Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Zpomaleny notebook

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Majkl55
Návštěvník
Návštěvník
Příspěvky: 70
Registrován: 15 kvě 2008 12:20

Zpomaleny notebook

#1 Příspěvek od Majkl55 »

Dobry den, prosil bych o kontrolu logu. Predem diky...

Logfile of random's system information tool 1.10 (written by random/random)
Run by Michal at 2015-01-03 00:41:46
Microsoft Windows 8.1
System drive C: has 691 GB (74%) free of 939 GB
Total RAM: 8061 MB (73% free)

Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 00:41:52, on 03/01/2015
Platform: Unknown Windows (WinNT 6.02.1008)
MSIE: Internet Explorer v11.0 (11.00.9600.17416)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
C:\Program Files (x86)\Citrix\ICA Client\redirector.exe
C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
C:\Program Files (x86)\Dell Backup and Recovery\TOASTER.EXE
C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Google\Chrome\Application\chrome.exe
C:\Program Files\trend micro\Michal.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://dell13.msn.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.co.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/p/?LinkId=255141
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/p/?LinkId=255141
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=userinit.exe
O2 - BHO: Lync Click to Call BHO - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O2 - BHO: PDF Architect Helper - {3A2D5EBA-F86D-4BD3-A177-019765996711} - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O2 - BHO: Microsoft SkyDrive Pro Browser Helper - {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL
O3 - Toolbar: PDF Architect Toolbar - {25A3A431-30BB-47C8-AD6A-E1063801134F} - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll
O4 - HKLM\..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe "C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe" 60
O4 - HKLM\..\Run: [CLMLServer_For_P2G8] "C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
O4 - HKLM\..\Run: [CLVirtualDrive] "C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe" /R
O4 - HKLM\..\Run: [RemoteControl10] "C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
O4 - HKLM\..\Run: [Redirector] "C:\Program Files (x86)\Citrix\ICA Client\redirector.exe" /startup
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe" MSRun
O4 - HKCU\..\Run: [CAHeadless] C:\Program Files (x86)\Adobe\Elements 10 Organizer\CAHeadless\ElementsAutoAnalyzer.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
O4 - HKCU\..\Run: [CCleaner Monitoring] "C:\Program Files\CCleaner\CCleaner64.exe" /MONITOR
O4 - HKCU\..\Run: [uTorrent] "C:\Users\Michal\AppData\Roaming\uTorrent\uTorrent.exe" /MINIMIZED
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office15\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~1\MICROS~1\Office15\ONBttnIE.dll/105
O8 - Extra context menu item: Send to Bluetooth - C:\Program Files (x86)\Intel\Bluetooth\btSendToObject.htm
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIE.dll
O9 - Extra button: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra 'Tools' menuitem: Lync Click to Call - {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office15\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call settings - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O9 - Extra button: Send to Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O9 - Extra 'Tools' menuitem: Send to Bluetooth - {2F56DCAA-153B-4479-B4E2-547405B34FB9} - C:\Program Files (x86)\Intel\Bluetooth\btSendToPage.htm (HKCU)
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O18 - Protocol: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files (x86)\Microsoft Office\Office15\MSOSB.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL
O18 - Protocol: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll
O18 - Protocol: wlpg - {E43EF6CD-A37A-4A9B-9E6F-83F89B8E6324} - C:\Program Files (x86)\Windows Live\Photo Gallery\AlbumDownloadProtocolHandler.dll
O18 - Filter: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter hijack: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll
O18 - Filter hijack: text/xml - {807583E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE15\MSOXMLMF.DLL
O23 - Service: Adobe Active File Monitor V10 (AdobeActiveFileMonitor10.0) - Adobe Systems Incorporated - C:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\WINDOWS\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\WINDOWS\system32\atiesrxx.exe (file missing)
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Bluetooth Device Monitor - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
O23 - Service: Bluetooth OBEX Service - Motorola Solutions, Inc. - C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Intel(R) Content Protection HECI Service (cphs) - Intel Corporation - C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe
O23 - Service: CxUtilSvc - Conexant Systems, Inc. - C:\Program Files\Conexant\SA3\CxUtilSvc.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\WINDOWS\System32\lsass.exe (file missing)
O23 - Service: ESET Service (ekrn) - ESET - C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel(R) Corporation - C:\Program Files\Intel\WiFi\bin\EvtEng.exe
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\WINDOWS\system32\fxssvc.exe (file missing)
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Google Update Service (gupdatem) (gupdatem) - Google Inc. - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
O23 - Service: Intel(R) Rapid Storage Technology (IAStorDataMgrSvc) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
O23 - Service: @%SystemRoot%\system32\ieetwcollectorres.dll,-1000 (IEEtwCollectorService) - Unknown owner - C:\WINDOWS\system32\IEEtwCollector.exe (file missing)
O23 - Service: Intel(R) HD Graphics Control Panel Service (igfxCUIService1.0.0.0) - Unknown owner - C:\WINDOWS\system32\igfxCUIService.exe (file missing)
O23 - Service: Intel(R) Capability Licensing Service Interface - Intel(R) Corporation - c:\Program Files\Intel\iCLS Client\HeciServer.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel(R) Dynamic Application Loader Host Interface Service (jhi_service) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\WINDOWS\System32\msdtc.exe (file missing)
O23 - Service: Wireless PAN DHCP Server (MyWiFiDHCPDNS) - Unknown owner - C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: PDF Architect Helper Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\HelperService.exe
O23 - Service: PDF Architect Service - pdfforge GmbH - C:\Program Files (x86)\PDF Architect\ConversionService.exe
O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel(R) Corporation - C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\WINDOWS\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: SoftThinks Agent Service (SftService) - SoftThinks SAS - C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe
O23 - Service: Skype Updater (SkypeUpdate) - Skype Technologies - C:\Program Files (x86)\Skype\Updater\Updater.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\WINDOWS\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\WINDOWS\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\WINDOWS\system32\sppsvc.exe (file missing)
O23 - Service: Intel(R) Turbo Boost Technology Monitor 2.6 (TurboBoost) - Intel(R) Corporation - C:\Program Files\Intel\TurboBoost\TurboBoost.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\WINDOWS\system32\UI0Detect.exe (file missing)
O23 - Service: Intel(R) Management and Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\WINDOWS\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\WINDOWS\System32\vds.exe (file missing)
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\WINDOWS\system32\vssvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\WINDOWS\system32\wbengine.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-320 (WdNisSvc) - Unknown owner - C:\Program Files (x86)\Windows Defender\NisSrv.exe (file missing)
O23 - Service: @%ProgramFiles%\Windows Defender\MpAsDesc.dll,-310 (WinDefend) - Unknown owner - C:\Program Files (x86)\Windows Defender\MsMpEng.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\WINDOWS\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)
O23 - Service: Intel(R) PROSet/Wireless Zero Configuration Service (ZeroConfigService) - Intel® Corporation - C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe

--
End of file - 15441 bytes

======Listing Processes======





wininit.exe

winlogon.exe

C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch
C:\WINDOWS\system32\svchost.exe -k RPCSS
"dwm.exe"
C:\WINDOWS\system32\atiesrxx.exe
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted
atieclxx
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\WLANExt.exe 375363563072
\??\C:\WINDOWS\system32\conhost.exe 0x4
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork
"C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe"
"C:\Program Files\Bonjour\mDNSResponder.exe"
"C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe" /service
"C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe" /service
"C:\Program Files\Conexant\SA3\CxUtilSvc.exe"
"C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe"
dashost.exe {dfde4946-59bd-41a8-ae9a7db4c6b5c933}
"C:\Program Files\Intel\WiFi\bin\EvtEng.exe"
"c:\Program Files\Intel\iCLS Client\HeciServer.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe"
"C:\Program Files (x86)\PDF Architect\HelperService.exe"
"C:\Program Files (x86)\PDF Architect\ConversionService.exe"
"C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe"
"C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe"
C:\WINDOWS\system32\svchost.exe -k imgsvc
"C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe"
C:\WINDOWS\system32\wbem\unsecapp.exe -Embedding
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation
C:\WINDOWS\System32\svchost.exe -k LocalServicePeerNet
taskhostex.exe
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\Explorer.EXE
igfxEM.exe
igfxHK.exe
igfxTray.exe
C:\WINDOWS\system32\DllHost.exe /Processid:{30D49246-D217-465F-B00B-AC9DDD652EB7}
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
C:\Windows\System32\skydrive.exe -Embedding
"C:\Program Files\Elantech\ETDCtrl.exe"
"C:\Program Files\Dell\QuickSet\quickset.exe"
"C:\Windows\System32\SettingSyncHost.exe" -Embedding
"C:\Program Files\Elantech\ETDCtrlHelper.exe"
"C:\Program Files\Conexant\SA3\SmartAudio3.exe" /sa3 /nv:3.0+ /dne /s
"C:\Program Files\Elantech\ETDGesture.exe"
"C:\Windows\System32\rundll32.exe" "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
"C:\Program Files\ESET\ESET Smart Security\egui.exe" /hide /waitservice
"C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe"
"C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe"
"C:\Program Files (x86)\Skype\Phone\Skype.exe" /minimized /regrun
"C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe"
"C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe"
"C:\Program Files (x86)\Citrix\ICA Client\redirector.exe" /startup
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM" PriorityLow
"C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe" 0
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe"
"C:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe"
"C:\Program Files\CCleaner\CCleaner64.exe" /monitor
"C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe"
"C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe"
"C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe"
"C:\Program Files (x86)\Dell Backup and Recovery\TOASTER.EXE" C:\Users\Michal
"C:\Program Files\Windows Media Player\wmpnetwk.exe"
"C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe"
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=gpu-process --channel="6004.0.385940021\255935459" --disable-d3d11 --supports-dual-gpus=false --gpu-driver-bug-workarounds=1,6,17,38 --gpu-vendor-id=0x8086 --gpu-device-id=0x0166 --gpu-driver-vendor="Intel Corporation" --gpu-driver-version=10.18.10.3958 --ignored=" --type=renderer " /prefetch:822062411
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=en-GB --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group6 pct:10f stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/PP_Ethersuggest_A7_Stable_R8/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Disabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_39/UMA-Uniformity-Trial-10-Percent/group_06/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_17/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="6004.27.1133467382\490393142" /prefetch:673131151
"C:\Program Files (x86)\Google\Chrome\Application\chrome.exe" --type=renderer --enable-deferred-image-decoding --lang=en-GB --force-fieldtrials="BrowserBlacklist/Enabled/ChromeSuggestions/Default/DomRel-Enable/enable/EmbeddedSearch/Group6 pct:10f stable:pp2 prefetch_results:1 reuse_instant_search_base_page:1/EnhancedBookmarks/Default/ExtensionContentVerification/Bootstrap/ExtensionInstallVerification/Enforce/GoogleNow/Enable/NewProfileManagement/OldAvatarMenu/OmniboxBundledExperimentV1/PP_Ethersuggest_A7_Stable_R8/PasswordGeneration/Disabled/Prerender/PrerenderEnabled/PrerenderFromOmnibox/OmniboxPrerenderEnabled/QUIC/Disabled/RememberCertificateErrorDecisions/Default/SPDY/DefaultSpdy31Enabled/SRTPromptFieldTrial/Default/SafeBrowsingIncidentReportingService/Default/SettingsEnforcement/enforce_always_with_extensions_and_dse/ShowAppLauncherPromo/ShowPromoUntilDismissed/UMA-Dynamic-Binary-Uniformity-Trial/default/UMA-Dynamic-Uniformity-Trial/Group3/UMA-New-Install-Uniformity-Trial/Experiment/UMA-Population-Restrict/normal/UMA-Session-Randomized-Uniformity-Trial-5-Percent/group_07/UMA-Uniformity-Trial-1-Percent/group_39/UMA-Uniformity-Trial-10-Percent/group_06/UMA-Uniformity-Trial-100-Percent/group_01/UMA-Uniformity-Trial-20-Percent/group_04/UMA-Uniformity-Trial-5-Percent/group_17/UMA-Uniformity-Trial-50-Percent/group_01/VoiceTrigger/Install/" --enable-offline-auto-reload --enable-offline-auto-reload-visible-only --enable-pinch --device-scale-factor=1 --enable-delegated-renderer --enable-impl-side-painting --num-raster-threads=1 --channel="6004.31.1001313950\435946841" /prefetch:673131151

"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe12_ Global\UsGthrCtrlFltPipeMssGthrPipe12 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 584 588 596 65536 592
"C:\Users\Michal\Desktop\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\WINDOWS\tasks\GoogleUpdateTaskMachineCore.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /c
C:\WINDOWS\tasks\GoogleUpdateTaskMachineUA1cf6d2384256332.job - C:\Program Files (x86)\Google\Update\GoogleUpdate.exe /ua /installsource scheduler

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2014-11-12 218784]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
Java(tm) Plug-In SSV Helper - C:\Program Files\Java\jre7\bin\ssv.dll [2014-06-04 545264]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll [2014-07-14 2117216]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~1\MICROS~1\Office15\GROOVEEX.DLL [2014-11-12 2334928]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435b-BC74-9C25C1C588A9}]
Java(tm) Plug-In 2 SSV Helper - C:\Program Files\Java\jre7\bin\jp2ssv.dll [2014-06-04 193520]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Lync Browser Helper - C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2014-10-22 153248]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3A2D5EBA-F86D-4BD3-A177-019765996711}]
PDF Architect Helper - C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll [2013-04-08 92208]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}]
Skype Click to Call for Internet Explorer - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll [2014-07-14 1709152]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF}]
Microsoft SkyDrive Pro Browser Helper - C:\PROGRA~2\MICROS~1\Office15\GROOVEEX.DLL [2014-11-12 1729744]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Internet Explorer\Toolbar]
{25A3A431-30BB-47C8-AD6A-E1063801134F} - PDF Architect Toolbar - C:\Program Files (x86)\PDF Architect\PDFIEPlugin.dll [2013-04-08 654384]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"ETDCtrl"=C:\Program Files\Elantech\ETDCtrl.exe [2012-07-09 2898768]
"QuickSet"=c:\Program Files\Dell\QuickSet\QuickSet.exe [2012-07-11 5752480]
"SmartAudio"=C:\Program Files\CONEXANT\SA3\SACpl.exe [2012-06-13 1647616]
"IntelTBRunOnce"=wscript.exe //b //nologo C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs []
"BTMTrayAgent"=C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll [2012-08-08 11554688]
"AdobeAAMUpdater-1.0"=C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [2011-06-16 499608]
"IgfxTray"=C:\WINDOWS\system32\igfxtray.exe [2014-10-01 448912]
"egui"=C:\Program Files\ESET\ESET Smart Security\egui.exe [2013-09-12 5618456]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"CAHeadless"=C:\Program Files (x86)\Adobe\Elements 10 Organizer\CAHeadless\ElementsAutoAnalyzer.exe [2011-09-14 835224]
"Skype"=C:\Program Files (x86)\Skype\Phone\Skype.exe [2014-12-11 30877280]
"CCleaner Monitoring"=C:\Program Files\CCleaner\CCleaner64.exe [2014-11-21 7063832]
"uTorrent"=C:\Users\Michal\AppData\Roaming\uTorrent\uTorrent.exe [2014-11-26 1385808]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"IAStorIcon"=C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIconLaunch.exe [2012-07-17 56128]
"CLMLServer_For_P2G8"=C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [2012-06-08 111120]
"CLVirtualDrive"=C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [2012-07-04 491120]
"RemoteControl10"=C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [2012-06-02 143888]
"Redirector"=C:\Program Files (x86)\Citrix\ICA Client\redirector.exe [2013-10-01 153992]
"StartCCC"=C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [2014-11-20 767176]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.YUY2"=msyuv.dll
"vidc.i420"=iyuv_32.dll
"msacm.msgsm610"=msgsm32.acm
"msacm.msg711"=msg711.acm
"VIDC.YVYU"=msyuv.dll
"VIDC.YVU9"=tsbyuv.dll
"wavemapper"=msacm32.drv
"midimapper"=midimap.dll
"VIDC.UYVY"=msyuv.dll
"VIDC.IYUV"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"vidc.msvc"=msvidc32.dll
"wave"=wdmaud.drv
"midi"=wdmaud.drv
"mixer"=wdmaud.drv
"aux"=wdmaud.drv
"wave1"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"aux1"=wdmaud.drv
"MSVideo8"=VfWWDM32.dll

======File associations======

.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2015-01-03 00:41:47 ----D---- C:\Program Files\trend micro
2015-01-03 00:41:46 ----D---- C:\rsit
2014-12-18 22:29:33 ----D---- C:\Program Files (x86)\Windows Kits
2014-12-18 21:50:26 ----D---- C:\ProgramData\ATI
2014-12-18 21:40:04 ----D---- C:\Users\Michal\AppData\Roaming\library_dir
2014-12-18 21:38:51 ----D---- C:\Program Files (x86)\Raptr
2014-12-18 21:38:48 ----D---- C:\ProgramData\AMD
2014-12-18 21:38:47 ----D---- C:\Program Files (x86)\AMD AVT
2014-12-18 21:38:00 ----D---- C:\Program Files (x86)\AMD
2014-12-18 21:36:29 ----D---- C:\WINDOWS\LastGood.Tmp
2014-12-18 21:33:41 ----D---- C:\Program Files\AMD
2014-12-18 21:32:30 ----D---- C:\AMD
2014-12-17 10:20:19 ----D---- C:\Program Files\ATI Technologies
2014-12-17 09:40:39 ----D---- C:\Program Files (x86)\Cisco
2014-12-16 21:38:36 ----D---- C:\WINDOWS\system32\appraiser
2014-12-16 21:34:17 ----RD---- C:\WINDOWS\BrowserChoice
2014-12-16 21:32:04 ----A---- C:\WINDOWS\system32\Windows.UI.Search.dll
2014-12-16 21:32:03 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Search.dll
2014-12-16 21:32:02 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2014-12-16 21:32:02 ----A---- C:\WINDOWS\system32\SyncEngine.dll
2014-12-16 21:32:02 ----A---- C:\WINDOWS\system32\mstscax.dll
2014-12-16 21:32:01 ----A---- C:\WINDOWS\SYSWOW64\WSShared.dll
2014-12-16 21:32:01 ----A---- C:\WINDOWS\SYSWOW64\SearchFolder.dll
2014-12-16 21:32:01 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2014-12-16 21:32:01 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2014-12-16 21:32:01 ----A---- C:\WINDOWS\system32\WSShared.dll
2014-12-16 21:32:01 ----A---- C:\WINDOWS\system32\Wldap32.dll
2014-12-16 21:32:01 ----A---- C:\WINDOWS\system32\SearchFolder.dll
2014-12-16 21:32:01 ----A---- C:\WINDOWS\system32\propsys.dll
2014-12-16 21:32:01 ----A---- C:\WINDOWS\system32\ntdll.dll
2014-12-16 21:32:01 ----A---- C:\WINDOWS\system32\KernelBase.dll
2014-12-16 21:32:01 ----A---- C:\WINDOWS\system32\iphlpsvc.dll
2014-12-16 21:32:00 ----A---- C:\WINDOWS\SYSWOW64\Wldap32.dll
2014-12-16 21:32:00 ----A---- C:\WINDOWS\SYSWOW64\propsys.dll
2014-12-16 21:32:00 ----A---- C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-12-16 21:32:00 ----A---- C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-12-16 21:32:00 ----A---- C:\WINDOWS\system32\SkyDrive.exe
2014-12-16 21:32:00 ----A---- C:\WINDOWS\system32\bisrv.dll
2014-12-16 21:31:59 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-12-16 21:31:59 ----A---- C:\WINDOWS\SYSWOW64\SkyDriveShell.dll
2014-12-16 21:31:59 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-12-16 21:31:59 ----A---- C:\WINDOWS\system32\SkyDriveShell.dll
2014-12-16 21:31:59 ----A---- C:\WINDOWS\system32\ProximityService.dll
2014-12-16 21:31:59 ----A---- C:\WINDOWS\system32\pcsvDevice.dll
2014-12-16 21:31:59 ----A---- C:\WINDOWS\system32\httpprxm.dll
2014-12-16 21:31:59 ----A---- C:\WINDOWS\system32\adhsvc.dll
2014-12-16 21:31:39 ----A---- C:\WINDOWS\SYSWOW64\TsWpfWrp.exe
2014-12-16 21:31:39 ----A---- C:\WINDOWS\system32\TsWpfWrp.exe
2014-12-16 21:31:31 ----A---- C:\WINDOWS\system32\drivers\msgpioclx.sys
2014-12-16 21:31:30 ----A---- C:\WINDOWS\SYSWOW64\UXInit.dll
2014-12-16 21:31:30 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2014-12-16 21:31:30 ----A---- C:\WINDOWS\system32\UXInit.dll
2014-12-16 21:31:30 ----A---- C:\WINDOWS\system32\uDWM.dll
2014-12-16 21:31:30 ----A---- C:\WINDOWS\explorer.exe
2014-12-16 21:29:41 ----A---- C:\WINDOWS\system32\schedsvc.dll
2014-12-16 21:29:34 ----A---- C:\WINDOWS\system32\invagent.dll
2014-12-16 21:29:34 ----A---- C:\WINDOWS\system32\generaltel.dll
2014-12-16 21:29:34 ----A---- C:\WINDOWS\system32\devinv.dll
2014-12-16 21:29:34 ----A---- C:\WINDOWS\system32\appraiser.dll
2014-12-16 21:29:34 ----A---- C:\WINDOWS\system32\aepic.dll
2014-12-16 21:29:34 ----A---- C:\WINDOWS\system32\aepdu.dll
2014-12-16 21:29:34 ----A---- C:\WINDOWS\system32\aeinv.dll
2014-12-16 21:29:33 ----A---- C:\WINDOWS\SYSWOW64\Wpc.dll
2014-12-16 21:29:33 ----A---- C:\WINDOWS\system32\WpcWebSync.dll
2014-12-16 21:29:33 ----A---- C:\WINDOWS\system32\WpcMon.exe
2014-12-16 21:29:33 ----A---- C:\WINDOWS\system32\Wpc.dll
2014-12-16 21:29:20 ----A---- C:\WINDOWS\SYSWOW64\d3d9.dll
2014-12-16 21:29:20 ----A---- C:\WINDOWS\system32\d3d9.dll
2014-12-16 21:29:18 ----A---- C:\WINDOWS\system32\vpnike.dll
2014-12-16 21:29:18 ----A---- C:\WINDOWS\system32\fveapi.dll
2014-12-16 21:29:17 ----A---- C:\WINDOWS\system32\dhcpcore.dll
2014-12-16 21:29:16 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore.dll
2014-12-16 21:29:16 ----A---- C:\WINDOWS\system32\drivers\mrxsmb.sys
2014-12-16 21:29:15 ----A---- C:\WINDOWS\system32\framedynos.dll
2014-12-16 21:29:14 ----A---- C:\WINDOWS\SYSWOW64\framedynos.dll
2014-12-16 21:29:14 ----A---- C:\WINDOWS\SYSWOW64\dhcpcore6.dll
2014-12-16 21:29:14 ----A---- C:\WINDOWS\system32\ncobjapi.dll
2014-12-16 21:29:14 ----A---- C:\WINDOWS\system32\framedyn.dll
2014-12-16 21:29:14 ----A---- C:\WINDOWS\system32\drivers\agilevpn.sys
2014-12-16 21:29:14 ----A---- C:\WINDOWS\system32\dhcpcore6.dll
2014-12-16 21:29:14 ----A---- C:\WINDOWS\system32\BFE.DLL
2014-12-16 21:29:14 ----A---- C:\WINDOWS\system32\bdesvc.dll
2014-12-16 21:29:13 ----A---- C:\WINDOWS\SYSWOW64\Robocopy.exe
2014-12-16 21:29:13 ----A---- C:\WINDOWS\SYSWOW64\ncobjapi.dll
2014-12-16 21:29:13 ----A---- C:\WINDOWS\SYSWOW64\framedyn.dll
2014-12-16 21:29:13 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc6.dll
2014-12-16 21:29:13 ----A---- C:\WINDOWS\SYSWOW64\dhcpcsvc.dll
2014-12-16 21:29:13 ----A---- C:\WINDOWS\SYSWOW64\d3d8thk.dll
2014-12-16 21:29:13 ----A---- C:\WINDOWS\system32\srms.dat
2014-12-16 21:29:13 ----A---- C:\WINDOWS\system32\Robocopy.exe
2014-12-16 21:29:13 ----A---- C:\WINDOWS\system32\reseteng.dll
2014-12-16 21:29:13 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2014-12-16 21:29:13 ----A---- C:\WINDOWS\system32\drivers\vwifimp.sys
2014-12-16 21:29:13 ----A---- C:\WINDOWS\system32\drivers\vwififlt.sys
2014-12-16 21:29:13 ----A---- C:\WINDOWS\system32\dhcpcsvc6.dll
2014-12-16 21:29:13 ----A---- C:\WINDOWS\system32\dhcpcsvc.dll
2014-12-16 21:28:55 ----A---- C:\WINDOWS\SYSWOW64\msvcr120_clr0400.dll
2014-12-16 21:28:54 ----A---- C:\WINDOWS\system32\msvcr120_clr0400.dll
2014-12-16 21:28:22 ----A---- C:\WINDOWS\system32\WUDFSvc.dll
2014-12-16 21:28:22 ----A---- C:\WINDOWS\system32\WUDFHost.exe
2014-12-16 21:28:22 ----A---- C:\WINDOWS\system32\drivers\WUDFRd.sys
2014-12-16 21:28:21 ----A---- C:\WINDOWS\SYSWOW64\DaOtpCredentialProvider.dll
2014-12-16 21:28:21 ----A---- C:\WINDOWS\system32\WUDFPlatform.dll
2014-12-16 21:28:21 ----A---- C:\WINDOWS\system32\hal.dll
2014-12-16 21:28:21 ----A---- C:\WINDOWS\system32\drivers\WUDFPf.sys
2014-12-16 21:28:21 ----A---- C:\WINDOWS\system32\DaOtpCredentialProvider.dll
2014-12-16 21:28:14 ----A---- C:\WINDOWS\system32\lockscreencn.dll
2014-12-16 21:13:00 ----D---- C:\Program Files (x86)\Dell Digital Delivery
2014-12-16 20:39:33 ----D---- C:\Program Files\CCleaner
2014-12-16 20:15:16 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2014-12-16 20:13:52 ----D---- C:\WINDOWS\Minidump
2014-12-16 18:12:03 ----DC---- C:\WINDOWS\Panther
2014-12-16 18:08:22 ----A---- C:\WINDOWS\SYSWOW64\oleaut32.dll
2014-12-16 18:08:22 ----A---- C:\WINDOWS\system32\oleaut32.dll
2014-12-16 18:08:12 ----A---- C:\WINDOWS\SYSWOW64\msxml3.dll
2014-12-16 18:08:12 ----A---- C:\WINDOWS\system32\msxml3.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\SYSWOW64\webcheck.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\SYSWOW64\vbscript.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\SYSWOW64\mshtmled.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\SYSWOW64\MshtmlDac.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\SYSWOW64\msfeeds.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\SYSWOW64\jscript9.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\SYSWOW64\jscript.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\SYSWOW64\inetcomm.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\SYSWOW64\iepeers.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\SYSWOW64\iedkcs32.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\SYSWOW64\ieapfltr.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\SYSWOW64\dxtrans.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\wininet.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\webcheck.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\vbscript.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\urlmon.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\mshtmled.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\MshtmlDac.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\mshtml.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\msfeeds.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\jscript9.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\jscript.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\inetcomm.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\iertutil.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\iepeers.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\ieframe.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\iedkcs32.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\ieapfltr.dll
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\ie4uinit.exe
2014-12-16 18:07:48 ----A---- C:\WINDOWS\system32\dxtrans.dll
2014-12-16 18:06:28 ----A---- C:\WINDOWS\SYSWOW64\MrmCoreR.dll
2014-12-16 18:06:28 ----A---- C:\WINDOWS\system32\SystemSettingsDatabase.dll
2014-12-16 18:06:27 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2014-12-16 18:06:27 ----A---- C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2014-12-16 18:06:27 ----A---- C:\WINDOWS\system32\SystemSettings.Handlers.dll
2014-12-16 18:06:27 ----A---- C:\WINDOWS\system32\SettingsHandlers.dll
2014-12-16 18:06:27 ----A---- C:\WINDOWS\system32\MrmCoreR.dll
2014-12-16 18:06:27 ----A---- C:\WINDOWS\system32\MDMAgent.exe
2014-12-16 18:06:12 ----A---- C:\WINDOWS\SYSWOW64\AudioSes.dll
2014-12-16 18:06:12 ----A---- C:\WINDOWS\SYSWOW64\AUDIOKSE.dll
2014-12-16 18:06:12 ----A---- C:\WINDOWS\SYSWOW64\AudioEng.dll
2014-12-16 18:06:12 ----A---- C:\WINDOWS\system32\EncDump.dll
2014-12-16 18:06:12 ----A---- C:\WINDOWS\system32\audiosrv.dll
2014-12-16 18:06:12 ----A---- C:\WINDOWS\system32\AudioSes.dll
2014-12-16 18:06:12 ----A---- C:\WINDOWS\system32\AUDIOKSE.dll
2014-12-16 18:06:12 ----A---- C:\WINDOWS\system32\AudioEng.dll
2014-12-16 18:06:12 ----A---- C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-12-16 18:06:12 ----A---- C:\WINDOWS\system32\audiodg.exe
2014-12-16 18:06:06 ----A---- C:\WINDOWS\SYSWOW64\packager.dll
2014-12-16 18:06:06 ----A---- C:\WINDOWS\system32\packager.dll
2014-12-16 18:03:20 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2014-12-16 18:03:20 ----A---- C:\WINDOWS\system32\crypt32.dll
2014-12-16 18:03:13 ----A---- C:\WINDOWS\SYSWOW64\msihnd.dll
2014-12-16 18:03:13 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2014-12-16 18:03:13 ----A---- C:\WINDOWS\SYSWOW64\authui.dll
2014-12-16 18:03:13 ----A---- C:\WINDOWS\system32\msihnd.dll
2014-12-16 18:03:13 ----A---- C:\WINDOWS\system32\msi.dll
2014-12-16 18:03:13 ----A---- C:\WINDOWS\system32\consent.exe
2014-12-16 18:03:13 ----A---- C:\WINDOWS\system32\authui.dll
2014-12-16 18:03:13 ----A---- C:\WINDOWS\system32\appinfo.dll
2014-12-16 18:03:09 ----AC---- C:\WINDOWS\system32\drivers\sdbus.sys
2014-12-16 18:03:09 ----AC---- C:\WINDOWS\system32\drivers\intelpep.sys
2014-12-16 18:03:09 ----AC---- C:\WINDOWS\system32\drivers\dumpsd.sys
2014-12-16 18:03:09 ----A---- C:\WINDOWS\system32\drivers\pdc.sys
2014-12-16 18:03:06 ----A---- C:\WINDOWS\system32\kdusb.dll
2014-12-16 18:02:59 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2014-12-16 18:02:59 ----A---- C:\WINDOWS\SYSWOW64\ncryptsslp.dll
2014-12-16 18:02:59 ----A---- C:\WINDOWS\system32\schannel.dll
2014-12-16 18:02:59 ----A---- C:\WINDOWS\system32\ncryptsslp.dll
2014-12-16 18:02:59 ----A---- C:\WINDOWS\system32\dpapisrv.dll
2014-12-16 18:02:51 ----A---- C:\WINDOWS\SYSWOW64\WindowsCodecs.dll
2014-12-16 18:02:51 ----A---- C:\WINDOWS\system32\WindowsCodecs.dll
2014-12-16 18:02:42 ----A---- C:\WINDOWS\SYSWOW64\pku2u.dll
2014-12-16 18:02:42 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2014-12-16 18:02:42 ----A---- C:\WINDOWS\system32\pku2u.dll
2014-12-16 18:02:42 ----A---- C:\WINDOWS\system32\kerberos.dll
2014-12-16 18:02:36 ----A---- C:\WINDOWS\SYSWOW64\winshfhc.dll
2014-12-16 18:02:36 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2014-12-16 18:02:36 ----A---- C:\WINDOWS\system32\winshfhc.dll
2014-12-16 18:02:36 ----A---- C:\WINDOWS\system32\user32.dll
2014-12-16 18:02:36 ----A---- C:\WINDOWS\system32\drivers\WdNisDrv.sys
2014-12-16 18:02:36 ----A---- C:\WINDOWS\system32\drivers\WdFilter.sys
2014-12-16 18:02:36 ----A---- C:\WINDOWS\system32\drivers\WdBoot.sys
2014-12-16 18:02:21 ----A---- C:\WINDOWS\SYSWOW64\msaudite.dll
2014-12-16 18:02:21 ----A---- C:\WINDOWS\SYSWOW64\certcli.dll
2014-12-16 18:02:21 ----A---- C:\WINDOWS\SYSWOW64\adtschema.dll
2014-12-16 18:02:21 ----A---- C:\WINDOWS\system32\rfxvmt.dll
2014-12-16 18:02:21 ----A---- C:\WINDOWS\system32\rdpudd.dll
2014-12-16 18:02:21 ----A---- C:\WINDOWS\system32\rdpcorets.dll
2014-12-16 18:02:21 ----A---- C:\WINDOWS\system32\msaudite.dll
2014-12-16 18:02:21 ----A---- C:\WINDOWS\system32\lsasrv.dll
2014-12-16 18:02:21 ----A---- C:\WINDOWS\system32\drivers\rdpvideominiport.sys
2014-12-16 18:02:21 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2014-12-16 18:02:21 ----A---- C:\WINDOWS\system32\drivers\cng.sys
2014-12-16 18:02:21 ----A---- C:\WINDOWS\system32\certcli.dll
2014-12-16 18:02:21 ----A---- C:\WINDOWS\system32\adtschema.dll
2014-12-16 18:02:10 ----A---- C:\WINDOWS\SYSWOW64\DeviceSetupStatusProvider.dll
2014-12-16 18:02:10 ----A---- C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\wextract.exe
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\url.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\pngfilt.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\occache.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\msrating.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\mshta.exe
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\msfeedssync.exe
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\msfeedsbs.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\licmgr10.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\jscript9diag.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\JavaScriptCollectionAgent.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\inseng.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\imgutil.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\iexpress.exe
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\ieUnatt.exe
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\ieui.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\iesysprep.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\iesetup.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\iernonce.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\ieetwproxystub.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\IEAdvpack.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\hlink.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\dxtmsft.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\SYSWOW64\actxprxy.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\wextract.exe
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\url.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\pngfilt.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\occache.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\msrating.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\mshta.exe
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\msfeedssync.exe
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\msfeedsbs.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\licmgr10.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\jsproxy.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\jscript9diag.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\inseng.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\imgutil.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\iexpress.exe
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\ieUnatt.exe
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\ieui.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\iesysprep.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\iesetup.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\iernonce.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\ieetwproxystub.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\ieetwcollector.exe
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\IEAdvpack.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\hlink.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\dxtmsft.dll
2014-12-16 18:01:54 ----A---- C:\WINDOWS\system32\actxprxy.dll
2014-12-16 18:00:00 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2014-12-16 18:00:00 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2014-12-16 18:00:00 ----A---- C:\WINDOWS\SYSWOW64\puiobj.dll
2014-12-16 18:00:00 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2014-12-16 18:00:00 ----A---- C:\WINDOWS\SYSWOW64\MFMediaEngine.dll
2014-12-16 18:00:00 ----A---- C:\WINDOWS\SYSWOW64\FXSAPI.dll
2014-12-16 18:00:00 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-12-16 18:00:00 ----A---- C:\WINDOWS\system32\MFMediaEngine.dll
2014-12-16 18:00:00 ----A---- C:\WINDOWS\system32\FXSCOMEX.dll
2014-12-16 18:00:00 ----A---- C:\WINDOWS\system32\FXSAPI.dll
2014-12-16 17:59:59 ----AC---- C:\WINDOWS\system32\drivers\USBSTOR.SYS
2014-12-16 17:59:59 ----A---- C:\WINDOWS\SYSWOW64\WsmSvc.dll
2014-12-16 17:59:59 ----A---- C:\WINDOWS\SYSWOW64\untfs.dll
2014-12-16 17:59:59 ----A---- C:\WINDOWS\system32\WsmSvc.dll
2014-12-16 17:59:59 ----A---- C:\WINDOWS\system32\winbici.dll
2014-12-16 17:59:59 ----A---- C:\WINDOWS\system32\win32spl.dll
2014-12-16 17:59:59 ----A---- C:\WINDOWS\system32\untfs.dll
2014-12-16 17:59:59 ----A---- C:\WINDOWS\system32\twinui.dll
2014-12-16 17:59:59 ----A---- C:\WINDOWS\system32\shell32.dll
2014-12-16 17:59:59 ----A---- C:\WINDOWS\system32\puiobj.dll
2014-12-16 17:59:59 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2014-12-16 17:59:59 ----A---- C:\WINDOWS\system32\localspl.dll
2014-12-16 17:59:59 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2014-12-16 17:59:59 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2014-12-16 17:59:59 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2014-12-16 17:59:59 ----A---- C:\WINDOWS\system32\BulkOperationHost.exe
2014-12-16 17:59:17 ----A---- C:\WINDOWS\SYSWOW64\rastls.dll
2014-12-16 17:59:17 ----A---- C:\WINDOWS\system32\rastls.dll
2014-12-16 17:59:06 ----A---- C:\WINDOWS\SYSWOW64\wuwebv.dll
2014-12-16 17:59:06 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2014-12-16 17:59:06 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2014-12-16 17:59:06 ----A---- C:\WINDOWS\SYSWOW64\wuapp.exe
2014-12-16 17:59:06 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2014-12-16 17:59:06 ----A---- C:\WINDOWS\system32\wuwebv.dll
2014-12-16 17:59:06 ----A---- C:\WINDOWS\system32\WUSettingsProvider.dll
2014-12-16 17:59:06 ----A---- C:\WINDOWS\system32\wups2.dll
2014-12-16 17:59:06 ----A---- C:\WINDOWS\system32\wups.dll
2014-12-16 17:59:06 ----A---- C:\WINDOWS\system32\wudriver.dll
2014-12-16 17:59:06 ----A---- C:\WINDOWS\system32\wucltux.dll
2014-12-16 17:59:06 ----A---- C:\WINDOWS\system32\wuaueng.dll
2014-12-16 17:59:06 ----A---- C:\WINDOWS\system32\wuauclt.exe
2014-12-16 17:59:06 ----A---- C:\WINDOWS\system32\wuapp.exe
2014-12-16 17:59:06 ----A---- C:\WINDOWS\system32\wuapi.dll
2014-12-16 17:59:06 ----A---- C:\WINDOWS\system32\wuaext.dll
2014-12-16 17:58:57 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2014-12-16 17:58:57 ----A---- C:\WINDOWS\system32\poqexec.exe
2014-12-16 17:58:49 ----A---- C:\WINDOWS\system32\win32k.sys
2014-12-16 17:55:09 ----D---- C:\Program Files (x86)\Reference Assemblies
2014-12-16 17:55:09 ----D---- C:\Program Files (x86)\MSBuild
2014-12-16 17:55:08 ----D---- C:\Program Files\Reference Assemblies
2014-12-16 17:55:08 ----D---- C:\Program Files\MSBuild
2014-12-16 17:54:35 ----A---- C:\WINDOWS\SYSWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-12-16 17:54:34 ----A---- C:\WINDOWS\SYSWOW64\PresentationNative_v0300.dll
2014-12-16 17:54:33 ----A---- C:\WINDOWS\system32\PresentationNative_v0300.dll
2014-12-16 17:54:33 ----A---- C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2014-12-16 09:47:01 ----A---- C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2014-12-16 09:42:40 ----A---- C:\WINDOWS\system32\emptyregdb.dat
2014-12-16 09:24:48 ----SD---- C:\Users\Michal\AppData\Roaming\Microsoft
2014-12-16 09:17:19 ----D---- C:\Program Files\Elantech
2014-12-16 09:17:08 ----D---- C:\Program Files\Common Files\ATI Technologies
2014-12-16 09:16:51 ----D---- C:\ProgramData\Conexant
2014-12-16 09:16:50 ----D---- C:\Program Files\CONEXANT
2014-12-16 09:14:51 ----D---- C:\WINDOWS\Prefetch

======List of files/folders modified in the last 1 month======

2015-01-03 00:41:47 ----RD---- C:\Program Files
2015-01-03 00:40:41 ----D---- C:\WINDOWS\Temp
2015-01-03 00:38:23 ----D---- C:\Users\Michal\AppData\Roaming\Skype
2015-01-02 22:02:00 ----D---- C:\WINDOWS\system32\sru
2015-01-02 20:57:47 ----D---- C:\WINDOWS\Microsoft.NET
2015-01-02 19:33:28 ----D---- C:\Program Files (x86)\Dell Backup and Recovery
2015-01-02 19:28:24 ----A---- C:\WINDOWS\SYSWOW64\log.txt
2015-01-02 19:27:18 ----D---- C:\Users\Michal\AppData\Roaming\uTorrent
2015-01-02 19:23:26 ----D---- C:\WINDOWS\system32\NDF
2015-01-01 14:11:13 ----D---- C:\WINDOWS\system32\config
2015-01-01 14:09:08 ----D---- C:\WINDOWS\WinSxS
2015-01-01 12:31:20 ----SHD---- C:\Config.Msi
2015-01-01 12:24:49 ----SHD---- C:\WINDOWS\Installer
2015-01-01 12:24:14 ----D---- C:\WINDOWS\system32\DriverStore
2015-01-01 12:24:14 ----D---- C:\WINDOWS\Inf
2015-01-01 12:24:08 ----RD---- C:\Program Files (x86)
2015-01-01 12:24:08 ----D---- C:\Program Files (x86)\Common Files
2015-01-01 12:24:07 ----D---- C:\WINDOWS\SysWOW64
2015-01-01 00:19:35 ----SHD---- C:\System Volume Information
2015-01-01 00:12:50 ----D---- C:\WINDOWS\debug
2015-01-01 00:08:35 ----D---- C:\Users\Michal\AppData\Roaming\vlc
2014-12-31 19:54:53 ----D---- C:\Windows
2014-12-30 21:50:57 ----D---- C:\ProgramData\Skype
2014-12-30 21:50:52 ----RD---- C:\Program Files (x86)\Skype
2014-12-30 21:49:20 ----D---- C:\WINDOWS\Logs
2014-12-28 20:23:52 ----D---- C:\WINDOWS\SoftwareDistribution
2014-12-21 23:24:23 ----D---- C:\WINDOWS\system32\drivers\UMDF
2014-12-21 21:53:17 ----RD---- C:\WINDOWS\System32
2014-12-21 21:53:17 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2014-12-21 12:44:31 ----D---- C:\WINDOWS\system32\drivers
2014-12-21 11:10:01 ----D---- C:\WINDOWS\system32\Tasks
2014-12-20 15:26:23 ----RD---- C:\WINDOWS\assembly
2014-12-20 15:00:03 ----D---- C:\WINDOWS\rescache
2014-12-20 14:10:00 ----D---- C:\WINDOWS\system32\wdi
2014-12-18 22:29:30 ----D---- C:\ProgramData\Package Cache
2014-12-18 21:50:26 ----HD---- C:\ProgramData
2014-12-18 21:44:36 ----D---- C:\WINDOWS\system32\catroot
2014-12-18 21:37:59 ----D---- C:\Program Files (x86)\ATI Technologies
2014-12-18 21:06:39 ----D---- C:\WINDOWS\AppReadiness
2014-12-18 21:06:38 ----HD---- C:\Program Files\WindowsApps
2014-12-17 22:06:46 ----D---- C:\WINDOWS\CbsTemp
2014-12-17 21:17:22 ----D---- C:\WINDOWS\system32\catroot2
2014-12-17 10:17:37 ----D---- C:\ProgramData\Dell
2014-12-17 09:41:35 ----D---- C:\ProgramData\Intel
2014-12-17 09:41:35 ----D---- C:\Intel
2014-12-17 09:40:39 ----D---- C:\Program Files\Common Files\Intel
2014-12-17 09:40:39 ----D---- C:\Program Files (x86)\Intel
2014-12-17 09:39:13 ----D---- C:\Program Files\Intel
2014-12-16 21:38:37 ----SD---- C:\WINDOWS\system32\CompatTel
2014-12-16 21:38:36 ----SD---- C:\ProgramData\Microsoft
2014-12-16 21:38:34 ----D---- C:\WINDOWS\WinStore
2014-12-16 21:38:29 ----D---- C:\WINDOWS\SYSWOW64\wbem
2014-12-16 21:38:29 ----D---- C:\WINDOWS\SYSWOW64\migration
2014-12-16 21:38:29 ----D---- C:\WINDOWS\system32\en-US
2014-12-16 21:38:28 ----D---- C:\WINDOWS\system32\wbem
2014-12-16 21:38:27 ----D---- C:\WINDOWS\system32\sr-Latn-RS
2014-12-16 21:38:27 ----D---- C:\WINDOWS\system32\sr-Latn-CS
2014-12-16 21:34:23 ----RD---- C:\WINDOWS\ToastData
2014-12-16 21:34:23 ----D---- C:\WINDOWS\system32\migration
2014-12-16 21:33:41 ----D---- C:\WINDOWS\SYSWOW64\en-US
2014-12-16 20:47:03 ----D---- C:\Program Files (x86)\PDFCreator
2014-12-16 20:46:49 ----D---- C:\WINDOWS\ModemLogs
2014-12-16 20:40:16 ----D---- C:\Program Files (x86)\Webteh
2014-12-16 20:40:15 ----D---- C:\Users\Michal\AppData\Roaming\BSplayer
2014-12-16 20:24:15 ----D---- C:\WINDOWS\system32\restore
2014-12-16 20:23:56 ----D---- C:\Program Files (x86)\Assassins Creed IV Black Flag
2014-12-16 20:13:07 ----D---- C:\WINDOWS\system32\AutoUpdateLicense
2014-12-16 18:12:00 ----SHD---- C:\Recovery
2014-12-16 18:08:01 ----D---- C:\WINDOWS\PolicyDefinitions
2014-12-16 18:08:01 ----D---- C:\Program Files\Internet Explorer
2014-12-16 18:08:01 ----D---- C:\Program Files (x86)\Internet Explorer
2014-12-16 18:06:33 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2014-12-16 18:02:38 ----D---- C:\Program Files\Windows Defender
2014-12-16 18:02:38 ----D---- C:\Program Files (x86)\Windows Defender
2014-12-16 18:00:13 ----D---- C:\WINDOWS\MediaViewer
2014-12-16 18:00:13 ----D---- C:\WINDOWS\FileManager
2014-12-16 18:00:13 ----D---- C:\WINDOWS\Camera
2014-12-16 18:00:13 ----D---- C:\WINDOWS\apppatch
2014-12-16 17:58:17 ----SD---- C:\WINDOWS\system32\Microsoft
2014-12-16 09:48:11 ----SHD---- C:\$Recycle.Bin
2014-12-16 09:43:12 ----D---- C:\WINDOWS\Registration
2014-12-16 09:42:48 ----D---- C:\WINDOWS\system32\LogFiles
2014-12-16 09:40:35 ----RSD---- C:\WINDOWS\Media
2014-12-16 09:39:25 ----A---- C:\WINDOWS\SYSWOW64\PerfStringBackup.INI
2014-12-16 09:39:03 ----D---- C:\WINDOWS\SYSWOW64\config
2014-12-16 09:32:45 ----D---- C:\WINDOWS\SYSWOW64\drivers
2014-12-16 09:32:45 ----D---- C:\WINDOWS\system32\Sysprep
2014-12-16 09:32:44 ----D---- C:\WINDOWS\system32\oem
2014-12-16 09:32:43 ----RSD---- C:\WINDOWS\Fonts
2014-12-16 09:32:43 ----D---- C:\WINDOWS\ShellNew
2014-12-16 09:32:42 ----D---- C:\WINDOWS\Tasks
2014-12-16 09:32:42 ----D---- C:\WINDOWS\en
2014-12-16 09:32:42 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2014-12-16 09:32:42 ----D---- C:\ProgramData\regid.1986-12.com.adobe
2014-12-16 09:30:56 ----D---- C:\WINDOWS\SYSWOW64\WCN
2014-12-16 09:30:55 ----D---- C:\WINDOWS\SYSWOW64\sysprep
2014-12-16 09:30:55 ----D---- C:\WINDOWS\SYSWOW64\SMI
2014-12-16 09:30:55 ----D---- C:\WINDOWS\SYSWOW64\sda
2014-12-16 09:30:55 ----D---- C:\WINDOWS\SYSWOW64\MUI
2014-12-16 09:30:55 ----D---- C:\WINDOWS\SYSWOW64\migwiz
2014-12-16 09:30:55 ----D---- C:\WINDOWS\SYSWOW64\LogFiles
2014-12-16 09:30:53 ----D---- C:\WINDOWS\SYSWOW64\IME
2014-12-16 09:30:53 ----D---- C:\WINDOWS\SYSWOW64\drivers\UMDF
2014-12-16 09:30:53 ----D---- C:\WINDOWS\SYSWOW64\catroot
2014-12-16 09:30:52 ----HD---- C:\WINDOWS\system32\WLANProfiles
2014-12-16 09:30:51 ----D---- C:\WINDOWS\system32\WCN
2014-12-16 09:30:50 ----D---- C:\WINDOWS\system32\spool
2014-12-16 09:30:48 ----D---- C:\WINDOWS\system32\oobe
2014-12-16 09:30:48 ----D---- C:\WINDOWS\system32\MUI
2014-12-16 09:30:48 ----D---- C:\WINDOWS\system32\IME
2014-12-16 09:30:47 ----DC---- C:\WINDOWS\system32\DRVSTORE
2014-12-16 09:29:44 ----D---- C:\WINDOWS\Help
2014-12-16 09:29:43 ----D---- C:\WINDOWS\DigitalLocker
2014-12-16 09:29:41 ----RD---- C:\Users
2014-12-16 09:29:40 ----D---- C:\ProgramData\PRICache
2014-12-16 09:29:33 ----SHD---- C:\Program Files (x86)\Windows Sidebar
2014-12-16 09:29:32 ----D---- C:\Program Files (x86)\Windows Media Player
2014-12-16 09:29:30 ----D---- C:\Program Files (x86)\Microsoft.NET
2014-12-16 09:29:27 ----SHD---- C:\Program Files\Windows Sidebar
2014-12-16 09:29:27 ----D---- C:\Program Files\Windows Media Player
2014-12-16 09:29:27 ----D---- C:\Program Files\Microsoft.NET
2014-12-16 09:29:26 ----D---- C:\Program Files\Common Files\System
2014-12-16 09:29:26 ----D---- C:\Program Files\Common Files\microsoft shared
2014-12-16 09:29:25 ----D---- C:\Program Files\Common Files
2014-12-16 09:26:22 ----D---- C:\WINDOWS\system32\Recovery
2014-12-13 13:23:26 ----D---- C:\ProgramData\Microsoft Help
2014-12-13 13:15:20 ----D---- C:\WINDOWS\system32\MRT
2014-12-13 13:15:17 ----A---- C:\WINDOWS\system32\MRT.exe
2014-12-09 22:01:22 ----D---- C:\WINDOWS\AUInstallAgent

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 amdkmpfd;@oem131.inf,%AMDKMPFD_svcdesc%;AMD PCI Root Bus Lower Filter; C:\WINDOWS\System32\drivers\amdkmpfd.sys [2014-10-28 62152]
R0 edevmon;edevmon; C:\WINDOWS\system32\DRIVERS\edevmon.sys [2013-09-17 239296]
R0 epfwwfp;epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [2013-09-17 62136]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2012-10-27 651832]
R0 PxHlpa64;PxHlpa64; C:\WINDOWS\System32\Drivers\PxHlpa64.sys [2010-03-19 55856]
R1 CLVirtualDrive;CLVirtualDrive; C:\WINDOWS\system32\DRIVERS\CLVirtualDrive.sys [2012-06-25 92536]
R1 ctxusbm;Citrix USB Monitor Driver; C:\WINDOWS\system32\DRIVERS\ctxusbm.sys [2013-09-24 97768]
R1 eamonm;eamonm; C:\WINDOWS\system32\DRIVERS\eamonm.sys [2013-09-17 239320]
R1 ehdrv;ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [2013-09-17 168256]
R1 EpfwLWF;@oem22.inf,%EpfwLWF_Desc%;Epfw NDIS LightWeight Filter; C:\WINDOWS\system32\DRIVERS\EpfwLWF.sys [2013-09-17 44120]
R1 vwififlt;@%SystemRoot%\System32\drivers\vwififlt.sys,-259; C:\WINDOWS\system32\DRIVERS\vwififlt.sys [2014-04-30 71680]
R2 epfw;epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [2013-09-17 220232]
R2 TurboB;Turbo Boost UI Monitor driver; C:\WINDOWS\system32\DRIVERS\TurboB.sys [2012-05-30 16168]
R3 amdkmdag;amdkmdag; C:\WINDOWS\system32\DRIVERS\atikmdag.sys [2014-11-21 18959360]
R3 amdkmdap;amdkmdap; C:\WINDOWS\system32\DRIVERS\atikmpag.sys [2014-11-21 589312]
R3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2013-08-22 53248]
R3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\system32\DRIVERS\BthLEEnum.sys [2014-09-24 226304]
R3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\system32\DRIVERS\bthpan.sys [2014-09-24 118272]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Bluetooth Radio USB Driver; C:\WINDOWS\System32\Drivers\BTHUSB.sys [2014-09-24 81920]
R3 btmhsf;btmhsf; C:\WINDOWS\system32\DRIVERS\btmhsf.sys [2012-07-15 825344]
R3 CnxtHdAudService;@oem2.inf,%UAAFunctionDriverForHdAudio.SvcDesc%;Conexant UAA Function Driver for High Definition Audio Service; C:\WINDOWS\system32\drivers\CHDRT64.sys [2012-07-04 1607328]
R3 ETD;@oem44.inf,%PS2.DeviceDesc%;Dell Touchpad; C:\WINDOWS\system32\DRIVERS\ETD.sys [2012-07-09 209744]
R3 GEARAspiWDM;GEAR ASPI Filter Driver; C:\WINDOWS\system32\DRIVERS\GEARAspiWDM.sys [2012-08-21 33240]
R3 iBtFltCoex;iBtFltCoex; C:\WINDOWS\system32\DRIVERS\iBtFltCoex.sys [2012-07-04 55848]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2014-10-01 3828152]
R3 IntcDAud;@oem9.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\system32\DRIVERS\IntcDAud.sys [2012-06-19 342528]
R3 MEIx64;@oem74.inf,%HECI_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\drivers\HECIx64.sys [2012-07-03 62784]
R3 NETwNe64;@oem128.inf,___ %NIC_Service_DispName_WIN8_64%;___ Intel(R) Wireless WiFi Link 5000 Series Adapter Driver for Windows 8 - 64 Bit; C:\WINDOWS\system32\DRIVERS\Netwew00.sys [2014-02-25 3349984]
R3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\system32\DRIVERS\rfcomm.sys [2014-09-24 167424]
R3 RSUSBVSTOR;@oem103.inf,%RSUSBVSTOR.SvcDesc%;RtsUVStor.Sys Realtek USB Card Reader; C:\WINDOWS\System32\Drivers\RtsUVStor.sys [2012-06-15 315536]
R3 RTL8168;@netrt630x64.inf,%rtl8168.Service.DispName%;Realtek 8168 NT Driver; C:\WINDOWS\system32\DRIVERS\Rt630x64.sys [2013-06-18 591360]
R3 usbvideo;@usbvideo.inf,%USBVideo.SvcDesc%;USB Video Device (WDM); C:\WINDOWS\System32\Drivers\usbvideo.sys [2013-08-22 212224]
R3 vwifimp;@%SystemRoot%\System32\drivers\vwifimp.sys,-261; C:\WINDOWS\system32\DRIVERS\vwifimp.sys [2014-04-30 38912]
S3 AMPPAL;@oem24.inf,%AMPPAL.SVCDESC%;Intel(r) Centrino(r) Wireless Bluetooth(r) + High Speed Virtual Adapter; C:\WINDOWS\System32\drivers\AMPPAL.sys [2013-05-21 165344]
S3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Bluetooth Port Driver; C:\WINDOWS\System32\Drivers\BTHport.sys [2014-09-24 1200640]
S3 DellRbtn;Airplane Mode Switch; C:\WINDOWS\System32\drivers\DellRbtn.sys [2012-08-05 10752]
S3 dg_ssudbus;@oem32.inf,%ssud.Service.DeviceDesc%;SAMSUNG Mobile USB Composite Device Driver (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudbus.sys [2014-01-22 108800]
S3 iwdbus;@oem16.inf,%iwdbus.SVCDESC%;IWD Bus Enumerator; C:\WINDOWS\System32\drivers\iwdbus.sys []
S3 Netaapl;@oem29.inf,%Netaapl.Service.DispName%;Apple Mobile Device Ethernet Service; C:\WINDOWS\system32\DRIVERS\netaapl64.sys [2013-08-06 23040]
S3 RimVSerPort;@oem36.inf,%RimVSerPort%;RIM Virtual Serial Port v2; C:\WINDOWS\system32\DRIVERS\RimSerial_AMD64.sys [2011-07-20 44032]
S3 ssudmdm;@oem33.inf,%ssud.Service.Name%;SAMSUNG Mobile USB Modem Drivers (DEVGURU Ver.); C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [2014-01-22 206080]
S3 usb3Hub;@oem17.inf,%usb3Hub.SVCDESC%;USB-IF USB 3.0 Hub; C:\WINDOWS\System32\drivers\usb3Hub.sys []
S3 USBAAPL64;@oem49.inf,%USBAAPL64.SvcDesc%;Apple Mobile USB Driver; C:\WINDOWS\System32\Drivers\usbaapl64.sys [2014-08-15 54784]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeActiveFileMonitor10.0;Adobe Active File Monitor V10; C:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [2011-09-14 169624]
R2 AMD External Events Utility;AMD External Events Utility; C:\WINDOWS\system32\atiesrxx.exe [2014-11-21 244736]
R2 Apple Mobile Device;Apple Mobile Device; C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [2014-10-07 60744]
R2 Bluetooth Device Monitor;Bluetooth Device Monitor; C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe [2012-08-08 1091520]
R2 Bluetooth OBEX Service;Bluetooth OBEX Service; C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe [2012-08-08 1112000]
R2 Bonjour Service;Bonjour Service; C:\Program Files\Bonjour\mDNSResponder.exe [2011-08-30 462184]
R2 c2cautoupdatesvc;Skype Click to Call Updater; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [2014-07-14 1390176]
R2 c2cpnrsvc;Skype Click to Call PNR Service; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [2014-07-14 1767520]
R2 CxUtilSvc;CxUtilSvc; C:\Program Files\Conexant\SA3\CxUtilSvc.exe [2012-07-04 109184]
R2 ekrn;ESET Service; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [2013-09-12 1337752]
R2 EvtEng;Intel(R) PROSet/Wireless Event Log; C:\Program Files\Intel\WiFi\bin\EvtEng.exe [2014-01-08 631024]
R2 IAStorDataMgrSvc;Intel(R) Rapid Storage Technology; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [2012-07-09 7168]
R2 igfxCUIService1.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2014-10-01 319376]
R2 Intel(R) Capability Licensing Service Interface;Intel(R) Capability Licensing Service Interface; c:\Program Files\Intel\iCLS Client\HeciServer.exe [2012-04-20 635104]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [2012-07-18 165760]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe [2012-07-18 276864]
R2 PDF Architect Helper Service;PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [2013-04-08 1320496]
R2 PDF Architect Service;PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [2013-04-08 799280]
R2 RegSrvc;Intel(R) PROSet/Wireless Registry Service; C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe [2014-01-08 154864]
R2 RichVideo;Cyberlink RichVideo Service(CRVS); C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [2012-04-25 254512]
R2 SftService;SoftThinks Agent Service; C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe [2012-09-13 1914728]
R2 UNS;Intel(R) Management and Security Application User Notification Service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe [2012-07-18 364416]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2013-08-03 43696]
S2 gupdate;Google Update Service (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-22 116648]
S2 SkypeUpdate;Skype Updater; C:\Program Files (x86)\Skype\Updater\Updater.exe [2014-12-11 315496]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2014-10-01 281488]
S3 gupdatem;Google Update Service (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2013-11-22 116648]
S3 iPod Service;iPod Service; C:\Program Files\iPod\bin\iPodService.exe [2014-10-15 643880]
S3 MyWiFiDHCPDNS;Wireless PAN DHCP Server; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [2014-01-08 284912]
S3 ose64;Office 64 Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2014-01-23 178760]
S3 Te.Service;Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [2013-08-22 119808]
S3 TurboBoost;Intel(R) Turbo Boost Technology Monitor 2.6; C:\Program Files\Intel\TurboBoost\TurboBoost.exe [2012-05-30 149544]

-----------------EOF-----------------
Majkl55

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Zpomaleny notebook

#2 Příspěvek od vyosek »

Zdravim :)

:arrow: Stahnete AdwCleaner http://general-changelog-team.fr/fr/dow ... adwcleaner
  • Ulozte nejlepe na plochu
  • Ukoncete vsechny programy
  • Po spusteni probehne stazeni databaze
  • Kliknete na Scan a nasledne Clean
  • Probehne oprava, restart PC a pak se objevi log, pripadne bude ulozen ve slozce c:\AdwCleaner\AdwCleaner[S?].txt, ten sem vlozte
:arrow: Stahnete Zoek.exe http://hijackthis.nl/smeenk/ a ulozte jej na plochu
  • Pokud pouzivate Win Vista ci W7, kliknete na Zoek pravym a dejte Run As Administrator ci Spustit jako spravce
  • Do okna vlozte skript nize
  • Kód: Vybrat vše

    autoclean;
    resethosts;
    emptyclsid;
    IEdefaults;
    FFdefaults;
    CHRdefaults;
    emptyIEcache;
    emptyFFcache;
    emptyCHRcache;
    emptyalltemp;
    emptyflash;
    emptyjava;
    emptyrecycle.bin;
    
  • Nasledne kliknete na Run Script
  • PC provede opravu, restartuje se a da Vam log, jeho obsah vlozte sem
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Majkl55
Návštěvník
Návštěvník
Příspěvky: 70
Registrován: 15 kvě 2008 12:20

Re: Zpomaleny notebook

#3 Příspěvek od Majkl55 »

log z ADWcleaner...

# AdwCleaner v4.106 - Report created 03/01/2015 at 12:29:54
# Updated 21/12/2014 by Xplode
# Database : 2015-01-03.1 [Live]
# Operating System : Windows 8.1 (64 bits)
# Username : Michal - MAJKL55
# Running from : C:\Users\Michal\Desktop\adwcleaner_4.106.exe
# Option : Clean

***** [ Services ] *****


***** [ Files / Folders ] *****

Folder Deleted : C:\Users\Michal\AppData\Local\NativeMessaging
Folder Deleted : C:\Users\Michal\AppData\Local\Tbccint
Folder Deleted : C:\Users\Michal\AppData\LocalLow\Conduit
Folder Deleted : C:\Users\Michal\AppData\Roaming\pdfforge
Folder Deleted : C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
File Deleted : C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Local Storage\hxxps_static.olark.com_0.localstorage-journal

***** [ Scheduled Tasks ] *****


***** [ Shortcuts ] *****


***** [ Registry ] *****

Key Deleted : HKLM\SOFTWARE\Google\Chrome\Extensions\lifbcibllhkdhoafpjfnlhfpfgnpldfl
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{25A3A431-30BB-47C8-AD6A-E1063801134F}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Value Deleted : HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar [{25A3A431-30BB-47C8-AD6A-E1063801134F}]
Key Deleted : [x64] HKLM\SOFTWARE\Classes\CLSID\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : [x64] HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{AE805869-2E5C-4ED4-8F7B-F1F7851A4497}
Key Deleted : HKCU\Software\Conduit
Key Deleted : HKCU\Software\AppDataLow\Software\SmartBar
Key Deleted : HKLM\SOFTWARE\Conduit

***** [ Browsers ] *****

-\\ Internet Explorer v11.0.9600.17416


-\\ Google Chrome v39.0.2171.95

[C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Web Data] - Deleted [Search Provider] : hxxp://uk.ask.com/web?q={searchTerms}

*************************

AdwCleaner[R0].txt - [2726 octets] - [03/01/2015 12:28:18]
AdwCleaner[S0].txt - [2584 octets] - [03/01/2015 12:29:54]

########## EOF - C:\AdwCleaner\AdwCleaner[S0].txt - [2644 octets] ##########
Majkl55

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Zpomaleny notebook

#4 Příspěvek od vyosek »

Pokracujte Zoek-em
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Majkl55
Návštěvník
Návštěvník
Příspěvky: 70
Registrován: 15 kvě 2008 12:20

Re: Zpomaleny notebook

#5 Příspěvek od Majkl55 »

zoek...:-)


Zoek.exe v5.0.0.0 Updated 31-12-2014
Tool run by Michal on 03/01/2015 at 12:34:28.57.
Microsoft Windows 8.1 6.3.9600 x64
Running in: Normal Mode Internet Access Detected
Launched: C:\Users\Michal\Desktop\zoek.exe [Scan all users] [Script inserted]

==== System Restore Info ======================

03/01/2015 12:36:13 Zoek.exe System Restore Point Created Succesfully.

==== Reset Hosts File ======================

# Copyright (c) 1993-2006 Microsoft Corp.
#
# This is a sample HOSTS file used by Microsoft TCP/IP for Windows.
#
# This file contains the mappings of IP addresses to host names. Each
# entry should be kept on an individual line. The IP address should
# be placed in the first column followed by the corresponding host name.
# The IP address and the host name should be separated by at least one
# space.
#
# Additionally, comments (such as these) may be inserted on individual
# lines or following the machine name denoted by a '#' symbol.
#
# For example:
#
# 102.54.94.97 rhino.acme.com # source server
# 38.25.63.10 x.acme.com # x client host

127.0.0.1 localhost

==== Empty Folders Check ======================

C:\PROGRA~2\Webteh deleted successfully
C:\Program Files\ATI Technologies deleted successfully
C:\Users\Michal\AppData\Local\CRE deleted successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-719243096-1991990810-3985077826-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} deleted successfully
HKEY_USERS\S-1-5-21-719243096-1991990810-3985077826-1001\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{DBC80044-A445-435B-BC74-9C25C1C588A9} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43} deleted successfully
HKEY_CLASSES_ROOT\CLSID\{DBC80044-A445-435B-BC74-9C25C1C588A9} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{DBC80044-A445-435B-BC74-9C25C1C588A9} deleted successfully

==== Deleting CLSID Registry Values ======================


==== Deleting Services ======================


==== Deleting Files \ Folders ======================

C:\Users\Michal\AppData\LocalLow\uTorrentControl_v2 deleted
C:\PROGRA~3\Package Cache deleted
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Search.lnk deleted
C:\Users\Michal\AppData\LocalLow\TB deleted
C:\WINDOWS\SysNative\config\systemprofile\Searches deleted
"C:\WINDOWS\Installer\2e24ce89.msi" deleted

==== Firefox Extensions Registry ======================

[HKEY_LOCAL_MACHINE\Software\Wow6432Node\Mozilla\Firefox\Extensions]
"FFPDFArchitectConverter@pdfarchitect.com"=hex(2):43,00,3a,00,5c,00,50,00,72,\ []

==== Chromium Look ======================

Google Chrome Version: 39.0.2171.95 (Up to date, latest Stable version: 39.0.2171.95)


Google Voice Search Hotword (Beta) - Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn

==== Chromium Fix ======================

C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Local Storage\https_static.olark.com_0.localstorage deleted successfully

==== Set IE to Default ======================

Old Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://google.co.uk/"

New Values:
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Main]
"Start Page"="http://google.co.uk/"

==== All HKCU SearchScopes ======================

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes
"DefaultScope"="{0633EE93-D776-472f-A0FF-E1416B8B2E3A}"
{012E1000-F331-11DB-8314-0800200C9A66} Google Url="http://www.google.com/search?q={searchTerms}"
{0633EE93-D776-472f-A0FF-E1416B8B2E3A} Bing Url="http://www.bing.com/search?q={searchTer ... ORM=IE8SRC"
{5C8FCA28-031B-48A5-8F2A-202E615FAE01} Unknown Url="Not_Found"

==== Reset Google Chrome ======================

C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Preferences was reset successfully
C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Web Data was reset successfully

==== Deleting CLSID Registry Keys ======================

HKEY_USERS\S-1-5-21-719243096-1991990810-3985077826-1001\Software\Microsoft\Internet Explorer\SearchScopes\{5C8FCA28-031B-48A5-8F2A-202E615FAE01} deleted successfully

==== Deleting CLSID Registry Values ======================

HKEY_LOCAL_MACHINE\software\Wow6432Node\mozilla\Firefox\extensions\FFPDFArchitectConverter@pdfarchitect.com deleted successfully

==== Deleting Registry Keys ======================

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\S-1-5-18\Products\358CA8E5BB5699C40AE9918B81151EC4 deleted successfully
HKEY_LOCAL_MACHINE\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Uninstall\{5E8AC853-65BB-4C99-A09E-19B81851E14C} deleted successfully
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Installer\Products\358CA8E5BB5699C40AE9918B81151EC4 deleted successfully

==== Empty IE Cache ======================

C:\WINDOWS\system32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5 emptied successfully
C:\Users\Michal\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Michal\AppData\Local\Microsoft\Windows\INetCache\Low\Content.IE5 emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\WINDOWS\sysWOW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\Content.IE5 emptied successfully
C:\Users\Michal\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\Users\Michal\AppData\Local\Microsoft\Windows\INetCache\Low\IE emptied successfully
C:\WINDOWS\SysNative\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully
C:\WINDOWS\sysWoW64\config\systemprofile\AppData\Local\Microsoft\Windows\INetCache\IE emptied successfully

==== Empty FireFox Cache ======================

No FireFox Profiles found

==== Empty Chrome Cache ======================

C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Cache emptied successfully

==== Empty All Flash Cache ======================

Flash Cache Emptied Successfully

==== Empty All Java Cache ======================

No Java Cache Found

==== C:\zoek_backup content ======================

C:\zoek_backup (files=289 folders=86 501412134 bytes)

==== Empty Temp Folders ======================

C:\Users\Administrator\AppData\Local\Temp emptied successfully
C:\Users\Default\AppData\Local\Temp emptied successfully
C:\Users\Default User\AppData\Local\Temp emptied successfully
C:\Users\Michal\AppData\Local\Temp will be emptied at reboot
C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp will be emptied at reboot
C:\WINDOWS\serviceprofiles\Localservice\AppData\Local\Temp emptied successfully
C:\WINDOWS\Temp will be emptied at reboot

==== After Reboot ======================

==== Empty Temp Folders ======================

C:\WINDOWS\Temp successfully emptied
C:\Users\Michal\AppData\Local\Temp successfully emptied

==== Empty Recycle Bin ======================

C:\$RECYCLE.BIN successfully emptied

==== Deleting Files / Folders ======================

"C:\WINDOWS\serviceprofiles\networkservice\AppData\Local\Temp\Low" not deleted

==== EOF on 03/01/2015 at 12:49:06.00 ======================
Majkl55

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Zpomaleny notebook

#6 Příspěvek od vyosek »

"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Majkl55
Návštěvník
Návštěvník
Příspěvky: 70
Registrován: 15 kvě 2008 12:20

Re: Zpomaleny notebook

#7 Příspěvek od Majkl55 »

Scan result of Farbar Recovery Scan Tool (FRST.txt) (x64) Version: 03-01-2015 03
Ran by Michal (administrator) on MAJKL55 on 03-01-2015 18:51:18
Running from C:\Users\Michal\Desktop
Loaded Profile: Michal (Available profiles: Michal & Administrator)
Platform: Windows 8.1 (X64) OS Language: English (United States)
Internet Explorer Version 11 (Default browser: IE)
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/33 ... scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(AMD) C:\Windows\System32\atiesrxx.exe
(Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(Apple Inc.) C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe
(Microsoft Corporation) C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\SA3\CxUtilSvc.exe
(Microsoft Corporation) C:\Windows\System32\dasHost.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe
(Intel(R) Corporation) C:\Program Files\Intel\WiFi\bin\EvtEng.exe
(Intel(R) Corporation) C:\Program Files\Intel\iCLS Client\HeciServer.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\Jhi_service.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\HelperService.exe
(pdfforge GmbH) C:\Program Files (x86)\PDF Architect\ConversionService.exe
(Intel(R) Corporation) C:\Program Files\Common Files\Intel\WirelessCommon\RegSrvc.exe
() C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe
(Intel® Corporation) C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
(Motorola Solutions, Inc.) C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(SoftThinks SAS) C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
(Microsoft Corporation) C:\Windows\System32\wlanext.exe
(AMD) C:\Windows\System32\atieclxx.exe
(Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation) C:\Windows\System32\igfxHK.exe
(Intel Corporation) C:\Windows\System32\igfxTray.exe
(SoftThinks - Dell) C:\Program Files (x86)\Dell Backup and Recovery\Toaster.exe
(Microsoft Corporation) C:\Windows\System32\SkyDrive.exe
(Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Corporation) C:\Windows\System32\SettingSyncHost.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(Dell Inc.) C:\Program Files\Dell\QuickSet\quickset.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDGesture.exe
(Conexant Systems, Inc.) C:\Program Files\CONEXANT\SA3\SmartAudio3.exe
(Microsoft Corporation) C:\Windows\System32\rundll32.exe
(ESET) C:\Program Files\ESET\ESET Smart Security\egui.exe
(Skype Technologies S.A.) C:\Program Files (x86)\Skype\Phone\Skype.exe
(CyberLink) C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe
(CyberLink Corp.) C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe
(Citrix Systems, Inc.) C:\Program Files (x86)\Citrix\ICA Client\redirector.exe
(Advanced Micro Devices Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\MOM.exe
(ATI Technologies Inc.) C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\CCC.exe
(Adobe Systems Incorporated) C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\AAM Updates Notifier.exe
(Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
(forum.viry.cz) C:\Users\Michal\Desktop\FRSTLauncher.exe


==================== Registry (Whitelisted) ==================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [ETDCtrl] => C:\Program Files\Elantech\ETDCtrl.exe [2898768 2012-07-09] (ELAN Microelectronics Corp.)
HKLM\...\Run: [QuickSet] => c:\Program Files\Dell\QuickSet\QuickSet.exe [5752480 2012-07-11] (Dell Inc.)
HKLM\...\Run: [SmartAudio] => C:\Program Files\CONEXANT\SA3\SACpl.exe [1647616 2012-06-13] (Conexant Systems, Inc.)
HKLM\...\Run: [IntelTBRunOnce] => wscript.exe //b //nologo "C:\Program Files\Intel\TurboBoost\RunTBGadgetOnce.vbs"
HKLM\...\Run: [BTMTrayAgent] => rundll32.exe "C:\Program Files (x86)\Intel\Bluetooth\btmshell.dll",TrayApp
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [499608 2011-06-16] (Adobe Systems Incorporated)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Smart Security\egui.exe [5618456 2013-09-12] (ESET)
HKLM-x32\...\Run: [IAStorIcon] => C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe [277504 2012-07-09] (Intel Corporation)
HKLM-x32\...\Run: [CLMLServer_For_P2G8] => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120 2012-06-08] (CyberLink)
HKLM-x32\...\Run: [CLVirtualDrive] => C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491120 2012-07-04] (CyberLink Corp.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [143888 2012-06-02] (CyberLink Corp.)
HKLM-x32\...\Run: [Redirector] => C:\Program Files (x86)\Citrix\ICA Client\redirector.exe [153992 2013-10-01] (Citrix Systems, Inc.)
HKLM-x32\...\Run: [StartCCC] => C:\Program Files (x86)\AMD\ATI.ACE\Core-Static\amd64\CLIStart.exe [767176 2014-11-20] (Advanced Micro Devices, Inc.)
HKU\S-1-5-21-719243096-1991990810-3985077826-1001\...\Run: [CAHeadless] => C:\Program Files (x86)\Adobe\Elements 10 Organizer\CAHeadless\ElementsAutoAnalyzer.exe [835224 2011-09-14] (Adobe Systems Incorporated)
HKU\S-1-5-21-719243096-1991990810-3985077826-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30877280 2014-12-11] (Skype Technologies S.A.)
HKU\S-1-5-21-719243096-1991990810-3985077826-1001\...\Run: [CCleaner Monitoring] => C:\Program Files\CCleaner\CCleaner64.exe [7063832 2014-11-21] (Piriform Ltd)
HKU\S-1-5-21-719243096-1991990810-3985077826-1001\...\Run: [uTorrent] => C:\Users\Michal\AppData\Roaming\uTorrent\uTorrent.exe [1385808 2014-11-26] (BitTorrent Inc.)
HKU\S-1-5-21-719243096-1991990810-3985077826-1001\...\MountPoints2: E - "E:\setup.exe"

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

HKU\S-1-5-21-719243096-1991990810-3985077826-1001\Software\Microsoft\Internet Explorer\Main,Start Page = http://google.co.uk/
HKU\S-1-5-21-719243096-1991990810-3985077826-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://dell13.msn.com
SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-719243096-1991990810-3985077826-1001 -> {012E1000-F331-11DB-8314-0800200C9A66} URL = http://www.google.com/search?q={searchTerms}
BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
BHO-x32: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll (Microsoft Corporation)
BHO-x32: PDF Architect Helper -> {3A2D5EBA-F86D-4BD3-A177-019765996711} -> C:\Program Files (x86)\PDF Architect\PDFIEHelper.dll (pdfforge GmbH)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL (Microsoft Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL (Microsoft Corporation)
Handler-x32: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\Program Files (x86)\Common Files\Skype\Skype4COM.dll (Skype Technologies)
Handler: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer x64\skypeieplugin.dll (Microsoft Corporation)
Handler-x32: skypec2c - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\SkypeIEPlugin.dll (Microsoft Corporation)
Filter-x32: application/x-ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica; charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=euc-jp - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=ISO-8859-1 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=MS936 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=MS949 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=MS950 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=UTF-8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: application/x-ica;charset=UTF8 - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Filter-x32: ica - {CFB6322E-CC85-4d1b-82C7-893888A236BC} - C:\Program Files (x86)\Citrix\ICA Client\IcaMimeFilter.dll (Citrix Systems, Inc.)
Tcpip\Parameters: [DhcpNameServer] 10.0.0.138

FireFox:
========
FF Plugin: @java.com/DTPlugin,version=10.5.0 -> C:\WINDOWS\system32\npDeployJava1.dll (Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=10.5.0 -> C:\Program Files\Java\jre7\bin\plugin2\npjp2.dll (Oracle Corporation)
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @Apple.com/iTunes,version=1.0 -> C:\Program Files (x86)\iTunes\Mozilla Plugins\npitunes.dll ()
FF Plugin-x32: @Citrix.com/npican -> C:\Program Files (x86)\Citrix\ICA Client\npicaN.dll (Citrix Systems, Inc.)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=2.1.42 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll (Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll (Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll (Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.30514.0\npctrl.dll ( Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL (Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=16.4.3503.0728 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF Plugin-x32: @tools.google.com/Google Update;version=3 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @tools.google.com/Google Update;version=9 -> C:\Program Files (x86)\Google\Update\1.3.25.11\npGoogleUpdate3.dll (Google Inc.)
FF Plugin-x32: @videolan.org/vlc,version=2.1.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=2.1.2 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll (VideoLAN)
FF Plugin ProgramFiles/Appdata: C:\Program Files (x86)\mozilla firefox\plugins\npMeetingJoinPluginOC.dll (Microsoft Corporation)
FF HKLM\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird
FF Extension: ESET Smart Security Extension - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird [2013-12-30]
FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
FF HKLM-x32\...\Thunderbird\Extensions: [eplgTb@eset.com] - C:\Program Files\ESET\ESET Smart Security\Mozilla Thunderbird

Chrome:
=======
CHR Profile: C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default
CHR Extension: (Google Slides) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2015-01-03]
CHR Extension: (Google Docs) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2013-11-22]
CHR Extension: (Google Drive) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2013-11-22]
CHR Extension: (Google Voice Search Hotword (Beta)) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\bepbmhgboaologfdajaanbcjmnhjmhfn [2014-09-05]
CHR Extension: (YouTube) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2013-11-22]
CHR Extension: (Google Search) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\coobgpohoikkiipiblmjeljniedjpjpf [2013-11-22]
CHR Extension: (Google Sheets) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2015-01-03]
CHR Extension: (Google Wallet) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2013-11-22]
CHR Extension: (Gmail) - C:\Users\Michal\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2013-11-22]

==================== Services (Whitelisted) =================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeActiveFileMonitor10.0; C:\Program Files (x86)\Adobe\Elements 10 Organizer\PhotoshopElementsFileAgent.exe [169624 2011-09-14] (Adobe Systems Incorporated)
R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
R2 CxUtilSvc; C:\Program Files\Conexant\SA3\CxUtilSvc.exe [109184 2012-07-04] (Conexant Systems, Inc.)
R2 ekrn; C:\Program Files\ESET\ESET Smart Security\x86\ekrn.exe [1337752 2013-09-12] (ESET)
R2 IAStorDataMgrSvc; C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe [7168 2012-07-09] (Intel Corporation) [File not signed]
R2 igfxCUIService1.0.0.0; C:\Windows\system32\igfxCUIService.exe [319376 2014-10-01] (Intel Corporation)
R2 jhi_service; C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe [165760 2012-07-18] (Intel Corporation)
S3 MyWiFiDHCPDNS; C:\Program Files\Intel\WiFi\bin\PanDhcpDns.exe [284912 2014-01-08] ()
R2 PDF Architect Helper Service; C:\Program Files (x86)\PDF Architect\HelperService.exe [1320496 2013-04-08] (pdfforge GmbH)
R2 PDF Architect Service; C:\Program Files (x86)\PDF Architect\ConversionService.exe [799280 2013-04-08] (pdfforge GmbH)
R2 RichVideo; C:\Program Files (x86)\CyberLink\Shared files\RichVideo.exe [254512 2012-04-25] ()
R2 SftService; C:\Program Files (x86)\Dell Backup and Recovery\SftService.exe [1914728 2012-09-13] (SoftThinks SAS)
S3 Te.Service; C:\Program Files (x86)\Windows Kits\8.1\Testing\Runtimes\TAEF\Wex.Services.exe [119808 2013-08-22] (Microsoft Corporation) [File not signed]
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [368632 2014-12-16] (Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [23792 2014-12-16] (Microsoft Corporation)
R2 ZeroConfigService; C:\Program Files\Intel\WiFi\bin\ZeroConfigService.exe [3674864 2014-01-08] (Intel® Corporation)

==================== Drivers (Whitelisted) ====================

(If an entry is included in the fixlist, the service will be removed from the registry. The file will not be moved unless listed separately.)

R0 amdkmpfd; C:\Windows\System32\drivers\amdkmpfd.sys [62152 2014-10-28] (Advanced Micro Devices, Inc.)
R3 BthLEEnum; C:\Windows\system32\DRIVERS\BthLEEnum.sys [226304 2014-09-24] (Microsoft Corporation)
R1 CLVirtualDrive; C:\Windows\system32\DRIVERS\CLVirtualDrive.sys [92536 2012-06-25] (CyberLink)
S3 DellRbtn; C:\Windows\System32\drivers\DellRbtn.sys [10752 2012-08-05] (OSR Open Systems Resources, Inc.)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [239320 2013-09-17] (ESET)
R0 edevmon; C:\Windows\System32\DRIVERS\edevmon.sys [239296 2013-09-17] (ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [168256 2013-09-17] (ESET)
R2 epfw; C:\Windows\system32\DRIVERS\epfw.sys [220232 2013-09-17] (ESET)
R1 EpfwLWF; C:\Windows\system32\DRIVERS\EpfwLWF.sys [44120 2013-09-17] (ESET)
R0 epfwwfp; C:\Windows\System32\DRIVERS\epfwwfp.sys [62136 2013-09-17] (ESET)
R3 NETwNe64; C:\Windows\system32\DRIVERS\Netwew00.sys [3349984 2014-02-25] (Intel Corporation)
S3 RimVSerPort; C:\Windows\system32\DRIVERS\RimSerial_AMD64.sys [44032 2011-07-20] (Research in Motion Ltd)
S3 WdNisDrv; C:\Windows\System32\Drivers\WdNisDrv.sys [114496 2014-12-16] (Microsoft Corporation)
S3 iwdbus; \SystemRoot\System32\drivers\iwdbus.sys [X]
S3 usb3Hub; \SystemRoot\System32\drivers\usb3Hub.sys [X]
S3 XHCIPort; \SystemRoot\System32\drivers\XHCIPort.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an item is included in the fixlist, it will be removed from the registry. Any associated file could be listed separately to be moved.)


==================== One Month Created Files and Folders ========

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-03 18:51 - 2015-01-03 18:51 - 00020550 _____ () C:\Users\Michal\Desktop\FRST.txt
2015-01-03 18:51 - 2015-01-03 18:51 - 00000000 ____D () C:\FRST
2015-01-03 18:49 - 2015-01-03 18:49 - 00112640 _____ (forum.viry.cz) C:\Users\Michal\Desktop\FRSTLauncher.exe
2015-01-03 18:48 - 2015-01-03 18:48 - 02123776 _____ (Farbar) C:\Users\Michal\Desktop\FRST64.exe
2015-01-03 12:46 - 2015-01-03 12:34 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2015-01-03 12:35 - 2015-01-03 12:49 - 00007916 _____ () C:\zoek-results.log
2015-01-03 12:34 - 2015-01-03 12:47 - 00000000 ____D () C:\zoek_backup
2015-01-03 12:28 - 2015-01-03 12:29 - 00000000 ____D () C:\AdwCleaner
2015-01-03 12:26 - 2015-01-03 12:26 - 01295360 _____ () C:\Users\Michal\Desktop\zoek.exe
2015-01-03 12:25 - 2015-01-03 12:25 - 02173952 _____ () C:\Users\Michal\Desktop\adwcleaner_4.106.exe
2015-01-03 00:41 - 2015-01-03 00:41 - 00000000 ____D () C:\rsit
2015-01-03 00:41 - 2015-01-03 00:41 - 00000000 ____D () C:\Program Files\trend micro
2015-01-03 00:40 - 2015-01-03 00:40 - 01222144 _____ () C:\Users\Michal\Desktop\RSITx64.exe
2015-01-01 15:03 - 2015-01-01 15:05 - 00000000 ____D () C:\Users\Michal\Downloads\Top Gear Season 21 Complete S21 720p HDTV x264 AAC 2.0 [C7B]
2014-12-31 20:16 - 2014-12-31 22:57 - 00000000 ____D () C:\Users\Michal\Downloads\Top_Gear.2014_Special.Patagonia_Part_One.HDTV_x264-FoV[ettv]
2014-12-31 20:15 - 2014-12-31 20:41 - 582841127 _____ () C:\Users\Michal\Downloads\Top_Gear.2014_Special.Patagonia_Part_Two.HDTV_x264-FoV.[VTV].mp4
2014-12-31 19:54 - 2015-01-03 12:47 - 00000946 _____ () C:\WINDOWS\PFRO.log
2014-12-28 20:23 - 2015-01-03 13:17 - 00531012 _____ () C:\WINDOWS\WindowsUpdate.log
2014-12-21 12:38 - 2014-12-21 12:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Bluetooth Devices
2014-12-21 12:20 - 2014-12-21 12:20 - 00000000 ____D () C:\Users\Michal\Desktop\foto
2014-12-21 11:28 - 2014-12-21 17:36 - 09636230 _____ () C:\Users\Michal\Desktop\poukazka.psd
2014-12-21 11:10 - 2015-01-03 18:47 - 00003926 _____ () C:\WINDOWS\System32\Tasks\User_Feed_Synchronization-{1B5DDC00-6B15-4F22-B6F4-3BC3F93396FE}
2014-12-21 11:10 - 2014-12-21 11:10 - 00000000 __SHD () C:\Users\Michal\AppData\Local\EmieUserList
2014-12-21 11:10 - 2014-12-21 11:10 - 00000000 __SHD () C:\Users\Michal\AppData\Local\EmieSiteList
2014-12-21 11:10 - 2014-12-21 11:10 - 00000000 __SHD () C:\Users\Michal\AppData\Local\EmieBrowserModeList
2014-12-19 18:44 - 2014-12-19 19:11 - 00000000 ____D () C:\Users\Michal\Desktop\USA 2014
2014-12-18 22:33 - 2014-12-18 22:33 - 00000000 ____D () C:\Users\Michal\Downloads\Windows Kits
2014-12-18 22:30 - 2014-12-18 22:30 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Kits
2014-12-18 22:29 - 2014-12-18 22:29 - 00000000 ____D () C:\Program Files (x86)\Windows Kits
2014-12-18 21:50 - 2014-12-18 21:50 - 00000000 ____D () C:\ProgramData\ATI
2014-12-18 21:40 - 2014-12-18 21:40 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\library_dir
2014-12-18 21:38 - 2015-01-01 12:30 - 00000000 ____D () C:\Program Files (x86)\Raptr
2014-12-18 21:38 - 2014-12-18 21:38 - 00053564 _____ () C:\WINDOWS\SysWOW64\CCCInstall_201412182138431979.log
2014-12-18 21:38 - 2014-12-18 21:38 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AMD Catalyst Control Center
2014-12-18 21:38 - 2014-12-18 21:38 - 00000000 ____D () C:\ProgramData\AMD
2014-12-18 21:38 - 2014-12-18 21:38 - 00000000 ____D () C:\Program Files (x86)\AMD AVT
2014-12-18 21:38 - 2014-12-18 21:38 - 00000000 ____D () C:\Program Files (x86)\AMD
2014-12-18 21:36 - 2014-12-18 21:36 - 00000000 ____D () C:\WINDOWS\LastGood.Tmp
2014-12-18 21:33 - 2014-12-18 21:36 - 00000000 ____D () C:\Program Files\AMD
2014-12-18 21:32 - 2014-12-18 21:32 - 00000000 ____D () C:\AMD
2014-12-17 22:41 - 2015-01-03 13:14 - 00000008 _____ () C:\Users\Michal\Desktop\WPA klic wifi.txt
2014-12-17 09:49 - 2014-12-17 10:03 - 513379904 _____ (Dell Inc.) C:\Users\Michal\Desktop\7520_Video_Driver_7VXH5_WN_8.951.9.1000_A04.EXE
2014-12-17 09:40 - 2014-12-17 09:40 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless
2014-12-17 09:40 - 2014-12-17 09:40 - 00000000 ____D () C:\Program Files (x86)\Cisco
2014-12-17 09:36 - 2014-12-17 09:36 - 00664768 _____ (Copyright© 2012-2013 Intel Corporation. All rights reserved.) C:\Users\Michal\Desktop\Intel(R) WiDi Update Tool.exe
2014-12-16 21:38 - 2014-12-16 21:38 - 00000000 ____D () C:\WINDOWS\system32\appraiser
2014-12-16 21:34 - 2014-12-16 21:34 - 00000000 ___RD () C:\WINDOWS\BrowserChoice
2014-12-16 21:32 - 2014-08-16 05:08 - 01507648 _____ (Microsoft Corporation) C:\WINDOWS\system32\propsys.dll
2014-12-16 21:32 - 2014-08-16 05:01 - 01710184 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntdll.dll
2014-12-16 21:32 - 2014-08-16 04:58 - 01112512 _____ (Microsoft Corporation) C:\WINDOWS\system32\KernelBase.dll
2014-12-16 21:32 - 2014-08-16 04:16 - 01205976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\propsys.dll
2014-12-16 21:32 - 2014-08-16 04:03 - 01467384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ntdll.dll
2014-12-16 21:32 - 2014-08-16 02:31 - 00838144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\KernelBase.dll
2014-12-16 21:32 - 2014-08-16 02:04 - 00359424 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wldap32.dll
2014-12-16 21:32 - 2014-08-16 01:58 - 00287744 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemEventsBrokerServer.dll
2014-12-16 21:32 - 2014-08-16 01:45 - 00267776 _____ (Microsoft Corporation) C:\WINDOWS\system32\bisrv.dll
2014-12-16 21:32 - 2014-08-16 01:43 - 00321024 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wldap32.dll
2014-12-16 21:32 - 2014-08-16 01:31 - 00914432 _____ (Microsoft Corporation) C:\WINDOWS\system32\iphlpsvc.dll
2014-12-16 21:32 - 2014-08-16 01:23 - 01106432 _____ (Microsoft Corporation) C:\WINDOWS\system32\SearchFolder.dll
2014-12-16 21:32 - 2014-08-16 01:22 - 00717824 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveTelemetry.dll
2014-12-16 21:32 - 2014-08-16 01:18 - 04758528 _____ (Microsoft Corporation) C:\WINDOWS\system32\SyncEngine.dll
2014-12-16 21:32 - 2014-08-16 01:17 - 08757760 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.UI.Search.dll
2014-12-16 21:32 - 2014-08-16 01:13 - 06649344 _____ (Microsoft Corporation) C:\WINDOWS\system32\mstscax.dll
2014-12-16 21:32 - 2014-08-16 01:13 - 05902848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.UI.Search.dll
2014-12-16 21:32 - 2014-08-16 01:13 - 00840192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SearchFolder.dll
2014-12-16 21:32 - 2014-08-16 01:11 - 00920064 _____ (Microsoft Corporation) C:\WINDOWS\system32\WSShared.dll
2014-12-16 21:32 - 2014-08-16 01:10 - 01120768 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDrive.exe
2014-12-16 21:32 - 2014-08-16 01:08 - 05777408 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mstscax.dll
2014-12-16 21:32 - 2014-08-16 01:07 - 00756224 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WSShared.dll
2014-12-16 21:31 - 2014-08-23 08:48 - 02374784 _____ (Microsoft Corporation) C:\WINDOWS\explorer.exe
2014-12-16 21:31 - 2014-08-23 08:13 - 02084520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\explorer.exe
2014-12-16 21:31 - 2014-08-23 07:10 - 00068096 _____ (Microsoft Corporation) C:\WINDOWS\system32\UXInit.dll
2014-12-16 21:31 - 2014-08-23 06:32 - 00050176 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\UXInit.dll
2014-12-16 21:31 - 2014-08-23 05:33 - 00796672 _____ (Microsoft Corporation) C:\WINDOWS\system32\uDWM.dll
2014-12-16 21:31 - 2014-08-16 01:53 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\httpprxm.dll
2014-12-16 21:31 - 2014-08-16 01:46 - 00290816 _____ (Microsoft Corporation) C:\WINDOWS\system32\ProximityService.dll
2014-12-16 21:31 - 2014-08-16 01:43 - 00075776 _____ (Microsoft Corporation) C:\WINDOWS\system32\adhsvc.dll
2014-12-16 21:31 - 2014-08-16 01:31 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\pcsvDevice.dll
2014-12-16 21:31 - 2014-08-16 01:29 - 00249344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Windows.ApplicationModel.Store.TestingFramework.dll
2014-12-16 21:31 - 2014-08-16 01:22 - 00286208 _____ (Microsoft Corporation) C:\WINDOWS\system32\SkyDriveShell.dll
2014-12-16 21:31 - 2014-08-16 01:19 - 00189952 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Windows.ApplicationModel.Store.TestingFramework.dll
2014-12-16 21:31 - 2014-08-16 01:14 - 00265216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\SkyDriveShell.dll
2014-12-16 21:31 - 2014-08-15 01:36 - 00146752 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\msgpioclx.sys
2014-12-16 21:31 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\TsWpfWrp.exe
2014-12-16 21:31 - 2014-06-09 23:13 - 00035480 _____ (Microsoft Corporation) C:\WINDOWS\system32\TsWpfWrp.exe
2014-12-16 21:29 - 2014-12-04 00:37 - 00227328 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepdu.dll
2014-12-16 21:29 - 2014-12-04 00:09 - 00830464 _____ (Microsoft Corporation) C:\WINDOWS\system32\appraiser.dll
2014-12-16 21:29 - 2014-12-03 00:09 - 01083392 _____ (Microsoft Corporation) C:\WINDOWS\system32\aeinv.dll
2014-12-16 21:29 - 2014-12-03 00:09 - 00740864 _____ (Microsoft Corporation) C:\WINDOWS\system32\invagent.dll
2014-12-16 21:29 - 2014-12-03 00:09 - 00412672 _____ (Microsoft Corporation) C:\WINDOWS\system32\generaltel.dll
2014-12-16 21:29 - 2014-12-03 00:09 - 00396288 _____ (Microsoft Corporation) C:\WINDOWS\system32\devinv.dll
2014-12-16 21:29 - 2014-12-03 00:09 - 00192000 _____ (Microsoft Corporation) C:\WINDOWS\system32\aepic.dll
2014-12-16 21:29 - 2014-08-02 01:18 - 01212928 _____ (Microsoft Corporation) C:\WINDOWS\system32\schedsvc.dll
2014-12-16 21:29 - 2014-07-15 19:16 - 03048880 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcMon.exe
2014-12-16 21:29 - 2014-07-15 09:29 - 03118080 _____ (Microsoft Corporation) C:\WINDOWS\system32\Wpc.dll
2014-12-16 21:29 - 2014-07-15 09:22 - 02861056 _____ (Microsoft Corporation) C:\WINDOWS\system32\WpcWebSync.dll
2014-12-16 21:29 - 2014-07-15 09:03 - 02344448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Wpc.dll
2014-12-16 21:29 - 2014-05-03 06:36 - 00997888 _____ (Microsoft Corporation) C:\WINDOWS\system32\reseteng.dll
2014-12-16 21:29 - 2014-05-03 06:19 - 00071168 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncobjapi.dll
2014-12-16 21:29 - 2014-05-03 06:08 - 00301056 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedynos.dll
2014-12-16 21:29 - 2014-05-03 06:07 - 00262656 _____ (Microsoft Corporation) C:\WINDOWS\system32\framedyn.dll
2014-12-16 21:29 - 2014-05-03 05:46 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncobjapi.dll
2014-12-16 21:29 - 2014-05-03 05:37 - 00235008 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedynos.dll
2014-12-16 21:29 - 2014-05-03 05:37 - 00207360 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\framedyn.dll
2014-12-16 21:29 - 2014-05-03 00:26 - 00050745 _____ () C:\WINDOWS\system32\srms.dat
2014-12-16 21:29 - 2014-04-30 07:43 - 00071680 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwififlt.sys
2014-12-16 21:29 - 2014-04-30 07:41 - 00402432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\mrxsmb.sys
2014-12-16 21:29 - 2014-04-30 07:41 - 00096768 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\agilevpn.sys
2014-12-16 21:29 - 2014-04-30 07:41 - 00038912 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\vwifimp.sys
2014-12-16 21:29 - 2014-04-30 06:45 - 00123392 _____ (Microsoft Corporation) C:\WINDOWS\system32\Robocopy.exe
2014-12-16 21:29 - 2014-04-30 05:48 - 00106496 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\Robocopy.exe
2014-12-16 21:29 - 2014-04-30 05:24 - 00065024 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc6.dll
2014-12-16 21:29 - 2014-04-30 05:23 - 00353280 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore.dll
2014-12-16 21:29 - 2014-04-30 05:23 - 00271872 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcore6.dll
2014-12-16 21:29 - 2014-04-30 05:23 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\dhcpcsvc.dll
2014-12-16 21:29 - 2014-04-30 05:14 - 00827392 _____ (Microsoft Corporation) C:\WINDOWS\system32\BFE.DLL
2014-12-16 21:29 - 2014-04-30 04:59 - 01063424 _____ (Microsoft Corporation) C:\WINDOWS\system32\IKEEXT.DLL
2014-12-16 21:29 - 2014-04-30 04:46 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore.dll
2014-12-16 21:29 - 2014-04-30 04:46 - 00229888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcore6.dll
2014-12-16 21:29 - 2014-04-30 04:46 - 00056320 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc6.dll
2014-12-16 21:29 - 2014-04-30 04:45 - 00062976 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dhcpcsvc.dll
2014-12-16 21:29 - 2014-04-30 04:42 - 00403968 _____ (Microsoft Corporation) C:\WINDOWS\system32\vpnike.dll
2014-12-16 21:29 - 2014-04-28 23:40 - 00721408 _____ (Microsoft Corporation) C:\WINDOWS\system32\fveapi.dll
2014-12-16 21:29 - 2014-04-26 17:39 - 00339456 _____ (Microsoft Corporation) C:\WINDOWS\system32\bdesvc.dll
2014-12-16 21:29 - 2014-04-14 10:37 - 02125344 _____ (Microsoft Corporation) C:\WINDOWS\system32\d3d9.dll
2014-12-16 21:29 - 2014-04-14 09:08 - 01797896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d9.dll
2014-12-16 21:29 - 2014-04-14 06:18 - 00011776 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\d3d8thk.dll
2014-12-16 21:28 - 2014-07-24 04:20 - 00875688 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msvcr120_clr0400.dll
2014-12-16 21:28 - 2014-07-24 04:20 - 00869544 _____ (Microsoft Corporation) C:\WINDOWS\system32\msvcr120_clr0400.dll
2014-12-16 21:28 - 2014-07-10 05:08 - 00321536 _____ (Microsoft Corporation) C:\WINDOWS\system32\lockscreencn.dll
2014-12-16 21:28 - 2014-06-02 03:10 - 00423768 _____ (Microsoft Corporation) C:\WINDOWS\system32\hal.dll
2014-12-16 21:28 - 2014-05-31 07:27 - 00110592 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFPf.sys
2014-12-16 21:28 - 2014-05-31 07:26 - 00227840 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WUDFRd.sys
2014-12-16 21:28 - 2014-05-31 05:01 - 00284672 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFHost.exe
2014-12-16 21:28 - 2014-05-31 05:01 - 00209408 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFPlatform.dll
2014-12-16 21:28 - 2014-05-31 05:01 - 00099840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUDFSvc.dll
2014-12-16 21:28 - 2014-05-27 10:56 - 00323584 _____ (Microsoft Corporation) C:\WINDOWS\system32\DaOtpCredentialProvider.dll
2014-12-16 21:28 - 2014-05-27 10:53 - 00270848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DaOtpCredentialProvider.dll
2014-12-16 21:26 - 2014-12-21 22:44 - 00000000 ____D () C:\Users\Michal\Desktop\sloty_target
2014-12-16 21:13 - 2014-12-16 21:13 - 00000000 ____D () C:\Program Files (x86)\Dell Digital Delivery
2014-12-16 20:39 - 2014-12-16 20:39 - 00002774 _____ () C:\WINDOWS\System32\Tasks\CCleanerSkipUAC
2014-12-16 20:39 - 2014-12-16 20:39 - 00000836 _____ () C:\Users\Public\Desktop\CCleaner.lnk
2014-12-16 20:39 - 2014-12-16 20:39 - 00000000 ____D () C:\Program Files\CCleaner
2014-12-16 20:38 - 2014-12-16 20:38 - 05162080 _____ (Piriform Ltd) C:\Users\Michal\Downloads\ccsetup500.exe
2014-12-16 20:15 - 2014-12-16 20:15 - 00000144 _____ () C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2014-12-16 20:13 - 2014-12-18 22:15 - 00000000 ____D () C:\WINDOWS\Minidump
2014-12-16 18:12 - 2014-12-16 20:46 - 00000000 ___DC () C:\WINDOWS\Panther
2014-12-16 18:08 - 2014-12-16 18:08 - 02149376 _____ (Microsoft Corporation) C:\WINDOWS\system32\msxml3.dll
2014-12-16 18:08 - 2014-12-16 18:08 - 01346048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msxml3.dll
2014-12-16 18:08 - 2014-12-16 18:08 - 00789184 _____ (Microsoft Corporation) C:\WINDOWS\system32\oleaut32.dll
2014-12-16 18:08 - 2014-12-16 18:08 - 00602768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\oleaut32.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 25059840 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 19749376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 14412800 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieframe.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 12836864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieframe.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 06039552 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 04299264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 02885120 _____ (Microsoft Corporation) C:\WINDOWS\system32\iertutil.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 02358272 _____ (Microsoft Corporation) C:\WINDOWS\system32\wininet.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 02277888 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iertutil.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 02125312 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcpl.cpl
2014-12-16 18:07 - 2014-12-16 18:07 - 02052096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcpl.cpl
2014-12-16 18:07 - 2014-12-16 18:07 - 01888256 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wininet.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 01548288 _____ (Microsoft Corporation) C:\WINDOWS\system32\urlmon.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 01307136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\urlmon.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 01032704 _____ (Microsoft Corporation) C:\WINDOWS\system32\inetcomm.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00880128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inetcomm.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00812544 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeeds.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00800768 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieapfltr.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00718848 _____ (Microsoft Corporation) C:\WINDOWS\system32\ie4uinit.exe
2014-12-16 18:07 - 2014-12-16 18:07 - 00710144 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieapfltr.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00688640 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeeds.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00661504 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00580096 _____ (Microsoft Corporation) C:\WINDOWS\system32\vbscript.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00501248 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\vbscript.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00417280 _____ (Microsoft Corporation) C:\WINDOWS\system32\html.iec
2014-12-16 18:07 - 2014-12-16 18:07 - 00373760 _____ (Microsoft Corporation) C:\WINDOWS\system32\iedkcs32.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00340992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\html.iec
2014-12-16 18:07 - 2014-12-16 18:07 - 00326656 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iedkcs32.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00316928 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtrans.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00285696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtrans.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00262144 _____ (Microsoft Corporation) C:\WINDOWS\system32\webcheck.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00230400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\webcheck.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00145408 _____ (Microsoft Corporation) C:\WINDOWS\system32\iepeers.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00128000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iepeers.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00092160 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtmled.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00088064 _____ (Microsoft Corporation) C:\WINDOWS\system32\MshtmlDac.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00076288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtmled.dll
2014-12-16 18:07 - 2014-12-16 18:07 - 00064000 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MshtmlDac.dll
2014-12-16 18:06 - 2014-12-16 18:06 - 02819584 _____ (Microsoft Corporation) C:\WINDOWS\system32\SettingsHandlers.dll
2014-12-16 18:06 - 2014-12-16 18:06 - 02171904 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlowUI.dll
2014-12-16 18:06 - 2014-12-16 18:06 - 01091072 _____ (Microsoft Corporation) C:\WINDOWS\system32\MrmCoreR.dll
2014-12-16 18:06 - 2014-12-16 18:06 - 00911360 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiosrv.dll
2014-12-16 18:06 - 2014-12-16 18:06 - 00790528 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MrmCoreR.dll
2014-12-16 18:06 - 2014-12-16 18:06 - 00672984 _____ (Microsoft Corporation) C:\WINDOWS\system32\MDMAgent.exe
2014-12-16 18:06 - 2014-12-16 18:06 - 00500016 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioSes.dll
2014-12-16 18:06 - 2014-12-16 18:06 - 00482872 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEng.dll
2014-12-16 18:06 - 2014-12-16 18:06 - 00463872 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettings.Handlers.dll
2014-12-16 18:06 - 2014-12-16 18:06 - 00424544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioEng.dll
2014-12-16 18:06 - 2014-12-16 18:06 - 00394120 _____ (Microsoft Corporation) C:\WINDOWS\system32\AUDIOKSE.dll
2014-12-16 18:06 - 2014-12-16 18:06 - 00370424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AudioSes.dll
2014-12-16 18:06 - 2014-12-16 18:06 - 00344536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\AUDIOKSE.dll
2014-12-16 18:06 - 2014-12-16 18:06 - 00273240 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsAdminFlows.exe
2014-12-16 18:06 - 2014-12-16 18:06 - 00272248 _____ (Microsoft Corporation) C:\WINDOWS\system32\audiodg.exe
2014-12-16 18:06 - 2014-12-16 18:06 - 00226304 _____ (Microsoft Corporation) C:\WINDOWS\system32\AudioEndpointBuilder.dll
2014-12-16 18:06 - 2014-12-16 18:06 - 00116736 _____ (Microsoft Corporation) C:\WINDOWS\system32\SystemSettingsDatabase.dll
2014-12-16 18:06 - 2014-12-16 18:06 - 00108432 _____ (Microsoft Corporation) C:\WINDOWS\system32\EncDump.dll
2014-12-16 18:06 - 2014-12-16 18:06 - 00081408 _____ (Microsoft Corporation) C:\WINDOWS\system32\packager.dll
2014-12-16 18:06 - 2014-12-16 18:06 - 00072192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\packager.dll
2014-12-16 18:03 - 2014-12-16 18:03 - 03607040 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msi.dll
2014-12-16 18:03 - 2014-12-16 18:03 - 03320320 _____ (Microsoft Corporation) C:\WINDOWS\system32\msi.dll
2014-12-16 18:03 - 2014-12-16 18:03 - 02773504 _____ (Microsoft Corporation) C:\WINDOWS\system32\authui.dll
2014-12-16 18:03 - 2014-12-16 18:03 - 02459136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\authui.dll
2014-12-16 18:03 - 2014-12-16 18:03 - 01970432 _____ (Microsoft Corporation) C:\WINDOWS\system32\crypt32.dll
2014-12-16 18:03 - 2014-12-16 18:03 - 01612992 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\crypt32.dll
2014-12-16 18:03 - 2014-12-16 18:03 - 00428032 _____ (Microsoft Corporation) C:\WINDOWS\system32\msihnd.dll
2014-12-16 18:03 - 2014-12-16 18:03 - 00325120 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msihnd.dll
2014-12-16 18:03 - 2014-12-16 18:03 - 00238912 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\sdbus.sys
2014-12-16 18:03 - 2014-12-16 18:03 - 00153920 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\dumpsd.sys
2014-12-16 18:03 - 2014-12-16 18:03 - 00116032 _____ (Microsoft Corporation) C:\WINDOWS\system32\consent.exe
2014-12-16 18:03 - 2014-12-16 18:03 - 00110080 _____ (Microsoft Corporation) C:\WINDOWS\system32\appinfo.dll
2014-12-16 18:03 - 2014-12-16 18:03 - 00086336 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\pdc.sys
2014-12-16 18:03 - 2014-12-16 18:03 - 00054592 _____ (Microsoft Corporation) C:\WINDOWS\system32\kdusb.dll
2014-12-16 18:03 - 2014-12-16 18:03 - 00039744 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\intelpep.sys
2014-12-16 18:02 - 2014-12-16 18:02 - 03547648 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpcorets.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 01762840 _____ (Microsoft Corporation) C:\WINDOWS\system32\WindowsCodecs.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 01519488 _____ (Microsoft Corporation) C:\WINDOWS\system32\user32.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 01489072 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WindowsCodecs.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 01441792 _____ (Microsoft Corporation) C:\WINDOWS\system32\lsasrv.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 01346048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\user32.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00991232 _____ (Microsoft Corporation) C:\WINDOWS\system32\kerberos.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00806400 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\kerberos.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\adtschema.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00736768 _____ (Microsoft Corporation) C:\WINDOWS\system32\adtschema.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00563976 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\cng.sys
2014-12-16 18:02 - 2014-12-16 18:02 - 00445440 _____ (Microsoft Corporation) C:\WINDOWS\system32\certcli.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00426496 _____ (Microsoft Corporation) C:\WINDOWS\system32\schannel.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00357376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\schannel.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00324096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\certcli.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00259584 _____ (Microsoft Corporation) C:\WINDOWS\system32\pku2u.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00258368 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdFilter.sys
2014-12-16 18:02 - 2014-12-16 18:02 - 00208896 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pku2u.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00185856 _____ (Microsoft Corporation) C:\WINDOWS\system32\dpapisrv.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00177472 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\ksecpkg.sys
2014-12-16 18:02 - 2014-12-16 18:02 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msaudite.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00154112 _____ (Microsoft Corporation) C:\WINDOWS\system32\msaudite.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00131584 _____ (Microsoft Corporation) C:\WINDOWS\system32\rdpudd.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00114496 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdNisDrv.sys
2014-12-16 18:02 - 2014-12-16 18:02 - 00104336 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncryptsslp.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00088800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncryptsslp.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\system32\rfxvmt.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00035320 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\WdBoot.sys
2014-12-16 18:02 - 2014-12-16 18:02 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\DeviceSetupStatusProvider.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00028672 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\DeviceSetupStatusProvider.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00027456 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\rdpvideominiport.sys
2014-12-16 18:02 - 2014-12-16 18:02 - 00014336 _____ (Microsoft Corporation) C:\WINDOWS\system32\winshfhc.dll
2014-12-16 18:02 - 2014-12-16 18:02 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\winshfhc.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 02865152 _____ (Microsoft Corporation) C:\WINDOWS\system32\actxprxy.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 01042944 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\actxprxy.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00814080 _____ (Microsoft Corporation) C:\WINDOWS\system32\jscript9diag.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00633856 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieui.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00620032 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jscript9diag.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00490496 _____ (Microsoft Corporation) C:\WINDOWS\system32\dxtmsft.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00478208 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieui.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00418304 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\dxtmsft.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00237568 _____ (Microsoft Corporation) C:\WINDOWS\system32\url.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\url.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00199680 _____ (Microsoft Corporation) C:\WINDOWS\system32\msrating.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00168960 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msrating.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00167424 _____ (Microsoft Corporation) C:\WINDOWS\system32\iexpress.exe
2014-12-16 18:01 - 2014-12-16 18:01 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iexpress.exe
2014-12-16 18:01 - 2014-12-16 18:01 - 00152064 _____ (Microsoft Corporation) C:\WINDOWS\system32\occache.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00144384 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieUnatt.exe
2014-12-16 18:01 - 2014-12-16 18:01 - 00143872 _____ (Microsoft Corporation) C:\WINDOWS\system32\wextract.exe
2014-12-16 18:01 - 2014-12-16 18:01 - 00137728 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wextract.exe
2014-12-16 18:01 - 2014-12-16 18:01 - 00132096 _____ (Microsoft Corporation) C:\WINDOWS\system32\IEAdvpack.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00130048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\occache.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00115712 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieUnatt.exe
2014-12-16 18:01 - 2014-12-16 18:01 - 00114688 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwcollector.exe
2014-12-16 18:01 - 2014-12-16 18:01 - 00112128 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\IEAdvpack.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00111616 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesysprep.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00108544 _____ (Microsoft Corporation) C:\WINDOWS\system32\hlink.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00107520 _____ (Microsoft Corporation) C:\WINDOWS\system32\inseng.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00099328 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\hlink.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00091136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\inseng.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00090624 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesysprep.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00087552 _____ (Microsoft Corporation) C:\WINDOWS\system32\tdc.ocx
2014-12-16 18:01 - 2014-12-16 18:01 - 00077824 _____ (Microsoft Corporation) C:\WINDOWS\system32\JavaScriptCollectionAgent.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00073216 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\tdc.ocx
2014-12-16 18:01 - 2014-12-16 18:01 - 00066560 _____ (Microsoft Corporation) C:\WINDOWS\system32\iesetup.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00064512 _____ (Microsoft Corporation) C:\WINDOWS\system32\pngfilt.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00062464 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iesetup.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\JavaScriptCollectionAgent.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedsbs.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00057344 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\pngfilt.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00054784 _____ (Microsoft Corporation) C:\WINDOWS\system32\jsproxy.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00052736 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedsbs.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00051200 _____ (Microsoft Corporation) C:\WINDOWS\system32\imgutil.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00048640 _____ (Microsoft Corporation) C:\WINDOWS\system32\ieetwproxystub.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00047616 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ieetwproxystub.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00047104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\jsproxy.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00040448 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\imgutil.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00034304 _____ (Microsoft Corporation) C:\WINDOWS\system32\iernonce.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00033280 _____ (Microsoft Corporation) C:\WINDOWS\system32\licmgr10.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00030720 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\iernonce.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00027136 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\licmgr10.dll
2014-12-16 18:01 - 2014-12-16 18:01 - 00013824 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshta.exe
2014-12-16 18:01 - 2014-12-16 18:01 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshta.exe
2014-12-16 18:01 - 2014-12-16 18:01 - 00012800 _____ (Microsoft Corporation) C:\WINDOWS\system32\msfeedssync.exe
2014-12-16 18:01 - 2014-12-16 18:01 - 00011264 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msfeedssync.exe
2014-12-16 18:00 - 2014-12-16 18:00 - 18723112 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\shell32.dll
2014-12-16 18:00 - 2014-12-16 18:00 - 11820544 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\twinui.dll
2014-12-16 18:00 - 2014-12-16 18:00 - 00941568 _____ (Microsoft Corporation) C:\WINDOWS\system32\MFMediaEngine.dll
2014-12-16 18:00 - 2014-12-16 18:00 - 00836176 _____ (Microsoft Corporation) C:\WINDOWS\system32\mfmp4srcsnk.dll
2014-12-16 18:00 - 2014-12-16 18:00 - 00799744 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\MFMediaEngine.dll
2014-12-16 18:00 - 2014-12-16 18:00 - 00670384 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mfmp4srcsnk.dll
2014-12-16 18:00 - 2014-12-16 18:00 - 00615424 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSCOMEX.dll
2014-12-16 18:00 - 2014-12-16 18:00 - 00334336 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\puiobj.dll
2014-12-16 18:00 - 2014-12-16 18:00 - 00275968 _____ (Microsoft Corporation) C:\WINDOWS\system32\FXSAPI.dll
2014-12-16 18:00 - 2014-12-16 18:00 - 00239104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\FXSAPI.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 21197152 _____ (Microsoft Corporation) C:\WINDOWS\system32\shell32.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 13424128 _____ (Microsoft Corporation) C:\WINDOWS\system32\twinui.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 07484224 _____ (Microsoft Corporation) C:\WINDOWS\system32\ntoskrnl.exe
2014-12-16 17:59 - 2014-12-16 17:59 - 03557376 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaueng.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 02497344 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\tcpip.sys
2014-12-16 17:59 - 2014-12-16 17:59 - 02480128 _____ (Microsoft Corporation) C:\WINDOWS\system32\WsmSvc.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 02030592 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\WsmSvc.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 01714176 _____ (Microsoft Corporation) C:\WINDOWS\system32\wucltux.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 01053184 _____ (Microsoft Corporation) C:\WINDOWS\system32\localspl.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00894976 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapi.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32spl.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00723968 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapi.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00590336 _____ (Microsoft Corporation) C:\WINDOWS\system32\rastls.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00545792 _____ (Microsoft Corporation) C:\WINDOWS\system32\untfs.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00514048 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\rastls.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00485376 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\untfs.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00474432 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\netio.sys
2014-12-16 17:59 - 2014-12-16 17:59 - 00448512 _____ (Microsoft Corporation) C:\WINDOWS\system32\puiobj.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00428864 _____ (Microsoft Corporation) C:\WINDOWS\system32\Drivers\FWPKCLNT.SYS
2014-12-16 17:59 - 2014-12-16 17:59 - 00407552 _____ (Microsoft Corporation) C:\WINDOWS\system32\WUSettingsProvider.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00389176 _____ () C:\WINDOWS\system32\ApnDatabase.xml
2014-12-16 17:59 - 2014-12-16 17:59 - 00148800 ____C (Microsoft Corporation) C:\WINDOWS\system32\Drivers\USBSTOR.SYS
2014-12-16 17:59 - 2014-12-16 17:59 - 00140288 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuwebv.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00124928 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuwebv.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00118272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winbici.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00095744 _____ (Microsoft Corporation) C:\WINDOWS\system32\wudriver.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00081920 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wudriver.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00076800 _____ (Microsoft Corporation) C:\WINDOWS\system32\BulkOperationHost.exe
2014-12-16 17:59 - 2014-12-16 17:59 - 00060416 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00055776 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
2014-12-16 17:59 - 2014-12-16 17:59 - 00051712 _____ (Microsoft Corporation) C:\WINDOWS\system32\wups2.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00035840 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuapp.exe
2014-12-16 17:59 - 2014-12-16 17:59 - 00029696 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wuapp.exe
2014-12-16 17:59 - 2014-12-16 17:59 - 00025600 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\wups.dll
2014-12-16 17:59 - 2014-12-16 17:59 - 00017408 _____ (Microsoft Corporation) C:\WINDOWS\system32\wuaext.dll
2014-12-16 17:58 - 2014-12-16 17:58 - 04182016 _____ (Microsoft Corporation) C:\WINDOWS\system32\win32k.sys
2014-12-16 17:58 - 2014-12-16 17:58 - 00262144 _____ () C:\WINDOWS\system32\config\userdiff
2014-12-16 17:58 - 2014-12-16 17:58 - 00146432 _____ (Microsoft Corporation) C:\WINDOWS\system32\poqexec.exe
2014-12-16 17:58 - 2014-12-16 17:58 - 00129536 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\poqexec.exe
2014-12-16 17:55 - 2014-12-18 22:30 - 00000000 ____D () C:\Program Files (x86)\MSBuild
2014-12-16 17:55 - 2014-12-16 17:55 - 00000000 ____D () C:\Program Files\Reference Assemblies
2014-12-16 17:55 - 2014-12-16 17:55 - 00000000 ____D () C:\Program Files\MSBuild
2014-12-16 17:55 - 2014-12-16 17:55 - 00000000 ____D () C:\Program Files (x86)\Reference Assemblies
2014-12-16 17:54 - 2013-08-03 05:48 - 01166520 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationNative_v0300.dll
2014-12-16 17:54 - 2013-08-03 05:48 - 00124112 _____ (Microsoft Corporation) C:\WINDOWS\system32\PresentationCFFRasterizerNative_v0300.dll
2014-12-16 17:54 - 2013-08-03 05:41 - 00778936 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationNative_v0300.dll
2014-12-16 17:54 - 2013-08-03 05:41 - 00102608 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PresentationCFFRasterizerNative_v0300.dll
2014-12-16 09:50 - 2015-01-03 18:38 - 00000000 ___RD () C:\Users\Michal\OneDrive
2014-12-16 09:47 - 2014-12-16 09:47 - 00001444 _____ () C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2014-12-16 09:47 - 2014-12-16 09:47 - 00000451 _____ () C:\WINDOWS\system32\{F33C3B9B-72AF-418A-B3FD-560646F7CDA2}.bat
2014-12-16 09:46 - 2014-12-16 09:46 - 00000020 ___SH () C:\Users\Michal\ntuser.ini
2014-12-16 09:42 - 2014-12-16 09:42 - 00022744 _____ () C:\WINDOWS\system32\emptyregdb.dat
2014-12-16 09:31 - 2014-12-16 09:31 - 00001547 _____ () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Media Player.lnk
2014-12-16 09:31 - 2014-12-16 09:31 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Macromedia
2014-12-16 09:31 - 2014-12-16 09:31 - 00000000 ____D () C:\Users\Default\AppData\Roaming\Adobe
2014-12-16 09:31 - 2014-12-16 09:31 - 00000000 ____D () C:\Users\Default\AppData\Local\Microsoft Help
2014-12-16 09:31 - 2014-12-16 09:31 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Macromedia
2014-12-16 09:31 - 2014-12-16 09:31 - 00000000 ____D () C:\Users\Default User\AppData\Roaming\Adobe
2014-12-16 09:31 - 2014-12-16 09:31 - 00000000 ____D () C:\Users\Default User\AppData\Local\Microsoft Help
2014-12-16 09:26 - 2014-12-16 09:26 - 00000000 ____D () C:\WINDOWS\system32\config\bbimigrate
2014-12-16 09:24 - 2014-12-17 23:33 - 00000000 ____D () C:\Users\Michal
2014-12-16 09:24 - 2014-12-16 09:42 - 00036198 _____ () C:\WINDOWS\diagwrn.xml
2014-12-16 09:24 - 2014-12-16 09:42 - 00036198 _____ () C:\WINDOWS\diagerr.xml
2014-12-16 09:24 - 2014-12-16 09:38 - 00000000 ____D () C:\Users\Administrator
2014-12-16 09:24 - 2014-12-16 09:26 - 00000000 ___RD () C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-12-16 09:24 - 2014-12-16 09:26 - 00000000 ___RD () C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-12-16 09:24 - 2014-12-16 09:25 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-12-16 09:24 - 2014-12-16 09:25 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessibility
2014-12-16 09:24 - 2014-09-24 08:23 - 00000369 _____ () C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2014-12-16 09:24 - 2014-09-24 08:23 - 00000369 _____ () C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2014-12-16 09:24 - 2014-09-24 08:23 - 00000369 _____ () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Pictures.lnk
2014-12-16 09:24 - 2014-09-24 08:23 - 00000369 _____ () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Documents.lnk
2014-12-16 09:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-12-16 09:24 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
2014-12-16 09:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-12-16 09:24 - 2013-08-22 16:36 - 00000000 ____D () C:\Users\Administrator\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
2014-12-16 09:17 - 2014-12-16 09:17 - 00000000 ____H () C:\WINDOWS\system32\Drivers\Msft_Kernel_iBtFltCoex_01009.Wdf
2014-12-16 09:17 - 2014-12-16 09:17 - 00000000 ____D () C:\Program Files\Elantech
2014-12-16 09:17 - 2014-12-16 09:17 - 00000000 ____D () C:\Program Files\Common Files\ATI Technologies
2014-12-16 09:16 - 2014-12-16 09:29 - 00000000 ____D () C:\ProgramData\Conexant
2014-12-16 09:16 - 2014-12-16 09:29 - 00000000 ____D () C:\Program Files\CONEXANT
2014-12-13 22:48 - 2014-12-13 22:48 - 00018064 _____ () C:\Users\Michal\Downloads\dracula.untold.(2014).eng.1cd.(5887939).zip
2014-12-13 15:17 - 2015-01-01 13:38 - 00000000 ____D () C:\Users\Michal\Downloads\Dracula Untold 2014 720p HDRip x264 AC3-JYK
2014-12-13 15:14 - 2015-01-01 13:39 - 00000000 ____D () C:\Users\Michal\Downloads\Horrible Bosses 2 (2014) HDRip HC XViD AC3-RAV3N
2014-12-10 22:16 - 2014-12-10 22:16 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
2014-12-09 21:43 - 2014-12-09 21:51 - 00000000 ____D () C:\Users\Michal\Downloads\The.Walking.Dead.S05E08.HDTV.x264-KILLERS[ettv]
2014-12-09 21:36 - 2014-12-10 22:18 - 00000000 ____D () C:\Users\Michal\Desktop\Mulgrew
2014-12-05 09:43 - 2014-12-05 09:43 - 00481136 _____ (Gemfor s.r.o.) C:\Users\Michal\Desktop\dslman.exe

==================== One Month Modified Files and Folders =======

(If an entry is included in the fixlist, the file\folder will be moved.)

2015-01-03 18:49 - 2013-12-21 11:17 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\Skype
2015-01-03 18:43 - 2013-11-19 18:46 - 00003596 _____ () C:\WINDOWS\System32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-719243096-1991990810-3985077826-1001
2015-01-03 18:43 - 2013-01-02 17:01 - 00000000 ____D () C:\Program Files (x86)\Dell Backup and Recovery
2015-01-03 18:38 - 2013-11-22 12:49 - 00000918 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job
2015-01-03 18:38 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sru
2015-01-03 13:06 - 2014-05-11 15:15 - 00000922 _____ () C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1cf6d2384256332.job
2015-01-03 13:02 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\NDF
2015-01-03 12:47 - 2013-08-22 15:45 - 00000006 ____H () C:\WINDOWS\Tasks\SA.DAT
2015-01-03 12:47 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\BBI
2015-01-02 19:27 - 2014-01-15 22:58 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\uTorrent
2015-01-01 21:15 - 2013-11-19 18:43 - 00000000 ____D () C:\Users\Michal\AppData\Local\softthinks
2015-01-01 12:29 - 2013-12-31 14:11 - 00003988 _____ () C:\WINDOWS\System32\Tasks\PCDoctorBackgroundMonitorTask
2015-01-01 12:29 - 2013-12-31 14:11 - 00003198 _____ () C:\WINDOWS\System32\Tasks\SystemToolsDailyTest
2015-01-01 12:08 - 2013-02-24 19:37 - 00000000 ____D () C:\Users\Michal\Documents\Outlook Files
2015-01-01 00:08 - 2013-11-19 19:45 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\vlc
2014-12-31 19:56 - 2013-01-10 22:52 - 01222144 ___SH () C:\Users\Michal\Desktop\Thumbs.db
2014-12-30 21:50 - 2013-12-21 11:17 - 00000000 ___RD () C:\Program Files (x86)\Skype
2014-12-30 21:50 - 2013-12-21 11:17 - 00000000 ____D () C:\ProgramData\Skype
2014-12-21 21:58 - 2013-11-19 18:38 - 00000000 ____D () C:\Users\Michal\AppData\Local\Packages
2014-12-21 21:53 - 2014-09-24 08:15 - 00865408 _____ () C:\WINDOWS\system32\PerfStringBackup.INI
2014-12-20 15:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\rescache
2014-12-18 21:37 - 2013-01-02 16:42 - 00000000 ____D () C:\Program Files (x86)\ATI Technologies
2014-12-18 21:06 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\AppReadiness
2014-12-17 22:06 - 2012-07-26 08:59 - 00000000 ____D () C:\WINDOWS\CbsTemp
2014-12-17 10:17 - 2013-01-02 16:44 - 00000000 ____D () C:\ProgramData\Dell
2014-12-17 09:41 - 2013-01-02 16:46 - 00000000 ____D () C:\ProgramData\Intel
2014-12-17 09:41 - 2013-01-02 16:44 - 00000000 ____D () C:\Intel
2014-12-17 09:41 - 2012-07-26 06:37 - 00000000 ____D () C:\Users\Default.migrated
2014-12-17 09:40 - 2013-01-02 16:44 - 00000000 ____D () C:\Program Files\Common Files\Intel
2014-12-17 09:40 - 2013-01-02 16:44 - 00000000 ____D () C:\Program Files (x86)\Intel
2014-12-17 09:39 - 2013-01-02 16:46 - 00000000 ____D () C:\Program Files\Intel
2014-12-16 21:38 - 2014-09-24 10:50 - 00000000 ___SD () C:\WINDOWS\system32\CompatTel
2014-12-16 21:38 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\WinStore
2014-12-16 21:38 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sr-Latn-RS
2014-12-16 21:38 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\sr-Latn-CS
2014-12-16 21:34 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ToastData
2014-12-16 21:28 - 2014-06-04 20:13 - 00000000 ____D () C:\Users\Michal\Desktop\DOKUMENTY
2014-12-16 21:23 - 2014-06-04 20:12 - 00000000 ____D () C:\Users\Michal\Desktop\PHOTOS
2014-12-16 21:17 - 2014-01-03 21:29 - 00128632 _____ () C:\Users\Michal\AppData\Local\GDIPFONTCACHEV1.DAT
2014-12-16 21:13 - 2013-11-19 19:18 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell
2014-12-16 20:56 - 2014-01-15 23:35 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2014-12-16 20:47 - 2014-01-03 21:28 - 00000000 ____D () C:\Program Files (x86)\PDFCreator
2014-12-16 20:40 - 2014-05-03 17:43 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\BSplayer
2014-12-16 20:24 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\restore
2014-12-16 20:23 - 2013-12-02 23:55 - 00000000 ____D () C:\Program Files (x86)\Assassins Creed IV Black Flag
2014-12-16 20:13 - 2014-10-29 21:09 - 00000000 ____D () C:\WINDOWS\system32\AutoUpdateLicense
2014-12-16 20:13 - 2013-08-22 15:44 - 00492424 _____ () C:\WINDOWS\system32\FNTCACHE.DAT
2014-12-16 18:12 - 2013-11-20 01:25 - 00000000 __SHD () C:\Recovery
2014-12-16 18:11 - 2013-08-22 16:36 - 00262144 _____ () C:\WINDOWS\system32\config\BCD-Template
2014-12-16 18:08 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\PolicyDefinitions
2014-12-16 18:06 - 2013-08-22 16:36 - 00000000 ___RD () C:\WINDOWS\ImmersiveControlPanel
2014-12-16 18:02 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-12-16 18:02 - 2013-08-22 16:36 - 00000000 ___RD () C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\System Tools
2014-12-16 18:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Windows Defender
2014-12-16 18:02 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files (x86)\Windows Defender
2014-12-16 18:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\MediaViewer
2014-12-16 18:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\FileManager
2014-12-16 18:00 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Camera
2014-12-16 09:43 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Registration
2014-12-16 09:40 - 2013-08-22 16:36 - 00000000 __RSD () C:\WINDOWS\Media
2014-12-16 09:40 - 2013-08-22 16:36 - 00000000 __RHD () C:\Users\Public\Libraries
2014-12-16 09:39 - 2013-01-02 16:53 - 00880342 _____ () C:\WINDOWS\SysWOW64\PerfStringBackup.INI
2014-12-16 09:32 - 2014-11-23 18:15 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\iTunes
2014-12-16 09:32 - 2014-10-10 17:52 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
2014-12-16 09:32 - 2014-09-24 07:53 - 00000000 ____D () C:\WINDOWS\ShellNew
2014-12-16 09:32 - 2014-05-30 13:57 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Winamp Detector Plug-in
2014-12-16 09:32 - 2014-02-27 22:54 - 00000000 ____D () C:\Users\Michal\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-12-16 09:32 - 2014-02-27 22:54 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2014-12-16 09:32 - 2014-01-03 21:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDFCreator
2014-12-16 09:32 - 2014-01-03 21:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PDF Architect
2014-12-16 09:32 - 2014-01-03 20:43 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
2014-12-16 09:32 - 2013-11-22 12:50 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
2014-12-16 09:32 - 2013-11-19 21:03 - 00000000 ____D () C:\ProgramData\regid.1986-12.com.adobe
2014-12-16 09:32 - 2013-11-19 19:44 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2014-12-16 09:32 - 2013-11-19 19:28 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SmartSound
2014-12-16 09:32 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\Sysprep
2014-12-16 09:32 - 2013-08-22 14:25 - 00262144 ___SH () C:\WINDOWS\system32\config\ELAM
2014-12-16 09:32 - 2013-01-02 17:03 - 00000000 ____D () C:\WINDOWS\en
2014-12-16 09:32 - 2013-01-02 17:01 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dell Backup and Recovery
2014-12-16 09:32 - 2013-01-02 16:53 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CyberLink Media Suite
2014-12-16 09:32 - 2013-01-02 16:46 - 00000000 ___RD () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2014-12-16 09:30 - 2014-09-24 07:33 - 00000000 ____D () C:\WINDOWS\SysWOW64\WCN
2014-12-16 09:30 - 2014-09-24 07:33 - 00000000 ____D () C:\WINDOWS\SysWOW64\sysprep
2014-12-16 09:30 - 2014-09-24 07:33 - 00000000 ____D () C:\WINDOWS\system32\WCN
2014-12-16 09:30 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\MUI
2014-12-16 09:30 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\migwiz
2014-12-16 09:30 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\IME
2014-12-16 09:30 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\spool
2014-12-16 09:30 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\MUI
2014-12-16 09:30 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\IME
2014-12-16 09:30 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\SysWOW64\SMI
2014-12-16 09:30 - 2013-08-22 14:36 - 00000000 ____D () C:\WINDOWS\system32\oobe
2014-12-16 09:30 - 2013-01-02 16:47 - 00000000 ____D () C:\WINDOWS\SysWOW64\sda
2014-12-16 09:29 - 2013-12-30 17:16 - 00000000 ____D () C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ESET
2014-12-16 09:29 - 2013-08-22 16:43 - 00000000 ____D () C:\WINDOWS\DigitalLocker
2014-12-16 09:29 - 2013-08-22 16:36 - 00000000 __SHD () C:\Program Files\Windows Sidebar
2014-12-16 09:29 - 2013-08-22 16:36 - 00000000 __SHD () C:\Program Files (x86)\Windows Sidebar
2014-12-16 09:29 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\Help
2014-12-16 09:29 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\System
2014-12-16 09:29 - 2013-08-22 16:36 - 00000000 ____D () C:\Program Files\Common Files\microsoft shared
2014-12-16 09:29 - 2013-01-02 17:03 - 00000000 ____D () C:\ProgramData\PRICache
2014-12-16 09:26 - 2013-08-22 16:36 - 00000000 ____D () C:\WINDOWS\system32\Recovery
2014-12-16 09:25 - 2013-01-02 17:08 - 00000000 ____D () C:\Users\Administrator\AppData\Local\Packages
2014-12-16 09:13 - 2013-08-22 14:36 - 00000000 __RHD () C:\Users\Default
2014-12-13 13:23 - 2013-11-19 18:53 - 00000000 ____D () C:\ProgramData\Microsoft Help
2014-12-13 13:15 - 2013-11-20 21:45 - 112710672 _____ (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2014-12-13 13:15 - 2013-11-20 21:45 - 00000000 ____D () C:\WINDOWS\system32\MRT
2014-12-09 22:01 - 2012-07-26 09:12 - 00000000 ____D () C:\WINDOWS\AUInstallAgent

==================== Bamital & volsnap Check =================

(There is no automatic fix for files that do not pass verification.)

C:\Windows\System32\winlogon.exe => File is digitally signed
C:\Windows\System32\wininit.exe => File is digitally signed
C:\Windows\explorer.exe => File is digitally signed
C:\Windows\SysWOW64\explorer.exe => File is digitally signed
C:\Windows\System32\svchost.exe => File is digitally signed
C:\Windows\SysWOW64\svchost.exe => File is digitally signed
C:\Windows\System32\services.exe => File is digitally signed
C:\Windows\System32\User32.dll => File is digitally signed
C:\Windows\SysWOW64\User32.dll => File is digitally signed
C:\Windows\System32\userinit.exe => File is digitally signed
C:\Windows\SysWOW64\userinit.exe => File is digitally signed
C:\Windows\System32\rpcss.dll => File is digitally signed
C:\Windows\System32\Drivers\volsnap.sys => File is digitally signed


LastRegBack: 2015-01-02 20:57




===***===***===***=== Extract of Additional scan result of Farbar Recovery Scan Tool ===***===***===***===

==================== Drive and Memory info ===================

Drive c: (OS) (Fixed) (Total:916.75 GB) (Free:673.73 GB) NTFS
Drive e: (20140920_2050) (CDROM) (Total:8.91 GB) (Free:0 GB) CDFS
Drive w: (WINRETOOLS) (Fixed) (Total:0.49 GB) (Free:0.22 GB) NTFS
Drive x: (PBR Image) (Fixed) (Total:12.84 GB) (Free:0.28 GB) NTFS

Available physical RAM: 6350.09 MB
Total physical RAM: 8061.27 MB
Percentage of memory in use: 21%

==================== MBR and Partition Table ==================

Disk: 0 (Size: 931.5 GB) (Disk ID: 06E14B88)

==================== Scheduled Tasks (whitelisted) ==================

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1cf6d2384256332.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

==================== Alternate Data Streams (whitelisted) ==================

AlternateDataStreams: C:\Users\Michal\OneDrive:ms-properties
AlternateDataStreams: C:\Users\Michal\SkyDrive:ms-properties

==================== Security Center ==================

AV: ESET Smart Security 7.0 (Enabled - Up to date) {19259FAE-8396-A113-46DB-15B0E7DFA289}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: ESET Smart Security 7.0 (Enabled - Up to date) {A2447E4A-A5AC-AE9D-7C6B-2EC29C58E834}
FW: ESET Personal firewall (Enabled) {211E1E8B-C9F9-A04B-6D84-BC85190CE5F2}



===***===***===***=== Supplementary Scan createdy by FRSTLauncher ===***===***===***===
Posledni aktualizace FRSTLauncheru: 25_11_2013 (01)
Posledni aktualizace Modifikacniho skriptu: 30_09_2013 (01)


***** Velikost "Plochy" *****

Velikost slozky "C:\Users\Michal\Desktop" je 24289 MB.


***** Startup Programs *****


***** Firewall rules *****

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile]
EnableFirewall REG_DWORD 0x1
DisableNotifications REG_DWORD 0x0

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List]


***** System Restore *****

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\SystemRestore]
"Generalize_DisableSR"=dword:00000000


==================== End Of Log ==============================
Majkl55

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Zpomaleny notebook

#8 Příspěvek od vyosek »

:arrow: Tvorba fixlistu pro FRST
  • Spustte poznamkovy blok (Start-spustit-notepad)
  • Zkopirujte skript nize
  • Kód: Vybrat vše

    Start
    CloseProcesses:
    CreateRestorePoint:
    
    HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [499608 2011-06-16] (Adobe Systems Incorporated)
    HKLM-x32\...\Run: [CLMLServer_For_P2G8] => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120 2012-06-08] (CyberLink)
    HKLM-x32\...\Run: [CLVirtualDrive] => C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491120 2012-07-04] (CyberLink Corp.)
    HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [143888 2012-06-02] (CyberLink Corp.)
    HKU\S-1-5-21-719243096-1991990810-3985077826-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30877280 2014-12-11] (Skype Technologies S.A.)
    HKU\S-1-5-21-719243096-1991990810-3985077826-1001\...\Run: [uTorrent] => C:\Users\Michal\AppData\Roaming\uTorrent\uTorrent.exe [1385808 2014-11-26] (BitTorrent Inc.)
    HKU\S-1-5-21-719243096-1991990810-3985077826-1001\...\MountPoints2: E - "E:\setup.exe" 
    
    SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
    SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = 
    
    FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK
    
    R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
    R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)
    
    DisableService: RichVideo
    
    S3 iwdbus; \SystemRoot\System32\drivers\iwdbus.sys [X]
    S3 usb3Hub; \SystemRoot\System32\drivers\usb3Hub.sys [X]
    S3 XHCIPort; \SystemRoot\System32\drivers\XHCIPort.sys [X]
    
    2015-01-03 18:51 - 2015-01-03 18:51 - 00020550 _____ () C:\Users\Michal\Desktop\FRST.txt
    2015-01-03 18:49 - 2015-01-03 18:49 - 00112640 _____ (forum.viry.cz) C:\Users\Michal\Desktop\FRSTLauncher.exe
    C:\Program Files (x86)\Skype\Toolbars
    2015-01-03 12:46 - 2015-01-03 12:34 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
    2015-01-03 12:35 - 2015-01-03 12:49 - 00007916 _____ () C:\zoek-results.log
    2015-01-03 12:34 - 2015-01-03 12:47 - 00000000 ____D () C:\zoek_backup
    2015-01-03 12:28 - 2015-01-03 12:29 - 00000000 ____D () C:\AdwCleaner
    2015-01-03 12:26 - 2015-01-03 12:26 - 01295360 _____ () C:\Users\Michal\Desktop\zoek.exe
    2015-01-03 12:25 - 2015-01-03 12:25 - 02173952 _____ () C:\Users\Michal\Desktop\adwcleaner_4.106.exe
    2015-01-03 00:41 - 2015-01-03 00:41 - 00000000 ____D () C:\rsit
    2015-01-03 00:41 - 2015-01-03 00:41 - 00000000 ____D () C:\Program Files\trend micro
    2015-01-03 00:40 - 2015-01-03 00:40 - 01222144 _____ () C:\Users\Michal\Desktop\RSITx64.exe
    
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1cf6d2384256332.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
    
    Hosts:
    EmptyTemp:
    Reboot:
    End
    
  • Ulozte vytvoreny TXT jako fixlist.txt
  • Presunte vytvoreny fixlist vedle FRST
:arrow: Spustte znovu FRST.exe
  • Kliknete na Fix
  • Probehne oprava a vytvori log Fixlog.txt
:arrow: Restart PC a dejte mi sem fixlog.txt
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Majkl55
Návštěvník
Návštěvník
Příspěvky: 70
Registrován: 15 kvě 2008 12:20

Re: Zpomaleny notebook

#9 Příspěvek od Majkl55 »

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x64) Version: 03-01-2015 03
Ran by Michal at 2015-01-03 20:31:14 Run:1
Running from C:\Users\Michal\Desktop
Loaded Profile: Michal (Available profiles: Michal & Administrator)
Boot Mode: Normal
==============================================

Content of fixlist:
*****************
Start
CloseProcesses:
CreateRestorePoint:

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [499608 2011-06-16] (Adobe Systems Incorporated)
HKLM-x32\...\Run: [CLMLServer_For_P2G8] => C:\Program Files (x86)\CyberLink\Power2Go8\CLMLSvc_P2G8.exe [111120 2012-06-08] (CyberLink)
HKLM-x32\...\Run: [CLVirtualDrive] => C:\Program Files (x86)\CyberLink\Power2Go8\VirtualDrive.exe [491120 2012-07-04] (CyberLink Corp.)
HKLM-x32\...\Run: [RemoteControl10] => C:\Program Files (x86)\CyberLink\PowerDVD10\PDVD10Serv.exe [143888 2012-06-02] (CyberLink Corp.)
HKU\S-1-5-21-719243096-1991990810-3985077826-1001\...\Run: [Skype] => C:\Program Files (x86)\Skype\Phone\Skype.exe [30877280 2014-12-11] (Skype Technologies S.A.)
HKU\S-1-5-21-719243096-1991990810-3985077826-1001\...\Run: [uTorrent] => C:\Users\Michal\AppData\Roaming\uTorrent\uTorrent.exe [1385808 2014-11-26] (BitTorrent Inc.)
HKU\S-1-5-21-719243096-1991990810-3985077826-1001\...\MountPoints2: E - "E:\setup.exe"

SearchScopes: HKU\.DEFAULT -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-19 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-20 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =

FF HKLM-x32\...\Thunderbird\Extensions: [msktbird@mcafee.com] - C:\Program Files\McAfee\MSK

R2 c2cautoupdatesvc; C:\Program Files (x86)\Skype\Toolbars\AutoUpdate\SkypeC2CAutoUpdateSvc.exe [1390176 2014-07-14] (Microsoft Corporation)
R2 c2cpnrsvc; C:\Program Files (x86)\Skype\Toolbars\PNRSvc\SkypeC2CPNRSvc.exe [1767520 2014-07-14] (Microsoft Corporation)

DisableService: RichVideo

S3 iwdbus; \SystemRoot\System32\drivers\iwdbus.sys [X]
S3 usb3Hub; \SystemRoot\System32\drivers\usb3Hub.sys [X]
S3 XHCIPort; \SystemRoot\System32\drivers\XHCIPort.sys [X]

2015-01-03 18:51 - 2015-01-03 18:51 - 00020550 _____ () C:\Users\Michal\Desktop\FRST.txt
2015-01-03 18:49 - 2015-01-03 18:49 - 00112640 _____ (forum.viry.cz) C:\Users\Michal\Desktop\FRSTLauncher.exe
C:\Program Files (x86)\Skype\Toolbars
2015-01-03 12:46 - 2015-01-03 12:34 - 00024064 _____ () C:\WINDOWS\zoek-delete.exe
2015-01-03 12:35 - 2015-01-03 12:49 - 00007916 _____ () C:\zoek-results.log
2015-01-03 12:34 - 2015-01-03 12:47 - 00000000 ____D () C:\zoek_backup
2015-01-03 12:28 - 2015-01-03 12:29 - 00000000 ____D () C:\AdwCleaner
2015-01-03 12:26 - 2015-01-03 12:26 - 01295360 _____ () C:\Users\Michal\Desktop\zoek.exe
2015-01-03 12:25 - 2015-01-03 12:25 - 02173952 _____ () C:\Users\Michal\Desktop\adwcleaner_4.106.exe
2015-01-03 00:41 - 2015-01-03 00:41 - 00000000 ____D () C:\rsit
2015-01-03 00:41 - 2015-01-03 00:41 - 00000000 ____D () C:\Program Files\trend micro
2015-01-03 00:40 - 2015-01-03 00:40 - 01222144 _____ () C:\Users\Michal\Desktop\RSITx64.exe

Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
Task: C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1cf6d2384256332.job => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe

Hosts:
EmptyTemp:
Reboot:
End
*****************

Processes closed successfully.
Restore point was successfully created.
HKLM\Software\Microsoft\Windows\CurrentVersion\Run\\AdobeAAMUpdater-1.0 => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\CLMLServer_For_P2G8 => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\CLVirtualDrive => value deleted successfully.
HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\RemoteControl10 => value deleted successfully.
HKU\S-1-5-21-719243096-1991990810-3985077826-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Skype => value deleted successfully.
HKU\S-1-5-21-719243096-1991990810-3985077826-1001\Software\Microsoft\Windows\CurrentVersion\Run\\uTorrent => value deleted successfully.
"HKU\S-1-5-21-719243096-1991990810-3985077826-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\E" => Key deleted successfully.
HKU\.DEFAULT\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-19\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKU\S-1-5-20\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\\DefaultScope => value deleted successfully.
HKLM\Software\Wow6432Node\Mozilla\Thunderbird\Extensions\\msktbird@mcafee.com => value deleted successfully.
c2cautoupdatesvc => Service deleted successfully.
c2cpnrsvc => Service deleted successfully.
RichVideo service was disabled
iwdbus => Service deleted successfully.
usb3Hub => Service deleted successfully.
XHCIPort => Service deleted successfully.
"C:\Users\Michal\Desktop\FRST.txt" => File/Directory not found.
C:\Users\Michal\Desktop\FRSTLauncher.exe => Moved successfully.
C:\Program Files (x86)\Skype\Toolbars => Moved successfully.
C:\WINDOWS\zoek-delete.exe => Moved successfully.
C:\zoek-results.log => Moved successfully.
C:\zoek_backup => Moved successfully.
C:\AdwCleaner => Moved successfully.
C:\Users\Michal\Desktop\zoek.exe => Moved successfully.
C:\Users\Michal\Desktop\adwcleaner_4.106.exe => Moved successfully.
C:\rsit => Moved successfully.
C:\Program Files\trend micro => Moved successfully.
C:\Users\Michal\Desktop\RSITx64.exe => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineCore.job => Moved successfully.
C:\WINDOWS\Tasks\GoogleUpdateTaskMachineUA1cf6d2384256332.job => Moved successfully.
C:\Windows\System32\Drivers\etc\hosts => Moved successfully.
Hosts was reset successfully.
EmptyTemp: => Removed 44.9 MB temporary data.


The system needed a reboot.

==== End of Fixlog 20:31:38 ====
Majkl55

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Zpomaleny notebook

#10 Příspěvek od vyosek »

Jak se chova notebook???
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Majkl55
Návštěvník
Návštěvník
Příspěvky: 70
Registrován: 15 kvě 2008 12:20

Re: Zpomaleny notebook

#11 Příspěvek od Majkl55 »

Diky, vypada to o dost rychlejsi. Myslim, ze urcitej problem by moh bejt I v update na win 8.1 - nejak mi to posralo grafiku a DNS server, protoze mi kolisa pripojeni.

Ale urcite to ted bezi lip!
Majkl55

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Zpomaleny notebook

#12 Příspěvek od vyosek »

Tak jeste uklidime :James008:

:arrow: DelFix https://toolslib.net/downloads/finish/2/
  • Stahnete a spustte
  • Ponechte zatrzitkou pouze u volby Remote disinfection tools
  • Kliknete na Run
:arrow: Stahnete Ccleaner https://www.piriform.com/ccleaner/download/standard
Panel čistič
  • Vse nechte jak je, jen dejte Analyzovat a pote Spustit CCleaner
Panel registry
  • dejte Hledej problémy
  • nasledne Opravit problémy - zalohu registru doporucuji udelat, opravte vsechny problemy
  • postup opakujte dokud nebude bez problemu - vetsinou cca 3x
Panel nástroje
  • Zde muzete odinstalovat nepotrebne programy
CCleaner doporucuji pouzivat cca jednou za tyden

:arrow: A pokud nejsou problemy ci dotazy, je to z me strany vse :|
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Majkl55
Návštěvník
Návštěvník
Příspěvky: 70
Registrován: 15 kvě 2008 12:20

Re: Zpomaleny notebook

#13 Příspěvek od Majkl55 »

Hotovo.
Moc diky za pomoc, jako vzdy vyborna prace! Hezkej vikedn preju.
Majkl55

Uživatelský avatar
vyosek
VIP
VIP
Příspěvky: 56373
Registrován: 07 lis 2006 15:24
Bydliště: Šalingrad - Brno

Re: Zpomaleny notebook

#14 Příspěvek od vyosek »

Nemate zac, rad jsem pomohl :worship: Zase nekdy Obrázek


A na zaklade Pravidla o zamykani temat :lock:
"Kdo víno má a nepije,kdo hrozny má a nejí je, kdo ženu má a nelíbá, kdo zábavě se vyhýbá, na toho vemte bič a hůl, to není člověk, to je vůl."
Člen Obrázek od 1. února 2011.

Zamčeno