Dobrý den
Rudy posílám vám RSIT log z druhého PC.Včera jstemi pomohl z ProBookem HP a dnes bych prosím potřeboval to samé jen ze stolním PC neboť tá havěť SEARCH SCOPES je v registrech.Jen vás poprosím o to samé,nijakej úklid aby mi to nerozházelo 3D plochu ve Windows 8.1,aby mi všechno šlo email,aplikace a pod.Ještě jedna věc.Když něco RSIT log našel ve Skype tak mi to tam prosím zanechte neboť by mi nešlo otevřít ve 3D ploše.MOC děkuji za pomoc.NASHLE.
Log vám posílám na 4x neboť je MOOOC velkej a nevejde se do jedné správy
1 LOG -
Logfile of random's system information tool 1.10 (written by random/random)
Run by Kostík a Irenočka at 2014-12-21 10:50:14
Microsoft Windows 8.1 Pro s aplikací Media Center
System drive C: has 906 GB (95%) free of 954 GB
Total RAM: 8161 MB (82% free)
Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 10:50:20, on 21. 12. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal
Running processes:
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\CyberLink\Shared files\brs.exe
C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.2\bin\TrayPopupE\TrayTipAgentE.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files\AVAST Software\Avast\avastui.exe
C:\Program Files\trend micro\Kostík a Irenočka.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.google.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: ExplorerBHO Class - {449D0D6E-2412-4E61-B68F-1CB625CD9E52} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Java(tm) Plug-In SSV Helper - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files (x86)\Java\jre7\bin\ssv.dll
O2 - BHO: avast! Online Security - {8E5E2654-AD2D-48bf-AC2D-D17F00898D06} - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll
O2 - BHO: Office Document Cache Handler - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll
O2 - BHO: ClassicIEBHO Class - {EA801577-E6AD-4BD5-8F71-4BE0154331A4} - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll
O3 - Toolbar: Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll
O3 - Toolbar: (no name) - {1EA00BE1-6E54-4E2A-8099-680300BF23E1} - (no file)
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [CLMLServer] "C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe"
O4 - HKLM\..\Run: [UpdateP2GoShortCut] "C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\Power2Go" UpdateWithCreateOnce "SOFTWARE\CyberLink\Power2Go\6.0"
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [BDRegion] C:\Program Files (x86)\Cyberlink\Shared files\brs.exe
O4 - HKLM\..\Run: [UCam_Menu] "C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe" "C:\Program Files (x86)\CyberLink\YouCam" UpdateWithCreateOnce "Software\CyberLink\YouCam\2.0"
O4 - HKLM\..\Run: [LGODDFU] "C:\Program Files (x86)\lg_fwupdate\lgfw.exe" blrun
O4 - HKLM\..\Run: [EaseUS EPM Tray Agent] "C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.2\bin\TrayPopupE\TrayTipAgentE.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [AvastUI.exe] "C:\Program Files\AVAST Software\Avast\AvastUI.exe" /nogui
O4 - HKCU\..\Run: [icq] C:\Users\Kostík a Irenočka\AppData\Roaming\ICQM\icq.exe -CU
O4 - HKCU\..\Run: [LightScribe Control Panel] C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe -hidden
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xportovat do aplikace Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Od&eslat do aplikace OneNote - res://C:\PROGRA~1\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Odeslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Od&eslat do aplikace OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files (x86)\Seznam.cz\listicka.dll
O9 - Extra 'Tools' menuitem: Zvýrazňovač slov Lištičky - {4E6D6F90-31CA-4878-A7A3-1CD50F115A69} - C:\Program Files (x86)\Seznam.cz\listicka.dll
O9 - Extra button: (no name) - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra 'Tools' menuitem: Classic IE Settings - {56753E59-AF1D-4FBA-9E15-31557124ADA2} - C:\Program Files\Classic Shell\ClassicIE_32.exe
O9 - Extra button: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: P&ropojené poznámky aplikace OneNote - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Kostík a Irenočka\AppData\Roaming\ICQM\icq.exe (HKCU)
O9 - Extra 'Tools' menuitem: ICQ - {086C8477-4F71-4550-87FB-AF0AE8DF3E98} - C:\Users\Kostík a Irenočka\AppData\Roaming\ICQM\icq.exe (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: Adobe Flash Player Update Service (AdobeFlashPlayerUpdateSvc) - Adobe Systems Incorporated - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\AVAST Software\Avast\AvastSvc.exe
O23 - Service: avast! Firewall - AVAST Software - C:\Program Files\AVAST Software\Avast\afwServ.exe
O23 - Service: AvastVBox COM Service (AvastVBoxSvc) - Avast Software - C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe
O23 - Service: CyberLink Product - 2014/12/17 19:22:51 (CLKMSVC10_38F51D56) - CyberLink - C:\Program Files (x86)\CyberLink\PowerDVD10\NavFilter\kmsvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe
O23 - Service: MBAMScheduler - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamscheduler.exe
O23 - Service: MBAMService - Malwarebytes Corporation - C:\Program Files (x86)\Malwarebytes Anti-Malware\mbamservice.exe
O23 - Service: Mozilla Maintenance Service (MozillaMaintenance) - Mozilla Foundation - C:\Program Files (x86)\Mozilla Maintenance Service\maintenanceservice.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: ServiceLayer - Nokia - C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: TeamViewer 10 (TeamViewer) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: WinArchiver Service - Unknown owner - C:\Program Files\WinArchiver\WAService.exe
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
--
End of file - 12052 bytes
======Listing Processes======
wininit.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"C:\Program Files\WinArchiver\WAService.exe"
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k NetworkService
"C:\Program Files\AVAST Software\Avast\AvastSvc.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files\AVAST Software\Avast\afwServ.exe"
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\SysWOW64\svchost.exe -k hpdevmgmt
dashost.exe {30481065-cf57-4cd4-94de60dbc96d7b6e}
"C:\Program Files (x86)\Common Files\LightScribe\LSSrvc.exe"
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
"C:\Program Files\AVAST Software\Avast\ng\vbox\AvastVBoxSVC.exe"
ngservice.exe pipeserver
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
C:\WINDOWS\system32\vssvc.exe
C:\WINDOWS\System32\svchost.exe -k swprv
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\ehome\ehRecvr.exe
C:\WINDOWS\System32\WinLogon.exe -SpecialSession
-hiberboot
atieclxx
taskeng.exe {45A1B27C-F048-4120-BEA3-E8BD6EEF0C3B}
taskhostex.exe
C:\WINDOWS\Explorer.EXE
ClassicStartMenu.exe -startup
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20689_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\Windows\System32\skydrive.exe -Embedding
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-279f9b54-90a6-4ef0-8c3e-d9223bcb15b9 -SystemEventPortName:HostProcess-bd3fdd74-7367-443f-80e5-0f8350f91719 -IoCancelEventPortName:HostProcess-fe2086c9-4bfe-4516-9b07-6a184b76fc63 -NonStateChangingEventPortName:HostProcess-97f929f5-86a6-4dfb-84a9-60baace47c1c -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:de31dac8-3e23-4326-b499-f3f970d0a3fd -DeviceGroupId:WpdFsGroup
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\CyberLink\Shared files\brs.exe"
"C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.2\bin\TrayPopupE\TrayTipAgentE.exe"
"C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
"C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files\AVAST Software\Avast\avastui.exe" /nogui
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
"C:\Windows\System32\WWAHost.exe" -ServerName:Windows.Store
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe21_ Global\UsGthrCtrlFltPipeMssGthrPipe21 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 576 580 588 65536 584
"C:\Users\Kostík a Irenočka\Desktop\RSITx64.exe"
======Scheduled tasks folder======
C:\WINDOWS\tasks\Adobe Flash Player Updater.job - C:\WINDOWS\SysWOW64\Macromed\Flash\FlashPlayerUpdateService.exe
C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
=========Mozilla firefox=========
ProfilePath - C:\Users\Kostík a Irenočka\AppData\Roaming\Mozilla\Firefox\Profiles\0s2u9d0l.default
prefs.js - "browser.startup.homepage" - "
https://www.google.com/?trackid=sp-006"
prefs.js - "keyword.URL" - "
https://www.google.com/search/?trackid=sp-006"
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.240 Plugin
"Path"=C:\WINDOWS\SysWOW64\Macromed\Flash\NPSWF32_16_0_0_240.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@adobe.com/ShockwavePlayer]
"Description"=Adobe Shockwave Player
"Path"=C:\WINDOWS\SysWOW64\Adobe\Director\np32dsw_1214154.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/DTPlugin,version=10.71.2]
"Description"=Java™ Deployment Toolkit
"Path"=C:\Program Files (x86)\Java\jre7\bin\dtplugin\npDeployJava1.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@java.com/JavaPlugin,version=10.71.2]
"Description"=Oracle® Next Generation Java™ Plug-In
"Path"=C:\Program Files (x86)\Java\jre7\bin\plugin2\npjp2.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@microsoft.com/SharePoint,version=14.0]
"Description"=Microsoft SharePoint Plug-in for Firefox
"Path"=C:\PROGRA~2\MICROS~1\Office14\NPSPWRAP.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@nokia.com/EnablerPlugin]
"Description"=Nokia Suite Enabler Plugin
"Path"=C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=3]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\@tools.google.com/Google Update;version=9]
"Description"=Google Update
"Path"=C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Wow6432Node\MozillaPlugins\Adobe Reader]
"Description"=Handles PDFs in-place in Firefox
"Path"=C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@adobe.com/FlashPlayer]
"Description"=Adobe® Flash® Player 16.0.0.240 Plugin
"Path"=C:\WINDOWS\system32\Macromed\Flash\NPSWF64_16_0_0_240.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0]
"Description"=Ag Player Plugin
"Path"=c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@microsoft.com/OfficeAuthz,version=14.0]
"Description"=Office Authorization plug-in for NPAPI browsers
"Path"=C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL
[HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@videolan.org/vlc,version=2.1.5]
"Description"=VLC Multimedia Plugin
"Path"=C:\Program Files\VideoLAN\VLC\npvlc.dll
C:\Users\Kostík a Irenočka\AppData\Roaming\Mozilla\Firefox\Profiles\0s2u9d0l.default\searchplugins\
google-avast.xml
======Registry dump======
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE64.dll [2014-12-18 705448]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~1\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 690392]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2014-04-20 483520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{449D0D6E-2412-4E61-B68F-1CB625CD9E52}]
ExplorerBHO Class - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72853161-30C5-4D22-B7F9-0BBC1D38A37E}]
Groove GFS Browser Helper - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files (x86)\Java\jre7\bin\ssv.dll [2014-12-18 462760]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{8E5E2654-AD2D-48bf-AC2D-D17F00898D06}]
avast! Online Security - C:\Program Files\AVAST Software\Avast\aswWebRepIE.dll [2014-12-18 586968]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B4F3A835-0E21-4959-BA22-42B3008E02FF}]
Office Document Cache Handler - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL [2013-03-06 562904]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files (x86)\Java\jre7\bin\jp2ssv.dll [2014-12-18 171944]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{EA801577-E6AD-4BD5-8F71-4BE0154331A4}]
ClassicIEBHO Class - C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2014-04-20 440512]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2014-04-20 803520]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{553891B7-A0D5-4526-BE18-D3CE461D6310} - Classic Explorer Bar - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2014-04-20 683200]
{1EA00BE1-6E54-4E2A-8099-680300BF23E1}
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Classic Start Menu"=C:\Program Files\Classic Shell\ClassicStartMenu.exe [2014-04-20 161984]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
""= []
"icq"=C:\Users\Kostík a Irenočka\AppData\Roaming\ICQM\icq.exe [2014-12-17 35239432]
"LightScribe Control Panel"=C:\Program Files (x86)\Common Files\LightScribe\LightScribeControlPanel.exe [2011-03-04 2741616]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-12-12 7394584]
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"StartCCC"=C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-07-04 766688]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2014-11-20 1021128]
"HP Software Update"=C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [2010-06-09 49208]
""= []
"CLMLServer"=C:\Program Files (x86)\CyberLink\Power2Go\CLMLSvc.exe [2009-12-15 103720]
"UpdateP2GoShortCut"=C:\Program Files (x86)\CyberLink\Power2Go\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2011-03-30 87336]
"BDRegion"=C:\Program Files (x86)\Cyberlink\Shared files\brs.exe [2011-09-28 75048]
"UCam_Menu"=C:\Program Files (x86)\CyberLink\YouCam\MUITransfer\MUIStartMenu.exe [2009-05-19 222504]
"LGODDFU"=C:\Program Files (x86)\lg_fwupdate\lgfw.exe [2014-12-17 27760]
"EaseUS EPM Tray Agent"=C:\Program Files (x86)\EaseUS\EaseUS Partition Master 10.2\bin\TrayPopupE\TrayTipAgentE.exe [2014-11-18 255072]
"SunJavaUpdateSched"=C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [2014-09-26 271744]
"AvastUI.exe"=C:\Program Files\AVAST Software\Avast\AvastUI.exe [2014-12-18 5227112]
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~1\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 6671064]
[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{B5A7F190-DDA6-4420-B3BA-52453494E6CD}"=C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL [2013-12-19 4171480]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"SoftwareSASGeneration"=1
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"wave2"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"aux2"=wdmaud.drv
"wave3"=wdmaud.drv
"mixer3"=wdmaud.drv
"msacm.ac3filter"=ac3filter64.acm
======File associations======
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*
======List of files/folders created in the last 1 month======
2014-12-21 10:50:14 ----D---- C:\rsit
2014-12-21 10:50:14 ----D---- C:\Program Files\trend micro
2014-12-18 19:54:35 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\AVAST Software
2014-12-18 19:54:06 ----D---- C:\WINDOWS\SYSWOW64\vbox
2014-12-18 19:54:06 ----D---- C:\WINDOWS\system32\vbox
2014-12-18 19:53:19 ----A---- C:\WINDOWS\system32\drivers\aswVmm.sys
2014-12-18 19:53:19 ----A---- C:\WINDOWS\system32\drivers\aswStm.sys
2014-12-18 19:53:19 ----A---- C:\WINDOWS\system32\drivers\aswSP.sys
2014-12-18 19:53:19 ----A---- C:\WINDOWS\system32\drivers\aswsnx.sys
2014-12-18 19:53:19 ----A---- C:\WINDOWS\system32\drivers\aswRvrt.sys
2014-12-18 19:53:19 ----A---- C:\WINDOWS\system32\drivers\aswRdr2.sys
2014-12-18 19:53:19 ----A---- C:\WINDOWS\system32\drivers\aswMonFlt.sys
2014-12-18 19:53:19 ----A---- C:\WINDOWS\system32\drivers\aswKbd.sys
2014-12-18 19:53:19 ----A---- C:\WINDOWS\system32\drivers\aswHwid.sys
2014-12-18 19:53:18 ----A---- C:\WINDOWS\system32\aswBoot.exe
2014-12-18 19:53:15 ----A---- C:\WINDOWS\avastSS.scr
2014-12-18 19:53:03 ----A---- C:\WINDOWS\system32\drivers\aswNdisFlt.sys
2014-12-18 19:50:36 ----D---- C:\Program Files\AVAST Software
2014-12-18 19:49:56 ----D---- C:\ProgramData\AVAST Software
2014-12-18 19:47:59 ----D---- C:\ProgramData\Oracle
2014-12-18 19:47:53 ----A---- C:\WINDOWS\SYSWOW64\javaws.exe
2014-12-18 19:47:52 ----A---- C:\WINDOWS\SYSWOW64\WindowsAccessBridge-32.dll
2014-12-18 19:47:52 ----A---- C:\WINDOWS\SYSWOW64\javaw.exe
2014-12-18 19:47:52 ----A---- C:\WINDOWS\SYSWOW64\java.exe
2014-12-18 19:47:46 ----D---- C:\Program Files (x86)\Java
2014-12-18 19:45:58 ----D---- C:\ProgramData\Sun
2014-12-18 19:38:48 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\Popisovac
2014-12-18 19:38:42 ----D---- C:\Program Files (x86)\Seznam.cz
2014-12-18 19:38:39 ----D---- C:\Program Files (x86)\Popisovač CD-DVD 4
2014-12-18 19:33:43 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\Mozilla
2014-12-18 19:33:33 ----D---- C:\ProgramData\Mozilla
2014-12-18 19:33:33 ----D---- C:\Program Files (x86)\Mozilla Maintenance Service
2014-12-18 19:33:30 ----D---- C:\Program Files (x86)\Mozilla Firefox
2014-12-18 19:30:46 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\BitTorrent
2014-12-18 19:28:15 ----A---- C:\WINDOWS\system32\drivers\eve.sys
2014-12-18 19:28:14 ----D---- C:\Program Files\WinPcap
2014-12-18 19:28:08 ----D---- C:\ProgramData\VSO
2014-12-18 19:28:08 ----D---- C:\Program Files (x86)\VSO
2014-12-18 19:27:31 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\YouTube Downloader
2014-12-18 19:26:45 ----D---- C:\Program Files (x86)\YTD
2014-12-18 19:25:11 ----D---- C:\Program Files\File Joiner
2014-12-18 19:24:26 ----A---- C:\WINDOWS\SYSWOW64\pthreadGC2.dll
2014-12-18 19:24:18 ----D---- C:\Program Files (x86)\AoA Audio Extractor
2014-12-18 19:22:44 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\Bigasoft Total Video Converter 4
2014-12-18 19:22:36 ----D---- C:\Program Files (x86)\Bigasoft
2014-12-18 19:21:02 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\ImTOO
2014-12-18 19:21:02 ----D---- C:\Program Files (x86)\ImTOO
2014-12-18 19:15:18 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\Xilisoft
2014-12-18 19:15:18 ----D---- C:\Program Files (x86)\Xilisoft
2014-12-18 19:07:02 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\Ashampoo Slideshow Studio HD 3
2014-12-18 18:57:58 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\Ashampoo
2014-12-18 18:55:53 ----D---- C:\ProgramData\ashampoo
2014-12-18 18:55:10 ----D---- C:\Program Files (x86)\Ashampoo
2014-12-18 18:53:02 ----D---- C:\Program Files\MKVToolNix
2014-12-18 18:51:07 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\mkvtoolnix
2014-12-18 18:46:03 ----D---- C:\ProgramData\DVD Shrink
2014-12-18 18:46:02 ----D---- C:\Program Files (x86)\DVD Shrink
2014-12-18 18:38:39 ----A---- C:\WINDOWS\system32\drivers\dvdfab.sys
2014-12-18 18:38:37 ----D---- C:\Program Files (x86)\DVDFab Passkey
2014-12-18 18:36:53 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\17660
2014-12-18 18:31:30 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\DVDFab9
2014-12-18 18:31:15 ----D---- C:\Program Files (x86)\DVDFab 9
2014-12-18 18:30:25 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\DVDFab
2014-12-18 18:29:06 ----D---- C:\ProgramData\dvdfab
2014-12-18 18:09:35 ----D---- C:\Program Files\Ultra Video Joiner
2014-12-18 18:08:06 ----D---- C:\Program Files (x86)\DVDFab 8 Qt
2014-12-18 18:05:36 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\VideoReDo-TVSuite4
2014-12-18 18:05:36 ----D---- C:\Program Files (x86)\VideoReDoTVSuite4
2014-12-18 17:58:16 ----A---- C:\WINDOWS\SYSWOW64\AVERM.dll
2014-12-18 17:58:15 ----A---- C:\WINDOWS\SYSWOW64\AVEQT.dll
2014-12-18 17:58:14 ----D---- C:\Program Files (x86)\Ultra Video Joiner
2014-12-18 17:49:57 ----D---- C:\ProgramData\Licenses
2014-12-18 17:46:51 ----D---- C:\Program Files\CCleaner
2014-12-18 17:41:29 ----D---- C:\ProgramData\LightScribe
2014-12-18 17:40:54 ----N---- C:\WINDOWS\SYSWOW64\TwnLib4.dll
2014-12-18 17:40:54 ----N---- C:\WINDOWS\SYSWOW64\ImagXRA7.dll
2014-12-18 17:40:54 ----N---- C:\WINDOWS\SYSWOW64\ImagXR7.dll
2014-12-18 17:40:54 ----N---- C:\WINDOWS\SYSWOW64\ImagXpr7.dll
2014-12-18 17:40:54 ----N---- C:\WINDOWS\SYSWOW64\ImagX7.dll
2014-12-18 17:40:54 ----D---- C:\Program Files (x86)\Ahead
2014-12-18 17:40:54 ----A---- C:\WINDOWS\SYSWOW64\TwnLib20.dll
2014-12-18 17:40:26 ----D---- C:\Program Files (x86)\Yahoo!
2014-12-18 17:37:44 ----D---- C:\Program Files\Picon_Manager-V1.7.1.4
2014-12-18 17:35:56 ----D---- C:\Program Files\My-Dream-Toolbox-VU+-Edition-v5.3
2014-12-18 17:15:23 ----D---- C:\Program Files\Common Files\DESIGNER
2014-12-18 17:04:17 ----D---- C:\Program Files\CCcam Editor2012
2014-12-18 17:02:32 ----D---- C:\Program Files\A250Combo 3606 Editor
2014-12-18 16:57:32 ----D---- C:\Program Files\DCC E2 1.50
2014-12-18 16:56:34 ----D---- C:\Program Files\DCC E2 2.96
2014-12-18 16:52:52 ----D---- C:\Program Files\DogSettings
2014-12-18 16:44:56 ----D---- C:\Program Files (x86)\dreamboxEDIT
2014-12-17 22:08:17 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\ArcSoft
2014-12-17 21:50:52 ----D---- C:\Program Files (x86)\CoreCodec
2014-12-17 21:49:42 ----D---- C:\ProgramData\ArcSoft
2014-12-17 21:49:35 ----D---- C:\WINDOWS\SYSWOW64\Codec
2014-12-17 21:47:43 ----D---- C:\Program Files (x86)\MPEG2_Decoders
2014-12-17 21:32:27 ----A---- C:\WINDOWS\system32\unrar64.dll
2014-12-17 21:32:22 ----D---- C:\Program Files (x86)\K-Lite Codec Pack
2014-12-17 20:24:42 ----D---- C:\Program Files (x86)\AC3Filter
2014-12-17 20:12:02 ----D---- C:\dvbdream
2014-12-17 20:11:25 ----A---- C:\WINDOWS\unins000.exe
2014-12-17 20:11:25 ----A---- C:\WINDOWS\unins000.dat
2014-12-17 20:11:25 ----A---- C:\WINDOWS\system32\drivers\tbs6928_64.sys
2014-12-17 20:11:25 ----A---- C:\WINDOWS\system32\drivers\devcon.exe
2014-12-17 20:08:39 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\BSplayer PRO
2014-12-17 20:08:36 ----D---- C:\Program Files (x86)\Webteh
2014-12-17 20:07:57 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\vlc
2014-12-17 20:07:18 ----D---- C:\Program Files\VideoLAN
2014-12-17 20:04:20 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\AIMP3
2014-12-17 20:04:13 ----D---- C:\Program Files (x86)\AIMP3
2014-12-17 20:01:28 ----D---- C:\Program Files (x86)\UltraISO
2014-12-17 19:59:00 ----A---- C:\WINDOWS\SYSWOW64\setupempdrv03.exe
2014-12-17 19:59:00 ----A---- C:\WINDOWS\SYSWOW64\EuGdiDrv.sys
2014-12-17 19:59:00 ----A---- C:\WINDOWS\SYSWOW64\EuEpmGdi.dll
2014-12-17 19:59:00 ----A---- C:\WINDOWS\SYSWOW64\epmntdrv.sys
2014-12-17 19:59:00 ----A---- C:\WINDOWS\SYSWOW64\BootMan.exe
2014-12-17 19:59:00 ----A---- C:\WINDOWS\system32\setupempdrvx64.exe
2014-12-17 19:59:00 ----A---- C:\WINDOWS\system32\EuGdiDrv.sys
2014-12-17 19:59:00 ----A---- C:\WINDOWS\system32\EuEpmGdi.dll
2014-12-17 19:59:00 ----A---- C:\WINDOWS\system32\epmntdrv.sys
2014-12-17 19:59:00 ----A---- C:\WINDOWS\system32\BootMan.exe
2014-12-17 19:58:53 ----D---- C:\Program Files (x86)\EaseUS
2014-12-17 19:56:04 ----D---- C:\Program Files\Recover Keys
2014-12-17 19:55:15 ----D---- C:\Program Files (x86)\Magical Jelly Bean
2014-12-17 19:54:56 ----D---- C:\Program Files (x86)\KeyFinder
2014-12-17 19:53:26 ----D---- C:\Program Files (x86)\WinToUSB
2014-12-17 19:51:03 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\ICQ-Profile
2014-12-17 19:51:03 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\ICQM
2014-12-17 19:45:57 ----A---- C:\WINDOWS\system32\drivers\MBAMSwissArmy.sys
2014-12-17 19:45:40 ----D---- C:\ProgramData\Malwarebytes
2014-12-17 19:45:40 ----D---- C:\Program Files (x86)\Malwarebytes Anti-Malware
2014-12-17 19:45:40 ----A---- C:\WINDOWS\system32\drivers\mwac.sys
2014-12-17 19:45:40 ----A---- C:\WINDOWS\system32\drivers\mbamchameleon.sys
2014-12-17 19:45:40 ----A---- C:\WINDOWS\system32\drivers\mbam.sys
2014-12-17 19:41:16 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\Skype
2014-12-17 19:41:11 ----RD---- C:\Program Files (x86)\Skype
2014-12-17 19:41:09 ----D---- C:\ProgramData\Skype
2014-12-17 19:38:56 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\PC Suite
2014-12-17 19:38:55 ----D---- C:\ProgramData\PC Suite
2014-12-17 19:38:43 ----D---- C:\ProgramData\Nokia
2014-12-17 19:38:29 ----D---- C:\Program Files\DIFX
2014-12-17 19:38:29 ----A---- C:\WINDOWS\system32\drivers\pccsmcfdx64.sys
2014-12-17 19:38:28 ----DC---- C:\WINDOWS\system32\DRVSTORE
2014-12-17 19:38:26 ----D---- C:\Program Files (x86)\PC Connectivity Solution
2014-12-17 19:38:18 ----A---- C:\WINDOWS\system32\nmwcdclsX64.dll
2014-12-17 19:37:46 ----D---- C:\ProgramData\NokiaInstallerCache
2014-12-17 19:37:46 ----D---- C:\Program Files (x86)\Nokia
2014-12-17 19:30:02 ----A---- C:\WINDOWS\lgfwup.ini
2014-12-17 19:29:51 ----A---- C:\WINDOWS\SYSWOW64\Vb6stkit.dll
2014-12-17 19:29:51 ----A---- C:\WINDOWS\SYSWOW64\VB6KO.DLL
2014-12-17 19:29:51 ----A---- C:\WINDOWS\SYSWOW64\lgfwunis.exe
2014-12-17 19:29:48 ----D---- C:\Program Files (x86)\lg_fwupdate
2014-12-17 19:21:45 ----A---- C:\WINDOWS\SYSWOW64\msxml3a.dll
2014-12-17 19:19:11 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\CyberLink
2014-12-17 19:16:43 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-12-17 19:16:39 ----D---- C:\Program Files (x86)\CyberLink
2014-12-17 19:16:11 ----D---- C:\ProgramData\CyberLink
2014-12-17 19:13:43 ----AD---- C:\ProgramData\Temp
2014-12-17 18:56:41 ----D---- C:\Program Files\Microsoft Silverlight
2014-12-17 18:56:41 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-12-17 18:54:08 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\TeamViewer
2014-12-17 18:54:03 ----D---- C:\Program Files (x86)\TeamViewer
2014-12-17 18:51:55 ----D---- C:\Program Files\Defraggler
2014-12-17 18:48:58 ----D---- C:\ProgramData\WEBREG
2014-12-17 18:48:33 ----D---- C:\ProgramData\Hewlett-Packard
2014-12-17 18:47:25 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2014-12-17 18:47:25 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2014-12-17 18:47:01 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\HP
2014-12-17 18:43:56 ----D---- C:\Program Files (x86)\Microsoft
2014-12-17 18:43:50 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\HpUpdate
2014-12-17 18:43:19 ----D---- C:\ProgramData\HP Product Assistant
2014-12-17 18:41:36 ----D---- C:\Program Files (x86)\HP
2014-12-17 18:41:35 ----HD---- C:\Config.Msi
2014-12-17 18:41:04 ----N---- C:\WINDOWS\hpomdl28.dat
2014-12-17 18:41:04 ----A---- C:\WINDOWS\hpoins28.dat
2014-12-17 18:40:58 ----D---- C:\ProgramData\HP
2014-12-17 18:40:58 ----A---- C:\WINDOWS\system32\drivers\Dot4usb.sys
2014-12-17 18:40:58 ----A---- C:\WINDOWS\system32\drivers\Dot4Prt.sys
2014-12-17 18:40:58 ----A---- C:\WINDOWS\system32\drivers\Dot4.sys
2014-12-17 18:40:54 ----A---- C:\WINDOWS\system32\PortChanger.exe
2014-12-17 18:40:42 ----A---- C:\WINDOWS\system32\hpz3lw71.dll
2014-12-17 18:40:41 ----A---- C:\WINDOWS\system32\hppldcoi.dll
2014-12-17 18:40:41 ----A---- C:\WINDOWS\system32\hpowiax7.dll
2014-12-17 18:40:41 ----A---- C:\WINDOWS\system32\hpovst15.dll
2014-12-17 18:40:41 ----A---- C:\WINDOWS\system32\hpotscl6.dll
2014-12-17 18:37:23 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\Macromedia
2014-12-17 18:37:20 ----SHD---- C:\WINDOWS\ftpcache
2014-12-17 18:37:19 ----A---- C:\WINDOWS\Natura Sound Therapy Uninstaller.exe
2014-12-17 18:37:16 ----D---- C:\Program Files (x86)\Natura Sound Therapy
2014-12-17 18:36:45 ----D---- C:\Program Files (x86)\Relax Sound Software
2014-12-17 18:34:58 ----D---- C:\ProgramData\VS Revo Group
2014-12-17 18:34:58 ----A---- C:\WINDOWS\system32\drivers\revoflt.sys
2014-12-17 18:34:57 ----D---- C:\Program Files\VS Revo Group
2014-12-17 18:31:52 ----A---- C:\WINDOWS\AutoKMS.ini
2014-12-17 18:30:04 ----D---- C:\Program Files (x86)\Reference Assemblies
2014-12-17 18:30:00 ----D---- C:\WINDOWS\SYSWOW64\XPSViewer
2014-12-17 18:30:00 ----D---- C:\Program Files\Reference Assemblies
2014-12-17 18:30:00 ----D---- C:\Program Files\MSBuild
2014-12-17 18:28:29 ----D---- C:\Program Files\Window On Top 2.1 portable
2014-12-17 18:28:00 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2014-12-17 18:28:00 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-12-17 18:27:58 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2014-12-17 18:27:58 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2014-12-17 18:24:24 ----D---- C:\Program Files (x86)\MSBuild
2014-12-17 18:24:13 ----D---- C:\WINDOWS\PCHEALTH
2014-12-17 18:24:13 ----D---- C:\Program Files\Microsoft Sync Framework
2014-12-17 18:21:48 ----D---- C:\Program Files (x86)\Microsoft Visual Studio 8
2014-12-17 18:21:24 ----D---- C:\Program Files\Microsoft Analysis Services
2014-12-17 18:21:24 ----D---- C:\Program Files (x86)\Microsoft Analysis Services
2014-12-17 18:21:21 ----D---- C:\Program Files (x86)\Microsoft Office
2014-12-17 18:21:19 ----D---- C:\ProgramData\Microsoft Help
2014-12-17 18:21:19 ----D---- C:\Program Files\Microsoft Office
2014-12-17 18:21:14 ----RHD---- C:\MSOCache
2014-12-17 18:11:45 ----D---- C:\Program Files (x86)\Adobe
2014-12-17 18:06:51 ----D---- C:\ProgramData\EmailNotifier
2014-12-17 18:06:23 ----A---- C:\WINDOWS\SYSWOW64\unrar.dll
2014-12-17 18:02:00 ----D---- C:\Users\Kostík a Irenočka\AppData\Roaming\GHISLER
2014-12-17 18:02:00 ----D---- C:\Program Files\totalcmd
2014-12-17 17:58:24 ----A---- C:\WINDOWS\SYSWOW64\FlashPlayerApp.exe
2014-12-17 17:53:56 ----RD---- C:\WINDOWS\BrowserChoice
2014-12-17 17:30:45 ----A---- C:\WINDOWS\system32\wmp.dll
2014-12-17 17:30:35 ----A---- C:\WINDOWS\SYSWOW64\wmp.dll
2014-12-17 17:30:27 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-12-17 17:30:27 ----A---- C:\WINDOWS\system32\WSService.dll
2014-12-17 17:30:27 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-12-17 17:30:27 ----A---- C:\WINDOWS\system32\twinui.dll
2014-12-17 17:30:26 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-12-17 17:30:25 ----A---- C:\WINDOWS\system32\Windows.Data.Pdf.dll
2014-12-17 17:30:25 ----A---- C:\WINDOWS\system32\glcndFilter.dll
2014-12-17 17:30:25 ----A---- C:\WINDOWS\system32\atlthunk.dll
2014-12-17 17:30:24 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-12-17 17:30:24 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2014-12-17 17:30:24 ----A---- C:\WINDOWS\system32\drivers\swenum.sys
2014-12-17 17:30:23 ----A---- C:\WINDOWS\SYSWOW64\glcndFilter.dll
2014-12-17 17:30:23 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-12-17 17:30:23 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2014-12-17 17:30:23 ----A---- C:\WINDOWS\system32\msftedit.dll
2014-12-17 17:30:22 ----A---- C:\WINDOWS\system32\msi.dll
2014-12-17 17:30:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Data.Pdf.dll
2014-12-17 17:30:21 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2014-12-17 17:30:21 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-12-17 17:30:21 ----A---- C:\WINDOWS\system32\rdpinput.exe
2014-12-17 17:30:21 ----A---- C:\WINDOWS\system32\rdpcore.dll
2014-12-17 17:30:21 ----A---- C:\WINDOWS\system32\rdpclip.exe
2014-12-17 17:30:19 ----A---- C:\WINDOWS\system32\UIRibbon.dll
2014-12-17 17:30:19 ----A---- C:\WINDOWS\system32\d2d1.dll
2014-12-17 17:30:18 ----A---- C:\WINDOWS\system32\tquery.dll
2014-12-17 17:30:18 ----A---- C:\WINDOWS\system32\mfcore.dll
2014-12-17 17:30:17 ----A---- C:\WINDOWS\SYSWOW64\msftedit.dll
2014-12-17 17:30:17 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2014-12-17 17:30:17 ----A---- C:\WINDOWS\system32\XpsFilt.dll
2014-12-17 17:30:17 ----A---- C:\WINDOWS\system32\msxml6.dll
2014-12-17 17:30:16 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2014-12-17 17:30:16 ----A---- C:\WINDOWS\system32\WMVCORE.DLL
2014-12-17 17:30:16 ----A---- C:\WINDOWS\system32\mssrch.dll
2014-12-17 17:30:16 ----A---- C:\WINDOWS\system32\dbgeng.dll
2014-12-17 17:30:15 ----A---- C:\WINDOWS\SYSWOW64\d2d1.dll
2014-12-17 17:30:14 ----A---- C:\WINDOWS\SYSWOW64\UIRibbon.dll
2014-12-17 17:30:14 ----A---- C:\WINDOWS\system32\MSVidCtl.dll
2014-12-17 17:30:13 ----A---- C:\WINDOWS\system32\xpsservices.dll
2014-12-17 17:30:13 ----A---- C:\WINDOWS\system32\XpsPrint.dll
2014-12-17 17:30:13 ----A---- C:\WINDOWS\system32\esent.dll
2014-12-17 17:30:12 ----A---- C:\WINDOWS\SYSWOW64\rdpcore.dll
2014-12-17 17:30:12 ----A---- C:\WINDOWS\SYSWOW64\esent.dll
2014-12-17 17:30:11 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2014-12-17 17:30:11 ----A---- C:\WINDOWS\system32\ExplorerFrame.dll
2014-12-17 17:30:10 ----A---- C:\WINDOWS\SYSWOW64\WMVCORE.DLL
2014-12-17 17:30:10 ----A---- C:\WINDOWS\SYSWOW64\msxml6.dll
2014-12-17 17:30:10 ----A---- C:\WINDOWS\system32\MSAudDecMFT.dll
2014-12-17 17:30:10 ----A---- C:\WINDOWS\system32\d3d10warp.dll
2014-12-17 17:30:09 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2014-12-17 17:30:09 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2014-12-17 17:30:09 ----A---- C:\WINDOWS\system32\combase.dll
2014-12-17 17:30:08 ----A---- C:\WINDOWS\SYSWOW64\ExplorerFrame.dll
2014-12-17 17:30:08 ----A---- C:\WINDOWS\system32\WpcMon.exe
2014-12-17 17:30:08 ----A---- C:\WINDOWS\system32\Wpc.dll
2014-12-17 17:30:07 ----A---- C:\WINDOWS\system32\dwmcore.dll
2014-12-17 17:30:07 ----A---- C:\WINDOWS\system32\d3d9.dll
2014-12-17 17:30:07 ----A---- C:\WINDOWS\system32\d3d11.dll
2014-12-17 17:30:06 ----A---- C:\WINDOWS\SYSWOW64\dbgeng.dll
2014-12-17 17:30:06 ----A---- C:\WINDOWS\SYSWOW64\d3d10warp.dll
2014-12-17 17:30:06 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2014-12-17 17:30:06 ----A---- C:\WINDOWS\system32\WMVDECOD.DLL
2014-12-17 17:30:06 ----A---- C:\WINDOWS\system32\mmcndmgr.dll
2014-12-17 17:30:05 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2014-12-17 17:30:05 ----A---- C:\WINDOWS\system32\DWrite.dll
2014-12-17 17:30:05 ----A---- C:\WINDOWS\explorer.exe
2014-12-17 17:30:04 ----A---- C:\WINDOWS\SYSWOW64\WMVDECOD.DLL
2014-12-17 17:30:04 ----A---- C:\WINDOWS\system32\ole32.dll
2014-12-17 17:30:04 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-12-17 17:30:04 ----A---- C:\WINDOWS\system32\drivers\drmkaud.sys
2014-12-17 17:30:03 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2014-12-17 17:30:03 ----A---- C:\WINDOWS\SYSWOW64\combase.dll
2014-12-17 17:30:03 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-12-17 17:30:03 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2014-12-17 17:30:02 ----A---- C:\WINDOWS\SYSWOW64\MSAudDecMFT.dll
2014-12-17 17:30:02 ----A---- C:\WINDOWS\SYSWOW64\dwmcore.dll
2014-12-17 17:30:02 ----A---- C:\WINDOWS\system32\wmpmde.dll
2014-12-17 17:30:02 ----A---- C:\WINDOWS\system32\winmde.dll
2014-12-17 17:30:02 ----A---- C:\WINDOWS\system32\storagewmi.dll
2014-12-17 17:30:02 ----A---- C:\WINDOWS\system32\rpcrt4.dll
2014-12-17 17:30:02 ----A---- C:\WINDOWS\system32\dui70.dll
2014-12-17 17:30:02 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2014-12-17 17:30:01 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2014-12-17 17:30:01 ----A---- C:\WINDOWS\system32\workfolderssvc.dll
2014-12-17 17:30:01 ----A---- C:\WINDOWS\system32\OpcServices.dll
2014-12-17 17:30:00 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2014-12-17 17:30:00 ----A---- C:\WINDOWS\SYSWOW64\d3d11.dll
2014-12-17 17:30:00 ----A---- C:\WINDOWS\system32\gpsvc.dll
2014-12-17 17:30:00 ----A---- C:\WINDOWS\system32\CertEnroll.dll
2014-12-17 17:29:59 ----A---- C:\WINDOWS\SYSWOW64\CertEnroll.dll
2014-12-17 17:29:59 ----A---- C:\WINDOWS\system32\wlidsvc.dll
2014-12-17 17:29:59 ----A---- C:\WINDOWS\system32\SRH.dll
2014-12-17 17:29:59 ----A---- C:\WINDOWS\system32\mfnetsrc.dll
2014-12-17 17:29:59 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2014-12-17 17:29:58 ----A---- C:\WINDOWS\SYSWOW64\GdiPlus.dll
2014-12-17 17:29:58 ----A---- C:\WINDOWS\system32\taskschd.dll
2014-12-17 17:29:58 ----A---- C:\WINDOWS\system32\blackbox.dll
2014-12-17 17:29:57 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Immersive.dll
2014-12-17 17:29:57 ----A---- C:\WINDOWS\SYSWOW64\ole32.dll
2014-12-17 17:29:57 ----A---- C:\WINDOWS\SYSWOW64\mmcndmgr.dll
2014-12-17 17:29:57 ----A---- C:\WINDOWS\SYSWOW64\dui70.dll
2014-12-17 17:29:57 ----A---- C:\WINDOWS\system32\Windows.UI.Immersive.dll
2014-12-17 17:29:57 ----A---- C:\WINDOWS\system32\twinui.appcore.dll
2014-12-17 17:29:56 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2014-12-17 17:29:56 ----A---- C:\WINDOWS\system32\PeerDistSvc.dll
2014-12-17 17:29:56 ----A---- C:\WINDOWS\system32\PeerDistCacheProvider.dll
2014-12-17 17:29:55 ----A---- C:\WINDOWS\SYSWOW64\WMVENCOD.DLL
2014-12-17 17:29:55 ----A---- C:\WINDOWS\system32\WMVENCOD.DLL
2014-12-17 17:29:55 ----A---- C:\WINDOWS\system32\webservices.dll
2014-12-17 17:29:55 ----A---- C:\WINDOWS\system32\authui.dll
2014-12-17 17:29:54 ----A---- C:\WINDOWS\SYSWOW64\quartz.dll
2014-12-17 17:29:54 ----A---- C:\WINDOWS\system32\GdiPlus.dll
2014-12-17 17:29:53 ----A---- C:\WINDOWS\SYSWOW64\winmde.dll
2014-12-17 17:29:53 ----A---- C:\WINDOWS\SYSWOW64\MSVidCtl.dll
2014-12-17 17:29:52 ----A---- C:\WINDOWS\SYSWOW64\xpsrchvw.exe
2014-12-17 17:29:52 ----A---- C:\WINDOWS\SYSWOW64\storagewmi.dll
2014-12-17 17:29:52 ----A---- C:\WINDOWS\system32\UIAutomationCore.dll
2014-12-17 17:29:52 ----A---- C:\WINDOWS\system32\mmc.exe
2014-12-17 17:29:51 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2014-12-17 17:29:51 ----A---- C:\WINDOWS\SYSWOW64\DWrite.dll
2014-12-17 17:29:51 ----A---- C:\WINDOWS\system32\quartz.dll
2014-12-17 17:29:51 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-12-17 17:29:51 ----A---- C:\WINDOWS\system32\D3DCompiler_47.dll
2014-12-17 17:29:50 ----A---- C:\WINDOWS\SYSWOW64\mfnetsrc.dll
2014-12-17 17:29:50 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-12-17 17:29:50 ----A---- C:\WINDOWS\system32\wpccpl.dll
2014-12-17 17:29:50 ----A---- C:\WINDOWS\system32\Windows.Media.Streaming.dll
2014-12-17 17:29:50 ----A---- C:\WINDOWS\system32\Windows.Media.dll
2014-12-17 17:29:50 ----A---- C:\WINDOWS\system32\diagperf.dll
2014-12-17 17:29:49 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2014-12-17 17:29:49 ----A---- C:\WINDOWS\system32\xpssvcs.dll
2014-12-17 17:29:49 ----A---- C:\WINDOWS\system32\drmv2clt.dll
2014-12-17 17:29:49 ----A---- C:\WINDOWS\system32\comsvcs.dll
2014-12-17 17:29:48 ----A---- C:\WINDOWS\SYSWOW64\xpsservices.dll
2014-12-17 17:29:48 ----A---- C:\WINDOWS\SYSWOW64\twinui.appcore.dll
2014-12-17 17:29:48 ----A---- C:\WINDOWS\system32\sbe.dll
2014-12-17 17:29:48 ----A---- C:\WINDOWS\system32\mfsrcsnk.dll
2014-12-17 17:29:47 ----A---- C:\WINDOWS\SYSWOW64\webservices.dll
2014-12-17 17:29:47 ----A---- C:\WINDOWS\SYSWOW64\SRH.dll
2014-12-17 17:29:47 ----A---- C:\WINDOWS\SYSWOW64\blackbox.dll
2014-12-17 17:29:47 ----A---- C:\WINDOWS\system32\WMNetMgr.dll
2014-12-17 17:29:47 ----A---- C:\WINDOWS\system32\rpcss.dll
2014-12-17 17:29:47 ----A---- C:\WINDOWS\system32\FntCache.dll
2014-12-17 17:29:47 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-12-17 17:29:46 ----A---- C:\WINDOWS\SYSWOW64\UIAutomationCore.dll
2014-12-17 17:29:46 ----A---- C:\WINDOWS\SYSWOW64\OpcServices.dll
2014-12-17 17:29:46 ----A---- C:\WINDOWS\SYSWOW64\D3DCompiler_47.dll
2014-12-17 17:29:46 ----A---- C:\WINDOWS\system32\WinSAT.exe
2014-12-17 17:29:46 ----A---- C:\WINDOWS\system32\pla.dll
2014-12-17 17:29:46 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2014-12-17 17:29:45 ----A---- C:\WINDOWS\SYSWOW64\mfsrcsnk.dll
2014-12-17 17:29:45 ----A---- C:\WINDOWS\system32\WMPDMC.exe
2014-12-17 17:29:45 ----A---- C:\WINDOWS\system32\StructuredQuery.dll
2014-12-17 17:29:45 ----A---- C:\WINDOWS\system32\sqlceqp40.dll
2014-12-17 17:29:45 ----A---- C:\WINDOWS\system32\MsSpellCheckingFacility.dll
2014-12-17 17:29:45 ----A---- C:\WINDOWS\system32\gdi32.dll
2014-12-17 17:29:44 ----A---- C:\WINDOWS\system32\termsrv.dll
2014-12-17 17:29:44 ----A---- C:\WINDOWS\system32\schedsvc.dll
2014-12-17 17:29:44 ----A---- C:\WINDOWS\system32\mfnetcore.dll
2014-12-17 17:29:43 ----A---- C:\WINDOWS\system32\wevtsvc.dll
2014-12-17 17:29:43 ----A---- C:\WINDOWS\system32\uxtheme.dll
2014-12-17 17:29:43 ----A---- C:\WINDOWS\system32\localspl.dll
2014-12-17 17:29:42 ----A---- C:\WINDOWS\SYSWOW64\pla.dll
2014-12-17 17:29:42 ----A---- C:\WINDOWS\SYSWOW64\mmc.exe
2014-12-17 17:29:42 ----A---- C:\WINDOWS\SYSWOW64\drmv2clt.dll
2014-12-17 17:29:42 ----A---- C:\WINDOWS\system32\uDWM.dll
2014-12-17 17:29:42 ----A---- C:\WINDOWS\system32\qmgr.dll
2014-12-17 17:29:41 ----A---- C:\WINDOWS\SYSWOW64\XpsPrint.dll
2014-12-17 17:29:41 ----A---- C:\WINDOWS\system32\wlansvc.dll
2014-12-17 17:29:41 ----A---- C:\WINDOWS\system32\WebcamUi.dll
2014-12-17 17:29:41 ----A---- C:\WINDOWS\system32\srmclient.dll
2014-12-17 17:29:41 ----A---- C:\WINDOWS\system32\propsys.dll
2014-12-17 17:29:41 ----A---- C:\WINDOWS\system32\msdtctm.dll
2014-12-17 17:29:41 ----A---- C:\WINDOWS\system32\mispace.dll
2014-12-17 17:29:40 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Streaming.dll
2014-12-17 17:29:40 ----A---- C:\WINDOWS\SYSWOW64\psapi.dll
2014-12-17 17:29:40 ----A---- C:\WINDOWS\system32\Windows.Web.Http.dll
2014-12-17 17:29:40 ----A---- C:\WINDOWS\system32\rdvidcrl.dll
2014-12-17 17:29:40 ----A---- C:\WINDOWS\system32\NaturalLanguage6.dll
2014-12-17 17:29:40 ----A---- C:\WINDOWS\system32\KernelBase.dll
2014-12-17 17:29:40 ----A---- C:\WINDOWS\system32\dbghelp.dll
2014-12-17 17:29:40 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-12-17 17:29:39 ----A---- C:\WINDOWS\SYSWOW64\WMPDMC.exe
2014-12-17 17:29:39 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.dll
2014-12-17 17:29:39 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2014-12-17 17:29:39 ----A---- C:\WINDOWS\SYSWOW64\comsvcs.dll
2014-12-17 17:29:39 ----A---- C:\WINDOWS\system32\Windows.Globalization.dll
2014-12-17 17:29:39 ----A---- C:\WINDOWS\system32\SHCore.dll
2014-12-17 17:29:38 ----A---- C:\WINDOWS\SYSWOW64\WMNetMgr.dll
2014-12-17 17:29:38 ----A---- C:\WINDOWS\SYSWOW64\sbe.dll
2014-12-17 17:29:38 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-12-17 17:29:38 ----A---- C:\WINDOWS\system32\winhttp.dll
2014-12-17 17:29:38 ----A---- C:\WINDOWS\system32\sysmain.dll
2014-12-17 17:29:38 ----A---- C:\WINDOWS\system32\RacEngn.dll
2014-12-17 17:29:38 ----A---- C:\WINDOWS\system32\mf.dll
2014-12-17 17:29:38 ----A---- C:\WINDOWS\system32\lsm.dll
2014-12-17 17:29:37 ----A---- C:\WINDOWS\SYSWOW64\mfnetcore.dll
2014-12-17 17:29:37 ----A---- C:\WINDOWS\system32\WMADMOD.DLL
2014-12-17 17:29:37 ----A---- C:\WINDOWS\system32\TSWorkspace.dll
2014-12-17 17:29:37 ----A---- C:\WINDOWS\system32\cdosys.dll
2014-12-17 17:29:36 ----A---- C:\WINDOWS\SYSWOW64\sqlceqp40.dll
2014-12-17 17:29:36 ----A---- C:\WINDOWS\SYSWOW64\mispace.dll
2014-12-17 17:29:36 ----A---- C:\WINDOWS\system32\wmdrmdev.dll
2014-12-17 17:29:36 ----A---- C:\WINDOWS\system32\twinapi.dll
2014-12-17 17:29:36 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2014-12-17 17:29:36 ----A---- C:\WINDOWS\system32\ogldrv.dll
2014-12-17 17:29:36 ----A---- C:\WINDOWS\system32\mfds.dll
2014-12-17 17:29:35 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-12-17 17:29:35 ----A---- C:\WINDOWS\SYSWOW64\WMADMOD.DLL
2014-12-17 17:29:35 ----A---- C:\WINDOWS\SYSWOW64\RacEngn.dll
2014-12-17 17:29:35 ----A---- C:\WINDOWS\SYSWOW64\dbghelp.dll
2014-12-17 17:29:35 ----A---- C:\WINDOWS\system32\WWAHost.exe
2014-12-17 17:29:35 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-12-17 17:29:35 ----A---- C:\WINDOWS\system32\user32.dll
2014-12-17 17:29:35 ----A---- C:\WINDOWS\system32\SettingSyncCore.dll
2014-12-17 17:29:35 ----A---- C:\WINDOWS\system32\printfilterpipelinesvc.exe
2014-12-17 17:29:35 ----A---- C:\WINDOWS\system32\mspaint.exe
2014-12-17 17:29:34 ----A---- C:\WINDOWS\SYSWOW64\rpcrt4.dll
2014-12-17 17:29:34 ----A---- C:\WINDOWS\SYSWOW64\NaturalLanguage6.dll
2014-12-17 17:29:34 ----A---- C:\WINDOWS\system32\riched20.dll
2014-12-17 17:29:34 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-12-17 17:29:34 ----A---- C:\WINDOWS\system32\MrmIndexer.dll
2014-12-17 17:29:34 ----A---- C:\WINDOWS\system32\generaltel.dll
2014-12-17 17:29:34 ----A---- C:\WINDOWS\system32\drivers\ndis.sys
2014-12-17 17:29:34 ----A---- C:\WINDOWS\system32\comdlg32.dll
2014-12-17 17:29:33 ----A---- C:\WINDOWS\SYSWOW64\WebcamUi.dll
2014-12-17 17:29:33 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2014-12-17 17:29:33 ----A---- C:\WINDOWS\system32\SmartcardCredentialProvider.dll
2014-12-17 17:29:33 ----A---- C:\WINDOWS\system32\odbc32.dll
2014-12-17 17:29:33 ----A---- C:\WINDOWS\system32\msTextPrediction.dll
2014-12-17 17:29:33 ----A---- C:\WINDOWS\system32\evr.dll
2014-12-17 17:29:33 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-12-17 17:29:32 ----A---- C:\WINDOWS\SYSWOW64\WWAHost.exe
2014-12-17 17:29:32 ----A---- C:\WINDOWS\SYSWOW64\Windows.Globalization.dll
2014-12-17 17:29:32 ----A---- C:\WINDOWS\SYSWOW64\SHCore.dll
2014-12-17 17:29:32 ----A---- C:\WINDOWS\system32\duser.dll
2014-12-17 17:29:32 ----A---- C:\WINDOWS\system32\CPFilters.dll
2014-12-17 17:29:31 ----A---- C:\WINDOWS\SYSWOW64\taskschd.dll
2014-12-17 17:29:31 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2014-12-17 17:29:31 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2014-12-17 17:29:31 ----A---- C:\WINDOWS\SYSWOW64\gdi32.dll
2014-12-17 17:29:31 ----A---- C:\WINDOWS\SYSWOW64\evr.dll
2014-12-17 17:29:31 ----A---- C:\WINDOWS\system32\WinSync.dll
2014-12-17 17:29:31 ----A---- C:\WINDOWS\system32\Windows.Security.Authentication.OnlineId.dll
2014-12-17 17:29:31 ----A---- C:\WINDOWS\system32\SettingSyncHost.exe
2014-12-17 17:29:31 ----A---- C:\WINDOWS\system32\SettingSync.dll
2014-12-17 17:29:31 ----A---- C:\WINDOWS\system32\MSMPEG2ENC.DLL
2014-12-17 17:29:30 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2014-12-17 17:29:30 ----A---- C:\WINDOWS\SYSWOW64\uxtheme.dll
2014-12-17 17:29:30 ----A---- C:\WINDOWS\SYSWOW64\setupapi.dll
2014-12-17 17:29:30 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2014-12-17 17:29:30 ----A---- C:\WINDOWS\SYSWOW64\ogldrv.dll
2014-12-17 17:29:30 ----A---- C:\WINDOWS\SYSWOW64\comdlg32.dll
2014-12-17 17:29:30 ----A---- C:\WINDOWS\system32\wdc.dll
2014-12-17 17:29:30 ----A---- C:\WINDOWS\system32\RecoveryDrive.exe
2014-12-17 17:29:30 ----A---- C:\WINDOWS\system32\fveapi.dll
2014-12-17 17:29:29 ----A---- C:\WINDOWS\SYSWOW64\wmdrmdev.dll
2014-12-17 17:29:29 ----A---- C:\WINDOWS\SYSWOW64\StructuredQuery.dll
2014-12-17 17:29:29 ----A---- C:\WINDOWS\SYSWOW64\riched20.dll
2014-12-17 17:29:29 ----A---- C:\WINDOWS\SYSWOW64\d3d8.dll
2014-12-17 17:29:29 ----A---- C:\WINDOWS\system32\wpdshext.dll
2014-12-17 17:29:29 ----A---- C:\WINDOWS\system32\setupapi.dll
2014-12-17 17:29:29 ----A---- C:\WINDOWS\system32\provcore.dll
2014-12-17 17:29:29 ----A---- C:\WINDOWS\system32\PortableDeviceApi.dll
2014-12-17 17:29:29 ----A---- C:\WINDOWS\system32\mcupdate_GenuineIntel.dll
2014-12-17 17:29:29 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2014-12-17 17:29:29 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.dll
2014-12-17 17:29:28 ----A---- C:\WINDOWS\SYSWOW64\wdc.dll
2014-12-17 17:29:28 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncCore.dll
2014-12-17 17:29:28 ----A---- C:\WINDOWS\SYSWOW64\mspaint.exe
2014-12-17 17:29:28 ----A---- C:\WINDOWS\system32\WavDest.dll
2014-12-17 17:29:28 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2014-12-17 17:29:28 ----A---- C:\WINDOWS\system32\qedit.dll
2014-12-17 17:29:28 ----A---- C:\WINDOWS\system32\PurchaseWindowsLicense.dll
2014-12-17 17:29:28 ----A---- C:\WINDOWS\system32\defragsvc.dll
2014-12-17 17:29:27 ----A---- C:\WINDOWS\SYSWOW64\Taskmgr.exe
2014-12-17 17:29:27 ----A---- C:\WINDOWS\SYSWOW64\MSMPEG2ENC.DLL
2014-12-17 17:29:27 ----A---- C:\WINDOWS\SYSWOW64\certutil.exe
2014-12-17 17:29:27 ----A---- C:\WINDOWS\SYSWOW64\cdosys.dll
2014-12-17 17:29:27 ----A---- C:\WINDOWS\system32\wmdrmnet.dll
2014-12-17 17:29:27 ----A---- C:\WINDOWS\system32\WinTypes.dll
2014-12-17 17:29:27 ----A---- C:\WINDOWS\system32\samsrv.dll
2014-12-17 17:29:27 ----A---- C:\WINDOWS\system32\msdtcprx.dll
2014-12-17 17:29:26 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2014-12-17 17:29:26 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2014-12-17 17:29:26 ----A---- C:\WINDOWS\SYSWOW64\odbc32.dll
2014-12-17 17:29:26 ----A---- C:\WINDOWS\system32\Windows.Networking.dll
2014-12-17 17:29:26 ----A---- C:\WINDOWS\system32\wbengine.exe
2014-12-17 17:29:26 ----A---- C:\WINDOWS\system32\Taskmgr.exe
2014-12-17 17:29:26 ----A---- C:\WINDOWS\system32\clbcatq.dll
2014-12-17 17:29:26 ----A---- C:\WINDOWS\system32\autoconv.exe
2014-12-17 17:29:25 ----A---- C:\WINDOWS\SYSWOW64\Windows.Web.Http.dll
2014-12-17 17:29:25 ----A---- C:\WINDOWS\SYSWOW64\twinapi.dll
2014-12-17 17:29:25 ----A---- C:\WINDOWS\SYSWOW64\TSWorkspace.dll
2014-12-17 17:29:25 ----A---- C:\WINDOWS\SYSWOW64\MrmIndexer.dll
2014-12-17 17:29:25 ----A---- C:\WINDOWS\system32\wmdrmsdk.dll
2014-12-17 17:29:25 ----A---- C:\WINDOWS\system32\perftrack.dll
2014-12-17 17:29:25 ----A---- C:\WINDOWS\system32\mfsvr.dll
2014-12-17 17:29:25 ----A---- C:\WINDOWS\system32\drivers\dxgkrnl.sys
2014-12-17 17:29:25 ----A---- C:\WINDOWS\system32\d3d10level9.dll
2014-12-17 17:29:25 ----A---- C:\WINDOWS\system32\comuid.dll
2014-12-17 17:29:25 ----A---- C:\WINDOWS\system32\AppReadiness.dll
2014-12-17 17:29:24 ----A---- C:\WINDOWS\SYSWOW64\SettingSync.dll
2014-12-17 17:29:24 ----A---- C:\WINDOWS\SYSWOW64\MsSpellCheckingFacility.dll
2014-12-17 17:29:24 ----A---- C:\WINDOWS\SYSWOW64\mfds.dll
2014-12-17 17:29:24 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2014-12-17 17:29:24 ----A---- C:\WINDOWS\SYSWOW64\comuid.dll
2014-12-17 17:29:24 ----A---- C:\WINDOWS\system32\WUDFx.dll
2014-12-17 17:29:24 ----A---- C:\WINDOWS\system32\wpncore.dll
2014-12-17 17:29:24 ----A---- C:\WINDOWS\system32\Windows.Devices.SmartCards.dll
2014-12-17 17:29:24 ----A---- C:\WINDOWS\system32\netlogon.dll
2014-12-17 17:29:24 ----A---- C:\WINDOWS\system32\MSWB70804.dll
2014-12-17 17:29:24 ----A---- C:\WINDOWS\system32\MSWB70404.dll
2014-12-17 17:29:24 ----A---- C:\WINDOWS\system32\MSWB7001E.dll
2014-12-17 17:29:24 ----A---- C:\WINDOWS\system32\MSWB70011.dll
2014-12-17 17:29:23 ----A---- C:\WINDOWS\SYSWOW64\xpssvcs.dll
2014-12-17 17:29:23 ----A---- C:\WINDOWS\SYSWOW64\WMADMOE.DLL
2014-12-17 17:29:23 ----A---- C:\WINDOWS\SYSWOW64\SettingSyncHost.exe
2014-12-17 17:29:23 ----A---- C:\WINDOWS\SYSWOW64\qedit.dll
2014-12-17 17:29:23 ----A---- C:\WINDOWS\SYSWOW64\duser.dll
2014-12-17 17:29:23 ----A---- C:\WINDOWS\system32\WMSPDMOD.DLL
2014-12-17 17:29:23 ----A---- C:\WINDOWS\system32\sqlsrv32.dll
2014-12-17 17:29:23 ----A---- C:\WINDOWS\system32\MMDevAPI.dll
2014-12-17 17:29:22 ----A---- C:\WINDOWS\SYSWOW64\WMSPDMOD.DLL
2014-12-17 17:29:22 ----A---- C:\WINDOWS\SYSWOW64\rdvidcrl.dll
2014-12-17 17:29:22 ----A---- C:\WINDOWS\SYSWOW64\autoconv.exe
2014-12-17 17:29:22 ----A---- C:\WINDOWS\system32\Windows.Devices.Bluetooth.dll
2014-12-17 17:29:22 ----A---- C:\WINDOWS\system32\sqlcese40.dll
2014-12-17 17:29:22 ----A---- C:\WINDOWS\system32\printui.dll
2014-12-17 17:29:22 ----A---- C:\WINDOWS\system32\pmcsnap.dll
2014-12-17 17:29:22 ----A---- C:\WINDOWS\system32\es.dll
2014-12-17 17:29:21 ----A---- C:\WINDOWS\SYSWOW64\wpdshext.dll
2014-12-17 17:29:21 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2014-12-17 17:29:21 ----A---- C:\WINDOWS\SYSWOW64\srmclient.dll
2014-12-17 17:29:21 ----A---- C:\WINDOWS\SYSWOW64\sqlsrv32.dll
2014-12-17 17:29:21 ----A---- C:\WINDOWS\SYSWOW64\msdtcprx.dll
2014-12-17 17:29:21 ----A---- C:\WINDOWS\SYSWOW64\mfreadwrite.dll
2014-12-17 17:29:21 ----A---- C:\WINDOWS\system32\WMVSDECD.DLL
2014-12-17 17:29:21 ----A---- C:\WINDOWS\system32\Windows.Networking.Connectivity.dll
2014-12-17 17:29:21 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.dll
2014-12-17 17:29:21 ----A---- C:\WINDOWS\system32\imapi2fs.dll
2014-12-17 17:29:21 ----A---- C:\WINDOWS\system32\EncDec.dll
2014-12-17 17:29:21 ----A---- C:\WINDOWS\system32\dxgi.dll
2014-12-17 17:29:20 ----A---- C:\WINDOWS\SYSWOW64\wmdrmsdk.dll
2014-12-17 17:29:20 ----A---- C:\WINDOWS\SYSWOW64\wmdrmnet.dll
2014-12-17 17:29:20 ----A---- C:\WINDOWS\SYSWOW64\WinSync.dll
2014-12-17 17:29:20 ----A---- C:\WINDOWS\SYSWOW64\Windows.Security.Authentication.OnlineId.dll
2014-12-17 17:29:20 ----A---- C:\WINDOWS\SYSWOW64\PortableDeviceApi.dll
2014-12-17 17:29:20 ----A---- C:\WINDOWS\system32\WUDFx02000.dll
2014-12-17 17:29:20 ----A---- C:\WINDOWS\system32\Windows.Web.dll
2014-12-17 17:29:20 ----A---- C:\WINDOWS\system32\Windows.Networking.BackgroundTransfer.ContentPrefetchTask.dll
2014-12-17 17:29:20 ----A---- C:\WINDOWS\system32\wiaservc.dll
2014-12-17 17:29:20 ----A---- C:\WINDOWS\system32\usercpl.dll
2014-12-17 17:29:20 ----A---- C:\WINDOWS\system32\psisdecd.dll
2014-12-17 17:29:20 ----A---- C:\WINDOWS\system32\mfreadwrite.dll
2014-12-17 17:29:20 ----A---- C:\WINDOWS\system32\GeofenceMonitorService.dll
2014-12-17 17:29:20 ----A---- C:\WINDOWS\system32\dcomp.dll
2014-12-17 17:29:20 ----A---- C:\WINDOWS\system32\AudioSes.dll