Zoek.exe v5.0.0.1 Updated 19-September-2016
Tool run by vezun on 05.01.2017 at 7:21:08,80.
Microsoft Windows 10 Home 10.0.14393 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\vezun.DESKTOP-MBA0LHN.000\Desktop\zoek.exe [Scan all users] [Quick Scan] [Auto Clean]
==== Older Logs ======================
C:\zoek-results2017-01-04-172017.log 2143 bytes
C:\zoek-results2017-01-04-173126.log 390 bytes
C:\zoek-results2017-01-04-183604.log 12313 bytes
==== Empty Folders Check ======================
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Maps deleted successfully
==== Deleting CLSID Registry Keys ======================
==== Deleting CLSID Registry Values ======================
==== Deleting Services ======================
==== Deleting Files \ Folders ======================
C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\BTServer.log deleted
==== Files Recently Created / Modified ======================
====== C:\WINDOWS ====
2017-01-01 16:46:05 12EBDA58437CD1EA7066FCB6455241D2 53208 ----a-w- C:\WINDOWS\avastSS.scr
2016-12-09 15:36:03 4E10FB1A015B49AC68F76C1A3F4D9C0F 4673304 ----a-w- C:\WINDOWS\explorer.exe
====== C:\Users\VEZUND~1.000\AppData\Local\Temp ====
====== Java Cache =====
====== C:\WINDOWS\SysWOW64 =====
2016-12-29 15:24:52 E8FBC76BDC0CC5005110AE38DB6C93F6 3306496 ----a-w- C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2016-12-29 15:24:52 6D8AF670995DC432C07C5321DE3967B5 1852720 ----a-w- C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2016-12-29 15:24:51 D478AD237CC6925BDC08062A195C5AA7 313856 ----a-w- C:\WINDOWS\SysWOW64\AppXDeploymentClient.dll
2016-12-29 15:24:51 2A7309FDC7AE938B497AF9B986523EBA 4612608 ----a-w- C:\WINDOWS\SysWOW64\Windows.Media.dll
2016-12-29 15:24:49 3E689A2AE38163D67297C87ED7770B9C 2323728 ----a-w- C:\WINDOWS\SysWOW64\d3d10warp.dll
2016-12-29 15:24:48 46E91FB548882ACFE377FFB1282D052D 2138112 ----a-w- C:\WINDOWS\SysWOW64\InputService.dll
2016-12-29 15:24:42 76F30D5D38F46DF16AF86B3549046CC8 32768 ----a-w- C:\WINDOWS\SysWOW64\WordBreakers.dll
2016-12-29 15:24:42 3BFB09E18CE3158070C7CFE0C3DA6DE2 68096 ----a-w- C:\WINDOWS\SysWOW64\EditBufferTestHook.dll
2016-12-29 15:24:42 2CCBA569613401EA6011EE08E8D36D88 92672 ----a-w- C:\WINDOWS\SysWOW64\InputLocaleManager.dll
2016-12-29 15:24:42 03B273395EA0BF2E9C56222183217E17 206848 ----a-w- C:\WINDOWS\SysWOW64\Windows.UI.Core.TextInput.dll
2016-12-29 15:24:27 B19A804BC41C276DAF5753BE541A97B4 1503544 ----a-w- C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2016-12-29 15:24:27 4BEC594A3D4AEAFAC400D88F7E328C7B 1435896 ----a-w- C:\WINDOWS\SysWOW64\user32.dll
2016-12-29 15:24:22 1A8E7650017F0BC9AD12A6861B5119ED 117240 ----a-w- C:\WINDOWS\SysWOW64\sspicli.dll
2016-12-29 15:24:20 DF53C40EE6572B64691668277156FA41 147968 ----a-w- C:\WINDOWS\SysWOW64\win32k.sys
2016-12-29 15:24:20 5C9A0EDE876D5D63A6EB34BC24384A17 2998272 ----a-w- C:\WINDOWS\SysWOW64\win32kfull.sys
2016-12-29 15:24:16 464235F5DB3FAF56C594A7B74D3837E3 12177920 ----a-w- C:\WINDOWS\SysWOW64\ieframe.dll
2016-12-29 15:23:59 D86AD86B05274E6386976FE42A7BA7C0 3689984 ----a-w- C:\WINDOWS\SysWOW64\msi.dll
2016-12-29 15:23:57 56A1F18F27A325A4C17BF7EA963DBD2B 1415752 ----a-w- C:\WINDOWS\SysWOW64\gdi32full.dll
2016-12-29 15:23:49 358EB97C59FF33C968FB1333E9876494 6668040 ----a-w- C:\WINDOWS\SysWOW64\Windows.Media.Protection.PlayReady.dll
2016-12-29 15:23:46 EBD4C2424DC0C023F82AC7F13970016D 846560 ----a-w- C:\WINDOWS\SysWOW64\WinTypes.dll
2016-12-29 15:23:45 09FB1E45C38939B300140F01D14D0E6A 2166752 ----a-w- C:\WINDOWS\SysWOW64\combase.dll
2016-12-29 15:23:44 9B3298D80A2E4DA567C16BF5F88E5150 861024 ----a-w- C:\WINDOWS\SysWOW64\LicenseManager.dll
2016-12-29 15:23:44 1D090D82282336CD790733FAE33641E9 483840 ----a-w- C:\WINDOWS\SysWOW64\CoreMessaging.dll
2016-12-29 15:23:43 30FE605338408D1D459012E4ED9B903D 3198464 ----a-w- C:\WINDOWS\SysWOW64\cdp.dll
2016-12-29 15:23:42 CC32207A4520FD1956AF2D68D7DA7BDD 288768 ----a-w- C:\WINDOWS\SysWOW64\wincorlib.dll
2016-12-29 15:23:41 8F857B2705BECC734B4D979A0D2C0D03 886272 ----a-w- C:\WINDOWS\SysWOW64\aadtb.dll
2016-12-29 15:23:40 A61F71788BAE3F65FF2DEA42B35E35C9 165376 ----a-w- C:\WINDOWS\SysWOW64\mdmregistration.dll
2016-12-29 15:23:40 A1CB32732926340BAC6A79F1BBA6538F 566784 ----a-w- C:\WINDOWS\SysWOW64\ShareHost.dll
2016-12-29 15:23:38 C041ED5CE66BEDFA0CEAC973C8E5DAC5 106896 ----a-w- C:\WINDOWS\SysWOW64\bcrypt.dll
2016-12-29 15:23:37 DF990FE5B6590BB98145BEBCA2C7E721 822784 ----a-w- C:\WINDOWS\SysWOW64\Chakradiag.dll
2016-12-29 15:23:37 65B9445D4FDB93ABEB5C62761C229BF6 635904 ----a-w- C:\WINDOWS\SysWOW64\jscript9diag.dll
2016-12-29 15:23:36 92D533895D9D4BFB469083F5221CAE71 3666432 ----a-w- C:\WINDOWS\SysWOW64\jscript9.dll
2016-12-29 15:23:35 98F4C3DE98F6C24B74DA6150836BDDC9 6044160 ----a-w- C:\WINDOWS\SysWOW64\Chakra.dll
2016-12-29 15:23:20 7F14E8300CC72C06417D2980F2FBA0FE 2048496 ----a-w- C:\WINDOWS\SysWOW64\CoreUIComponents.dll
2016-12-29 15:23:20 38000DC06180F3C2F68B7175BC6C6B94 19413504 ----a-w- C:\WINDOWS\SysWOW64\edgehtml.dll
2016-12-29 15:23:17 9E9039ED9DB41DEA49B9B56E38964916 198656 ----a-w- C:\WINDOWS\SysWOW64\indexeddbserver.dll
2016-12-29 15:23:16 E74F2C29ECF25124BE3DA75FBD6A0E46 959112 ----a-w- C:\WINDOWS\SysWOW64\ole32.dll
2016-12-29 15:23:15 C2A2CC42F71927ABB95AA1F851056638 19417088 ----a-w- C:\WINDOWS\SysWOW64\mshtml.dll
2016-12-29 15:23:04 A9AE442890AA112F8B3AA6692DC7CDE6 231936 ----a-w- C:\WINDOWS\SysWOW64\Windows.ApplicationModel.LockScreen.dll
====== C:\WINDOWS\SysWOW64\drivers =====
====== C:\WINDOWS\Sysnative =====
2017-01-01 17:19:21 E43AEE6A66067C6535C1F994BCFB93A1 391496 ----a-w- C:\WINDOWS\Sysnative\aswBoot.exe
2016-12-29 15:24:53 2F3EA67476D78958F91E070C14A8E31B 8168000 ----a-w- C:\WINDOWS\Sysnative\Windows.Media.Protection.PlayReady.dll
2016-12-29 15:24:51 F1A1EBBFDC04204B89E1B4C4E9EF753E 1589760 ----a-w- C:\WINDOWS\Sysnative\msdtctm.dll
2016-12-29 15:24:50 FCC7B4C5CAD998DC936251247AB22C9A 1274712 ----a-w- C:\WINDOWS\Sysnative\ole32.dll
2016-12-29 15:24:50 06244AE293E04AB801876B9059DC7615 3059200 ----a-w- C:\WINDOWS\Sysnative\msi.dll
2016-12-29 15:24:49 D5C59218EDAD5E424C33D825DD797C49 989024 ----a-w- C:\WINDOWS\Sysnative\hvax64.exe
2016-12-29 15:24:49 9A077360DC6A6BF2E364FE4A47DC9854 1100128 ----a-w- C:\WINDOWS\Sysnative\hvix64.exe
2016-12-29 15:24:49 1067D34BEEA34E48E4D30F37F6AA93AF 410112 ----a-w- C:\WINDOWS\Sysnative\AppXDeploymentClient.dll
2016-12-29 15:24:44 9458B2D945C676A0795823C76B8B506A 324608 ----a-w- C:\WINDOWS\Sysnative\Windows.ApplicationModel.LockScreen.dll
2016-12-29 15:24:44 7F6BDCFC4EB0E47EBA67F8CEC404C26C 947552 ----a-w- C:\WINDOWS\Sysnative\hvloader.efi
2016-12-29 15:24:44 12736C69D73EB8A0D2889CBE167217E2 811872 ----a-w- C:\WINDOWS\Sysnative\hvloader.exe
2016-12-29 15:24:40 DB023286233396E001A852683590178C 956416 ----a-w- C:\WINDOWS\Sysnative\AppXDeploymentExtensions.desktop.dll
2016-12-29 15:24:40 666090378138806ECC581835FB134C8B 3777536 ----a-w- C:\WINDOWS\Sysnative\MFMediaEngine.dll
2016-12-29 15:24:39 96A380C14A4FFC2883A00FFB250EBD44 1692672 ----a-w- C:\WINDOWS\Sysnative\AppXDeploymentExtensions.onecore.dll
2016-12-29 15:24:39 70D5AF138FDBDF97F8A6415C596C80E4 1988560 ----a-w- C:\WINDOWS\Sysnative\mfmp4srcsnk.dll
2016-12-29 15:24:38 20A7D1848593F5988A2ACE63F22DE8BF 6285312 ----a-w- C:\WINDOWS\Sysnative\Windows.Media.dll
2016-12-29 15:24:37 6012019C0E09D6194E0E6144B4859EB2 1293152 ----a-w- C:\WINDOWS\Sysnative\LicenseManager.dll
2016-12-29 15:24:37 2C1CEC25F6D92871F38960E2E84CC3EE 2275840 ----a-w- C:\WINDOWS\Sysnative\AppXDeploymentServer.dll
2016-12-29 15:24:36 8D7AC60330B3E96C4D00E682437868D0 2681200 ----a-w- C:\WINDOWS\Sysnative\CoreUIComponents.dll
2016-12-29 15:24:36 0C2545B95A19F573D335608680B0C31D 411136 ----a-w- C:\WINDOWS\Sysnative\facecredentialprovider.dll
2016-12-29 15:24:35 C6E7C0577523905FF4FF3B0D5A036A3B 7816032 ----a-w- C:\WINDOWS\Sysnative\ntoskrnl.exe
2016-12-29 15:24:34 7B2301A9FE0A9B1DF7A321F1E044BA41 1121280 ----a-w- C:\WINDOWS\Sysnative\aadtb.dll
2016-12-29 15:24:33 40C1E763ACB4FCB8744C220D7B1A4800 425984 ----a-w- C:\WINDOWS\Sysnative\aadcloudap.dll
2016-12-29 15:24:24 24B894CCC09F373C8E0883E31A7A1CB0 2820096 ----a-w- C:\WINDOWS\Sysnative\InputService.dll
2016-12-29 15:24:21 C30FB61C85D12E1F7DDEFEA141F79DB4 261120 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Core.TextInput.dll
2016-12-29 15:24:21 C1C8560C3FA7E2F970CB134393B594BC 40448 ----a-w- C:\WINDOWS\Sysnative\WordBreakers.dll
2016-12-29 15:24:21 8F8B9B67E8BAFE7AEE433609D5DE8076 119296 ----a-w- C:\WINDOWS\Sysnative\InputLocaleManager.dll
2016-12-29 15:24:21 3B9487062A0CFF44131EAC1731CA47CE 85504 ----a-w- C:\WINDOWS\Sysnative\EditBufferTestHook.dll
2016-12-29 15:24:20 DA446593637409C623A1F308371F0505 716800 ----a-w- C:\WINDOWS\Sysnative\ShareHost.dll
2016-12-29 15:24:20 6343BD5C58F385703454D47416EE0100 206848 ----a-w- C:\WINDOWS\Sysnative\win32k.sys
2016-12-29 15:24:19 C415587AC829504F74ACE07066A0402F 4749312 ----a-w- C:\WINDOWS\Sysnative\SettingsHandlers_nt.dll
2016-12-29 15:24:19 A930AD470CBCBEEAA2B684325453D48A 3616768 ----a-w- C:\WINDOWS\Sysnative\win32kfull.sys
2016-12-29 15:24:18 C46EA86BF0E7C96235E9064CBAD6ED26 1461200 ----a-w- C:\WINDOWS\Sysnative\user32.dll
2016-12-29 15:24:17 981159C5094E4C2AD4DADCEDF3E8F532 13084160 ----a-w- C:\WINDOWS\Sysnative\ieframe.dll
2016-12-29 15:24:13 1F5FF8C45418A3D47DC73D612EFBD47E 5114368 ----a-w- C:\WINDOWS\Sysnative\cdp.dll
2016-12-29 15:23:59 5DE2049D5F57C1D142F36FA9CE443693 764392 ----a-w- C:\WINDOWS\Sysnative\CoreMessaging.dll
2016-12-29 15:23:58 976EB2566EF7A48DD80BEEDE63DE1C65 241504 ----a-w- C:\WINDOWS\Sysnative\CloudExperienceHost.dll
2016-12-29 15:23:58 2925A1C60E081F0B51699C148AE1925A 455520 ----a-w- C:\WINDOWS\Sysnative\securekernel.exe
2016-12-29 15:23:57 5BEEB27D8F314D94773FA6568740AE13 1572768 ----a-w- C:\WINDOWS\Sysnative\gdi32full.dll
2016-12-29 15:23:53 A8594741E7FFBA9579715E9451066533 1051112 ----a-w- C:\WINDOWS\Sysnative\winresume.efi
2016-12-29 15:23:53 183B7A1DCA847669FB16A7392535B095 1354320 ----a-w- C:\WINDOWS\Sysnative\winload.efi
2016-12-29 15:23:52 74C191A1BF7AD5AD63432E104E1D7A54 1173496 ----a-w- C:\WINDOWS\Sysnative\winload.exe
2016-12-29 15:23:52 0DCF6AF8987CD9EEBAB548A593380C3E 894096 ----a-w- C:\WINDOWS\Sysnative\winresume.exe
2016-12-29 15:23:51 32F359D2120A8C670FE650994A9FF419 49152 ----a-w- C:\WINDOWS\Sysnative\Windows.UI.Shell.dll
2016-12-29 15:23:46 7B07A0CFEB7F5B6C016433C15DCCA9E7 1267512 ----a-w- C:\WINDOWS\Sysnative\WinTypes.dll
2016-12-29 15:23:45 151AEA80776413C9FCE3185A10EB4B00 1490944 ----a-w- C:\WINDOWS\Sysnative\lsasrv.dll
2016-12-29 15:23:44 B50F4C3A4DE252EA5E7656A4438F0792 2913144 ----a-w- C:\WINDOWS\Sysnative\combase.dll
2016-12-29 15:23:43 DCB77F9C30B269461B59E87810EE2B43 137568 ----a-w- C:\WINDOWS\Sysnative\acmigration.dll
2016-12-29 15:23:42 8F1AF1A559291DE87C91C9FBC15BDB80 1637728 ----a-w- C:\WINDOWS\Sysnative\appraiser.dll
2016-12-29 15:23:41 28CF4575C39A0662138E6C6A0B107BCB 172544 ----a-w- C:\WINDOWS\Sysnative\DeviceEnroller.exe
2016-12-29 15:23:41 2892EB16D39C6F6E27BF8A9276B49F20 1004544 ----a-w- C:\WINDOWS\Sysnative\enterprisecsps.dll
2016-12-29 15:23:40 A5D48D65A9D0CB4C0DB8F76C76BA9BCC 380928 ----a-w- C:\WINDOWS\Sysnative\wincorlib.dll
2016-12-29 15:23:39 AC5344ED480F896C3BCE688F0AAE5144 168424 ----a-w- C:\WINDOWS\Sysnative\bcrypt.dll
2016-12-29 15:23:39 3717827707AC0C50E670F842666FFA87 187392 ----a-w- C:\WINDOWS\Sysnative\mdmregistration.dll
2016-12-29 15:23:35 4CCAD745F8CB73E02B2BE685D3094F5D 4746752 ----a-w- C:\WINDOWS\Sysnative\jscript9.dll
2016-12-29 15:23:34 997050BEA4A90A3DBF69C7393BD54C08 8129536 ----a-w- C:\WINDOWS\Sysnative\Chakra.dll
2016-12-29 15:23:34 677E316602D6B09DFDBABA04BFDACEED 216576 ----a-w- C:\WINDOWS\Sysnative\fveapibase.dll
2016-12-29 15:23:33 7C98397279D619956D6A7F9294FA5C5F 1512960 ----a-w- C:\WINDOWS\Sysnative\win32kbase.sys
2016-12-29 15:23:32 00C24D6FDEF221DDA1625836702AFC6C 730624 ----a-w- C:\WINDOWS\Sysnative\fveapi.dll
2016-12-29 15:23:31 DCDA84B4419F9A9520D831273B087967 261632 ----a-w- C:\WINDOWS\Sysnative\indexeddbserver.dll
2016-12-29 15:23:31 25A2DFE2ACE0CA2B7CCEF337EBEA672E 23677952 ----a-w- C:\WINDOWS\Sysnative\mshtml.dll
2016-12-29 15:23:27 99C236BDF40912E253650B562DB65235 1738560 ----a-w- C:\WINDOWS\Sysnative\WindowsCodecs.dll
2016-12-29 15:23:27 86DBBA9B08AB9DDA31C2F49E9F8EEFD9 227328 ----a-w- C:\WINDOWS\Sysnative\cdd.dll
2016-12-29 15:23:26 39D428A31DA525F730D3262ADCA41CCE 22563328 ----a-w- C:\WINDOWS\Sysnative\edgehtml.dll
2016-12-29 15:23:08 0BD00AE0D8AAF0A62FDBAE8856F152D9 2677544 ----a-w- C:\WINDOWS\Sysnative\d3d10warp.dll
2016-12-29 15:23:05 7AF01F6539F66128237A3D7E62EE1135 376832 ----a-w- C:\WINDOWS\Sysnative\CryptoWinRT.dll
2016-12-29 15:23:05 2DF07B2560A3E961C1CA6ABBB4400C68 172528 ----a-w- C:\WINDOWS\Sysnative\sspicli.dll
====== C:\WINDOWS\Sysnative\drivers =====
2017-01-01 17:19:38 75325BC6BE15471331FFCEEC14E1DA03 453192 ----a-w- C:\WINDOWS\Sysnative\drivers\aswNetSec.sys
2017-01-01 16:50:34 06362BBA1347CBA0996F4B39BB1D8353 37144 ----a-w- C:\WINDOWS\Sysnative\drivers\aswKbd.sys
2017-01-01 16:47:19 D60D9201739400F0FBDB9E36A3212D91 293352 ----a-w- C:\WINDOWS\Sysnative\drivers\aswVmm.sys
2017-01-01 16:47:19 9C58B6E9663D0A76D00D83E43C765BDF 163416 ----a-w- C:\WINDOWS\Sysnative\drivers\aswStm.sys
2017-01-01 16:47:19 9B480B472D6826E7257C90E2D0EE2954 37656 ----a-w- C:\WINDOWS\Sysnative\drivers\aswHwid.sys
2017-01-01 16:47:19 937885085BFE5BD08EC1BC0245DD203B 74544 ----a-w- C:\WINDOWS\Sysnative\drivers\aswRvrt.sys
2017-01-01 16:47:19 7010B57D708DA5C9686A5923EE621776 103064 ----a-w- C:\WINDOWS\Sysnative\drivers\aswRdr2.sys
2017-01-01 16:47:19 28213B34725B18387CC1B8C3D73858A1 513632 ----a-w- C:\WINDOWS\Sysnative\drivers\aswSP.sys
2017-01-01 16:47:19 1BB00571CC2C78463ABD7E9C32970758 108816 ----a-w- C:\WINDOWS\Sysnative\drivers\aswMonFlt.sys
2017-01-01 16:47:03 0B6352251C5D84130DF4252D33D266C2 969184 ----a-w- C:\WINDOWS\Sysnative\drivers\aswSnx.sys
2016-12-30 10:44:40 ABB371D9AEF728B0489B0E6872B4A1C0 250816 ----a-w- C:\WINDOWS\Sysnative\drivers\MBAMSwissArmy.sys
2016-12-29 15:23:39 B72D26074E72A757D788FB1BEF8B2F2E 377184 ----a-w- C:\WINDOWS\Sysnative\drivers\clfs.sys
2016-12-29 15:23:39 B0D9B87B795B7833C9152441CBD55CC4 624048 ----a-w- C:\WINDOWS\Sysnative\drivers\cng.sys
2016-12-29 15:23:32 5634BF53BE184314A82E638EAD67DE73 402272 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgmms1.sys
2016-12-29 15:23:29 D24345315139AAF6E3DF106344EE9422 658784 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgmms2.sys
2016-12-29 15:23:28 19F2B54EE8861D90579BD0E3AE5182F9 2189664 ----a-w- C:\WINDOWS\Sysnative\drivers\dxgkrnl.sys
2016-12-09 15:39:09 851ED52AE3E62CD5374BD4BBFF7A9DAB 967168 ----a-w- C:\WINDOWS\Sysnative\drivers\bthport.sys
2016-12-09 15:38:44 CDBD029BAEC8D09F6FBD404632D9AF28 128352 ----a-w- C:\WINDOWS\Sysnative\drivers\partmgr.sys
2016-12-09 15:38:38 FA918EC296EB410FF02867D008D02421 352096 ----a-w- C:\WINDOWS\Sysnative\drivers\fastfat.sys
2016-12-09 15:38:19 9627BBAA50878F6833A6A7843EE3B1D9 258560 ----a-w- C:\WINDOWS\Sysnative\drivers\xboxgip.sys
2016-12-09 15:38:00 46171262D0E806779DEEDFCAB2F830CC 219488 ----a-w- C:\WINDOWS\Sysnative\drivers\tpm.sys
2016-12-09 15:37:43 0D50B3F3AB32D416786B58D4553859CE 42496 ----a-w- C:\WINDOWS\Sysnative\drivers\modem.sys
2016-12-09 15:37:19 E2DD2E5BDCCD225670831B439826065B 335712 ----a-w- C:\WINDOWS\Sysnative\drivers\pci.sys
2016-12-09 15:37:03 55CA5329D1ADEB8F8034045930147AE4 713216 ----a-w- C:\WINDOWS\Sysnative\drivers\srv2.sys
2016-12-09 15:36:49 D4D12BC29DE0F09280868FDCA65B3474 282624 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb10.sys
2016-12-09 15:36:11 93A77008A8932FC84A173C4E97E52874 223584 ----a-w- C:\WINDOWS\Sysnative\drivers\mrxsmb20.sys
2016-12-09 15:35:59 AF6963414B820B7C45578ED3300438A7 433504 ----a-w- C:\WINDOWS\Sysnative\drivers\rdbss.sys
====== C:\WINDOWS\Tasks ======
2017-01-01 16:51:09 07B7E87022AF268A51912F9B7B889B7D 4020 ----a-w- C:\WINDOWS\Sysnative\Tasks\SafeZone scheduled Autoupdate 1483289463
2017-01-01 16:47:26 B7B6F914AEE1141F966066B295995E7A 4004 ----a-w- C:\WINDOWS\Sysnative\Tasks\avast! Emergency Update
2016-12-06 13:42:20 E7DEF131093C54CEDD442049612A1770 2770 ----a-w- C:\WINDOWS\Sysnative\Tasks\OneDrive Standalone Update Task v2
====== C:\WINDOWS\Temp ======
======= C:\Program Files =====
2016-12-30 09:48:42 -------- d---a-w- C:\Program Files\Start Menu 10
======= C:\PROGRA~2 =====
2017-01-01 15:24:35 -------- d-----w- C:\PROGRA~2\AVG
2016-12-31 12:23:10 -------- d---a-w- C:\PROGRA~2\OpenOffice 4
2016-12-30 13:33:11 -------- d-----w- C:\PROGRA~2\Seznam.cz
2016-12-30 10:35:10 -------- d-----w- C:\PROGRA~2\Trend Micro
======= C: =====
====== C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming ======
2017-01-01 16:33:15 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\AvgSetupLog
2017-01-01 15:32:53 -------- d-----w- C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Avg
2017-01-01 15:26:41 -------- d-----w- C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Avg
2017-01-01 15:22:23 -------- d-----w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\AvgSetupLog
2017-01-01 15:22:23 -------- d-----w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\Avg
2016-12-29 13:51:31 C193B62DBCFADD3021D0A00DEB319A6D 911448 ----a-w- C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\FontCache3.0.0.0.dat
2016-12-24 14:05:09 -------- d-----w- C:\Users\Default\AppData\Local\MicrosoftEdge
2016-12-24 14:05:09 -------- d-----w- C:\Users\Default User\AppData\Local\MicrosoftEdge
2016-12-24 14:05:00 -------- d-----w- C:\Users\Default\AppData\Local\Google
2016-12-24 14:05:00 -------- d-----w- C:\Users\Default User\AppData\Local\Google
====== C:\Users\vezun.DESKTOP-MBA0LHN.000 ======
2017-01-01 15:22:53 -------- d--h--w- C:\ProgramData\Common Files
2017-01-01 15:22:53 -------- d-----w- C:\ProgramData\Avg
2016-12-31 12:24:24 -------- d-s---w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.3
2016-12-31 10:14:14 77388F14CF6F3E9B1739E8F53B34B3CF 3977168 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\Desktop\adwcleaner_6.041.exe
2016-12-30 18:03:41 4DE53F972F6C234BE770D771D7C3BF4B 2418176 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\Desktop\FRST64.exe
2016-12-30 09:48:52 -------- d-----w- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Start Menu 10
2016-12-30 09:48:42 -------- d-----w- C:\ProgramData\StartMenuX
====== C: exe-files ==
2017-01-05 06:16:45 7C45FAB662379EA4D41EC13EF70F469C 132 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1760150484-826371346-2124125144-1004\$ITPPR4V.exe
2017-01-04 17:38:10 7EA0260488F304D68067A50B33A23AC2 1309184 ----a-w- C:\$RECYCLE.BIN\S-1-5-21-1760150484-826371346-2124125144-1004\$RTPPR4V.exe
2016-12-30 09:48:50 322AF5965D60495DF357657634CE649F 117072 ----a-w- C:\Program Files\Start Menu 10\StartMenuXrunWin8.exe
2016-12-30 09:48:49 7F894A044B276DB4482DB5DCAA69B29B 5924712 ----a-w- C:\Program Files\Start Menu 10\TidyStartMenu.exe
2016-12-30 09:48:49 124D5F9702533D01C6339435A21FC86E 7940952 ----a-w- C:\Program Files\Start Menu 10\StartMenuX.exe
2016-12-30 09:48:42 9FC5F70AE59A127D8C65902BC9FD5BB3 1330512 ----a-w- C:\Program Files\Start Menu 10\ShellIntegration.exe
2016-12-30 09:48:42 474C5FC4C486C1CCE8409B3A7FF39464 719168 ----a-w- C:\Program Files\Start Menu 10\unins000.exe
2016-12-29 13:32:07 62014E15B08D9F260B95307B1BB89A92 13983608 ----a-w- C:\Program Files (x86)\Google\Update\Download\{4DC8B4CA-1BDA-483E-B5FA-D3C12E15B62D}\55.0.2883.87\55.0.2883.87_54.0.2840.99_chrome_updater.exe
2016-12-29 13:22:44 33DF23DDDE222C6270C99885D7A70DE2 96920 ----atw- C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleUpdateWebPlugin.exe
2016-12-29 13:22:43 5E7ADCF81096860FED5AB569A8ADE3AB 96920 ----atw- C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleUpdateOnDemand.exe
2016-12-29 13:22:43 57769E78CCB9F3DE92B507B72D49AF99 96920 ----atw- C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleUpdateBroker.exe
2016-12-29 13:22:14 FCAEDFFAA41EA74BA53FDADABBB8B21A 1129376 ----a-w- C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleUpdateSetup.exe
2016-12-29 13:21:39 FACC7DC5EEF8AF0D969BC2481AAA3EFC 174232 ----atw- C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleUpdateComRegisterShell64.exe
2016-12-29 13:21:38 B5C7D56B6DB76C66E24B4B735BB66509 366232 ----atw- C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler64.exe
2016-12-29 13:21:36 FE9E6388A039441098EB09C070EA5049 601752 ----atw- C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleUpdateCore.exe
2016-12-29 13:21:36 FE40EC349D80C0ED24A5808DCFE9A0D2 288920 ----atw- C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleCrashHandler.exe
2016-12-29 13:21:34 2D8BBF6C7241AAD9EDE7708EBB7B43A4 153752 ----atw- C:\Program Files (x86)\Google\Update\1.3.32.7\GoogleUpdate.exe
2016-12-29 13:21:25 FCAEDFFAA41EA74BA53FDADABBB8B21A 1129376 ----a-w- C:\Program Files (x86)\Google\Update\Download\{430FD4D0-B729-4F61-AA34-91526481799D}\1.3.32.7\GoogleUpdateSetup.exe
=== C: other files ==
2017-01-04 18:39:30 9B0A138E66ACED6DB6EF06E7302064FB 4869 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\Temp\xpi\tmp.zip
2017-01-04 17:15:12 7A5D4AC2691000D27D19F600AA9C4926 129397 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\Temp\jrt\get.bat
2016-12-30 13:33:12 D158ACC89C1DA1F81A2D5399A4263C0E 1326 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\szn_software_listicka_3_0_0.install.bat
2016-12-30 13:33:12 45DD3CC582D0DDC41CFB2C691DC67B7A 610 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\szn_software_listicka_3_0_0.uninstall.bat
2016-12-30 13:33:11 F65744CDA67E821CFBE074C8C2050D36 96329 ----a-w- C:\Program Files (x86)\Seznam.cz\distribution\install\cz.seznam.software.pp-1.0.2-win32.zip
2016-12-30 13:33:11 F4BEBE89A8E1AC362FE3A79C97BE1DDE 849 ----a-w- C:\Program Files (x86)\Seznam.cz\distribution\install\cz.seznam.software.autoupdate-1.0.8-win32.zip
2016-12-30 13:33:11 E14A673DADCD35F53DDDE5FA8A2BC1F5 323698 ----a-w- C:\Program Files (x86)\Seznam.cz\distribution\install\cz.seznam.software.chromelisticka-1.7.6-win32.zip
2016-12-30 13:33:11 CF3B1B6E8062E277C361F5EB155078B2 529195 ----a-w- C:\Program Files (x86)\Seznam.cz\distribution\install\com.microsoft.msdn.msvcr100-10.0.40219.325-win32.zip
2016-12-30 13:33:11 CB44D1AE758DF04B151A9EAAE8477B90 757 ----a-w- C:\Program Files (x86)\Seznam.cz\distribution\install\cz.seznam.software.ielisticka3-3.1.4-win32.zip
2016-12-30 13:33:11 C06D8FC15E106BBBD630E12C6C0D33B7 1306138 ----a-w- C:\Program Files (x86)\Seznam.cz\distribution\install\szn-software-fflisticka-3.0.9-win32.zip
2016-12-30 13:33:11 AB4A2F2C9957DD3963A7540EA75E3EEB 1120955 ----a-w- C:\Program Files (x86)\Seznam.cz\distribution\install\cz.seznam.software.sznsetup-1.2.5-win32.zip
2016-12-30 13:33:11 9AE25DCC2D25C8408A413C70DFF1B41A 1688 ----a-w- C:\Program Files (x86)\Seznam.cz\distribution\install\szn-software-listicka-3.0.0-win32.zip
2016-12-30 13:33:11 834D157A4406D525AF2F82CAD1F8AD7B 413504 ----a-w- C:\Program Files (x86)\Seznam.cz\distribution\install\cz.seznam.software.szninstall-1.1.12-win32.zip
2016-12-30 13:33:11 71F3B4B9919246C857EBB1DC3E145707 1570197 ----a-w- C:\Program Files (x86)\Seznam.cz\distribution\install\cz.seznam.software.libfoxcub-3.1.4-win32.zip
2016-12-30 13:33:11 546732981910E6F38F324AF7F310A9F9 217424 ----a-w- C:\Program Files (x86)\Seznam.cz\distribution\install\cz.seznam.software.libszndesktop-2.0.26-win32.zip
2016-12-30 13:33:11 403F5AD8163B75D8A836A0F209CD3CFD 932957 ----a-w- C:\Program Files (x86)\Seznam.cz\distribution\install\cz.seznam.software.libfoxcub64-3.1.4-win32.zip
2016-12-30 13:33:11 3E803380F1BEA7D7FBC0CD8E842D0335 31516 ----a-w- C:\Program Files (x86)\Seznam.cz\distribution\install\cz.seznam.software.libfoxloader-3.1.2-win32.zip
2016-12-30 13:33:11 1D728224B44F40104BDB6EC746318304 313182 ----a-w- C:\Program Files (x86)\Seznam.cz\distribution\install\cz.seznam.software.lightspeed-1210-12.10.12-win32.zip
2016-12-30 13:33:11 1500F612582BB0BEB374E9521546C129 39605 ----a-w- C:\Program Files (x86)\Seznam.cz\distribution\install\cz.seznam.software.szndesktop-2.0.26-win32.zip
2016-12-30 13:33:11 074A93E1689EA64403D500B6C7A83AB4 719 ----a-w- C:\Program Files (x86)\Seznam.cz\distribution\install\szn-software-base-1.0.0-win32.zip
2016-12-30 13:33:04 EC8D719E6F25D33D9F16817F6BCF1621 106 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_pp_1_0_2.uninstall.bat
2016-12-30 13:33:04 E7883526279757875FB8188805601ED1 166 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_pp_1_0_2.install.bat
2016-12-30 13:33:03 CB58E149F6C042EC19D27C6670F8007D 289 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_chromelisticka_1_7_8.uninstall.bat
2016-12-30 13:33:03 438645DAC0A08E21DAFCC6EE75284EC1 42 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\com_microsoft_msdn_msvcr100_10_0_40219_325.uninstall.bat
2016-12-30 13:33:03 4271A7FA5E233E43048DE68E2945F523 56 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\com_microsoft_msdn_msvcr100_10_0_40219_325.install.bat
2016-12-30 13:33:03 1E97DF6A52D86D65ACB394B0884709A4 1106 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_chromelisticka_1_7_8.install.bat
2016-12-30 13:33:01 74902A22D1ED54AD4E0824A772A5EEB8 1047 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\szn_software_fflisticka_3_1_4.uninstall.bat
2016-12-30 13:33:01 2BC002CEAC99E534480FC245270042F2 3001 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\szn_software_fflisticka_3_1_4.install.bat
2016-12-30 13:32:48 C206DCA6E849C4A7E9834ECBC272A07F 143 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libfoxcub64_3_2_5.uninstall.bat
2016-12-30 13:32:48 ABCBAAF46341277F8951FB5BF133C383 26 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_ielisticka3_3_2_6.install.bat
2016-12-30 13:32:48 239F13333B848ECD8348E41C0A62046A 26 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_ielisticka3_3_2_6.uninstall.bat
2016-12-30 13:32:47 7A522080BFF68371130F0741A612C4E0 479 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libfoxcub64_3_2_5.install.bat
2016-12-30 13:32:46 9F076A34053864B8E9A1B5FEE5C8A375 117 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libfoxloader_3_2_5.uninstall.bat
2016-12-30 13:32:46 9BBCD62FE1CD94EBEB3E5E0D265B1FAC 665 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libfoxloader_3_2_5.install.bat
2016-12-30 13:32:46 9B26AF8C30E05C5C887AE45340C86C66 2096 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libfoxcub_3_2_6.install.bat
2016-12-30 13:32:46 7DA206C336BBE241FA88BB871711480E 447 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libfoxcub_3_2_6.uninstall.bat
2016-12-30 13:32:44 A4F113D2DDF779A13A65D3DF7D86E61B 290 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_szndesktop_2_0_31.install.bat
2016-12-30 13:32:44 6F73BC97F458228B8DC66C578AD0558D 178 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_szndesktop_2_0_31.uninstall.bat
2016-12-30 13:32:43 CFB7FE84F6F3C98AB9B32ABE82F4F2D0 90 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libszndesktop_2_0_31.reconfigure.bat
2016-12-30 13:32:43 90BFFA69EFC7FC85163ED2536726D942 293 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libszndesktop_2_0_31.uninstall.bat
2016-12-30 13:32:43 6B5B33ACCAB99D9F69195776DDE81615 23 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_lightspeed_1210_12_10_17.uninstall.bat
2016-12-30 13:32:43 628C0001F72480BACC5461C706E89F69 30 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_lightspeed_1210_12_10_17.install.bat
2016-12-30 13:32:43 40C2C837374D982F9A14181E3FE772F3 328 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_libszndesktop_2_0_31.install.bat
2016-12-30 13:32:42 82CED4B51204137AFEC924B9A0A34C92 32 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\szn_software_base_1_0_0.uninstall.bat
2016-12-30 13:32:42 3D00B26AC691FA886F7A9E557B882842 129 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\szn_software_base_1_0_0.install.bat
2016-12-30 13:32:42 275B053DDF715BAAE046DA79CB5E8D68 42 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\com_microsoft_msdn_msvcr110_11_0_51106_1.uninstall.bat
2016-12-30 13:32:42 07F8553EBC55FC91142A43993C01460B 56 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\com_microsoft_msdn_msvcr110_11_0_51106_1.install.bat
2016-12-30 13:32:41 F45C071FD1ABA066C0A5877DCCC37F07 133 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_autoupdate_1_0_8.install.bat
2016-12-30 13:32:41 5D379CB847043D49E99717CBE5CFD1B1 104 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_autoupdate_1_0_8.uninstall.bat
2016-12-30 08:41:53 93C3AFFD6E3E86AD9FC944356E55712A 908 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_szninstall_1_1_14.install.bat
2016-12-30 08:41:53 1FEFF19973A4F9158C152836AA645DA9 181 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_szninstall_1_1_14.uninstall.bat
2016-12-30 08:41:50 7BE26BBB7D13C3C854F880E2D7C77F47 90 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_sznsetup_1_2_6.install.bat
2016-12-30 08:41:50 0F2A9391C79202E47E212C8D2C4D6D43 21 ----a-w- C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\uninstall\cz_seznam_software_sznsetup_1_2_6.uninstall.bat
==== Startup Registry Enabled ======================
[HKEY_USERS\S-1-5-19\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup"
[HKEY_USERS\S-1-5-20\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"OneDriveSetup"="C:\Windows\SysWOW64\OneDriveSetup.exe /thfirstsetup"
[HKEY_USERS\S-1-5-21-1760150484-826371346-2124125144-1004\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"="C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background"
"Boxoft Tools"="C:\ProgramData\Boxtools\Boxofttoolbox.exe -autorun"
"StartMenuX"="C:\Program Files\Start Menu 10\StartMenuX.exe"
"cz.seznam.software.autoupdate"="C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\szninstall.exe -c"
"cz.seznam.software.szndesktop"="C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe -q"
"CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR"
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"HPMessageService"="C:\Program Files (x86)\Hewlett-Packard\HP System Event\HPMSGSVC.exe"
"isa"="C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe"
"PowerDVD14Agent"="C:\Program Files (x86)\CyberLink\PowerDVD14\PowerDVD14Agent.exe"
"seznam-listicka-distribuce"="C:\Program Files (x86)\Seznam.cz\distribution\szninstall.exe -s -d listicka 1 szn-software-listicka cz.seznam.software.autoupdate"
"AvastUI.exe"="C:\Program Files\AVAST Software\Avast\AvastUI.exe /nogui"
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"OneDrive"="C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\Microsoft\OneDrive\OneDrive.exe /background"
"Boxoft Tools"="C:\ProgramData\Boxtools\Boxofttoolbox.exe -autorun"
"StartMenuX"="C:\Program Files\Start Menu 10\StartMenuX.exe"
"cz.seznam.software.autoupdate"="C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\szninstall.exe -c"
"cz.seznam.software.szndesktop"="C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Seznam.cz\bin\wszndesktop.exe -q"
"CCleaner Monitoring"="C:\Program Files\CCleaner\CCleaner64.exe /MONITOR"
==== Startup Registry Enabled x64 ======================
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"RTHDVCPL"="C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe -s"
"BtServer"="C:\Program Files (x86)\REALTEK\Realtek Bluetooth\BTServer.exe"
==== Task Scheduler Jobs ======================
C:\WINDOWS\tasks\Adobe Flash Player Updater.job --a-------- C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe [30.12.2016 09:43]
==== Other Scheduled Tasks ======================
"C:\WINDOWS\SysNative\tasks\Adobe Acrobat Update Task" [C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe]
"C:\WINDOWS\SysNative\tasks\Adobe Flash Player Updater" [C:\Windows\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe]
"C:\WINDOWS\SysNative\tasks\CCleanerSkipUAC" ["C:\Program Files\CCleaner\CCleaner.exe"]
"C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineCore" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]
"C:\WINDOWS\SysNative\tasks\GoogleUpdateTaskMachineUA" [C:\Program Files (x86)\Google\Update\GoogleUpdate.exe]
"C:\WINDOWS\SysNative\tasks\HPGenoobeReminder" ["C:\Program Files (x86)\Hewlett-Packard\HP Registration Service\HP GenOOBE\HPGenOOBE.exe"]
"C:\WINDOWS\SysNative\tasks\OneDrive Standalone Update Task" [C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\Microsoft\OneDrive\17.3.6517.0809\OneDriveStandaloneUpdater.exe]
"C:\WINDOWS\SysNative\tasks\OneDrive Standalone Update Task v2" [%localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe]
"C:\WINDOWS\SysNative\tasks\RegistrationModuleReminder_Welcome-S-1-5-21-1760150484-826371346-2124125144-1001" [C:\Program Files\Hewlett-Packard\HP Welcome\Garage.Container.exe]
"C:\WINDOWS\SysNative\tasks\SafeZone scheduled Autoupdate 1455288211" [C:\Program Files\AVAST Software\SZBrowser\launcher.exe]
"C:\WINDOWS\SysNative\tasks\SafeZone scheduled Autoupdate 1483289463" [C:\Program Files\AVAST Software\SZBrowser\launcher.exe]
"C:\WINDOWS\SysNative\tasks\User_Feed_Synchronization-{8698A19E-FADC-4EAB-8092-6FD4D3B3F73F}" [C:\WINDOWS\system32\msfeedssync.exe]
"C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report" [C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe]
"C:\WINDOWS\SysNative\tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater" [c:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe]
==== Firefox Start and Search pages ======================
ProfilePath: C:\Users\pepam\AppData\Roaming\Mozilla\Firefox\Profiles\hbt805t0.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
ProfilePath: C:\Users\vezun\AppData\Roaming\Mozilla\Firefox\Profiles\k8qn3ufy.default
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
ProfilePath: C:\Users\VEZUND~1.000\AppData\Roaming\Mozilla\Firefox\Profiles\h53s0cg4.default-1483283782931
user_pref("browser.startup.homepage", "
https://www.seznam.cz/");
user_pref("browser.newtab.url", "about:newtab");
ProfilePath: C:\Users\VEZUND~1.000\AppData\Roaming\Mozilla\Firefox\Profiles\mgykuch9.default-1483020939922
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
ProfilePath: C:\Users\VEZUND~1.000\AppData\Roaming\Mozilla\Firefox\Profiles\s7sc553b.default-1482752296322
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
ProfilePath: C:\Users\VEZUND~1.000\AppData\Roaming\Mozilla\Firefox\Profiles\w0m9av5b.default-1467970393504
user_pref("browser.startup.homepage", "about:home");
user_pref("browser.newtab.url", "about:newtab");
==== Firefox Extensions Registry ======================
[HKEY_LOCAL_MACHINE\Software\Mozilla\Firefox\Extensions]
"
wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [01.01.2017 18:19]
[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"
wrc@avast.com"="C:\Program Files\AVAST Software\Avast\WebRep\FF" [01.01.2017 18:19]
==== Firefox Extensions ======================
ProfilePath: C:\Users\VEZUND~1.000\AppData\Roaming\Mozilla\Firefox\Profiles\mgykuch9.default-1483020939922
- Seznam litika - %ProfilePath%\extensions\{ea614400-e918-4741-9a97-7a972ff7c30b}
AppDir: C:\Program Files\Mozilla Firefox
- Undetermined - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
AppDir: C:\Program Files (x86)\Mozilla Firefox
- Undetermined - %AppDir%\browser\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}.xpi
==== Firefox Plugins ======================
Profilepath: C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Mozilla\Firefox\Profiles\h53s0cg4.default-1483283782931
86C2467018027DFF6ED94F50D9CF1145 - C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1225195.dll - Shockwave for Director / Shockwave for Director
62D98B286C805E193568037B70D936D2 - C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_22_0_0_209.dll - Shockwave Flash
E8D38E8FB6EC88E7B0E0B4D9AC9B0725 - C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_24_0_0_186.dll - Shockwave Flash
Profilepath: C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Mozilla\Firefox\Profiles\mgykuch9.default-1483020939922
86C2467018027DFF6ED94F50D9CF1145 - C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1225195.dll - Shockwave for Director / Shockwave for Director
62D98B286C805E193568037B70D936D2 - C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_22_0_0_209.dll - Shockwave Flash
E8D38E8FB6EC88E7B0E0B4D9AC9B0725 - C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_24_0_0_186.dll - Shockwave Flash
Profilepath: C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Mozilla\Firefox\Profiles\s7sc553b.default-1482752296322
62D98B286C805E193568037B70D936D2 - C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_22_0_0_209.dll - Shockwave Flash
E8D38E8FB6EC88E7B0E0B4D9AC9B0725 - C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_24_0_0_186.dll - Shockwave Flash
Profilepath: C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Roaming\Mozilla\Firefox\Profiles\w0m9av5b.default-1467970393504
62D98B286C805E193568037B70D936D2 - C:\WINDOWS\SysWoW64\Macromed\Flash\NPSWF32_22_0_0_209.dll - Shockwave Flash
==== Fake Chromium Profiles Check ======================
Fake profile C:\Users\Default\AppData\Local\Google\Chrome deleted
==== Chromium Look ======================
HKEY_LOCAL_MACHINE\SOFTWARE\Google\Chrome\Extensions
eofcbnmajmjmplflapaojjnihcjkigck - No path found[]
gomekmidlodglbbmalcneegieacbdmki - No path found[]
Avast SafePrice - vezun.DESKTOP-MBA0LHN.000\AppData\Local\Google\Chrome\User Data\Default\Extensions\eofcbnmajmjmplflapaojjnihcjkigck
Avast Online Security - vezun.DESKTOP-MBA0LHN.000\AppData\Local\Google\Chrome\User Data\Default\Extensions\gomekmidlodglbbmalcneegieacbdmki
Chrome Web Store Payments - vezun.DESKTOP-MBA0LHN.000\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda
Seznam Lištička - Rychlá volba - vezun.DESKTOP-MBA0LHN.000\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak
==== Chromium Startpages ======================
C:\Users\pepam\AppData\Local\Chromium\Metro\User Data\Default\Preferences
"homepage": "
http://www.seznam.cz/?clid=6826",
C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\Chromium\Metro\User Data\Default\Preferences
"homepage": "
http://www.seznam.cz/?clid=6826",
==== Set IE to Default ======================
Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="
http://go.microsoft.com/fwlink/p/?LinkI ... id=UE01DHP"
"Default_Page_URL"="
http://www.bing.com?pc=CMNTDFJS"
New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Default_Page_URL"="
http://go.microsoft.com/fwlink/?LinkId=69157"
"Start Page"="
http://go.microsoft.com/fwlink/p/?LinkI ... id=UE01DHP"
==== All HKLM and HKCU SearchScopes ======================
HKLM\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} -
http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
HKLM\Wow6432Node\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKLM\Wow6432Node\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} -
http://www.bing.com/search?q={searchTer ... TR&pc=HRTS
HKCU\SearchScopes "DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
HKCU\SearchScopes\{012E1000-F331-11DB-8314-0800200C9A66} -
http://www.google.com/search?q={searchTerms}
HKCU\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A} -
http://www.bing.com/search?q={searchTer ... TR&pc=HRTS
==== Deleting Registry Keys ======================
HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Uninstall\UnityWebPlayer deleted successfully
==== Empty IE Cache ======================
C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\pepam\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\pepam\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\Users\vezun\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\vezun\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\Users\vezun.DESKTOP-MBA0LHN\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\pepam\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\pepam\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\Users\vezun\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\vezun\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\Users\vezun.DESKTOP-MBA0LHN\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
==== Empty FireFox Cache ======================
C:\Users\pepam\AppData\Local\Mozilla\Firefox\Profiles\hbt805t0.default\cache2 emptied successfully
C:\Users\vezun\AppData\Local\Mozilla\Firefox\Profiles\k8qn3ufy.default\cache2 emptied successfully
C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\Mozilla\Firefox\Profiles\4ou3bvuf.default-1459013361284\cache2 emptied successfully
C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\Mozilla\Firefox\Profiles\h53s0cg4.default-1483283782931\cache2 emptied successfully
C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\Mozilla\Firefox\Profiles\s7sc553b.default-1482752296322\cache2 emptied successfully
==== Empty Chrome Cache ======================
C:\Users\pepam\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache emptied successfully
C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully
C:\Users\vezun.DESKTOP-MBA0LHN.000\AppData\Local\Yandex\YandexBrowser\User Data\Default\Cache emptied successfully
==== Empty All Flash Cache ======================
No Flash Cache Found
==== Empty All Java Cache ======================
No Java Cache Found
==== C:\zoek_backup content ======================
C:\zoek_backup (files=56 folders=39 29124289 bytes)
==== Empty Temp Folders ======================
C:\WINDOWS\Temp will be emptied at reboot
==== After Reboot ======================
==== Empty Temp Folders ======================
C:\WINDOWS\Temp successfully emptied
C:\Users\VEZUND~1.000\AppData\Local\Temp successfully emptied
==== Empty Recycle Bin ======================
C:\$RECYCLE.BIN successfully emptied
==== EOF on 05.01.2017 at 13:19:06,27 ======================