Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o preventivní kontrolu

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zpráva
Autor
Bari
Návštěvník
Návštěvník
Příspěvky: 40
Registrován: 20 kvě 2011 09:06

Prosím o preventivní kontrolu

#1 Příspěvek od Bari »

Hezký den,

byl jsem na delší dobu v zahraničí a připojoval jsem se na kdejaké volné WiFi na hotelích, letištích apod., proto prosím o preventivní kontrolu počítače.

HP Elitebook 8470p, Windows 8.1 Enterprise x64 EN.

Log z RSIT:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Lukáš at 2014-08-14 19:18:47
Microsoft Windows 8.1 Enterprise
System drive C: has 20 GB (16%) free of 122 GB
Total RAM: 8059 MB (77% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 19:18:51, on 14. 8. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17239)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\ismagent.exe
C:\Program Files\trend micro\Lukáš.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [KeePass 2 PreLoad] "C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe" --preload
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
O4 - Startup: OneDrive for Business.lnk = C:\Program Files\Microsoft Office\Office15\GROOVE.EXE
O4 - Startup: Send to OneNote.lnk = C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE
O4 - Global Startup: AVer HID Receiver.lnk = C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
O4 - Global Startup: AVerQuick.lnk = C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.co ... 5.15.0.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AVerRemote - AVerMedia - C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRemote.exe
O23 - Service: AVerScheduleService - Unknown owner - C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe
O23 - Service: AVerUpdateServer - AVerMedia TECHNOLOGIES, Inc. - C:\Program Files (x86)\AVerMedia\AVerUpdate\AVerUpdateServer.exe
O23 - Service: @oem37.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\Windows\system32\BtwRSupportService.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Absolute Software Agent Service (CtAgentService) - Unknown owner - C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe
O23 - Service: @C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Auditování/zamknutí zařízení nástroje HP (FLCDLOCK) - Hewlett-Packard Company - C:\Windows\SysWOW64\flcdlock.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Device Access Manager Usage Service (HpDamServiceHost) - Hewlett-Packard Development Company - C:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: @oem38.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13504 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"dwm.exe"
"C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k GPSvcGroup
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
"C:\Program Files\IDT\WDM\STacSV64.exe"
"C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPCardEngine.exe"
C:\Windows\system32\Hpservice.exe
C:\Windows\system32\vcsFPService.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRemote.exe"
"C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe"
"C:\Program Files (x86)\AVerMedia\AVerUpdate\AVerUpdateServer.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe"
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\Common Files\Microsoft Shared\Microsoft Online Services\MSOIDSVC.EXE"
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\System32\svchost.exe -k HPZ12
C:\Windows\system32\svchost.exe -k imgsvc
MSOIDSvcm.exe 1548
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"

"C:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe

"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\Windows\system32\svchost.exe -k HPService
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-ea728b0a-3443-4c34-82f8-8f706cf5e895 -SystemEventPortName:HostProcess-e95d73ba-a3e9-45e4-8008-fc229385543f -IoCancelEventPortName:HostProcess-38e33a4e-2df8-4eb8-8f59-73eea9890ec1 -NonStateChangingEventPortName:HostProcess-cd4b583e-fd6d-4971-96fa-180e066e757e -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:1ae65417-f98c-43f1-bfe2-f1a598c1a75d -DeviceGroupId:
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-a3c47214-1ccc-42a1-80e1-45ff8022c546 -SystemEventPortName:HostProcess-37bfa691-d7df-44aa-85e3-44e1280e05f9 -IoCancelEventPortName:HostProcess-28bd7555-ed31-4d49-a107-935ac7025ed6 -NonStateChangingEventPortName:HostProcess-2dcc3f72-2d88-4603-88d7-320e8579440b -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:20784b2a-bd23-4033-94c7-a8ecd8efee6a -DeviceGroupId:WudfDefaultDevicePool
taskhostex.exe
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
C:\Windows\Explorer.EXE
"C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20573_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server
C:\Windows\System32\skydrive.exe -Embedding
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\System32\rundll32.exe" sbavmon.dll,SBAVMonitor
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Windows\system32\igfxsrvc.exe" -Embedding
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
KHALMNPR.EXE /API
"C:\Windows\System32\StikyNot.exe"
"C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe"
"C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" /start
C:\Windows\system32\msiexec.exe /V
C:\Windows\system32\SearchIndexer.exe /Embedding
"C:\Windows\System32\WWAHost.exe" -ServerName:Windows.Store


"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"

"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files\Internet Explorer\iexplore.exe" SCODEF:3472 CREDAT:267777 /prefetch:2
"C:\Program Files\Internet Explorer\iexplore.exe" SCODEF:3472 CREDAT:3610153 /prefetch:2
"C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\ismagent.exe" --domain-id e57b59e7-5862-4250-9ce0-76fb411dc0d2
"C:\Users\Lukáš\Downloads\RSITx64.exe"

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\HPCeeScheduleForLUKASBERAN-NOTE$.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForLUKASBERAN-NOTE$ (null)
C:\Windows\tasks\HPCeeScheduleForLukáš.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForLukáš (null)

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-07-27 218776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2014-05-19 433944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2014-07-27 2335960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-05-21 153248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2014-05-19 364824]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2014-07-27 1730256]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-09-19 500208]
"Creative SB Monitoring Utility"=RunDll32 sbavmon.dll,SBAVMonitor []
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2012-11-12 1664000]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2014-01-25 391128]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2014-01-25 771544]
"Persistence"=C:\Windows\system32\igfxpers.exe [2014-01-25 770520]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2014-05-19 3100440]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"NCPluginUpdater"=C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe [2014-08-06 21720]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"RESTART_STICKY_NOTES"=C:\Windows\System32\StikyNot.exe [2013-08-22 457728]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-07-22 402432]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"KeePass 2 PreLoad"=C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2014-07-06 2117632]
"IMSS"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [2013-10-23 134616]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-10-24 56568]
"HP Software Update"=C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [2010-06-09 49208]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2014-05-16 336672]
""= []

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
AVer HID Receiver.lnk - C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
AVerQuick.lnk - C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe

C:\Users\Lukáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OneDrive for Business.lnk - C:\Program Files\Microsoft Office\Office15\GROOVE.EXE
Send to OneNote.lnk - C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2014-01-25 624640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2014-03-25 66328]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-08-14 19:18:47 ----D---- C:\rsit
2014-08-14 19:18:47 ----D---- C:\Program Files\trend micro
2014-08-14 19:11:47 ----D---- C:\AdwCleaner
2014-08-12 20:08:49 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll
2014-08-12 20:08:48 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll
2014-08-12 20:08:48 ----A---- C:\Windows\system32\shell32.dll
2014-08-12 20:08:47 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-08-12 20:08:47 ----A---- C:\Windows\system32\mstscax.dll
2014-08-12 20:08:46 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-08-12 20:08:46 ----A---- C:\Windows\system32\Windows.UI.Search.dll
2014-08-12 20:08:46 ----A---- C:\Windows\system32\SettingsHandlers.dll
2014-08-12 20:08:46 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-08-12 20:08:46 ----A---- C:\Windows\system32\d3d10warp.dll
2014-08-12 20:08:45 ----A---- C:\Windows\system32\twinui.dll
2014-08-12 20:08:45 ----A---- C:\Windows\system32\rpcrt4.dll
2014-08-12 20:08:45 ----A---- C:\Windows\system32\mfcore.dll
2014-08-12 20:08:45 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-08-12 20:08:45 ----A---- C:\Windows\system32\actxprxy.dll
2014-08-12 20:08:44 ----A---- C:\Windows\SYSWOW64\twinui.dll
2014-08-12 20:08:44 ----A---- C:\Windows\SYSWOW64\mfcore.dll
2014-08-12 20:08:44 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-08-12 20:08:44 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-08-12 20:08:44 ----A---- C:\Windows\system32\workfolderssvc.dll
2014-08-12 20:08:44 ----A---- C:\Windows\system32\wlansvc.dll
2014-08-12 20:08:44 ----A---- C:\Windows\system32\gpsvc.dll
2014-08-12 20:08:44 ----A---- C:\Windows\system32\authui.dll
2014-08-12 20:08:43 ----A---- C:\Windows\SYSWOW64\Windows.UI.Search.dll
2014-08-12 20:08:43 ----A---- C:\Windows\SYSWOW64\Windows.Media.dll
2014-08-12 20:08:43 ----A---- C:\Windows\SYSWOW64\mfmp4srcsnk.dll
2014-08-12 20:08:43 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-08-12 20:08:43 ----A---- C:\Windows\system32\Windows.Media.dll
2014-08-12 20:08:43 ----A---- C:\Windows\system32\mfmp4srcsnk.dll
2014-08-12 20:08:43 ----A---- C:\Windows\system32\localspl.dll
2014-08-12 20:08:43 ----A---- C:\Windows\system32\iphlpsvc.dll
2014-08-12 20:08:43 ----A---- C:\Windows\system32\drivers\srv.sys
2014-08-12 20:08:42 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-08-12 20:08:42 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-08-12 20:08:42 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2014-08-12 20:08:42 ----A---- C:\Windows\SYSWOW64\mispace.dll
2014-08-12 20:08:42 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2014-08-12 20:08:42 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\XpsPrint.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\wuaueng.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\WorkfoldersControl.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\SRH.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\printui.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\netcfgx.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\mispace.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\mfplat.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\dxgi.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\drivers\srv2.sys
2014-08-12 20:08:42 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-08-12 20:08:42 ----A---- C:\Windows\system32\drivers\netio.sys
2014-08-12 20:08:42 ----A---- C:\Windows\system32\drivers\bthport.sys
2014-08-12 20:08:42 ----A---- C:\Windows\system32\AppxPackaging.dll
2014-08-12 20:08:41 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2014-08-12 20:08:41 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Bluetooth.dll
2014-08-12 20:08:41 ----A---- C:\Windows\SYSWOW64\SRH.dll
2014-08-12 20:08:41 ----A---- C:\Windows\SYSWOW64\printui.dll
2014-08-12 20:08:41 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2014-08-12 20:08:41 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2014-08-12 20:08:41 ----A---- C:\Windows\SYSWOW64\AppxPackaging.dll
2014-08-12 20:08:41 ----A---- C:\Windows\SYSWOW64\aclui.dll
2014-08-12 20:08:41 ----A---- C:\Windows\system32\WSDMon.dll
2014-08-12 20:08:41 ----A---- C:\Windows\system32\wlanmsm.dll
2014-08-12 20:08:41 ----A---- C:\Windows\system32\uDWM.dll
2014-08-12 20:08:41 ----A---- C:\Windows\system32\srvsvc.dll
2014-08-12 20:08:41 ----A---- C:\Windows\system32\spoolsv.exe
2014-08-12 20:08:41 ----A---- C:\Windows\system32\SHCore.dll
2014-08-12 20:08:41 ----A---- C:\Windows\system32\puiobj.dll
2014-08-12 20:08:41 ----A---- C:\Windows\system32\mfreadwrite.dll
2014-08-12 20:08:41 ----A---- C:\Windows\system32\drivers\volsnap.sys
2014-08-12 20:08:41 ----A---- C:\Windows\system32\drivers\usbccgp.sys
2014-08-12 20:08:41 ----A---- C:\Windows\system32\drivers\spaceport.sys
2014-08-12 20:08:41 ----A---- C:\Windows\system32\aclui.dll
2014-08-12 20:08:40 ----A---- C:\Windows\SYSWOW64\SHCore.dll
2014-08-12 20:08:40 ----A---- C:\Windows\SYSWOW64\mftranscode.dll
2014-08-12 20:08:40 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\wuapi.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\wsecedit.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\wisp.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\winresume.exe
2014-08-12 20:08:40 ----A---- C:\Windows\system32\winload.exe
2014-08-12 20:08:40 ----A---- C:\Windows\system32\WebClnt.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\usbmon.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\storagewmi.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\mftranscode.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\lsasrv.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\drivers\USBHUB3.SYS
2014-08-12 20:08:40 ----A---- C:\Windows\system32\drivers\srvnet.sys
2014-08-12 20:08:40 ----A---- C:\Windows\system32\defragsvc.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\comdlg32.dll
2014-08-12 20:08:39 ----A---- C:\Windows\SYSWOW64\wlanapi.dll
2014-08-12 20:08:39 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2014-08-12 20:08:39 ----A---- C:\Windows\SYSWOW64\storagewmi.dll
2014-08-12 20:08:39 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2014-08-12 20:08:39 ----A---- C:\Windows\SYSWOW64\Display.dll
2014-08-12 20:08:39 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\wpdbusenum.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\winmmbase.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\win32spl.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\WiFiDisplay.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\VAN.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\user32.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\SettingSync.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\rdvidcrl.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\rdpcorets.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\profsvc.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\drivers\usbhub.sys
2014-08-12 20:08:39 ----A---- C:\Windows\system32\drivers\nwifi.sys
2014-08-12 20:08:39 ----A---- C:\Windows\system32\conhost.exe
2014-08-12 20:08:38 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-08-12 20:08:38 ----A---- C:\Windows\SYSWOW64\wsecedit.dll
2014-08-12 20:08:38 ----A---- C:\Windows\SYSWOW64\wisp.dll
2014-08-12 20:08:38 ----A---- C:\Windows\SYSWOW64\winmmbase.dll
2014-08-12 20:08:38 ----A---- C:\Windows\SYSWOW64\bcryptprimitives.dll
2014-08-12 20:08:38 ----A---- C:\Windows\SYSWOW64\AppxSip.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\wucltux.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\WSShared.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\WorkFoldersGPExt.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\winmm.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\Windows.Networking.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\twinapi.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\SndVol.exe
2014-08-12 20:08:38 ----A---- C:\Windows\system32\prnntfy.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\osk.exe
2014-08-12 20:08:38 ----A---- C:\Windows\system32\mfps.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\httpprxm.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\GdiPlus.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\dwmcore.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\dwmapi.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\drivers\NdisImPlatform.sys
2014-08-12 20:08:38 ----A---- C:\Windows\system32\drivers\ndis.sys
2014-08-12 20:08:38 ----A---- C:\Windows\system32\drivers\msgpioclx.sys
2014-08-12 20:08:38 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2014-08-12 20:08:38 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2014-08-12 20:08:38 ----A---- C:\Windows\system32\drivers\hdaudbus.sys
2014-08-12 20:08:38 ----A---- C:\Windows\system32\drivers\bridge.sys
2014-08-12 20:08:38 ----A---- C:\Windows\system32\Display.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\DafPrintProvider.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\clusapi.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\bcryptprimitives.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\AppxSip.dll
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\WSShared.dll
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\winmm.dll
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\VAN.dll
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\puiapi.dll
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\prnntfy.dll
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\dwmapi.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\wups.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\WorkFoldersShell.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\wcmcsp.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\SystemSettingsAdminFlows.exe
2014-08-12 20:08:37 ----A---- C:\Windows\system32\stobject.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\puiapi.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\ppcsnap.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\iasnap.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\gpedit.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\drivers\pci.sys
2014-08-12 20:08:37 ----A---- C:\Windows\system32\drivers\ks.sys
2014-08-12 20:08:37 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-08-12 20:08:37 ----A---- C:\Windows\system32\AppxSysprep.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\adhsvc.dll
2014-08-12 20:08:36 ----A---- C:\Windows\SYSWOW64\Windows.Networking.dll
2014-08-12 20:08:36 ----A---- C:\Windows\SYSWOW64\SettingSync.dll
2014-08-12 20:08:36 ----A---- C:\Windows\SYSWOW64\rsaenh.dll
2014-08-12 20:08:36 ----A---- C:\Windows\SYSWOW64\osk.exe
2014-08-12 20:08:36 ----A---- C:\Windows\SYSWOW64\iasnap.dll
2014-08-12 20:08:36 ----A---- C:\Windows\SYSWOW64\gpedit.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\wwanconn.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\wups2.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\wuauclt.exe
2014-08-12 20:08:36 ----A---- C:\Windows\system32\wshbth.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\wlanapi.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\schannel.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\rsaenh.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\pmcsnap.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\dab.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\ActionCenter.dll
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\user32.dll
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\stobject.dll
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\KBDRUM.DLL
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\GdiPlus.dll
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\DafPrintProvider.dll
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2014-08-12 20:08:35 ----A---- C:\Windows\system32\wlansvcpal.dll
2014-08-12 20:08:35 ----A---- C:\Windows\system32\Windows.Devices.Bluetooth.dll
2014-08-12 20:08:35 ----A---- C:\Windows\system32\SearchFolder.dll
2014-08-12 20:08:35 ----A---- C:\Windows\system32\PrintDialogs.dll
2014-08-12 20:08:35 ----A---- C:\Windows\system32\KBDYAK.DLL
2014-08-12 20:08:35 ----A---- C:\Windows\system32\KBDRUM.DLL
2014-08-12 20:08:35 ----A---- C:\Windows\system32\KBDRU1.DLL
2014-08-12 20:08:35 ----A---- C:\Windows\system32\KBDRU.DLL
2014-08-12 20:08:35 ----A---- C:\Windows\system32\KBDBASH.DLL
2014-08-12 20:08:35 ----A---- C:\Windows\system32\Defrag.exe
2014-08-12 20:08:35 ----A---- C:\Windows\system32\browser.dll
2014-08-12 20:08:34 ----A---- C:\Windows\SYSWOW64\PrintDialogs.dll
2014-08-12 20:08:34 ----A---- C:\Windows\SYSWOW64\KBDYAK.DLL
2014-08-12 20:08:34 ----A---- C:\Windows\SYSWOW64\KBDTAT.DLL
2014-08-12 20:08:34 ----A---- C:\Windows\SYSWOW64\KBDRU1.DLL
2014-08-12 20:08:34 ----A---- C:\Windows\SYSWOW64\KBDRU.DLL
2014-08-12 20:08:34 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2014-08-12 20:08:34 ----A---- C:\Windows\SYSWOW64\certcli.dll
2014-08-12 20:08:34 ----A---- C:\Windows\SYSWOW64\BluetoothApis.dll
2014-08-12 20:08:34 ----A---- C:\Windows\system32\wwanmm.dll
2014-08-12 20:08:34 ----A---- C:\Windows\system32\wlansec.dll
2014-08-12 20:08:34 ----A---- C:\Windows\system32\SndVolSSO.dll
2014-08-12 20:08:34 ----A---- C:\Windows\system32\rdpudd.dll
2014-08-12 20:08:34 ----A---- C:\Windows\system32\KBDTAT.DLL
2014-08-12 20:08:34 ----A---- C:\Windows\system32\drivers\bthpan.sys
2014-08-12 20:08:34 ----A---- C:\Windows\system32\compstui.dll
2014-08-12 20:08:34 ----A---- C:\Windows\system32\certcli.dll
2014-08-12 20:08:34 ----A---- C:\Windows\system32\BluetoothApis.dll
2014-08-12 20:08:33 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-08-12 20:08:33 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-08-12 20:08:33 ----A---- C:\Windows\SYSWOW64\KBDTT102.DLL
2014-08-12 20:08:33 ----A---- C:\Windows\system32\wudriver.dll
2014-08-12 20:08:33 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-08-12 20:08:33 ----A---- C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2014-08-12 20:08:33 ----A---- C:\Windows\system32\KBDTT102.DLL
2014-08-12 20:06:58 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-08-12 20:06:58 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-08-12 20:06:58 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-08-12 20:06:57 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-08-12 20:06:57 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-08-12 20:06:57 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-08-12 20:06:57 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-08-12 20:06:57 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-08-12 20:06:57 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-08-12 20:06:57 ----A---- C:\Windows\system32\urlmon.dll
2014-08-12 20:06:57 ----A---- C:\Windows\system32\msfeeds.dll
2014-08-12 20:06:57 ----A---- C:\Windows\system32\dxtmsft.dll
2014-08-12 20:06:56 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-08-12 20:06:56 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-08-12 20:06:56 ----A---- C:\Windows\system32\iertutil.dll
2014-08-12 20:06:55 ----A---- C:\Windows\system32\ieframe.dll
2014-08-12 20:06:55 ----A---- C:\Windows\system32\dxtrans.dll
2014-08-12 20:06:54 ----A---- C:\Windows\system32\mshtmled.dll
2014-08-12 20:06:54 ----A---- C:\Windows\system32\mshtml.dll
2014-08-12 20:06:54 ----A---- C:\Windows\system32\jscript9diag.dll
2014-08-12 20:06:54 ----A---- C:\Windows\system32\jscript9.dll
2014-08-12 20:06:54 ----A---- C:\Windows\system32\ieapfltr.dll
2014-08-12 20:06:53 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-08-12 20:06:53 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-08-12 20:06:53 ----A---- C:\Windows\system32\wininet.dll
2014-08-12 20:06:53 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-08-12 20:06:53 ----A---- C:\Windows\system32\iedkcs32.dll
2014-08-12 20:06:53 ----A---- C:\Windows\system32\ie4uinit.exe
2014-08-12 20:06:52 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-08-12 20:06:52 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-08-12 20:06:52 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-08-12 20:06:52 ----A---- C:\Windows\system32\vbscript.dll
2014-08-12 20:06:52 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-08-12 20:05:32 ----A---- C:\Windows\SYSWOW64\explorer.exe
2014-08-12 20:05:32 ----A---- C:\Windows\explorer.exe
2014-08-12 20:05:02 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2014-08-12 20:05:02 ----A---- C:\Windows\system32\TsWpfWrp.exe
2014-08-12 20:04:14 ----A---- C:\Windows\system32\MrmCoreR.dll
2014-08-12 20:04:14 ----A---- C:\Windows\system32\aepdu.dll
2014-08-12 20:04:14 ----A---- C:\Windows\system32\aeinv.dll
2014-08-12 20:04:13 ----A---- C:\Windows\system32\WpcMon.exe
2014-08-12 20:04:13 ----A---- C:\Windows\system32\Wpc.dll
2014-08-12 20:04:12 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2014-08-12 20:04:12 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-08-12 20:04:12 ----A---- C:\Windows\system32\WpcWebSync.dll
2014-08-12 20:04:12 ----A---- C:\Windows\system32\win32k.sys
2014-08-12 20:04:12 ----A---- C:\Windows\system32\MDMAgent.exe
2014-08-12 20:04:12 ----A---- C:\Windows\system32\gdi32.dll
2014-08-12 20:04:02 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-08-12 20:04:02 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-08-12 20:04:02 ----A---- C:\Windows\system32\msihnd.dll
2014-08-12 20:04:02 ----A---- C:\Windows\system32\msi.dll
2014-08-12 20:04:02 ----A---- C:\Windows\system32\consent.exe
2014-08-07 01:07:39 ----D---- C:\Users\Lukáš\AppData\Roaming\vlc
2014-07-30 04:26:51 ----A---- C:\ProgramData\hpdam_install_log.txt
2014-07-22 20:12:23 ----A---- C:\Windows\system32\SyncEngine.dll
2014-07-22 20:12:23 ----A---- C:\Windows\system32\SkyDriveTelemetry.dll
2014-07-22 20:12:23 ----A---- C:\Windows\system32\SkyDrive.exe
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\zh-Hant
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\zh-Hans
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\tr
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\th
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\sv
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\sr
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\sl
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\sk
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\ru
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\ro
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\pl
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\no
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\nl
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\lv
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\lt
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\ko
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\ja
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\it
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\hu
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\hr
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\he
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\fr
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\fi
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\et
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\es
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\el
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\de
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\da
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\cs
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\bg
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\ar
2014-07-22 00:47:41 ----D---- C:\Windows\system32\zh-Hant
2014-07-22 00:47:41 ----D---- C:\Windows\system32\zh-Hans
2014-07-22 00:47:41 ----D---- C:\Windows\system32\tr
2014-07-22 00:47:41 ----D---- C:\Windows\system32\th
2014-07-22 00:47:41 ----D---- C:\Windows\system32\sv
2014-07-22 00:47:41 ----D---- C:\Windows\system32\sr
2014-07-22 00:47:41 ----D---- C:\Windows\system32\sl
2014-07-22 00:47:41 ----D---- C:\Windows\system32\sk
2014-07-22 00:47:41 ----D---- C:\Windows\system32\ru
2014-07-22 00:47:41 ----D---- C:\Windows\system32\ro
2014-07-22 00:47:41 ----D---- C:\Windows\system32\pl
2014-07-22 00:47:41 ----D---- C:\Windows\system32\no
2014-07-22 00:47:41 ----D---- C:\Windows\system32\nl
2014-07-22 00:47:41 ----D---- C:\Windows\system32\lv
2014-07-22 00:47:41 ----D---- C:\Windows\system32\lt
2014-07-22 00:47:41 ----D---- C:\Windows\system32\ko
2014-07-22 00:47:41 ----D---- C:\Windows\system32\ja
2014-07-22 00:47:41 ----D---- C:\Windows\system32\it
2014-07-22 00:47:41 ----D---- C:\Windows\system32\hu
2014-07-22 00:47:41 ----D---- C:\Windows\system32\hr
2014-07-22 00:47:41 ----D---- C:\Windows\system32\he
2014-07-22 00:47:41 ----D---- C:\Windows\system32\fr
2014-07-22 00:47:41 ----D---- C:\Windows\system32\fi
2014-07-22 00:47:41 ----D---- C:\Windows\system32\et
2014-07-22 00:47:41 ----D---- C:\Windows\system32\es
2014-07-22 00:47:41 ----D---- C:\Windows\system32\el
2014-07-22 00:47:41 ----D---- C:\Windows\system32\de
2014-07-22 00:47:41 ----D---- C:\Windows\system32\da
2014-07-22 00:47:41 ----D---- C:\Windows\system32\cs
2014-07-22 00:47:41 ----D---- C:\Windows\system32\bg
2014-07-22 00:47:41 ----D---- C:\Windows\system32\ar
2014-07-22 00:47:39 ----D---- C:\Windows\DPDrv
2014-07-22 00:32:42 ----A---- C:\Windows\SYSWOW64\SynTPCom.dll
2014-07-22 00:32:41 ----A---- C:\Windows\system32\SynTPCo19.dll
2014-07-22 00:32:41 ----A---- C:\Windows\system32\SynTPAPI.dll
2014-07-22 00:32:41 ----A---- C:\Windows\system32\drivers\SynTP.sys
2014-07-22 00:32:37 ----A---- C:\Windows\SYSWOW64\SynCom.dll
2014-07-22 00:32:37 ----A---- C:\Windows\system32\SynCOM.dll
2014-07-22 00:29:49 ----D---- C:\Program Files\Broadcom

======List of files/folders modified in the last 1 month======

2014-08-14 19:18:47 ----RD---- C:\Program Files
2014-08-14 19:18:21 ----RD---- C:\Windows\System32
2014-08-14 19:18:21 ----D---- C:\Windows\Inf
2014-08-14 19:18:21 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-08-14 19:17:46 ----D---- C:\Windows\Tasks
2014-08-14 19:17:46 ----D---- C:\Windows\system32\Tasks
2014-08-14 19:15:37 ----A---- C:\Windows\SYSWOW64\log.txt
2014-08-14 19:14:23 ----D---- C:\Windows
2014-08-14 19:14:17 ----SHD---- C:\Windows\Installer
2014-08-14 19:14:17 ----HD---- C:\Config.Msi
2014-08-14 19:14:17 ----D---- C:\Windows\Temp
2014-08-14 19:14:14 ----D---- C:\Windows\Prefetch
2014-08-14 19:14:13 ----D---- C:\Windows\SysWOW64
2014-08-14 19:10:36 ----D---- C:\Users\Lukáš\AppData\Roaming\Skype
2014-08-14 19:02:16 ----D---- C:\Windows\SoftwareDistribution
2014-08-14 19:00:00 ----D---- C:\Windows\system32\sru
2014-08-14 18:58:35 ----D---- C:\Windows\debug
2014-08-14 18:57:53 ----D---- C:\Users\Lukáš\AppData\Roaming\KeePass
2014-08-14 17:59:29 ----D---- C:\Windows\Microsoft.NET
2014-08-14 17:59:19 ----RSD---- C:\Windows\assembly
2014-08-14 17:25:10 ----HD---- C:\Program Files\WindowsApps
2014-08-14 17:25:10 ----D---- C:\Windows\AppReadiness
2014-08-13 16:28:44 ----SHD---- C:\System Volume Information
2014-08-13 14:33:31 ----D---- C:\Windows\system32\catroot
2014-08-13 01:42:37 ----A---- C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-08-12 20:32:11 ----D---- C:\Windows\system32\config
2014-08-12 20:28:17 ----D---- C:\Windows\WinSxS
2014-08-12 20:26:28 ----D---- C:\Windows\SYSWOW64\en-US
2014-08-12 20:26:28 ----D---- C:\Windows\system32\en-US
2014-08-12 20:26:28 ----D---- C:\Windows\PolicyDefinitions
2014-08-12 20:26:28 ----D---- C:\Program Files\Internet Explorer
2014-08-12 20:26:28 ----D---- C:\Program Files (x86)\Internet Explorer
2014-08-12 20:26:27 ----RD---- C:\Windows\ToastData
2014-08-12 20:26:27 ----D---- C:\Windows\system32\migration
2014-08-12 20:26:26 ----D---- C:\Program Files\Windows Journal
2014-08-12 20:26:25 ----RD---- C:\Windows\ImmersiveControlPanel
2014-08-12 20:26:25 ----D---- C:\Windows\WinStore
2014-08-12 20:26:25 ----D---- C:\Windows\SYSWOW64\wbem
2014-08-12 20:26:25 ----D---- C:\Windows\SYSWOW64\setup
2014-08-12 20:26:25 ----D---- C:\Windows\system32\wbem
2014-08-12 20:26:25 ----D---- C:\Windows\system32\setup
2014-08-12 20:26:25 ----D---- C:\Windows\system32\oobe
2014-08-12 20:26:25 ----D---- C:\Windows\system32\drivers\en-US
2014-08-12 20:26:25 ----D---- C:\Windows\system32\drivers
2014-08-12 20:26:25 ----D---- C:\Windows\system32\Boot
2014-08-12 20:26:24 ----RSD---- C:\Windows\Fonts
2014-08-12 20:26:24 ----D---- C:\Windows\SYSWOW64\migration
2014-08-12 20:26:24 ----D---- C:\Windows\SYSWOW64\InputMethod
2014-08-12 20:26:24 ----D---- C:\Windows\apppatch
2014-08-12 20:26:23 ----D---- C:\Windows\system32\DriverStore
2014-08-12 20:18:58 ----D---- C:\ProgramData\Microsoft Help
2014-08-12 20:18:41 ----D---- C:\Windows\CbsTemp
2014-08-12 20:17:39 ----D---- C:\Windows\system32\MRT
2014-08-12 20:16:25 ----A---- C:\Windows\system32\MRT.exe
2014-08-12 20:14:33 ----A---- C:\Windows\win.ini
2014-08-12 20:13:32 ----SD---- C:\Windows\system32\CompatTel
2014-08-12 20:06:42 ----D---- C:\Windows\system32\catroot2
2014-08-12 20:03:58 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-08-12 20:03:58 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-08-12 20:03:53 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-08-12 20:03:53 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-08-12 20:03:53 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-08-12 20:03:53 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-08-12 20:03:52 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-08-12 20:03:52 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-08-12 20:03:52 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-08-12 20:03:52 ----A---- C:\Windows\system32\ieUnatt.exe
2014-08-12 20:03:52 ----A---- C:\Windows\system32\iesetup.dll
2014-08-12 20:03:52 ----A---- C:\Windows\system32\iernonce.dll
2014-08-12 20:03:50 ----A---- C:\Windows\system32\jsproxy.dll
2014-08-11 00:02:09 ----D---- C:\Windows\Hewlett-Packard
2014-08-10 23:57:44 ----D---- C:\SWSetup
2014-08-10 23:53:54 ----D---- C:\Program Files (x86)\CDBurnerXP
2014-08-10 23:45:45 ----D---- C:\Users\Lukáš\AppData\Roaming\HpUpdate
2014-08-06 16:51:30 ----D---- C:\ProgramData\Skype
2014-08-06 16:51:30 ----D---- C:\Program Files (x86)\Common Files
2014-08-04 02:47:07 ----D---- C:\Program Files (x86)\Hewlett-Packard
2014-08-02 02:17:43 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-07-31 22:41:12 ----D---- C:\Windows\rescache
2014-07-30 17:56:51 ----D---- C:\Windows\Minidump
2014-07-30 17:56:03 ----D---- C:\Program Files\CCleaner
2014-07-30 04:33:14 ----D---- C:\Program Files\Microsoft Silverlight
2014-07-30 04:33:14 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-07-30 04:27:05 ----D---- C:\Windows\SYSWOW64\drivers
2014-07-30 04:26:51 ----HD---- C:\ProgramData
2014-07-24 15:29:45 ----A---- C:\Windows\SYSWOW64\PrintConfig.dll
2014-07-22 03:35:34 ----D---- C:\Program Files\Common Files\LogiShrd
2014-07-22 03:35:22 ----D---- C:\ProgramData\Logishrd
2014-07-22 00:48:38 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-07-22 00:48:06 ----D---- C:\Program Files\Hewlett-Packard
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\pt-PT
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\pt-BR
2014-07-22 00:47:42 ----D---- C:\Windows\system32\pt-PT
2014-07-22 00:47:42 ----D---- C:\Windows\system32\pt-BR
2014-07-22 00:46:35 ----D---- C:\ProgramData\HPQLOG
2014-07-22 00:46:28 ----D---- C:\ProgramData\Package Cache
2014-07-21 03:25:10 ----D---- C:\Program Files (x86)\KeePass Password Safe 2
2014-07-15 00:08:02 ----D---- C:\Windows\system32\NDF

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 hpdskflt;@oem38.inf,%service_desc%;HP Filter; C:\Windows\system32\DRIVERS\hpdskflt.sys [2012-09-07 31040]
R0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2013-10-24 641672]
R3 Accelerometer;@oem38.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\Windows\system32\DRIVERS\Accelerometer.sys [2012-09-07 43328]
R3 AVerAF35;@oem2.inf,%AF9035Devcie.FriendlyName%;AVerMedia A835 USB DVB-T; C:\Windows\System32\Drivers\AVerAF35.sys [2013-06-05 804992]
R3 bcbtums;@oem37.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\Windows\system32\drivers\bcbtums.sys [2014-04-24 170712]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\Windows\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\Windows\System32\drivers\BthLEEnum.sys [2013-12-04 226304]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2014-01-31 81920]
R3 e1cexpress;@oem10.inf,%e1cExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver C; C:\Windows\system32\DRIVERS\e1c64x64.sys [2013-08-08 469264]
R3 HpqKbFiltr;@oem44.inf,%HpqKbFiltr.SvcDesc%;HpqKbFilter Driver; C:\Windows\System32\drivers\HpqKbFiltr64.sys [2014-05-15 28376]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-01-25 4221440]
R3 iwdbus;@oem34.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2013-12-27 27032]
R3 JMCR;JMCR; C:\Windows\System32\drivers\jmcr.sys [2013-10-22 176880]
R3 johci;@oem39.inf,%service_desc%;JMicron 1394 Filter Driver; C:\Windows\System32\drivers\johci.sys [2013-10-22 26208]
R3 ksaud;@oem29.inf,%KSAUD.SvcDesc%;Creative USB Audio Driver; C:\Windows\system32\drivers\ksaud.sys [2011-09-13 1588608]
R3 LHidFilt;@oem21.inf,%LHidFilt.SvcDesc%;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2014-03-19 76568]
R3 MEIx64;@oem46.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\System32\drivers\HECIx64.sys [2013-10-23 62784]
R3 NETwNe64;@oem28.inf,___ %NIC_Service_DispName_WIN8_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\Windows\system32\DRIVERS\NETwew00.sys [2013-09-04 3345376]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2014-01-27 167424]
R3 SensorsServiceDriver;@sensorsservicedriver.inf,%WudfSensorsServiceDriverDisplayName%;UMDF Reflector service for SensorsServiceDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [2014-05-31 227840]
R3 SNP2UVC;@oem5.inf,%SERVICE_DISPLAY_NAME%;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2012-11-28 1866080]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10301; C:\Windows\system32\DRIVERS\stwrt64.sys [2012-11-12 543744]
R3 SynTP;@oem61.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2014-07-22 555760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\System32\drivers\bthpan.sys [2014-07-24 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 btwampfl;@oem37.inf,%btwampfl.ServiceName%;btwampfl; C:\Windows\system32\DRIVERS\btwampfl.sys [2013-09-04 166104]
S3 damdrv;DAMDrv; C:\Windows\system32\DRIVERS\DAMDrv64.sys [2013-10-07 65752]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\Windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 intaud_WaveExtensible;@oem33.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2013-12-27 38296]
S3 LMouFilt;@oem23.inf,%LMouFilt.SvcDesc%;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2014-03-19 59160]
S3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;USB Audio Driver (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-12-13 121088]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2013-08-22 44544]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-08-22 212224]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 AVerRemote;AVerRemote; C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRemote.exe [2013-06-26 368640]
R2 AVerScheduleService;AVerScheduleService; C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe [2011-04-01 403456]
R2 AVerUpdateServer;AVerUpdateServer; C:\Program Files (x86)\AVerMedia\AVerUpdate\AVerUpdateServer.exe [2011-10-31 167936]
R2 CtAgentService;Absolute Software Agent Service; C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe [2014-03-31 7168]
R2 DpHost;@C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128; C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2014-02-11 500048]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2013-11-04 92160]
R2 HpDamServiceHost;HP Device Access Manager Usage Service; C:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe [2014-04-10 18232]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2014-05-16 683296]
R2 hpqddsvc;HP CUE DeviceDiscovery Service; C:\Windows\system32\svchost.exe [2013-08-22 37768]
R2 HPSLPSVC;HP Network Devices Support; C:\Windows\system32\svchost.exe [2013-08-22 37768]
R2 hpsrv;@oem38.inf,%hpservice_desc%;HP Service; C:\Windows\system32\Hpservice.exe [2012-09-07 33600]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-10-24 15496]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-12-10 732160]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2013-10-23 131032]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-10-23 165336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-10-23 279000]
R2 msoidsvc;Microsoft Online Services Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Microsoft Online Services\MSOIDSVC.EXE [2012-05-17 2079520]
R2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2013-08-22 37768]
R2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2013-08-22 37768]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10101; C:\Program Files\IDT\WDM\STacSV64.exe [2012-11-12 327680]
R2 TeamViewer9;TeamViewer 9; C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-08-06 5052224]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2013-10-23 366040]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\Windows\system32\vcsFPService.exe [2013-09-12 3221392]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2013-08-22 37768]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-11-13 1233592]
S2 BcmBtRSupport;@oem37.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\Windows\system32\BtwRSupportService.exe [2014-04-24 2251992]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-19 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-01-25 279000]
S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2013-09-20 79360]
S3 FLCDLOCK;Auditování/zamknutí zařízení nástroje HP; C:\Windows\SysWOW64\flcdlock.exe [2014-04-10 567608]
S3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-19 116648]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2012-12-10 803872]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2014-03-25 357144]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 178760]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o preventivní kontrolu

#2 Příspěvek od Márty84 »

Zdravim :)

:arrow: Stahnete OTL http://oldtimer.geekstogo.com/OTL.exe a ulozte na plochu.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce
Oznacte polozky (dejte tam zatrzitka) Pro všechny uživatele, Kontrola na havěť "LOP" a Kontrola na havěť "Purity"
Do spodniho okna vlozte nasledujici text

Kód: Vybrat vše

CREATERESTOREPOINT

netsvcs
drivers32
savembr:0

/md5start
adp3132.sys
AGP440.sys
ahcix86.sys
ahcix86s.sys
atapi.sys
autochk.exe
cdrom.sys
cngaudit.dll
cryptsvc.dll
eNetHook.dll
eventlog.dll
explorer.exe
hal.dll
Changer.sys
iaStor.sys
iastorv.sys
IdeChnDr.sys
isapnp.sys
JakNDis.sys
KR10N.sys
logevent.dll
lsass.exe
mv61xx.sys
ndis.sys
netlogon.dll
ntelogon.dll
nvata.sys
nvatabus.sys
nvgts.sys
nvraid.sys
nvrd32.sys
nvstor.sys
nvstor32.sys
scecli.dll
sceclt.dll
smss.exe
svchost.exe
symmpi.sys
tcpip.sys
userinit.exe
vaxscsi.sys
viamraid.sys
viasraid.sys
ViPrt.sys
winlogon.exe
ws2_32.dll
/md5stop

%systemroot%*.* /U /s
%SYSTEMDRIVE%\*.exe
%ALLUSERSPROFILE%\Application Data\*.
%ALLUSERSPROFILE%\Application Data\*.exe /s
%APPDATA%\*.
%APPDATA%\*.exe /s
%systemroot%\*. /mp /s
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\Tasks\*.job /lockedfiles
%systemroot%\system32\drivers\*.sys /lockedfiles
%systemroot%\System32\config\*.sav
%systemroot%\system32\*.dll /lockedfiles
%systemroot%\system32\drivers\*.sys /3
%systemroot%\system32\*.* /3
%SYSTEMDRIVE%\*.exe

HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s
reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c
reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c

type c:\boot.ini >> test.txt /c
%SystemDrive%\PhysicalMBR.bin /md5

*crack* /s
*keygen* /s
*AntiWPA* /s
*loader* /s
*minodlogin* /s
*tnod* /s
*AutoKMS* /s
*activator* /s
*serial* /s
*w7lxe* /s
Kliknete na Prohledat
Po skenu se vytvori dva logy (OTL.Txt a Extras.txt), oba sem vlozte (kdyz budou dlouhe, rozdelte je do vice prispevku).
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Bari
Návštěvník
Návštěvník
Příspěvky: 40
Registrován: 20 kvě 2011 09:06

Re: Prosím o preventivní kontrolu

#3 Příspěvek od Bari »

Přidávám log OTL, Extras mi to nevyhodilo.


OTL logfile created on: 15. 8. 2014 20:38:41 - Run 3
OTL by OldTimer - Version 3.2.69.0 Folder = C:\Users\Lukáš\Desktop
64bit- Enterprise Edition (Version = 6.2.9200) - Type = NTWorkstation
Internet Explorer (Version = 9.11.9600.17239)
Locale: 00000405 | Country: Czech Republic | Language: CSY | Date Format: d. M. yyyy

7,87 Gb Total Physical Memory | 4,68 Gb Available Physical Memory | 59,44% Memory free
9,87 Gb Paging File | 6,35 Gb Available in Paging File | 64,37% Paging File free
Paging file location(s): c:\pagefile.sys 2048 2048 [binary data]

%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 118,73 Gb Total Space | 17,59 Gb Free Space | 14,81% Space Free | Partition Type: NTFS
Drive D: | 167,68 Gb Total Space | 37,82 Gb Free Space | 22,55% Space Free | Partition Type: NTFS

Computer Name: LUKASBERAN-NOTE | User Name: Lukáš | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: All users | Include 64bit Scans
Company Name Whitelist: Off | Skip Microsoft Files: Off | No Company Name Whitelist: On | File Age = 30 Days

========== Processes (SafeList) ==========

PRC - [2014/08/15 09:21:21 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Lukáš\Desktop\OTL.exe
PRC - [2014/08/06 11:34:34 | 005,052,224 | ---- | M] (TeamViewer GmbH) -- C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
PRC - [2014/05/16 17:58:24 | 000,683,296 | ---- | M] (Hewlett-Packard Company) -- C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
PRC - [2014/04/10 16:10:36 | 000,018,232 | R--- | M] (Hewlett-Packard Development Company) -- C:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe
PRC - [2014/03/31 20:28:02 | 000,007,168 | ---- | M] () -- C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe
PRC - [2014/02/11 00:00:02 | 001,608,016 | R--- | M] (DigitalPersona, Inc.) -- C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
PRC - [2013/12/21 08:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
PRC - [2013/10/24 21:21:30 | 000,285,832 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
PRC - [2013/10/24 21:21:30 | 000,015,496 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
PRC - [2013/10/23 18:07:59 | 000,366,040 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2013/10/23 18:07:58 | 000,279,000 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2013/10/23 18:07:57 | 000,165,336 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
PRC - [2013/10/23 18:07:57 | 000,131,032 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
PRC - [2013/06/26 17:36:25 | 000,368,640 | ---- | M] (AVerMedia) -- C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRemote.exe
PRC - [2013/01/09 17:05:54 | 000,163,840 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
PRC - [2011/10/31 19:30:00 | 000,167,936 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) -- C:\Program Files (x86)\AVerMedia\AVerUpdate\AVerUpdateServer.exe
PRC - [2011/04/01 15:52:24 | 000,403,456 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe


========== Modules (No Company Name) ==========

MOD - [2014/05/04 18:59:56 | 001,070,080 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Servf73e6522#\39bc23d9592ef276c70a36ef0311070a\System.ServiceModel.Web.ni.dll
MOD - [2014/04/10 16:51:40 | 000,961,336 | ---- | M] () -- C:\Windows\SysWOW64\flcdlmsg.dll
MOD - [2014/04/09 18:34:22 | 002,964,992 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.IdentityModel\15e0783372e02bd437cab8ac76420124\System.IdentityModel.ni.dll
MOD - [2014/04/09 18:34:21 | 000,026,624 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\IAStorDataMcfeeca6f#\b25fad3e28c0b5a1d608732133920c23\IAStorDataMgrSvcInterfaces.ni.dll
MOD - [2014/04/09 18:34:19 | 000,024,576 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\IAStorCommon\38c140869358f950a7bced5451adb4ff\IAStorCommon.ni.dll
MOD - [2014/04/09 18:34:06 | 000,360,960 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\IAStorUtil\c4b59730821e5304960388fc8620d8b7\IAStorUtil.ni.dll
MOD - [2014/04/09 18:34:05 | 000,785,408 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Servd1dec626#\ee53227bcc4430088d0b560752c1cd02\System.ServiceModel.Internals.ni.dll
MOD - [2014/04/09 18:34:05 | 000,118,272 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\SMDiagnostics\352d34797f7cd44cd0973c33539200f1\SMDiagnostics.ni.dll
MOD - [2014/04/09 18:29:35 | 007,802,880 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xml\77bc1a994f64193efc124c297b93fdb7\System.Xml.ni.dll
MOD - [2014/04/09 18:29:31 | 001,874,432 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Xaml\10483ca149b5c651d217edbf2f3169b4\System.Xaml.ni.dll
MOD - [2014/04/09 18:29:30 | 012,856,832 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Windows.Forms\635558b506364815e8348217e86fdf99\System.Windows.Forms.ni.dll
MOD - [2014/04/09 18:29:21 | 019,566,080 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.ServiceModel\4c3126aec3364546e4ade89c24c4e742\System.ServiceModel.ni.dll
MOD - [2014/04/09 18:29:08 | 002,804,736 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\183eaaded316165bfbd32a991e4e8c8a\System.Runtime.Serialization.ni.dll
MOD - [2014/04/09 18:29:05 | 001,635,328 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Drawing\ddb52221ad0200b7c2e0a308e47d5c7c\System.Drawing.ni.dll
MOD - [2014/04/09 18:29:05 | 001,169,920 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Management\d1e6b39e15536aaa5fb9b1cacf8b18aa\System.Management.ni.dll
MOD - [2014/04/09 18:28:59 | 000,968,192 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Configuration\c5bf2f5c3e13726b3984a900221e1778\System.Configuration.ni.dll
MOD - [2014/04/09 18:28:58 | 018,744,320 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\Presentatio5ae0f00f#\92388fbe99436e6ed1f56ee56f10c565\PresentationFramework.ni.dll
MOD - [2014/04/09 18:28:47 | 011,027,456 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\PresentationCore\619034abb9a9fb1b3dc32c0a9aa38d3c\PresentationCore.ni.dll
MOD - [2014/04/09 18:28:40 | 003,957,760 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\WindowsBase\9bbf715cfb5360c95acd27b199083854\WindowsBase.ni.dll
MOD - [2014/04/09 18:28:35 | 006,951,424 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System.Core\c1194e56644c7688e7eb0f68a57dcc30\System.Core.ni.dll
MOD - [2014/04/09 18:28:30 | 010,003,456 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\System\c24d08cc4e93fc4f6f15a637b00a2721\System.ni.dll
MOD - [2014/01/27 13:52:41 | 017,395,376 | ---- | M] () -- C:\Windows\assembly\NativeImages_v4.0.30319_32\mscorlib\c90ef9a73ea0044641d31b19023aad61\mscorlib.ni.dll
MOD - [2013/01/09 17:05:54 | 000,163,840 | ---- | M] () -- C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe


========== Services (SafeList) ==========

SRV:64bit: - [2014/08/12 20:03:53 | 000,111,616 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\IEEtwCollector.exe -- (IEEtwCollectorService)
SRV:64bit: - [2014/07/24 15:41:39 | 002,898,432 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
SRV:64bit: - [2014/07/24 09:28:58 | 001,600,000 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\workfolderssvc.dll -- (workfolderssvc)
SRV:64bit: - [2014/04/24 20:14:07 | 002,251,992 | ---- | M] (Broadcom Corporation.) [Auto | Stopped] -- C:\Windows\SysNative\BtwRSupportService.exe -- (BcmBtRSupport)
SRV:64bit: - [2014/04/06 13:20:36 | 000,201,216 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\AudioEndpointBuilder.dll -- (AudioEndpointBuilder)
SRV:64bit: - [2014/03/25 00:50:50 | 000,357,144 | ---- | M] (Logitech, Inc.) [On_Demand | Stopped] -- C:\Program Files\Common Files\LogiShrd\Bluetooth\LBTServ.exe -- (LBTServ)
SRV:64bit: - [2014/03/24 04:31:14 | 000,347,880 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Program Files\Windows Defender\NisSrv.exe -- (WdNisSvc)
SRV:64bit: - [2014/03/24 04:31:14 | 000,023,824 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files\Windows Defender\MsMpEng.exe -- (WinDefend)
SRV:64bit: - [2014/03/14 08:26:25 | 000,491,520 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\GeofenceMonitorService.dll -- (lfsvc)
SRV:64bit: - [2014/03/08 07:41:25 | 001,306,624 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppXDeploymentServer.dll -- (AppXSvc)
SRV:64bit: - [2014/03/06 09:02:13 | 000,834,560 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\netlogon.dll -- (Netlogon)
SRV:64bit: - [2014/02/22 17:53:10 | 003,394,384 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\WSService.dll -- (WSService)
SRV:64bit: - [2014/02/22 11:57:16 | 000,710,656 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\lsm.dll -- (LSM)
SRV:64bit: - [2014/02/22 11:26:58 | 000,366,080 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\wcmsvc.dll -- (Wcmsvc)
SRV:64bit: - [2014/02/22 11:25:39 | 000,399,872 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\das.dll -- (DeviceAssociationService)
SRV:64bit: - [2014/02/22 11:25:14 | 000,269,824 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\bisrv.dll -- (BrokerInfrastructure)
SRV:64bit: - [2014/02/22 11:23:58 | 001,576,960 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\wlidsvc.dll -- (wlidsvc)
SRV:64bit: - [2014/02/11 00:31:54 | 000,500,048 | R--- | M] (DigitalPersona, Inc.) [Auto | Running] -- C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe -- (DpHost)
SRV:64bit: - [2013/12/10 09:35:18 | 000,530,944 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\AppReadiness.dll -- (AppReadiness)
SRV:64bit: - [2013/11/23 06:50:00 | 000,282,112 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\SystemEventsBrokerServer.dll -- (SystemEventsBroker)
SRV:64bit: - [2013/09/12 11:41:02 | 003,221,392 | ---- | M] (Validity Sensors, Inc.) [Auto | Running] -- C:\Windows\SysNative\vcsFPService.exe -- (vcsFPService)
SRV:64bit: - [2013/08/22 21:12:15 | 000,183,296 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\appmgmts.dll -- (AppMgmt)
SRV:64bit: - [2013/08/22 21:12:13 | 000,090,464 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\SysNative\KeyboardFilterSvc.dll -- (MsKeyboardFilter)
SRV:64bit: - [2013/08/22 13:32:02 | 000,024,576 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wephostsvc.dll -- (WEPHOSTSVC)
SRV:64bit: - [2013/08/22 13:31:43 | 000,040,448 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Windows\SysNative\efssvc.dll -- (EFS)
SRV:64bit: - [2013/08/22 13:22:45 | 000,066,048 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\wiarpc.dll -- (WiaRpc)
SRV:64bit: - [2013/08/22 13:21:15 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\svsvc.dll -- (svsvc)
SRV:64bit: - [2013/08/22 13:16:57 | 000,118,272 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\fhsvc.dll -- (fhsvc)
SRV:64bit: - [2013/08/22 12:25:28 | 000,164,352 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcaSvc.dll -- (NcaSvc)
SRV:64bit: - [2013/08/22 12:19:28 | 000,517,120 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicheartbeat)
SRV:64bit: - [2013/08/22 12:19:28 | 000,517,120 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicvss)
SRV:64bit: - [2013/08/22 12:19:28 | 000,517,120 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmictimesync)
SRV:64bit: - [2013/08/22 12:19:28 | 000,517,120 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicshutdown)
SRV:64bit: - [2013/08/22 12:19:28 | 000,517,120 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicrdv)
SRV:64bit: - [2013/08/22 12:19:28 | 000,517,120 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmickvpexchange)
SRV:64bit: - [2013/08/22 12:19:28 | 000,517,120 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\icsvc.dll -- (vmicguestinterface)
SRV:64bit: - [2013/08/22 12:02:47 | 000,013,312 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\smphost.dll -- (smphost)
SRV:64bit: - [2013/08/22 11:57:25 | 000,130,560 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\ScDeviceEnum.dll -- (ScDeviceEnum)
SRV:64bit: - [2013/08/22 11:54:59 | 000,059,392 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\keyiso.dll -- (KeyIso)
SRV:64bit: - [2013/08/22 11:50:59 | 000,245,760 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\TimeBrokerServer.dll -- (TimeBroker)
SRV:64bit: - [2013/08/22 11:50:00 | 000,525,312 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\netprofmsvc.dll -- (netprofm)
SRV:64bit: - [2013/08/22 11:45:59 | 000,151,040 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\ncbservice.dll -- (NcbService)
SRV:64bit: - [2013/08/22 11:40:49 | 000,248,832 | ---- | M] (Microsoft Corporation) [On_Demand | Running] -- C:\Windows\SysNative\vaultsvc.dll -- (VaultSvc)
SRV:64bit: - [2013/08/22 11:31:03 | 000,201,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\DeviceSetupManager.dll -- (DsmSvc)
SRV:64bit: - [2013/08/22 11:15:54 | 000,073,728 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysNative\NcdAutoSetup.dll -- (NcdAutoSetup)
SRV:64bit: - [2012/12/10 14:31:44 | 000,803,872 | ---- | M] (Intel(R) Corporation) [On_Demand | Stopped] -- C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe -- (Intel(R)
SRV:64bit: - [2012/12/10 14:31:28 | 000,732,160 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Program Files\Intel\iCLS Client\HeciServer.exe -- (Intel(R)
SRV:64bit: - [2012/11/12 20:04:00 | 000,327,680 | ---- | M] (IDT, Inc.) [Auto | Running] -- C:\Program Files\IDT\WDM\stacsv64.exe -- (STacSV)
SRV:64bit: - [2012/09/07 20:10:00 | 000,033,600 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Windows\SysNative\hpservice.exe -- (hpsrv)
SRV - [2014/08/06 11:34:34 | 005,052,224 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe -- (TeamViewer9)
SRV - [2014/07/24 15:41:39 | 002,898,432 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\system32\spool\drivers\x64\3\PrintConfig.dll -- (PrintNotify)
SRV - [2014/05/16 17:58:24 | 000,683,296 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe -- (hpHotkeyMonitor)
SRV - [2014/04/10 16:51:30 | 000,567,608 | ---- | M] (Hewlett-Packard Company) [On_Demand | Stopped] -- C:\Windows\SysWOW64\flcdlock.exe -- (FLCDLOCK)
SRV - [2014/04/10 16:10:36 | 000,018,232 | R--- | M] (Hewlett-Packard Development Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe -- (HpDamServiceHost)
SRV - [2014/03/31 20:28:02 | 000,007,168 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe -- (CtAgentService)
SRV - [2014/03/14 08:10:16 | 000,357,376 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\GeofenceMonitorService.dll -- (lfsvc)
SRV - [2014/01/25 03:22:56 | 000,279,000 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\IntelCpHeciSvc.exe -- (cphs)
SRV - [2013/12/21 08:04:16 | 000,065,432 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe -- (AdobeARMservice)
SRV - [2013/11/04 19:31:56 | 000,092,160 | ---- | M] (Hewlett-Packard Company) [Auto | Running] -- C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSA_Service.exe -- (HP Support Assistant Service)
SRV - [2013/10/24 21:21:30 | 000,015,496 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
SRV - [2013/10/23 18:07:59 | 000,366,040 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2013/10/23 18:07:58 | 000,279,000 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2013/10/23 18:07:57 | 000,165,336 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe -- (jhi_service)
SRV - [2013/10/23 18:07:57 | 000,131,032 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe -- (Intel(R)
SRV - [2013/10/23 09:15:08 | 000,172,192 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2013/09/20 16:51:30 | 000,079,360 | ---- | M] (Creative Labs) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe -- (Creative Audio Engine Licensing Service)
SRV - [2013/09/12 11:28:00 | 002,741,648 | ---- | M] (Validity Sensors, Inc.) [Auto | Running] -- C:\Windows\SysWOW64\vcsFPService.exe -- (vcsFPService)
SRV - [2013/08/22 05:55:35 | 000,018,944 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\StorSvc.dll -- (StorSvc)
SRV - [2013/08/22 04:53:34 | 000,011,776 | ---- | M] (Microsoft Corporation) [On_Demand | Stopped] -- C:\Windows\SysWOW64\smphost.dll -- (smphost)
SRV - [2013/06/26 17:36:25 | 000,368,640 | ---- | M] (AVerMedia) [Auto | Running] -- C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRemote.exe -- (AVerRemote)
SRV - [2011/10/31 19:30:00 | 000,167,936 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) [Auto | Running] -- C:\Program Files (x86)\AVerMedia\AVerUpdate\AVerUpdateServer.exe -- (AVerUpdateServer)
SRV - [2011/08/18 01:29:52 | 001,039,360 | ---- | M] (Hewlett-Packard Co.) [Auto | Running] -- C:\Program Files (x86)\HP\Digital Imaging\bin\HPSLPSVC64.DLL -- (HPSLPSVC)
SRV - [2011/04/01 15:52:24 | 000,403,456 | ---- | M] () [Auto | Running] -- C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe -- (AVerScheduleService)
SRV - [2010/02/19 13:37:14 | 000,517,096 | ---- | M] (Adobe Systems Incorporated) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe -- (SwitchBoard)


========== Driver Services (SafeList) ==========

DRV:64bit: - [2014/07/24 17:28:38 | 000,468,288 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBHUB3.SYS -- (USBHUB3)
DRV:64bit: - [2014/07/24 17:28:38 | 000,412,992 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\spaceport.sys -- (spaceport)
DRV:64bit: - [2014/07/24 13:42:22 | 000,126,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\NdisImPlatform.sys -- (NdisImPlatform)
DRV:64bit: - [2014/07/22 00:32:28 | 000,555,760 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2014/07/04 22:18:38 | 000,149,312 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpioclx.sys -- (GPIOClx0101)
DRV:64bit: - [2014/05/15 23:18:36 | 000,028,376 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HpqKbFiltr64.sys -- (HpqKbFiltr)
DRV:64bit: - [2014/05/01 15:31:39 | 000,055,328 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\wpcfltr.sys -- (wpcfltr)
DRV:64bit: - [2014/04/24 20:14:07 | 000,170,712 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\bcbtums.sys -- (bcbtums)
DRV:64bit: - [2014/03/24 04:30:57 | 000,257,880 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\WdFilter.sys -- (WdFilter)
DRV:64bit: - [2014/03/24 04:30:57 | 000,123,224 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WdNisDrv.sys -- (WdNisDrv)
DRV:64bit: - [2014/03/24 04:27:03 | 000,035,856 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\WdBoot.sys -- (WdBoot)
DRV:64bit: - [2014/03/20 05:41:20 | 000,376,152 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\clfs.sys -- (CLFS)
DRV:64bit: - [2014/03/19 02:24:40 | 000,059,160 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\LMouFilt.Sys -- (LMouFilt)
DRV:64bit: - [2014/03/19 02:24:38 | 000,076,568 | ---- | M] (Logitech, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\LHidFilt.Sys -- (LHidFilt)
DRV:64bit: - [2014/03/13 14:35:24 | 000,157,016 | ---- | M] (Microsoft Corporation) [File_System | Boot | Running] -- C:\Windows\SysNative\drivers\wof.sys -- (Wof)
DRV:64bit: - [2014/03/08 22:40:16 | 000,136,024 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\wfplwfs.sys -- (WFPLWFS)
DRV:64bit: - [2014/02/22 18:00:25 | 000,236,888 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2014/02/22 17:49:51 | 000,325,464 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\USBXHCI.SYS -- (USBXHCI)
DRV:64bit: - [2014/02/22 17:49:49 | 000,189,784 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\UCX01000.SYS -- (UCX01000)
DRV:64bit: - [2014/02/22 17:49:49 | 000,079,192 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdstor.sys -- (sdstor)
DRV:64bit: - [2014/02/22 17:44:13 | 000,924,504 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\refs.sys -- (ReFS)
DRV:64bit: - [2014/02/22 14:14:02 | 000,033,280 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicRender.sys -- (BasicRender)
DRV:64bit: - [2014/01/25 03:22:44 | 004,221,440 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdkmd64.sys -- (igfx)
DRV:64bit: - [2013/12/27 01:30:20 | 000,038,296 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\intelaud.sys -- (intaud_WaveExtensible)
DRV:64bit: - [2013/12/27 01:30:20 | 000,027,032 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iwdbus.sys -- (iwdbus)
DRV:64bit: - [2013/12/04 20:41:54 | 000,226,304 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\BthLEEnum.sys -- (BthLEEnum)
DRV:64bit: - [2013/11/11 04:48:41 | 000,039,768 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\intelpep.sys -- (intelpep)
DRV:64bit: - [2013/11/01 13:39:53 | 000,086,872 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\pdc.sys -- (pdc)
DRV:64bit: - [2013/10/26 03:54:32 | 000,146,776 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx2.sys -- (SerCx2)
DRV:64bit: - [2013/10/24 21:21:31 | 000,641,672 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStorA.sys -- (iaStorA)
DRV:64bit: - [2013/10/23 18:07:57 | 000,062,784 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2013/10/22 20:33:16 | 000,176,880 | ---- | M] (JMicron Technology Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\jmcr.sys -- (JMCR)
DRV:64bit: - [2013/10/22 20:33:15 | 000,026,208 | ---- | M] (JMicron Technology Corp.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\johci.sys -- (johci)
DRV:64bit: - [2013/10/07 19:26:54 | 000,065,752 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\DAMDrv64.sys -- (damdrv)
DRV:64bit: - [2013/10/05 17:25:54 | 000,057,176 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stornvme.sys -- (stornvme)
DRV:64bit: - [2013/09/14 16:06:57 | 000,175,960 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\VerifierExt.sys -- (VerifierExt)
DRV:64bit: - [2013/09/04 18:12:52 | 000,166,104 | ---- | M] (Broadcom Corporation.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\btwampfl.sys -- (btwampfl)
DRV:64bit: - [2013/09/04 18:03:50 | 003,345,376 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NETwew00.sys -- (NETwNe64)
DRV:64bit: - [2013/08/22 21:12:18 | 000,022,272 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\kbldfltr.sys -- (kbldfltr)
DRV:64bit: - [2013/08/22 21:12:15 | 000,027,488 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\rdpvideominiport.sys -- (RdpVideoMiniport)
DRV:64bit: - [2013/08/22 21:11:58 | 000,220,672 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Vid.sys -- (Vid)
DRV:64bit: - [2013/08/22 21:11:58 | 000,129,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmbusr.sys -- (vmbusr)
DRV:64bit: - [2013/08/22 21:11:58 | 000,111,616 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\tsusbhub.sys -- (tsusbhub)
DRV:64bit: - [2013/08/22 21:11:58 | 000,068,608 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\storvsp.sys -- (storvsp)
DRV:64bit: - [2013/08/22 21:11:58 | 000,065,536 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vpcivsp.sys -- (vpcivsp)
DRV:64bit: - [2013/08/22 21:11:58 | 000,056,640 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\Synth3dVsc.sys -- (Synth3dVsc)
DRV:64bit: - [2013/08/22 21:11:58 | 000,037,216 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\terminpt.sys -- (terminpt)
DRV:64bit: - [2013/08/22 15:25:40 | 000,043,008 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\condrv.sys -- (condrv)
DRV:64bit: - [2013/08/22 15:25:40 | 000,030,048 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2013/08/22 14:50:19 | 000,057,696 | ---- | M] (Microsoft Corporation) [Kernel | System | Stopped] -- C:\Windows\SysNative\drivers\dam.sys -- (dam)
DRV:64bit: - [2013/08/22 14:49:54 | 000,079,712 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\acpiex.sys -- (acpiex)
DRV:64bit: - [2013/08/22 14:49:33 | 000,159,584 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\tpm.sys -- (TPM)
DRV:64bit: - [2013/08/22 14:43:49 | 000,063,840 | ---- | M] (Marvell Semiconductor, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\mvumis.sys -- (mvumis)
DRV:64bit: - [2013/08/22 14:43:48 | 000,041,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\msgpiowin32.sys -- (msgpiowin32)
DRV:64bit: - [2013/08/22 14:43:45 | 003,357,024 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2013/08/22 14:43:45 | 000,093,536 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2013/08/22 14:43:45 | 000,082,784 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sss.sys -- (LSI_SSS)
DRV:64bit: - [2013/08/22 14:43:45 | 000,064,352 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2013/08/22 14:43:44 | 000,081,760 | ---- | M] (LSI Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas3.sys -- (LSI_SAS3)
DRV:64bit: - [2013/08/22 14:43:41 | 000,782,176 | ---- | M] (PMC-Sierra) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\adp80xx.sys -- (ADP80XX)
DRV:64bit: - [2013/08/22 14:43:41 | 000,531,296 | ---- | M] (Broadcom Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2013/08/22 14:43:41 | 000,259,424 | ---- | M] (AMD Technologies Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2013/08/22 14:43:41 | 000,108,896 | ---- | M] (LSI) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\3ware.sys -- (3ware)
DRV:64bit: - [2013/08/22 14:43:41 | 000,079,200 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2013/08/22 14:43:40 | 000,114,016 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\EhStorTcgDrv.sys -- (EhStorTcgDrv)
DRV:64bit: - [2013/08/22 14:43:40 | 000,082,784 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\EhStorClass.sys -- (EhStorClass)
DRV:64bit: - [2013/08/22 14:43:40 | 000,025,952 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2013/08/22 14:43:34 | 000,305,504 | ---- | M] (VIA Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\VSTXRAID.SYS -- (VSTXRAID)
DRV:64bit: - [2013/08/22 14:43:33 | 000,074,080 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uaspstor.sys -- (UASPStor)
DRV:64bit: - [2013/08/22 14:43:32 | 000,031,072 | ---- | M] (Promise Technology, Inc.) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2013/08/22 14:43:31 | 000,107,872 | ---- | M] (Microsoft Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\storahci.sys -- (storahci)
DRV:64bit: - [2013/08/22 14:43:31 | 000,072,032 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SpbCx.sys -- (SpbCx)
DRV:64bit: - [2013/08/22 14:43:31 | 000,069,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\SerCx.sys -- (SerCx)
DRV:64bit: - [2013/08/22 14:39:15 | 000,026,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\uefi.sys -- (UEFI)
DRV:64bit: - [2013/08/22 14:37:27 | 000,069,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vpci.sys -- (vpci)
DRV:64bit: - [2013/08/22 14:36:12 | 000,026,976 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\WpdUpFltr.sys -- (WpdUpFltr)
DRV:64bit: - [2013/08/22 13:39:54 | 000,076,800 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\ahcache.sys -- (ahcache)
DRV:64bit: - [2013/08/22 13:39:31 | 000,050,688 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\BasicDisplay.sys -- (BasicDisplay)
DRV:64bit: - [2013/08/22 13:39:20 | 000,022,016 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HyperVideo.sys -- (HyperVideo)
DRV:64bit: - [2013/08/22 13:39:06 | 000,009,728 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\mshidumdf.sys -- (mshidumdf)
DRV:64bit: - [2013/08/22 13:38:58 | 000,010,752 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpitime.sys -- (acpitime)
DRV:64bit: - [2013/08/22 13:38:48 | 000,010,240 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\acpipagr.sys -- (acpipagr)
DRV:64bit: - [2013/08/22 13:38:39 | 000,036,992 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthAvrcpTg.sys -- (BthAvrcpTg)
DRV:64bit: - [2013/08/22 13:38:26 | 000,019,456 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\kdnic.sys -- (kdnic)
DRV:64bit: - [2013/08/22 13:38:23 | 000,011,264 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\vmgencounter.sys -- (gencounter)
DRV:64bit: - [2013/08/22 13:38:22 | 000,023,040 | ---- | M] (Microsoft Corporation) [Kernel | System | Running] -- C:\Windows\SysNative\drivers\npsvctrig.sys -- (npsvctrig)
DRV:64bit: - [2013/08/22 13:38:16 | 000,030,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\BthhfHid.sys -- (bthhfhid)
DRV:64bit: - [2013/08/22 13:37:49 | 000,013,824 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hyperkbd.sys -- (hyperkbd)
DRV:64bit: - [2013/08/22 13:37:46 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2013/08/22 13:37:42 | 000,057,856 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bthhfenum.sys -- (BthHFEnum)
DRV:64bit: - [2013/08/22 13:37:28 | 000,056,320 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2013/08/22 13:37:28 | 000,041,472 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hidi2c.sys -- (hidi2c)
DRV:64bit: - [2013/08/22 13:37:14 | 000,029,696 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\dmvsc.sys -- (dmvsc)
DRV:64bit: - [2013/08/22 13:36:43 | 000,087,040 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\netvsc63.sys -- (netvsc)
DRV:64bit: - [2013/08/22 13:36:25 | 000,016,384 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NdisVirtualBus.sys -- (NdisVirtualBus)
DRV:64bit: - [2013/08/22 13:36:07 | 000,066,560 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\mslldp.sys -- (MsLldp)
DRV:64bit: - [2013/08/22 13:35:42 | 000,103,424 | ---- | M] (Microsoft Corporation) [Kernel | Auto | Running] -- C:\Windows\SysNative\drivers\Ndu.sys -- (Ndu)
DRV:64bit: - [2013/08/22 10:46:33 | 000,027,136 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\fxppm.sys -- (FxPPM)
DRV:64bit: - [2013/08/13 01:25:46 | 000,017,624 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bcmfn2.sys -- (bcmfn2)
DRV:64bit: - [2013/08/10 02:39:30 | 000,651,248 | ---- | M] (Intel Corporation) [Kernel | Boot | Stopped] -- C:\Windows\SysNative\drivers\iaStorAV.sys -- (iaStorAV)
DRV:64bit: - [2013/08/08 16:52:14 | 000,469,264 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\e1c64x64.sys -- (e1cexpress)
DRV:64bit: - [2013/07/30 20:47:35 | 000,024,568 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_GPIO.sys -- (iaLPSSi_GPIO)
DRV:64bit: - [2013/07/25 21:05:39 | 000,099,320 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\iaLPSSi_I2C.sys -- (iaLPSSi_I2C)
DRV:64bit: - [2013/06/18 16:45:26 | 000,460,288 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\e1i63x64.sys -- (e1iexpress)
DRV:64bit: - [2013/06/05 05:35:58 | 000,804,992 | ---- | M] (AVerMedia TECHNOLOGIES, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AVerAF35.sys -- (AVerAF35)
DRV:64bit: - [2012/11/28 10:42:06 | 001,866,080 | ---- | M] () [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\snp2uvc.sys -- (SNP2UVC)
DRV:64bit: - [2012/11/12 20:04:00 | 000,543,744 | ---- | M] (IDT, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\stwrt64.sys -- (STHDA)
DRV:64bit: - [2012/09/07 20:11:00 | 000,043,328 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Accelerometer.sys -- (Accelerometer)
DRV:64bit: - [2012/09/07 20:11:00 | 000,031,040 | ---- | M] (Hewlett-Packard Company) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\hpdskflt.sys -- (hpdskflt)
DRV:64bit: - [2012/08/31 09:40:24 | 000,020,800 | ---- | M] (Hewlett-Packard Development Company, L.P.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WirelessButtonDriver64.sys -- (WirelessButtonDriver)
DRV:64bit: - [2011/09/13 14:45:06 | 001,588,608 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ksaud.sys -- (ksaud)

========== Standard Registry (SafeList) ==========


========== Internet Explorer ==========

IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC


IE - HKU\.DEFAULT\..\SearchScopes,DefaultScope =
IE - HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-18\..\SearchScopes,DefaultScope =
IE - HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0

IE - HKU\S-1-5-19\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-20\..\SearchScopes,DefaultScope =

IE - HKU\S-1-5-21-1312231713-1169629108-545288242-1001\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
IE - HKU\S-1-5-21-1312231713-1169629108-545288242-1001\..\SearchScopes,DefaultScope = {DCE9A9B3-1615-4B39-8E46-8E99CA46A51A}
IE - HKU\S-1-5-21-1312231713-1169629108-545288242-1001\..\SearchScopes\{0439DECA-AB44-4FD5-8CD6-74B4BA25BD3C}: "URL" = http://www.bing.com/search?q={searchTer ... -SearchBox
IE - HKU\S-1-5-21-1312231713-1169629108-545288242-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTer ... ORM=IE11SR
IE - HKU\S-1-5-21-1312231713-1169629108-545288242-1001\..\SearchScopes\{DCE9A9B3-1615-4B39-8E46-8E99CA46A51A}: "URL" = http://www.google.com/search?q={searchT ... utEncoding?}
IE - HKU\S-1-5-21-1312231713-1169629108-545288242-1001\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0


========== FireFox ==========

FF:64bit: - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF:64bit: - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.66: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@intel-webapi.intel.com/Intel WebAPI updater: C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/Lync,version=15.0: C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/SharePoint,version=14.0: C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.24.15\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.0.8: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.1: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.2: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.3: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=2.1.5: C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF - HKLM\Software\MozillaPlugins\Adobe Reader: C:\Program Files (x86)\Adobe\Reader 11.0\Reader\AIR\nppdf32.dll (Adobe Systems Inc.)
FF - HKLM\Software\MozillaPlugins\digitalpersona.com/ChromeDPAgent: C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\components\npChromeDPAgent.dll (DigitalPersona, Inc.)

FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\{F003DA68-8256-4b37-A6C4-350FA04494DF}: C:\Program Files\Logitech\SetPointP\LogiSmoothFirefoxExt [2014/07/22 03:35:26 | 000,000,000 | ---D | M]
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\dpmaxz_ng@jetpack: C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\BrowserExt\dpchrome [2014/07/22 00:47:44 | 000,000,000 | ---D | M]

[2013/10/17 12:25:52 | 000,034,072 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll

========== Chrome ==========

CHR - default_search_provider: (Enabled)
CHR - default_search_provider: search_url =
CHR - default_search_provider: suggest_url =
CHR - homepage: https://www.seznam.cz/
CHR - plugin: Error reading preferences file
CHR - Extension: Disk Google = C:\Users\Lukáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf\6.3_0\
CHR - Extension: YouTube = C:\Users\Lukáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo\4.2.6_0\
CHR - Extension: RozšířenĂ­ pro webovĂ© stránky - WP Screenshot = C:\Users\Lukáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckibcdccnfeookdmbahgiakhnjcddpki\13.11_0\
CHR - Extension: VyhledávánĂ­ Google = C:\Users\Lukáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf\0.0.0.20_0\
CHR - Extension: Chromebleed = C:\Users\Lukáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\eeoekjnjgppnaegdjbcafdggilajhpic\2.0_0\
CHR - Extension: Photo Zoom for Facebook = C:\Users\Lukáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\elioihkkcdgakfbahdoddophfngopipi\1.1408.5.2_0\
CHR - Extension: AdBlock = C:\Users\Lukáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.11_0\
CHR - Extension: IPv6 = C:\Users\Lukáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\hfkjfjdafcickoihmmemeodmbomjbkfn\1.7.1_0\
CHR - Extension: Honeycomb Chrome Theme = C:\Users\Lukáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihhhgnjnpmjaikooiahhhlemccommcml\0.2_0\
CHR - Extension: RozšířenĂ­ OdbÄ›ry RSS (od Googlu) = C:\Users\Lukáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlbjncdgjeocebhnmkbbbdekmmmcbfjd\2.2.3_0\
CHR - Extension: Peněženka Google = C:\Users\Lukáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda\0.0.6.1_0\
CHR - Extension: Gmail = C:\Users\Lukáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia\7_1\

O1 HOSTS File: ([2013/08/22 15:25:41 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Logitech SetPoint) - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll (Logitech, Inc.)
O2:64bit: - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll (Hewlett-Packard)
O2 - BHO: (Logitech SetPoint) - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll (Logitech, Inc.)
O2 - BHO: (HP Network Check Helper) - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll (Hewlett-Packard)
O4:64bit: - HKLM..\Run: [AdobeAAMUpdater-1.0] C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [Creative SB Monitoring Utility] C:\Windows\SysNative\SBAVMon.dll (Creative Technology Ltd.)
O4:64bit: - HKLM..\Run: [EvtMgr6] C:\Program Files\Logitech\SetPointP\SetPoint.exe (Logitech, Inc.)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [SysTrayApp] C:\Program Files\IDT\WDM\sttray64.exe (IDT, Inc.)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [AdobeCS5ServiceManager] C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe (Intel Corporation)
O4 - HKLM..\Run: [IMSS] C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe (Intel Corporation)
O4 - HKLM..\Run: [KeePass 2 PreLoad] C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe (Dominik Reichl)
O4 - HKLM..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe (Hewlett-Packard Company)
O4 - HKLM..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe (Adobe Systems Incorporated)
O4 - HKU\S-1-5-21-1312231713-1169629108-545288242-1001..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe File not found
O4:64bit: - HKLM..\RunOnce: [NCPluginUpdater] C:\Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\NCPluginUpdater.exe (Hewlett-Packard)
O4 - Startup: C:\Users\Lukáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\OneDrive for Business.lnk = File not found
O4 - Startup: C:\Users\Lukáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk = File not found
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 5
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableCursorSuppression = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O9:64bit: - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9:64bit: - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra Button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe (Hewlett-Packard)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O15 - HKU\S-1-5-21-1312231713-1169629108-545288242-1001\..Trusted Domains: mojebanka.cz ([]https in Trusted sites)
O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} http://content.systemrequirementslab.co ... 5.15.0.cab (SysInfo Class)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 178.17.92.241
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{C78F9491-B051-49A9-B1D1-098A1CFCC6A2}: DhcpNameServer = 178.17.92.241
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{FC7B0A94-9CE7-40B6-A6EA-B66C66D9D4FB}: DhcpNameServer = 192.168.88.1
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18 - Protocol\Handler\ms-help - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe) - C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe (DigitalPersona, Inc.)
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O20:64bit: - Winlogon\Notify\LBTWlgn: DllName - (c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll) - c:\Program Files\Common Files\LogiShrd\Bluetooth\LBTWLgn.dll (Logitech, Inc.)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O30:64bit: - LSA: Security Packages - ("") - File not found
O30:64bit: - LSA: Security Packages - (msoidssp) - C:\Windows\SysNative\msoidssp.dll (Microsoft Corp.)
O30 - LSA: Security Packages - ("") - File not found
O30 - LSA: Security Packages - (msoidssp) - C:\Windows\SysWow64\msoidssp.dll (Microsoft Corp.)
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{ea87e3ed-08b1-11e4-82b8-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{ea87e3ed-08b1-11e4-82b8-806e6f6e6963}\Shell\AutoRun\command - "" = "E:\AutoRun.exe"
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)

CREATERESTOREPOINT
Restore point Set: OTL Restore Point

NetSvcs:64bit: lfsvc - C:\Windows\SysNative\GeofenceMonitorService.dll (Microsoft Corporation)
NetSvcs:64bit: wlidsvc - C:\Windows\SysNative\wlidsvc.dll (Microsoft Corporation)
NetSvcs:64bit: DsmSvc - C:\Windows\SysNative\DeviceSetupManager.dll (Microsoft Corporation)
NetSvcs:64bit: NcaSvc - C:\Windows\SysNative\NcaSvc.dll (Microsoft Corporation)
NetSvcs:64bit: AppMgmt - C:\Windows\SysNative\appmgmts.dll (Microsoft Corporation)
NetSvcs:64bit: MsKeyboardFilter - C:\Windows\SysNative\KeyboardFilterSvc.dll (Microsoft Corporation)

Drivers32:64bit: msacm.l3acm - C:\Windows\System32\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: msacm.l3acm - C:\Windows\SysWOW64\l3codeca.acm (Fraunhofer Institut Integrierte Schaltungen IIS)
Drivers32: vidc.cvid - C:\Windows\SysWow64\iccvid.dll (Radius Inc.)
PhysicalDisk0 MBR saved to C:\PhysicalMBR.bin

========== Files/Folders - Created Within 30 Days ==========

[2014/08/15 09:21:21 | 000,602,112 | ---- | C] (OldTimer Tools) -- C:\Users\Lukáš\Desktop\OTL.exe
[2014/08/14 19:18:47 | 000,000,000 | ---D | C] -- C:\Program Files\trend micro
[2014/08/14 19:18:47 | 000,000,000 | ---D | C] -- C:\rsit
[2014/08/14 19:11:47 | 000,000,000 | ---D | C] -- C:\AdwCleaner
[2014/08/12 20:08:49 | 016,874,496 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.UI.Xaml.dll
[2014/08/12 20:08:48 | 012,730,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.UI.Xaml.dll
[2014/08/12 20:08:47 | 006,649,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2014/08/12 20:08:46 | 008,652,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.UI.Search.dll
[2014/08/12 20:08:46 | 007,424,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2014/08/12 20:08:46 | 005,777,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2014/08/12 20:08:46 | 002,696,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SettingsHandlers.dll
[2014/08/12 20:08:46 | 002,389,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\d3d10warp.dll
[2014/08/12 20:08:45 | 013,292,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\twinui.dll
[2014/08/12 20:08:45 | 002,860,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\actxprxy.dll
[2014/08/12 20:08:45 | 002,141,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfcore.dll
[2014/08/12 20:08:45 | 001,273,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rpcrt4.dll
[2014/08/12 20:08:44 | 011,794,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\twinui.dll
[2014/08/12 20:08:44 | 002,642,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2014/08/12 20:08:44 | 002,318,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2014/08/12 20:08:44 | 002,145,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfcore.dll
[2014/08/12 20:08:44 | 001,600,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\workfolderssvc.dll
[2014/08/12 20:08:43 | 005,833,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.UI.Search.dll
[2014/08/12 20:08:43 | 002,574,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL
[2014/08/12 20:08:43 | 001,231,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.Media.dll
[2014/08/12 20:08:43 | 001,029,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\localspl.dll
[2014/08/12 20:08:43 | 000,889,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.Media.dll
[2014/08/12 20:08:43 | 000,818,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfmp4srcsnk.dll
[2014/08/12 20:08:43 | 000,674,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfmp4srcsnk.dll
[2014/08/12 20:08:42 | 002,410,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[2014/08/12 20:08:42 | 002,050,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SRH.dll
[2014/08/12 20:08:42 | 001,992,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll
[2014/08/12 20:08:42 | 001,287,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mispace.dll
[2014/08/12 20:08:42 | 001,182,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\printui.dll
[2014/08/12 20:08:42 | 001,029,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mispace.dll
[2014/08/12 20:08:42 | 000,882,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfplat.dll
[2014/08/12 20:08:42 | 000,770,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WorkfoldersControl.dll
[2014/08/12 20:08:42 | 000,707,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfplat.dll
[2014/08/12 20:08:42 | 000,544,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AppxPackaging.dll
[2014/08/12 20:08:42 | 000,517,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxgi.dll
[2014/08/12 20:08:42 | 000,486,744 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\netcfgx.dll
[2014/08/12 20:08:42 | 000,475,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys
[2014/08/12 20:08:42 | 000,391,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\netcfgx.dll
[2014/08/12 20:08:41 | 001,741,824 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SRH.dll
[2014/08/12 20:08:41 | 001,057,792 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\printui.dll
[2014/08/12 20:08:41 | 001,018,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aclui.dll
[2014/08/12 20:08:41 | 000,889,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\aclui.dll
[2014/08/12 20:08:41 | 000,792,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\uDWM.dll
[2014/08/12 20:08:41 | 000,645,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SHCore.dll
[2014/08/12 20:08:41 | 000,474,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AppxPackaging.dll
[2014/08/12 20:08:41 | 000,439,296 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.Devices.Bluetooth.dll
[2014/08/12 20:08:41 | 000,438,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\puiobj.dll
[2014/08/12 20:08:41 | 000,412,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\spaceport.sys
[2014/08/12 20:08:41 | 000,371,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanmsm.dll
[2014/08/12 20:08:41 | 000,360,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfreadwrite.dll
[2014/08/12 20:08:41 | 000,355,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mfreadwrite.dll
[2014/08/12 20:08:41 | 000,302,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanmsm.dll
[2014/08/12 20:08:41 | 000,299,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WSDMon.dll
[2014/08/12 20:08:40 | 002,397,184 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\storagewmi.dll
[2014/08/12 20:08:40 | 001,660,048 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.efi
[2014/08/12 20:08:40 | 001,519,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winload.exe
[2014/08/12 20:08:40 | 001,488,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.efi
[2014/08/12 20:08:40 | 001,463,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wsecedit.dll
[2014/08/12 20:08:40 | 001,417,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\lsasrv.dll
[2014/08/12 20:08:40 | 001,356,840 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.exe
[2014/08/12 20:08:40 | 000,828,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
[2014/08/12 20:08:40 | 000,621,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\comdlg32.dll
[2014/08/12 20:08:40 | 000,487,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winspool.drv
[2014/08/12 20:08:40 | 000,477,200 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SHCore.dll
[2014/08/12 20:08:40 | 000,468,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\USBHUB3.SYS
[2014/08/12 20:08:40 | 000,287,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\usbmon.dll
[2014/08/12 20:08:40 | 000,268,288 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wisp.dll
[2014/08/12 20:08:40 | 000,205,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mftranscode.dll
[2014/08/12 20:08:40 | 000,180,720 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mftranscode.dll
[2014/08/12 20:08:39 | 003,360,768 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorets.dll
[2014/08/12 20:08:39 | 001,817,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Display.dll
[2014/08/12 20:08:39 | 001,519,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\user32.dll
[2014/08/12 20:08:39 | 001,404,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\storagewmi.dll
[2014/08/12 20:08:39 | 001,057,280 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdvidcrl.dll
[2014/08/12 20:08:39 | 000,806,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll
[2014/08/12 20:08:39 | 000,576,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SettingSync.dll
[2014/08/12 20:08:39 | 000,505,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\VAN.dll
[2014/08/12 20:08:39 | 000,356,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2014/08/12 20:08:39 | 000,328,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\puiobj.dll
[2014/08/12 20:08:39 | 000,313,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\clusapi.dll
[2014/08/12 20:08:39 | 000,230,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanapi.dll
[2014/08/12 20:08:39 | 000,160,600 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winmmbase.dll
[2014/08/12 20:08:39 | 000,127,488 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WiFiDisplay.dll
[2014/08/12 20:08:38 | 002,133,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmcore.dll
[2014/08/12 20:08:38 | 001,844,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Display.dll
[2014/08/12 20:08:38 | 001,705,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
[2014/08/12 20:08:38 | 001,656,832 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\GdiPlus.dll
[2014/08/12 20:08:38 | 001,319,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wsecedit.dll
[2014/08/12 20:08:38 | 000,923,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WSShared.dll
[2014/08/12 20:08:38 | 000,834,560 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\osk.exe
[2014/08/12 20:08:38 | 000,721,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\twinapi.dll
[2014/08/12 20:08:38 | 000,667,136 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll
[2014/08/12 20:08:38 | 000,595,456 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.Networking.dll
[2014/08/12 20:08:38 | 000,427,008 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\clusapi.dll
[2014/08/12 20:08:38 | 000,388,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WUSettingsProvider.dll
[2014/08/12 20:08:38 | 000,387,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\bcryptprimitives.dll
[2014/08/12 20:08:38 | 000,335,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\bcryptprimitives.dll
[2014/08/12 20:08:38 | 000,263,680 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\DafPrintProvider.dll
[2014/08/12 20:08:38 | 000,233,888 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mfps.dll
[2014/08/12 20:08:38 | 000,215,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\prnntfy.dll
[2014/08/12 20:08:38 | 000,211,216 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SndVol.exe
[2014/08/12 20:08:38 | 000,210,944 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wisp.dll
[2014/08/12 20:08:38 | 000,149,312 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\msgpioclx.sys
[2014/08/12 20:08:38 | 000,127,544 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\winmmbase.dll
[2014/08/12 20:08:38 | 000,126,464 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\NdisImPlatform.sys
[2014/08/12 20:08:38 | 000,125,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dwmapi.dll
[2014/08/12 20:08:38 | 000,123,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\winmm.dll
[2014/08/12 20:08:38 | 000,117,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AppxSip.dll
[2014/08/12 20:08:38 | 000,116,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\httpprxm.dll
[2014/08/12 20:08:38 | 000,095,232 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\AppxSip.dll
[2014/08/12 20:08:38 | 000,065,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WorkFoldersGPExt.dll
[2014/08/12 20:08:37 | 001,290,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
[2014/08/12 20:08:37 | 001,089,024 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gpedit.dll
[2014/08/12 20:08:37 | 000,855,552 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\rdvidcrl.dll
[2014/08/12 20:08:37 | 000,756,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\WSShared.dll
[2014/08/12 20:08:37 | 000,448,000 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\VAN.dll
[2014/08/12 20:08:37 | 000,321,536 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\stobject.dll
[2014/08/12 20:08:37 | 000,263,400 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SystemSettingsAdminFlows.exe
[2014/08/12 20:08:37 | 000,249,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ppcsnap.dll
[2014/08/12 20:08:37 | 000,195,584 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\prnntfy.dll
[2014/08/12 20:08:37 | 000,187,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WorkFoldersShell.dll
[2014/08/12 20:08:37 | 000,187,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\puiapi.dll
[2014/08/12 20:08:37 | 000,180,208 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SndVol.exe
[2014/08/12 20:08:37 | 000,162,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\puiapi.dll
[2014/08/12 20:08:37 | 000,102,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wcmcsp.dll
[2014/08/12 20:08:37 | 000,075,776 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\adhsvc.dll
[2014/08/12 20:08:37 | 000,059,392 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
[2014/08/12 20:08:37 | 000,053,248 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\AppxSysprep.dll
[2014/08/12 20:08:36 | 001,048,064 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\gpedit.dll
[2014/08/12 20:08:36 | 000,878,592 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ActionCenter.dll
[2014/08/12 20:08:36 | 000,785,408 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\pmcsnap.dll
[2014/08/12 20:08:36 | 000,779,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\osk.exe
[2014/08/12 20:08:36 | 000,459,264 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\SettingSync.dll
[2014/08/12 20:08:36 | 000,432,640 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanconn.dll
[2014/08/12 20:08:36 | 000,432,128 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.Networking.dll
[2014/08/12 20:08:36 | 000,296,960 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlanapi.dll
[2014/08/12 20:08:36 | 000,216,368 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rsaenh.dll
[2014/08/12 20:08:36 | 000,092,160 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dab.dll
[2014/08/12 20:08:36 | 000,054,752 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
[2014/08/12 20:08:36 | 000,050,688 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
[2014/08/12 20:08:35 | 001,351,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\GdiPlus.dll
[2014/08/12 20:08:35 | 001,126,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SearchFolder.dll
[2014/08/12 20:08:35 | 000,832,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ActionCenter.dll
[2014/08/12 20:08:35 | 000,659,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.Devices.Bluetooth.dll
[2014/08/12 20:08:35 | 000,557,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\PrintDialogs.dll
[2014/08/12 20:08:35 | 000,207,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\powercfg.cpl
[2014/08/12 20:08:35 | 000,206,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\powercfg.cpl
[2014/08/12 20:08:35 | 000,200,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\DafPrintProvider.dll
[2014/08/12 20:08:35 | 000,183,808 | ---- | C] (Microsoft Corp.) -- C:\Windows\SysNative\Defrag.exe
[2014/08/12 20:08:35 | 000,026,112 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll
[2014/08/12 20:08:35 | 000,018,432 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlansvcpal.dll
[2014/08/12 20:08:35 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDRUM.DLL
[2014/08/12 20:08:35 | 000,008,192 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDRUM.DLL
[2014/08/12 20:08:35 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDYAK.DLL
[2014/08/12 20:08:35 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDRU1.DLL
[2014/08/12 20:08:35 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBASH.DLL
[2014/08/12 20:08:35 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDRU.DLL
[2014/08/12 20:08:34 | 001,144,320 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wwanmm.dll
[2014/08/12 20:08:34 | 000,492,032 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\PrintDialogs.dll
[2014/08/12 20:08:34 | 000,443,904 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wlansec.dll
[2014/08/12 20:08:34 | 000,436,224 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\certcli.dll
[2014/08/12 20:08:34 | 000,318,976 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\certcli.dll
[2014/08/12 20:08:34 | 000,308,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\compstui.dll
[2014/08/12 20:08:34 | 000,226,304 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SndVolSSO.dll
[2014/08/12 20:08:34 | 000,132,608 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\rdpudd.dll
[2014/08/12 20:08:34 | 000,105,472 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\BluetoothApis.dll
[2014/08/12 20:08:34 | 000,079,872 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\BluetoothApis.dll
[2014/08/12 20:08:34 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDYAK.DLL
[2014/08/12 20:08:34 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTAT.DLL
[2014/08/12 20:08:34 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTAT.DLL
[2014/08/12 20:08:34 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDRU1.DLL
[2014/08/12 20:08:34 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBASH.DLL
[2014/08/12 20:08:34 | 000,006,656 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDRU.DLL
[2014/08/12 20:08:33 | 002,100,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SystemSettingsAdminFlowUI.dll
[2014/08/12 20:08:33 | 000,249,344 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.ApplicationModel.Store.TestingFramework.dll
[2014/08/12 20:08:33 | 000,189,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll
[2014/08/12 20:08:33 | 000,093,696 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
[2014/08/12 20:08:33 | 000,080,896 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll
[2014/08/12 20:08:33 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTT102.DLL
[2014/08/12 20:08:33 | 000,007,168 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTT102.DLL
[2014/08/12 20:06:58 | 000,597,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2014/08/12 20:06:58 | 000,069,632 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014/08/12 20:06:57 | 002,001,920 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014/08/12 20:06:57 | 000,631,808 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2014/08/12 20:06:57 | 000,452,096 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2014/08/12 20:06:56 | 002,087,936 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2014/08/12 20:06:56 | 000,704,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2014/08/12 20:06:55 | 000,292,864 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2014/08/12 20:06:54 | 005,824,512 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2014/08/12 20:06:54 | 000,846,336 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2014/08/12 20:06:54 | 000,758,272 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2014/08/12 20:06:54 | 000,085,504 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2014/08/12 20:06:53 | 000,692,736 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2014/08/12 20:06:53 | 000,072,704 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2014/08/12 20:06:52 | 000,548,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2014/08/12 20:06:52 | 000,083,968 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2014/08/12 20:06:52 | 000,061,952 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2014/08/12 20:06:52 | 000,060,416 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2014/08/12 20:05:32 | 002,374,816 | ---- | C] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2014/08/12 20:05:32 | 002,088,648 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe
[2014/08/12 20:05:02 | 000,035,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\TsWpfWrp.exe
[2014/08/12 20:05:02 | 000,035,480 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\TsWpfWrp.exe
[2014/08/12 20:04:14 | 000,918,528 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MrmCoreR.dll
[2014/08/12 20:04:14 | 000,697,856 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2014/08/12 20:04:14 | 000,527,360 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2014/08/12 20:04:13 | 003,118,080 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\Wpc.dll
[2014/08/12 20:04:13 | 003,048,880 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WpcMon.exe
[2014/08/12 20:04:12 | 002,861,056 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\WpcWebSync.dll
[2014/08/12 20:04:12 | 002,344,448 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\Wpc.dll
[2014/08/12 20:04:12 | 001,336,624 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2014/08/12 20:04:12 | 000,623,616 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\MDMAgent.exe
[2014/08/12 20:04:02 | 002,790,912 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msi.dll
[2014/08/12 20:04:02 | 000,356,352 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\msihnd.dll
[2014/08/12 20:04:02 | 000,281,088 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysWow64\msihnd.dll
[2014/08/12 20:04:02 | 000,114,520 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\consent.exe
[2014/08/07 01:07:39 | 000,000,000 | ---D | C] -- C:\Users\Lukáš\AppData\Roaming\vlc
[2014/08/06 16:51:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2014/08/04 17:36:25 | 000,000,000 | ---D | C] -- C:\Users\Lukáš\Desktop\Promítačka
[2014/07/22 20:12:23 | 004,756,992 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SyncEngine.dll
[2014/07/22 20:12:23 | 001,120,256 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SkyDrive.exe
[2014/07/22 20:12:23 | 000,716,800 | ---- | C] (Microsoft Corporation) -- C:\Windows\SysNative\SkyDriveTelemetry.dll
[2014/07/22 03:35:35 | 000,000,000 | ---D | C] -- C:\Users\Lukáš\AppData\Local\Logishrd
[2014/07/22 00:50:12 | 000,000,000 | ---D | C] -- C:\Users\Lukáš\AppData\Local\DigitalPersona,_Inc
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\zh-Hant
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\zh-Hans
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\tr
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\th
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\sv
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\sr
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\sl
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\sk
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\ru
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\ro
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\pl
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\no
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\nl
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\lv
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\lt
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\ko
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\ja
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\it
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\hu
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\hr
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\he
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\fr
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\fi
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\et
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\es
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\el
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\de
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\da
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\cs
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\bg
[2014/07/22 00:47:42 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\ar
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\zh-Hant
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\zh-Hans
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\tr
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\th
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\sv
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\sr
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\sl
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\sk
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\ru
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\ro
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\pl
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\no
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\nl
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\lv
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\lt
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\ko
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\ja
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\it
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\hu
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\hr
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\he
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\fr
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\fi
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\et
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\es
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\el
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\de
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\da
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\cs
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\bg
[2014/07/22 00:47:41 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\ar
[2014/07/22 00:47:39 | 000,000,000 | ---D | C] -- C:\Windows\DPDrv
[2014/07/22 00:47:20 | 000,000,000 | R--D | C] -- C:\Users\Lukáš\Pictures
[2014/07/22 00:32:42 | 000,169,712 | ---- | C] (Synaptics Incorporated) -- C:\Windows\SysWow64\SynTPCom.dll
[2014/07/22 00:32:41 | 000,555,760 | ---- | C] (Synaptics Incorporated) -- C:\Windows\SysNative\drivers\SynTP.sys
[2014/07/22 00:32:41 | 000,422,640 | ---- | C] (Synaptics Incorporated) -- C:\Windows\SysNative\SynTPCo19.dll
[2014/07/22 00:32:41 | 000,252,144 | ---- | C] (Synaptics Incorporated) -- C:\Windows\SysNative\SynTPAPI.dll
[2014/07/22 00:32:37 | 000,723,184 | ---- | C] (Synaptics Incorporated) -- C:\Windows\SysNative\SynCOM.dll
[2014/07/22 00:32:37 | 000,400,624 | ---- | C] (Synaptics Incorporated) -- C:\Windows\SysWow64\SynCom.dll
[2014/07/22 00:29:49 | 000,000,000 | ---D | C] -- C:\Program Files\Broadcom

========== Files - Modified Within 30 Days ==========

Bari
Návštěvník
Návštěvník
Příspěvky: 40
Registrován: 20 kvě 2011 09:06

Re: Prosím o preventivní kontrolu

#4 Příspěvek od Bari »

[2014/08/15 20:39:41 | 000,000,512 | ---- | M] () -- C:\PhysicalMBR.bin
[2014/08/15 20:29:11 | 000,000,600 | ---- | M] () -- C:\Users\Lukáš\AppData\Roaming\winscp.rnd
[2014/08/15 20:13:07 | 000,001,078 | ---- | M] () -- C:\Windows\system32dbgraw.bmp
[2014/08/15 20:12:14 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2014/08/15 19:42:22 | 000,000,122 | R--- | M] () -- D:\SkyDrive\Dokumenty\Lukáš's Notebook.url
[2014/08/15 11:46:00 | 000,000,982 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2014/08/15 11:44:08 | 000,001,160 | ---- | M] () -- C:\Users\Lukáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk
[2014/08/15 09:21:21 | 000,602,112 | ---- | M] (OldTimer Tools) -- C:\Users\Lukáš\Desktop\OTL.exe
[2014/08/14 19:18:21 | 000,869,476 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2014/08/14 19:18:21 | 000,726,418 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2014/08/14 19:18:21 | 000,136,972 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2014/08/14 19:17:46 | 000,000,364 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForLukáš.job
[2014/08/14 19:13:45 | 000,000,978 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2014/08/14 19:13:29 | 005,041,984 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2014/08/14 19:13:24 | 016,777,216 | -HS- | M] () -- C:\swapfile.sys
[2014/08/14 19:02:56 | 000,122,584 | ---- | M] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\MBAMSwissArmy.sys
[2014/08/14 18:31:38 | 000,002,299 | ---- | M] () -- C:\Users\Lukáš\Application Data\Microsoft\Internet Explorer\Quick Launch\Google Chrome.lnk
[2014/08/14 17:08:01 | 000,018,960 | ---- | M] (Logitech, Inc.) -- C:\Windows\SysNative\drivers\LNonPnP.sys
[2014/08/12 20:43:58 | 000,001,117 | ---- | M] () -- C:\Users\Lukáš\Application Data\Microsoft\Internet Explorer\Quick Launch\Microsoft Outlook.lnk
[2014/08/12 20:03:58 | 000,164,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\msrating.dll
[2014/08/12 20:03:53 | 000,111,616 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollector.exe
[2014/08/12 20:03:53 | 000,051,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieetwproxystub.dll
[2014/08/12 20:03:53 | 000,048,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwproxystub.dll
[2014/08/12 20:03:53 | 000,004,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieetwcollectorres.dll
[2014/08/12 20:03:52 | 000,139,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieUnatt.exe
[2014/08/12 20:03:52 | 000,112,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieUnatt.exe
[2014/08/12 20:03:52 | 000,066,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iesetup.dll
[2014/08/12 20:03:52 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iesetup.dll
[2014/08/12 20:03:52 | 000,033,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\iernonce.dll
[2014/08/12 20:03:52 | 000,032,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\iernonce.dll
[2014/08/12 16:49:00 | 000,000,396 | ---- | M] () -- C:\Windows\tasks\HPCeeScheduleForLUKASBERAN-NOTE$.job
[2014/08/07 04:12:27 | 001,336,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\gdi32.dll
[2014/08/07 00:38:18 | 000,697,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aepdu.dll
[2014/08/06 02:48:54 | 002,374,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\explorer.exe
[2014/08/06 01:46:50 | 002,088,648 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\explorer.exe
[2014/08/06 00:04:56 | 000,035,822 | ---- | M] () -- D:\SkyDrive\Dokumenty\Hesla.kdbx
[2014/08/05 21:43:52 | 000,002,322 | -H-- | M] () -- D:\SkyDrive\Dokumenty\Default.rdp
[2014/08/02 07:44:01 | 000,527,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\aeinv.dll
[2014/08/02 05:11:49 | 000,918,528 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MrmCoreR.dll
[2014/08/02 02:17:43 | 000,704,480 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerApp.exe
[2014/08/02 02:17:43 | 000,105,440 | ---- | M] (Adobe Systems Incorporated) -- C:\Windows\SysWow64\FlashPlayerCPLApp.cpl
[2014/07/30 04:27:05 | 000,000,000 | RHS- | M] () -- C:\Windows\SysWow64\drivers\103C_HP_bNB_EliteBook 8470p_Y5336AN_0U_QCNU3239D0B_EU_4A_I179B_SHP_V42.37_B68ICF F.46_T140117_W84-0_L409_M8060_J128_7Intel_86A9_92.60_#131022_N80861502;8086422B_(C9Y33UP#ABU)_XMOBILE_CN10_Z_2A1029D1102_G80860166.MRK
[2014/07/30 04:27:05 | 000,000,000 | RHS- | M] () -- C:\Windows\SysNative\drivers\103C_HP_bNB_EliteBook 8470p_Y5336AN_0U_QCNU3239D0B_EU_4A_I179B_SHP_V42.37_B68ICF F.46_T140117_W84-0_L409_M8060_J128_7Intel_86A9_92.60_#131022_N80861502;8086422B_(C9Y33UP#ABU)_XMOBILE_CN10_Z_2A1029D1102_G80860166.MRK
[2014/07/25 15:28:27 | 000,548,352 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\vbscript.dll
[2014/07/25 15:25:45 | 000,083,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\MshtmlDac.dll
[2014/07/25 14:59:28 | 000,758,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9diag.dll
[2014/07/25 14:40:12 | 000,452,096 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtmsft.dll
[2014/07/25 14:30:32 | 000,061,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\MshtmlDac.dll
[2014/07/25 14:28:15 | 005,824,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\jscript9.dll
[2014/07/25 14:28:05 | 000,072,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\JavaScriptCollectionAgent.dll
[2014/07/25 14:17:26 | 000,085,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mshtmled.dll
[2014/07/25 14:10:53 | 000,292,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dxtrans.dll
[2014/07/25 14:08:47 | 000,597,504 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\jscript9diag.dll
[2014/07/25 13:47:50 | 000,631,808 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\msfeeds.dll
[2014/07/25 13:43:16 | 000,060,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\JavaScriptCollectionAgent.dll
[2014/07/25 13:42:31 | 000,692,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ie4uinit.exe
[2014/07/25 13:39:29 | 002,087,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\inetcpl.cpl
[2014/07/25 13:34:04 | 000,069,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mshtmled.dll
[2014/07/25 13:07:49 | 002,001,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\inetcpl.cpl
[2014/07/25 12:17:47 | 000,846,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ieapfltr.dll
[2014/07/25 12:09:19 | 000,704,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ieapfltr.dll
[2014/07/24 17:28:38 | 000,468,288 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\USBHUB3.SYS
[2014/07/24 17:28:38 | 000,412,992 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\spaceport.sys
[2014/07/24 17:25:14 | 000,054,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wuauclt.exe
[2014/07/24 17:23:21 | 001,519,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\user32.dll
[2014/07/24 17:23:21 | 000,125,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\dwmapi.dll
[2014/07/24 17:20:37 | 000,645,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SHCore.dll
[2014/07/24 17:20:37 | 000,263,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SystemSettingsAdminFlows.exe
[2014/07/24 17:16:25 | 002,574,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WMVDECOD.DLL
[2014/07/24 17:16:24 | 000,211,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SndVol.exe
[2014/07/24 17:07:53 | 007,424,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ntoskrnl.exe
[2014/07/24 17:05:56 | 001,660,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\winload.efi
[2014/07/24 17:05:56 | 001,519,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\winload.exe
[2014/07/24 17:05:56 | 001,488,008 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.efi
[2014/07/24 17:05:56 | 001,356,840 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\winresume.exe
[2014/07/24 17:03:56 | 000,882,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mfplat.dll
[2014/07/24 17:03:55 | 000,818,624 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mfmp4srcsnk.dll
[2014/07/24 17:03:55 | 000,233,888 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mfps.dll
[2014/07/24 17:03:54 | 002,141,920 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mfcore.dll
[2014/07/24 17:03:53 | 000,360,480 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mfreadwrite.dll
[2014/07/24 17:03:53 | 000,205,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mftranscode.dll
[2014/07/24 16:57:08 | 000,475,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\netio.sys
[2014/07/24 15:48:15 | 002,410,976 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\WMVDECOD.DLL
[2014/07/24 15:48:15 | 000,180,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\SndVol.exe
[2014/07/24 15:46:50 | 000,477,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\SHCore.dll
[2014/07/24 15:41:13 | 000,014,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\en-US\usbhub.sys.mui
[2014/07/24 15:41:09 | 000,033,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\en-US\spaceport.sys.mui
[2014/07/24 15:36:22 | 000,707,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mfplat.dll
[2014/07/24 15:36:22 | 000,674,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mfmp4srcsnk.dll
[2014/07/24 15:36:20 | 002,145,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mfcore.dll
[2014/07/24 15:36:20 | 000,355,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mfreadwrite.dll
[2014/07/24 15:36:20 | 000,180,720 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mftranscode.dll
[2014/07/24 15:29:45 | 002,406,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\PrintConfig.dll
[2014/07/24 13:51:25 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTAT.DLL
[2014/07/24 13:51:24 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\KBDYAK.DLL
[2014/07/24 13:51:22 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\KBDTT102.DLL
[2014/07/24 13:51:18 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\KBDRUM.DLL
[2014/07/24 13:51:18 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\KBDRU1.DLL
[2014/07/24 13:51:18 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\KBDRU.DLL
[2014/07/24 13:51:05 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\KBDBASH.DLL
[2014/07/24 13:47:55 | 000,132,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\rdpudd.dll
[2014/07/24 13:42:22 | 000,126,464 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\drivers\NdisImPlatform.sys
[2014/07/24 13:33:44 | 000,059,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wups.dll
[2014/07/24 13:33:34 | 000,050,688 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wups2.dll
[2014/07/24 13:22:12 | 000,308,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\compstui.dll
[2014/07/24 13:05:37 | 000,287,232 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\usbmon.dll
[2014/07/24 12:52:10 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDYAK.DLL
[2014/07/24 12:52:02 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTT102.DLL
[2014/07/24 12:52:02 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDTAT.DLL
[2014/07/24 12:51:55 | 000,008,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDRUM.DLL
[2014/07/24 12:51:55 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDRU1.DLL
[2014/07/24 12:51:54 | 000,006,656 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDRU.DLL
[2014/07/24 12:51:26 | 000,007,168 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\KBDBASH.DLL
[2014/07/24 12:49:29 | 000,065,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WorkFoldersGPExt.dll
[2014/07/24 12:33:43 | 000,026,112 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wups.dll
[2014/07/24 12:32:51 | 000,207,360 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\powercfg.cpl
[2014/07/24 12:20:33 | 002,050,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SRH.dll
[2014/07/24 12:18:22 | 001,089,024 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\gpedit.dll
[2014/07/24 12:12:23 | 000,878,592 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ActionCenter.dll
[2014/07/24 12:10:56 | 001,844,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\Display.dll
[2014/07/24 12:10:55 | 000,834,560 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\osk.exe
[2014/07/24 12:09:22 | 001,057,280 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\rdvidcrl.dll
[2014/07/24 12:06:32 | 000,438,272 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\puiobj.dll
[2014/07/24 12:05:33 | 000,187,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WorkFoldersShell.dll
[2014/07/24 11:58:07 | 000,785,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\pmcsnap.dll
[2014/07/24 11:54:35 | 000,249,856 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\ppcsnap.dll
[2014/07/24 11:53:13 | 000,215,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\prnntfy.dll
[2014/07/24 11:52:16 | 000,621,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\comdlg32.dll
[2014/07/24 11:44:15 | 016,874,496 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.UI.Xaml.dll
[2014/07/24 11:42:22 | 000,206,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\powercfg.cpl
[2014/07/24 11:40:10 | 000,557,056 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\PrintDialogs.dll
[2014/07/24 11:39:33 | 000,770,048 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WorkfoldersControl.dll
[2014/07/24 11:33:43 | 001,741,824 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\SRH.dll
[2014/07/24 11:32:13 | 001,048,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\gpedit.dll
[2014/07/24 11:27:30 | 000,779,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\osk.exe
[2014/07/24 11:27:20 | 000,855,552 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\rdvidcrl.dll
[2014/07/24 11:25:41 | 000,832,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\ActionCenter.dll
[2014/07/24 11:24:06 | 001,817,088 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\Display.dll
[2014/07/24 11:23:47 | 000,328,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\puiobj.dll
[2014/07/24 11:18:17 | 000,018,432 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wlansvcpal.dll
[2014/07/24 11:16:37 | 012,730,880 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.UI.Xaml.dll
[2014/07/24 11:14:59 | 000,443,904 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wlansec.dll
[2014/07/24 11:13:48 | 000,195,584 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\prnntfy.dll
[2014/07/24 11:12:48 | 000,127,488 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WiFiDisplay.dll
[2014/07/24 11:11:56 | 000,356,864 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\conhost.exe
[2014/07/24 11:09:39 | 000,116,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\httpprxm.dll
[2014/07/24 11:04:44 | 000,492,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\PrintDialogs.dll
[2014/07/24 11:04:32 | 000,183,808 | ---- | M] (Microsoft Corp.) -- C:\Windows\SysNative\Defrag.exe
[2014/07/24 11:00:08 | 013,292,544 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\twinui.dll
[2014/07/24 10:58:54 | 000,105,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\BluetoothApis.dll
[2014/07/24 10:52:00 | 002,860,032 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\actxprxy.dll
[2014/07/24 10:49:38 | 000,075,776 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\adhsvc.dll
[2014/07/24 10:49:34 | 000,296,960 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wlanapi.dll
[2014/07/24 10:49:09 | 001,287,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mispace.dll
[2014/07/24 10:48:58 | 000,659,968 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.Devices.Bluetooth.dll
[2014/07/24 10:47:04 | 000,102,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wcmcsp.dll
[2014/07/24 10:40:30 | 011,794,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\twinui.dll
[2014/07/24 10:39:28 | 002,397,184 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\storagewmi.dll
[2014/07/24 10:38:23 | 000,371,200 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wlanmsm.dll
[2014/07/24 10:36:14 | 000,079,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\BluetoothApis.dll
[2014/07/24 10:30:53 | 000,299,520 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WSDMon.dll
[2014/07/24 10:30:04 | 000,230,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanapi.dll
[2014/07/24 10:29:26 | 000,792,064 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\uDWM.dll
[2014/07/24 10:29:06 | 000,439,296 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.Devices.Bluetooth.dll
[2014/07/24 10:28:28 | 000,595,456 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.Networking.dll
[2014/07/24 10:24:22 | 000,249,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.ApplicationModel.Store.TestingFramework.dll
[2014/07/24 10:23:15 | 001,404,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\storagewmi.dll
[2014/07/24 10:22:20 | 000,487,936 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\winspool.drv
[2014/07/24 10:21:55 | 001,231,872 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.Media.dll
[2014/07/24 10:21:08 | 000,302,080 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wlanmsm.dll
[2014/07/24 10:20:51 | 000,187,392 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\puiapi.dll
[2014/07/24 10:19:14 | 000,388,608 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WUSettingsProvider.dll
[2014/07/24 10:18:34 | 001,144,320 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wwanmm.dll
[2014/07/24 10:18:23 | 000,093,696 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wudriver.dll
[2014/07/24 10:16:57 | 000,505,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\VAN.dll
[2014/07/24 10:15:41 | 000,828,416 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wuapi.dll
[2014/07/24 10:15:36 | 000,432,128 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.Networking.dll
[2014/07/24 10:15:27 | 000,721,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\twinapi.dll
[2014/07/24 10:13:19 | 000,226,304 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SndVolSSO.dll
[2014/07/24 10:12:14 | 000,189,952 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.ApplicationModel.Store.TestingFramework.dll
[2014/07/24 10:10:57 | 001,029,632 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\localspl.dll
[2014/07/24 10:10:57 | 000,889,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.Media.dll
[2014/07/24 10:10:52 | 000,806,400 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\win32spl.dll
[2014/07/24 10:08:51 | 000,162,816 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\puiapi.dll
[2014/07/24 10:08:14 | 000,321,536 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\stobject.dll
[2014/07/24 10:07:48 | 001,705,472 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wucltux.dll
[2014/07/24 10:06:44 | 000,080,896 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wudriver.dll
[2014/07/24 10:05:59 | 000,448,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\VAN.dll
[2014/07/24 10:04:58 | 000,667,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\wuapi.dll
[2014/07/24 10:01:46 | 005,833,216 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\Windows.UI.Search.dll
[2014/07/24 10:01:22 | 001,126,912 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SearchFolder.dll
[2014/07/24 10:01:07 | 001,992,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\XpsPrint.dll
[2014/07/24 10:00:53 | 002,100,736 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SystemSettingsAdminFlowUI.dll
[2014/07/24 09:58:46 | 000,432,640 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\wwanconn.dll
[2014/07/24 09:54:35 | 001,290,752 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\XpsPrint.dll
[2014/07/24 09:50:41 | 001,182,208 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\printui.dll
[2014/07/24 09:50:09 | 000,923,136 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\WSShared.dll
[2014/07/24 09:49:41 | 000,263,680 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\DafPrintProvider.dll
[2014/07/24 09:47:52 | 000,576,512 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SettingSync.dll
[2014/07/24 09:46:06 | 008,652,800 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\Windows.UI.Search.dll
[2014/07/24 09:44:12 | 001,057,792 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\printui.dll
[2014/07/24 09:43:35 | 002,696,704 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\SettingsHandlers.dll
[2014/07/24 09:43:24 | 000,756,224 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\WSShared.dll
[2014/07/24 09:43:13 | 000,200,192 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\DafPrintProvider.dll
[2014/07/24 09:41:12 | 000,459,264 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\SettingSync.dll
[2014/07/24 09:39:25 | 002,642,944 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\authui.dll
[2014/07/24 09:38:35 | 005,777,408 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\mstscax.dll
[2014/07/24 09:38:00 | 006,649,344 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\mstscax.dll
[2014/07/24 09:33:03 | 003,360,768 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\rdpcorets.dll
[2014/07/24 09:30:40 | 002,318,336 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysWow64\authui.dll
[2014/07/24 09:28:58 | 001,600,000 | ---- | M] (Microsoft Corporation) -- C:\Windows\SysNative\workfolderssvc.dll
[2014/07/24 00:30:04 | 000,497,103 | ---- | M] () -- C:\Users\Lukáš\Desktop\microsoft.png
[2014/07/22 00:32:28 | 000,555,760 | ---- | M] (Synaptics Incorporated) -- C:\Windows\SysNative\drivers\SynTP.sys
[2014/07/22 00:32:28 | 000,422,640 | ---- | M] (Synaptics Incorporated) -- C:\Windows\SysNative\SynTPCo19.dll
[2014/07/22 00:32:28 | 000,252,144 | ---- | M] (Synaptics Incorporated) -- C:\Windows\SysNative\SynTPAPI.dll
[2014/07/22 00:32:28 | 000,169,712 | ---- | M] (Synaptics Incorporated) -- C:\Windows\SysWow64\SynTPCom.dll
[2014/07/22 00:32:27 | 000,723,184 | ---- | M] (Synaptics Incorporated) -- C:\Windows\SysNative\SynCOM.dll
[2014/07/22 00:32:27 | 000,400,624 | ---- | M] (Synaptics Incorporated) -- C:\Windows\SysWow64\SynCom.dll

========== Files Created - No Company Name ==========

[2014/08/15 20:12:15 | 000,001,078 | ---- | C] () -- C:\Windows\system32dbgraw.bmp
[2014/08/15 09:24:15 | 000,000,512 | ---- | C] () -- C:\PhysicalMBR.bin
[2014/08/12 20:08:33 | 000,387,391 | ---- | C] () -- C:\Windows\SysNative\ApnDatabase.xml
[2014/07/30 04:49:51 | 000,000,396 | ---- | C] () -- C:\Windows\tasks\HPCeeScheduleForLUKASBERAN-NOTE$.job
[2014/07/30 04:27:05 | 000,000,000 | RHS- | C] () -- C:\Windows\SysWow64\drivers\103C_HP_bNB_EliteBook 8470p_Y5336AN_0U_QCNU3239D0B_EU_4A_I179B_SHP_V42.37_B68ICF F.46_T140117_W84-0_L409_M8060_J128_7Intel_86A9_92.60_#131022_N80861502;8086422B_(C9Y33UP#ABU)_XMOBILE_CN10_Z_2A1029D1102_G80860166.MRK
[2014/07/30 04:27:05 | 000,000,000 | RHS- | C] () -- C:\Windows\SysNative\drivers\103C_HP_bNB_EliteBook 8470p_Y5336AN_0U_QCNU3239D0B_EU_4A_I179B_SHP_V42.37_B68ICF F.46_T140117_W84-0_L409_M8060_J128_7Intel_86A9_92.60_#131022_N80861502;8086422B_(C9Y33UP#ABU)_XMOBILE_CN10_Z_2A1029D1102_G80860166.MRK
[2014/07/24 00:30:04 | 000,497,103 | ---- | C] () -- C:\Users\Lukáš\Desktop\microsoft.png
[2014/04/10 16:51:40 | 000,961,336 | ---- | C] () -- C:\Windows\SysWow64\flcdlmsg.dll
[2014/04/08 20:53:58 | 000,002,255 | ---- | C] () -- C:\Windows\SysWow64\WimBootCompress.ini
[2014/02/12 21:38:36 | 000,103,936 | ---- | C] () -- C:\Windows\SysWow64\OEMLicense.dll
[2014/02/11 00:32:00 | 000,000,256 | R--- | C] () -- C:\Windows\SysWow64\DPPassFilter.dll.hpsign
[2014/02/11 00:32:00 | 000,000,256 | R--- | C] () -- C:\Windows\SysWow64\DPCrProv2.dll.hpsign
[2014/02/11 00:31:54 | 000,000,256 | R--- | C] () -- C:\Windows\SysWow64\DPSCApi.dll.hpsign
[2014/02/11 00:31:54 | 000,000,256 | R--- | C] () -- C:\Windows\SysWow64\DPFPApi.dll.hpsign
[2014/02/11 00:31:54 | 000,000,256 | R--- | C] () -- C:\Windows\SysWow64\DPClback.dll.hpsign
[2014/02/05 03:00:18 | 000,000,256 | R--- | C] () -- C:\Windows\SysWow64\DPFPApiUI.dll.hpsign
[2014/01/25 03:22:44 | 000,299,520 | ---- | C] () -- C:\Windows\SysWow64\igdmd32.dll
[2014/01/25 03:22:38 | 000,182,272 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
[2014/01/25 03:22:38 | 000,142,848 | ---- | C] () -- C:\Windows\SysWow64\igdail32.dll
[2014/01/14 19:21:02 | 000,243,202 | ---- | C] () -- C:\Windows\hpwins21.dat.temp
[2014/01/14 19:21:02 | 000,000,527 | ---- | C] () -- C:\Windows\hpwmdl21.dat.temp
[2013/11/29 18:19:55 | 000,007,617 | ---- | C] () -- C:\Users\Lukáš\AppData\Local\Resmon.ResmonCfg
[2013/11/07 20:24:00 | 000,000,037 | -HS- | C] () -- C:\Users\Lukáš\AppData\Local\70149b02515b3bb20dd492.47983420
[2013/10/24 21:32:33 | 000,242,745 | ---- | C] () -- C:\Windows\hpwins21.dat
[2013/10/24 21:32:33 | 000,000,527 | ---- | C] () -- C:\Windows\hpwmdl21.dat
[2013/10/24 21:25:24 | 000,876,574 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2013/10/19 11:30:29 | 000,000,600 | ---- | C] () -- C:\Users\Lukáš\AppData\Local\PUTTY.RND
[2013/10/18 20:52:53 | 000,000,248 | ---- | C] () -- C:\Windows\hbcikrnl.ini
[2013/09/23 10:22:22 | 000,000,256 | ---- | C] () -- C:\Windows\SysWow64\vcsAPIShared.dll.hpsign
[2013/09/22 10:43:27 | 000,000,132 | ---- | C] () -- C:\Users\Lukáš\AppData\Roaming\Adobe Formát PNG CS5 – předvolby
[2013/09/20 16:51:42 | 000,181,760 | ---- | C] () -- C:\Windows\SysWow64\APOMngr.DLL
[2013/09/20 16:51:42 | 000,073,728 | ---- | C] () -- C:\Windows\SysWow64\CmdRtr.DLL
[2013/09/19 21:02:18 | 000,049,152 | ---- | C] () -- C:\Windows\SysWow64\AVerIO.dll
[2013/09/19 21:02:18 | 000,003,456 | ---- | C] () -- C:\Windows\SysWow64\AVerIO.sys
[2013/09/19 21:02:16 | 000,659,456 | ---- | C] () -- C:\Windows\SysWow64\sptlib21.dll
[2013/09/19 21:02:16 | 000,462,848 | ---- | C] () -- C:\Windows\SysWow64\sptlib12.dll
[2013/09/19 21:02:16 | 000,307,200 | ---- | C] () -- C:\Windows\SysWow64\sptlib22.dll
[2013/09/19 21:02:15 | 000,421,888 | ---- | C] () -- C:\Windows\SysWow64\sptlib02.dll
[2013/09/19 21:02:15 | 000,311,296 | ---- | C] () -- C:\Windows\SysWow64\sptlib01.dll
[2013/09/19 21:02:15 | 000,307,200 | ---- | C] () -- C:\Windows\SysWow64\sptlib03.dll
[2013/09/19 21:02:15 | 000,294,912 | ---- | C] () -- C:\Windows\SysWow64\sptlib11.dll
[2013/09/19 20:59:45 | 000,000,600 | ---- | C] () -- C:\Users\Lukáš\AppData\Roaming\winscp.rnd
[2013/08/22 17:36:43 | 000,215,943 | ---- | C] () -- C:\Windows\SysWow64\dssec.dat
[2013/08/22 17:36:42 | 000,000,741 | ---- | C] () -- C:\Windows\SysWow64\NOISE.DAT
[2013/08/22 16:46:23 | 000,067,584 | --S- | C] () -- C:\Windows\bootstat.dat
[2013/08/22 09:01:23 | 000,043,131 | ---- | C] () -- C:\Windows\mib.bin
[2013/08/22 05:32:36 | 000,046,080 | ---- | C] () -- C:\Windows\SysWow64\BWContextHandler.dll
[2013/08/22 01:55:20 | 000,364,544 | ---- | C] () -- C:\Windows\SysWow64\msjetoledb40.dll
[2013/08/22 01:52:39 | 000,673,088 | ---- | C] () -- C:\Windows\SysWow64\mlang.dat
[2012/12/10 14:12:50 | 000,001,536 | ---- | C] () -- C:\Windows\SysWow64\IusEventLog.dll
[2012/11/28 10:42:06 | 000,026,464 | ---- | C] () -- C:\Windows\snuvcdsm.exe
[2012/11/28 10:42:06 | 000,015,497 | ---- | C] () -- C:\Windows\snp2uvc.ini
[2010/06/29 15:04:18 | 000,001,772 | ---- | C] () -- C:\ProgramData\cfSB1095.ini

========== ZeroAccess Check ==========

[2013/09/19 17:55:18 | 000,000,227 | RHS- | M] () -- C:\Windows\assembly\Desktop.ini

[HKEY_CURRENT_USER\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]

[HKEY_CURRENT_USER\Software\Classes\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32] /64

[HKEY_CURRENT_USER\Software\Classes\Wow6432node\clsid\{fbeb8a05-beee-4442-804e-409d6c4515e9}\InProcServer32]

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32] /64
"" = C:\Windows\SysNative\shell32.dll -- [2014/07/24 17:20:40 | 021,266,336 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{42aedc87-2188-41fd-b9a3-0c966feabec1}\InProcServer32]
"" = %SystemRoot%\system32\shell32.dll -- [2014/07/24 15:46:53 | 018,760,328 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Apartment

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\fastprox.dll -- [2013/08/22 11:49:49 | 000,921,088 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InProcServer32]
"" = %systemroot%\system32\wbem\fastprox.dll -- [2013/08/22 04:45:10 | 000,691,712 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Free

[HKEY_LOCAL_MACHINE\Software\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32] /64
"" = C:\Windows\SysNative\wbem\wbemess.dll -- [2013/08/22 11:45:17 | 000,483,840 | ---- | M] (Microsoft Corporation)
"ThreadingModel" = Both

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Classes\clsid\{F3130CDB-AA52-4C3A-AB32-85FFC23AF9C1}\InProcServer32]

========== LOP Check ==========

[2013/09/19 20:26:53 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Canneverbe Limited
[2013/10/22 21:05:01 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\DigitalPersona
[2014/02/22 21:07:28 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\GHISLER
[2013/10/23 18:59:19 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\IDT
[2014/08/15 10:43:01 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\KeePass
[2013/09/19 20:55:21 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Leadertech
[2013/09/19 20:53:19 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Moto assistant
[2013/09/20 16:53:48 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Publish Providers
[2014/03/04 21:35:36 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Sony
[2013/09/19 19:35:50 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2013/09/19 19:10:34 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Synaptics
[2014/03/04 21:49:21 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\SystemRequirementsLab
[2014/03/04 22:48:45 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\TeamViewer

========== Purity Check ==========



========== Custom Scans ==========

< >
[2013/08/22 16:45:54 | 000,000,006 | -H-- | C] () -- C:\Windows\Tasks\SA.DAT
[2013/12/08 11:44:25 | 000,000,364 | ---- | C] () -- C:\Windows\Tasks\HPCeeScheduleForLukáš.job
[2014/06/19 21:41:21 | 000,000,978 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job
[2014/06/19 21:41:21 | 000,000,982 | ---- | C] () -- C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job
[2014/07/30 04:49:51 | 000,000,396 | ---- | C] () -- C:\Windows\Tasks\HPCeeScheduleForLUKASBERAN-NOTE$.job

< >

< >

< MD5 for: AGP440.SYS >
[2014/04/12 09:38:32 | 000,000,012 | ---- | M] () MD5=06C6E29A8643D00197E214F3AA26A4B9 -- C:\Windows\WinSxS\amd64_machine.inf_31bf3856ad364e35_6.3.9600.16384_none_aad14d4692a7dfee\AGP440.sys
[2013/08/22 14:43:40 | 000,062,304 | ---- | M] (Microsoft Corporation) MD5=7DFAEBA9AD62D20102B576D5CAC45EC8 -- C:\Windows\SysNative\drivers\AGP440.sys
[2013/08/22 14:43:40 | 000,062,304 | ---- | M] (Microsoft Corporation) MD5=7DFAEBA9AD62D20102B576D5CAC45EC8 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_1758c63a7f3ec2bf\AGP440.sys
[2013/08/22 14:43:40 | 000,062,304 | ---- | M] (Microsoft Corporation) MD5=7DFAEBA9AD62D20102B576D5CAC45EC8 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_36be84f8fc597ea3\AGP440.sys
[2013/08/22 14:43:40 | 000,062,304 | ---- | M] (Microsoft Corporation) MD5=7DFAEBA9AD62D20102B576D5CAC45EC8 -- C:\Windows\WinSxS\amd64_machine.inf_31bf3856ad364e35_6.3.9600.17031_none_ab043f8a92822a60\AGP440.sys
[2013/08/22 14:43:40 | 000,062,304 | ---- | M] (Microsoft Corporation) MD5=7DFAEBA9AD62D20102B576D5CAC45EC8 -- C:\Windows\WinSxS\amd64_machine.inf_31bf3856ad364e35_6.3.9600.17238_none_ab0b455c927bd60f\AGP440.sys

< MD5 for: ATAPI.SYS >
[2013/08/22 14:43:41 | 000,026,464 | ---- | M] (Microsoft Corporation) MD5=74B14192CF79A72F7536B27CB8814FBD -- C:\Windows\SysNative\drivers\atapi.sys
[2013/08/22 14:43:41 | 000,026,464 | ---- | M] (Microsoft Corporation) MD5=74B14192CF79A72F7536B27CB8814FBD -- C:\Windows\SysNative\DriverStore\FileRepository\mshdc.inf_amd64_64aa4354da84c2df\atapi.sys
[2013/08/22 14:43:41 | 000,026,464 | ---- | M] (Microsoft Corporation) MD5=74B14192CF79A72F7536B27CB8814FBD -- C:\Windows\WinSxS\amd64_mshdc.inf_31bf3856ad364e35_6.3.9600.16384_none_cdf68824f580d510\atapi.sys

< MD5 for: AUTOCHK.EXE >
[2014/04/12 09:40:36 | 000,028,249 | ---- | M] () MD5=0CBDE27FB26761852F7B22AFB8C51ACB -- C:\Windows\WinSxS\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.3.9600.16384_none_d2b24d5495b82963\autochk.exe
[2014/02/22 13:24:36 | 000,792,576 | ---- | M] (Microsoft Corporation) MD5=1D31E78ED5C40B5C6CC8D3DE713177A5 -- C:\Windows\SysWOW64\autochk.exe
[2014/02/22 13:24:36 | 000,792,576 | ---- | M] (Microsoft Corporation) MD5=1D31E78ED5C40B5C6CC8D3DE713177A5 -- C:\Windows\WinSxS\x86_microsoft-windows-autochk_31bf3856ad364e35_6.3.9600.17031_none_76c6a414dd35029f\autochk.exe
[2014/02/22 14:17:06 | 000,890,880 | ---- | M] (Microsoft Corporation) MD5=387A1E98BE548E4F199343CBA01E9D6D -- C:\Windows\SysNative\autochk.exe
[2014/02/22 14:17:06 | 000,890,880 | ---- | M] (Microsoft Corporation) MD5=387A1E98BE548E4F199343CBA01E9D6D -- C:\Windows\WinSxS\amd64_microsoft-windows-autochk_31bf3856ad364e35_6.3.9600.17031_none_d2e53f98959273d5\autochk.exe
[2014/04/12 10:15:15 | 000,023,596 | ---- | M] () MD5=83A4C9BE342BC296EC09492FF7594F13 -- C:\Windows\WinSxS\x86_microsoft-windows-autochk_31bf3856ad364e35_6.3.9600.16384_none_7693b1d0dd5ab82d\autochk.exe

< MD5 for: CDROM.SYS >
[2013/08/22 10:46:35 | 000,164,352 | ---- | M] (Microsoft Corporation) MD5=C6796EA22B513E3457514D92DCDB1A3D -- C:\Windows\SysNative\drivers\cdrom.sys
[2013/08/22 10:46:35 | 000,164,352 | ---- | M] (Microsoft Corporation) MD5=C6796EA22B513E3457514D92DCDB1A3D -- C:\Windows\SysNative\DriverStore\FileRepository\cdrom.inf_amd64_42e9c29f0affc440\cdrom.sys
[2013/08/22 10:46:35 | 000,164,352 | ---- | M] (Microsoft Corporation) MD5=C6796EA22B513E3457514D92DCDB1A3D -- C:\Windows\WinSxS\amd64_cdrom.inf_31bf3856ad364e35_6.3.9600.16384_none_5067bbed77be70be\cdrom.sys

< MD5 for: CRYPTSVC.DLL >
[2013/08/22 12:01:39 | 000,129,536 | ---- | M] (Microsoft Corporation) MD5=0EFE4B5884A8032617826A4D76F80969 -- C:\Windows\SysNative\cryptsvc.dll
[2013/08/22 12:01:39 | 000,129,536 | ---- | M] (Microsoft Corporation) MD5=0EFE4B5884A8032617826A4D76F80969 -- C:\Windows\WinSxS\amd64_microsoft-windows-cryptsvc-dll_31bf3856ad364e35_6.3.9600.16384_none_66bdf96f6ec6545d\cryptsvc.dll

< MD5 for: EXPLORER.EXE >
[2014/07/24 15:46:51 | 002,088,648 | ---- | M] (Microsoft Corporation) MD5=0032BD1E2DB20E1730C78895E942C194 -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.17238_none_4d01a98581e82d4f\explorer.exe
[2014/07/24 17:20:37 | 002,374,816 | ---- | M] (Microsoft Corporation) MD5=0EEA2B4A91FB3108B60A6CA116BC9430 -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.17238_none_42acff334d876b54\explorer.exe
[2014/03/04 13:16:50 | 002,088,160 | ---- | M] (Microsoft Corporation) MD5=119E091B5386379BC5AA598BE9440C75 -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.17039_none_4d02a60381e74c58\explorer.exe
[2013/10/20 18:29:44 | 000,203,518 | ---- | M] () MD5=215DD98F69B5D69E6F0BF2EF3818506B -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.16384_none_4cc7b16f8214372e\explorer.exe
[2014/04/12 10:04:55 | 000,015,546 | ---- | M] () MD5=347EFF7EC89C3EB4F72F2408E1C4E16D -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.17031_none_4cfaa3b381ee81a0\explorer.exe
[2013/11/14 18:06:56 | 000,133,444 | ---- | M] () MD5=3DDF61E1B538A1205612192A61CC2376 -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.16408_none_42cd898b4d6ef82e\explorer.exe
[2014/04/12 10:04:52 | 000,238,918 | ---- | M] () MD5=5177BB4FECDDB9CDBCF10EF65916968D -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.16441_none_4ceff22781f6788c\explorer.exe
[2014/04/12 09:45:13 | 000,169,957 | ---- | M] () MD5=6D919C26DCB567396CD2E119B8E4310E -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.17031_none_42a5f9614d8dbfa5\explorer.exe
[2014/03/04 14:25:49 | 002,373,784 | ---- | M] (Microsoft Corporation) MD5=81394C91B7B5A7C799E249AE82491F13 -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.17039_none_42adfbb14d868a5d\explorer.exe
[2013/11/14 18:22:13 | 000,127,825 | ---- | M] () MD5=983D8A3EB94B05A199D3744C0F0C475F -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.16408_none_4d2233dd81cfba29\explorer.exe
[2014/08/06 02:48:54 | 002,374,816 | ---- | M] (Microsoft Corporation) MD5=CB0A4CACEB3CB41983FDE2945C99F3D2 -- C:\Windows\explorer.exe
[2014/08/06 02:48:54 | 002,374,816 | ---- | M] (Microsoft Corporation) MD5=CB0A4CACEB3CB41983FDE2945C99F3D2 -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.17249_none_42a32f914d8ea09c\explorer.exe
[2014/08/06 01:46:50 | 002,088,648 | ---- | M] (Microsoft Corporation) MD5=EBF029163302324A9D5C7B2630325AB9 -- C:\Windows\SysWOW64\explorer.exe
[2014/08/06 01:46:50 | 002,088,648 | ---- | M] (Microsoft Corporation) MD5=EBF029163302324A9D5C7B2630325AB9 -- C:\Windows\WinSxS\wow64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.17249_none_4cf7d9e381ef6297\explorer.exe
[2013/10/20 18:21:39 | 000,275,235 | ---- | M] () MD5=F34060643B62C288757F9F0D75A07877 -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.16384_none_4273071d4db37533\explorer.exe
[2014/04/12 09:45:10 | 000,283,735 | ---- | M] () MD5=FA98C5D746E7C9E0912E88AC44FF9926 -- C:\Windows\WinSxS\amd64_microsoft-windows-explorer_31bf3856ad364e35_6.3.9600.16441_none_429b47d54d95b691\explorer.exe

< MD5 for: HAL.DLL >
[2014/06/02 04:10:31 | 000,423,768 | ---- | M] (Microsoft Corporation) MD5=08DCA300264238F9AE941302321F3D54 -- C:\Windows\SysNative\hal.dll
[2014/06/02 04:10:31 | 000,423,768 | ---- | M] (Microsoft Corporation) MD5=08DCA300264238F9AE941302321F3D54 -- C:\Windows\WinSxS\amd64_microsoft-windows-hal_31bf3856ad364e35_6.3.9600.17196_none_9bde68c32da7abbb\hal.dll
[2014/07/20 12:23:18 | 000,024,467 | ---- | M] () MD5=2635F50EAF3E1B4A8D32B21E1203E130 -- C:\Windows\WinSxS\amd64_microsoft-windows-hal_31bf3856ad364e35_6.3.9600.17031_none_9c1a44f32d7b883b\hal.dll
[2014/02/15 09:53:25 | 000,014,096 | ---- | M] () MD5=64D2873F32BB723BFFF3F8895032AA35 -- C:\Windows\WinSxS\amd64_microsoft-windows-hal_31bf3856ad364e35_6.3.9600.16408_none_9c41d51d2d5cc0c4\hal.dll
[2013/10/20 18:23:01 | 000,037,857 | ---- | M] () MD5=BB4F33698071C6FCAFD573E80ADEFFB8 -- C:\Windows\WinSxS\amd64_microsoft-windows-hal_31bf3856ad364e35_6.3.9600.16384_none_9be752af2da13dc9\hal.dll
[2014/04/12 09:45:57 | 000,066,843 | ---- | M] () MD5=D714202F057A317C8E31776EBEA0AEA2 -- C:\Windows\WinSxS\amd64_microsoft-windows-hal_31bf3856ad364e35_6.3.9600.16500_none_9c39d4b32d63f333\hal.dll

< MD5 for: IASTORV.SYS >
[2013/08/22 14:43:45 | 000,412,000 | ---- | M] (Intel Corporation) MD5=A2200C3033FA4EF249FC096A7A7D02A2 -- C:\Windows\SysNative\drivers\iaStorV.sys
[2013/08/22 14:43:45 | 000,412,000 | ---- | M] (Intel Corporation) MD5=A2200C3033FA4EF249FC096A7A7D02A2 -- C:\Windows\SysNative\DriverStore\FileRepository\iastorv.inf_amd64_5069105fb236ae4b\iaStorV.sys
[2013/08/22 14:43:45 | 000,412,000 | ---- | M] (Intel Corporation) MD5=A2200C3033FA4EF249FC096A7A7D02A2 -- C:\Windows\WinSxS\amd64_iastorv.inf_31bf3856ad364e35_6.3.9600.16384_none_9fcfb2835bbf0103\iaStorV.sys

< MD5 for: ISAPNP.SYS >
[2014/04/12 09:38:32 | 000,000,012 | ---- | M] () MD5=06C6E29A8643D00197E214F3AA26A4B9 -- C:\Windows\WinSxS\amd64_machine.inf_31bf3856ad364e35_6.3.9600.16384_none_aad14d4692a7dfee\isapnp.sys
[2013/08/22 14:43:45 | 000,021,856 | ---- | M] (Microsoft Corporation) MD5=8AFEEA3955AA43616A60F133B1D25F21 -- C:\Windows\SysNative\drivers\isapnp.sys
[2013/08/22 14:43:45 | 000,021,856 | ---- | M] (Microsoft Corporation) MD5=8AFEEA3955AA43616A60F133B1D25F21 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_1758c63a7f3ec2bf\isapnp.sys
[2013/08/22 14:43:45 | 000,021,856 | ---- | M] (Microsoft Corporation) MD5=8AFEEA3955AA43616A60F133B1D25F21 -- C:\Windows\SysNative\DriverStore\FileRepository\machine.inf_amd64_36be84f8fc597ea3\isapnp.sys
[2013/08/22 14:43:45 | 000,021,856 | ---- | M] (Microsoft Corporation) MD5=8AFEEA3955AA43616A60F133B1D25F21 -- C:\Windows\WinSxS\amd64_machine.inf_31bf3856ad364e35_6.3.9600.17031_none_ab043f8a92822a60\isapnp.sys
[2013/08/22 14:43:45 | 000,021,856 | ---- | M] (Microsoft Corporation) MD5=8AFEEA3955AA43616A60F133B1D25F21 -- C:\Windows\WinSxS\amd64_machine.inf_31bf3856ad364e35_6.3.9600.17238_none_ab0b455c927bd60f\isapnp.sys

< MD5 for: LSASS.EXE >
[2013/08/22 15:25:35 | 000,045,008 | ---- | M] (Microsoft Corporation) MD5=F6F209DDB94959BA104FC8FC87C53759 -- C:\Windows\SysNative\lsass.exe
[2013/08/22 15:25:35 | 000,045,008 | ---- | M] (Microsoft Corporation) MD5=F6F209DDB94959BA104FC8FC87C53759 -- C:\Windows\WinSxS\amd64_microsoft-windows-lsa-minwin_31bf3856ad364e35_6.3.9600.16384_none_2e2a01a866456d93\lsass.exe
[2013/08/22 15:25:35 | 000,045,008 | ---- | M] (Microsoft Corporation) MD5=F6F209DDB94959BA104FC8FC87C53759 -- C:\Windows\WinSxS\amd64_microsoft-windows-lsa-minwin_31bf3856ad364e35_6.3.9600.16408_none_2e8484166600f08e\lsass.exe

< MD5 for: NDIS.SYS >
[2013/11/14 18:10:26 | 000,123,655 | ---- | M] () MD5=17F1BC1A73EECEA6394EFA770B41DDD3 -- C:\Windows\WinSxS\amd64_microsoft-windows-ndis-minwin_31bf3856ad364e35_6.3.9600.16405_none_4a6b5fcffbc14927\ndis.sys
[2014/01/18 11:24:38 | 000,046,734 | ---- | M] () MD5=68A9BA38BB275850F91165D1C1FCA8DA -- C:\Windows\WinSxS\amd64_microsoft-windows-ndis-minwin_31bf3856ad364e35_6.3.9600.16408_none_4a6e60adfbbe952c\ndis.sys
[2014/04/12 09:52:02 | 000,140,607 | ---- | M] () MD5=7B886741BDAE33AC4F116DF991D1E3CB -- C:\Windows\WinSxS\amd64_microsoft-windows-ndis-minwin_31bf3856ad364e35_6.3.9600.16475_none_4a1fb05bfbfa0cbe\ndis.sys
[2013/10/20 18:24:46 | 000,120,748 | ---- | M] () MD5=9F11DF7D6F26142F746F6C0FA866ED31 -- C:\Windows\WinSxS\amd64_microsoft-windows-ndis-minwin_31bf3856ad364e35_6.3.9600.16384_none_4a13de3ffc031231\ndis.sys
[2014/06/05 16:00:18 | 001,118,040 | ---- | M] (Microsoft Corporation) MD5=E4B4BE2D7750849C07589DA0B0AABA01 -- C:\Windows\SysNative\drivers\ndis.sys
[2014/06/05 16:00:18 | 001,118,040 | ---- | M] (Microsoft Corporation) MD5=E4B4BE2D7750849C07589DA0B0AABA01 -- C:\Windows\WinSxS\amd64_microsoft-windows-ndis-minwin_31bf3856ad364e35_6.3.9600.17199_none_4a0df531fc06cc28\ndis.sys
[2014/02/22 17:40:03 | 001,118,552 | ---- | M] (Microsoft Corporation) MD5=F21B77B4D74092A543807D3CEB711A88 -- C:\Windows\WinSxS\amd64_microsoft-windows-ndis-minwin_31bf3856ad364e35_6.3.9600.17031_none_4a46d083fbdd5ca3\ndis.sys

< MD5 for: NETLOGON.DLL >
[2014/03/06 09:02:13 | 000,834,560 | ---- | M] (Microsoft Corporation) MD5=2468C21E34C49E4735B4BA430D448E91 -- C:\Windows\SysNative\netlogon.dll
[2014/03/06 09:02:13 | 000,834,560 | ---- | M] (Microsoft Corporation) MD5=2468C21E34C49E4735B4BA430D448E91 -- C:\Windows\WinSxS\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.3.9600.17041_none_ee9e39a60bd3552e\netlogon.dll
[2014/04/12 10:11:10 | 000,058,552 | ---- | M] () MD5=35048C9600694C3BF01D644D1AAE62BE -- C:\Windows\WinSxS\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.3.9600.16384_none_f8cac1a04051b0c6\netlogon.dll
[2014/03/06 08:29:17 | 000,688,640 | ---- | M] (Microsoft Corporation) MD5=582918F96C2B7E1E3AE17D08DB6DAC41 -- C:\Windows\SysWOW64\netlogon.dll
[2014/03/06 08:29:17 | 000,688,640 | ---- | M] (Microsoft Corporation) MD5=582918F96C2B7E1E3AE17D08DB6DAC41 -- C:\Windows\WinSxS\wow64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.3.9600.17041_none_f8f2e3f840341729\netlogon.dll
[2014/04/12 09:54:52 | 000,108,975 | ---- | M] () MD5=D817ED82C2A0E1CED9B396826F52F7CB -- C:\Windows\WinSxS\amd64_microsoft-windows-security-netlogon_31bf3856ad364e35_6.3.9600.16384_none_ee76174e0bf0eecb\netlogon.dll

< MD5 for: NVRAID.SYS >
[2013/08/22 14:43:31 | 000,150,368 | ---- | M] (NVIDIA Corporation) MD5=BC6B5942AFF25EBAF62DE43C3807EDF8 -- C:\Windows\SysNative\drivers\nvraid.sys
[2013/08/22 14:43:31 | 000,150,368 | ---- | M] (NVIDIA Corporation) MD5=BC6B5942AFF25EBAF62DE43C3807EDF8 -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_7ba65ba4b222e751\nvraid.sys
[2013/08/22 14:43:31 | 000,150,368 | ---- | M] (NVIDIA Corporation) MD5=BC6B5942AFF25EBAF62DE43C3807EDF8 -- C:\Windows\WinSxS\amd64_nvraid.inf_31bf3856ad364e35_6.3.9600.16384_none_2a99233292f5aadb\nvraid.sys

< MD5 for: NVSTOR.SYS >
[2013/08/22 14:43:32 | 000,168,288 | ---- | M] (NVIDIA Corporation) MD5=1F43ABFFAC3D6CA356851D517392966E -- C:\Windows\SysNative\drivers\nvstor.sys
[2013/08/22 14:43:32 | 000,168,288 | ---- | M] (NVIDIA Corporation) MD5=1F43ABFFAC3D6CA356851D517392966E -- C:\Windows\SysNative\DriverStore\FileRepository\nvraid.inf_amd64_7ba65ba4b222e751\nvstor.sys
[2013/08/22 14:43:32 | 000,168,288 | ---- | M] (NVIDIA Corporation) MD5=1F43ABFFAC3D6CA356851D517392966E -- C:\Windows\WinSxS\amd64_nvraid.inf_31bf3856ad364e35_6.3.9600.16384_none_2a99233292f5aadb\nvstor.sys

< MD5 for: SCECLI.DLL >
[2013/08/22 04:48:17 | 000,207,360 | ---- | M] (Microsoft Corporation) MD5=1F142D5BD1C3869C5D902779B6FEC3EF -- C:\Windows\SysWOW64\scecli.dll
[2013/08/22 04:48:17 | 000,207,360 | ---- | M] (Microsoft Corporation) MD5=1F142D5BD1C3869C5D902779B6FEC3EF -- C:\Windows\WinSxS\wow64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.3.9600.16384_none_3320ecb8e1733781\scecli.dll
[2013/08/22 11:55:43 | 000,271,360 | ---- | M] (Microsoft Corporation) MD5=1F1B8D07708E40E54C55B392C78ECCE2 -- C:\Windows\SysNative\scecli.dll
[2013/08/22 11:55:43 | 000,271,360 | ---- | M] (Microsoft Corporation) MD5=1F1B8D07708E40E54C55B392C78ECCE2 -- C:\Windows\WinSxS\amd64_microsoft-windows-s..urationengineclient_31bf3856ad364e35_6.3.9600.16384_none_28cc4266ad127586\scecli.dll

< MD5 for: SMSS.EXE >
[2014/04/12 09:56:24 | 000,019,120 | ---- | M] () MD5=5FBA1F5F9AA1E09595F015118AE83A36 -- C:\Windows\WinSxS\amd64_microsoft-windows-smss-minwin_31bf3856ad364e35_6.3.9600.16384_none_6f1f364dbcc273d3\smss.exe
[2014/02/22 17:43:03 | 000,142,576 | ---- | M] (Microsoft Corporation) MD5=D8564418BAC13776E43DB5F6B4FA775E -- C:\Windows\SysNative\smss.exe
[2014/02/22 17:43:03 | 000,142,576 | ---- | M] (Microsoft Corporation) MD5=D8564418BAC13776E43DB5F6B4FA775E -- C:\Windows\WinSxS\amd64_microsoft-windows-smss-minwin_31bf3856ad364e35_6.3.9600.17031_none_6f522891bc9cbe45\smss.exe

< MD5 for: SVCHOST.EXE >
[2014/05/12 07:24:30 | 000,750,392 | ---- | M] (MalwareBytes) MD5=09882E8EDD1144E6EF1AF6D1F98305EE -- C:\Program Files (x86)\Malwarebytes Anti-Malware\Chameleon\Windows\svchost.exe
[2013/08/22 07:30:58 | 000,031,552 | ---- | M] (Microsoft Corporation) MD5=425E22D9F5C01616AFC92987791B19E9 -- C:\Windows\SysWOW64\svchost.exe
[2013/08/22 07:30:58 | 000,031,552 | ---- | M] (Microsoft Corporation) MD5=425E22D9F5C01616AFC92987791B19E9 -- C:\Windows\WinSxS\x86_microsoft-windows-services-svchost_31bf3856ad364e35_6.3.9600.16384_none_4a5b1e2820e75323\svchost.exe
[2013/08/22 14:45:17 | 000,037,768 | ---- | M] (Microsoft Corporation) MD5=E4CA434F251681590D0538BC21C32D2F -- C:\Windows\SysNative\svchost.exe
[2013/08/22 14:45:17 | 000,037,768 | ---- | M] (Microsoft Corporation) MD5=E4CA434F251681590D0538BC21C32D2F -- C:\Windows\WinSxS\amd64_microsoft-windows-services-svchost_31bf3856ad364e35_6.3.9600.16384_none_a679b9abd944c459\svchost.exe

< MD5 for: TCPIP.SYS >
[2014/01/18 11:25:39 | 000,210,441 | ---- | M] () MD5=01941724D120729E2B680B22F05D4123 -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.3.9600.16423_none_a41c53813a2d8394\tcpip.sys
[2013/10/20 18:26:45 | 000,398,545 | ---- | M] () MD5=0547699BA453E88755EA60013D8F31DA -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.3.9600.16384_none_a3dc725d3a5d476a\tcpip.sys
[2014/03/15 13:25:08 | 000,271,861 | ---- | M] () MD5=2102610D6FD1D928A3D7155077A78B82 -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.3.9600.16456_none_a3fee49b3a43236c\tcpip.sys
[2014/05/27 17:53:12 | 002,518,360 | ---- | M] (Microsoft Corporation) MD5=25AC0B50A71938890970E1508F107196 -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.3.9600.17136_none_a41467f93a330db6\tcpip.sys
[2014/04/12 09:57:50 | 000,481,295 | ---- | M] () MD5=2F83A7537A9B8CF98E6B4710A3E3D381 -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.3.9600.16521_none_a41a54d33a2f4e0d\tcpip.sys
[2014/07/20 12:35:17 | 000,223,198 | ---- | M] () MD5=889B53B7C56665B0277CC00EF4051DE4 -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.3.9600.17085_none_a3dd562d3a5c82ed\tcpip.sys
[2014/07/20 12:35:20 | 000,225,256 | ---- | M] () MD5=A8DBD4B1BA356AA5C05F858E40FD0B08 -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.3.9600.17088_none_a3e0570b3a59cef2\tcpip.sys
[2013/11/14 18:16:53 | 000,250,257 | ---- | M] () MD5=D051052CB1A286833805C2E0F7710F85 -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.3.9600.16408_none_a436f4cb3a18ca65\tcpip.sys
[2014/07/20 12:35:13 | 000,237,133 | ---- | M] () MD5=D40C5B54A079A4AE257C9619E1DF0D3F -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.3.9600.17039_none_a41766f13a305c94\tcpip.sys
[2014/07/24 16:57:08 | 002,515,264 | ---- | M] (Microsoft Corporation) MD5=FEBAA7D782E30882FFF1CBCBBE8AD467 -- C:\Windows\SysNative\drivers\tcpip.sys
[2014/07/24 16:57:08 | 002,515,264 | ---- | M] (Microsoft Corporation) MD5=FEBAA7D782E30882FFF1CBCBBE8AD467 -- C:\Windows\WinSxS\amd64_microsoft-windows-tcpip-binaries_31bf3856ad364e35_6.3.9600.17238_none_a4166a733a313d8b\tcpip.sys

< MD5 for: USERINIT.EXE >
[2013/08/22 12:03:12 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=08C191B2917862BE90C33E31CB6B6D79 -- C:\Windows\SysNative\userinit.exe
[2013/08/22 12:03:12 | 000,025,088 | ---- | M] (Microsoft Corporation) MD5=08C191B2917862BE90C33E31CB6B6D79 -- C:\Windows\WinSxS\amd64_microsoft-windows-userinit_31bf3856ad364e35_6.3.9600.16384_none_cce71a20a5a6fe7f\userinit.exe
[2013/08/22 04:54:12 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=41636F77AD6D9A396EA34E4786B96F2B -- C:\Windows\SysWOW64\userinit.exe
[2013/08/22 04:54:12 | 000,021,504 | ---- | M] (Microsoft Corporation) MD5=41636F77AD6D9A396EA34E4786B96F2B -- C:\Windows\WinSxS\x86_microsoft-windows-userinit_31bf3856ad364e35_6.3.9600.16384_none_70c87e9ced498d49\userinit.exe

< MD5 for: WINLOGON.EXE >
[2014/05/12 07:24:30 | 000,750,392 | ---- | M] (MalwareBytes) MD5=09882E8EDD1144E6EF1AF6D1F98305EE -- C:\Program Files (x86)\Malwarebytes Anti-Malware\Chameleon\Windows\winlogon.exe
[2014/02/22 11:45:48 | 000,562,176 | ---- | M] (Microsoft Corporation) MD5=306EB21E5B480AE9065EA55AC8C35936 -- C:\Windows\SysNative\winlogon.exe
[2014/02/22 11:45:48 | 000,562,176 | ---- | M] (Microsoft Corporation) MD5=306EB21E5B480AE9065EA55AC8C35936 -- C:\Windows\WinSxS\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.3.9600.17031_none_60b45365a8c2ccdb\winlogon.exe
[2014/04/12 09:59:50 | 000,089,459 | ---- | M] () MD5=E40DC8DF924E02F04F3620DBAC1ACE31 -- C:\Windows\WinSxS\amd64_microsoft-windows-winlogon_31bf3856ad364e35_6.3.9600.16384_none_60816121a8e88269\winlogon.exe

< MD5 for: WS2_32.DLL >
[2013/08/22 07:17:54 | 000,313,488 | ---- | M] (Microsoft Corporation) MD5=428AF7FA03FF09CE1CD373ABFEBAD8A3 -- C:\Windows\SysWOW64\ws2_32.dll
[2013/08/22 07:17:54 | 000,313,488 | ---- | M] (Microsoft Corporation) MD5=428AF7FA03FF09CE1CD373ABFEBAD8A3 -- C:\Windows\WinSxS\x86_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.3.9600.16384_none_87577549e9ef9b02\ws2_32.dll
[2013/08/22 15:25:35 | 000,355,872 | ---- | M] (Microsoft Corporation) MD5=6F997D98C6A30D79C622811FBAB9119E -- C:\Windows\SysNative\ws2_32.dll
[2013/08/22 15:25:35 | 000,355,872 | ---- | M] (Microsoft Corporation) MD5=6F997D98C6A30D79C622811FBAB9119E -- C:\Windows\WinSxS\amd64_microsoft-windows-w..nfrastructure-ws232_31bf3856ad364e35_6.3.9600.16384_none_e37610cda24d0c38\ws2_32.dll

< >

< %systemroot%*.* /U /s >
[2 C:\Windows\Inf\Intel Storage Counters\*.tmp files -> C:\Windows\Inf\Intel Storage Counters\*.tmp -> ]
[1 C:\Windows\Inf\Intel Storage Counters\0000\*.tmp files -> C:\Windows\Inf\Intel Storage Counters\0000\*.tmp -> ]
[1 C:\Windows\Inf\Intel Storage Counters\0009\*.tmp files -> C:\Windows\Inf\Intel Storage Counters\0009\*.tmp -> ]

< %SYSTEMDRIVE%\*.exe >

< %ALLUSERSPROFILE%\Application Data\*. >

< %ALLUSERSPROFILE%\Application Data\*.exe /s >

< %APPDATA%\*. >
[2013/12/14 12:33:28 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Adobe
[2013/09/19 20:26:53 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Canneverbe Limited
[2013/10/22 21:05:01 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\DigitalPersona
[2013/10/22 21:03:34 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\FLEXnet
[2014/02/22 21:07:28 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\GHISLER
[2013/12/08 11:21:17 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Hewlett-Packard
[2013/10/24 21:35:41 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\HP
[2014/03/13 19:05:11 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\hpqLog
[2014/08/14 19:18:57 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\HpUpdate
[2013/10/23 18:59:19 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\IDT
[2013/10/24 21:24:44 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Intel Corporation
[2014/08/15 10:43:01 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\KeePass
[2013/09/19 20:55:21 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Leadertech
[2013/09/19 20:54:55 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Logishrd
[2013/09/19 20:56:29 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Logitech
[2013/09/19 17:57:28 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Macromedia
[2013/10/22 21:03:35 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Macrovision
[2014/05/05 18:50:31 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Malwarebytes
[2014/01/04 15:14:16 | 000,000,000 | --SD | M] -- C:\Users\Lukáš\AppData\Roaming\Microsoft
[2013/09/19 20:53:19 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Moto assistant
[2013/09/19 20:45:48 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\PSpad
[2013/09/20 16:53:48 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Publish Providers
[2014/08/15 20:34:52 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Skype
[2014/03/04 21:35:36 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Sony
[2013/09/19 19:35:50 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\StageManager.BD092818F67280F4B42B04877600987F0111B594.1
[2013/09/19 19:10:34 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\Synaptics
[2014/03/04 21:49:21 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\SystemRequirementsLab
[2014/03/04 22:48:45 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\TeamViewer
[2014/08/11 04:06:13 | 000,000,000 | ---D | M] -- C:\Users\Lukáš\AppData\Roaming\vlc

Bari
Návštěvník
Návštěvník
Příspěvky: 40
Registrován: 20 kvě 2011 09:06

Re: Prosím o preventivní kontrolu

#5 Příspěvek od Bari »

< %APPDATA%\*.exe /s >
[2014/07/22 03:39:50 | 000,054,432 | ---- | M] (Adobe Systems Inc.) -- C:\Users\Lukáš\AppData\Roaming\Macromedia\Flash Player\www.macromedia.com\bin\airappinstaller\airappinstaller.exe
[2013/09/19 20:55:21 | 000,053,248 | R--- | M] (Acresso Software Inc.) -- C:\Users\Lukáš\AppData\Roaming\Microsoft\Installer\{3EE9BCAE-E9A9-45E5-9B1C-83A4D357E05C}\ARPPRODUCTICON.exe

< %systemroot%\*. /mp /s >

< %systemroot%\system32\*.dll /lockedfiles >
[2014/07/25 13:03:13 | 011,772,928 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\system32\ieframe.dll

< %systemroot%\Tasks\*.job /lockedfiles >

< %systemroot%\system32\drivers\*.sys /lockedfiles >

< %systemroot%\System32\config\*.sav >

< %systemroot%\system32\*.dll /lockedfiles >
[2014/07/25 13:03:13 | 011,772,928 | ---- | M] (Microsoft Corporation) Unable to obtain MD5 -- C:\Windows\system32\ieframe.dll

< %systemroot%\system32\drivers\*.sys /3 >

< %systemroot%\system32\*.* /3 >
[2014/08/13 01:43:50 | 000,000,052 | ---- | M] () -- C:\Windows\system32\DOErrors.log
[2014/08/15 20:12:50 | 000,000,096 | ---- | M] () -- C:\Windows\system32\log.txt

< %SYSTEMDRIVE%\*.exe >

< >

< HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run /s >
"RESTART_STICKY_NOTES" = C:\Windows\System32\StikyNot.exe

< reg query "HKLM\Software\Microsoft\Windows NT\CurrentVersion\winlogon" /v GinaDLL /c >
No captured output from command...

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv" /v ImagePath /c >
No captured output from command...

< reg query "HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\BITS" /v ImagePath /c >
No captured output from command...

< >

< type c:\boot.ini >> test.txt /c >
No captured output from command...

< %SystemDrive%\PhysicalMBR.bin /md5 >
[2014/08/15 20:39:41 | 000,000,512 | ---- | M] () MD5=32ECBB7F4504E8E23B8AA3F529BB3ADB -- C:\PhysicalMBR.bin

< >

< *crack* /s >

< *keygen* /s >

< *AntiWPA* /s >

< *loader* /s >
[2011/06/09 23:52:42 | 005,299,048 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\Photodownloader.exe
[2010/03/09 01:38:58 | 000,011,161 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\bitmaps\main_window\C_LoadError.png
[2010/03/09 01:38:58 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\da_dk\Photodownloader.ini
[2010/03/09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\de_de\Photodownloader.ini
[2010/03/09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\en_us\Photodownloader.ini
[2010/03/09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\es_es\Photodownloader.ini
[2010/03/09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\fi_fi\Photodownloader.ini
[2010/03/09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\fr_fr\Photodownloader.ini
[2010/03/09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\it_it\Photodownloader.ini
[2010/03/09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\ja_jp\Photodownloader.ini
[2010/03/09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\ko_kr\Photodownloader.ini
[2010/03/09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\nl_nl\Photodownloader.ini
[2010/03/09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\no_no\Photodownloader.ini
[2010/03/09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\pt_br\Photodownloader.ini
[2010/03/09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\sv_se\Photodownloader.ini
[2010/03/09 01:39:00 | 000,000,308 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\zh_cn\Photodownloader.ini
[2010/03/09 01:39:00 | 000,000,011 | ---- | M] () -- \Program Files (x86)\Adobe\Adobe Bridge CS5\apd\shared_assets\locales\zh_tw\Photodownloader.ini
[2011/10/14 12:50:10 | 000,460,800 | ---- | M] () -- \Program Files (x86)\AVerMedia\AVerTV 3D\AVerUploader\AVerUploader.exe
[2014/01/23 17:05:00 | 000,268,440 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\VSTOLoader.dll
[2013/05/09 01:43:22 | 000,019,080 | ---- | M] () -- \Program Files (x86)\Common Files\Microsoft Shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2014/08/06 04:43:40 | 000,032,056 | ---- | M] () -- \Program Files (x86)\Hewlett-Packard\HP Health Check\ActiveCheck\product_line\HPResignFileLoader.exe
[2011/04/29 12:27:44 | 000,145,082 | ---- | M] () -- \Program Files (x86)\HP\Digital Imaging\HelpViewer\Resources\Loader.gif
[2014/01/23 17:05:00 | 000,364,184 | ---- | M] () -- \Program Files\Common Files\microsoft shared\VSTO\10.0\VSTOLoader.dll
[2013/05/09 01:43:22 | 000,019,080 | ---- | M] () -- \Program Files\Common Files\microsoft shared\VSTO\10.0\1033\VSTOLoaderUI.dll
[2014/02/18 18:49:19 | 000,000,856 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.BingTravel_3.0.2.309_x64__8wekyb3d8bbwe\js\HtmlFileLoader.js
[2014/03/05 18:57:27 | 000,038,912 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.MicrosoftMinesweeper_2.3.1403.2417_x86__8wekyb3d8bbwe\Arkadium.SharpDXEngine.AudioLoader.dll
[2014/03/05 18:57:27 | 000,002,560 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.MicrosoftMinesweeper_2.3.1403.2417_x86__8wekyb3d8bbwe\Arkadium.SharpDXEngine.AudioLoader.winmd
[2013/10/18 16:29:56 | 000,032,768 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.MicrosoftMinesweeper_2.3.1403.2417_x86__8wekyb3d8bbwe\Arkadium.SharpDXEngine.DDSLoader.dll
[2013/10/18 16:29:56 | 000,002,560 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.MicrosoftMinesweeper_2.3.1403.2417_x86__8wekyb3d8bbwe\Arkadium.SharpDXEngine.DDSLoader.winmd
[2013/10/22 20:05:44 | 000,001,181 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.MicrosoftMinesweeper_2.3.1403.2417_x86__8wekyb3d8bbwe\LoaderPage.xbf
[2013/10/22 20:05:44 | 000,006,129 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.MicrosoftMinesweeper_2.3.1403.2417_x86__8wekyb3d8bbwe\MvvmStructure\View\Controls\PreloaderControl.xbf
[2013/10/18 16:29:55 | 000,001,290 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_2.3.1407.252_x86__8wekyb3d8bbwe\ApplicationLoader.xbf
[2014/03/05 18:57:27 | 000,038,912 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_2.3.1407.252_x86__8wekyb3d8bbwe\Arkadium.SharpDXEngine.AudioLoader.dll
[2014/03/05 18:57:27 | 000,002,560 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_2.3.1407.252_x86__8wekyb3d8bbwe\Arkadium.SharpDXEngine.AudioLoader.winmd
[2013/10/18 16:29:56 | 000,032,768 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_2.3.1407.252_x86__8wekyb3d8bbwe\Arkadium.SharpDXEngine.DDSLoader.dll
[2013/10/18 16:29:56 | 000,002,560 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_2.3.1407.252_x86__8wekyb3d8bbwe\Arkadium.SharpDXEngine.DDSLoader.winmd
[2013/10/18 16:30:30 | 000,004,686 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_2.3.1407.252_x86__8wekyb3d8bbwe\MvvmStructure\View\Controls\PreloaderControl.xbf
[2013/08/22 21:13:25 | 000,001,160 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20573_x64__8wekyb3d8bbwe\modernpeople\appframe\backgroundloader.js
[2013/08/22 21:13:25 | 000,004,996 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20573_x64__8wekyb3d8bbwe\modernshareanything\sharedataloader.js
[2013/08/22 21:13:25 | 000,002,125 | ---- | M] () -- \Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20573_x64__8wekyb3d8bbwe\modernsharetarget\sharemaildataloader.js
[2013/08/22 21:17:21 | 000,043,128 | ---- | M] () -- \Program Files\WindowsApps\Microsoft.XboxLIVEGames_2.0.139.0_x64__8wekyb3d8bbwe\Framework\imageLoader.js
[2010/05/28 03:46:22 | 000,000,673 | ---- | M] () -- \Users\Lukáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\ckibcdccnfeookdmbahgiakhnjcddpki\13.11_0\images\ajaxLoader.gif
[2014/08/13 13:14:30 | 000,009,418 | ---- | M] () -- \Users\Lukáš\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom\2.7.11_0\img\gifloader.gif
[2014/08/15 09:06:35 | 000,000,673 | ---- | M] () -- \Users\Lukáš\AppData\Local\Microsoft\Windows\INetCache\IE\J17PUOR9\loader.white[1].gif
[2014/08/14 19:47:14 | 000,032,718 | ---- | M] () -- \Users\Lukáš\AppData\Local\Microsoft\Windows\INetCache\Low\IE\0MF3JE3M\loader.cxp[1].js
[2014/08/15 20:29:38 | 000,002,140 | ---- | M] () -- \Users\Lukáš\AppData\Local\Microsoft\Windows\INetCache\Low\IE\31CLZ981\loader[1].js
[2014/07/01 18:46:16 | 000,072,638 | ---- | M] () -- \Users\Lukáš\AppData\Local\Skype\Apps\login\images\loader.gif
[2014/07/01 18:46:16 | 000,003,032 | ---- | M] () -- \Users\Lukáš\AppData\Local\Skype\Apps\login\images\loader.png
[2014/07/01 18:46:16 | 000,006,012 | ---- | M] () -- \Users\Lukáš\AppData\Local\Skype\Apps\login\images\normal\loader_15fps.gif
[2014/07/01 18:46:16 | 000,021,956 | ---- | M] () -- \Users\Lukáš\AppData\Local\Skype\Apps\login\images\normal\loader_30fps.gif
[2014/07/01 18:46:16 | 000,009,772 | ---- | M] () -- \Users\Lukáš\AppData\Local\Skype\Apps\login\images\retina\loader@2x.png
[2014/04/09 18:32:42 | 000,017,920 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.O29577370#\bc1d11f57f24a0dd64d67b5ebe84e8ff\Microsoft.Office.InfoPath.CLRLoader.ni.dll
[2014/04/09 18:32:42 | 000,000,696 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\Microsoft.O29577370#\bc1d11f57f24a0dd64d67b5ebe84e8ff\Microsoft.Office.InfoPath.CLRLoader.ni.dll.aux
[2012/10/01 20:34:40 | 000,019,048 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00005109110000000100000000F01FEC\15.0.4420\FL_VSTOLoaderUI_dll_amd64_ln.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2012/10/01 20:34:40 | 000,019,048 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00005109110000000100000000F01FEC\15.0.4420\FL_VSTOLoaderUI_dll_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2012/10/01 20:34:40 | 000,364,128 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00005109110000000100000000F01FEC\15.0.4420\VSTOLoader_dll_amd64.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2012/10/01 20:34:40 | 000,268,384 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00005109110000000100000000F01FEC\15.0.4420\VSTOLoader_dll_x86.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2013/05/09 01:43:22 | 000,019,080 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00005109110000000100000000F01FEC\15.0.4569\FL_VSTOLoaderUI_dll_amd64_ln.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2013/05/09 01:43:22 | 000,019,080 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00005109110000000100000000F01FEC\15.0.4569\FL_VSTOLoaderUI_dll_x86_ln.3643236F_FC70_11D3_A536_0090278A1BB8.41B86362_9D8B_4D9B_B426_8A6D1F809A25
[2013/09/20 08:23:33 | 000,015,528 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\Microsoft.Office.InfoPath.CLRLoader\v4.0_15.0.0.0__71e9bce111e9429c\Microsoft.Office.Infopath.CLRLoader.dll
[2013/08/22 06:17:27 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/22 06:17:25 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-1-1.dll
[2013/08/22 06:17:24 | 000,003,584 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-l1-2-0.dll
[2013/08/22 06:17:20 | 000,002,560 | -H-- | M] () -- \Windows\System32\api-ms-win-core-libraryloader-private-l1-1-0.dll
[2013/08/22 06:17:34 | 000,002,560 | -H-- | M] () -- \Windows\System32\api-ms-win-core-stringloader-l1-1-0.dll
[2013/08/22 06:17:33 | 000,002,560 | -H-- | M] () -- \Windows\System32\api-ms-win-core-stringloader-l1-1-1.dll
[2013/08/22 05:55:19 | 000,036,352 | ---- | M] () -- \Windows\System32\dmloader.dll
[2013/08/22 15:25:39 | 000,003,584 | ---- | M] () -- \Windows\System32\downlevel\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/22 15:25:39 | 000,003,072 | ---- | M] () -- \Windows\System32\downlevel\api-ms-win-core-libraryloader-l1-1-1.dll
[2013/08/22 15:25:38 | 000,002,560 | ---- | M] () -- \Windows\System32\downlevel\api-ms-win-core-stringloader-l1-1-1.dll
[2013/08/22 06:17:27 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/22 06:17:25 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-1-1.dll
[2013/08/22 06:17:24 | 000,003,584 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-l1-2-0.dll
[2013/08/22 06:17:20 | 000,002,560 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-libraryloader-private-l1-1-0.dll
[2013/08/22 06:17:34 | 000,002,560 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-stringloader-l1-1-0.dll
[2013/08/22 06:17:33 | 000,002,560 | -H-- | M] () -- \Windows\SysWOW64\api-ms-win-core-stringloader-l1-1-1.dll
[2013/08/22 05:55:19 | 000,036,352 | ---- | M] () -- \Windows\SysWOW64\dmloader.dll
[2013/08/22 15:25:39 | 000,003,584 | ---- | M] () -- \Windows\SysWOW64\downlevel\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/22 15:25:39 | 000,003,072 | ---- | M] () -- \Windows\SysWOW64\downlevel\api-ms-win-core-libraryloader-l1-1-1.dll
[2013/08/22 15:25:38 | 000,002,560 | ---- | M] () -- \Windows\SysWOW64\downlevel\api-ms-win-core-stringloader-l1-1-1.dll
[2014/04/12 09:38:43 | 000,592,677 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.3.9600.16384_none_210fb36c397c4e2b\hvloader.efi
[2014/04/12 09:38:42 | 000,536,051 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.3.9600.16384_none_210fb36c397c4e2b\hvloader.exe
[2014/04/12 09:38:49 | 000,598,463 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.3.9600.17031_none_2142a5b03956989d\hvloader.efi
[2014/04/12 09:38:47 | 000,542,292 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.3.9600.17031_none_2142a5b03956989d\hvloader.exe
[2014/04/12 09:38:54 | 000,598,454 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.3.9600.17039_none_214aa800394f6355\hvloader.efi
[2014/04/12 09:38:53 | 000,542,288 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-hyper-v-drivers-hypervisor_31bf3856ad364e35_6.3.9600.17039_none_214aa800394f6355\hvloader.exe
[2013/08/22 13:21:30 | 000,046,592 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.3.9600.16384_none_36b27bfc6399d5ce\dmloader.dll
[2013/08/22 15:25:37 | 000,003,584 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-m..namespace-downlevel_31bf3856ad364e35_6.3.9600.16384_none_b8233abb5511544f\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/22 15:25:37 | 000,003,072 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-m..namespace-downlevel_31bf3856ad364e35_6.3.9600.16384_none_b8233abb5511544f\api-ms-win-core-libraryloader-l1-1-1.dll
[2013/08/22 15:25:36 | 000,002,560 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-m..namespace-downlevel_31bf3856ad364e35_6.3.9600.16384_none_b8233abb5511544f\api-ms-win-core-stringloader-l1-1-1.dll
[2013/08/22 13:45:31 | 000,003,584 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_fb7050014fc6f9b0\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/22 13:45:33 | 000,003,584 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_fb7050014fc6f9b0\api-ms-win-core-libraryloader-l1-1-1.dll
[2013/08/22 13:45:35 | 000,003,584 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_fb7050014fc6f9b0\api-ms-win-core-libraryloader-l1-2-0.dll
[2013/08/22 13:45:30 | 000,002,560 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_fb7050014fc6f9b0\api-ms-win-core-libraryloader-private-l1-1-0.dll
[2013/08/22 13:45:40 | 000,002,560 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_fb7050014fc6f9b0\api-ms-win-core-stringloader-l1-1-0.dll
[2013/08/22 13:45:44 | 000,002,560 | -H-- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_fb7050014fc6f9b0\api-ms-win-core-stringloader-l1-1-1.dll
[2014/04/08 20:58:13 | 000,000,462 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.3.9600.17031_en-us_678a0c54b7d52759.manifest
[2014/04/12 11:03:07 | 000,009,321 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.3.9600.17031_en-us_678a0c54b7d52759_winload.efi.mui_35ee487d
[2014/04/12 11:03:07 | 000,009,332 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.3.9600.17031_en-us_678a0c54b7d52759_winload.exe.mui_3bc5b827
[2014/04/12 11:03:07 | 000,007,774 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.3.9600.17031_en-us_678a0c54b7d52759_winresume.efi.mui_f412814e
[2014/04/12 11:03:07 | 000,007,774 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.3.9600.17031_en-us_678a0c54b7d52759_winresume.exe.mui_ff8b5358
[2014/08/12 20:24:51 | 000,000,547 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.17238_none_4c1f12534071dcdd.manifest
[2014/08/12 20:24:51 | 001,660,048 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.17238_none_4c1f12534071dcdd_winload.efi_75834aa0
[2014/08/12 20:24:51 | 001,519,560 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.17238_none_4c1f12534071dcdd_winload.exe_75835076
[2014/08/12 20:24:52 | 001,488,008 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.17238_none_4c1f12534071dcdd_winresume.efi_85cd069f
[2014/08/12 20:24:53 | 001,356,840 | ---- | M] () -- \Windows\WinSxS\Backup\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.17238_none_4c1f12534071dcdd_winresume.exe_85cd1215
[2013/08/22 17:34:52 | 000,000,596 | ---- | M] () -- \Windows\WinSxS\FileMaps\programdata_microsoft_network_downloader_7fafaef6d33e4371.cdf-ms
[2013/08/22 21:07:36 | 000,000,459 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.3.9600.16384_en-us_67571a10b7fadce7.manifest
[2014/04/08 20:49:24 | 000,000,462 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..os-loader.resources_31bf3856ad364e35_6.3.9600.17031_en-us_678a0c54b7d52759.manifest
[2013/08/22 17:22:38 | 000,000,542 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.16384_none_4be51a3d409de6bc.manifest
[2013/10/17 16:51:04 | 000,000,545 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.16411_none_4c2dcab94067d447.manifest
[2013/12/10 22:43:08 | 000,000,545 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.16452_none_4c038b5340875d62.manifest
[2014/04/08 20:49:24 | 000,000,545 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.17031_none_4c180c814078312e.manifest
[2014/08/12 20:06:21 | 000,000,547 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..vironment-os-loader_31bf3856ad364e35_6.3.9600.17238_none_4c1f12534071dcdd.manifest
[2013/08/22 05:55:19 | 000,036,352 | ---- | M] () -- \Windows\WinSxS\x86_microsoft-windows-audio-dmusic_31bf3856ad364e35_6.3.9600.16384_none_da93e078ab3c6498\dmloader.dll
[2013/08/22 15:25:39 | 000,003,584 | ---- | M] () -- \Windows\WinSxS\x86_microsoft-windows-m..namespace-downlevel_31bf3856ad364e35_6.3.9600.16384_none_5c049f379cb3e319\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/22 15:25:39 | 000,003,072 | ---- | M] () -- \Windows\WinSxS\x86_microsoft-windows-m..namespace-downlevel_31bf3856ad364e35_6.3.9600.16384_none_5c049f379cb3e319\api-ms-win-core-libraryloader-l1-1-1.dll
[2013/08/22 15:25:38 | 000,002,560 | ---- | M] () -- \Windows\WinSxS\x86_microsoft-windows-m..namespace-downlevel_31bf3856ad364e35_6.3.9600.16384_none_5c049f379cb3e319\api-ms-win-core-stringloader-l1-1-1.dll
[2013/08/22 06:17:27 | 000,003,584 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_9f51b47d9769887a\api-ms-win-core-libraryloader-l1-1-0.dll
[2013/08/22 06:17:25 | 000,003,584 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_9f51b47d9769887a\api-ms-win-core-libraryloader-l1-1-1.dll
[2013/08/22 06:17:24 | 000,003,584 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_9f51b47d9769887a\api-ms-win-core-libraryloader-l1-2-0.dll
[2013/08/22 06:17:20 | 000,002,560 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_9f51b47d9769887a\api-ms-win-core-libraryloader-private-l1-1-0.dll
[2013/08/22 06:17:34 | 000,002,560 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_9f51b47d9769887a\api-ms-win-core-stringloader-l1-1-0.dll
[2013/08/22 06:17:33 | 000,002,560 | -H-- | M] () -- \Windows\WinSxS\x86_microsoft-windows-minkernelapinamespace_31bf3856ad364e35_6.3.9600.16384_none_9f51b47d9769887a\api-ms-win-core-stringloader-l1-1-1.dll

< *minodlogin* /s >

< *tnod* /s >

< *AutoKMS* /s >

< *activator* /s >

< *serial* /s >
[2013/09/11 07:06:54 | 001,039,040 | ---- | M] () -- \Program Files (x86)\AVerMedia\AVerTV 3D\AVerUploader\System.Runtime.Serialization.dll
[2014/01/24 16:37:06 | 000,003,264 | ---- | M] () -- \Program Files (x86)\Intel\Intel(R) SSD Toolbox\Help\en-US\Serial_Number.htm
[2013/07/18 11:28:34 | 000,820,512 | ---- | M] () -- \Program Files (x86)\Intel\Intel(R) Update Manager\bin\serializer.dll
[2013/07/18 11:26:40 | 001,144,096 | ---- | M] () -- \Program Files (x86)\Intel\Intel(R) Update Manager\bin\x64\serializer64.dll
[2014/07/06 16:36:58 | 000,372,736 | ---- | M] () -- \Program Files (x86)\KeePass Password Safe 2\KeePass.XmlSerializers.dll
[2014/05/14 06:17:02 | 000,434,368 | ---- | M] () -- \Program Files (x86)\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.dll
[2014/07/25 04:40:49 | 001,164,288 | ---- | M] () -- \Program Files (x86)\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.ni.dll
[2014/07/02 09:30:28 | 000,970,752 | ---- | M] () -- \Program Files (x86)\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2013/12/16 18:34:28 | 000,015,918 | ---- | M] () -- \Program Files\Broadcom\Bluetooth Drivers\btwserialbus-x64.cat
[2013/12/11 16:23:34 | 000,211,086 | ---- | M] () -- \Program Files\Broadcom\Bluetooth Drivers\BtwSerialBus.inf
[2013/09/10 03:06:44 | 000,150,744 | ---- | M] () -- \Program Files\Broadcom\Bluetooth Drivers\BtwSerialBus.sys
[2014/04/15 13:11:02 | 000,167,616 | ---- | M] () -- \Program Files\Microsoft Office\Office15\ADDINS\PowerPivot Excel Add-in\Microsoft.AnalysisServices.Excel.BackEnd.XmlSerializers.dll
[2014/04/15 13:11:02 | 000,210,112 | ---- | M] () -- \Program Files\Microsoft Office\Office15\ADDINS\PowerPivot Excel Add-in\Microsoft.AnalysisServices.Excel.Common.FrontEnd.XmlSerializers.dll
[2014/05/14 06:48:16 | 000,434,368 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.dll
[2014/07/25 04:41:15 | 001,546,240 | ---- | M] () -- \Program Files\Microsoft Silverlight\5.1.30514.0\System.Runtime.Serialization.ni.dll
[2014/07/02 09:34:24 | 000,847,872 | ---- | M] () -- \Program Files\Reference Assemblies\Microsoft\Framework\v3.0\System.Runtime.Serialization.dll
[2013/08/21 13:27:36 | 000,321,824 | ---- | M] () -- \Program Files\Sony\Movie Studio Platinum 12.0\CoreUI.XmlSerializers.dll
[2013/08/21 13:27:40 | 000,461,088 | ---- | M] () -- \Program Files\Sony\Movie Studio Platinum 12.0\Sony.MediaSoftware.TextGen.CoreGraphics.XmlSerializers.dll
[2012/09/11 10:32:30 | 000,004,185 | ---- | M] () -- \ProgramData\HP\LGT\Data\Models\Images\identifying_serial.jpg
[2012/09/11 10:32:30 | 000,004,185 | ---- | M] () -- \Users\All Users\HP\LGT\Data\Models\Images\identifying_serial.jpg
[2014/06/24 00:12:42 | 000,131,072 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\2.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2014/07/02 09:30:28 | 000,970,752 | ---- | M] () -- \Windows\assembly\GAC_MSIL\System.Runtime.Serialization\3.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2014/04/09 18:34:06 | 000,306,176 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runt9064068c#\6ef9bbadb5c7087da45798a762683eeb\System.Runtime.Serialization.Formatters.Soap.ni.dll
[2014/04/09 18:34:06 | 000,000,440 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runt9064068c#\6ef9bbadb5c7087da45798a762683eeb\System.Runtime.Serialization.Formatters.Soap.ni.dll.aux
[2014/07/07 15:27:26 | 000,008,192 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runtb09a0784#\6f32a8fc9ed432a88405b9adaed59284\System.Runtime.Serialization.Json.ni.dll
[2014/07/07 15:27:26 | 000,000,296 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runtb09a0784#\6f32a8fc9ed432a88405b9adaed59284\System.Runtime.Serialization.Json.ni.dll.aux
[2014/07/07 15:27:26 | 000,008,704 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runtdf6812ee#\b7c90cd61aa57b4858a896d7e33c30d9\System.Runtime.Serialization.Primitives.ni.dll
[2014/07/07 15:27:26 | 000,000,300 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runtdf6812ee#\b7c90cd61aa57b4858a896d7e33c30d9\System.Runtime.Serialization.Primitives.ni.dll.aux
[2014/04/09 18:29:08 | 002,804,736 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\183eaaded316165bfbd32a991e4e8c8a\System.Runtime.Serialization.ni.dll
[2014/04/09 18:29:08 | 000,000,980 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Runteb92aa12#\183eaaded316165bfbd32a991e4e8c8a\System.Runtime.Serialization.ni.dll.aux
[2014/07/07 15:27:26 | 000,008,704 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.429e8964#\d875b108d13cb8d893ac4c27fff8f539\System.Xml.XmlSerializer.ni.dll
[2014/07/07 15:27:26 | 000,000,284 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_32\System.Xml.429e8964#\d875b108d13cb8d893ac4c27fff8f539\System.Xml.XmlSerializer.ni.dll.aux
[2014/04/09 18:32:14 | 000,009,728 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runtb09a0784#\fcfeae82e3bb6fe9e0c9ecd16c3d71f2\System.Runtime.Serialization.Json.ni.dll
[2014/04/09 18:32:14 | 000,000,296 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runtb09a0784#\fcfeae82e3bb6fe9e0c9ecd16c3d71f2\System.Runtime.Serialization.Json.ni.dll.aux
[2014/07/24 22:08:38 | 000,009,728 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runtdf6812ee#\d7c19ec0784ce130d53d43af71a371db\System.Runtime.Serialization.Primitives.ni.dll
[2014/07/24 22:08:38 | 000,000,300 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runtdf6812ee#\d7c19ec0784ce130d53d43af71a371db\System.Runtime.Serialization.Primitives.ni.dll.aux
[2014/04/09 18:31:16 | 003,530,752 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runteb92aa12#\209aa0718fe1f200de5ea360d5d4de25\System.Runtime.Serialization.ni.dll
[2014/04/09 18:31:16 | 000,000,980 | ---- | M] () -- \Windows\assembly\NativeImages_v4.0.30319_64\System.Runteb92aa12#\209aa0718fe1f200de5ea360d5d4de25\System.Runtime.Serialization.ni.dll.aux
[2013/08/22 17:32:39 | 000,001,032 | ---- | M] () -- \Windows\Inf\c_multiportserial.inf
[2012/10/01 20:36:32 | 000,166,864 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00005109110000000100000000F01FEC\15.0.4420\AS_Client_BackEnd_XmlSerializers_dll_64.47B66533_5246_4BD8_8040_12B3E5660DA4
[2012/10/01 20:36:32 | 000,209,360 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00005109110000000100000000F01FEC\15.0.4420\AS_Client_Common_FrontEnd_XmlSerializers_dll_64.47B66533_5246_4BD8_8040_12B3E5660DA4
[2014/01/23 17:05:10 | 000,167,616 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00005109110000000100000000F01FEC\15.0.4569\AS_Client_BackEnd_XmlSerializers_dll_64.47B66533_5246_4BD8_8040_12B3E5660DA4
[2014/01/23 17:05:12 | 000,210,112 | R--- | M] () -- \Windows\Installer\$PatchCache$\Managed\00005109110000000100000000F01FEC\15.0.4569\AS_Client_Common_FrontEnd_XmlSerializers_dll_64.47B66533_5246_4BD8_8040_12B3E5660DA4
[2013/08/10 02:55:16 | 000,142,104 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Formatters.Soap\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Formatters.Soap.dll
[2013/08/10 02:55:16 | 000,029,392 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Json\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Json.dll
[2013/08/10 02:55:16 | 000,029,432 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Primitives\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Primitives.dll
[2013/08/10 02:55:16 | 000,029,896 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization.Xml\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Runtime.Serialization.Xml.dll
[2013/08/10 02:55:16 | 001,060,528 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Runtime.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Runtime.Serialization.dll
[2013/08/10 02:55:49 | 000,045,720 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.Serialization\v4.0_4.0.0.0__b77a5c561934e089\System.Xml.Serialization.dll
[2013/08/10 02:55:49 | 000,029,848 | ---- | M] () -- \Windows\Microsoft.NET\assembly\GAC_MSIL\System.Xml.XmlSerializer\v4.0_4.0.0.0__b03f5f7f11d50a3a\System.Xml.XmlSerializer.dll
[2014/06/24 00:12:42 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2014/07/02 09:30:29 | 000,970,752 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2013/08/10 02:55:16 | 001,060,528 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.dll
[2013/08/10 02:55:16 | 000,142,104 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2013/08/10 02:55:16 | 000,029,392 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Json.dll
[2013/08/10 02:55:16 | 000,029,432 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Primitives.dll
[2013/08/10 02:55:16 | 000,029,896 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Runtime.Serialization.Xml.dll
[2013/08/10 02:55:49 | 000,045,720 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Xml.Serialization.dll
[2013/08/10 02:55:49 | 000,029,848 | ---- | M] () -- \Windows\Microsoft.NET\Framework\v4.0.30319\System.Xml.XmlSerializer.dll
[2014/06/24 00:12:50 | 000,131,072 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v2.0.50727\System.Runtime.Serialization.Formatters.Soap.dll
[2014/07/02 09:34:25 | 000,847,872 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v3.0\Windows Communication Foundation\System.Runtime.Serialization.dll
[2013/08/10 02:41:27 | 001,060,528 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.dll
[2013/08/10 02:41:27 | 000,142,104 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Formatters.Soap.dll
[2013/08/10 02:41:27 | 000,029,392 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Json.dll
[2013/08/10 02:41:28 | 000,029,432 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Primitives.dll
[2013/08/10 02:41:28 | 000,029,896 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Runtime.Serialization.Xml.dll
[2013/08/10 02:42:08 | 000,045,720 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Xml.Serialization.dll
[2013/08/10 02:42:08 | 000,029,848 | ---- | M] () -- \Windows\Microsoft.NET\Framework64\v4.0.30319\System.Xml.XmlSerializer.dll
[2013/08/22 15:08:06 | 000,008,830 | ---- | M] () -- \Windows\servicing\Packages\Microsoft-Windows-Serial-UartClass-package~31bf3856ad364e35~amd64~en-US~6.3.9600.16384.cat
[2013/08/22 14:36:48 | 000,000,781 | ---- | M] () -- \Windows\servicing\Packages\Microsoft-Windows-Serial-UartClass-package~31bf3856ad364e35~amd64~en-US~6.3.9600.16384.mum
[2013/08/22 14:55:01 | 000,008,827 | ---- | M] () -- \Windows\servicing\Packages\Microsoft-Windows-Serial-UartClass-package~31bf3856ad364e35~amd64~~6.3.9600.16384.cat
[2013/08/22 08:47:48 | 000,000,511 | ---- | M] () -- \Windows\servicing\Packages\Microsoft-Windows-Serial-UartClass-package~31bf3856ad364e35~amd64~~6.3.9600.16384.mum
[2013/08/22 05:48:16 | 000,015,872 | ---- | M] () -- \Windows\System32\serialui.dll
[2013/08/22 15:08:06 | 000,008,830 | ---- | M] () -- \Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Serial-UartClass-package~31bf3856ad364e35~amd64~en-US~6.3.9600.16384.cat
[2013/08/22 14:55:01 | 000,008,827 | ---- | M] () -- \Windows\System32\catroot\{F750E6C3-38EE-11D1-85E5-00C04FC295EE}\Microsoft-Windows-Serial-UartClass-package~31bf3856ad364e35~amd64~~6.3.9600.16384.cat
[2013/08/22 21:08:13 | 000,000,232 | ---- | M] () -- \Windows\System32\DriverStore\en-US\c_multiportserial.inf_loc
[2013/12/16 18:34:28 | 000,015,918 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\btwserialbus.inf_amd64_a5d30b7665b1ad53\btwserialbus-x64.cat
[2013/12/11 16:23:34 | 000,211,086 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\btwserialbus.inf_amd64_a5d30b7665b1ad53\btwserialbus.inf
[2014/07/22 00:29:51 | 000,147,548 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\btwserialbus.inf_amd64_a5d30b7665b1ad53\btwserialbus.PNF
[2013/09/10 03:06:44 | 000,150,744 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\btwserialbus.inf_amd64_a5d30b7665b1ad53\BtwSerialBus.sys
[2013/08/22 08:57:38 | 000,001,032 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\c_multiportserial.inf_amd64_7875073d426d59a6\c_multiportserial.inf
[2013/08/22 13:40:08 | 000,083,456 | ---- | M] () -- \Windows\System32\DriverStore\FileRepository\msports.inf_amd64_1be60ad3a61e5531\serial.sys
[2013/08/22 21:08:23 | 000,005,120 | ---- | M] () -- \Windows\System32\en-US\serialui.dll.mui
[2013/08/22 05:48:16 | 000,015,872 | ---- | M] () -- \Windows\SysWOW64\serialui.dll
[2013/08/22 21:08:23 | 000,005,120 | ---- | M] () -- \Windows\SysWOW64\en-US\serialui.dll.mui
[2013/08/22 21:08:13 | 000,000,232 | ---- | M] () -- \Windows\WinSxS\amd64_c_multiportserial.inf.resources_31bf3856ad364e35_6.3.9600.16384_en-us_35eaebe6834354eb\c_multiportserial.inf_loc
[2013/08/22 08:57:38 | 000,001,032 | ---- | M] () -- \Windows\WinSxS\amd64_c_multiportserial.inf_31bf3856ad364e35_6.3.9600.16384_none_91b10a007e43beff\c_multiportserial.inf
[2013/08/22 21:08:23 | 000,005,120 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.3.9600.16384_en-us_827f8cf89e9c274e\serialui.dll.mui
[2013/08/22 13:13:54 | 000,017,920 | ---- | M] () -- \Windows\WinSxS\amd64_microsoft-windows-unimodem-config_31bf3856ad364e35_6.3.9600.16384_none_e5c00198f2a1c32d\serialui.dll
[2013/08/22 21:08:13 | 000,010,240 | ---- | M] () -- \Windows\WinSxS\amd64_msports.inf.resources_31bf3856ad364e35_6.3.9600.16384_en-us_f8cacded072dc6f7\serial.sys.mui
[2013/08/22 13:40:08 | 000,083,456 | ---- | M] () -- \Windows\WinSxS\amd64_msports.inf_31bf3856ad364e35_6.3.9600.16384_none_e95610bc8c554aa7\serial.sys
[2013/08/10 02:41:27 | 000,142,104 | ---- | M] () -- \Windows\WinSxS\amd64_netfx4-system.runti..ion.formatters.soap_b03f5f7f11d50a3a_4.0.9600.16384_none_f73c7de0bb1de286\System.Runtime.Serialization.Formatters.Soap.dll
[2013/08/10 02:41:28 | 000,029,432 | ---- | M] () -- \Windows\WinSxS\amd64_netfx4-system.runti..lization.primitives_b03f5f7f11d50a3a_4.0.9600.16384_none_64635c6af076b012\System.Runtime.Serialization.Primitives.dll
[2013/08/10 02:41:27 | 000,029,392 | ---- | M] () -- \Windows\WinSxS\amd64_netfx4-system.runtime.serialization.json_b03f5f7f11d50a3a_4.0.9600.16384_none_031841e9b021a288\System.Runtime.Serialization.Json.dll
[2013/08/10 02:41:28 | 000,029,896 | ---- | M] () -- \Windows\WinSxS\amd64_netfx4-system.runtime.serialization.xml_b03f5f7f11d50a3a_4.0.9600.16384_none_ea3019bcd508d7f5\System.Runtime.Serialization.Xml.dll
[2013/08/10 02:41:27 | 001,060,528 | ---- | M] () -- \Windows\WinSxS\amd64_netfx4-system.runtime.serialization_b03f5f7f11d50a3a_4.0.9600.16384_none_afcfdcce0af8e4ba\System.Runtime.Serialization.dll
[2013/08/10 02:42:08 | 000,045,720 | ---- | M] () -- \Windows\WinSxS\amd64_netfx4-system.xml.serialization_b03f5f7f11d50a3a_4.0.9600.16384_none_1f92ce7ac9b9f399\System.Xml.Serialization.dll
[2013/08/10 02:42:08 | 000,029,848 | ---- | M] () -- \Windows\WinSxS\amd64_netfx4-system.xml.xmlserializer_b03f5f7f11d50a3a_4.0.9600.16384_none_0b1c65bd7b1ef04c\System.Xml.XmlSerializer.dll
[2013/08/17 02:06:27 | 000,131,072 | ---- | M] () -- \Windows\WinSxS\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.3.9600.16384_none_f057a9271ce694b1\System.Runtime.Serialization.Formatters.Soap.dll
[2014/06/24 00:12:50 | 000,131,072 | ---- | M] () -- \Windows\WinSxS\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.3.9600.17226_none_f0517be51cec2cbf\System.Runtime.Serialization.Formatters.Soap.dll
[2014/06/24 00:12:03 | 000,131,072 | ---- | M] () -- \Windows\WinSxS\amd64_netfx-system.runtim..ion.formatters.soap_b03f5f7f11d50a3a_6.3.9600.20708_none_d981a48b36959176\System.Runtime.Serialization.Formatters.Soap.dll
[2013/09/19 17:41:02 | 000,847,872 | ---- | M] () -- \Windows\WinSxS\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.3.9600.16384_none_9fc99c9c7c4c05c7\System.Runtime.Serialization.dll
[2014/07/02 09:34:25 | 000,847,872 | ---- | M] () -- \Windows\WinSxS\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.3.9600.17226_none_9fc36f5a7c519dd5\System.Runtime.Serialization.dll
[2014/07/03 04:15:18 | 000,847,872 | ---- | M] () -- \Windows\WinSxS\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.3.9600.20708_none_88f3980095fb028c\System.Runtime.Serialization.dll
[2013/09/19 17:41:01 | 000,847,872 | ---- | M] () -- \Windows\WinSxS\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.3.9600.16384_none_daa0a966d0440060\System.Runtime.Serialization.dll
[2014/07/02 09:34:24 | 000,847,872 | ---- | M] () -- \Windows\WinSxS\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.3.9600.17226_none_da9a7c24d049986e\System.Runtime.Serialization.dll
[2014/07/03 04:15:17 | 000,847,872 | ---- | M] () -- \Windows\WinSxS\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.3.9600.20708_none_c3caa4cae9f2fd25\System.Runtime.Serialization.dll
[2013/08/22 21:06:42 | 000,000,281 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_c_multiportserial.inf-languagepack_31bf3856ad364e35_6.3.9600.16384_en-us_0659b95168cd2142.manifest
[2013/08/22 21:07:01 | 000,000,249 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_c_multiportserial.inf.resources_31bf3856ad364e35_6.3.9600.16384_en-us_35eaebe6834354eb.manifest
[2013/08/22 17:20:14 | 000,000,210 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_c_multiportserial.inf_31bf3856ad364e35_6.3.9600.16384_none_91b10a007e43beff.manifest
[2013/08/22 15:25:34 | 000,000,297 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-b..gertransport-serial_31bf3856ad364e35_6.3.9600.16384_none_0273ed2980a1f589.manifest
[2013/08/22 17:22:11 | 000,001,512 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft-windows-serial-classextension_31bf3856ad364e35_6.3.9600.16384_none_26d3123b2d2a9360.manifest
[2013/08/22 17:22:07 | 000,000,110 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_microsoft.windows.h..tserial-driverclass_31bf3856ad364e35_6.3.9600.16384_none_1d7b32f2da6cfe0c.manifest
[2013/08/22 17:24:27 | 000,000,402 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_netfx4-system.runtime.serialization.json_b03f5f7f11d50a3a_4.0.9600.16384_none_031841e9b021a288.manifest
[2013/08/22 17:24:29 | 000,000,401 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_netfx4-system.runtime.serialization.xml_b03f5f7f11d50a3a_4.0.9600.16384_none_ea3019bcd508d7f5.manifest
[2013/08/22 17:24:24 | 000,000,420 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_netfx4-system.runtime.serialization_b03f5f7f11d50a3a_4.0.9600.16384_none_afcfdcce0af8e4ba.manifest
[2013/08/22 17:24:28 | 000,000,397 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_netfx4-system.xml.serialization_b03f5f7f11d50a3a_4.0.9600.16384_none_1f92ce7ac9b9f399.manifest
[2013/08/22 17:24:27 | 000,000,403 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_netfx4-system.xml.xmlserializer_b03f5f7f11d50a3a_4.0.9600.16384_none_0b1c65bd7b1ef04c.manifest
[2013/08/22 17:24:13 | 000,000,408 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.3.9600.16384_none_9fc99c9c7c4c05c7.manifest
[2014/08/12 20:04:08 | 000,000,404 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.3.9600.17226_none_9fc36f5a7c519dd5.manifest
[2014/08/12 20:04:08 | 000,000,407 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_wcf-system.runtime.serialization.ref_b03f5f7f11d50a3a_6.3.9600.20708_none_88f3980095fb028c.manifest
[2013/08/22 17:24:13 | 000,000,416 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.3.9600.16384_none_daa0a966d0440060.manifest
[2014/08/12 20:04:08 | 000,000,413 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.3.9600.17226_none_da9a7c24d049986e.manifest
[2014/08/12 20:04:08 | 000,000,415 | ---- | M] () -- \Windows\WinSxS\Manifests\amd64_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.3.9600.20708_none_c3caa4cae9f2fd25.manifest
[2013/08/22 17:24:29 | 000,000,418 | ---- | M] () -- \Windows\WinSxS\Manifests\msil_system.runtime.serialization.json_b03f5f7f11d50a3a_4.0.9600.16384_none_61eedd30ec040245.manifest
[2013/08/22 17:24:24 | 000,000,430 | ---- | M] () -- \Windows\WinSxS\Manifests\msil_system.runtime.serialization.primitives_b03f5f7f11d50a3a_4.0.9600.16384_none_dde82ee214ba2d3d.manifest
[2013/08/22 17:24:13 | 000,000,400 | ---- | M] () -- \Windows\WinSxS\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.3.9600.16384_none_ed2ffed67c428df1.manifest
[2014/08/12 20:04:08 | 000,000,399 | ---- | M] () -- \Windows\WinSxS\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.3.9600.17226_none_ed29d1947c4825ff.manifest
[2014/08/12 20:04:08 | 000,000,399 | ---- | M] () -- \Windows\WinSxS\Manifests\msil_system.runtime.serialization.ref_b77a5c561934e089_6.3.9600.20708_none_d659fa3a95f18ab6.manifest
[2013/08/22 21:07:50 | 000,000,149 | ---- | M] () -- \Windows\WinSxS\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_4.0.9600.16384_en-us_80951863a93f3c56.manifest
[2013/08/22 21:07:47 | 000,000,152 | ---- | M] () -- \Windows\WinSxS\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.3.9600.16384_en-us_d5f7bfa5c739f91d.manifest
[2014/08/12 20:04:08 | 000,000,151 | ---- | M] () -- \Windows\WinSxS\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.3.9600.17226_en-us_d5f19263c73f912b.manifest
[2014/08/12 20:04:08 | 000,000,151 | ---- | M] () -- \Windows\WinSxS\Manifests\msil_system.runtime.serialization.resources_b77a5c561934e089_6.3.9600.20708_en-us_bf21bb09e0e8f5e2.manifest
[2013/08/22 17:24:24 | 000,000,419 | ---- | M] () -- \Windows\WinSxS\Manifests\msil_system.runtime.serialization.xml_b03f5f7f11d50a3a_4.0.9600.16384_none_0d0d9cf22bac10f4.manifest
[2013/08/22 17:24:27 | 000,000,471 | ---- | M] () -- \Windows\WinSxS\Manifests\msil_system.runtime.serialization_b77a5c561934e089_4.0.9600.16384_none_c8108d2e85eed25d.manifest
[2013/08/22 17:24:13 | 000,000,422 | ---- | M] () -- \Windows\WinSxS\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.3.9600.16384_none_1d733470a3e98f24.manifest
[2014/08/12 20:04:08 | 000,000,421 | ---- | M] () -- \Windows\WinSxS\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.3.9600.17226_none_1d6d072ea3ef2732.manifest
[2014/08/12 20:04:08 | 000,000,421 | ---- | M] () -- \Windows\WinSxS\Manifests\msil_system.runtime.serialization_b77a5c561934e089_6.3.9600.20708_none_069d2fd4bd988be9.manifest
[2013/08/22 17:24:28 | 000,000,447 | ---- | M] () -- \Windows\WinSxS\Manifests\msil_system.xml.serialization_b77a5c561934e089_4.0.9600.16384_none_5aaf0d34c0033202.manifest
[2013/08/22 17:24:24 | 000,000,420 | ---- | M] () -- \Windows\WinSxS\Manifests\msil_system.xml.xmlserializer_b03f5f7f11d50a3a_4.0.9600.16384_none_3cc4c9f9340d8755.manifest
[2013/08/22 17:24:56 | 000,000,411 | ---- | M] () -- \Windows\WinSxS\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.3.9600.16384_none_224de03de4c02966.manifest
[2014/08/12 20:04:08 | 000,000,408 | ---- | M] () -- \Windows\WinSxS\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.3.9600.17226_none_2247b2fbe4c5c174.manifest
[2014/08/12 20:04:08 | 000,000,408 | ---- | M] () -- \Windows\WinSxS\Manifests\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.3.9600.20708_none_0b77dba1fe6f262b.manifest
[2013/08/10 02:55:16 | 000,142,104 | ---- | M] () -- \Windows\WinSxS\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_4.0.9600.16384_none_0dbd81c1c9e100df\System.Runtime.Serialization.Formatters.Soap.dll
[2013/08/17 02:06:31 | 000,131,072 | ---- | M] () -- \Windows\WinSxS\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.3.9600.16384_none_63202903e7dbbda6\System.Runtime.Serialization.Formatters.Soap.dll
[2014/06/24 00:12:42 | 000,131,072 | ---- | M] () -- \Windows\WinSxS\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.3.9600.17226_none_6319fbc1e7e155b4\System.Runtime.Serialization.Formatters.Soap.dll
[2014/06/24 00:12:08 | 000,131,072 | ---- | M] () -- \Windows\WinSxS\msil_system.runtime.seri..ion.formatters.soap_b03f5f7f11d50a3a_6.3.9600.20708_none_4c4a2468018aba6b\System.Runtime.Serialization.Formatters.Soap.dll
[2013/08/10 02:55:16 | 000,029,392 | ---- | M] () -- \Windows\WinSxS\msil_system.runtime.serialization.json_b03f5f7f11d50a3a_4.0.9600.16384_none_61eedd30ec040245\System.Runtime.Serialization.Json.dll
[2013/08/10 02:55:16 | 000,029,432 | ---- | M] () -- \Windows\WinSxS\msil_system.runtime.serialization.primitives_b03f5f7f11d50a3a_4.0.9600.16384_none_dde82ee214ba2d3d\System.Runtime.Serialization.Primitives.dll
[2013/09/19 17:41:02 | 000,970,752 | ---- | M] () -- \Windows\WinSxS\msil_system.runtime.serialization.ref_b77a5c561934e089_6.3.9600.16384_none_ed2ffed67c428df1\System.Runtime.Serialization.dll
[2014/07/02 09:30:29 | 000,970,752 | ---- | M] () -- \Windows\WinSxS\msil_system.runtime.serialization.ref_b77a5c561934e089_6.3.9600.17226_none_ed29d1947c4825ff\System.Runtime.Serialization.dll
[2014/07/03 02:21:28 | 000,970,752 | ---- | M] () -- \Windows\WinSxS\msil_system.runtime.serialization.ref_b77a5c561934e089_6.3.9600.20708_none_d659fa3a95f18ab6\System.Runtime.Serialization.dll
[2013/08/10 02:55:16 | 000,029,896 | ---- | M] () -- \Windows\WinSxS\msil_system.runtime.serialization.xml_b03f5f7f11d50a3a_4.0.9600.16384_none_0d0d9cf22bac10f4\System.Runtime.Serialization.Xml.dll
[2013/08/10 02:55:16 | 001,060,528 | ---- | M] () -- \Windows\WinSxS\msil_system.runtime.serialization_b77a5c561934e089_4.0.9600.16384_none_c8108d2e85eed25d\System.Runtime.Serialization.dll
[2013/09/19 17:41:01 | 000,970,752 | ---- | M] () -- \Windows\WinSxS\msil_system.runtime.serialization_b77a5c561934e089_6.3.9600.16384_none_1d733470a3e98f24\System.Runtime.Serialization.dll
[2014/07/02 09:30:28 | 000,970,752 | ---- | M] () -- \Windows\WinSxS\msil_system.runtime.serialization_b77a5c561934e089_6.3.9600.17226_none_1d6d072ea3ef2732\System.Runtime.Serialization.dll
[2014/07/03 02:21:27 | 000,970,752 | ---- | M] () -- \Windows\WinSxS\msil_system.runtime.serialization_b77a5c561934e089_6.3.9600.20708_none_069d2fd4bd988be9\System.Runtime.Serialization.dll
[2013/08/10 02:55:49 | 000,045,720 | ---- | M] () -- \Windows\WinSxS\msil_system.xml.serialization_b77a5c561934e089_4.0.9600.16384_none_5aaf0d34c0033202\System.Xml.Serialization.dll
[2013/08/10 02:55:49 | 000,029,848 | ---- | M] () -- \Windows\WinSxS\msil_system.xml.xmlserializer_b03f5f7f11d50a3a_4.0.9600.16384_none_3cc4c9f9340d8755\System.Xml.XmlSerializer.dll
[2013/08/17 02:06:31 | 000,131,072 | ---- | M] () -- \Windows\WinSxS\Temp\PendingDeletes\$$DeleteMe.System.Runtime.Serialization.Formatters.Soap.dll.01cfb65aee2469d6.004e
[2013/08/17 02:06:31 | 000,131,072 | ---- | M] () -- \Windows\WinSxS\Temp\PendingDeletes\$$DeleteMe.System.Runtime.Serialization.Formatters.Soap.dll.01cfb65aee8fb50b.0059
[2013/08/22 21:08:23 | 000,005,120 | ---- | M] () -- \Windows\WinSxS\x86_microsoft-windows-u..em-config.resources_31bf3856ad364e35_6.3.9600.16384_en-us_2660f174e63eb618\serialui.dll.mui
[2013/08/22 05:48:16 | 000,015,872 | ---- | M] () -- \Windows\WinSxS\x86_microsoft-windows-unimodem-config_31bf3856ad364e35_6.3.9600.16384_none_89a166153a4451f7\serialui.dll
[2013/08/03 06:41:46 | 000,970,752 | ---- | M] () -- \Windows\WinSxS\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.3.9600.16384_none_224de03de4c02966\System.Runtime.Serialization.dll
[2014/07/02 09:30:28 | 000,970,752 | ---- | M] () -- \Windows\WinSxS\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.3.9600.17226_none_2247b2fbe4c5c174\System.Runtime.Serialization.dll
[2014/07/03 02:21:27 | 000,970,752 | ---- | M] () -- \Windows\WinSxS\x86_wcf-system.runtime.serialization_b03f5f7f11d50a3a_6.3.9600.20708_none_0b77dba1fe6f262b\System.Runtime.Serialization.dll

< *w7lxe* /s >

< >

< >

========== Alternate Data Streams ==========

@Alternate Data Stream - 490 bytes -> D:\SkyDrive\Dokumenty\Profilovka.png:ms-properties
@Alternate Data Stream - 428 bytes -> D:\SkyDrive\Dokumenty\Zima je jen relativní pojem.pdf:ms-properties
@Alternate Data Stream - 428 bytes -> D:\SkyDrive\Dokumenty\Poukaz Microsoft.psd:ms-properties
@Alternate Data Stream - 428 bytes -> D:\SkyDrive\Dokumenty\Photoshop CS5 Extended licence.pdf:ms-properties
@Alternate Data Stream - 428 bytes -> D:\SkyDrive\Dokumenty\Návod Logamatic 2107.pdf:ms-properties
@Alternate Data Stream - 428 bytes -> D:\SkyDrive\Dokumenty\Logo fotky.psd:ms-properties
@Alternate Data Stream - 411 bytes -> D:\SkyDrive\Dokumenty\SyncToy_1d988d92-8bc5-4f77-9f93-4e250c5b60dc.dat:ms-properties
@Alternate Data Stream - 411 bytes -> D:\SkyDrive\Dokumenty\Spotřeba inkoustu.xlsx:ms-properties
@Alternate Data Stream - 411 bytes -> D:\SkyDrive\Dokumenty\DVD Rodina.docx:ms-properties
@Alternate Data Stream - 411 bytes -> D:\SkyDrive\Dokumenty\BERAN_LUKÁŠ_certifikatKB.p12:ms-properties
@Alternate Data Stream - 3142 bytes -> D:\SkyDrive\Dokumenty\Odstoupení od kupní smlouvy.docx:ms-properties
@Alternate Data Stream - 253 bytes -> D:\SkyDrive\Dokumenty\Hesla.kdbx:ms-properties
@Alternate Data Stream - 253 bytes -> D:\SkyDrive\Dokumenty\Default.rdp:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\Životopis:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\ZFPA:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\Vleky:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\UTB:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\UPOL:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\Total Commander:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\Subaru Impreza WRX:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\stare certifikaty:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\SPŠE Olomouc:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\Slevy:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\Skripty:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\Sčítání lidu 2011:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\Osobní certifikát:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\Moto Assistant:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\Maturita:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\Knihy, články - IT:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\FIT VUT:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\Evička:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\EasyWeather:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\Autonehoda:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\AMPER Idea 2011:ms-properties
@Alternate Data Stream - 187 bytes -> D:\SkyDrive\Dokumenty\ABC Tunning Group a.s:ms-properties
@Alternate Data Stream - 1846 bytes -> D:\SkyDrive\Dokumenty\Průvodní dopis reklamace.docx:ms-properties
@Alternate Data Stream - 183 bytes -> D:\SkyDrive\Dokumenty\Volkswagen Passat CC:ms-properties
@Alternate Data Stream - 183 bytes -> D:\SkyDrive\Dokumenty\Smlouva UP:ms-properties
@Alternate Data Stream - 183 bytes -> D:\SkyDrive\Dokumenty\Etikety slivovice:ms-properties
@Alternate Data Stream - 170 bytes -> D:\SkyDrive\Dokumenty\Vizitka:ms-properties
@Alternate Data Stream - 170 bytes -> D:\SkyDrive\Dokumenty\Turris:ms-properties
@Alternate Data Stream - 170 bytes -> D:\SkyDrive\Dokumenty\OFX Presets:ms-properties
@Alternate Data Stream - 170 bytes -> D:\SkyDrive\Dokumenty\Movie Studio Platinum 12.0 Projects:ms-properties
@Alternate Data Stream - 170 bytes -> D:\SkyDrive\Dokumenty\Dárky:ms-properties
@Alternate Data Stream - 170 bytes -> D:\SkyDrive\Dokumenty\Custom Office Templates:ms-properties
@Alternate Data Stream - 170 bytes -> D:\SkyDrive\Dokumenty\AVerTV:ms-properties
@Alternate Data Stream - 1426 bytes -> D:\SkyDrive\Dokumenty\Filtrace.docx:ms-properties

< End of report >

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o preventivní kontrolu

#6 Příspěvek od Márty84 »

:???: Jen se jeste zeptam, jak je to s legalitou systemu? Enterprise neni zrovna bezna domaci verze :?:


:arrow: Udelejte kontrolu s MBAM. Test nastavte podle tohoto navodu http://forum.viry.cz/viewtopic.php?f=29&t=137928 a dejte sem vysledky. Predem nic nemazte, miva obcas falesne detekce
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Bari
Návštěvník
Návštěvník
Příspěvky: 40
Registrován: 20 kvě 2011 09:06

Re: Prosím o preventivní kontrolu

#7 Příspěvek od Bari »

Systém je legální, je to licence od zaměstnavatele (koneckonců Elitebook 8470p taky není běžný domácí notebook :) ). Jinak já jsem dost silný odpůrce jakéhokoliv warezu a nic nelegálního bych si na počítač nikdy nedal a ani nikomu jinému bych tam nic nedával...


Log z MBAM:

Malwarebytes Anti-Malware
www.malwarebytes.org

Datum skenování: 16. 8. 2014
Čas skenování: 7:46:25
Protokol: mbam.txt
Správce: Ano

Verze: 2.00.2.1012
Databáze malwaru: v2014.08.16.02
Databáze rootkitů: v2014.08.15.01
Licence: Bezplatná verze
Ochrana proti malwaru: Vypnuto
Ochrana proti škodlivým webovým stránkám: Vypnuto
Self-protection: Vypnuto

OS: Windows 8.1
CPU: x64
Souborový systém: NTFS
Uživatel: LukA!A!

Typ skenu: Vlastní sken
Výsledek: Dokončeno
Prohledaných objektů: 318898
Uplynulý čas: 2 min, 19 sek

Paměť: Zapnuto
Po spuštění: Zapnuto
Souborový systém: Zapnuto
Archivy: Zapnuto
Rootkity: Vypnuto
Heuristics: Zapnuto
PUP: Zapnuto
PUM: Zapnuto

Procesy: 0
(No malicious items detected)

Moduly: 0
(No malicious items detected)

Klíče registru: 0
(No malicious items detected)

Hodnoty registru: 0
(No malicious items detected)

Data registru: 0
(No malicious items detected)

Složky: 0
(No malicious items detected)

Soubory: 0
(No malicious items detected)

Fyzické sektory: 0
(No malicious items detected)


(end)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o preventivní kontrolu

#8 Příspěvek od Márty84 »

:arrow: MBAM odinstalujte

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner a ulozte ho na plochu.
Ukoncete vsechny programy, jinak to AdwCleaner udela za vas.
Kliknete na nej pravym mysidlem a levym na Spustit jako spravce.
Kliknete na Scan a pockejte, az kontrola dobehne.
Pak kliknete na Clean
Program zacne pracovat (muze dojit k restartu pc) a vyplivne log (pripadne bude zde C:\AdwCleaner\AdwCleaner [S?].txt ). Ten mi sem zkopirujte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Bari
Návštěvník
Návštěvník
Příspěvky: 40
Registrován: 20 kvě 2011 09:06

Re: Prosím o preventivní kontrolu

#9 Příspěvek od Bari »

# AdwCleaner v3.307 - Report created 18/08/2014 at 18:19:02
# Updated 17/08/2014 by Xplode
# Operating System : Windows 8.1 Enterprise (64 bits)
# Username : Lukáš - LUKASBERAN-NOTE
# Running from : C:\Users\Lukáš\Desktop\adwcleaner_3.307.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****


***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****


***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17239


-\\ Google Chrome v36.0.1985.143

[ File : C:\Users\Lukáš\AppData\Local\Google\Chrome\User Data\Default\preferences ]


*************************

AdwCleaner[R2].txt - [917 octets] - [14/08/2014 19:11:49]
AdwCleaner[R3].txt - [915 octets] - [18/08/2014 18:18:33]
AdwCleaner[S2].txt - [979 octets] - [14/08/2014 19:12:44]
AdwCleaner[S3].txt - [837 octets] - [18/08/2014 18:19:02]

########## EOF - C:\AdwCleaner\AdwCleaner[S3].txt - [896 octets] ##########

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o preventivní kontrolu

#10 Příspěvek od Márty84 »

Na havet to vypada ciste. Pokud chcete, dejte novy log z RSIT a muzeme procistit zbytecnosti.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Bari
Návštěvník
Návštěvník
Příspěvky: 40
Registrován: 20 kvě 2011 09:06

Re: Prosím o preventivní kontrolu

#11 Příspěvek od Bari »

Tak to je dobrá zpráva :-)

Zde je ještě log z RSIT:
Logfile of random's system information tool 1.10 (written by random/random)
Run by Lukáš at 2014-08-19 16:57:29
Microsoft Windows 8.1 Enterprise
System drive C: has 38 GB (31%) free of 122 GB
Total RAM: 8059 MB (66% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 16:57:32, on 19. 8. 2014
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17239)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe
C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE
C:\Program Files\trend micro\Lukáš.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.seznam.cz/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: Logitech SetPoint - {AF949550-9094-4807-95EC-D1C317803333} - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O2 - BHO: HP Network Check Helper - {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll
O4 - HKLM\..\Run: [SwitchBoard] C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O4 - HKLM\..\Run: [AdobeCS5ServiceManager] "C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe" -launchedbylogin
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [KeePass 2 PreLoad] "C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe" --preload
O4 - HKLM\..\Run: [IMSS] "C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe"
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QLBController] C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe /start
O4 - HKCU\..\Run: [RESTART_STICKY_NOTES] C:\Windows\System32\StikyNot.exe
O4 - Startup: OneDrive for Business.lnk = C:\Program Files\Microsoft Office\Office15\GROOVE.EXE
O4 - Startup: Send to OneNote.lnk = C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE
O4 - Global Startup: AVer HID Receiver.lnk = C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
O4 - Global Startup: AVerQuick.lnk = C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O9 - Extra button: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-103 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra 'Tools' menuitem: @C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll,-102 - {25510184-5A38-4A99-B273-DCA8EEF6CD08} - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\NCLauncherFromIE.exe
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {CF84DAC5-A4F5-419E-A0BA-C01FFD71112F} (SysInfo Class) - http://content.systemrequirementslab.co ... 5.15.0.cab
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Acrobat Update Service (AdobeARMservice) - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AVerRemote - AVerMedia - C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRemote.exe
O23 - Service: AVerScheduleService - Unknown owner - C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe
O23 - Service: AVerUpdateServer - AVerMedia TECHNOLOGIES, Inc. - C:\Program Files (x86)\AVerMedia\AVerUpdate\AVerUpdateServer.exe
O23 - Service: @oem37.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service (BcmBtRSupport) - Unknown owner - C:\Windows\system32\BtwRSupportService.exe (file missing)
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\Windows\SysWow64\IntelCpHeciSvc.exe
O23 - Service: Creative Audio Engine Licensing Service - Creative Labs - C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe
O23 - Service: Absolute Software Agent Service (CtAgentService) - Unknown owner - C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe
O23 - Service: @C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128 (DpHost) - DigitalPersona, Inc. - C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Auditování/zamknutí zařízení nástroje HP (FLCDLOCK) - Hewlett-Packard Company - C:\Windows\SysWOW64\flcdlock.exe
O23 - Service: Služba Google Update (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Služba Google Update (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: HP Support Assistant Service - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe
O23 - Service: HP Device Access Manager Usage Service (HpDamServiceHost) - Hewlett-Packard Development Company - C:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe
O23 - Service: hpHotkeyMonitor - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe
O23 - Service: HP Software Framework Service (hpqwmiex) - Hewlett-Packard Company - C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
O23 - Service: @oem38.inf,%hpservice_desc%;HP Service (hpsrv) - Unknown owner - C:\Windows\system32\Hpservice.exe (file missing)
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\Windows\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: Intel(R) Capability Licensing Service TCP IP Interface - Intel(R) Corporation - C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe
O23 - Service: Intel(R) ME Service - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Logitech Bluetooth Service (LBTServ) - Logitech, Inc. - C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\stlang64.dll,-10101 (STacSV) - IDT, Inc. - C:\Program Files\IDT\WDM\STacSV64.exe
O23 - Service: SwitchBoard - Adobe Systems Incorporated - C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe
O23 - Service: TeamViewer 9 (TeamViewer9) - TeamViewer GmbH - C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Validity VCS Fingerprint Service (vcsFPService) - Validity Sensors, Inc. - C:\Windows\system32\vcsFPService.exe
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 13644 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\Windows\system32\lsass.exe
C:\Windows\system32\svchost.exe -k DcomLaunch
C:\Windows\system32\svchost.exe -k RPCSS
"dwm.exe"
"C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe"
C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
C:\Windows\system32\svchost.exe -k netsvcs
C:\Windows\system32\svchost.exe -k LocalService
"C:\Program Files\IDT\WDM\STacSV64.exe"
"C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPCardEngine.exe"
C:\Windows\system32\Hpservice.exe
C:\Windows\system32\vcsFPService.exe
C:\Windows\system32\svchost.exe -k NetworkService
C:\Windows\System32\spoolsv.exe
C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
"C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRemote.exe"
"C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe"
"C:\Program Files (x86)\AVerMedia\AVerUpdate\AVerUpdateServer.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe"
C:\Windows\SysWOW64\svchost.exe -k hpdevmgmt
"C:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files\Common Files\Microsoft Shared\Microsoft Online Services\MSOIDSVC.EXE"
C:\Windows\system32\svchost.exe -k imgsvc
"C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe"
MSOIDSvcm.exe 1692

"C:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe"
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\wmiprvse.exe
C:\Windows\system32\wbem\unsecapp.exe -Embedding
"C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe"
C:\Windows\system32\svchost.exe -k HPService
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-2829e134-d48d-430b-8e78-b7006e7b6c51 -SystemEventPortName:HostProcess-110b055f-a350-41bf-b2b7-65e08ac82e15 -IoCancelEventPortName:HostProcess-b121a401-4e32-4939-b226-2184700e641d -NonStateChangingEventPortName:HostProcess-bb38bf53-5a77-482e-b73f-d2d6a0bfd849 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:35f0e678-3d7c-4503-afb0-bd6d90659a54 -DeviceGroupId:
C:\Windows\system32\svchost.exe -k LocalServiceAndNoImpersonation
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:HostProcess-bb9be01e-dac0-477c-a00f-63c16225e1a4 -SystemEventPortName:HostProcess-c93142bf-a695-40a7-81d2-970cd161228c -IoCancelEventPortName:HostProcess-c87977d6-c54d-4bfb-896e-b3b34c05c87b -NonStateChangingEventPortName:HostProcess-f37f800e-c2a0-41ee-9bf2-a8d9dd111056 -ServiceSID:S-1-5-80-2652678385-582572993-1835434367-1344795993-749280709 -LifetimeId:fb351d47-c42a-4a86-bdae-52a5c879649b -DeviceGroupId:WudfDefaultDevicePool
"C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DPAgent.exe"
C:\Windows\Explorer.EXE
taskhostex.exe

C:\Windows\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\skydrive.exe -Embedding
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\PROGRAM FILES\SYNAPTICS\SYNTP\SYNTPHELPER.EXE"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Windows\System32\rundll32.exe" sbavmon.dll,SBAVMonitor
"C:\Program Files\IDT\WDM\sttray64.exe"
"C:\Windows\system32\igfxsrvc.exe" -Embedding
"C:\Windows\System32\hkcmd.exe"
"C:\Windows\System32\igfxpers.exe"
"C:\Program Files\Logitech\SetPointP\SetPoint.exe" /launchGaming
KHALMNPR.EXE /API
"C:\Windows\System32\StikyNot.exe"
"C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe"
"C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE" /tsr
"C:\Program Files (x86)\HP\HP Software Update\hpwuschd2.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe" /start
dashost.exe {8e5f6a30-bbfd-40ad-a5cb458b723f8c0c}
"C:\Windows\System32\WWAHost.exe" -ServerName:Windows.Store

"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files\Internet Explorer\iexplore.exe"
"C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe"
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe"
"C:\Program Files\Microsoft Office\Office15\OUTLOOK.EXE"
"C:\Program Files\Microsoft Office\Office15\lync.exe"
"C:\Program Files\Microsoft Office\Office15\UcMapi.exe" -Embedding
C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:4012 CREDAT:5615 /prefetch:2
"C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_17.5.9600.20573_x64__8wekyb3d8bbwe\LiveComm.exe" -ServerName:Microsoft.WindowsLive.Platform.Server

"C:\Windows\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe_S-1-5-21-1312231713-1169629108-545288242-100138_ Global\UsGthrCtrlFltPipeMssGthrPipe_S-1-5-21-1312231713-1169629108-545288242-100138 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon" "1"
"C:\Program Files\Internet Explorer\iexplore.exe" SCODEF:4012 CREDAT:3479109 /prefetch:2
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:4012 CREDAT:1774996 /prefetch:2
"C:\Program Files (x86)\Internet Explorer\IEXPLORE.EXE" SCODEF:4012 CREDAT:4724084 /prefetch:2
"C:\Users\Lukáš\Desktop\RSITx64.exe"
"C:\Windows\system32\SearchFilterHost.exe" 0 572 576 584 65536 580

======Scheduled tasks folder======

C:\Windows\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler
C:\Windows\tasks\HPCeeScheduleForLUKASBERAN-NOTE$.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForLUKASBERAN-NOTE$ (null)
C:\Windows\tasks\HPCeeScheduleForLukáš.job - C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe HPCeeScheduleForLukáš (null)

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-07-27 218776]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\SetPointSmooth.dll [2014-05-19 433944]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2014-07-27 2335960]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2013-08-28 303416]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-05-21 153248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AF949550-9094-4807-95EC-D1C317803333}]
Logitech SetPoint - C:\Program Files\Logitech\SetPointP\32-bit\SetPointSmooth.dll [2014-05-19 364824]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2014-07-27 1730256]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{E76FD755-C1BA-4DCB-9F13-99BD91223ADE}]
HP Network Check Helper - C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2013-08-28 286520]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2013-09-19 500208]
"Creative SB Monitoring Utility"=RunDll32 sbavmon.dll,SBAVMonitor []
"SysTrayApp"=C:\Program Files\IDT\WDM\sttray64.exe [2012-11-12 1664000]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2014-01-25 391128]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2014-01-25 771544]
"Persistence"=C:\Windows\system32\igfxpers.exe [2014-01-25 770520]
"EvtMgr6"=C:\Program Files\Logitech\SetPointP\SetPoint.exe [2014-05-19 3100440]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"NCPluginUpdater"=c:\program files (x86)\hewlett-packard\hp health check\activecheck\product_line\NCPluginUpdater.exe [2014-08-05 21720]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"RESTART_STICKY_NOTES"=C:\Windows\System32\StikyNot.exe [2013-08-22 457728]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SwitchBoard"=C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]
"AdobeCS5ServiceManager"=C:\Program Files (x86)\Common Files\Adobe\CS5ServiceManager\CS5ServiceManager.exe [2010-07-22 402432]
"Adobe ARM"=C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2013-11-21 959904]
"KeePass 2 PreLoad"=C:\Program Files (x86)\KeePass Password Safe 2\KeePass.exe [2014-07-06 2117632]
"IMSS"=C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IMSS\PIconStartup.exe [2013-10-23 134616]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2013-10-24 56568]
"HP Software Update"=C:\Program Files (x86)\HP\HP Software Update\HPWuSchd2.exe [2010-06-09 49208]
"QLBController"=C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\QLBController.exe [2014-05-16 336672]
""= []

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
AVer HID Receiver.lnk - C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerHIDReceiver.exe
AVerQuick.lnk - C:\Program Files (x86)\Common Files\AVerMedia\AVerQuick\AVerQuick.exe
HP Digital Imaging Monitor.lnk - C:\Program Files (x86)\HP\Digital Imaging\bin\hpqtra08.exe

C:\Users\Lukáš\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
OneDrive for Business.lnk - C:\Program Files\Microsoft Office\Office15\GROOVE.EXE
Send to OneNote.lnk - C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2014-01-25 624640]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\LBTWlgn]
c:\program files\common files\logishrd\bluetooth\LBTWlgn.dll [2014-03-25 66328]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa]
"notification packages"=DPPassFilter
scecli

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll
"wave4"=wdmaud.drv
"midi4"=wdmaud.drv
"mixer4"=wdmaud.drv
"aux2"=wdmaud.drv
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2014-08-14 19:18:47 ----D---- C:\rsit
2014-08-14 19:18:47 ----D---- C:\Program Files\trend micro
2014-08-14 19:11:47 ----D---- C:\AdwCleaner
2014-08-12 20:08:49 ----A---- C:\Windows\system32\Windows.UI.Xaml.dll
2014-08-12 20:08:48 ----A---- C:\Windows\SYSWOW64\Windows.UI.Xaml.dll
2014-08-12 20:08:48 ----A---- C:\Windows\system32\shell32.dll
2014-08-12 20:08:47 ----A---- C:\Windows\SYSWOW64\shell32.dll
2014-08-12 20:08:47 ----A---- C:\Windows\system32\mstscax.dll
2014-08-12 20:08:46 ----A---- C:\Windows\SYSWOW64\mstscax.dll
2014-08-12 20:08:46 ----A---- C:\Windows\system32\Windows.UI.Search.dll
2014-08-12 20:08:46 ----A---- C:\Windows\system32\SettingsHandlers.dll
2014-08-12 20:08:46 ----A---- C:\Windows\system32\ntoskrnl.exe
2014-08-12 20:08:46 ----A---- C:\Windows\system32\d3d10warp.dll
2014-08-12 20:08:45 ----A---- C:\Windows\system32\twinui.dll
2014-08-12 20:08:45 ----A---- C:\Windows\system32\rpcrt4.dll
2014-08-12 20:08:45 ----A---- C:\Windows\system32\mfcore.dll
2014-08-12 20:08:45 ----A---- C:\Windows\system32\drivers\tcpip.sys
2014-08-12 20:08:45 ----A---- C:\Windows\system32\actxprxy.dll
2014-08-12 20:08:44 ----A---- C:\Windows\SYSWOW64\twinui.dll
2014-08-12 20:08:44 ----A---- C:\Windows\SYSWOW64\mfcore.dll
2014-08-12 20:08:44 ----A---- C:\Windows\SYSWOW64\d3d10warp.dll
2014-08-12 20:08:44 ----A---- C:\Windows\SYSWOW64\authui.dll
2014-08-12 20:08:44 ----A---- C:\Windows\system32\workfolderssvc.dll
2014-08-12 20:08:44 ----A---- C:\Windows\system32\wlansvc.dll
2014-08-12 20:08:44 ----A---- C:\Windows\system32\gpsvc.dll
2014-08-12 20:08:44 ----A---- C:\Windows\system32\authui.dll
2014-08-12 20:08:43 ----A---- C:\Windows\SYSWOW64\Windows.UI.Search.dll
2014-08-12 20:08:43 ----A---- C:\Windows\SYSWOW64\Windows.Media.dll
2014-08-12 20:08:43 ----A---- C:\Windows\SYSWOW64\mfmp4srcsnk.dll
2014-08-12 20:08:43 ----A---- C:\Windows\system32\WMVDECOD.DLL
2014-08-12 20:08:43 ----A---- C:\Windows\system32\Windows.Media.dll
2014-08-12 20:08:43 ----A---- C:\Windows\system32\mfmp4srcsnk.dll
2014-08-12 20:08:43 ----A---- C:\Windows\system32\localspl.dll
2014-08-12 20:08:43 ----A---- C:\Windows\system32\iphlpsvc.dll
2014-08-12 20:08:43 ----A---- C:\Windows\system32\drivers\srv.sys
2014-08-12 20:08:42 ----AC---- C:\Windows\system32\drivers\bthport.sys
2014-08-12 20:08:42 ----A---- C:\Windows\SYSWOW64\WMVDECOD.DLL
2014-08-12 20:08:42 ----A---- C:\Windows\SYSWOW64\rpcrt4.dll
2014-08-12 20:08:42 ----A---- C:\Windows\SYSWOW64\netcfgx.dll
2014-08-12 20:08:42 ----A---- C:\Windows\SYSWOW64\mispace.dll
2014-08-12 20:08:42 ----A---- C:\Windows\SYSWOW64\mfplat.dll
2014-08-12 20:08:42 ----A---- C:\Windows\SYSWOW64\actxprxy.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\XpsPrint.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\wuaueng.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\WorkfoldersControl.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\SRH.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\printui.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\netcfgx.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\mispace.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\mfplat.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\dxgi.dll
2014-08-12 20:08:42 ----A---- C:\Windows\system32\drivers\srv2.sys
2014-08-12 20:08:42 ----A---- C:\Windows\system32\drivers\ntfs.sys
2014-08-12 20:08:42 ----A---- C:\Windows\system32\drivers\netio.sys
2014-08-12 20:08:42 ----A---- C:\Windows\system32\AppxPackaging.dll
2014-08-12 20:08:41 ----AC---- C:\Windows\system32\drivers\volsnap.sys
2014-08-12 20:08:41 ----AC---- C:\Windows\system32\drivers\usbccgp.sys
2014-08-12 20:08:41 ----AC---- C:\Windows\system32\drivers\spaceport.sys
2014-08-12 20:08:41 ----A---- C:\Windows\SYSWOW64\wlanmsm.dll
2014-08-12 20:08:41 ----A---- C:\Windows\SYSWOW64\Windows.Devices.Bluetooth.dll
2014-08-12 20:08:41 ----A---- C:\Windows\SYSWOW64\SRH.dll
2014-08-12 20:08:41 ----A---- C:\Windows\SYSWOW64\printui.dll
2014-08-12 20:08:41 ----A---- C:\Windows\SYSWOW64\mfreadwrite.dll
2014-08-12 20:08:41 ----A---- C:\Windows\SYSWOW64\dxgi.dll
2014-08-12 20:08:41 ----A---- C:\Windows\SYSWOW64\AppxPackaging.dll
2014-08-12 20:08:41 ----A---- C:\Windows\SYSWOW64\aclui.dll
2014-08-12 20:08:41 ----A---- C:\Windows\system32\WSDMon.dll
2014-08-12 20:08:41 ----A---- C:\Windows\system32\wlanmsm.dll
2014-08-12 20:08:41 ----A---- C:\Windows\system32\uDWM.dll
2014-08-12 20:08:41 ----A---- C:\Windows\system32\srvsvc.dll
2014-08-12 20:08:41 ----A---- C:\Windows\system32\spoolsv.exe
2014-08-12 20:08:41 ----A---- C:\Windows\system32\SHCore.dll
2014-08-12 20:08:41 ----A---- C:\Windows\system32\puiobj.dll
2014-08-12 20:08:41 ----A---- C:\Windows\system32\mfreadwrite.dll
2014-08-12 20:08:41 ----A---- C:\Windows\system32\aclui.dll
2014-08-12 20:08:40 ----AC---- C:\Windows\system32\drivers\USBHUB3.SYS
2014-08-12 20:08:40 ----A---- C:\Windows\SYSWOW64\SHCore.dll
2014-08-12 20:08:40 ----A---- C:\Windows\SYSWOW64\mftranscode.dll
2014-08-12 20:08:40 ----A---- C:\Windows\SYSWOW64\comdlg32.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\wuapi.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\wsecedit.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\wisp.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\winresume.exe
2014-08-12 20:08:40 ----A---- C:\Windows\system32\winload.exe
2014-08-12 20:08:40 ----A---- C:\Windows\system32\WebClnt.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\usbmon.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\storagewmi.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\mftranscode.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\lsasrv.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\drivers\srvnet.sys
2014-08-12 20:08:40 ----A---- C:\Windows\system32\defragsvc.dll
2014-08-12 20:08:40 ----A---- C:\Windows\system32\comdlg32.dll
2014-08-12 20:08:39 ----AC---- C:\Windows\system32\drivers\usbhub.sys
2014-08-12 20:08:39 ----A---- C:\Windows\SYSWOW64\wlanapi.dll
2014-08-12 20:08:39 ----A---- C:\Windows\SYSWOW64\WebClnt.dll
2014-08-12 20:08:39 ----A---- C:\Windows\SYSWOW64\storagewmi.dll
2014-08-12 20:08:39 ----A---- C:\Windows\SYSWOW64\puiobj.dll
2014-08-12 20:08:39 ----A---- C:\Windows\SYSWOW64\Display.dll
2014-08-12 20:08:39 ----A---- C:\Windows\SYSWOW64\clusapi.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\wpdbusenum.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\winmmbase.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\win32spl.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\WiFiDisplay.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\VAN.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\user32.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\SettingSync.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\rdvidcrl.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\rdpcorets.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\profsvc.dll
2014-08-12 20:08:39 ----A---- C:\Windows\system32\drivers\nwifi.sys
2014-08-12 20:08:39 ----A---- C:\Windows\system32\conhost.exe
2014-08-12 20:08:38 ----AC---- C:\Windows\system32\drivers\hdaudbus.sys
2014-08-12 20:08:38 ----A---- C:\Windows\SYSWOW64\wuapi.dll
2014-08-12 20:08:38 ----A---- C:\Windows\SYSWOW64\wsecedit.dll
2014-08-12 20:08:38 ----A---- C:\Windows\SYSWOW64\wisp.dll
2014-08-12 20:08:38 ----A---- C:\Windows\SYSWOW64\winmmbase.dll
2014-08-12 20:08:38 ----A---- C:\Windows\SYSWOW64\bcryptprimitives.dll
2014-08-12 20:08:38 ----A---- C:\Windows\SYSWOW64\AppxSip.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\WUSettingsProvider.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\wucltux.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\WSShared.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\WorkFoldersGPExt.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\winmm.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\Windows.Networking.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\twinapi.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\SndVol.exe
2014-08-12 20:08:38 ----A---- C:\Windows\system32\prnntfy.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\osk.exe
2014-08-12 20:08:38 ----A---- C:\Windows\system32\mfps.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\httpprxm.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\GdiPlus.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\dwmcore.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\dwmapi.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\drivers\NdisImPlatform.sys
2014-08-12 20:08:38 ----A---- C:\Windows\system32\drivers\ndis.sys
2014-08-12 20:08:38 ----A---- C:\Windows\system32\drivers\msgpioclx.sys
2014-08-12 20:08:38 ----A---- C:\Windows\system32\drivers\mrxsmb20.sys
2014-08-12 20:08:38 ----A---- C:\Windows\system32\drivers\IPMIDrv.sys
2014-08-12 20:08:38 ----A---- C:\Windows\system32\drivers\bridge.sys
2014-08-12 20:08:38 ----A---- C:\Windows\system32\Display.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\DafPrintProvider.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\clusapi.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\bcryptprimitives.dll
2014-08-12 20:08:38 ----A---- C:\Windows\system32\AppxSip.dll
2014-08-12 20:08:37 ----AC---- C:\Windows\system32\drivers\pci.sys
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\XpsPrint.dll
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\WSShared.dll
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\winmm.dll
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\VAN.dll
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\SndVol.exe
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\rdvidcrl.dll
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\puiapi.dll
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\prnntfy.dll
2014-08-12 20:08:37 ----A---- C:\Windows\SYSWOW64\dwmapi.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\wups.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\WorkFoldersShell.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\wcmcsp.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\SystemSettingsAdminFlows.exe
2014-08-12 20:08:37 ----A---- C:\Windows\system32\stobject.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\puiapi.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\ppcsnap.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\iasnap.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\gpedit.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\drivers\ks.sys
2014-08-12 20:08:37 ----A---- C:\Windows\system32\drivers\dxgkrnl.sys
2014-08-12 20:08:37 ----A---- C:\Windows\system32\AppxSysprep.dll
2014-08-12 20:08:37 ----A---- C:\Windows\system32\adhsvc.dll
2014-08-12 20:08:36 ----A---- C:\Windows\SYSWOW64\Windows.Networking.dll
2014-08-12 20:08:36 ----A---- C:\Windows\SYSWOW64\SettingSync.dll
2014-08-12 20:08:36 ----A---- C:\Windows\SYSWOW64\rsaenh.dll
2014-08-12 20:08:36 ----A---- C:\Windows\SYSWOW64\osk.exe
2014-08-12 20:08:36 ----A---- C:\Windows\SYSWOW64\iasnap.dll
2014-08-12 20:08:36 ----A---- C:\Windows\SYSWOW64\gpedit.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\wwanconn.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\wups2.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\wuauclt.exe
2014-08-12 20:08:36 ----A---- C:\Windows\system32\wshbth.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\wlanapi.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\schannel.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\rsaenh.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\pmcsnap.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\dab.dll
2014-08-12 20:08:36 ----A---- C:\Windows\system32\ActionCenter.dll
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\wups.dll
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\wshbth.dll
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\user32.dll
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\stobject.dll
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\schannel.dll
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\KBDRUM.DLL
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\GdiPlus.dll
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\DafPrintProvider.dll
2014-08-12 20:08:35 ----A---- C:\Windows\SYSWOW64\ActionCenter.dll
2014-08-12 20:08:35 ----A---- C:\Windows\system32\wlansvcpal.dll
2014-08-12 20:08:35 ----A---- C:\Windows\system32\Windows.Devices.Bluetooth.dll
2014-08-12 20:08:35 ----A---- C:\Windows\system32\SearchFolder.dll
2014-08-12 20:08:35 ----A---- C:\Windows\system32\PrintDialogs.dll
2014-08-12 20:08:35 ----A---- C:\Windows\system32\KBDYAK.DLL
2014-08-12 20:08:35 ----A---- C:\Windows\system32\KBDRUM.DLL
2014-08-12 20:08:35 ----A---- C:\Windows\system32\KBDRU1.DLL
2014-08-12 20:08:35 ----A---- C:\Windows\system32\KBDRU.DLL
2014-08-12 20:08:35 ----A---- C:\Windows\system32\KBDBASH.DLL
2014-08-12 20:08:35 ----A---- C:\Windows\system32\Defrag.exe
2014-08-12 20:08:35 ----A---- C:\Windows\system32\browser.dll
2014-08-12 20:08:34 ----AC---- C:\Windows\system32\drivers\bthpan.sys
2014-08-12 20:08:34 ----A---- C:\Windows\SYSWOW64\PrintDialogs.dll
2014-08-12 20:08:34 ----A---- C:\Windows\SYSWOW64\KBDYAK.DLL
2014-08-12 20:08:34 ----A---- C:\Windows\SYSWOW64\KBDTAT.DLL
2014-08-12 20:08:34 ----A---- C:\Windows\SYSWOW64\KBDRU1.DLL
2014-08-12 20:08:34 ----A---- C:\Windows\SYSWOW64\KBDRU.DLL
2014-08-12 20:08:34 ----A---- C:\Windows\SYSWOW64\KBDBASH.DLL
2014-08-12 20:08:34 ----A---- C:\Windows\SYSWOW64\certcli.dll
2014-08-12 20:08:34 ----A---- C:\Windows\SYSWOW64\BluetoothApis.dll
2014-08-12 20:08:34 ----A---- C:\Windows\system32\wwanmm.dll
2014-08-12 20:08:34 ----A---- C:\Windows\system32\wlansec.dll
2014-08-12 20:08:34 ----A---- C:\Windows\system32\SndVolSSO.dll
2014-08-12 20:08:34 ----A---- C:\Windows\system32\rdpudd.dll
2014-08-12 20:08:34 ----A---- C:\Windows\system32\KBDTAT.DLL
2014-08-12 20:08:34 ----A---- C:\Windows\system32\compstui.dll
2014-08-12 20:08:34 ----A---- C:\Windows\system32\certcli.dll
2014-08-12 20:08:34 ----A---- C:\Windows\system32\BluetoothApis.dll
2014-08-12 20:08:33 ----A---- C:\Windows\SYSWOW64\wudriver.dll
2014-08-12 20:08:33 ----A---- C:\Windows\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-08-12 20:08:33 ----A---- C:\Windows\SYSWOW64\KBDTT102.DLL
2014-08-12 20:08:33 ----A---- C:\Windows\system32\wudriver.dll
2014-08-12 20:08:33 ----A---- C:\Windows\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-08-12 20:08:33 ----A---- C:\Windows\system32\SystemSettingsAdminFlowUI.dll
2014-08-12 20:08:33 ----A---- C:\Windows\system32\KBDTT102.DLL
2014-08-12 20:06:58 ----A---- C:\Windows\SYSWOW64\mshtmled.dll
2014-08-12 20:06:58 ----A---- C:\Windows\SYSWOW64\mshtml.dll
2014-08-12 20:06:58 ----A---- C:\Windows\SYSWOW64\jscript9diag.dll
2014-08-12 20:06:57 ----A---- C:\Windows\SYSWOW64\urlmon.dll
2014-08-12 20:06:57 ----A---- C:\Windows\SYSWOW64\msfeeds.dll
2014-08-12 20:06:57 ----A---- C:\Windows\SYSWOW64\iertutil.dll
2014-08-12 20:06:57 ----A---- C:\Windows\SYSWOW64\ieframe.dll
2014-08-12 20:06:57 ----A---- C:\Windows\SYSWOW64\dxtrans.dll
2014-08-12 20:06:57 ----A---- C:\Windows\SYSWOW64\dxtmsft.dll
2014-08-12 20:06:57 ----A---- C:\Windows\system32\urlmon.dll
2014-08-12 20:06:57 ----A---- C:\Windows\system32\msfeeds.dll
2014-08-12 20:06:57 ----A---- C:\Windows\system32\dxtmsft.dll
2014-08-12 20:06:56 ----A---- C:\Windows\SYSWOW64\jscript9.dll
2014-08-12 20:06:56 ----A---- C:\Windows\SYSWOW64\ieapfltr.dll
2014-08-12 20:06:56 ----A---- C:\Windows\system32\iertutil.dll
2014-08-12 20:06:55 ----A---- C:\Windows\system32\ieframe.dll
2014-08-12 20:06:55 ----A---- C:\Windows\system32\dxtrans.dll
2014-08-12 20:06:54 ----A---- C:\Windows\system32\mshtmled.dll
2014-08-12 20:06:54 ----A---- C:\Windows\system32\mshtml.dll
2014-08-12 20:06:54 ----A---- C:\Windows\system32\jscript9diag.dll
2014-08-12 20:06:54 ----A---- C:\Windows\system32\jscript9.dll
2014-08-12 20:06:54 ----A---- C:\Windows\system32\ieapfltr.dll
2014-08-12 20:06:53 ----A---- C:\Windows\SYSWOW64\wininet.dll
2014-08-12 20:06:53 ----A---- C:\Windows\SYSWOW64\iedkcs32.dll
2014-08-12 20:06:53 ----A---- C:\Windows\system32\wininet.dll
2014-08-12 20:06:53 ----A---- C:\Windows\system32\JavaScriptCollectionAgent.dll
2014-08-12 20:06:53 ----A---- C:\Windows\system32\iedkcs32.dll
2014-08-12 20:06:53 ----A---- C:\Windows\system32\ie4uinit.exe
2014-08-12 20:06:52 ----A---- C:\Windows\SYSWOW64\vbscript.dll
2014-08-12 20:06:52 ----A---- C:\Windows\SYSWOW64\MshtmlDac.dll
2014-08-12 20:06:52 ----A---- C:\Windows\SYSWOW64\JavaScriptCollectionAgent.dll
2014-08-12 20:06:52 ----A---- C:\Windows\system32\vbscript.dll
2014-08-12 20:06:52 ----A---- C:\Windows\system32\MshtmlDac.dll
2014-08-12 20:05:32 ----A---- C:\Windows\SYSWOW64\explorer.exe
2014-08-12 20:05:32 ----A---- C:\Windows\explorer.exe
2014-08-12 20:05:02 ----A---- C:\Windows\SYSWOW64\TsWpfWrp.exe
2014-08-12 20:05:02 ----A---- C:\Windows\system32\TsWpfWrp.exe
2014-08-12 20:04:14 ----A---- C:\Windows\system32\MrmCoreR.dll
2014-08-12 20:04:14 ----A---- C:\Windows\system32\aepdu.dll
2014-08-12 20:04:14 ----A---- C:\Windows\system32\aeinv.dll
2014-08-12 20:04:13 ----A---- C:\Windows\system32\WpcMon.exe
2014-08-12 20:04:13 ----A---- C:\Windows\system32\Wpc.dll
2014-08-12 20:04:12 ----A---- C:\Windows\SYSWOW64\Wpc.dll
2014-08-12 20:04:12 ----A---- C:\Windows\SYSWOW64\gdi32.dll
2014-08-12 20:04:12 ----A---- C:\Windows\system32\WpcWebSync.dll
2014-08-12 20:04:12 ----A---- C:\Windows\system32\win32k.sys
2014-08-12 20:04:12 ----A---- C:\Windows\system32\MDMAgent.exe
2014-08-12 20:04:12 ----A---- C:\Windows\system32\gdi32.dll
2014-08-12 20:04:02 ----A---- C:\Windows\SYSWOW64\msihnd.dll
2014-08-12 20:04:02 ----A---- C:\Windows\SYSWOW64\msi.dll
2014-08-12 20:04:02 ----A---- C:\Windows\system32\msihnd.dll
2014-08-12 20:04:02 ----A---- C:\Windows\system32\msi.dll
2014-08-12 20:04:02 ----A---- C:\Windows\system32\consent.exe
2014-08-07 01:07:39 ----D---- C:\Users\Lukáš\AppData\Roaming\vlc
2014-07-30 04:26:51 ----A---- C:\ProgramData\hpdam_install_log.txt
2014-07-22 20:12:23 ----A---- C:\Windows\system32\SyncEngine.dll
2014-07-22 20:12:23 ----A---- C:\Windows\system32\SkyDriveTelemetry.dll
2014-07-22 20:12:23 ----A---- C:\Windows\system32\SkyDrive.exe
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\zh-Hant
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\zh-Hans
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\tr
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\th
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\sv
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\sr
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\sl
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\sk
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\ru
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\ro
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\pl
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\no
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\nl
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\lv
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\lt
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\ko
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\ja
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\it
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\hu
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\hr
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\he
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\fr
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\fi
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\et
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\es
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\el
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\de
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\da
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\cs
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\bg
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\ar
2014-07-22 00:47:41 ----D---- C:\Windows\system32\zh-Hant
2014-07-22 00:47:41 ----D---- C:\Windows\system32\zh-Hans
2014-07-22 00:47:41 ----D---- C:\Windows\system32\tr
2014-07-22 00:47:41 ----D---- C:\Windows\system32\th
2014-07-22 00:47:41 ----D---- C:\Windows\system32\sv
2014-07-22 00:47:41 ----D---- C:\Windows\system32\sr
2014-07-22 00:47:41 ----D---- C:\Windows\system32\sl
2014-07-22 00:47:41 ----D---- C:\Windows\system32\sk
2014-07-22 00:47:41 ----D---- C:\Windows\system32\ru
2014-07-22 00:47:41 ----D---- C:\Windows\system32\ro
2014-07-22 00:47:41 ----D---- C:\Windows\system32\pl
2014-07-22 00:47:41 ----D---- C:\Windows\system32\no
2014-07-22 00:47:41 ----D---- C:\Windows\system32\nl
2014-07-22 00:47:41 ----D---- C:\Windows\system32\lv
2014-07-22 00:47:41 ----D---- C:\Windows\system32\lt
2014-07-22 00:47:41 ----D---- C:\Windows\system32\ko
2014-07-22 00:47:41 ----D---- C:\Windows\system32\ja
2014-07-22 00:47:41 ----D---- C:\Windows\system32\it
2014-07-22 00:47:41 ----D---- C:\Windows\system32\hu
2014-07-22 00:47:41 ----D---- C:\Windows\system32\hr
2014-07-22 00:47:41 ----D---- C:\Windows\system32\he
2014-07-22 00:47:41 ----D---- C:\Windows\system32\fr
2014-07-22 00:47:41 ----D---- C:\Windows\system32\fi
2014-07-22 00:47:41 ----D---- C:\Windows\system32\et
2014-07-22 00:47:41 ----D---- C:\Windows\system32\es
2014-07-22 00:47:41 ----D---- C:\Windows\system32\el
2014-07-22 00:47:41 ----D---- C:\Windows\system32\de
2014-07-22 00:47:41 ----D---- C:\Windows\system32\da
2014-07-22 00:47:41 ----D---- C:\Windows\system32\cs
2014-07-22 00:47:41 ----D---- C:\Windows\system32\bg
2014-07-22 00:47:41 ----D---- C:\Windows\system32\ar
2014-07-22 00:47:39 ----D---- C:\Windows\DPDrv
2014-07-22 00:32:42 ----A---- C:\Windows\SYSWOW64\SynTPCom.dll
2014-07-22 00:32:41 ----A---- C:\Windows\system32\SynTPCo19.dll
2014-07-22 00:32:41 ----A---- C:\Windows\system32\SynTPAPI.dll
2014-07-22 00:32:41 ----A---- C:\Windows\system32\drivers\SynTP.sys
2014-07-22 00:32:37 ----A---- C:\Windows\SYSWOW64\SynCom.dll
2014-07-22 00:32:37 ----A---- C:\Windows\system32\SynCOM.dll
2014-07-22 00:29:49 ----D---- C:\Program Files\Broadcom

======List of files/folders modified in the last 1 month======

2014-08-19 16:46:41 ----D---- C:\Users\Lukáš\AppData\Roaming\Skype
2014-08-19 16:43:04 ----D---- C:\Windows\Prefetch
2014-08-19 16:22:42 ----D---- C:\Windows\Temp
2014-08-19 16:20:27 ----D---- C:\Windows\Microsoft.NET
2014-08-19 16:10:26 ----D---- C:\Windows
2014-08-19 16:09:47 ----SHD---- C:\System Volume Information
2014-08-19 16:09:43 ----A---- C:\Windows\SYSWOW64\log.txt
2014-08-19 16:09:35 ----D---- C:\Windows\system32\sru
2014-08-18 21:41:16 ----D---- C:\Users\Lukáš\AppData\Roaming\KeePass
2014-08-18 20:53:58 ----D---- C:\Windows\Tasks
2014-08-18 20:53:58 ----D---- C:\Windows\system32\Tasks
2014-08-18 20:52:11 ----A---- C:\Windows\system32\HP_ActiveX_Patch_NOT_DETECTED.txt
2014-08-18 18:26:36 ----RD---- C:\Windows\System32
2014-08-18 18:26:36 ----D---- C:\Windows\Inf
2014-08-18 18:26:36 ----A---- C:\Windows\system32\PerfStringBackup.INI
2014-08-17 10:30:43 ----D---- C:\Windows\system32\config
2014-08-16 10:47:35 ----D---- C:\Windows\system32\catroot2
2014-08-16 10:31:39 ----HD---- C:\Program Files\WindowsApps
2014-08-16 10:31:39 ----D---- C:\Windows\AppReadiness
2014-08-16 02:15:22 ----D---- C:\Windows\system32\DriverStore
2014-08-16 02:15:18 ----D---- C:\Windows\WinSxS
2014-08-14 19:42:17 ----D---- C:\Windows\rescache
2014-08-14 19:28:36 ----D---- C:\Windows\debug
2014-08-14 19:18:57 ----D---- C:\Users\Lukáš\AppData\Roaming\HpUpdate
2014-08-14 19:18:47 ----RD---- C:\Program Files
2014-08-14 19:14:17 ----SHD---- C:\Windows\Installer
2014-08-14 19:14:17 ----HD---- C:\Config.Msi
2014-08-14 19:14:13 ----D---- C:\Windows\SysWOW64
2014-08-14 19:02:16 ----D---- C:\Windows\SoftwareDistribution
2014-08-14 17:59:19 ----RSD---- C:\Windows\assembly
2014-08-13 14:33:31 ----D---- C:\Windows\system32\catroot
2014-08-12 20:26:28 ----D---- C:\Windows\SYSWOW64\en-US
2014-08-12 20:26:28 ----D---- C:\Windows\system32\en-US
2014-08-12 20:26:28 ----D---- C:\Windows\PolicyDefinitions
2014-08-12 20:26:28 ----D---- C:\Program Files\Internet Explorer
2014-08-12 20:26:28 ----D---- C:\Program Files (x86)\Internet Explorer
2014-08-12 20:26:27 ----RD---- C:\Windows\ToastData
2014-08-12 20:26:27 ----D---- C:\Windows\system32\migration
2014-08-12 20:26:26 ----D---- C:\Program Files\Windows Journal
2014-08-12 20:26:25 ----RD---- C:\Windows\ImmersiveControlPanel
2014-08-12 20:26:25 ----D---- C:\Windows\WinStore
2014-08-12 20:26:25 ----D---- C:\Windows\SYSWOW64\wbem
2014-08-12 20:26:25 ----D---- C:\Windows\SYSWOW64\setup
2014-08-12 20:26:25 ----D---- C:\Windows\system32\wbem
2014-08-12 20:26:25 ----D---- C:\Windows\system32\setup
2014-08-12 20:26:25 ----D---- C:\Windows\system32\oobe
2014-08-12 20:26:25 ----D---- C:\Windows\system32\drivers\en-US
2014-08-12 20:26:25 ----D---- C:\Windows\system32\drivers
2014-08-12 20:26:25 ----D---- C:\Windows\system32\Boot
2014-08-12 20:26:24 ----RSD---- C:\Windows\Fonts
2014-08-12 20:26:24 ----D---- C:\Windows\SYSWOW64\migration
2014-08-12 20:26:24 ----D---- C:\Windows\SYSWOW64\InputMethod
2014-08-12 20:26:24 ----D---- C:\Windows\apppatch
2014-08-12 20:18:58 ----D---- C:\ProgramData\Microsoft Help
2014-08-12 20:18:41 ----D---- C:\Windows\CbsTemp
2014-08-12 20:17:39 ----D---- C:\Windows\system32\MRT
2014-08-12 20:16:25 ----A---- C:\Windows\system32\MRT.exe
2014-08-12 20:14:33 ----A---- C:\Windows\win.ini
2014-08-12 20:13:32 ----SD---- C:\Windows\system32\CompatTel
2014-08-12 20:03:58 ----A---- C:\Windows\SYSWOW64\msrating.dll
2014-08-12 20:03:58 ----A---- C:\Windows\SYSWOW64\jsproxy.dll
2014-08-12 20:03:53 ----A---- C:\Windows\SYSWOW64\ieetwproxystub.dll
2014-08-12 20:03:53 ----A---- C:\Windows\system32\ieetwproxystub.dll
2014-08-12 20:03:53 ----A---- C:\Windows\system32\ieetwcollectorres.dll
2014-08-12 20:03:53 ----A---- C:\Windows\system32\ieetwcollector.exe
2014-08-12 20:03:52 ----A---- C:\Windows\SYSWOW64\ieUnatt.exe
2014-08-12 20:03:52 ----A---- C:\Windows\SYSWOW64\iesetup.dll
2014-08-12 20:03:52 ----A---- C:\Windows\SYSWOW64\iernonce.dll
2014-08-12 20:03:52 ----A---- C:\Windows\system32\ieUnatt.exe
2014-08-12 20:03:52 ----A---- C:\Windows\system32\iesetup.dll
2014-08-12 20:03:52 ----A---- C:\Windows\system32\iernonce.dll
2014-08-12 20:03:50 ----A---- C:\Windows\system32\jsproxy.dll
2014-08-11 00:02:09 ----D---- C:\Windows\Hewlett-Packard
2014-08-10 23:57:44 ----D---- C:\SWSetup
2014-08-10 23:53:54 ----D---- C:\Program Files (x86)\CDBurnerXP
2014-08-06 16:51:30 ----D---- C:\ProgramData\Skype
2014-08-06 16:51:30 ----D---- C:\Program Files (x86)\Common Files
2014-08-04 02:47:07 ----D---- C:\Program Files (x86)\Hewlett-Packard
2014-08-02 02:17:43 ----A---- C:\Windows\SYSWOW64\FlashPlayerApp.exe
2014-07-30 17:56:51 ----D---- C:\Windows\Minidump
2014-07-30 17:56:03 ----D---- C:\Program Files\CCleaner
2014-07-30 04:33:14 ----D---- C:\Program Files\Microsoft Silverlight
2014-07-30 04:33:14 ----D---- C:\Program Files (x86)\Microsoft Silverlight
2014-07-30 04:27:05 ----D---- C:\Windows\SYSWOW64\drivers
2014-07-30 04:26:51 ----HD---- C:\ProgramData
2014-07-24 15:29:45 ----A---- C:\Windows\SYSWOW64\PrintConfig.dll
2014-07-22 03:35:34 ----D---- C:\Program Files\Common Files\LogiShrd
2014-07-22 03:35:22 ----D---- C:\ProgramData\Logishrd
2014-07-22 00:48:38 ----HD---- C:\Program Files (x86)\InstallShield Installation Information
2014-07-22 00:48:06 ----D---- C:\Program Files\Hewlett-Packard
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\pt-PT
2014-07-22 00:47:42 ----D---- C:\Windows\SYSWOW64\pt-BR
2014-07-22 00:47:42 ----D---- C:\Windows\system32\pt-PT
2014-07-22 00:47:42 ----D---- C:\Windows\system32\pt-BR
2014-07-22 00:46:35 ----D---- C:\ProgramData\HPQLOG
2014-07-22 00:46:28 ----D---- C:\ProgramData\Package Cache
2014-07-21 03:25:10 ----D---- C:\Program Files (x86)\KeePass Password Safe 2

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 hpdskflt;@oem38.inf,%service_desc%;HP Filter; C:\Windows\system32\DRIVERS\hpdskflt.sys [2012-09-07 31040]
R0 iaStorA;iaStorA; C:\Windows\System32\drivers\iaStorA.sys [2013-10-24 641672]
R3 Accelerometer;@oem38.inf,%accelerometer_desc%;HP Mobile Data Protection Sensor; C:\Windows\system32\DRIVERS\Accelerometer.sys [2012-09-07 43328]
R3 AVerAF35;@oem2.inf,%AF9035Devcie.FriendlyName%;AVerMedia A835 USB DVB-T; C:\Windows\System32\Drivers\AVerAF35.sys [2013-06-05 804992]
R3 bcbtums;@oem37.inf,%BCBTUMS.SvcDesc%;Bluetooth RAM Firmware Download USB Filter; C:\Windows\system32\drivers\bcbtums.sys [2014-04-24 170712]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\Windows\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\Windows\System32\drivers\BthLEEnum.sys [2013-12-04 226304]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\Windows\System32\Drivers\BTHUSB.sys [2014-01-31 81920]
R3 e1cexpress;@oem10.inf,%e1cExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver C; C:\Windows\system32\DRIVERS\e1c64x64.sys [2013-08-08 469264]
R3 HpqKbFiltr;@oem44.inf,%HpqKbFiltr.SvcDesc%;HpqKbFilter Driver; C:\Windows\System32\drivers\HpqKbFiltr64.sys [2014-05-15 28376]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd64.sys [2014-01-25 4221440]
R3 iwdbus;@oem34.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\Windows\System32\drivers\iwdbus.sys [2013-12-27 27032]
R3 JMCR;JMCR; C:\Windows\System32\drivers\jmcr.sys [2013-10-22 176880]
R3 johci;@oem39.inf,%service_desc%;JMicron 1394 Filter Driver; C:\Windows\System32\drivers\johci.sys [2013-10-22 26208]
R3 ksaud;@oem29.inf,%KSAUD.SvcDesc%;Creative USB Audio Driver; C:\Windows\system32\drivers\ksaud.sys [2011-09-13 1588608]
R3 LHidFilt;@oem21.inf,%LHidFilt.SvcDesc%;Logitech SetPoint KMDF HID Filter Driver; C:\Windows\system32\DRIVERS\LHidFilt.Sys [2014-03-19 76568]
R3 MEIx64;@oem46.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\Windows\System32\drivers\HECIx64.sys [2013-10-23 62784]
R3 NETwNe64;@oem28.inf,___ %NIC_Service_DispName_WIN8_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\Windows\system32\DRIVERS\NETwew00.sys [2013-09-04 3345376]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\Windows\System32\drivers\rfcomm.sys [2014-01-27 167424]
R3 SensorsServiceDriver;@sensorsservicedriver.inf,%WudfSensorsServiceDriverDisplayName%;UMDF Reflector service for SensorsServiceDriver; C:\Windows\system32\DRIVERS\WUDFRd.sys [2014-05-31 227840]
R3 SNP2UVC;@oem5.inf,%SERVICE_DISPLAY_NAME%;USB2.0 PC Camera (SNP2UVC); C:\Windows\system32\DRIVERS\snp2uvc.sys [2012-11-28 1866080]
R3 STHDA;@%SystemRoot%\system32\stlang64.dll,-10301; C:\Windows\system32\DRIVERS\stwrt64.sys [2012-11-12 543744]
R3 SynTP;@oem61.inf,%SynTP.SvcDesc%;Synaptics TouchPad Driver; C:\Windows\system32\DRIVERS\SynTP.sys [2014-07-22 555760]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\Windows\System32\drivers\bthpan.sys [2014-07-24 118272]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\Windows\System32\Drivers\BTHport.sys [2014-07-24 1200640]
S3 btwampfl;@oem37.inf,%btwampfl.ServiceName%;btwampfl; C:\Windows\system32\DRIVERS\btwampfl.sys [2013-09-04 166104]
S3 damdrv;DAMDrv; C:\Windows\system32\DRIVERS\DAMDrv64.sys [2013-10-07 65752]
S3 e1iexpress;@net1ic64.inf,%e1iExpress.Service.DispName%;Intel(R) PRO/1000 PCI Express Network Connection Driver I; C:\Windows\system32\DRIVERS\e1i63x64.sys [2013-06-18 460288]
S3 intaud_WaveExtensible;@oem33.inf,%INTAUD_WEX.SvcDesc%;Intel WiDi Audio Device; C:\Windows\system32\drivers\intelaud.sys [2013-12-27 38296]
S3 LMouFilt;@oem23.inf,%LMouFilt.SvcDesc%;Logitech SetPoint KMDF Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouFilt.Sys [2014-03-19 59160]
S3 usbaudio;@wdma_usb.inf,%USBAudio.SvcDesc%;USB Audio Driver (WDM); C:\Windows\system32\drivers\usbaudio.sys [2013-12-13 121088]
S3 usbscan;@sti.inf,%usbscan.SvcDesc%;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2013-08-22 44544]
S3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\Windows\System32\Drivers\usbvideo.sys [2013-08-22 212224]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2013-12-21 65432]
R2 AVerRemote;AVerRemote; C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerRemote.exe [2013-06-26 368640]
R2 AVerScheduleService;AVerScheduleService; C:\Program Files (x86)\Common Files\AVerMedia\Service\AVerScheduleService.exe [2011-04-01 403456]
R2 AVerUpdateServer;AVerUpdateServer; C:\Program Files (x86)\AVerMedia\AVerUpdate\AVerUpdateServer.exe [2011-10-31 167936]
R2 CtAgentService;Absolute Software Agent Service; C:\Program Files (x86)\Hewlett-Packard\HP Theft Recovery\CtService.exe [2014-03-31 7168]
R2 DpHost;@C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe,-128; C:\Program Files\Hewlett-Packard\HP ProtectTools Security Manager\Bin\DpHostW.exe [2014-02-11 500048]
R2 HP Support Assistant Service;HP Support Assistant Service; C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\hpsa_service.exe [2013-11-04 92160]
R2 HpDamServiceHost;HP Device Access Manager Usage Service; C:\Program Files (x86)\Hewlett-Packard\HP Device Access Manager\HP.ProtectTools.DeviceAccessManager.ServiceHost.exe [2014-04-10 18232]
R2 hpHotkeyMonitor;hpHotkeyMonitor; C:\Program Files (x86)\Hewlett-Packard\HP Hotkey Support\HPHotkeyMonitor.exe [2014-05-16 683296]
R2 hpqddsvc;HP CUE DeviceDiscovery Service; C:\Windows\system32\svchost.exe [2013-08-22 37768]
R2 HPSLPSVC;HP Network Devices Support; C:\Windows\system32\svchost.exe [2013-08-22 37768]
R2 hpsrv;@oem38.inf,%hpservice_desc%;HP Service; C:\Windows\system32\Hpservice.exe [2012-09-07 33600]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2013-10-24 15496]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; C:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-12-10 732160]
R2 Intel(R) ME Service;Intel(R) ME Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe [2013-10-23 131032]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2013-10-23 165336]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2013-10-23 279000]
R2 msoidsvc;Microsoft Online Services Sign-in Assistant; C:\Program Files\Common Files\Microsoft Shared\Microsoft Online Services\MSOIDSVC.EXE [2012-05-17 2079520]
R2 STacSV;@%SystemRoot%\system32\stlang64.dll,-10101; C:\Program Files\IDT\WDM\STacSV64.exe [2012-11-12 327680]
R2 TeamViewer9;TeamViewer 9; C:\Program Files (x86)\TeamViewer\Version9\TeamViewer_Service.exe [2014-08-06 5052224]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2013-10-23 366040]
R2 vcsFPService;Validity VCS Fingerprint Service; C:\Windows\system32\vcsFPService.exe [2013-09-12 3221392]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\Windows\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
R3 hpqcxs08;hpqcxs08; C:\Windows\system32\svchost.exe [2013-08-22 37768]
R3 hpqwmiex;HP Software Framework Service; C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe [2013-11-13 1233592]
S2 BcmBtRSupport;@oem37.inf,%BlueBcmBtRSupport.SVCNAME%;Bluetooth Driver Management Service; C:\Windows\system32\BtwRSupportService.exe [2014-04-24 2251992]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-19 116648]
S2 Net Driver HPZ12;Net Driver HPZ12; C:\Windows\System32\svchost.exe [2013-08-22 37768]
S2 Pml Driver HPZ12;Pml Driver HPZ12; C:\Windows\System32\svchost.exe [2013-08-22 37768]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2013-10-23 172192]
S3 cphs;Intel(R) Content Protection HECI Service; C:\Windows\SysWow64\IntelCpHeciSvc.exe [2014-01-25 279000]
S3 Creative Audio Engine Licensing Service;Creative Audio Engine Licensing Service; C:\Program Files (x86)\Common Files\Creative Labs Shared\Service\CTAELicensing.exe [2013-09-20 79360]
S3 FLCDLOCK;Auditování/zamknutí zařízení nástroje HP; C:\Windows\SysWOW64\flcdlock.exe [2014-04-10 567608]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2014-06-19 116648]
S3 Intel(R) Capability Licensing Service TCP IP Interface;Intel(R) Capability Licensing Service TCP IP Interface; C:\Program Files\Intel\iCLS Client\SocketHeciServer.exe [2012-12-10 803872]
S3 LBTServ;Logitech Bluetooth Service; C:\Program Files\Common Files\LogiShrd\Bluetooth\lbtserv.exe [2014-03-25 357144]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 178760]
S3 SwitchBoard;SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [2010-02-19 517096]

-----------------EOF-----------------

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o preventivní kontrolu

#12 Příspěvek od Márty84 »

:???: Ty ADS mate v tech dokumentech schvalne? (@Alternate Data Stream - 490 bytes -> D:\SkyDrive\Dokumenty\Profilovka.png:ms-properties )


:arrow: Napiste mi velikost adresare plochy (C:\Users\Lukáš\Desktop)




:!: Vypnete antivir, at nebrani programu v praci.
:arrow: Znovu spustte OTL jako spravce
Do spodniho okna vlozte nasledujici text (vcetne te dvojtecky pred slovem commands)

Kód: Vybrat vše

:commands
[EMPTYTEMP]
[EMPTYFLASH]
[Purity]
[CreateRestorePoint]

:services
AdobeARMservice
gupdate
SkypeUpdate
gupdatem
SwitchBoard

:files
%windir%\system32\*.tmp.dll /s
%windir%\system32\SET*.tmp /s
%windir%\*.tmp
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job

:otl
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&FORM=IE8SRC
IE - HKU\S-1-5-21-1312231713-1169629108-545288242-1001\..\SearchScopes\{0439DECA-AB44-4FD5-8CD6-74B4BA25BD3C}: "URL" = http://www.bing.com/search?q={searchTerms}&form=IE8SRC&src=IE-SearchBox
IE - HKU\S-1-5-21-1312231713-1169629108-545288242-1001\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = http://www.bing.com/search?q={searchTerms}&src=IE-SearchBox&FORM=IE11SR
O4 - HKLM..\Run: [] File not found
O15 - HKU\S-1-5-21-1312231713-1169629108-545288242-1001\..Trusted Domains: mojebanka.cz ([]https in Trusted sites)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
[2 C:\Windows\Inf\Intel Storage Counters\*.tmp files -> C:\Windows\Inf\Intel Storage Counters\*.tmp -> ]
[1 C:\Windows\Inf\Intel Storage Counters\0000\*.tmp files -> C:\Windows\Inf\Intel Storage Counters\0000\*.tmp -> ]
[1 C:\Windows\Inf\Intel Storage Counters\0009\*.tmp files -> C:\Windows\Inf\Intel Storage Counters\0009\*.tmp -> ]

:reg
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
[-HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"AdobeAAMUpdater-1.0"=-
[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"SwitchBoard"=-
"AdobeCS5ServiceManager"=-
"Adobe ARM"=-
"HP Software Update"=-
""=-
Kliknete na Opravit a nechte program pracovat. Pri otazce na restart souhlaste.
Po restartu se objevi novy log, ten sem dejte.
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Bari
Návštěvník
Návštěvník
Příspěvky: 40
Registrován: 20 kvě 2011 09:06

Re: Prosím o preventivní kontrolu

#13 Příspěvek od Bari »

O streamech nic nevím. Nemůže to mít třeba něco společného s tím, že daná složka je synchronizována na OneDrive pomocí toho oficiálního klienta?

Velikost adresáře plochy je aktuálně 3,42 MB, ale v době, kdy jsem dělal log, to bylo MNOHEM víc, řádově možná 50 GB. Měl jsem tam hodně videí, které už jsem ale zpracoval a uklidil, takže nyní je plocha klasicky prázdná, obsahuje jen soubory související s čištěním počítače.
desktop.png
desktop.png (13.53 KiB) Zobrazeno 2472 x
OTL spustím později (asi zítra nebo o víkendu, prosím o schovívavost), teď tady mám ještě rozdělanou nějakou práci, kvůli které nemohu udělat restart počítače.

Když jsem koukal do toho seznamu, tak tam se zakazují služby pro aktualizace různých produktů, například Skype? Je to opravdu vhodné/nutné? Já měl za to, že aktuálnost je základním kamenem pro bezpečnost kvůli opravám zranitelných chyb. PS: To prosím neberte jako rýpání, ale obyčejnou zvídavost o nové informace do budoucna, abych byl zase o něco chytřejší :)

Márty84
VIP
VIP
Příspěvky: 21679
Registrován: 05 pro 2009 20:08
Bydliště: Ostrava

Re: Prosím o preventivní kontrolu

#14 Příspěvek od Márty84 »

Bari píše:O streamech nic nevím. Nemůže to mít třeba něco společného s tím, že daná složka je synchronizována na OneDrive pomocí toho oficiálního klienta?
Mozna ano.

Bari píše:Velikost adresáře plochy je aktuálně 3,42 MB
:thumbsup:

Bari píše:OTL spustím později (asi zítra nebo o víkendu, prosím o schovívavost), teď tady mám ještě rozdělanou nějakou práci, kvůli které nemohu udělat restart počítače.
OK

Bari píše:Když jsem koukal do toho seznamu, tak tam se zakazují služby pro aktualizace různých produktů, například Skype? Je to opravdu vhodné/nutné? Já měl za to, že aktuálnost je základním kamenem pro bezpečnost kvůli opravám zranitelných chyb. PS: To prosím neberte jako rýpání, ale obyčejnou zvídavost o nové informace do budoucna, abych byl zase o něco chytřejší :)
Ty sluzby nemusi bezet nonstop, brzdi to chod pc. Programy se aktualizuji i tak :)
Pokud máte dotaz, který není určen pro veřejnost, můžete mi napsat na mail marty84zavináčforum.viry.cz

Možnost podpořit naše fórum https://platba.viry.cz/payment/

Z časových důvodů teď budu na fóru méně často. V případě delšího čekání na odpověď kontaktujte prosím některého z kolegů (většina má mailovou adresu ve svém podpisu).

Bari
Návštěvník
Návštěvník
Příspěvky: 40
Registrován: 20 kvě 2011 09:06

Re: Prosím o preventivní kontrolu

#15 Příspěvek od Bari »

All processes killed
========== COMMANDS ==========

[EMPTYTEMP]

User: All Users

User: Default
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 57311 bytes

User: Default User
->Temp folder emptied: 0 bytes
->Temporary Internet Files folder emptied: 0 bytes
->Flash cache emptied: 0 bytes

User: Lukáš
->Temp folder emptied: 9474908 bytes
->Temporary Internet Files folder emptied: 105567709 bytes
->Java cache emptied: 4764149 bytes
->Google Chrome cache emptied: 56530597 bytes
->Flash cache emptied: 58131 bytes

User: Public

%systemdrive% .tmp files removed: 0 bytes
%systemroot% .tmp files removed: 0 bytes
%systemroot%\System32 .tmp files removed: 0 bytes
%systemroot%\System32 (64bit) .tmp files removed: 0 bytes
%systemroot%\System32\drivers .tmp files removed: 0 bytes
Windows Temp folder emptied: 11679794 bytes
RecycleBin emptied: 0 bytes

Total Files Cleaned = 179,00 mb


[EMPTYFLASH]

User: All Users

User: Default
->Flash cache emptied: 0 bytes

User: Default User
->Flash cache emptied: 0 bytes

User: Lukáš
->Flash cache emptied: 0 bytes

User: Public

Total Flash Files Cleaned = 0,00 mb

Restore point Set: OTL Restore Point
========== SERVICES/DRIVERS ==========
Service AdobeARMservice stopped successfully!
Service AdobeARMservice deleted successfully!
Service gupdate stopped successfully!
Service gupdate deleted successfully!
Service SkypeUpdate stopped successfully!
Service SkypeUpdate deleted successfully!
Service gupdatem stopped successfully!
Service gupdatem deleted successfully!
Service SwitchBoard stopped successfully!
Service SwitchBoard deleted successfully!
========== FILES ==========
File/Folder C:\Windows\system32\*.tmp.dll not found.
File/Folder C:\Windows\system32\SET*.tmp not found.
File/Folder C:\Windows\*.tmp not found.
C:\Windows\tasks\GoogleUpdateTaskMachineCore.job moved successfully.
C:\Windows\tasks\GoogleUpdateTaskMachineUA.job moved successfully.
========== OTL ==========
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry key HKEY_USERS\S-1-5-21-1312231713-1169629108-545288242-1001\Software\Microsoft\Internet Explorer\SearchScopes\{0439DECA-AB44-4FD5-8CD6-74B4BA25BD3C}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0439DECA-AB44-4FD5-8CD6-74B4BA25BD3C}\ not found.
Registry key HKEY_USERS\S-1-5-21-1312231713-1169629108-545288242-1001\Software\Microsoft\Internet Explorer\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\ deleted successfully.
Registry key HKEY_USERS\S-1-5-21-1312231713-1169629108-545288242-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\mojebanka.cz\ deleted successfully.
64bit-Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
64bit-Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
Registry value HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\\WebCheck deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{E6FB5E20-DE35-11CF-9C87-00AA005127ED}\ not found.
C:\Windows\Inf\Intel Storage Counters\tmpFE41.tmp deleted successfully.
C:\Windows\Inf\Intel Storage Counters\tmpFE51.tmp deleted successfully.
C:\Windows\Inf\Intel Storage Counters\0000\tmpFE41.tmp deleted successfully.
C:\Windows\Inf\Intel Storage Counters\0009\tmpFE41.tmp deleted successfully.
========== REGISTRY ==========
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}\ deleted successfully.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}\ not found.
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}\ not found.
Registry value HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 not found.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\SwitchBoard deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\AdobeCS5ServiceManager deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\Adobe ARM deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\HP Software Update deleted successfully.
Registry value HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run\\ not found.

OTL by OldTimer - Version 3.2.69.0 log created on 08222014_151429

Files\Folders moved on Reboot...
C:\Users\Lukáš\AppData\Local\Temp\ExchangePerflog_8484fa316aa027a0cfcccd43.dat moved successfully.
C:\Users\Lukáš\AppData\Local\Temp\~DF44EB54B426AA41D3.TMP moved successfully.
C:\Users\Lukáš\AppData\Local\Microsoft\Windows\INetCache\Low\SuggestedSites.dat moved successfully.
File\Folder C:\Users\Lukáš\AppData\Local\Microsoft\Windows\INetCache\Content.Word\~WRS{6F665540-9A49-4E29-AC0E-4A9BA88AEEEE}.tmp not found!
File\Folder C:\Users\Lukáš\AppData\Local\Microsoft\Windows\INetCache\Content.Word\~WRS{DC611751-03F4-4519-AB06-2E5F0BE42C7D}.tmp not found!
C:\Users\Lukáš\AppData\Local\Microsoft\Windows\INetCache\counters.dat moved successfully.

PendingFileRenameOperations files...

Registry entries deleted on Reboot...

Zamčeno