5-21-1365893992-1965150912-503066826-1006\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [519680 2017-09-29] (Microsoft Corporation)
HKU\S-1-5-21-1365893992-1965150912-503066826-500\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [519680 2017-09-29] (Microsoft Corporation)
Startup: C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\BatteryCare.lnk [2014-12-24]
ShortcutTarget: BatteryCare.lnk -> C:\Program Files (x86)\BatteryCare\BatteryCare.exe (Filipe Lourenço)
Startup: C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Sidebar213.lnk [2017-11-13]
ShortcutTarget: Sidebar213.lnk -> C:\Program Files\Windows Sidebar\sidebar.exe (Microsoft Corporation)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{c6d5181d-372b-4d7d-8683-c96f8e7b568d}: [DhcpNameServer] 192.168.1.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Local Page =
HKU\S-1-5-21-1365893992-1965150912-503066826-1002\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://dell13.msn.com/?pc=DCJB
SearchScopes: HKU\S-1-5-21-1365893992-1965150912-503066826-1002 -> {262F41F6-BE94-4AAE-9EAB-F67958DCF91F} URL =
SearchScopes: HKU\S-1-5-21-1365893992-1965150912-503066826-500 -> DefaultScope {262F41F6-BE94-4AAE-9EAB-F67958DCF91F} URL =
BHO: Kaspersky Protection -> {0E2877D3-2641-4970-B794-A553E295428D} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 18.0.0\x64\IEExt\ie_plugin.dll [2017-09-15] (AO Kaspersky Lab)
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre7\bin\ssv.dll [2014-10-04] (Oracle Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-10-04] (Oracle Corporation)
BHO-x32: Kaspersky Protection -> {0E2877D3-2641-4970-B794-A553E295428D} -> C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 18.0.0\IEExt\ie_plugin.dll [2017-09-15] (AO Kaspersky Lab)
BHO-x32: No Name -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> No File
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-19] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\ssv.dll [2017-11-08] (Oracle Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\jp2ssv.dll [2017-11-08] (Oracle Corporation)
Toolbar: HKLM - Kaspersky Protection Toolbar - {4853DF44-7D6B-48E9-9258-D800EEE54AF6} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 18.0.0\x64\IEExt\ie_plugin.dll [2017-09-15] (AO Kaspersky Lab)
Toolbar: HKLM-x32 - No Name - {553891B7-A0D5-4526-BE18-D3CE461D6310} - No File
Toolbar: HKLM-x32 - Kaspersky Protection Toolbar - {4853DF44-7D6B-48E9-9258-D800EEE54AF6} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 18.0.0\IEExt\ie_plugin.dll [2017-09-15] (AO Kaspersky Lab)
Toolbar: HKU\S-1-5-21-1365893992-1965150912-503066826-1002 -> No Name - {093F479D-712E-46CD-9E06-62E734A05F68} - No File
Toolbar: HKU\S-1-5-21-1365893992-1965150912-503066826-1002 -> Kaspersky Protection Toolbar - {4853DF44-7D6B-48E9-9258-D800EEE54AF6} - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 18.0.0\x64\IEExt\ie_plugin.dll [2017-09-15] (AO Kaspersky Lab)
Edge:
======
Edge HomeButtonPage: HKU\S-1-5-21-1365893992-1965150912-503066826-1002 -> hxxp://www.seznam.cz/
Edge Extension: (AutoFormFill) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [2017-09-29]
Edge Extension: (LearningTools) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\WINDOWS\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [2017-09-29]
FireFox:
========
FF DefaultProfile: 3d7o2k1l.default
FF ProfilePath: C:\Users\Petr\AppData\Roaming\TomTom\HOME\Profiles\jc89q29n.default [2016-06-13]
FF Extension: (Emulator) - C:\Users\Petr\AppData\Roaming\TomTom\HOME\Profiles\jc89q29n.default\Extensions\Navcore.9.170.734651@tomtom.com [2015-03-08] [not signed]
FF Extension: (No Name) - C:\Program Files (x86)\TomTom HOME 2\xul\extensions\MapShare-status@tomtom.com [not found]
FF ProfilePath: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\3d7o2k1l.default [2017-11-08]
FF Homepage: Mozilla\Firefox\Profiles\3d7o2k1l.default -> hxxp://www.seznam.cz/
FF Extension: (Check4Change) - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\3d7o2k1l.default\Extensions\check4change-owner@mozdev.org.xpi [2017-03-08]
FF Extension: (Google Translator for Firefox) - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\3d7o2k1l.default\Extensions\translator@zoli.bod.xpi [2017-03-08]
FF Extension: (Panel for WhatsApp web) - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\3d7o2k1l.default\Extensions\whatsapppanel@alejandrobrizuela.com.ar.xpi [2017-07-15]
FF Extension: (Flagfox) - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\3d7o2k1l.default\Extensions\{1018e4d6-728f-4b20-ad56-37578a4de76b}.xpi [2017-10-19]
FF Extension: (Adblock Plus) - C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\3d7o2k1l.default\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2017-06-14]
FF SearchPlugin: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\3d7o2k1l.default\searchplugins\hledejcenycz.xml [2015-08-29]
FF SearchPlugin: C:\Users\Petr\AppData\Roaming\Mozilla\Firefox\Profiles\3d7o2k1l.default\searchplugins\zbocz.xml [2015-02-28]
FF HKLM\...\Firefox\Extensions: [light_plugin_448EC0843447455C9DA355B3C2811D6A@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi
FF Extension: (Ochrana Kaspersky) - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi [2017-10-14]
FF HKLM-x32\...\Firefox\Extensions: [light_plugin_448EC0843447455C9DA355B3C2811D6A@kaspersky.com] - C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 18.0.0\FFExt\light_plugin_firefox\addon.xpi
FF Plugin: @adobe.com/FlashPlayer -> C:\WINDOWS\system32\Macromed\Flash\NPSWF64_27_0_0_183.dll [2017-10-25] ()
FF Plugin: @java.com/DTPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\dtplugin\npDeployJava1.dll [2014-10-04] (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.67.2 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll [2014-10-04] (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\Program Files\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @adobe.com/FlashPlayer -> C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_27_0_0_183.dll [2017-10-25] ()
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Programy PC\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2014-04-15] (Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Programy PC\Foxit Reader\plugins\npFoxitReaderPlugin.dll [2014-04-15] (Foxit Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.5 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel Corporation)
FF Plugin-x32: @java.com/DTPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\dtplugin\npDeployJava1.dll [2017-11-08] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.151.2 -> C:\Program Files (x86)\Java\jre1.8.0_151\bin\plugin2\npjp2.dll [2017-11-08] (Oracle Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50907.0\npctrl.dll [2017-05-03] ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\Program Files (x86)\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\MICROS~1\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3528.0331 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [2014-03-31] (Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.1.5 -> C:\Programy PC\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.0 -> C:\Programy PC\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.1 -> C:\Programy PC\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.4 -> C:\Programy PC\VLC\npvlc.dll [2017-05-24] (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.2.6 -> C:\Programy PC\VLC\npvlc.dll [2017-05-24] (VideoLAN)
Chrome:
=======
CHR DefaultProfile: Default
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR Session Restore: Default -> is enabled.
CHR Profile: C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default [2017-11-08]
CHR Extension: (Překladač Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2017-10-19]
CHR Extension: (Prezentace) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2017-10-13]
CHR Extension: (Dokumenty) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2017-10-13]
CHR Extension: (Disk Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2015-11-09]
CHR Extension: (YouTube) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2015-09-25]
CHR Extension: (Adblock Plus) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2017-09-26]
CHR Extension: (Vyhledávání Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2015-11-09]
CHR Extension: (Tabulky) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2017-10-13]
CHR Extension: (Dokumenty Google offline) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-04-29]
CHR Extension: (Ochrana Kaspersky) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\mchjnmdbdlkdbfliogedbnpnanfjnolk [2017-09-24]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2017-09-24]
CHR Extension: (Gmail) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2015-07-07]
CHR Extension: (Chrome Media Router) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2017-10-18]
CHR Profile: C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Guest Profile [2017-11-08]
CHR Profile: C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Profile 1 [2017-11-08]
CHR Extension: (Prezentace Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-04-29]
CHR Extension: (Dokumenty Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2016-04-29]
CHR Extension: (Disk Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-04-29]
CHR Extension: (YouTube) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-04-29]
CHR Extension: (Tabulky Google) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-04-29]
CHR Extension: (Dokumenty Google offline) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-04-29]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-04-29]
CHR Extension: (Gmail) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-04-29]
CHR Extension: (Chrome Media Router) - C:\Users\Petr\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-09-04]
CHR Profile: C:\Users\Petr\AppData\Local\Google\Chrome\User Data\System Profile [2017-11-08]
CHR HKLM\...\Chrome\Extension: [mchjnmdbdlkdbfliogedbnpnanfjnolk] - hxxps://chrome.google.com/webstore/detail/mchjnmdbdlkdbfliogedbnpnanfjnolk
CHR HKLM-x32\...\Chrome\Extension: [mchjnmdbdlkdbfliogedbnpnanfjnolk] - hxxps://chrome.google.com/webstore/detail/mchjnmdbdlkdbfliogedbnpnanfjnolk
Opera:
=======
OPR Extension: (Twitter Lite Sidebar) - C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\bjllhlminknjjkpjghebnacnfijmkdbp [2017-07-15]
OPR Extension: (Instagram Sidebar) - C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\eohmfcckophobpbeoncnmkeiellfclka [2017-07-15]
OPR Extension: (Blue Messenger) - C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\gdepjddlejcbndblelefhjbgphkiljah [2017-10-30]
OPR Extension: (WhatsApp Launcher) - C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\hagnfpbbhgmdlpfclekicpodfeoakino [2017-10-03]
OPR Extension: (Instagram™ Web) - C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\iifnbfabflciifjeokgkikkjiifbfbpn [2017-10-31]
OPR Extension: (Sidebar for YouTube™) - C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\ljkgfkfopogmclcinephnaeekjiikibd [2017-09-27]
OPR Extension: (Google™ Translator Sidebar) - C:\Users\Petr\AppData\Roaming\Opera Software\Opera Stable\Extensions\ogmklpmbehclccahgccdnhjipkmmjaom [2017-07-15]
StartMenuInternet: (HKLM) OperaStable - C:\Program Files\Opera\Launcher.exe
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AtherosSvc; C:\Program Files (x86)\Dell Wireless\Bluetooth Suite\adminservice.exe [323152 2015-06-07] (Windows (R) Win 7 DDK provider)
R2 AVP18.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 18.0.0\avp.exe [354672 2017-01-24] (AO Kaspersky Lab)
S3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [266240 2012-06-05] (Brother Industries, Ltd.) [File not signed]
R2 DDVCollectorSvcApi; C:\Program Files\Dell\DellDataVault\DDVCollectorSvcApi.exe [208760 2017-07-27] (Dell Inc.)
R2 DDVDataCollector; C:\Program Files\Dell\DellDataVault\DDVDataCollector.exe [3294584 2017-07-27] (Dell Inc.)
R2 DDVRulesProcessor; C:\Program Files\Dell\DellDataVault\DDVRulesProcessor.exe [217464 2017-07-27] (Dell Inc.)
R2 Dell Customer Connect; C:\Program Files (x86)\Dell Customer Connect\DCCService.exe [130936 2017-09-19] (Dell Inc.)
S3 DellProdRegManager; C:\Program Files (x86)\Dell Product Registration\regmgrsvc.exe [139328 2014-02-19] (Aviata, Inc.)
R2 DellUpdate; C:\Program Files (x86)\Dell Update\DellUpService.exe [230248 2017-05-01] (Dell Inc.)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusService.exe [1369464 2016-01-15] (Disc Soft Ltd)
R2 IAStorDataMgrSvc; C:\Program Files\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [15720 2013-08-30] (Intel Corporation)
R2 igfxCUIService2.0.0.0; C:\WINDOWS\system32\igfxCUIService.exe [382456 2017-02-16] (Intel Corporation)
S3 Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [881152 2015-05-22] (Intel(R) Corporation)
S3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
R2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed]
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [223008 2015-06-24] (Intel Corporation)
S3 klvssbridge64_18.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 18.0.0\x64\vssbridge64.exe [426416 2017-09-15] (AO Kaspersky Lab)
R2 KSDE2.0.0; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Secure Connection 2.0\ksde.exe [354672 2017-01-24] (AO Kaspersky Lab)
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\mbamservice.exe [6058960 2017-08-07] (Malwarebytes)
R2 NvNetworkService; C:\Program Files (x86)\NVIDIA Corporation\NetService\NvNetworkService.exe [1881144 2016-06-15] (NVIDIA Corporation)
S2 NvStreamSvc; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamService.exe [2522680 2016-06-15] (NVIDIA Corporation)
R2 RtkAudioService; C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe [320512 2017-01-11] (Realtek Semiconductor)
S2 SftService; C:\Program Files (x86)\Dell Backup and Recovery\sftservice.exe [2065808 2016-01-04] (SoftThinks SAS)
R2 SupportAssistAgent; C:\Program Files\Dell\SupportAssistAgent\bin\SupportAssistAgent.exe [53208 2017-09-22] (Dell Inc.)
S4 SynTPEnhService; C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe [263264 2017-02-16] (Synaptics Incorporated)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [355304 2017-09-29] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [105944 2017-09-29] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 athr; C:\WINDOWS\System32\drivers\athw10x.sys [4318760 2015-08-13] (Qualcomm Atheros Communications, Inc.)
R0 cm_km; C:\WINDOWS\System32\DRIVERS\cm_km.sys [247008 2016-12-26] (AO Kaspersky Lab)
R3 DDDriver; C:\WINDOWS\system32\drivers\DDDriver64Dcsa.sys [32960 2017-07-27] (Dell Inc.)
R3 DellProf; C:\WINDOWS\system32\drivers\DellProf.sys [32568 2017-07-27] (Dell Computer Corporation)
R3 DellRbtn; C:\WINDOWS\System32\drivers\DellRbtn.sys [10752 2013-01-25] (OSR Open Systems Resources, Inc.)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2016-01-17] (Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2016-01-17] (Disc Soft Ltd)
S3 ggsomc; C:\WINDOWS\System32\drivers\ggsomc.sys [30424 2015-08-24] (Sony Mobile Communications)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [26528 2015-01-28] (REALiX(tm))
R0 kl1; C:\WINDOWS\System32\DRIVERS\kl1.sys [554408 2016-10-01] (AO Kaspersky Lab)
R0 klbackupdisk; C:\WINDOWS\System32\DRIVERS\klbackupdisk.sys [70872 2017-10-14] (AO Kaspersky Lab)
R1 klbackupflt; C:\WINDOWS\System32\DRIVERS\klbackupflt.sys [89952 2017-10-14] (AO Kaspersky Lab)
R2 kldisk; C:\WINDOWS\system32\DRIVERS\kldisk.sys [78216 2016-05-31] (AO Kaspersky Lab)
S0 klelam; C:\WINDOWS\System32\DRIVERS\klelam.sys [29816 2016-10-14] (AO Kaspersky Lab)
R3 klflt; C:\WINDOWS\system32\DRIVERS\klflt.sys [207576 2017-10-14] (AO Kaspersky Lab)
R1 klhk; C:\WINDOWS\System32\drivers\klhk.sys [594144 2017-10-14] (AO Kaspersky Lab)
R3 klids; C:\ProgramData\Kaspersky Lab\AVP18.0.0\Bases\klids.sys [186184 2017-10-25] (AO Kaspersky Lab)
R1 KLIF; C:\WINDOWS\System32\DRIVERS\klif.sys [1055448 2017-10-14] (AO Kaspersky Lab)
R1 KLIM6; C:\WINDOWS\system32\DRIVERS\klim6.sys [57424 2016-10-12] (AO Kaspersky Lab)
R3 klkbdflt; C:\WINDOWS\system32\DRIVERS\klkbdflt.sys [57056 2016-12-23] (AO Kaspersky Lab)
R3 klmouflt; C:\WINDOWS\system32\DRIVERS\klmouflt.sys [58592 2016-12-07] (AO Kaspersky Lab)
R1 klpd; C:\WINDOWS\System32\DRIVERS\klpd.sys [50672 2017-06-20] (AO Kaspersky Lab)
S3 klpnpflt; C:\WINDOWS\system32\DRIVERS\klpnpflt.sys [44768 2017-01-20] (AO Kaspersky Lab)
R3 kltap; C:\WINDOWS\System32\drivers\kltap.sys [52152 2016-06-07] (The OpenVPN Project)
R0 klupd_klif_arkmon; C:\WINDOWS\System32\Drivers\klupd_klif_arkmon.sys [229288 2017-07-04] (AO Kaspersky Lab)
R3 klupd_klif_kimul; C:\WINDOWS\System32\Drivers\klupd_klif_kimul.sys [87584 2017-11-11] (AO Kaspersky Lab)
S3 klupd_klif_klark; C:\WINDOWS\System32\Drivers\klupd_klif_klark.sys [251656 2017-07-04] (AO Kaspersky Lab)
R0 klupd_klif_klbg; C:\WINDOWS\System32\Drivers\klupd_klif_klbg.sys [112912 2017-07-04] (AO Kaspersky Lab)
R3 klupd_klif_mark; C:\WINDOWS\System32\Drivers\klupd_klif_mark.sys [173144 2017-07-04] (AO Kaspersky Lab)
R1 klwfp; C:\WINDOWS\system32\DRIVERS\klwfp.sys [93920 2016-12-20] (AO Kaspersky Lab)
R1 Klwtp; C:\WINDOWS\system32\DRIVERS\klwtp.sys [136176 2017-06-20] (AO Kaspersky Lab)
R1 kneps; C:\WINDOWS\system32\DRIVERS\kneps.sys [199360 2017-06-20] (AO Kaspersky Lab)
S3 mfencrk; C:\WINDOWS\system32\DRIVERS\mfencrk.sys [96592 2014-08-20] (McAfee, Inc.)
R2 NPF; C:\WINDOWS\system32\drivers\npf.sys [35344 2014-11-29] (CACE Technologies, Inc.)
R3 nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvdmi.inf_amd64_86f2ae812568c59a\nvlddmkm.sys [14242872 2016-09-20] (NVIDIA Corporation)
S3 NvStreamKms; C:\Program Files\NVIDIA Corporation\NvStreamSrv\NvStreamKms.sys [28216 2016-06-15] (NVIDIA Corporation)
R3 nvvad_WaveExtensible; C:\WINDOWS\system32\drivers\nvvad64v.sys [56384 2016-04-14] (NVIDIA Corporation)
R3 rt640x64; C:\WINDOWS\System32\drivers\rt640x64.sys [896744 2015-08-13] (Realtek )
R3 RTSUER; C:\WINDOWS\system32\Drivers\RtsUer.sys [402960 2015-05-14] (Realsil Semiconductor Corporation)
R3 SmbDrvI; C:\WINDOWS\system32\DRIVERS\Smb_driver_Intel.sys [31472 2015-01-31] (Synaptics Incorporated)
R3 SynRMIHID; C:\WINDOWS\system32\DRIVERS\SynRMIHID.sys [66136 2017-02-16] (Synaptics Incorporated)
R3 t_mouse.sys; C:\WINDOWS\system32\DRIVERS\t_mouse.sys [6144 2013-04-09] ()
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [44608 2017-09-29] (Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [309144 2017-09-29] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [119192 2017-09-29] (Microsoft Corporation)
R3 WinRing0_1_2_0; C:\Program Files (x86)\BatteryCare\WinRing0x64.sys [14544 2008-07-26] (OpenLibSys.org)
S3 AthBTPort; \SystemRoot\system32\DRIVERS\btath_flt.sys [X]
S3 BTATH_A2DP; \SystemRoot\system32\drivers\btath_a2dp.sys [X]
S3 btath_avdt; \SystemRoot\system32\drivers\btath_avdt.sys [X]
S3 BTATH_BUS; \SystemRoot\System32\drivers\btath_bus.sys [X]
S3 BTATH_HCRP; \SystemRoot\System32\drivers\btath_hcrp.sys [X]
S3 BTATH_LWFLT; \SystemRoot\system32\DRIVERS\btath_lwflt.sys [X]
S3 BTATH_RCP; \SystemRoot\System32\drivers\btath_rcp.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-11-13 16:30 - 2017-11-13 16:33 - 000032985 _____ C:\Users\Petr\Desktop\FRST.txt
2017-11-13 16:30 - 2017-11-13 16:30 - 000000000 ____D C:\FRST
2017-11-13 16:28 - 2017-11-13 16:28 - 002392576 _____ (Farbar) C:\Users\Petr\Desktop\FRST64.exe
2017-11-13 16:17 - 2017-11-13 16:17 - 000222328 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2017-11-13 16:17 - 2017-11-13 16:17 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2017-11-12 17:47 - 2017-11-12 17:47 - 000003401 _____ C:\Users\Petr\Downloads\dell-ui-bootstrap.less
2017-11-11 16:34 - 2017-11-11 16:34 - 000087584 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_kimul.sys
2017-11-09 21:00 - 2017-11-10 23:56 - 000003258 _____ C:\WINDOWS\System32\Tasks\PCDoctorBackgroundMonitorTask-Retry
2017-11-08 14:33 - 2017-11-08 14:32 - 000097856 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2017-11-08 14:33 - 2014-10-04 21:08 - 000111016 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-64.dll
2017-11-08 14:31 - 2017-11-08 14:31 - 000000000 ____D C:\Users\Petr\AppData\Roaming\Sun
2017-11-07 15:13 - 2017-11-07 15:13 - 000003358 _____ C:\WINDOWS\System32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1365893992-1965150912-503066826-1002
2017-11-07 15:12 - 2017-11-07 15:12 - 000002425 _____ C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2017-11-06 23:23 - 2017-11-06 23:23 - 000000000 ____D C:\Users\Petr\AppData\Roaming\VS Revo Group
2017-11-06 22:55 - 2017-11-06 22:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2017-11-06 22:55 - 2017-11-06 22:55 - 000000000 ____D C:\Program Files\VS Revo Group
2017-11-06 16:25 - 2017-11-06 16:25 - 000043082 _____ C:\Users\Petr\Desktop\DPD - Objednávka přepravy pro Asus.pdf
2017-11-04 21:00 - 2017-11-04 21:00 - 000000000 ____D C:\Users\Petr\AppData\Local\VirtualDJ
2017-11-02 23:23 - 2017-11-02 23:23 - 000744965 _____ C:\Users\Petr\Downloads\foto tablet asus .pdf
2017-10-30 12:20 - 2017-10-30 12:22 - 000000000 ____D C:\Users\Petr\AppData\Local\Deployment
2017-10-27 23:43 - 2017-10-27 23:43 - 000003938 _____ C:\WINDOWS\System32\Tasks\CCleaner Update
2017-10-27 11:10 - 2017-10-27 11:10 - 000000000 ____D C:\Program Files\Common Files\QCA_Bluetooth
2017-10-27 11:02 - 2015-06-07 20:15 - 000011406 ____N C:\WINDOWS\system32\athw10x.cat
2017-10-27 11:02 - 2015-05-17 22:33 - 004301304 ____N (Qualcomm Atheros Communications, Inc.) C:\WINDOWS\system32\athw10x.sys
2017-10-27 11:02 - 2014-05-13 20:07 - 000060416 ____N (Atheros) C:\WINDOWS\system32\athihvui.dll
2017-10-27 11:02 - 2014-05-13 20:06 - 000440320 ____N (Atheros) C:\WINDOWS\system32\athihvs.dll
2017-10-27 10:55 - 2017-11-12 17:55 - 000000074 _____ C:\WINDOWS\SysWOW64\SmartFlow.txt
2017-10-27 10:08 - 2017-10-27 10:08 - 000000000 ____D C:\ProgramData\PC-Doctor for Windows
2017-10-27 10:07 - 2017-10-27 10:07 - 000000000 ____D C:\Program Files\Dell Support Center
2017-10-27 09:43 - 2017-10-27 09:43 - 000004110 _____ C:\WINDOWS\System32\Tasks\PCDoctorBackgroundMonitorTask
2017-10-27 09:43 - 2017-10-27 09:43 - 000003398 _____ C:\WINDOWS\System32\Tasks\PCDDataUploadTask
2017-10-27 09:42 - 2017-10-27 09:42 - 000003282 _____ C:\WINDOWS\System32\Tasks\SystemToolsDailyTest
2017-10-26 23:07 - 2017-10-26 23:07 - 002001526 _____ (NOVERIA online) C:\Users\Petr\Downloads\kontrola.exe
2017-10-22 23:35 - 2017-10-22 23:35 - 007539203 _____ C:\Users\Petr\Desktop\zalozky_23.10.17.html
2017-10-22 21:52 - 2017-10-23 10:46 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes
2017-10-22 21:52 - 2017-10-22 21:52 - 000000000 ____D C:\Program Files\Malwarebytes
2017-10-22 21:52 - 2017-10-04 12:15 - 000077440 _____ C:\WINDOWS\system32\Drivers\mbae64.sys
2017-10-22 21:51 - 2017-10-22 21:51 - 000000000 ____D C:\ProgramData\MB2Migration
2017-10-22 09:23 - 2017-10-22 09:23 - 000503498 _____ C:\Users\Petr\Downloads\1910351-ii._us_795_16_na_web.pdf
2017-10-22 09:23 - 2017-10-22 09:23 - 000000000 ___HD C:\Users\Petr\MicrosoftEdgeBackups
2017-10-20 08:47 - 2017-10-23 10:46 - 000000000 ____D C:\Program Files (x86)\Dell Customer Connect
2017-10-20 08:47 - 2017-10-20 08:47 - 000000000 ____D C:\WINDOWS\SysWOW64\Dell
2017-10-18 14:48 - 2017-10-18 14:48 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2017-10-18 14:47 - 2017-11-01 21:09 - 000000000 ____D C:\Windows.old
2017-10-18 14:37 - 2017-10-18 14:37 - 000000020 ___SH C:\Users\Petr\ntuser.ini
2017-10-18 14:31 - 2017-10-18 14:33 - 000015243 _____ C:\WINDOWS\diagwrn.xml
2017-10-18 14:31 - 2017-10-18 14:33 - 000015243 _____ C:\WINDOWS\diagerr.xml
2017-10-18 14:30 - 2017-10-27 09:43 - 000003560 _____ C:\WINDOWS\System32\Tasks\PCDEventLauncherTask
2017-10-18 14:30 - 2017-10-25 19:00 - 000004470 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player Updater
2017-10-18 14:30 - 2017-10-18 14:30 - 000003256 _____ C:\WINDOWS\System32\Tasks\Dell SupportAssistAgent AutoUpdate
2017-10-18 14:30 - 2017-10-18 14:30 - 000002336 _____ C:\WINDOWS\System32\Tasks\{48E15EE3-DFE4-4790-8CC2-87487156F528}
2017-10-18 14:30 - 2017-10-18 14:30 - 000002308 _____ C:\WINDOWS\System32\Tasks\{C4AB70AB-9FE1-4BA9-9B94-A1A62C83F06F}
2017-10-18 14:30 - 2017-10-18 14:30 - 000002274 _____ C:\WINDOWS\System32\Tasks\{D21C26ED-0D39-491A-93A3-FBBE58318DF4}
2017-10-18 14:30 - 2017-10-18 14:30 - 000002242 _____ C:\WINDOWS\System32\Tasks\{F6A05D8E-F41A-4709-B2DB-9085A0487D6B}
2017-10-18 14:30 - 2017-10-18 14:30 - 000002234 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2017-10-18 14:30 - 2017-10-18 14:30 - 000002220 _____ C:\WINDOWS\System32\Tasks\Driver Booster SkipUAC (Petr)
2017-10-18 14:30 - 2017-10-18 14:30 - 000000000 ____D C:\WINDOWS\System32\Tasks\OfficeSoftwareProtectionPlatform
2017-10-18 14:29 - 2017-11-13 16:17 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2017-10-18 14:29 - 2017-10-27 10:50 - 000003942 _____ C:\WINDOWS\System32\Tasks\Opera scheduled Autoupdate 1499726770
2017-10-18 14:29 - 2017-10-25 19:01 - 000004600 _____ C:\WINDOWS\System32\Tasks\Adobe Flash Player PPAPI Notifier
2017-10-18 14:29 - 2017-10-18 14:29 - 000002692 _____ C:\WINDOWS\System32\Tasks\Maxthon Update
2017-10-18 14:29 - 2017-10-18 14:29 - 000002660 _____ C:\WINDOWS\System32\Tasks\BatteryCareAuto
2017-10-18 14:29 - 2017-10-18 14:29 - 000002464 _____ C:\WINDOWS\System32\Tasks\Game_Booster_AutoUpdate
2017-10-18 14:29 - 2017-10-18 14:29 - 000002304 _____ C:\WINDOWS\System32\Tasks\RtHDVBg_PushButton
2017-10-18 14:29 - 2017-10-18 14:29 - 000002254 _____ C:\WINDOWS\System32\Tasks\Synaptics TouchPad Enhancements
2017-10-18 14:29 - 2017-10-18 14:29 - 000002242 _____ C:\WINDOWS\System32\Tasks\{4C7D4F7D-4B79-451E-BAFD-86B2B36ACB7C}
2017-10-18 14:29 - 2017-10-18 14:29 - 000000000 ____D C:\WINDOWS\System32\Tasks\WPD
2017-10-18 14:29 - 2017-10-18 14:29 - 000000000 ____D C:\WINDOWS\System32\Tasks\Dell
2017-10-18 14:22 - 2017-11-13 16:24 - 002326998 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2017-10-18 14:12 - 2017-10-18 14:12 - 000001576 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2017-10-18 14:07 - 2017-10-18 14:07 - 000000000 ____D C:\ProgramData\USOShared
2017-10-18 14:05 - 2017-10-27 09:50 - 000000000 ____D C:\Users\Petr\AppData\Local\Packages
2017-10-18 14:04 - 2017-11-13 16:15 - 000000000 ____D C:\Users\Petr
2017-10-18 14:04 - 2017-10-18 14:23 - 000000000 ____D C:\Users\sipet_000
2017-10-18 14:04 - 2017-10-18 14:22 - 000000000 ____D C:\Users\Administrator
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\sipet_000\Šablony
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\sipet_000\Soubory cookie
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\sipet_000\Poslední
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\sipet_000\Okolní tiskárny
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\sipet_000\Okolní síť
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\sipet_000\Nabídka Start
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\sipet_000\Dokumenty
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\sipet_000\Documents\Obrázky
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\sipet_000\Documents\Hudba
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\sipet_000\Documents\Filmy
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\sipet_000\Data aplikací
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\sipet_000\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\sipet_000\AppData\Local\Data aplikací
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Petr\Šablony
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Petr\Soubory cookie
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Petr\Poslední
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Petr\Okolní tiskárny
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Petr\Okolní síť
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Petr\Nabídka Start
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Petr\Dokumenty
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Petr\Documents\Obrázky
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Petr\Documents\Hudba
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Petr\Documents\Filmy
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Petr\Data aplikací
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Petr\AppData\Local\Data aplikací
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Administrator\Šablony
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Administrator\Soubory cookie
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Administrator\Poslední
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Administrator\Okolní tiskárny
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Administrator\Okolní síť
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Administrator\Nabídka Start
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Administrator\Dokumenty
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Administrator\Documents\Obrázky
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Administrator\Documents\Hudba
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Administrator\Documents\Filmy
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Administrator\Data aplikací
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2017-10-18 14:04 - 2017-10-18 14:04 - 000000000 _SHDL C:\Users\Administrator\AppData\Local\Data aplikací
2017-10-18 14:00 - 2017-10-18 14:00 - 000000000 ____D C:\Program Files\Waves
2017-10-18 13:59 - 2017-09-29 14:41 - 002241024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2017-10-18 13:58 - 2017-02-16 00:21 - 000112656 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.DLL
2017-10-18 13:58 - 2017-02-16 00:21 - 000108560 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.DLL
2017-10-18 13:55 - 2017-11-13 16:03 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2017-10-18 12:58 - 2017-10-14 12:37 - 001055448 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klif.sys
2017-10-18 12:58 - 2017-10-14 12:37 - 000207576 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klflt.sys
2017-10-18 12:58 - 2017-10-14 12:36 - 000089952 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klbackupflt.sys
2017-10-18 12:58 - 2017-10-14 12:36 - 000070872 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klbackupdisk.sys
2017-10-18 12:58 - 2017-07-04 10:13 - 000251656 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klark.sys
2017-10-18 12:58 - 2017-07-04 10:11 - 000229288 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_arkmon.sys
2017-10-18 12:58 - 2017-07-04 10:11 - 000173144 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_mark.sys
2017-10-18 12:58 - 2017-07-04 10:11 - 000112912 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klupd_klif_klbg.sys
2017-10-18 12:58 - 2017-06-20 19:43 - 000199360 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\kneps.sys
2017-10-18 12:58 - 2017-06-20 19:43 - 000136176 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klwtp.sys
2017-10-18 12:58 - 2017-06-20 19:43 - 000050672 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klpd.sys
2017-10-18 12:58 - 2017-01-20 12:22 - 000044768 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klpnpflt.sys
2017-10-18 12:58 - 2016-12-26 19:27 - 000247008 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\cm_km.sys
2017-10-18 12:58 - 2016-12-23 08:20 - 000057056 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klkbdflt.sys
2017-10-18 12:58 - 2016-12-20 16:51 - 000093920 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klwfp.sys
2017-10-18 12:58 - 2016-12-07 08:30 - 000058592 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klmouflt.sys
2017-10-18 12:58 - 2016-10-14 01:44 - 000029816 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klelam.sys
2017-10-18 12:58 - 2016-10-01 01:26 - 000554408 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\kl1.sys
2017-10-18 12:58 - 2016-05-31 22:24 - 000078216 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\kldisk.sys
2017-10-18 12:51 - 2017-10-18 14:47 - 000000000 ____D C:\WINDOWS\system32\config\bbimigrate
2017-10-18 12:42 - 2017-10-18 12:51 - 000000000 ____D C:\WINDOWS\ServiceProfiles
2017-10-18 12:34 - 2017-10-18 12:34 - 025246208 _____ (Microsoft Corporation) C:\WINDOWS\system32\edgehtml.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 023664128 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 021752832 _____ (Microsoft Corporation) C:\WINDOWS\system32\Hydrogen.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 019343360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 018913792 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\edgehtml.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 017080832 _____ (Microsoft Corporation) C:\WINDOWS\system32\HologramCompositor.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 008592280 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2017-10-18 12:34 - 2017-10-18 12:34 - 008097792 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakra.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 006032896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakra.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 005906264 _____ (Microsoft Corporation) C:\WINDOWS\system32\StartTileData.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 004744192 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 003681280 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 003672064 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kfull.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 003334144 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 003312432 _____ C:\WINDOWS\system32\Windows.Mirage.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 002905600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\win32kfull.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 002869248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 002573208 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dxgkrnl.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 002474080 _____ C:\WINDOWS\SysWOW64\Windows.Mirage.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 002400664 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ntfs.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 002106880 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32kbase.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 001856000 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 001822208 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 001664000 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 001641536 _____ (Microsoft Corporation) C:\WINDOWS\system32\gdi32full.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 001633744 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 001587200 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 001559552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 001554216 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinapi.appcore.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 001547264 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 001528912 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 001470976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 001463856 _____ (Microsoft Corporation) C:\WINDOWS\system32\msctf.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 001436432 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\gdi32full.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 001323840 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msctf.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 001261864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinapi.appcore.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 001200024 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvix64.exe
2017-10-18 12:34 - 2017-10-18 12:34 - 001165824 _____ (Microsoft Corporation) C:\WINDOWS\system32\ISM.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 001053592 _____ (Microsoft Corporation) C:\WINDOWS\system32\hvax64.exe
2017-10-18 12:34 - 2017-10-18 12:34 - 000925184 _____ (Microsoft Corporation) C:\WINDOWS\system32\MPSSVC.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000812032 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\system32\fontdrvhost.exe
2017-10-18 12:34 - 2017-10-18 12:34 - 000769024 _____ (Microsoft Corporation) C:\WINDOWS\system32\PCPKsp.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000739696 _____ (Microsoft Corporation) C:\WINDOWS\system32\dnsapi.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000726016 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv2.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 000708096 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000677280 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 000665088 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmCoreProvisioning.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000664576 _____ (Microsoft Corporation) C:\WINDOWS\system32\DHolographicDisplay.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000649304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\fontdrvhost.exe
2017-10-18 12:34 - 2017-10-18 12:34 - 000640512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mswstr10.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000597160 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dnsapi.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000591872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PCPKsp.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000566272 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TpmCoreProvisioning.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000559000 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storport.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 000542208 _____ (Microsoft Corporation) C:\WINDOWS\system32\FirewallAPI.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000538624 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicExtensions.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000529408 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\nwifi.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 000478208 _____ (Microsoft Corporation) C:\WINDOWS\system32\NgcCtnr.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000464416 _____ (Microsoft Corporation) C:\WINDOWS\system32\bcryptprimitives.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000461312 _____ (Microsoft Corporation) C:\WINDOWS\system32\wlansec.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000442880 _____ (Microsoft Corporation) C:\WINDOWS\system32\cryptngc.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000422912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\srv.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 000418712 _____ (Microsoft Corporation) C:\WINDOWS\system32\msv1_0.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000374784 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FirewallAPI.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000373656 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\clfs.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 000353688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msv1_0.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000345088 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msexcl40.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000336896 _____ (Microsoft Corporation) C:\WINDOWS\system32\HolographicRuntimes.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000326144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\cryptngc.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000285696 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb10.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 000246168 _____ (Microsoft Corporation) C:\WINDOWS\system32\browserbroker.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000232344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb20.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 000184984 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspicli.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000177664 _____ (Microsoft Corporation) C:\WINDOWS\system32\t2embed.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Chakradiag.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000139672 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecdd.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 000136192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\t2embed.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000123520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\sspicli.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Chakradiag.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000086016 _____ (Microsoft Corporation) C:\WINDOWS\system32\XblAuthTokenBrokerExt.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000070656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\XblAuthTokenBrokerExt.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000060824 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\urscx01000.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 000058880 _____ (Microsoft Corporation) C:\WINDOWS\system32\TpmTasks.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000057344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\UcmUcsi.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 000045976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\storufs.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 000034816 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\BasicRender.sys
2017-10-18 12:34 - 2017-10-18 12:34 - 000028672 _____ (Microsoft Corporation) C:\WINDOWS\system32\sspisrv.dll
2017-10-18 12:34 - 2017-10-18 12:34 - 000008704 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msjint40.dll
2017-10-18 12:11 - 2017-10-18 14:47 - 000000000 ____D C:\Program Files (x86)\MSBuild
2017-10-18 12:11 - 2017-10-18 12:11 - 000000000 ____D C:\WINDOWS\SysWOW64\XPSViewer
2017-10-18 12:11 - 2017-10-18 12:11 - 000000000 ____D C:\Program Files\Reference Assemblies
2017-10-18 12:11 - 2017-10-18 12:11 - 000000000 ____D C:\Program Files\MSBuild
2017-10-18 12:11 - 2017-10-18 12:11 - 000000000 ____D C:\Program Files (x86)\Reference Assemblies
2017-10-18 12:09 - 2017-10-18 12:09 - 001166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2017-10-18 12:09 - 2017-10-18 12:09 - 000778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2017-10-18 12:09 - 2017-10-18 12:09 - 000124624 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2017-10-18 12:09 - 2017-10-18 12:09 - 000103120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2017-10-18 12:09 - 2017-10-18 12:09 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2017-10-18 12:09 - 2017-10-18 12:09 - 000035456 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2017-10-18 11:36 - 2017-10-18 11:36 - 000008192 _____ C:\WINDOWS\system32\config\userdiff
2017-10-17 22:49 - 2017-10-27 10:46 - 000000000 ___DC C:\WINDOWS\Panther
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2017-11-13 16:32 - 2014-12-17 14:33 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2017-11-13 16:29 - 2014-10-02 20:51 - 000000000 ____D C:\ProgramData\softthinks
2017-11-13 16:28 - 2014-06-09 14:44 - 000000000 ____D C:\Program Files (x86)\Dell Backup and Recovery
2017-11-13 16:24 - 2017-09-30 15:31 - 001037070 _____ C:\WINDOWS\system32\perfh005.dat
2017-11-13 16:24 - 2017-09-30 15:31 - 000235246 _____ C:\WINDOWS\system32\perfc005.dat
2017-11-13 16:19 - 2014-10-22 12:09 - 000000000 ____D C:\Program Files (x86)\Steam
2017-11-13 16:18 - 2015-11-24 20:09 - 000000000 __SHD C:\Users\Petr\IntelGraphicsProfiles
2017-11-13 16:16 - 2017-09-29 09:45 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2017-11-13 00:11 - 2014-12-24 16:35 - 000000000 ____D C:\Users\Petr\AppData\Roaming\BatteryCare
2017-11-12 17:46 - 2017-09-29 14:46 - 000000000 ___HD C:\Program Files\WindowsApps
2017-11-12 17:46 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\DeliveryOptimization
2017-11-12 17:46 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\AppReadiness
2017-11-11 16:25 - 2014-10-21 20:19 - 000000000 ____D C:\Users\Petr\Documents\Euro Truck Simulator 2
2017-11-08 14:33 - 2014-10-04 21:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2017-11-08 14:31 - 2014-10-07 17:23 - 000000000 ____D C:\Program Files (x86)\Java
2017-11-07 18:41 - 2014-12-03 21:04 - 000000000 ____D C:\ProgramData\PCDr
2017-11-07 18:41 - 2014-09-05 11:30 - 000000000 __RDL C:\Users\Petr\OneDrive
2017-11-07 15:42 - 2014-10-13 14:38 - 000000000 ____D C:\Program Files (x86)\VirtualDJ
2017-11-07 15:33 - 2014-09-05 20:08 - 000000000 ____D C:\Users\Petr\Desktop\multimedia
2017-11-07 00:20 - 2014-10-23 15:04 - 000000000 ____D C:\Users\Petr\AppData\Roaming\TS3Client
2017-11-06 23:44 - 2017-09-29 14:44 - 000000000 ____D C:\WINDOWS\INF
2017-11-06 23:36 - 2014-09-05 20:08 - 000000000 ___RD C:\Users\Petr\Desktop\bezpečnost
2017-11-06 23:30 - 2017-03-25 15:55 - 000000000 ____D C:\Users\Petr\AppData\Local\Foxit Reader
2017-10-30 14:22 - 2014-09-05 11:29 - 000000000 ____D C:\Users\Petr\Documents\Bluetooth Folder
2017-10-29 16:38 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\NDF
2017-10-27 23:45 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2017-10-27 23:41 - 2014-10-02 21:55 - 000000000 ____D C:\Program Files\CCleaner
2017-10-27 11:15 - 2014-06-09 14:27 - 000000000 ____D C:\Program Files (x86)\Intel
2017-10-27 11:14 - 2017-05-12 21:04 - 000000000 ____D C:\Program Files\Intel
2017-10-27 11:14 - 2014-06-09 14:28 - 000000000 ____D C:\ProgramData\Intel
2017-10-27 11:13 - 2014-10-07 16:47 - 000000000 ____D C:\Users\Petr\AppData\LocalLow\Intel
2017-10-27 11:11 - 2014-06-09 14:29 - 000000000 ____D C:\Program Files (x86)\Dell Wireless
2017-10-27 11:02 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\nn-NO
2017-10-27 10:56 - 2015-02-09 09:58 - 000000000 ____D C:\ProgramData\Package Cache
2017-10-27 10:50 - 2017-07-10 23:31 - 000000000 ____D C:\Program Files\Opera
2017-10-27 10:49 - 2017-07-10 23:32 - 000001080 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2017-10-27 10:08 - 2014-06-09 14:38 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2017-10-25 21:52 - 2014-12-09 09:28 - 000000000 ____D C:\Users\Petr\AppData\Local\ElevatedDiagnostics
2017-10-25 19:01 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\Macromed
2017-10-25 19:00 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\Macromed
2017-10-23 17:21 - 2014-10-14 14:54 - 000000000 ____D C:\Program Files (x86)\Google
2017-10-23 14:26 - 2016-12-17 14:08 - 000000000 ____D C:\ProgramData\TruckersMP
2017-10-23 10:46 - 2016-12-19 10:22 - 000000000 ____D C:\Users\Petr\AppData\Roaming\POP Peeper
2017-10-23 10:46 - 2014-10-02 20:59 - 000000000 ____D C:\Users\Petr\AppData\Roaming\Rainmeter
2017-10-23 10:45 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2017-10-23 10:45 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2017-10-23 10:45 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\rescache
2017-10-23 10:45 - 2017-09-29 09:45 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2017-10-23 10:02 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\registration
2017-10-23 09:24 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\appcompat
2017-10-22 21:52 - 2014-10-13 18:34 - 000000000 ____D C:\ProgramData\Malwarebytes
2017-10-20 12:48 - 2016-11-18 14:12 - 000000000 ____D C:\Program Files\Mozilla Firefox
2017-10-20 12:48 - 2014-10-02 20:55 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2017-10-19 16:26 - 2017-09-29 14:37 - 000000000 ____D C:\WINDOWS\CbsTemp
2017-10-18 14:54 - 2017-09-29 14:46 - 000028672 _____ C:\WINDOWS\system32\config\BCD-Template
2017-10-18 14:48 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\spool
2017-10-18 14:48 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\oobe
2017-10-18 14:48 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\InputMethod
2017-10-18 14:48 - 2015-10-30 19:35 - 000000000 ____D C:\WINDOWS\ShellNew
2017-10-18 14:48 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Shared
2017-10-18 14:48 - 2013-08-22 16:36 - 000000000 ____D C:\WINDOWS\system32\WindowsInternal.Inbox.Media.Shared
2017-10-18 14:47 - 2017-09-29 14:49 - 000000000 ____D C:\WINDOWS\Setup
2017-10-18 14:47 - 2017-09-29 14:46 - 000000000 __SHD C:\Program Files\Windows Sidebar
2017-10-18 14:47 - 2017-09-29 14:46 - 000000000 __SHD C:\Program Files (x86)\Windows Sidebar
2017-10-18 14:47 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\InputMethod
2017-10-18 14:47 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\Help
2017-10-18 14:47 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2017-10-18 14:47 - 2017-09-15 16:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Secure Connection
2017-10-18 14:47 - 2017-09-15 16:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Kaspersky Internet Security
2017-10-18 14:47 - 2017-05-11 19:01 - 000000000 ____D C:\Program Files\UNP
2017-10-18 14:47 - 2016-10-16 21:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TrucksBook Client
2017-10-18 14:47 - 2016-10-03 17:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maxthon Cloud Browser
2017-10-18 14:47 - 2016-02-09 12:34 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TruckersMP
2017-10-18 14:47 - 2016-01-17 15:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Farming Simulator 2013
2017-10-18 14:47 - 2016-01-17 11:29 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Lite
2017-10-18 14:47 - 2015-09-28 23:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Jpeg Resampler 2010
2017-10-18 14:47 - 2015-04-27 19:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Miranda NG x64
2017-10-18 14:47 - 2015-04-14 17:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
2017-10-18 14:47 - 2015-04-01 15:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\7-Zip
2017-10-18 14:47 - 2015-03-02 18:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HD Tune
2017-10-18 14:47 - 2015-02-08 16:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FairStars Audio Converter
2017-10-18 14:47 - 2015-01-26 12:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TomTom
2017-10-18 14:47 - 2014-12-24 16:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BatteryCare
2017-10-18 14:47 - 2014-11-02 22:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2017-10-18 14:47 - 2014-11-02 09:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SharePoint
2017-10-18 14:47 - 2014-11-02 09:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office
2017-10-18 14:47 - 2014-10-23 15:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
2017-10-18 14:47 - 2014-10-22 12:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2017-10-18 14:47 - 2014-10-21 20:08 - 000000000 ____D C:\WINDOWS\cs
2017-10-18 14:47 - 2014-10-07 19:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Defraggler
2017-10-18 14:47 - 2014-10-03 20:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2017-10-18 14:47 - 2014-10-03 11:30 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\8GadgetPack
2017-10-18 14:47 - 2014-10-02 21:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2017-10-18 14:47 - 2014-06-09 14:34 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2017-10-18 14:38 - 2016-02-11 21:21 - 000000000 ___RD C:\Users\Petr\3D Objects
2017-10-18 14:38 - 2015-09-10 06:43 - 000000000 __RHD C:\Users\Public\AccountPictures
2017-10-18 14:35 - 2017-09-29 14:46 - 000000000 ____D C:\Program Files\windows nt
2017-10-18 14:34 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2017-10-18 14:30 - 2015-11-24 20:02 - 000023020 _____ C:\WINDOWS\system32\emptyregdb.dat
2017-10-18 14:29 - 2017-09-29 14:46 - 000000000 __RHD C:\Users\Public\Libraries
2017-10-18 14:17 - 2017-05-12 21:06 - 000000000 ____D C:\ProgramData\NVIDIA
2017-10-18 14:15 - 2017-05-18 22:06 - 000000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Dell
2017-10-18 14:15 - 2016-12-19 10:21 - 000000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\POP Peeper
2017-10-18 14:15 - 2016-12-05 19:25 - 000000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chromium
2017-10-18 14:15 - 2015-04-27 19:26 - 000000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ICQ
2017-10-18 14:15 - 2015-03-25 18:43 - 000000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\rFactor 2
2017-10-18 14:15 - 2014-10-13 14:38 - 000000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ
2017-10-18 14:07 - 2017-09-29 14:46 - 000000000 ____D C:\ProgramData\USOPrivate
2017-10-18 14:07 - 2014-10-03 12:22 - 000000000 ____D C:\Users\Petr\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VITSOFT
2017-10-18 14:05 - 2014-10-03 10:59 - 000000000 ____D C:\Users\sipet_000\AppData\Local\Packages
2017-10-18 14:05 - 2014-06-09 14:30 - 000000000 ___RD C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BT Devices
2017-10-18 14:02 - 2017-05-12 21:06 - 000000000 ____D C:\WINDOWS\SysWOW64\sda
2017-10-18 14:01 - 2014-06-09 14:46 - 000000000 ____D C:\Temp
2017-10-18 14:00 - 2017-05-12 21:05 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2017-10-18 13:59 - 2017-05-12 21:05 - 001019725 _____ C:\WINDOWS\system32\Drivers\rtwavesskdy.dat
2017-10-18 13:59 - 2017-05-12 21:05 - 000455938 _____ C:\WINDOWS\system32\Drivers\rtwavesmapro.dat
2017-10-18 13:59 - 2017-05-12 21:05 - 000031095 _____ C:\WINDOWS\system32\Drivers\rtwavesEFX.dat
2017-10-18 13:59 - 2017-05-12 21:05 - 000019678 _____ C:\WINDOWS\system32\Drivers\rtwavesmaprocap.dat
2017-10-18 13:59 - 2017-05-12 21:05 - 000010945 _____ C:\WINDOWS\system32\Drivers\rtwavesMFX.dat
2017-10-18 13:59 - 2017-05-12 21:05 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2017-10-18 13:58 - 2017-05-12 21:05 - 000000200 _____ C:\WINDOWS\system32\{EC94D02F-D200-4428-9531-05AF7F9799CB}.bat
2017-10-18 13:11 - 2017-09-29 09:45 - 000008192 _____ C:\WINDOWS\system32\config\ELAM
2017-10-18 12:58 - 2017-05-12 21:05 - 000000000 ____D C:\WINDOWS\system32\SRSLabs
2017-10-18 12:53 - 2016-03-23 23:49 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vulkan 1.0.3.0
2017-10-18 12:52 - 2017-05-12 21:05 - 000000000 ____D C:\Program Files\Realtek
2017-10-18 12:52 - 2017-05-12 21:04 - 000000000 ____D C:\Program Files\Synaptics
2017-10-18 12:52 - 2015-01-09 17:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ashampoo
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\zu-ZA
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\yo-NG
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\xh-ZA
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\wo-SN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\uz-Latn-UZ
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\tn-ZA
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\tk-TM
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ti-ET
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\tg-Cyrl-TJ
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\sw-KE
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-RS
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\sr-Cyrl-BA
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\si-LK
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\sd-Arab-PK
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\rw-RW
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\quc-Latn-GT
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\prs-AF
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-Arab-PK
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\nso-ZA
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\mn-MN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ky-KG
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ku-Arab-IQ
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ig-NG
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\chr-CHER-US
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ha-Latn-NG
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES-valencia
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\bs-Latn-BA
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-BD
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\az-Latn-AZ
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\zu-ZA
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\yo-NG
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\xh-ZA
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\wo-SN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\uz-Latn-UZ
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ur-PK
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ug-CN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\tt-RU
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\tn-ZA
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\tk-TM
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ti-ET
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\tg-Cyrl-TJ
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\te-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\sw-KE
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-RS
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\sr-Cyrl-BA
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\sq-AL
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\si-LK
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\sd-Arab-PK
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\rw-RW
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\quc-Latn-GT
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\prs-AF
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\pa-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\pa-Arab-PK
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\or-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\nso-ZA
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ne-NP
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\mr-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\mn-MN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\lo-LA
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\lb-LU
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ky-KG
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ku-Arab-IQ
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\kn-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\km-KH
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ka-GE
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\is-IS
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ig-NG
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\id-ID
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\chr-CHER-US
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ha-Latn-NG
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\gu-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\gd-GB
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\fil-PH
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\fa-IR
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\cy-GB
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\ca-ES-valencia
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\bs-Latn-BA
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\bn-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\bn-BD
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\be-BY
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\az-Latn-AZ
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\as-IN
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\am-ET
2017-10-18 12:37 - 2017-09-30 15:32 - 000000000 ____D C:\WINDOWS\system32\af-ZA
2017-10-18 12:37 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\appraiser
2017-10-18 12:11 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\SysWOW64\MUI
2017-10-18 12:11 - 2017-09-29 14:46 - 000000000 ____D C:\WINDOWS\system32\MUI
2017-10-18 10:41 - 2014-12-20 19:07 - 000000000 ____D C:\ProgramData\Skype
2017-10-18 10:39 - 2016-03-23 19:23 - 000000000 ____D C:\Games
2017-10-16 21:24 - 2014-10-14 13:20 - 000000000 ____D C:\Users\Petr\Desktop\Hry
2017-10-14 12:37 - 2016-10-16 21:09 - 000000000 ____D C:\Program Files (x86)\TrucksBook Client
2017-10-14 12:36 - 2017-06-20 19:43 - 000594144 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\Drivers\klhk.sys
2017-10-14 12:36 - 2017-06-20 19:43 - 000149304 _____ (AO Kaspersky Lab) C:\WINDOWS\system32\klhkum.dll
==================== Files in the root of some directories =======
2016-08-02 11:42 - 2016-08-02 11:42 - 000000624 _____ () C:\Users\Petr\AppData\Roaming\All CPU MeterV3_Settings.ini
2016-08-02 11:44 - 2016-08-02 11:44 - 000000458 _____ () C:\Users\Petr\AppData\Roaming\Drives Monitor_Settings.ini
2017-05-28 21:34 - 2017-05-28 21:34 - 000000884 _____ () C:\Users\Petr\AppData\Local\recently-used.xbel
2014-12-18 22:20 - 2015-05-02 10:58 - 000007599 _____ () C:\Users\Petr\AppData\Local\resmon.resmoncfg
2017-05-12 21:05 - 2017-05-12 21:05 - 000000000 _____ () C:\ProgramData\DP45977C.lfl
2015-03-28 15:44 - 2015-03-28 15:46 - 000000760 _____ () C:\ProgramData\LmeUSB.log
2015-03-28 15:44 - 2015-03-28 15:46 - 000000743 _____ () C:\ProgramData\LmeZJSW.log
2015-02-09 10:34 - 2015-02-09 10:34 - 000001534 _____ () C:\ProgramData\ss.ini
2015-01-28 17:53 - 2015-01-28 17:53 - 000000032 _____ () C:\ProgramData\Temp.log
2014-06-09 14:27 - 2014-06-09 14:27 - 000000121 _____ () C:\ProgramData\{1FBF6C24-C1fD-4101-A42B-0C564F9E8E79}.log
2014-06-09 14:23 - 2014-06-09 14:24 - 000000106 _____ () C:\ProgramData\{2A87D48D-3FDF-41fd-97CD-A1E370EFFFE2}.log
2014-06-09 14:24 - 2014-06-09 14:25 - 000000111 _____ () C:\ProgramData\{B0B4F6D2-F2AE-451A-9496-6F2F6A897B32}.log
2014-06-09 14:25 - 2014-06-09 14:27 - 000000108 _____ () C:\ProgramData\{B46BEA36-0B71-4A4E-AE41-87241643FA0A}.log
2014-06-09 14:22 - 2014-06-09 14:22 - 000000107 _____ () C:\ProgramData\{C59C179C-668D-49A9-B6EA-0121CCFC1243}.log
Files to move or delete:
====================
C:\Users\Petr\IP_Log_Data.js
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2017-11-09 21:36