Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 26-10-2016
Ran by Helenka (administrator) on DOMA (28-10-2016 11:07:08)
Running from C:\Users\Helenka\Desktop\ÚDRŽBA
Loaded Profiles: Helenka (Available Profiles: Helenka)
Platform: Windows 8.1 (Update) (X64) Language: Čeština (Česká republika)
Internet Explorer Version 11 (Default browser: Chrome)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool:
http://www.geekstogo.com/forum/topic/33 ... scan-tool/
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(AMD) C:\Windows\System32\atiesrxx.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\AdminService.exe
(Acer Incorporated) C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe
(Conexant Systems Inc.) C:\Windows\System32\CxAudMsg64.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\dsiwmis.exe
(Symantec Corporation) C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe
(Dritek System INC.) C:\Windows\RfBtnSvc64.exe
(Samsung Electronics Co., Ltd.) C:\Windows\System32\spool\drivers\x64\3\NetFaxServer64.exe
() C:\Windows\SysWOW64\spdsvc.exe
(Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler.exe
(Google Inc.) C:\Program Files (x86)\Google\Update\1.3.31.5\GoogleCrashHandler64.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LMutilps32.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\LManager.exe
(Dritek System Inc.) C:\Program Files (x86)\Launch Manager\MMDx64Fx.exe
(DT Soft Ltd) C:\Program Files (x86)\DAEMON Tools Pro\DTShellHlp.exe
(Qualcomm Atheros Commnucations) C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\cAudioFilterAgent\CAudioFilterAgent64.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDTouch.exe
() C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
() C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\ActivateDesktop.exe
(NTI Corporation) C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(CyberLink) C:\Program Files (x86)\CyberLink\MediaEspresso\DeviceDetector\DeviceDetector.exe
() C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuBrowserIEAgent.exe
() C:\Program Files\Acer\Acer Instant Service\InstantUpdate\iuEmailOutlookAgent.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
==================== Registry (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2873744 2012-11-20] (ELAN Microelectronics Corp.)
HKLM\...\Run: [BtPreLoad] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtPreLoad.exe [64640 2013-01-28] ()
HKLM\...\Run: [iTunesHelper] => C:\Program Files\iTunes\iTunesHelper.exe [169744 2015-09-12] (Apple Inc.)
HKLM\...\Run: [cAudioFilterAgent] => C:\Program Files\Conexant\cAudioFilterAgent\cAudioFilterAgent64.exe [903384 2013-07-24] (Conexant Systems, Inc.)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] ()
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [587288 2016-09-22] (Oracle Corporation)
HKLM\...\Policies\Explorer\Run: [BtvStack] => C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\BtvStack.exe [132736 2013-01-28] (Qualcomm Atheros Commnucations)
HKU\S-1-5-21-2520944081-2684202109-2728405321-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [8944344 2016-09-28] (Piriform Ltd)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Acer Backup Manager Tray.lnk [2016-10-27]
ShortcutTarget: Acer Backup Manager Tray.lnk -> C:\Program Files (x86)\NTI\Acer Backup Manager\BackupManagerTray.exe (NTI Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Samsung Network PC Fax.lnk [2016-10-27]
ShortcutTarget: Samsung Network PC Fax.lnk -> C:\Windows\System32\spool\drivers\x64\3\NetFaxTray64.exe (Samsung Electronics Co., Ltd.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 82.144.128.1 82.144.129.1
Tcpip\..\Interfaces\{6E729190-5055-4A76-BB8B-3DEFC60ADD76}: [DhcpNameServer] 82.144.128.1 82.144.129.1
Internet Explorer:
==================
HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Search Page =
www.google.com
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
www.google.com
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
www.google.com
HKU\S-1-5-21-2520944081-2684202109-2728405321-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKU\S-1-5-21-2520944081-2684202109-2728405321-1001 -> DefaultScope {4B7AB1A7-9E69-4413-BBB0-50F38FBC11F0} URL = hxxp://
www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2520944081-2684202109-2728405321-1001 -> {4B7AB1A7-9E69-4413-BBB0-50F38FBC11F0} URL = hxxp://
www.google.com/search?q={searchTerms}
SearchScopes: HKU\S-1-5-21-2520944081-2684202109-2728405321-1001 -> {BD63004A-89AC-488F-8A5A-D4311713A735} URL =
BHO: CIESpeechBHO Class -> {8D10F6C4-0E01-4BD4-8601-11AC1FDF8126} -> C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\IEPlugIn.dll [2013-01-28] (Qualcomm Atheros Commnucations)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\ssv.dll [2016-10-27] (Oracle Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\jp2ssv.dll [2016-10-27] (Oracle Corporation)
FireFox:
========
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll [2015-09-04] ()
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-21] (Google)
FF Plugin-x32: @java.com/DTPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\dtplugin\npDeployJava1.dll [2016-10-27] (Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.111.2 -> C:\Program Files (x86)\Java\jre1.8.0_111\bin\plugin2\npjp2.dll [2016-10-27] (Oracle Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.31.5\npGoogleUpdate3.dll [2016-07-29] (Google Inc.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [2016-09-01] ()
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll [2016-10-01] (Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\Helenka\AppData\Local\Google\Chrome\User Data\Default [2016-10-28]
CHR Extension: (Prezentace Google) - C:\Users\Helenka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2016-10-28]
CHR Extension: (Dokumenty Google) - C:\Users\Helenka\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2016-10-28]
CHR Extension: (Disk Google) - C:\Users\Helenka\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2016-10-28]
CHR Extension: (YouTube) - C:\Users\Helenka\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2016-10-28]
CHR Extension: (Tabulky Google) - C:\Users\Helenka\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2016-10-28]
CHR Extension: (Dokumenty Google offline) - C:\Users\Helenka\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2016-10-28]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Helenka\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2016-10-28]
CHR Extension: (Gmail) - C:\Users\Helenka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2016-10-28]
CHR Extension: (Chrome Media Router) - C:\Users\Helenka\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2016-10-28]
==================== Services (Whitelisted) ====================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [83768 2016-03-02] (Apple Inc.)
R2 AtherosSvc; C:\Program Files (x86)\Qualcomm Atheros\Bluetooth Suite\adminservice.exe [227456 2013-01-28] (Qualcomm Atheros Commnucations) [File not signed]
R2 CCDMonitorService; C:\Program Files (x86)\Acer\Acer Cloud\CCDMonitorService.exe [2449552 2012-10-25] (Acer Incorporated)
S3 DeviceFastLaneService; C:\Program Files\Acer\Acer Device Fast-lane\DeviceFastLaneSvc.exe [469648 2012-11-16] (Acer Incorporated)
S3 ePowerSvc; C:\Program Files\Acer\Acer Power Management\ePowerSvc.exe [658064 2012-10-23] (Acer Incorporated)
S2 GamesAppIntegrationService; C:\Program Files (x86)\WildTangent Games\App\GamesAppIntegrationService.exe [350064 2016-09-01] (WildTangent)
S3 NBService; C:\Program Files (x86)\Nero\Nero 7\Nero BackItUp\NBService.exe [774144 2007-01-15] (Nero AG) [File not signed]
S3 NMIndexingService; C:\Program Files (x86)\Common Files\Ahead\Lib\NMIndexingService.exe [271920 2007-03-12] (Nero AG)
R2 NOBU; C:\Program Files (x86)\Symantec\Norton Online Backup\NOBuAgent.exe [3943104 2012-08-15] (Symantec Corporation)
R2 NTI IScheduleSvc; C:\Program Files (x86)\NTI\Acer Backup Manager\IScheduleSvc.exe [259136 2012-11-03] (NTI Corporation)
R2 RfButtonDriverService; C:\Windows\RfBtnSvc64.exe [93296 2016-03-18] (Dritek System INC.)
R2 Samsung Network Fax Server; C:\WINDOWS\system32\spool\drivers\x64\3\NetFaxServer64.exe [801472 2015-03-10] (Samsung Electronics Co., Ltd.)
R2 Samsung Printer Dianostics Service; C:\WINDOWS\SysWOW64\\spdsvc.exe [499000 2016-07-17] ()
S3 vmicvss; C:\WINDOWS\System32\ICSvc.dll [524800 2014-11-21] (Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [366552 2016-03-22] (Microsoft Corporation)
R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23824 2016-03-22] (Microsoft Corporation)
===================== Drivers (Whitelisted) ======================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 amdkmpfd; C:\WINDOWS\System32\drivers\amdkmpfd.sys [36096 2014-07-21] (Advanced Micro Devices, Inc.)
S2 APXACC; C:\WINDOWS\system32\DRIVERS\appexDrv.sys [199008 2012-06-23] (AppEx Networks Corporation)
R3 AtiHDAudioService; C:\WINDOWS\system32\drivers\AtihdW86.sys [91648 2012-08-21] (Advanced Micro Devices)
R2 atksgt; C:\WINDOWS\System32\DRIVERS\atksgt.sys [311968 2016-04-07] ()
S3 BTATH_LWFLT; C:\WINDOWS\system32\DRIVERS\btath_lwflt.sys [77464 2013-01-28] (Qualcomm Atheros)
R1 ccSet_NARA; C:\WINDOWS\system32\drivers\NARAx64\0401000.00E\ccSetx64.sys [168608 2012-05-26] (Symantec Corporation)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus.sys [129152 2016-04-25] (Samsung Electronics Co., Ltd.)
R1 dtsoftbus01; C:\WINDOWS\System32\drivers\dtsoftbus01.sys [283200 2016-10-15] (DT Soft Ltd)
S0 ebdrv; C:\WINDOWS\System32\drivers\evbda.sys [3357024 2013-08-22] (Broadcom Corporation)
R1 HWiNFO32; C:\WINDOWS\SysWOW64\drivers\HWiNFO64A.SYS [27552 2016-10-16] (REALiX(tm))
R2 lirsgt; C:\WINDOWS\System32\DRIVERS\lirsgt.sys [43168 2016-04-07] ()
R3 Ps2Kb2Hid; C:\WINDOWS\System32\drivers\aPs2Kb2Hid.sys [26736 2016-03-18] (Dritek System Inc.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [221824 2016-04-25] (Samsung Electronics Co., Ltd.)
S0 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [44560 2016-03-22] (Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [270168 2016-03-22] (Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [114520 2016-03-22] (Microsoft Corporation)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One Month Created files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-10-28 11:05 - 2016-10-28 11:05 - 00002255 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2016-10-28 11:05 - 2016-10-28 11:05 - 00002243 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2016-10-28 10:27 - 2016-10-28 11:04 - 00000000 ____D C:\Users\Helenka\AppData\Roaming\Adobe
2016-10-28 09:37 - 2016-10-28 09:42 - 1429747712 _____ C:\Users\Helenka\Downloads\The.Nice.Guys.2016.BRRip.XviD.AC3.CZ.avi
2016-10-28 09:37 - 2016-10-28 09:37 - 00014124 _____ C:\Users\Helenka\Downloads\[CzT]Spravni_chlapi_The_Nice_Guys_2016_CZ_.torrent
2016-10-28 09:26 - 2016-10-28 09:31 - 1280982268 _____ C:\Users\Helenka\Downloads\Zootopia.2016.BRRip.XviD.AC3.CZ-EVO.avi
2016-10-28 08:31 - 2016-10-28 08:35 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Parhelia Tools
2016-10-28 08:31 - 2016-10-28 08:31 - 00000000 ____D C:\Users\Helenka\AppData\Roaming\Google Chrome Backup
2016-10-27 18:44 - 2016-10-27 18:44 - 00000000 ____D C:\ProgramData\BlueStacks
2016-10-27 18:43 - 2016-10-27 18:43 - 00002526 ____N C:\Users\Public\Desktop\WildTangent Games App - acer.lnk
2016-10-27 18:43 - 2016-10-27 18:43 - 00000000 ____D C:\Users\Helenka\AppData\Roaming\WildTangent
2016-10-27 16:11 - 2016-10-27 16:11 - 00097856 _____ (Oracle Corporation) C:\WINDOWS\SysWOW64\WindowsAccessBridge-32.dll
2016-10-27 16:11 - 2016-10-27 16:11 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2016-10-27 16:10 - 2016-10-27 16:10 - 00000000 ____D C:\Program Files (x86)\Java
2016-10-27 16:05 - 2016-10-27 16:05 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner
2016-10-26 18:46 - 2016-10-26 18:58 - 00192216 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\MBAMSwissArmy.sys
2016-10-26 18:46 - 2016-10-26 18:46 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes Anti-Malware
2016-10-26 18:46 - 2016-10-26 18:46 - 00000000 ____D C:\Program Files (x86)\Malwarebytes Anti-Malware
2016-10-26 18:46 - 2016-03-10 14:09 - 00065408 _____ (Malwarebytes Corporation) C:\WINDOWS\system32\Drivers\mwac.sys
2016-10-26 18:46 - 2016-03-10 14:08 - 00140672 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamchameleon.sys
2016-10-26 18:46 - 2016-03-10 14:08 - 00027008 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbam.sys
2016-10-25 15:46 - 2016-10-28 11:07 - 00000000 ____D C:\FRST
2016-10-25 14:31 - 2016-10-25 16:53 - 00000000 ____D C:\WINDOWS\system32\log
2016-10-20 19:05 - 2016-10-20 19:05 - 00002786 _____ C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2016-10-18 18:33 - 2016-10-18 18:33 - 00024920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\x3daudio1_7.dll
2016-10-18 17:03 - 2016-10-28 10:33 - 00003600 _____ C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-2520944081-2684202109-2728405321-1001
2016-10-16 15:27 - 2016-10-16 15:27 - 00000000 ____D C:\ProgramData\VS Revo Group
2016-10-16 13:57 - 2016-10-16 14:52 - 00000000 ____D C:\Users\Helenka\AppData\LocalLow\IObit
2016-10-16 13:57 - 2016-10-16 14:52 - 00000000 ____D C:\ProgramData\ProductData
2016-10-16 13:56 - 2016-10-18 19:16 - 00000000 ____D C:\Program Files (x86)\IObit
2016-10-16 13:56 - 2016-10-16 14:52 - 00000000 ____D C:\ProgramData\IObit
2016-10-16 13:56 - 2016-10-16 13:56 - 01625824 _____ (The OpenSSL Project, hxxp://
www.openssl.org/) C:\WINDOWS\libeay32.dll
2016-10-16 13:56 - 2016-10-16 13:56 - 00608117 _____ C:\WINDOWS\libcurl-4.dll
2016-10-16 13:56 - 2016-10-16 13:56 - 00054784 _____ (MingW-W64 Project. All rights reserved.) C:\WINDOWS\libwinpthread-1.dll
2016-10-16 13:56 - 2016-10-16 13:56 - 00027552 _____ (REALiX(tm)) C:\WINDOWS\SysWOW64\Drivers\HWiNFO64A.SYS
2016-10-16 13:56 - 2016-10-16 13:56 - 00000000 ____D C:\WINDOWS\IObit
2016-10-16 13:56 - 2016-10-16 13:56 - 00000000 ____D C:\WINDOWS\Azart
2016-10-16 13:56 - 2016-10-16 13:56 - 00000000 ____D C:\Users\Helenka\AppData\Roaming\IObit
2016-10-15 18:35 - 2016-10-15 18:35 - 00000000 ____D C:\Users\Helenka\Documents\My Games
2016-10-15 18:35 - 2016-10-15 18:35 - 00000000 ____D C:\Users\Helenka\AppData\Local\Fallout4
2016-10-15 17:19 - 2016-10-27 12:52 - 00001946 _____ C:\Users\Public\Desktop\DAEMON Tools Pro.lnk
2016-10-15 17:19 - 2016-10-20 19:06 - 00000000 ____D C:\Users\Helenka\AppData\Roaming\DAEMON Tools Pro
2016-10-15 17:19 - 2016-10-15 17:19 - 00283200 _____ (DT Soft Ltd) C:\WINDOWS\system32\Drivers\dtsoftbus01.sys
2016-10-15 17:19 - 2016-10-15 17:19 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DAEMON Tools Pro
2016-10-15 17:18 - 2016-10-16 13:56 - 00000000 ____D C:\Program Files (x86)\DAEMON Tools Pro
2016-10-15 17:18 - 2016-10-15 17:21 - 00000000 ____D C:\ProgramData\DAEMON Tools Pro
2016-10-12 14:21 - 2016-10-01 02:22 - 07444312 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2016-10-12 14:21 - 2016-09-30 09:55 - 25765376 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2016-10-12 14:21 - 2016-09-30 08:09 - 06048256 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2016-10-12 14:21 - 2016-09-30 07:47 - 20306944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2016-10-12 14:21 - 2016-09-30 07:21 - 15257088 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2016-10-12 14:21 - 2016-09-08 16:00 - 00140800 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxdav.sys
2016-10-12 14:21 - 2016-09-08 00:07 - 01988096 _____ (Microsoft Corporation) C:\WINDOWS\system32\DWrite.dll
2016-10-12 14:21 - 2016-08-12 23:47 - 15431168 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmp.dll
2016-10-12 14:21 - 2016-08-12 22:52 - 13317120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmp.dll
2016-10-12 14:21 - 2016-08-12 03:58 - 02315496 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d11.dll
2016-10-12 14:21 - 2016-08-12 03:58 - 01946176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d11.dll
2016-10-12 14:21 - 2016-08-03 17:42 - 01317888 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.Media.Streaming.dll
2016-10-12 14:21 - 2016-07-30 19:12 - 02896384 _____ (Microsoft Corporation) C:\WINDOWS\system32\esent.dll
2016-10-12 14:21 - 2016-07-30 18:36 - 02537472 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\esent.dll
2016-10-12 14:20 - 2016-09-30 08:25 - 02895360 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2016-10-12 14:20 - 2016-09-30 08:25 - 00576000 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2016-10-12 14:20 - 2016-09-30 08:12 - 00817664 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2016-10-12 14:20 - 2016-09-30 07:42 - 00498688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2016-10-12 14:20 - 2016-09-30 07:41 - 01033216 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2016-10-12 14:20 - 2016-09-30 07:38 - 02286592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2016-10-12 14:20 - 2016-09-30 07:33 - 00724992 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2016-10-12 14:20 - 2016-09-30 07:33 - 00378880 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2016-10-12 14:20 - 2016-09-30 07:32 - 00806912 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2016-10-12 14:20 - 2016-09-30 07:32 - 00663552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2016-10-12 14:20 - 2016-09-30 07:31 - 02131456 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2016-10-12 14:20 - 2016-09-30 07:17 - 02920960 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2016-10-12 14:20 - 2016-09-30 07:12 - 04608512 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2016-10-12 14:20 - 2016-09-30 07:11 - 00880640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2016-10-12 14:20 - 2016-09-30 07:06 - 00330752 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2016-10-12 14:20 - 2016-09-30 07:05 - 02055680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2016-10-12 14:20 - 2016-09-30 07:05 - 01544192 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2016-10-12 14:20 - 2016-09-30 07:05 - 00693248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2016-10-12 14:20 - 2016-09-30 07:03 - 13653504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2016-10-12 14:20 - 2016-09-30 06:54 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2016-10-12 14:20 - 2016-09-30 06:46 - 02444288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2016-10-12 14:20 - 2016-09-30 06:43 - 01312768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2016-10-12 14:20 - 2016-09-30 06:42 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2016-10-12 14:20 - 2016-09-17 20:16 - 00103424 _____ (Microsoft Corporation) C:\WINDOWS\system32\adsmsext.dll
2016-10-12 14:20 - 2016-09-17 19:53 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2016-10-12 14:20 - 2016-09-17 19:21 - 00089600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adsmsext.dll
2016-10-12 14:20 - 2016-09-17 19:03 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2016-10-12 14:20 - 2016-09-17 19:02 - 01446400 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2016-10-12 14:20 - 2016-09-14 03:53 - 01663184 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2016-10-12 14:20 - 2016-09-14 03:53 - 01523208 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.exe
2016-10-12 14:20 - 2016-09-14 03:53 - 01490112 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2016-10-12 14:20 - 2016-09-14 03:53 - 01358952 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.exe
2016-10-12 14:20 - 2016-09-13 00:03 - 00061440 _____ (Microsoft Corporation) C:\WINDOWS\system32\offreg.dll
2016-10-12 14:20 - 2016-09-12 23:01 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\offreg.dll
2016-10-12 14:20 - 2016-09-09 16:17 - 04170752 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2016-10-12 14:20 - 2016-09-08 22:41 - 00121176 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tm.sys
2016-10-12 14:20 - 2016-09-08 16:00 - 00138240 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dfsc.sys
2016-10-12 14:20 - 2016-09-07 23:59 - 01754112 _____ (Microsoft Corporation) C:\WINDOWS\system32\GdiPlus.dll
2016-10-12 14:20 - 2016-09-07 23:59 - 01377792 _____ (Microsoft Corporation) C:\WINDOWS\system32\FntCache.dll
2016-10-12 14:20 - 2016-09-07 23:57 - 01560064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DWrite.dll
2016-10-12 14:20 - 2016-09-07 23:56 - 01491456 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\GdiPlus.dll
2016-10-12 14:20 - 2016-08-31 19:22 - 03754496 _____ (Microsoft Corporation) C:\WINDOWS\system32\MSVidCtl.dll
2016-10-12 14:20 - 2016-08-31 18:33 - 02410496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MSVidCtl.dll
2016-10-12 14:20 - 2016-08-25 22:50 - 00747008 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntshrui.dll
2016-10-12 14:20 - 2016-08-25 21:40 - 00678400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntshrui.dll
2016-10-12 14:20 - 2016-08-13 02:05 - 09323008 _____ (Microsoft Corporation) C:\WINDOWS\system32\wmploc.DLL
2016-10-12 14:20 - 2016-08-13 02:03 - 00024576 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifibus.sys
2016-10-12 14:20 - 2016-08-13 02:02 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwififlt.sys
2016-10-12 14:20 - 2016-08-13 02:01 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifimp.sys
2016-10-12 14:20 - 2016-08-13 00:35 - 00222208 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastapi.dll
2016-10-12 14:20 - 2016-08-13 00:19 - 09323008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wmploc.DLL
2016-10-12 14:20 - 2016-08-12 23:17 - 00207872 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastapi.dll
2016-10-12 14:20 - 2016-08-11 20:33 - 00096256 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\parport.sys
2016-10-12 14:20 - 2016-08-11 20:33 - 00083456 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serial.sys
2016-10-12 14:20 - 2016-08-11 20:33 - 00023040 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\serenum.sys
2016-10-12 14:20 - 2016-08-11 19:17 - 01574912 _____ (Microsoft Corporation) C:\WINDOWS\system32\wbengine.exe
2016-10-12 14:20 - 2016-08-11 15:39 - 00445765 _____ C:\WINDOWS\system32\ApnDatabase.xml
2016-10-12 14:20 - 2016-08-11 07:46 - 00420184 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\spaceport.sys
2016-10-12 14:20 - 2016-08-03 17:36 - 01102848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.Media.Streaming.dll
2016-10-12 14:20 - 2016-08-03 17:36 - 00289792 _____ (Microsoft Corporation) C:\WINDOWS\system32\PlayToDevice.dll
2016-10-12 14:20 - 2016-08-03 17:33 - 00215552 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PlayToDevice.dll
2016-10-12 14:20 - 2016-07-26 15:40 - 00162850 _____ C:\WINDOWS\SysWOW64\C_932.NLS
2016-10-12 14:20 - 2016-07-26 15:40 - 00162850 _____ C:\WINDOWS\system32\C_932.NLS
2016-10-12 14:20 - 2016-07-23 20:18 - 01220096 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.appcore.dll
2016-10-12 14:20 - 2016-07-23 20:12 - 00954880 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.appcore.dll
2016-10-12 14:18 - 2016-09-13 01:48 - 00085680 _____ (Microsoft Corporation) C:\WINDOWS\system32\CompatTelRunner.exe
2016-10-12 14:18 - 2016-09-09 15:38 - 01629184 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2016-10-12 14:18 - 2016-09-09 15:38 - 01226752 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2016-10-12 14:18 - 2016-09-09 15:38 - 00586752 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2016-10-12 14:18 - 2016-09-09 15:38 - 00575488 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2016-10-12 14:18 - 2016-09-09 15:38 - 00314368 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2016-10-12 14:18 - 2016-09-09 15:38 - 00273408 _____ (Microsoft Corporation) C:\WINDOWS\system32\centel.dll
2016-10-12 14:18 - 2016-09-09 15:38 - 00224256 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2016-10-12 14:18 - 2016-09-09 15:38 - 00129024 _____ (Microsoft Corporation) C:\WINDOWS\system32\acmigration.dll
2016-10-12 14:17 - 2016-08-27 21:44 - 22360288 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2016-10-12 14:17 - 2016-08-27 21:44 - 02755504 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2016-10-12 14:17 - 2016-08-27 21:44 - 00133256 _____ (Microsoft Corporation) C:\WINDOWS\system32\RestoreOptIn.exe
2016-10-12 14:17 - 2016-08-27 20:26 - 19789232 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2016-10-12 14:17 - 2016-08-27 20:26 - 02411048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2016-10-12 14:17 - 2016-08-27 20:26 - 00113656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\RestoreOptIn.exe
2016-10-12 14:17 - 2016-08-27 18:33 - 02881536 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2016-10-12 14:17 - 2016-08-27 18:11 - 01049600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2016-10-12 14:17 - 2016-08-27 18:09 - 14466560 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2016-10-12 14:17 - 2016-08-27 17:55 - 12879360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2016-10-12 14:17 - 2016-08-21 00:24 - 02778624 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2016-10-12 14:17 - 2016-08-21 00:12 - 02463744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2016-10-10 16:17 - 2016-10-10 16:17 - 00000000 ____D C:\Users\Helenka\Documents\SkidRow
2016-10-10 16:17 - 2016-10-10 16:17 - 00000000 ____D C:\Users\Helenka\AppData\Local\Introversion
2016-10-10 16:15 - 2016-10-18 19:15 - 00000000 ____D C:\Program Files (x86)\Prison Architect
==================== One Month Modified files and folders ========
(If an entry is included in the fixlist, the file/folder will be moved.)
2016-10-28 11:08 - 2016-04-01 14:58 - 00000000 ____D C:\Users\Helenka\Desktop\ÚDRŽBA
2016-10-28 11:05 - 2016-03-19 11:41 - 00000000 ____D C:\Users\Helenka\AppData\Local\Google
2016-10-28 11:05 - 2016-03-19 11:41 - 00000000 ____D C:\Program Files (x86)\Google
2016-10-28 10:22 - 2013-08-22 16:45 - 00000006 ____H C:\WINDOWS\Tasks\SA.DAT
2016-10-28 10:22 - 2013-08-22 15:36 - 00000000 ____D C:\WINDOWS\Inf
2016-10-28 10:13 - 2016-03-19 14:01 - 00000000 ____D C:\Users\Helenka\AppData\Roaming\uTorrent
2016-10-28 09:44 - 2012-07-26 09:59 - 00000000 ____D C:\WINDOWS\CbsTemp
2016-10-28 09:37 - 2014-11-21 06:53 - 01745984 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2016-10-28 09:37 - 2014-11-21 06:10 - 00739924 _____ C:\WINDOWS\system32\perfh005.dat
2016-10-28 09:37 - 2014-11-21 06:10 - 00151610 _____ C:\WINDOWS\system32\perfc005.dat
2016-10-28 09:16 - 2016-03-19 18:25 - 00000000 ____D C:\Users\Helenka\AppData\Roaming\.minecraft
2016-10-28 08:29 - 2016-03-23 15:20 - 00003962 _____ C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{2913751E-8255-4176-B63F-A7232F23BCFB}
2016-10-28 03:22 - 2016-05-25 20:23 - 00485032 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2016-10-27 18:43 - 2013-03-12 18:30 - 00002636 ____N C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WildTangent Games App - acer.lnk
2016-10-27 18:43 - 2013-03-12 18:30 - 00000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Games
2016-10-27 18:43 - 2013-03-12 18:30 - 00000000 ____D C:\ProgramData\WildTangent
2016-10-27 18:43 - 2013-03-12 18:30 - 00000000 ____D C:\Program Files (x86)\WildTangent Games
2016-10-27 18:39 - 2016-03-22 19:58 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\STORMWARE Office
2016-10-27 16:10 - 2016-03-29 20:48 - 00000000 ____D C:\Users\Helenka\Downloads\Minecraft-warez-launcher-1.9
2016-10-27 16:06 - 2016-03-24 23:01 - 00000000 ____D C:\WINDOWS\Minidump
2016-10-27 12:53 - 2016-04-15 12:00 - 00002457 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader XI.lnk
2016-10-27 12:53 - 2016-03-29 20:01 - 00002180 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Earth.lnk
2016-10-27 12:53 - 2016-03-23 00:19 - 00001547 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2016-10-27 12:53 - 2016-03-19 13:38 - 00002535 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Apple Software Update.lnk
2016-10-27 12:53 - 2016-03-18 18:50 - 00001984 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office.lnk
2016-10-27 12:52 - 2016-09-05 08:05 - 00002291 _____ C:\Users\Public\Desktop\Samsung Printer Diagnostics.lnk
2016-10-27 12:52 - 2016-05-18 10:08 - 00001238 _____ C:\Users\Public\Desktop\Sothink Logo Maker.lnk
2016-10-27 12:52 - 2016-05-01 19:08 - 00002682 _____ C:\Users\Public\Desktop\Nero Home.lnk
2016-10-27 12:52 - 2016-04-15 12:00 - 00002037 _____ C:\Users\Public\Desktop\Adobe Reader XI.lnk
2016-10-27 12:52 - 2016-04-15 11:32 - 00001995 _____ C:\Users\Public\Desktop\Ekonomický systém POHODA 2015 Profi.lnk
2016-10-27 12:52 - 2016-03-23 15:07 - 00001430 _____ C:\Users\Helenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2016-10-27 12:52 - 2016-03-23 00:13 - 00000469 _____ C:\Users\Helenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2016-10-27 12:52 - 2016-03-23 00:13 - 00000467 _____ C:\Users\Helenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2016-10-27 12:52 - 2016-03-19 13:41 - 00001751 _____ C:\Users\Public\Desktop\iTunes.lnk
2016-10-27 12:52 - 2016-03-18 18:53 - 00002133 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Norton Online Backup.lnk
2016-10-27 12:52 - 2013-03-12 19:03 - 00002115 _____ C:\Users\Public\Desktop\Acer Backup Manager.lnk
2016-10-27 12:50 - 2016-03-23 00:13 - 00000000 ____D C:\Users\Helenka
2016-10-27 09:46 - 2016-04-01 19:39 - 00000000 ____D C:\Users\Helenka\Documents\Bluetooth Folder
2016-10-27 09:46 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\NDF
2016-10-27 08:59 - 2016-03-24 10:35 - 00000000 ____D C:\Users\Helenka\Desktop\HRY
2016-10-27 08:59 - 2016-03-19 14:01 - 00000000 ____D C:\Users\Helenka\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\uTorrent
2016-10-26 18:29 - 2013-08-22 15:25 - 00262144 ___SH C:\WINDOWS\system32\config\BBI
2016-10-25 16:54 - 2016-03-31 19:06 - 00000000 ____D C:\AdwCleaner
2016-10-25 16:25 - 2016-03-24 10:36 - 00000000 ____D C:\Users\Helenka\AppData\Local\clear.fi
2016-10-25 14:40 - 2016-03-24 10:41 - 00000000 ____D C:\Users\Helenka\AppData\Local\Deployment
2016-10-24 23:54 - 2014-11-21 14:21 - 00828408 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerApp.exe
2016-10-24 23:54 - 2014-11-21 14:21 - 00176632 _____ (Adobe Systems Incorporated) C:\WINDOWS\SysWOW64\FlashPlayerCPLApp.cpl
2016-10-20 19:16 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppReadiness
2016-10-20 19:15 - 2013-08-22 16:44 - 00412592 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2016-10-18 19:16 - 2016-09-05 08:18 - 00000000 ____D C:\Program Files (x86)\SamsungPrinterLiveUpdateInstaller
2016-10-18 19:16 - 2016-04-20 18:56 - 00000000 ____D C:\Games
2016-10-18 19:16 - 2016-03-23 00:02 - 00000000 ____D C:\AMD
2016-10-18 19:16 - 2016-03-18 18:18 - 00000000 ____D C:\Dolby PCEE4
2016-10-18 19:16 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\AppCompat
2016-10-18 19:16 - 2013-08-22 17:36 - 00000000 ____D C:\PerfLogs
2016-10-18 19:16 - 2013-03-12 19:03 - 00000000 ____D C:\Program Files (x86)\NTI
2016-10-18 18:32 - 2013-03-12 19:04 - 00000000 ____D C:\ProgramData\Temp
2016-10-16 13:56 - 2016-09-05 08:18 - 00000000 ____D C:\Program Files (x86)\SamsungPrinterLiveUpdate
2016-10-16 13:56 - 2016-09-05 08:05 - 00000000 ____D C:\Program Files (x86)\Samsung
2016-10-16 13:56 - 2016-06-01 16:52 - 00000000 ____D C:\Program Files (x86)\MKVTOAVI
2016-10-16 13:56 - 2016-05-04 17:36 - 00000000 ____D C:\Program Files (x86)\SourceTec
2016-10-16 13:56 - 2016-05-04 17:12 - 00000000 ____D C:\Program Files (x86)\Skillbrains
2016-10-16 13:56 - 2016-05-01 19:06 - 00000000 ____D C:\Program Files (x86)\Nero
2016-10-16 13:56 - 2016-04-15 12:00 - 00000000 ____D C:\Program Files (x86)\Adobe
2016-10-16 13:56 - 2016-03-24 10:39 - 00000000 ____D C:\Program Files (x86)\Microsoft Works
2016-10-16 13:56 - 2016-03-24 10:39 - 00000000 ____D C:\Program Files (x86)\Microsoft Visual Studio
2016-10-16 13:56 - 2016-03-23 15:27 - 00000000 ____D C:\Program Files (x86)\Apple Software Update
2016-10-16 13:56 - 2016-03-22 22:41 - 00000000 ____D C:\Program Files (x86)\Reference Assemblies
2016-10-16 13:56 - 2016-03-22 22:41 - 00000000 ____D C:\Program Files (x86)\MSBuild
2016-10-16 13:56 - 2016-03-22 19:58 - 00000000 ____D C:\Program Files (x86)\STORMWARE
2016-10-16 13:56 - 2016-03-19 13:39 - 00000000 ____D C:\Program Files (x86)\iTunes
2016-10-16 13:56 - 2016-03-19 13:35 - 00000000 ____D C:\Program Files (x86)\Bonjour
2016-10-16 13:56 - 2016-03-18 18:53 - 00000000 ____D C:\Program Files (x86)\Symantec
2016-10-16 13:56 - 2016-03-18 18:53 - 00000000 ____D C:\Program Files (x86)\NortonInstaller
2016-10-16 13:56 - 2016-03-18 18:53 - 00000000 ____D C:\Program Files (x86)\Norton Online Backup ARA
2016-10-16 13:56 - 2016-03-18 18:50 - 00000000 ____D C:\Program Files (x86)\Microsoft Office
2016-10-16 13:56 - 2016-03-18 18:23 - 00000000 ____D C:\Program Files (x86)\Qualcomm Atheros
2016-10-16 13:56 - 2016-03-18 18:20 - 00000000 ____D C:\Program Files (x86)\AmIcoSingLun
2016-10-16 13:56 - 2016-03-18 18:11 - 00000000 ____D C:\Program Files (x86)\Launch Manager
2016-10-16 13:56 - 2016-03-18 18:07 - 00000000 ____D C:\Program Files (x86)\AMD AVT
2016-10-16 13:56 - 2016-03-18 18:07 - 00000000 ____D C:\Program Files (x86)\AMD APP
2016-10-16 13:56 - 2016-03-18 18:05 - 00000000 ____D C:\Program Files (x86)\ATI Technologies
2016-10-16 13:56 - 2013-08-22 17:36 - 00000000 __SHD C:\Program Files (x86)\Windows Sidebar
2016-10-16 13:56 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Portable Devices
2016-10-16 13:56 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Photo Viewer
2016-10-16 13:56 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows NT
2016-10-16 13:56 - 2013-08-22 17:36 - 00000000 ____D C:\Program Files (x86)\Windows Multimedia Platform
2016-10-16 13:56 - 2013-03-12 19:05 - 00000000 ____D C:\Program Files (x86)\CyberLink
2016-10-16 13:56 - 2013-03-12 19:02 - 00000000 ____D C:\Program Files (x86)\EgisTec Shredder
2016-10-16 13:56 - 2013-03-12 19:02 - 00000000 ____D C:\Program Files (x86)\EgisTec IPS
2016-10-16 13:56 - 2013-03-12 19:01 - 00000000 ___HD C:\Program Files (x86)\InstallShield Installation Information
2016-10-16 13:56 - 2013-03-12 19:01 - 00000000 ____D C:\Program Files (x86)\EgisTec MyWinLockerSuite
2016-10-16 13:56 - 2013-03-12 19:01 - 00000000 ____D C:\Program Files (x86)\EgisTec MyWinLocker
2016-10-16 13:56 - 2013-03-12 18:59 - 00000000 ____D C:\Program Files (x86)\Acer
2016-10-16 13:56 - 2013-03-12 18:32 - 00000000 ____D C:\Program Files (x86)\WildGames
2016-10-16 11:17 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\rescache
2016-10-15 19:06 - 2013-03-12 18:59 - 00000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acer
2016-10-15 18:47 - 2016-04-20 18:19 - 00000000 ____D C:\WINDOWS\system32\appraiser
2016-10-15 18:47 - 2014-11-21 14:14 - 00000000 ___SD C:\WINDOWS\system32\CompatTel
2016-10-15 18:46 - 2013-08-22 17:36 - 00000000 ___RD C:\WINDOWS\ToastData
2016-10-13 10:38 - 2016-03-19 15:53 - 00000000 ____D C:\WINDOWS\system32\MRT
2016-10-13 10:38 - 2014-11-21 07:25 - 00474112 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcasvc.dll
2016-10-13 10:29 - 2016-03-19 15:53 - 143495576 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2016-10-11 16:24 - 2013-08-22 17:36 - 00000000 ___HD C:\Program Files\WindowsApps
2016-10-02 11:29 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\SysWOW64\setup
2016-10-02 11:29 - 2013-08-22 17:36 - 00000000 ____D C:\WINDOWS\system32\setup
==================== Files in the root of some directories =======
2016-03-29 20:55 - 2016-03-29 20:55 - 0050304 _____ () C:\Users\Helenka\AppData\Roaming\
gtk20.mo.id_c05a2ddbccba96cf_email_zeta@dr.com.scl
2016-03-27 22:25 - 2016-03-27 22:25 - 0001960 _____ () C:\Users\Helenka\AppData\Roaming\SeleniumCisternaFronton
2014-10-07 06:39 - 2014-10-07 06:39 - 0011264 _____ () C:\Users\Helenka\AppData\Roaming\System.dll
2016-05-04 17:12 - 2016-05-04 17:12 - 0000003 _____ () C:\Users\Helenka\AppData\Local\updater.log
2016-05-04 17:12 - 2016-08-06 21:36 - 0000424 _____ () C:\Users\Helenka\AppData\Local\UserProducts.xml
2016-03-18 18:18 - 2016-03-18 18:18 - 0000000 ____H () C:\ProgramData\DP45977C.lfl
==================== Bamital & volsnap ======================
(There is no automatic fix for files that do not pass verification.)
C:\WINDOWS\system32\winlogon.exe => File is digitally signed
C:\WINDOWS\system32\wininit.exe => File is digitally signed
C:\WINDOWS\explorer.exe => File is digitally signed
C:\WINDOWS\SysWOW64\explorer.exe => File is digitally signed
C:\WINDOWS\system32\svchost.exe => File is digitally signed
C:\WINDOWS\SysWOW64\svchost.exe => File is digitally signed
C:\WINDOWS\system32\services.exe => File is digitally signed
C:\WINDOWS\system32\User32.dll => File is digitally signed
C:\WINDOWS\SysWOW64\User32.dll => File is digitally signed
C:\WINDOWS\system32\userinit.exe => File is digitally signed
C:\WINDOWS\SysWOW64\userinit.exe => File is digitally signed
C:\WINDOWS\system32\rpcss.dll => File is digitally signed
C:\WINDOWS\system32\dnsapi.dll => File is digitally signed
C:\WINDOWS\SysWOW64\dnsapi.dll => File is digitally signed
C:\WINDOWS\system32\Drivers\volsnap.sys => File is digitally signed
LastRegBack: 2016-10-19 18:34
==================== End of FRST.txt ============================